
Staff Cyber Threat Exposure Management Engineer
Manulife
full-time
Posted on:
Location Type: Hybrid
Location: Waterloo • 🇨🇦 Canada
Visit company websiteSalary
💰 CA$109,600 - CA$159,600 per year
Job Level
Lead
Tech Stack
Cyber Security
About the role
- Lead the CTEM lifecycle, including identification, assessment, prioritization, and help inform remediation tracking and reporting
- Utilize tools like Avalor to perform scans and interpret results beyond surface-level findings
- Inform and help maintain risk-based prioritization frameworks to ensure the most critical threats are addressed first
- Translate technical vulnerabilities into business risk language for executive and stakeholder reporting
- Experience working with API’s and multiple data sources and ingesting and deconflicting those data sources into a singular view
- Platform orchestration and automation experience is also highly desirable in this role
- Monitor threat intelligence feeds and correlate with internal vulnerabilities to assess potential impact
- Contribute to the development of metrics and dashboards to track vulnerability trends, configuration weakness trends, along with remediation effectiveness
- Act as the bridge between the CTEM program at Manulife and the cyber security teams and infrastructure management teams
- Stay current with emerging threats, vulnerabilities, and regulatory requirements.
Requirements
- At least 7 years IT industry experience
- 3–5+ years of experience in cybersecurity, with a focus on vulnerability management and threat analysis
- Exposure and experience with the Avalor product line from Zscaler is highly desirable for this position
- Experience with Qualys or similar vulnerability scanning platforms
- Demonstrated ability to think strategically and prioritize risks in complex environments
- Familiarity with CVSS scoring, MITRE ATT&CK, and risk management frameworks
- Experience with SIEM, threat intelligence platforms, and asset management tools is a plus
- Excellent communication skills, with the ability to convey technical concepts to non-technical audiences.
Benefits
- health, dental, mental health, vision, short- and long-term disability, life and AD&D insurance coverage
- adoption/surrogacy and wellness benefits
- employee/family assistance plans
- various retirement savings plans (including pension and a global share ownership plan with employer matching contributions)
- financial education and counseling resources
- generous paid time off program including holidays, vacation, personal, and sick days
- full range of statutory leaves of absence
Applicant Tracking System Keywords
Tip: use these terms in your resume and cover letter to boost ATS matches.
Hard skills
vulnerability managementthreat analysisAPI integrationplatform orchestrationautomationrisk management frameworksCVSS scoringMITRE ATT&CKvulnerability scanningdata correlation
Soft skills
strategic thinkingprioritizationcommunication