Skip to content

Open nowPosted 15 days ago

Director, Information Security

dyedurham10 open roles

Where
25 York St, Toronto, ON M5J 2V5, Canada
Get the CV for this job

From $25 per CV, paid once. No subscription.

Your applicationOpen nowDirector, Information Securitydyedurham · 25 York St, Toronto, ON M5J 2V5, Canada
  1. YouYes, apply to this one.

  2. CV RocketCV written for this posting.

  3. 25 readersRecruiter, hiring manager, skeptic. Round after round.

  4. CV RocketApplied on dyedurham's own form.

The reply lands in your private mailbox

3×more interviews than doing it yourself with ChatGPT.

The clock on this job

Early applications get read.

7.8% of postings close within 7 days. Measured by our own scanner across the market.

Share of postings closed within
  1. 1.7%1 day
  2. 3.5%3 days
  3. 7.8%7 days
  4. 14.6%14 days
  5. 34.1%30 days
This job: posted 15 days ago

The posting

The Director, Information Security (InfoSec) is responsible for leading and evolving the organisation's global information security function, ensuring the protection of corporate systems, employee productivity platforms, customer-facing products, data, and technology assets. This role will define and execute the security strategy, strengthen cyber resilience, manage security risk, and implement scalable security controls that support business growth and regulatory compliance. The successful candidate will build and mature security capabilities from the ground up, improving legacy environments, embedding security best practices across the organisation, and ensuring robust monitoring, governance, and risk management frameworks are in place. Through strong leadership and technical expertise, this role will have a significant impact on safeguarding the organisation, supporting customer trust, and enabling secure business operations globally. Key Responsibilities  

Lead the global information security function and provide strategic direction across all security domains. Develop and implement the organisation's information security strategy, operating model, and roadmap. Oversee security for corporate platforms, including email, collaboration, and productivity tools. Ensure the security of customer-facing products, applications, and technology services. Build and mature security capabilities and processes, establishing scalable security programmes from the ground up. Identify, assess, and mitigate cyber security risks through effective governance and risk management practices. Lead vulnerability management, penetration testing, threat detection, and ongoing security monitoring activities. Implement compensating controls to address audit findings, compliance requirements, and identified risks. Improve and modernise legacy systems while maintaining appropriate security controls and business continuity. Partner with technology, infrastructure, engineering, product, legal, privacy, and risk teams to embed security-by-design principles. Lead incident response planning, preparedness, and crisis management activities. Develop executive reporting, security metrics, and dashboards to communicate security posture and programme maturity. Build, mentor, and lead a high-performing Information Security team.

  Skills, Knowledge and Expertise

10+ years of experience in Information Security, Cyber Security, Technology Risk, or related technology leadership roles. Experience building, transforming, or scaling security functions within growing organisations. Strong technical foundation in infrastructure, IT operations, systems administration, networking, or network security. Demonstrated experience leading security operations, vulnerability management, penetration testing, and incident response programmes. Strong understanding of security frameworks and industry standards such as ISO 27001, NIST, CIS Controls, SOC 2, and PCI DSS. Experience implementing governance, risk, and compliance frameworks, including audit remediation and compensating controls. Knowledge of cloud security, identity and access management, application security, and secure software development practices. Proven ability to communicate technical risks and security priorities to executive and non-technical stakeholders. Strong leadership, stakeholder management, and team development capabilities. Relevant certifications such as CISSP, CISM, CISA, CRISC, CCSP, or equivalent are highly desirable.

  Benefits   At Dye & Durham we strive to be visionaries! As a leader in our field, we ensure our employees are ready for the next challenge in their journey with us by offering internal and external training opportunities. We offer competitive salaries and a whole host of benefits including healthcare, pension, company discounts, wellness programs, and paid days off to move house or volunteer for your favourite charity.   #DDhp

From $25, paid onceGet the CV for this job

What happens when you press

One press. We do the rest.

  1. A CV for this posting

    Written against dyedurham's own wording, from every piece of relevant proof in your profile.

  2. 25 readers review it

    Recruiter, hiring manager, skeptic and more read every draft, round after round. You get the best round.

    The review screen in CV Rocket: how each CV was read, round by round.
  3. We apply on dyedurham's form

    Our application engine gets through the hardest forms there are. Where a question needs you, AI suggests the best answer. Don't want us applying from our IP addresses? Use our Chrome extension: we apply straight from your own browser.

    An application in CV Rocket: every answer filled in on the employer's form.
  4. Every reply, sorted

    dyedurham's answer lands in your private mailbox, and we classify it on arrival: interview, question, rejection.

    The CV Rocket inbox: each employer reply classified as an interview, an action or a rejection.
  5. Reply with AI

    AI helps you write the email, checks it and sends it. We show you whether the recruiter read it.

  6. The interview in your calendar

    Full integration with your calendar. The invitation goes straight in.

    An interview invitation in the CV Rocket inbox, added to the candidate's calendar.
Get the CV for this job

From $25 per CV, paid once. No subscription.

Why it works

3×

more interviews than doing it yourself with ChatGPT.

ChatGPT writes a CV and never learns what happened to it. We see every reply. For each CV we know:

  • How it was written, and how the review scored it
  • When we applied, and how long after the posting went up
  • Which posting, which company, which city
  • Who got the interview, and who heard nothing

That is how we know which CVs get called.

Get the CV for this job

From $25 per CV, paid once. No subscription.

The numbers game

More applications. More interviews.

Every application goes out with its own CV, written for that posting and paid once. Send enough of them and the law of large numbers finds you the job.

By hand5–10
With CV Rocket100
applications a day

Nearby

Live postings like this one

Same employer first, then the same role elsewhere.

Before you press

Straight answers

Get the CV for this job

From $25 per CV, paid once. No subscription.

What if my background isn't good enough?

We make the most of the background you have. The CV uses every piece of relevant proof your profile holds, and one of the 25 readers reads your whole profile and flags what the CV left out.

Do you really apply for me?

Yes, on the employer's own form, the hardest ones included. Where a question needs you, you answer it right there and AI suggests the best answer. Don't want us applying from our IP addresses? Use our Chrome extension: we apply straight from your own browser.

Is it a subscription?

No. You pay once per CV, from $25. Every application goes out with its own CV, written for that posting.

One job. One CV.
Paid once.

Pick the posting you want. We write for it, apply for you and catch the reply.

Get the CV for this job

From $25 per CV, paid once. No subscription.