About the Role
The Supervisor of Infrastructure is responsible for the operational leadership, security, and reliability of the organization’s cloud and on-prem infrastructure. This role provides hands-on technical leadership while supervising infrastructure and network staff, ensuring services are secure, compliant, and aligned with organizational priorities.
Reporting to the Manager / Director of IT, the Supervisor of Infrastructure plays a key role in advancing our cloud-first and Zero Trust strategy, strengthening cybersecurity controls, and supporting mission-critical systems in a hybrid (Private Cloud + on-prem) environment.
Key Responsibilities
Infrastructure & Cloud Leadership
- Lead the administration, optimization, and security of Microsoft 365 environments, including Exchange, SharePoint, OneDrive, Teams, Intune, and Defender.
- Oversee hybrid infrastructure, including 3rd-party private cloud, on-prem VMware vSphere, and secure connectivity between environments.
- Architect and manage Microsoft Azure (IaaS/PaaS, networking, identity, security).
- Experience designing and implementing cloud landing zones and Azure governance frameworks (RBAC, policies, management groups).
- Experience with hybrid identity architecture, including Azure AD Connect and identity lifecycle management.
- Manage and maintain hybrid identity infrastructure, including Active Directory and Microsoft Entra ID, ensuring secure identity lifecycle management, group policy administration, synchronization, and role-based access controls.
- Administer and optimize Microsoft Intune (MDM/MAM) for device management, endpoint security, compliance policies, and application deployment across corporate and mobile devices.
- Design and maintain resilient network infrastructure, including firewalls, VPNs, VLANs, routing, and network segmentation.
- Oversee Microsoft Teams Telephony and collaboration services, including voice routing, call policies, licensing, and integration with PSTN providers.
- Develop and execute roadmap to gradually migrate services to Azure.
- Experience implementing high-availability and business continuity architectures across hybrid environments.
- Experience securing and integrating third-party SaaS applications within Microsoft 365 ecosystem.
- Ensure infrastructure services meet availability, performance, and security standards.
Security, Risk & Compliance
- Implement and enforce Zero Trust and Conditional Access policies using Azure AD (Entra ID).
- Act as CISO to develop and implement IT security incident response plan
- Strengthen security posture through Microsoft Defender for Endpoint, Defender for Identity, Defender for Cloud Apps, Sentinel, and vulnerability management.
- Exposure to Microsoft Defender for Cloud and cloud security posture management (CSPM).
- Leverage Microsoft Purview to reduce data exfiltration risk and ensure sensitive information is appropriately classified and protected.
- Experience developing and maintaining a formal cybersecurity program aligned with recognized frameworks (e.g., NIST CSF, CIS Controls, ISO 27001).
- Support audit readiness, privacy, and regulatory compliance through strong controls, documentation, and monitoring.
- Experience supporting privacy and regulatory compliance requirements.
- Participate in security incident response and lead technical remediation efforts.
- Experience implementing Zero Trust Architecture in hybrid environments.
- Experience managing third-party risk and vendor security assessments.
- Ability to translate technical risk into business impact for senior leadership and Board reporting.
- Familiarity with external attack surface management and vulnerability remediation programs.
- Implement and maintain device compliance and endpoint security policies aligned with Zero Trust principles.
- Oversee endpoint lifecycle management, including device provisioning, configuration management, patching, and secure remote access.
- Oversee backup and disaster recovery solutions using Veeam, ensuring recovery objectives are met.
Supervision & People Management
- Supervise, coach, and support infrastructure and network staff, including workload assignment, performance feedback, and skill development.
- Set clear expectations, priorities, and service standards for the infrastructure team.
- Conduct performance reviews and contribute to recruitment, onboarding, and training.
- Foster a culture of accountability, collaboration, and continuous improvement.
- Escalate and resolve complex technical or service issues impacting staff or operations.
Operational Oversight & Planning
- Establish and maintain operational procedures, standards, and documentation.
- Monitor system health, capacity, and risks; proactively address issues before they impact service delivery.
- Collaborate with IT leadership and cross-functional teams on projects, upgrades, and initiatives.
- Provide Tier-3 escalation support and technical decision-making for complex infrastructure issues.
- Contribute to infrastructure roadmaps, lifecycle planning, and continuous improvement initiatives.
What You Bring
- 5–7 years of progressive experience in infrastructure, cloud, and network engineering, including VMWare, Azure and Microsoft 365.
- Demonstrated experience supervising or leading technical staff (formal or acting capacity).
- Strong expertise in:
- Microsoft Azure (compute, networking, identity, security)
- Microsoft Intune and endpoint management
- Microsoft 365 security and collaboration tools
- Microsoft Purview (DLP, Information Protection, retention, eDiscovery)
- Microsoft Defender for Identity and identity threat detection
- Hands-on experience managing firewalls (Fortinet or similar) and VPN technologies.
- Solid understanding of Zero Trust principles and security frameworks (NIST, CIS, ISO 27001).
- Experience with backup, disaster recovery, and hybrid cloud integrations.
- Scripting and automation skills using PowerShell and/or Azure CLI.
- Strong communication, documentation, and problem-solving skills.
Certifications (Preferred)
- Microsoft Certified: Azure Administrator or Microsoft 365 Administrator
- CompTIA Security+, AZ-500, CISSP, or CCSP
- VMware Certified Professional (VCP) – asset
- Network or firewall certification (e.g., Fortinet NSE, CCNP) – asset
Why Join Us
- Play a leadership role in a mission-driven organization where infrastructure and security directly support critical services.
- Work in a modern Azure, Microsoft 365, and Zero Trust environment.
- Opportunity to lead and develop technical staff while remaining hands-on.
- Support for professional development and certifications.
- Flexible hybrid work model with 50% onsite in Toronto.
File #: 26-001 - Please submit your cover letter and resume no later than the deadline date at 11:59 PM
External Closing Date: Friday, April 10, 2026
Management Category (Permanent)
Salary: $109,007.37 to $130,440.26 – Under Review
All communications will be held in strict and professional confidence.
As the Catholic Children’s Aid Society works under the auspice of the French Language Service Act, we welcome Francophone individuals to apply for all posted positions.
We appreciate all applications received. All communications will be held in strict and professional confidence.
Only those candidates selected for an interview will be contacted.
We thank all applicants for their submissions.
CCAS is committed to a selection process that values equity, diversity, and inclusion and also reflects the community serves.
Individuals who have knowledge and experience working with people from multiple cultural and racial backgrounds and equity deserving groups (e.g., Black, Indigenous, LGBTQ2s+, etc.) are strongly encouraged to apply.
Anti-Oppression/Anti-Racism at CCAS
CCAS is committed to having a workforce that is reflective of the diversity of the City of Toronto and strongly encourages application from all qualified individuals, especially those who can provide different perspectives and contribute to a further diversification of ideas.
Accommodation at CCAS
We are committed to a selection process and work environment that is inclusive and barrier free. Accommodation will be provided in accordance with the Ontario Human Rights Code. Applicants need to make any accommodation requests for the interview or selection process known in advance by contacting the Human Resources Department at 416-395-1500. Human Resources will work together with the hiring committee to arrange reasonable and appropriate accommodation for the selection process which will enable you to be assessed in a fair and equitable manner.
The Catholic Children's Aid Society of Toronto is committed to equity and diversity and encourages applicants from varied backgrounds. We will accommodate disabilities in the recruitment process in accordance with the Ontario Human Rights Code. Should an applicant require an accommodation during the recruitment process, please contact the Human Resources Department.