Senior IT Security & GRC Leader

BDO Canada

Toronto

Hybrid

CAD 132,000 - 182,000

Full time

29 hours ago
Be an early applicant
Application generator

An application made for this job — a tailored resume and cover letter that speak straight to the posting.

Get past ATS filters

Job summary

BDO Canada is seeking a Senior Manager, Information Security to lead cybersecurity governance, risk management, and compliance programs across the organization, ensuring policies meet ISO 27001, NIST, SOC 2 and privacy regulations.

You will build and mentor a high-performing GRC team, oversee audits, vendor risk, policy development, and implement a governance framework with automation. The role collaborates with IT, Risk, Legal and business teams; blended work arrangement in Canada.

Qualifications

  • 10+ years in IT security or risk management with 2+ years leading teams managing regulatory or compliance programs.
  • Experience in technology risk consulting, IT audits, and multi-country compliance programs is highly valued.
  • Certifications such as CISSP, CISM, CRISC, CISA, or CGEIT are preferred.

Responsibilities

  • Lead cybersecurity governance, risk management, and compliance programs across the organization.
  • Oversee risk assessments, audits, vendor security evaluations, policy enforcement, and team leadership.
  • Collaborate with IT, Risk, Legal, Compliance and business teams to maintain compliance with ISO 27001, NIST, SOC 2 and privacy regulations.

Skills

Leadership
Communication
Stakeholder Engagement
Regulatory Compliance
Risk Management
GRC Frameworks
InfoSec Governance

Education

Bachelor's degree in Information Technology, Cybersecurity, or related field

Tools

GRC tools
LDAP/AD
SAML
OIDC
SIEM
Vulnerability management
ITSM platforms

Job description

BDO Canada is seeking a Senior Manager, Information Security to lead cybersecurity governance, risk management, and compliance programs across the organization, ensuring policies meet ISO 27001, NIST, SOC 2 and privacy regulations.

You will build and mentor a high-performing GRC team, oversee audits, vendor risk, policy development, and implement a governance framework with automation. The role collaborates with IT, Risk, Legal and business teams; blended work arrangement in Canada.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Information Security & GRC Leader
Information Security & GRC Leader

RiseMe • Toronto

Hybrid
CAD 132,000 - 182,000
Senior Manager, Information Security
Senior Manager, Information Security

BDO Canada • Toronto

Hybrid
CAD 132,000 - 182,000
Senior Manager, Information Security
Senior Manager, Information Security

RiseMe • Toronto

Hybrid
CAD 132,000 - 182,000
Senior Manager, Information Security
Senior Manager, Information Security

BDO Canada LLP • Toronto

Hybrid
CAD 132,000 - 182,000
Senior Cyber Security Analyst - GRC
Senior Cyber Security Analyst - GRC

Metro Supply Chain • Mississauga

On-site
CAD 105,000 - 125,000
Cyber Security Manager
Cyber Security Manager

Akkodis • Toronto

Hybrid
CAD 120,000 - 180,000
Performance-based bonuses
Defined contribution pension plan
Professional growth opportunities
+4
Technology Risk Auditor - IT Controls Specialist
Technology Risk Auditor - IT Controls Specialist

BDO • Calgary

Hybrid
CAD 70,000 - 95,000
Competitive compensation
Benefits from day one
Flexible personal time off
+2
Senior GRC Manager: Audit, Risk & Compliance Leader
Senior GRC Manager: Audit, Risk & Compliance Leader

Fullscript • Ottawa

Hybrid
CAD 140,000 - 165,000
RRSP match program
Flexible benefits package
Training budget and learning
+2
Senior Consultant, Cyber Risk Management & Transformation
Senior Consultant, Cyber Risk Management & Transformation

BDO Canada • Ottawa

On-site
CAD 90,000 - 125,000
Senior Consultant, Cyber Risk Management & Transformation
Senior Consultant, Cyber Risk Management & Transformation

BDO Canada • Toronto

On-site
CAD 100,000 - 140,000