Director Information Security

Hire DigITalent Inc.

Toronto

On-site

CAD 180,000 - 240,000

Full time

25 hours ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Hire DigITalent Inc. is seeking a Director, Information Security in Toronto, ON (on-site). You will lead the enterprise information security program, align it with business growth, and ensure regulatory compliance across retail, e-commerce, and corporate infrastructure.

The role demands 10+ years in IT/security, strong leadership, and deep expertise in risk management, IAM, and secure cloud architectures. On-site work in Toronto with strategic cross-functional collaboration.

Qualifications

  • 10+ years of experience in Information Technology or cybersecurity leadership.
  • Experience leading security strategy and program execution.

Responsibilities

  • Develop and execute enterprise information security roadmap aligned with business goals.
  • Embed security-by-design across IT operations and platforms.
  • Lead 24/7 SOC operations, threat monitoring, and incident response.

Skills

Information security
Cybersecurity leadership
Regulatory compliance
Security frameworks
IAM & PAM

Job description

Job Title: Director, Information Security

Location: Toronto, ON (On-site required)

Position Overview

The Director, Information Security is responsible for establishing, leading, and executing the enterprise-wide cybersecurity strategy. This role ensures the protection of corporate, e-commerce, and various technology environments while aligning security practices with overall business growth, operational resilience, and regulatory compliance.

Key Accountabilities
Strategic Leadership
  • Develop and execute an enterprise information security roadmap that supports business goals and risk tolerance.
  • Partner with senior cross-functional leaders to embed security-by-design principles across IT operations and foundational technology platforms.
  • Manage operational and capital security budgets to ensure cost-effective protection and compliance.
Functional & Operational Security
  • Enterprise Risk Management: Maintain a continuous IT risk assessment framework to identify, quantify, and mitigate cybersecurity threats across retail, e-commerce, and corporate infrastructure.
  • Regulatory Compliance: Ensure adherence to industry regulations and compliance frameworks (e.g., PCI-DSS, PIPEDA, GDPR, ISO) through ongoing audits and control validations.
  • Policy & Governance: Formulate, publish, and enforce data-driven security standards and policies across the organization.
  • Security Architecture: Integrate secure-by-design principles, threat modeling, and NIST framework methodologies into cloud, network, and store systems.
  • Identity & Access Management (IAM): Oversee Zero Trust architecture, privileged access management (PAM), and multi-factor authentication systems.
  • Threat Monitoring & SOC: Direct 24/7 Security Operations Center (SOC) activities using threat intelligence and data analytics to detect and analyze anomalous behavior.
  • Vulnerability Management: Drive systematic vulnerability scanning, penetration testing, and risk-prioritized remediation.
  • Incident Response: Lead response strategies for security incidents, directing rapid containment and performing empirical root-cause analysis to prevent recurrence.
  • Security Awareness: Deliver enterprise-wide security training and phishing simulations to build a security-first organizational culture.
  • Third-Party Risk Management: Continuously assess and monitor third-party vendors and supply chain partners to uphold enterprise security standards.
  • Accountable for team productivity, engagement, talent succession, and bench strength.
  • Establish clear, measurable performance objectives aligned with departmental objectives.
  • Foster a collaborative environment that encourages technical growth, knowledge sharing, and constructive feedback.
  • Guide team members in understanding the broader organizational impact of their initiatives.
Qualifications
  • 10+ years of progressive experience in Information Technology.
  • 10+ years of leadership experience in cybersecurity or IT risk roles.
  • Strong expertise in security frameworks and regulatory compliance
  • Deep technical understanding of network design, tiered systems, and secure cloud architectures.
  • Professional certifications such as CISSP, CISM, or CISA (or equivalent demonstrated experience) are strongly preferred.
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Enterprise Information Security Director
Enterprise Information Security Director

Hire DigITalent Inc. • Toronto

On-site
CAD 180,000 - 240,000
Data Security Advisor - Data Strategy
Data Security Advisor - Data Strategy

Altis Technology • Toronto

On-site
CAD 90,000 - 120,000
Cyber Security Manager
Cyber Security Manager

Akkodis • Toronto

Hybrid
CAD 120,000 - 180,000
Performance-based bonuses
Defined contribution pension plan
Professional growth opportunities
+4
Enterprise Security Specialist
Enterprise Security Specialist

Cprvision • Whitchurch-Stouffville

Hybrid
CAD 120,000 - 135,000
Flexible working arrangements
Comprehensive benefits package
Annual bonus program
+1
IT Security Engineer
IT Security Engineer

Socket.dev • Burnaby

On-site
CAD 90,000 - 130,000
Director IT Infrastructure and Cloud
Director IT Infrastructure and Cloud

HeadSource International • Toronto

On-site
CAD 130,000 - 160,000
Director, Cybersecurity Operations
Director, Cybersecurity Operations

Medavie Inc. • City of Moncton

On-site
CAD 120,000 - 172,000
Information Security Architect
Information Security Architect

Toronto Police Service • Toronto

On-site
CAD 120,000 - 180,000
Vice President – Cybersecurity
Vice President – Cybersecurity

TEEMA • Toronto

On-site
CAD 180,000 - 260,000
VP, Cyber and Information Security Officer
VP, Cyber and Information Security Officer

Jobtailor • Sault Ste. Marie

On-site
CAD 180,000 - 260,000