CorpSec is transitioning and growing at Clio, into a focused mission-driven function within the organization. Security systems and practices are already in place, this role will be responsible for adopting and unifying the systems, communication, and oversight of security systems from across IT Systems, Application Security, and Compliance. Build upon the existing trust within the organization, define a unified approach, configure, formalize the program in accordance to Compliance requirements. This role is available to candidates across Canada, excluding Quebec. If you are local to one of our hubs (Burnaby, Calgary, or Toronto) you will be expected to be in office minimum twice per week on one of our Anchor Days.
Your team will work closely with the IT Systems, Application Security, People, Compliance, and IT Services teams to ensure appropriate security coverage in detection, response, and establishing non-adversarial techniques.
This role is established for the purpose of driving the cybersecurity definitions and posture across our fleet and systems — leading investigations, owning incident response end-to-end, and improving the operational quality of how we detect and respond to threats. You will protect Clio from internal and external threats, accidental and intentional.
As Senior Corporate Security Analyst, you are both a senior operator and a project lead. You own detection and response work end-to-end, lead high-severity incidents, and raise the quality and velocity of how the team operates. You stay hands-on with the tools that matter — DLP, EDR, phishing, SIEM, SSO — and you turn ambiguous patterns into runbooks, automations, and durable improvements.
The successful candidate is a force-multiplier. They recognize the importance of resolving incidents and closing tickets, they are also the person within the team that makes the teams an processes around them better. You coach junior analysts, lead high-severity investigations, and partner with adjacent teams to close gaps that no single team owns. Familiarity and proficiency with AI tooling is expected; you will help define how we use it in detection and response responsibly. Where there may be a built up pain tolerance to inefficiencies or legacy processes, you learn to understand them and propose updates or rewrites when the base objective is no longer being met.