Director, Information Security
- Toronto, ON
- On-site
- Posted Sep 20, 2026
- 1 position
Opens an external site
- Employment type
- Full-time
- Experience level
- Lead · 10+ years
- Minimum education
- Professional degree
- Posting language
- English
- Working hours
- 40 hours per week
Job summary
The Director of Information Security will lead the global security function, defining and executing strategies to protect corporate systems and customer-facing products. They are responsible for maturing security capabilities, managing cyber risks, and ensuring compliance across the organization.
Job details
Dye & Durham, a leading global provider of cloud–based software and technology solutions, provides critical information services and workflows used by clients all over the world to manage their process, information, and regulatory requirements. The company is focused on an unwavering commitment to customer excellence and to the personal and professional growth of its employees. It offers rewarding opportunities for those with legal, tech, financial services and government relations expertise. With clients that include major law firms, financial service institutions and government organizations in Canada, the United Kingdom, Ireland, South Africa and Australia, a fulfilling career awaits you at Dye & Durham. The Director, Information Security (InfoSec) is responsible for leading and evolving the organisation's global information security function, ensuring the protection of corporate systems, employee productivity platforms, customer-facing products, data, and technology assets. This role will define and execute the security strategy, strengthen cyber resilience, manage security risk, and implement scalable security controls that support business growth and regulatory compliance. The successful candidate will build and mature security capabilities from the ground up, improving legacy environments, embedding security best practices across the organisation, and ensuring robust monitoring, governance, and risk management frameworks are in place. Through strong leadership and technical expertise, this role will have a significant impact on safeguarding the organisation, supporting customer trust, and enabling secure business operations globally. Key Responsibilities Lead the global information security function and provide strategic direction across all security domains. Develop and implement the organisation's information security strategy, operating model, and roadmap. Oversee security for corporate platforms, including email, collaboration, and productivity tools. Ensure the security of customer-facing products, applications, and technology services. Build and mature security capabilities and processes, establishing scalable security programmes from the ground up. Identify, assess, and mitigate cyber security risks through effective governance and risk management practices. Lead vulnerability management, penetration testing, threat detection, and ongoing security monitoring activities. Implement compensating controls to address audit findings, compliance requirements, and identified risks. Improve and modernise legacy systems while maintaining appropriate security controls and business continuity. Partner with technology, infrastructure, engineering, product, legal, privacy, and risk teams to embed security-by-design principles. Lead incident response planning, preparedness, and crisis management activities. Develop executive reporting, security metrics, and dashboards to communicate security posture and programme maturity. Build, mentor, and lead a high-performing Information Security team. Skills, Knowledge and Expertise 10+ years of experience in Information Security, Cyber Security, Technology Risk, or related technology leadership roles. Experience building, transforming, or scaling security functions within growing organisations. Strong technical foundation in infrastructure, IT operations, systems administration, networking, or network security. Demonstrated experience leading security operations, vulnerability management, penetration testing, and incident response programmes. Strong understanding of security frameworks and industry standards such as ISO 27001, NIST, CIS Controls, SOC 2, and PCI DSS. Experience implementing governance, risk, and compliance frameworks, including audit remediation and compensating controls. Knowledge of cloud security, identity and access management, application security, and secure software development practices. Proven ability to communicate technical risks and security priorities to executive and non-technical stakeholders. Strong leadership, stakeholder management, and team development capabilities. Relevant certifications such as CISSP, CISM, CISA, CRISC, CCSP, or equivalent are highly desirable. Benefits At Dye & Durham we strive to be visionaries! As a leader in our field, we ensure our employees are ready for the next challenge in their journey with us by offering internal and external training opportunities. We offer competitive salaries and a whole host of benefits including healthcare, pension, company discounts, wellness programs, and paid days off to move house or volunteer for your favourite charity. #DDhp Do you share our DNA? We ask how tomorrow can be better than today We are passionate about solving our customer's challenges Our ideas break boundaries We value different perspectives and encourage dialogue We take ownership and celebrate together
What you’ll do
The Director of Information Security will lead the global security function, defining and executing strategies to protect corporate systems and customer-facing products. They are responsible for maturing security capabilities, managing cyber risks, and ensuring compliance across the organization.
Requirements
Candidates must have 10+ years of experience in information security or related leadership roles with a strong technical foundation. Proficiency in security frameworks like ISO 27001, NIST, and SOC 2, along with proven experience in building scalable security programs, is required.
Benefits
• Healthcare • Pension • Company discounts • Wellness programs • Paid days off • Training opportunities
Listed skills
- Leadership · Preferred
- Compliance · Preferred
- Risk Management · Preferred
- Stakeholder Management · Preferred
Other relevant skills
Identified from the job description. Confirm important requirements above.
- Information security
- Cyber security
- Security strategy
- Risk management
- Governance
- Vulnerability management
- Penetration testing
- Incident response
- Cloud security
- Identity and access management
- Application security
- Security frameworks
- Stakeholder management
- Leadership
- Compliance
- Infrastructure security
- Business Continuity
- Dashboard
- Incident Response
- Communication
- Planning
- Workflow Management
- Stakeholder Management
- Risk Management
- Financial Services
- Regulatory Compliance
- Network Security
- Cloud Security
- Design Elements And Principles
- Penetration Testing
- Auditing
- Technology Solutions
- Security Controls
- Scalability
- Cyber Security
- Vulnerability Management
- Team Building
- Certified Information Systems Security Professional
- Software Development
- Information Technology Operations
- Industry Standards
- Business Operations
- Crisis Management
- System Administration
- Discounts And Allowances
- Identity And Access Management
- Productivity Software
- ISO/IEC 27001
- Certified Information Security Manager
- Certified Information System Auditor (CISA)
Job areas
- Security & Safety
- Management & Leadership
- Technology
- Software
- Information Security Manager
- Cyber Security Manager / Administrator
- Database and Network Professionals Not Elsewhere Classified
- Information Security Engineers
- Computer Occupations, All Other
More jobs you can apply to directly
Similar opportunities posted by employers hiring on Jobs.ca, with no external application form.
Bédard Ressources Humaines
Plant Manager - Food Industry #1812
SponsoredDirect employerEasy Apply- On-site
- Posted Sep 9, 2026
Bédard Ressources Humaines
Table Games Trainer #1414
SponsoredDirect employerEasy Apply- On-site
- Posted Sep 8, 2026
Bédard Ressources Humaines
ITAD Services Representative #1265
SponsoredDirect employerEasy Apply- On-site
- Mississauga, ON
- Posted Sep 16, 2026
