Security Lead responsible for driving security function and strategy at Newton, a crypto trading platform. Ensuring CIRO and SOC 2 alignment while embedding security practices across all systems and applications.
Responsibilities
Own and drive our security function end-to-end, combining strategic direction with hands-on technical authority.
Review, challenge, and strengthen our systems.
Act as the security authority within engineering.
Define guardrails and drive remediation when risks arise.
Build the structure and standards needed as we scale.
Own the company wide security strategy and architecture.
Ensure CIRO and SOC 2 alignment.
Embed strong security practices across infrastructure, applications, and internal systems.
Requirements
Understand IAM and least privilege principles
Understand logging, monitoring, and alerting architecture
Be comfortable reviewing infrastructure-as-code (Pulumi)
Reason confidently about security architecture across infrastructure and application layers
Be willing to deepen your technical capabilities where needed
Have hands-on experience with SOC 2 or comparable audit processes
Have experience in a regulated environment (fintech, financial services, or similar), ideally CIRO-regulated
Have a strong understanding of risk management frameworks
Influence and challenge cloud architecture decisions when needed
Experience with AI tooling governance or AI-related security considerations is a strong plus
Benefits
At Newton, we celebrate our inclusive work environment and welcome members of all backgrounds and perspectives to apply. We are committed to providing reasonable accommodations and will work with you to meet your needs. If you are a person with a disability and require assistance during the application process, please don’t hesitate to reach out!
Senior IT security advisor helping protect IT hardware, software, and data at Desjardins. Leading initiatives, advising clients, and developing policies for strategic projects.
Business strategy analyst developing plans and business intelligence for Desjardins. Analyzing business needs and solutions for various organizational initiatives with a hybrid work setup.
Security Consultant on TELUS's Cybersecurity Platforms Operations team. Providing hands - on support for critical security services and collaborating with industry - leading vendors.
Senior Cloud Cybersecurity Engineer responsible for cloud security engineering at Tanium. Collaborate to protect cloud infrastructure against threats in Azure, AWS, and Kubernetes.
Managing Consultant in Cybersecurity and NERC Compliance at Guidehouse. Leading client management and project workstreams within the electric utility sector in Canada.
Security Guard responsible for protecting people and property in Amherst, Nova Scotia. Conducting patrols and monitoring security systems to ensure safety.
Senior Cybersecurity Engineer at Vervent focused on security solution design and incident response. Join a growing team to implement and strengthen enterprise security operations.
Conseiller juridique stratégique au sein des Services juridiques pour la protection des renseignements personnels au Canada. Fournissant des conseils stratégiques en matière de cybersécurité et réglementaire.
Manager, Information Security at Manulife will assess vendor IT risks and security controls. Conducting audits, guiding businesses in IT risk management under a hybrid working model.