Director, Information Security at Dye & Durham Talent Team | CA | Rezi

Director, Information Security at Dye & Durham Talent Team

Director, Information Security

Dye & Durham Talent Team · CA

4 days ago

Director, Information Security

Dye & Durham Talent Team · CA

5 days ago
Resume preview

Impress employers and recruiters.
Choose from hundreds of resume examples.

Target Resume Now
Resume preview

Tailor your resume to this Director, Information Security role.

Rezi rewrites your resume against Dye & Durham Talent Team's job description. Free.

Resume score gauge reading 58 out of 100

Don't guess if your resume is good enough.

See how it scores against the Director, Information Security posting at Dye & Durham Talent Team — free, in seconds.

About the Role

The Director, Information Security (InfoSec) leads and evolves the organization's global information security function, ensuring the protection of corporate systems, employee productivity platforms, customer-facing products, data, and technology assets. This role defines and executes the security strategy, strengthens cyber resilience, manages security risk, and implements scalable security controls to support business growth and regulatory compliance.

Responsibilities

  • Lead the global information security function and provide strategic direction across all security domains.
  • Develop and implement the organization's information security strategy, operating model, and roadmap.
  • Oversee security for corporate platforms, including email, collaboration, and productivity tools.
  • Ensure the security of customer-facing products, applications, and technology services.
  • Build and mature security capabilities and processes, establishing scalable security programs from the ground up.
  • Identify, assess, and mitigate cyber security risks through effective governance and risk management practices.
  • Lead vulnerability management, penetration testing, threat detection, and ongoing security monitoring activities.
  • Implement compensating controls to address audit findings, compliance requirements, and identified risks.
  • Improve and modernize legacy systems while maintaining appropriate security controls and business continuity.
  • Partner with technology, infrastructure, engineering, product, legal, privacy, and risk teams to embed security-by-design principles.
  • Lead incident response planning, preparedness, and crisis management activities.
  • Develop executive reporting, security metrics, and dashboards to communicate security posture and programme maturity.
  • Build, mentor, and lead a high-performing Information Security team.

Requirements

  • 10+ years of experience in Information Security, Cyber Security, Technology Risk, or related technology leadership roles.
  • Experience building, transforming, or scaling security functions within growing organisations.
  • Strong technical foundation in infrastructure, IT operations, systems administration, networking, or network security.
  • Demonstrated experience leading security operations, vulnerability management, penetration testing, and incident response programmes.
  • Strong understanding of security frameworks and industry standards such as ISO 27001, NIST, CIS Controls, SOC 2, and PCI DSS.
  • Experience implementing governance, risk, and compliance frameworks, including audit remediation and compensating controls.
  • Knowledge of cloud security, identity and access management, application security, and secure software development practices.
  • Proven ability to communicate technical risks and security priorities to executive and non-technical stakeholders.
  • Strong leadership, stakeholder management, and team development capabilities.

Skills

  • Information Security
  • Cyber Security
  • Technology Risk
  • Infrastructure
  • IT operations
  • Systems administration
  • Networking
  • Network security
  • Security operations
  • Vulnerability management
  • Penetration testing
  • Incident response
  • ISO 27001
  • NIST
  • CIS Controls
  • SOC 2
  • PCI DSS
  • Governance, Risk, and Compliance (GRC)
  • Cloud security
  • Identity and Access Management (IAM)
  • Application security
  • Secure software development
  • Leadership
  • Stakeholder management
  • Team development
  • CISSP
  • CISM
  • CISA
  • CRISC
  • CCSP

Experience Level

  • 10+ years of experience

Education Level

  • Relevant certifications such as CISSP, CISM, CISA, CRISC, CCSP, or equivalent are highly desirable.

Benefits

  • Internal and external training opportunities
  • Competitive salaries
  • Healthcare
  • Pension
  • Company discounts
  • Wellness programs
  • Paid days off to move house
  • Paid days off to volunteer for your favourite charity

About the Company

  • Dye & Durham is a leading global provider of cloud–based software and technology solutions, providing critical information services and workflows used by clients worldwide to manage their process, information, and regulatory requirements.
  • The company is focused on an unwavering commitment to customer excellence and to the personal and professional growth of its employees.
  • It offers rewarding opportunities for those with legal, tech, financial services and government relations expertise.
  • With clients that include major law firms, financial service institutions and government organizations in Canada, the United Kingdom, Ireland, South Africa and Australia, a fulfilling career awaits you at Dye & Durham.

Equal Opportunity

  • We ask how tomorrow can be better than today
  • We are passionate about solving our customer's challenges
  • Our ideas break boundaries
  • We value different perspectives and encourage dialogue
  • We take ownership and celebrate together