Do your best work.
Director of Security & Infrastructure
Location
Canada
Posted
66 days ago
Salary
0
Seniority
Lead
Job Description
Director of Security & Infrastructure
Workleap
• Create the conditions that enable product and engineering teams to move faster with confidence. • Lead infrastructure, IT security operations, and governance, risk, and compliance functions. • Ensure a reliable, scalable, and secure environment as the organization transforms. • Play a key role in the evolution toward a Full-Stack Builder model. • Build a technical and security foundation that reduces friction.
Job Requirements
- 8+ years of leadership experience in infrastructure and security within technology organizations.
- Strong expertise with cloud environments such as Azure, AWS, or GCP.
- Hands-on experience with Kubernetes, infrastructure as code, and platform automation.
- Excellent understanding of security frameworks such as SOC 2, NIST CSF, ISO 27001, and CIS Controls.
- Proven experience building secure, scalable, and highly available SaaS environments.
- Ability to scale technical teams in fast-changing transformational contexts.
- Strong ability to communicate risks, priorities, and trade-offs to executive stakeholders and the board.
- CISSP, CISM, or equivalent certification is an asset.
- Based in Montreal or able to travel there a few times per quarter.
Benefits
- As a technology company, we use AI to optimize recruiting while ensuring that all assessment decisions remain human.
- As a technology company, we use AI to optimize recruiting while ensuring that all assessment decisions remain human.
Related Guides
Related Categories
Related Job Pages
More Security Engineer Jobs
• Design and develop product security APIs, tools, and utilities for internal and external stakeholders. • Conduct threat modeling and secure design reviews for application backend services and business integrations. • Perform advanced penetration tests and adversarial attack simulations against Harness modules, APIs, and codebase using industry-standard frameworks. • Lead manual and automated code review efforts to discover vulnerabilities, weaknesses, and anti-patterns in the Harness platform. • Implement and operate security tooling including SAST, DAST, and SCA, and integrate these into CI/CD pipelines. • Consult and advise developers and Product Managers on security standards, vulnerability remediation, and security architecture. • Assess risks and trade-offs, and propose solutions for product security features such as authentication and authorization. • Participate in the creation, review, and implementation of technical security standards across global engineering teams. • Use the Harness platform to integrate security processes like vulnerability management into the SDLC. • Collaborate cross-functionally with Engineering and Product to accelerate the release of software with security by design.
• We are looking for a Security Technician to join the team of a public sector client. If you are eager to advance your career in this area and are looking for a company that invests in your development, get to know us and send your CV.
• Configure, maintain, and monitor database activity monitoring tools. • Implement policies for encryption, masking, and tokenization of sensitive data. • Generate audit and compliance reports for various frameworks. • Integrate data protection solutions with cloud-native platforms. • Monitor alerts and investigate anomalies in database activity. • Collaborate with IT, DevOps, and compliance teams to align security strategies.
Security Administrator – IBM Guardium, Cloud Security
CastilliansThe world's trusted engineering network
• Manage and secure enterprise data environments • Implement robust data security controls and ensure compliance with regulatory frameworks • Support cloud and hybrid security initiatives • Install, configure, and maintain IBM Guardium appliances and agents • Manage policies, alerts, and audit processes for sensitive data protection • Monitor database activity for anomalies and potential threats • Investigate and respond to security incidents, ensuring timely resolution • Generate compliance reports and support audits • Integrate Guardium with cloud platforms (AWS, Azure, GCP) • Implement security controls for hybrid and multi-cloud environments



