
Director, Security Architecture & Advisory
- Toronto, ON
- Permanent
- Full-time
- Define and maintain the enterprise security architecture strategy, ensuring alignment with business goals and IT roadmaps.
- Oversee the design and implementation of secure solutions across infrastructure, applications, and cloud environments.
- Establish and enforce architectural standards, patterns, and principles to guide secure technology development.
- Provide expert security guidance to technology and business teams during solution design, procurement, and implementation.
- Act as a strategic advisor to senior leadership on emerging threats, architectural risks, and mitigation strategies.
- Build strong relationships with internal stakeholders to promote a security-by-design culture across the organization.
- Ensure security architecture aligns with regulatory requirements, internal policies, and risk management frameworks.
- Participate in governance forums and architecture review boards to assess and approve technology initiatives.
- Lead security assessments and threat modeling exercises for critical projects and technologies.
- Lead, mentor, and grow a high-performing team of security architects and advisors.
- Foster a collaborative and innovative team culture focused on continuous improvement and knowledge sharing.
- Define team goals, performance metrics, and development plans aligned with organizational priorities.
- Stay abreast of emerging technologies, security trends, and threat landscapes to inform architectural decisions.
- Evaluate and recommend new tools, platforms, and practices to enhance the organization’s security posture.
- Work closely with technology and business units to enhance risk transparency.
- Establish strong working relationships with the stakeholders across business units and teams to build trust and act as a trusted advisor.
- Act as a key liaison between first-line IT risk functions and executive leadership to facilitate discussions on risk trends and emerging security threats.
- Bachelor’s degree in Computer Science, Information Security, Engineering, or a related field.
- 10+ years of experience in cybersecurity, with at least 5 years in a leadership role focused on security architecture or advisory.
- Deep understanding of enterprise architecture, cloud security, application security, and secure development practices.
- Strong knowledge of security frameworks and standards (e.g., NIST, ISO 27001, TOGAF, SABSA).
- Proven experience engaging with senior executives and influencing strategic technology decisions.
- Relevant certifications such as CISSP, SABSA, TOGAF, CISM, or AWS/Azure security certifications are highly desirable.
- Strategic Vision: Ability to align security architecture with long-term business and technology goals.
- Leadership: Strong people management and mentoring capabilities.
- Communication: Excellent ability to convey complex security concepts to both technical and non-technical audiences.
- Collaboration: Skilled at building partnerships across diverse teams and functions.
- Problem Solving: Proactive and analytical approach to identifying and addressing architectural risks.