Enable job alerts via email!

Principal Information Security Advisor

Aylo Careers

Montreal

Hybrid

CAD 100,000 - 130,000

Full time

30+ days ago

Job summary

A technology-focused company in Montreal is looking for a Principal Information Security Advisor to lead security strategy and provide expertise across teams. The ideal candidate will have over 10 years of experience in information security and strong technical skills. This role offers flexibility with a hybrid work model and involves collaboration with various departments to ensure security compliance while supporting the company’s diverse mission.

Qualifications

  • 10+ years of progressive experience in information security.
  • Deep knowledge of information security frameworks like ISO 27001.
  • Professional certifications such as CISSP, CISM, or equivalent.

Responsibilities

  • Provide guidance on security strategy and best practices.
  • Lead technical advice during security incidents.
  • Oversee regular risk assessments and audits.

Skills

Information Security
Risk Management
Incident Response
Communication Skills

Education

Bachelor’s or Master’s degree in Information Security or related field

Tools

Jira
Confluence
Job description

Established in 2004, we are a tech pioneer offering world-class adult entertainment and games on some of the internet’s safest and most popular platforms. With the support of an international team of dynamic and collaborative innovators, we are on a mission to enable safe user experiences and empower our communities by celebrating diversity, inclusion, and expression — all while maintaining robust trust-and-safety protocols.

We embrace the best of both worlds! Local talent can thrive in our collaborative office space with the flexibility of a hybrid work environment, while remote team members play an integral role in shaping our dynamic culture from afar. We have offices in Montreal (Quebec), Austin (Texas) and Nicosia (Cyprus).

*A select number of positions require full-time in office attendance*

As the Principal Information Security Advisor, you will act as a senior subject matter expert and a key partner to the Information and GRC Director. our role is critical in strategically guiding and maturing our information security program. Leveraging your deep expertise, you will provide expert counsel to product, engineering, compliance, and legal teams to ensure our platforms, data, and user experiences remain secure and aligned with business objectives.

What You'll Be Doing:

  • Serve as the primary technical expert for information security, providing guidance and recommendations on security strategy, architecture, and best practices.
  • Architect, review, and mature information security policies, standards, and procedures in collaboration with internal and external stakeholders.
  • Identify, assess, and advise on information security risks across the organization, recommending effective mitigation strategies.
  • Act as the lead technical advisor during security incidents, guiding investigation, root cause analysis, and remediation planning.
  • Drive and oversee regular risk assessments, audits, and third-party vendor security reviews, and communicate findings to relevant stakeholders.
  • Drive security awareness initiatives and contribute to training programs across the company.
  • Partner with product, engineering, and business teams to embed security controls into product design and business processes.
  • Monitor industry trends, threat landscapes, and regulatory changes, translating these insights into actionable recommendations.
  • Serve as the senior subject matter expert for compliance initiatives, providing critical guidance during audits and regulatory reviews.

What You'll Need to Be Successful:

Must-Haves:

  • 10+ years of progressive experience in information security, with a strong record of hands-on technical contributions.
  • Bachelor’s or Master’s degree in Information Security, Computer Science, or a related field, or equivalent experience.
  • Deep knowledge of information security frameworks (e.g., ISO 27001, NIST, SOC 2).
  • Demonstrated experience in the architecture, development, and implementation of security programs in a technology-driven environment.
  • Strong understanding of risk management, incident response, and compliance.
  • Proven ability to collaborate cross-functionally with both technical and non-technical stakeholders.
  • Excellent communication and interpersonal skills, with the ability to influence and educate at all levels.
  • Professional certifications such as CISSP, CISM, CIPP, or equivalent.

Nice-to-Haves:

  • Experience in the digital media or online entertainment industry.
  • Familiarity with Jira, Confluence, or similar tools for project management.
  • Experience presenting complex security topics and strategies to executive leadership.
  • Knowledge of cloud security and DevSecOps best practices.

As an equal opportunity employer, we celebrate diversity and are committed to creating an inclusive environment for all employees

In this role you may be exposed to adult content

Create a Job Alert

Interested in building your career at Aylo Careers? Get future opportunities sent straight to your email.

Apply for this job

*

indicates a required field

First Name *

Last Name *

Email *

Phone

Resume/CV

Enter manually

Accepted file types: pdf, doc, docx, txt, rtf

Select...

Select...

Select...

Select...

Select...

FRENCH TO FOLLOW:

This disclaimer is to notify you that personal data relating to you has been collected by Aylo (“Controller”). This includes your personal data either submitted by you, obtained from publicly available sources (e.g., LinkedIn), or provided to us by someone with your consent, referred you for potential employment. Note that, you can withdraw your consent at any time by reaching out to us.

Your personal data has been collected and will be processed by Controller for the following purposes:

  • managing our recruitment related activities;
  • setting up and conducting interviews and tests for you;
  • evaluating and assessing the results pertaining to interviews and tests; and
  • for purposes otherwise needed for evaluating your candidacy for employment at our company

provided however, that we may not process your data for all of the aforementioned purposes.

Such processing is legally permissible under Art. 6(1)(f) of Regulation (EU) 2016/679 (General Data Protection Regulation) as necessary for the purposes of the legitimate interests pursued by a Controller, which are the solicitation, evaluation, and selection of applicants for employment.

Your personal data will be shared with Greenhouse Software, Inc., a cloud services provider located in the United States of America and engaged by Controller to help manage its recruitment and hiring process on Controller’s behalf. Accordingly, if you are located outside of the United States, your personal data has been transferred to the United States subject to appropriate additional safeguards under Standard Contractual Clauses.

Your personal data will be retained by Controller as long as we determine it is necessary to evaluate your application for employment and according to our data retention period specified in our privacy policy.

If you would like to know more about our privacy/data retention policy, feel free to check out our privacy policy.

*******************************************************************************************

Get your free, confidential resume review.
or drag and drop a PDF, DOC, DOCX, ODT, or PAGES file up to 5MB.