Managing Director and Chief Information Security Officer
Ontario Teachers' Pension Plan
Remote · Full Time
Be the first to apply
- Experience
- 15+ yrs
- Salary
- —
- Openings
- 1
- Posted
- 2 hours ago
- Work mode
- Work from home
- Education
- Undergraduate degree
- Eligibility
- Applicants must have legal authorization to work in Canada. Candidates with disabilities may request accommodations during the recruitment process and employment.
- Resume
- Required to apply
Job description
Role Overview
The Managing Director & Chief Information Security Officer (CISO) is responsible for guiding and advancing an organization-wide cybersecurity and resilience strategy. This role protects critical assets, data, and operations while safeguarding the company’s reputation amid an increasingly challenging global threat environment. It includes defining strategic directions, enhancing security capabilities, and facilitating secure innovation, particularly concerning AI and new technologies.
Collaborative Environment
Reporting to the Chief Technology Officer, the CISO collaborates across the Technology department and partners with Enterprise Risk Management, Legal, Compliance, Privacy, and Internal Audit teams. Strong engagement with business leaders, executive stakeholders, the Board, auditors, portfolio companies, industry colleagues, and technology suppliers ensures cybersecurity efforts align with enterprise risk appetite and priorities.
Primary Responsibilities
- Serve as the principal authority on cyber risk by identifying, prioritizing, and communicating risks across the enterprise.
- Develop and implement an enterprise cybersecurity and resilience strategy that supports business goals.
- Provide guidance and updates on cybersecurity risks and resilience to the Board and executive committees.
- Modernize security capabilities in line with emerging threats and transformative business initiatives.
- Oversee key security areas: security operations, threat intelligence, identity and access management (IAM), cloud security, and data protection.
- Create and uphold governance frameworks, policies, standards, and controls.
- Lead efforts to increase organizational cybersecurity awareness and foster a strong security culture.
- Manage incident response processes to ensure timely recovery and continual improvement.
- Support secure integration of cloud, digital platforms, automation, and AI technologies.
- Supervise AI security governance and manage emerging risks such as adversarial AI and data leakage.
- Build and nurture external partnerships with peers and security intelligence sharing groups.
- Guide and develop cybersecurity teams, focusing on workforce and capability planning.
Candidate Profile
- Over 15 years of escalating experience in cybersecurity, information security, or technology risk, including at least 7 years in senior leadership positions.
- Possession of an undergraduate degree; CISSP certification mandatory, with additional certifications viewed favorably.
- Demonstrated success managing enterprise-scale cybersecurity programs and leading major transformation projects.
- Experience advising Boards and senior executives on cybersecurity matters.
- Expertise in multiple cybersecurity domains including operations, threat management, governance, and resilience.
- In-depth knowledge of cloud security, IAM, data protection, and relevant control frameworks.
- Strong familiarity with emerging technologies and associated risks such as AI, automation, and digital ecosystems.
- Proven track record leading cyber incident response and recovery within complex, global settings.
- Excellent communication skills to clearly convey complex cybersecurity risks and influence executive decision-making.
- Successful leadership of diverse, high-performing teams.
- Budgeting, vendor management, and strategic partnership experience.
- Expertise in supporting the secure deployment and governance of emerging tech, including AI capabilities.
Employee Benefits
- Extensive professional development and career growth opportunities.
- Comprehensive employer-paid benefits coverage.
- Defined benefit pension plan to ensure retirement income.
- Possibility to reinvest in the fund via a Deferred Incentive Program.
- Flexible working environment blending office collaboration and remote work.
- Competitive vacation and personal time off.
- Flexible Travel Program enabling up to a month’s work abroad annually.
- Employee discounts through programs such as Edvantage and Perkopolis.
Diversity and Inclusion
The organization values diversity as a fundamental strength and strives to cultivate an inclusive and equitable workplace. Employee Resource Groups, mentoring, networking, and diversity-focused events support a culture that respects and empowers individuals from diverse backgrounds and experiences.
Additional Information
Applicants must be legally authorized to work in Canada, where this role is based. Candidates with disabilities can request accommodations during recruitment and employment processes. The company may use AI tools to assist in applicant screening and assessments but maintains human decision-making authority. For further information on privacy and AI usage, please inquire accordingly.