Sr. Spec, Security Ops & MDR Governance Lead
About this role
Ready to build a rewarding career in an industry that is growing?
Who We Are
We are a global mining company dedicated to safely delivering nickel, copper, cobalt, and platinum group metals essential for the world’s energy transition.
Our mission is to improve lives and shape a better future together.
From utensils to cellphones to satellites, our operations simplify daily life and enhance connectivity. Our metals are integral to life-saving medical equipment and the electric vehicles driving the fight against climate change – our work truly matters.
Join our diverse team of 15,000 talented individuals committed to transforming critical minerals into prosperity and sustainable development in countries like Canada, Brazil, Indonesia, the United Kingdom, and Japan. We invite you to use your skills with us and contribute to something meaningful and enduring.
The Opportunity
We are currently seeking a Senior Specialist, Security Operations & MDR Governance, to join our Cyber Defense & Incident Response team.
Reporting to the Senior Manager, Cyber Defense & Incident Response, this role serves as the operational backbone of Vale Base Metals' Cyber Defense program. The successful candidate will be responsible for ensuring our Managed Detection and Response (MDR) provider delivers high-quality services, leading complex incident response activities, and driving the organization's vulnerability management program.
This role combines three critical disciplines:
- MDR Governance and provider performance management
- Incident Response leadership for major cybersecurity incidents
- Enterprise Vulnerability Management oversight
You will establish operational standards, hold internal and external stakeholders accountable, and provide expert guidance to strengthen Vale Base Metals' cyber resilience globally.
Key Responsibilities
MDR Provider Governance
- Serve as the primary technical and operational interface between Vale Base Metals and the MDR provider.
- Monitor and enforce service level agreements (SLAs), escalation procedures, and service quality expectations.
- Lead operational reviews, incident discussions, and performance meetings with service providers.
- Develop and maintain performance dashboards tracking key operational security metrics.
- Drive continuous improvement initiatives and ensure vendor commitments are aligned with business priorities.
- Provide regular reporting and recommendations to cybersecurity leadership.
Incident Response Leadership
- Lead investigations and response activities for critical and high-severity cybersecurity incidents.
- Conduct advanced analysis of endpoint, network, cloud, and security telemetry data.
- Coordinate containment, eradication, and recovery activities across technical teams.
- Produce post-incident reviews and identify opportunities to improve security controls and detection capabilities.
- Maintain and enhance incident response playbooks and procedures.
- Support executive communications and stakeholder engagement during major incidents.
- Coordinate with external incident response partners when specialized expertise is required.
Vulnerability Management
- Own the enterprise vulnerability management lifecycle from scanning to remediation tracking.
- Ensure appropriate security scanning coverage across IT environments.
- Apply risk-based prioritization methodologies, including Known Exploited Vulnerabilities (KEV) guidance.
- Track remediation efforts and escalate unresolved critical issues as required.
- Coordinate with infrastructure, application, and managed service teams to drive timely remediation.
- Manage risk acceptance processes and governance requirements.
- Develop executive-level reporting on vulnerability trends, compliance, and remediation performance.
Cyber Defense Continuous Improvement
- Identify opportunities to strengthen detection, response, and vulnerability management processes.
- Develop operational metrics, dashboards, and reporting mechanisms.
- Collaborate with security, infrastructure, and business teams to improve cybersecurity maturity.
- Support tabletop exercises, readiness assessments, and security program initiatives.
- Stay current on emerging threats, cybersecurity trends, and industry best practices.
About You
Experience
- Minimum of 7 years of experience in Security Operations, Incident Response, Cyber Defense, or related cybersecurity disciplines.
- Demonstrated experience managing Managed Security Service Providers (MSSP) or MDR providers.
- Hands-on experience investigating and responding to cybersecurity incidents in enterprise environments.
- Experience leading vulnerability management programs and remediation activities.
- Strong experience working with cross-functional stakeholders and external service providers.
- Experience operating within large-scale industrial, mining, energy, manufacturing, or critical infrastructure environments is considered an asset.
Education
- Undergraduate Degree in Cybersecurity, Information Security, Computer Science, Information Technology, Engineering, or a related discipline.
Skills & Competencies
- Strong understanding of Security Operations Center (SOC) functions and cybersecurity operations.
- Expertise in incident response methodologies and digital forensic investigations.
- Experience with SIEM, EDR/XDR, and security monitoring technologies.
- Knowledge of vulnerability assessment and management platforms such as Tenable or Qualys.
- Strong understanding of the MITRE ATT&CK framework.
- Excellent analytical, problem-solving, and decision-making skills.
- Strong communication and stakeholder management capabilities.
- Ability to remain calm and effective during high-pressure cyber incidents.
- Strong vendor governance and relationship management skills.
Preferred Qualifications
- GIAC certifications (GCIH, GCFE, GCFR) or equivalent.
- Palo Alto Cortex XDR/XSIAM certifications.
- Tenable or Nessus certifications.
- Experience with Microsoft Sentinel, Splunk, CrowdStrike, or Microsoft Defender.
- Knowledge of Operational Technology (OT) or Industrial Control Systems (ICS) security.
- Experience with scripting or security automation technologies such as Python, PowerShell, or SOAR platforms.
What We Offer You
- Competitive compensation including a variable annual incentive plan
- Participation in a competitive Defined Contribution Pension package
- Comprehensive benefits package (company paid core coverage, health and dental coverage, flex accounts, disability plans, and optional insurances)
- Leave for all of life’s reasons (vacation, personal, sick, parental)
- Work culture dedicated to safety, diversity & inclusion, and career growth
- Employee Family Assistance Program
- Virtual Healthcare online
- Online training and career development opportunities
Why Toronto
Toronto is Canada's largest city and a global centre for business, innovation, and professional services. As home to Vale Base Metals' corporate offices and technical leadership teams, Toronto provides unique opportunities to collaborate with global stakeholders while contributing to projects that support the responsible production of critical minerals essential for the energy transition.
Include to Transform
At Vale Base Metals, we are committed to ensuring an inclusive work environment where people feel comfortable to be themselves. Vale encourages everyone to express their ideas and opinions and values the plurality of individual profiles. We want our people to feel that all.
We want our people to feel that all voices are heard, all cultures respected and that a variety of perspectives are not only welcome – they are critical to our success. We treat each other fairly and with dignity regardless of race, gender, nationality, ethnic origin, religion, age, sexual orientation, or any other personal consideration that makes us different.Vale is an equal opportunity employer seeking to increase diversity across our operations and improve equal opportunity at Vale and in the mining industry.
Accommodation is available throughout our recruitment process for applicants with disabilities.
Vale uses artificial intelligence to screen, assess, and/or select applicants for this position.
Pay Grade: F2T
Minimum Starting Salary: CAD 119,000
Apply by: Friday, September 04, 2026
#ValeBaseMetals
Company at a glance
We are a global mining company producing iron ore, pellets, and nickel, and we are committed to becoming one of the safest, most trustworthy mining company in the world. With a workforce of 120,000 employees, we work every day to transform natural resources into prosperity and sustainable development for the approximately 30 countries in which we operate.
In addition to mining, we have operations in logistics, energy, and steelmaking. We self-generate 54% of the energy we use, and in Brazil alone, more than 1 million people travel on our passenger trains on the Vitória-Minas and Carajás railroads every year.
We continuously reassert our commitment to the future of our planet by, among other initiatives, protecting 8,500 km² of natural land and investing in R&D to lead the sustainable mining revolution, with the ultimate goal of becoming a carbon-neutral company by 2050.
We are constantly evolving, always aiming to be a diverse and inclusive company. We are pursuing a goal of doubling our female workforce by 2030 and increasing representation among our leadership. Our activities are governed by a policy of transparency, safety and security, ethics, and respect in order to protect the environment and encourage the development of our employees.
We are Vale.
Top Benefits
- Variable annual incentive plan
- Defined contribution pension package
- Health insurance
- Dental coverage
- Flex accounts
- Disability plans
- Optional insurances
- Paid vacation
- Sick leave
- Parental leave
- Employee family assistance program
- Virtual healthcare
- Career development opportunities
Tired of cold applications?
Sign up with Clera and we'll reach out the moment a role actually fits you — no more spraying applications into the void.
Know someone who'd be great for this?