Senior Director, Information Security and Compliance

foundant-careers

Bozeman (MT)

Remote

CAD 180,000 - 240,000

Full time

6 days ago
Be an early applicant
Application generator

Turn this role into an interview — a resume and cover letter built around what this employer wants.

Get past ATS filters

Benefits offered by this job

Tuition reimbursement
Lifestyle reimbursements
Flexible PTO
Internal mobility
Professional development

Job summary

Foundant is seeking a senior security leader to own and mature the information security and GRC program across five product lines and multiple regions. You will lead the Head of Technical Security and Head of GRC, align teams on a shared security vision, and act as executive voice during incidents.

You will drive policy development, risk management, and audits (SOC 2, ISO 27001), partner with Product/Engineering, and report metrics to leadership and the Board.

Qualifications

  • 8+ years of progressive leadership in information security and/or GRC.
  • Experience building or maturing security/compliance for a multi-product SaaS.
  • Experience navigating international regulatory frameworks (GDPR, UK GDPR, Australian Privacy Act, SOC 2, ISO 27001).
  • Experience leading security incident response programs and acting as a spokesperson.
  • Experience developing senior technical and compliance leaders.
  • CISSP, CISM or CRISC preferred, but not required.
  • No specific degree requirement – equivalent professional experience accepted.
  • Must be legally eligible to work in the United States.

Responsibilities

  • Own and drive the maturity of Foundant's information security and GRC program end to end.
  • Lead and develop the Head of Technical Security and Head of GRC.
  • Serve as Foundant's executive voice during security incidents and communications.
  • Build and mature GRC program – policies, risk registers, control frameworks, audits (SOC 2, ISO 27001).
  • Partner with Product and Engineering to embed security and privacy by design.
  • Develop and present security metrics to executive leadership and the Board.
  • Own third-party and vendor risk management.
  • Represent Foundant's security posture during enterprise sales cycles and due diligence.
  • Other duties as assigned.

Skills

Leadership
Security program development
Regulatory frameworks
Incident response leadership
People management
CISSP/CISM/CRISC
US work eligibility

Job description

A NOTE ON HOW TO REACH US

We're truly grateful that so many people have Foundant on their radar - it means a lot that our work resonates with others. That said, due to the high volume of direct messages and emails we receive, cold outreach isn't the preferred way to be considered for a role, and we're not able to prioritize applications submitted this way.

About Foundant

At Foundant, we build mission-critical software for the social good ecosystem - helping foundations, grantmakers, nonprofits, and community organizations streamline their work, strengthen relationships, and maximize their impact. We serve the giving community worldwide with a comprehensive suite of solutions spanning grant management, community foundation software, and giving analytics.

We're a unified company shaped by strong roots across our product portfolio, and we operate with intention and purpose. Our team of ~350 people across six countries is connected by a shared North Star: to be the trusted partner and strategic advisor to the communities we serve.

Where You’ll Work
  • As a remote-first workplace, we believe in offering flexibility and the freedom to work where it suits you best, while staying connected through technology. Our global network of talent is supported by physical office hubs and virtual collaboration, fostering a dynamic environment where innovation and growth thrive.
  • With office locations in Bozeman, MT, Toronto, Canada, and Dublin, Ireland, you'll be part of a globally connected team. Whether you're working remotely or from one of our office locations, you'll be contributing to a vibrant, collaborative culture focused on driving meaningful impact across the world.
What You’ll Do
  • You'll own and drive the maturity of Foundant's information security and GRC program end to end - setting the strategic roadmap that protects the trust our clients place in us across five products and every region we serve.
  • You'll lead and develop our Head of Technical Security and Head of GRC, aligning both teams around a shared vision for reducing risk and building a security-first culture across the organization.
  • You'll serve as Foundant's executive voice during security incidents, communicating clearly and confidently with clients, leadership, and regulators - because how we show up when things go wrong says as much about who we are as how we operate day to day.
  • You'll build and mature Foundant's GRC program - policies, risk registers, control frameworks, and audits (e.g., SOC 2, ISO 27001) - ensuring compliance across US, Canadian, European, UK, and Australian regulatory requirements.
  • You'll partner closely with Product and Engineering leaders to embed security and privacy by design into all five product lines.
  • You'll develop and present security and compliance metrics to executive leadership and the Board, translating technical risk into business impact and clear priorities.
  • You'll own third-party and vendor risk management, ensuring our extended ecosystem meets the same standard of care we hold ourselves to.
  • You'll represent Foundant's security posture to clients and prospects during enterprise sales cycles, security reviews, and due-diligence questionnaires.
  • Other duties as assigned.
What You’ll Need
  • 8+ years of progressive leadership experience in information security and/or governance, risk, and compliance (GRC), including experience leading both technical security and compliance functions.
  • Demonstrated experience building or maturing a security and compliance program for a multi-product SaaS company.
  • Experience navigating international regulatory and compliance frameworks (e.g., GDPR, UK GDPR, Australian Privacy Act, SOC 2, ISO 27001).
  • Experience leading security incident response programs, including experience serving as a public-facing or client-facing spokesperson during incidents.
  • Experience managing and developing senior technical and compliance leaders.
  • CISSP, CISM, or CRISC preferred, but not required.
  • No specific degree requirement - equivalent professional experience is accepted.
  • Must be legally eligible to work in the United States.
What You’ll Bring to our Team Dynamics

Strategic Thinking

Translates Foundant's North Star into a multi-year security and compliance roadmap that scales across five product lines and every region we operate in, adapting the plan as regulatory and threat landscapes shift.

Decision-Making

Makes fast, values-aligned calls under pressure - especially during security incidents - using evidence and risk data to protect clients and the business while keeping leadership clearly informed.

Change Management

Leads with calm, direct communication during incidents and organizational change alike, serving as a steady and credible voice for clients, regulators, and internal teams when it matters most.

Staff Development

Coaches the Head of Technical Security and Head of GRC to grow as leaders in their own right, giving them the feedback, autonomy, and visibility to build strong teams beneath them.

Collaboration and Learning

Builds trusted partnerships with Product, Engineering, and Legal leaders across a global organization, and stays ahead of an evolving threat and regulatory landscape by continually learning and sharing insight with the team.

Why You’ll Love Working at Foundant
  • At the heart of everything we do is a commitment to innovation and making a positive impact. Whether you’re working on projects that empower not-for-profits, community foundations, or corporations, your contributions will help drive real-world change.
  • We offer competitive salary and benefits, including tuition, and lifestyle reimbursements, and bespoke mindfulness and fitness initiatives.
  • With our Flexible PTO policy, you’ll have the freedom to manage your time in a way that supports your personal well-being and professional success.
  • We’re committed to your professional and personal development. With our merger, you'll have the chance to collaborate across teams, giving you exposure to diverse ideas, expertise, and projects that span multiple industries.
  • As part of a larger organization, you’ll have even more opportunities to grow your career. Whether it’s exploring new roles, leadership opportunities, or shifting to a different department, we support internal mobility to help you achieve your career goals
  • You’ll enjoy autonomy and responsibility, empowering you to approach your work creatively and independently, fostering innovation and independent thought.
  • Employee recognition is a core part of our culture. When you do a great job, we make sure everyone knows about it!

Foundant is an equal opportunity employer, committed to building a diverse workforce that represents the communities we serve. We welcome and encourage applications from all qualified candidates, and will consider all applicants without regard to race, color, citizenship, religion, sex, marital/family status, sexual orientation, gender identity, Indigenous status, age, disability, or individuals who may require accommodation.

Foundant is also committed to providing accommodations throughout the interview and employment process. Accommodations are available upon request for candidates participating in all aspects of the selection process. If you have accessibility requirements during the recruitment process and require accommodation, please contact hr@smartsimple.com.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Senior Director, Information Security and Compliance
Senior Director, Information Security and Compliance

Foundant • United States

Remote
USD 150,000 - 210,000
Tuition reimbursement
Lifestyle reimbursements
Flexible PTO
+2
Senior Director, Cloud Operations
Senior Director, Cloud Operations

Foundant + smartsimple • United States

Remote
USD 180,000 - 260,000
Tuition reimbursement
Lifestyle reimbursements
Mindfulness & fitness initiatives
+3
Senior Director, Cloud Operations
Senior Director, Cloud Operations

Foundant • United States

On-site
USD 180,000 - 230,000
Tuition reimbursement
Lifestyle reimbursements
Flexible PTO
+1
Senior Director, Cloud Operations
Senior Director, Cloud Operations

foundant-careers • Bozeman (MT)

Hybrid
CAD 180,000 - 240,000
Tuition reimbursement
Flexible PTO
Internal mobility opportunities
Client Support Specialist - Fund Accounting
Client Support Specialist - Fund Accounting

Foundant • Bozeman (MT)

Remote
CAD 52,000 - 70,000
Tuition reimbursement
Lifestyle reimbursements
Flexible PTO
Client Support Specialist - Fund Accounting
Client Support Specialist - Fund Accounting

Foundant + smartsimple • United States

Remote
USD 52,000 - 76,000
Competitive salary
Tuition reimbursement
Lifestyle reimbursements
+5
Support Consultant EMEA
Support Consultant EMEA

Foundant + smartsimple • United States

Remote
USD 70,000 - 90,000
Tuition reimbursement
Lifestyle reimbursements
Flexible PTO
Talent Manager
Talent Manager

foundant-careers • United States

Hybrid
USD 120,000 - 180,000
Tuition reimbursement
Flexible PTO
Lifestyle reimbursements
+2
Director of Project Management Office (PMO)
Director of Project Management Office (PMO)

foundant-careers • Bozeman (MT)

Remote
CAD 120,000 - 180,000
Tuition reimbursement
Lifestyle reimbursements
Mindfulness and fitness initiatives
Client Support Specialist - Fund Accounting
Client Support Specialist - Fund Accounting

foundant-careers • United States

Remote
USD 45,000 - 65,000
Tuition reimbursement
Lifestyle reimbursements
Mindfulness initiatives
+2