Talent.com
Vice President Information Security
Vice President Information SecurityCarltonOne • Markham, York Region, CA
Vice President Information Security

Vice President Information Security

CarltonOne • Markham, York Region, CA
7 days ago
Job type
  • Full-time
Job description

CarltonOne is a global B2B technology leader, and part of the Goldman Sachs portfolio, helping organizations around the world reward and inspire exceptional people. Our solutions empower employees to be more productive, sales teams to perform at their best, and customers to stay engaged and loyal.

Our platform powers the global engagement industry, enabling companies to deliver impactful employee recognition, customer loyalty, rewards, sales, and channel incentive programs. We partner with over 450 clients, 500 vendors, and serve 14 million members across 185 countries.

Beyond engagement, every CarltonOne solution drives our eco-action mission : funding tree planting to help restore the planet. To date, we’ve funded over 20 million trees and are on track to plant millions more each year. Learn more at carltonone.com.

About the Opportunity

CarltonOne is seeking a Vice President, Information Security & Cyber Risk to define, scale, and operationalize our global security strategy. This executive will own the company’s security vision across IT Security, Application Security, Information Security, and Cyber Risk — ensuring that trust, resilience, and regulatory compliance are at the core of everything we build.

You’ll be responsible for setting the strategic direction for security, building a best-in-class security program, and leading a team that protects our global technology ecosystem, customer data, and intellectual property. This is a transformational leadership role with a mandate to mature security practices, align with global regulatory standards, and support CarltonOne’s continued growth at scale.

Responsibilities

Strategic Security Leadership

  • Define and execute CarltonOne’s enterprise security strategy across information security, application security, and cyber risk.
  • Serve as the executive authority on security posture, providing clear and actionable recommendations to the CTO and other senior executives.
  • Establish and evolve security governance frameworks, ensuring alignment with global regulatory requirements and industry best practices.
  • Build a culture of security awareness across the organization through executive engagement, training programs, and clear communication.

Application & Information Security

  • Lead the strategy and implementation of secure software development practices (SSDLC), embedding security from ideation through deployment.
  • Partner closely with Engineering and Product teams to integrate security tooling, threat modeling, vulnerability management, and code analysis throughout the development lifecycle.
  • Own the protection of CarltonOne’s data and information assets, including data classification, access controls, encryption standards, and incident response frameworks.
  • Drive periodic application security assessments, penetration testing, and red team exercises to proactively identify and mitigate risks.
  • Develop and implement cloud security strategies as CarltonOne migrates to cloud environments.
  • Ensure secure architecture, identity management, and compliance for cloud-based services and infrastructure.
  • Collaborate with engineering teams to embed cloud security best practices into design and deployment.
  • Oversee enterprise cyber risk management programs — identifying, assessing, prioritizing, and mitigating risks across infrastructure, applications, and third parties.
  • Develop and maintain risk registers, metrics, and executive dashboards to inform decision-making at the highest levels.
  • Ensure compliance with relevant standards and regulations, including SOC 2, ISO 27001, PCI-DSS, GDPR, and other international privacy and security frameworks.
  • Lead security audits and certification processes, ensuring successful completion with minimal operational friction.
  • Establish and maintain world-class incident response and business continuity programs, ensuring rapid detection, response, and recovery from cyber threats.
  • Oversee 24 / 7 security operations, including monitoring, threat intelligence, detection engineering, and vulnerability response.
  • Serve as executive lead during security incidents, coordinating communications, investigations, and post-incident reviews.
  • AI & Data Governance

  • Define and enforce governance policies for AI systems and data usage, ensuring ethical, secure, and compliant practices across all AI-driven initiatives.
  • Collaborate with product and engineering teams to integrate AI risk management into development lifecycles.
  • Establish frameworks for responsible AI, data privacy, and transparency in alignment with global standards.
  • Leadership & Team Development

  • Build, mentor, and lead a high-performing global security team spanning information security, application security, and risk functions.
  • Foster a culture of accountability, collaboration, and continuous improvement.
  • Drive measurable operational excellence through KPIs, maturity models, and executive reporting.
  • Qualifications

  • 12+ years of progressive experience in information security, including at least 5 years in senior leadership roles (CISO, VP, or equivalent) within a SaaS or high-growth technology environment.
  • Deep expertise across information security domains, including secure application development, threat detection, data protection, governance, risk, and compliance.
  • Proven track record building and maturing security programs at scale — including governance frameworks, SSDLC practices, and risk management methodologies.
  • Strong understanding of security and privacy regulatory frameworks (SOC 2, ISO 27001, PCI-DSS, GDPR, CCPA, etc.).
  • Exceptional communication skills with the ability to influence executive stakeholders and translate technical risks into business impact.
  • Experience leading audits, certifications, and regulatory interactions.
  • Professional certifications such as CISSP, CISM, CISA, CCSP, or equivalent strongly preferred.
  • Benefits

  • Competitive salary and benefits package.
  • Health, dental, and vision coverage.
  • Access to our employee benefits portal for exclusive discounts.
  • Monthly company-wide events, celebrations, and team activities.
  • Bravo reward points program for recognition and appreciation.
  • Convenient office location close to public transit.
  • How to Apply

    If this great opportunity looks rewarding to you, let’s connect. Our online application will give you the option to apply to this role directly.

    The target hiring range for this position is $150,000 to $190,000. Placement in the salary range will be based on factors such as market conditions, internal equity, and candidate experience, skills, and qualifications relevant to the role.

    We value diversity and inclusion and encourage all qualified people to apply. If we can make this easier through accommodation in the recruitment process, or if you need assistance to accommodate a disability, please contact us with the “Help” button in the application.

    We will review applications, with priority given to those who have completed the assessment, and look forward to hearing from you.

    #J-18808-Ljbffr

    Create a job alert for this search

    Vice President Information Security • Markham, York Region, CA

    Similar jobs
    Director Cyber Engagement

    Director Cyber Engagement

    ipss inc. • Toronto, Canada, CA
    Full-time +1
    Division : Office of the Chief Information Security Officer Reports To : Deputy Chief Information Security Officer Salary Range : $160,462 to $207,027 Work Location : 55 John Street, Toronto Job Ty...Show more
    Last updated: 30+ days ago • Promoted
    Director, Cyber Security And Operations - C$134,837 - C$168,546 A Year

    Director, Cyber Security And Operations - C$134,837 - C$168,546 A Year

    Payments Canada • Toronto, Canada, CA
    Full-time
    Directs cyber security operations, threat intelligence, and incident response for a national financial infrastructure.Show more
    Last updated: 13 days ago • Promoted
    Associate Vice-President, Information Security

    Associate Vice-President, Information Security

    Wellington-Altus Financial Inc. • Toronto, Canada, CA
    Full-time
    Create cyber security awareness, ensure data security, and develop security strategies.Manage security, privacy, and risk assessments.Show more
    Last updated: 30+ days ago • Promoted
    Sr. Manager, Information Security

    Sr. Manager, Information Security

    Canadian Imperial Bank of Commerce • Toronto
    Full-time
    We’re building a relationship-oriented bank for the modern world.We need talented, passionate professionals who are dedicated to doing what’s right for our clients. At CIBC, we embrace your strength...Show more
    Last updated: 3 days ago • Promoted
    Director It & Security - Remote

    Director It & Security - Remote

    Promote Project • Toronto, Canada, CA
    Remote
    Full-time
    At Q4, we make an impact together, obsess over our customer, operate with integrity, and bring big ideas to life.Q4 is charting a bold new path for investor relations as the first AI-driven IR Ops ...Show more
    Last updated: 30+ days ago • Promoted
    Director, IAM Authentication Engineering – Global Security

    Director, IAM Authentication Engineering – Global Security

    RBC • Toronto
    Full-time
    A leading financial institution is seeking a Director of Identity and Access Management.This role requires a strong leader to oversee the development and implementation of IAM Authentication servic...Show more
    Last updated: 1 day ago • Promoted
    Associate Vice President, Information Technology Services And Cio

    Associate Vice President, Information Technology Services And Cio

    American Association of Blacks in Higher Education • Toronto, Canada, CA
    Full-time
    Conducts research on GPU applications, designs architecture, and develops solutions for AI, rendering, and simulation, focusing on performance and innovation.Show more
    Last updated: 1 day ago • Promoted
    Hybrid Director of Information Security & Risk

    Hybrid Director of Information Security & Risk

    Manulife Insurance Malaysia • Toronto
    Full-time
    Une entreprise financière internationale à Toronto recherche un Directeur, Sécurité de l'information, pour diriger une équipe examinant les risques de sécurité. Avec plus de 10 ans d'expérience requ...Show more
    Last updated: 5 days ago • Promoted
    Senior Information Security Lead

    Senior Information Security Lead

    KingSett Capital • Toronto
    Full-time
    A Canadian private equity firm is seeking an experienced Security Analyst to develop and implement security policies, monitor incidents, and conduct vulnerability assessments.The ideal candidate ha...Show more
    Last updated: 5 days ago • Promoted
    Director, Cybersecurity & Information Security

    Director, Cybersecurity & Information Security

    Financeit • Toronto, ON, CA
    Full-time
    Quick Apply
    Financeit is a point-of-sale financing provider serving some of the largest home improvement and retail organizations in Canada. Our platform helps businesses close more sales by offering customers ...Show more
    Last updated: 4 hours ago • New!
    Director, information security

    Director, information security

    Société Financière Manuvie • Toronto
    Full-time
    This is an exciting opportunity to lead Manulife’s Business Unit Security Officers (BUSOs) team within our First Line of Defense. Reporting to the AVP - Technology Risk Management, you will manage r...Show more
    Last updated: 5 days ago • Promoted
    Director of IT & Security — Lead Threat & Cloud Defense

    Director of IT & Security — Lead Threat & Cloud Defense

    The Resume Database • Toronto
    Full-time
    A leading tech firm is looking for a Director, IT & Security to lead their security operations and manage IT infrastructure. The candidate will oversee incident response, develop cybersecurity polic...Show more
    Last updated: 5 days ago • Promoted
    Director of Cloud Security & DevSecOps

    Director of Cloud Security & DevSecOps

    RSM Canada • Toronto
    Full-time
    A leading professional services firm is seeking a Director to lead cloud security architecture solutions in Toronto, Ontario. The role requires a strong understanding of cloud platforms like AWS and...Show more
    Last updated: 9 hours ago • Promoted • New!
    Vice President Information Security

    Vice President Information Security

    CarltonOne • Markham
    Full-time
    CarltonOne is a global B2B technology leader, and part of the Goldman Sachs portfolio, helping organizations around the world reward and inspire exceptional people. Our solutions empower employees t...Show more
    Last updated: 5 days ago • Promoted
    Director, Security Operations, Information & Corporate Security

    Director, Security Operations, Information & Corporate Security

    CPP Investments | Investissements RPC • North York, Canada, CA
    Full-time
    Make an impact at a global and dynamic investment organization • •When you join CPP Investments, you are joining one of the world’s most admired and respected institutional investors.As a professiona...Show more
    Last updated: 1 hour ago • Promoted • New!
    Director of Security Solutions & Cloud Engineering

    Director of Security Solutions & Cloud Engineering

    Scotiabank • Toronto
    Full-time
    A leading bank in the Americas seeks a Director of Security Solutions and Engineering in Toronto.This role involves leading security architecture for emerging technologies within the Bank, ensuring...Show more
    Last updated: 5 days ago • Promoted
    Director, Information Security

    Director, Information Security

    Manulife Financial • Toronto
    Full-time
    This is an exciting opportunity to lead Manulife’s Business Unit Security Officers (BUSOs) team within our First Line of Defense. Reporting to the AVP - Technology Risk Management, you will manage r...Show more
    Last updated: 5 days ago • Promoted
    Director, Security Operations & Cyber Defense (Hybrid)

    Director, Security Operations & Cyber Defense (Hybrid)

    Canada Pension Plan Investment Board • Toronto, Canada, CA
    Full-time
    A global investment organization in Toronto is seeking a Director of Information Security Operations.This key role involves managing the Security Operations Center, overseeing incident responses, a...Show more
    Last updated: 7 days ago • Promoted