Senior Manager, Information Security

Posted 4 hours ago

Apply Now

Resume Score

Check how well your resume matches this job before you apply.

Sign in to check score

About the role

  • Senior Manager leading BDO Canada’s cybersecurity governance, risk, and compliance programs. Overseeing audits, vendor risk, security policies, regulatory compliance, and GRC team leadership.

Responsibilities

  • Lead cybersecurity governance, risk management, and compliance programs
  • Develop, manage, and execute IT security governance, risk, and compliance strategy
  • Oversee risk assessments, audits, vendor security evaluations, and policy enforcement
  • Lead and mentor security analysts or specialists
  • Build, mentor, and manage a high-performing GRC team
  • Track objectives and key results and foster continuous development
  • Identify, assess, and monitor IT-related risks
  • Evaluate risk exceptions and oversee tactical and strategic resolution plans
  • Plan and coordinate internal audits, third-party audits, and regulatory assessments
  • Ensure corrective actions are implemented effectively
  • Develop, update, and enforce IT security policies, standards, procedures, and guidelines
  • Conduct security assessments of vendors, partners, and cloud providers
  • Oversee GRC platform deployment and configuration for control monitoring, reporting, and continuous improvement
  • Implement cybersecurity awareness programs and deliver security and compliance training
  • Advise executive leadership and stakeholders on IT risk and compliance strategy
  • Collaborate with IT, Risk, Legal, Compliance, and business teams on ISO 27001, NIST, SOC 2, GDPR, HIPAA, and related requirements

Requirements

  • Bachelor’s degree in Information Technology, Cybersecurity, Information Security, Computer Science, or a related field
  • 10+ years in IT security or risk management
  • 2+ years leading teams managing regulatory or compliance programs
  • Experience in technology risk consulting, IT audits, and multi-country compliance programs valued
  • CISSP, CISM, CRISC, CISA, or CGEIT preferred
  • Proficiency in GRC tools
  • Familiarity with identity/access management, including LDAP/AD, SAML, and OIDC
  • Knowledge of cloud security
  • Experience integrating with SIEM, vulnerability management, and ITSM platforms
  • Strong leadership, communication, stakeholder engagement, problem-solving, and decision-making abilities
  • Ability to translate complex compliance requirements into actionable strategies

Benefits

  • Award-winning people-first culture
  • Personal and professional growth opportunities
  • Extensive learning and development opportunities
  • Community involvement and local and national charity events
  • Comprehensive benefits from day one
  • Flexible personal time off policy
  • Wellness initiative reimbursement
  • Flexible blended work model with office, client-site, and virtual work
  • Inclusive and accessible workplace
  • Accommodation support during the application process

Job type

Full Time

Experience level

Senior

Salary

CA$132,000 - CA$182,000 per year

Degree requirement

Bachelor's Degree

Tech skills

CloudCyber SecurityITSM

Location requirements

HybridTorontoCanada

Report this job

Found something wrong with the page? Please let us know by submitting a report below.