Talent.com
Senior Manager – Security Architecture and Governance
Senior Manager – Security Architecture and Governance407 ETR • Woodbridge, Ontario
Senior Manager – Security Architecture and Governance

Senior Manager – Security Architecture and Governance

407 ETR • Woodbridge, Ontario
17 days ago
Job type
  • Full-time
Job description

Title : Senior Manager – Security Architecture and Governance

Department : IT Infrastructure and Security

Location : 6300 Steeles Ave West, Woodbridge

Salary Range : $160,000-$190,000 (base salary + bonus)

Position Summary :

Reporting to the Head of IT Security and Infrastructure, the Senior Manager – Security Architecture and Governance provides strategic leadership for the design, implementation, and governance of the organization’s cybersecurity architecture and programs. The role serves as a key security design and governance authority, ensuring that security architecture, policies, and risk management practices align with business objectives, regulatory requirements, and the evolving threat landscape.

This position oversees security architecture, governance, risk and compliance (GRC), application security, data protection and privacy, IT disaster recovery and operational resilience, security awareness and training, and security program management. The incumbent works closely with IT, business leaders, and external partners to drive measurable improvements in security maturity while delivering clear, executive-level reporting and board-ready insights.

Duties and Responsibilities :

  • Leadership & Strategy : Build and develop high-performing teams, attract and retain top talent, and foster a culture of collaboration, continuous learning, and security excellence. Promote diversity and inclusion while driving leadership best practices. Act as a trusted advisor to senior leadership on security architecture, risk posture, and strategic initiatives.
  • Security Architecture & Engineering : Define, maintain, and evolve enterprise security architecture across on-premises, cloud, and hybrid environment, aligned with Zero Trust and defense-in-depth principles. Serve as a security design authority, embedding security into IT initiatives, technology roadmaps, and architectural decision‑making. Ensure consistent application of security patterns, standards, and controls across the organization. Oversee third‑party and supply‑chain security risk management, including due diligence, contractual security requirements, and ongoing assurance.
  • Governance, Risk & Compliance (GRC) : Own and operate the GRC program, including risk assessments, policy development, compliance audits, regulatory adherence, and Threat Risk Assessments (TRA) for projects and vendors.
  • Application Security : Define and enforce secure development standards and practices across IT projects. Provide governance and oversight for application security, including threat modeling, vulnerability management and integration of security controls throughout the software development lifecycle.
  • Data Protection & Privacy : Ensure compliance with privacy regulations; implement robust data security controls, including Data Loss Prevention (DLP) solutions and strategies. Collaborate with privacy and legal stakeholders to manage data-related risk.
  • IT Disaster Recovery & Operational Resilience : Collaborate with IT Operations to ensure IT systems meet business continuity objectives. Provide governance and assurance by reviewing disaster recovery plans for alignment with security policies and regulatory requirements. Participate in testing exercises and advise on secure recovery practices. Support the development, maintenance, and testing of IT disaster recovery plans, including technologies and processes for

backup, restore, and ransomware recovery. Ensure operational resilience through effective recovery strategies and infrastructure readiness.

  • Security Awareness & Training : Lead organization-wide cybersecurity education programs, including phishing simulation campaigns and executive tabletop exercises. Promote a security-aware culture across business and IT teams.
  • Metrics & Reporting : Develop dashboards and reports for executive leadership; track security posture improvements and compliance status.
  • Executive Reporting & Board Material Preparation : Collaborate with leadership to prepare clear, concise, and impactful security updates and risk reports for board and executive presentations.
  • Program Management : Drive security initiatives and roadmap execution; ensure alignment with corporate strategy and project delivery timelines, including budget planning and financial management for security programs. Track outcomes to ensure initiatives result in measurable reduction of enterprise risk.
  • Vendor Management : Manage security-related vendors to ensure compliance, strategic alignment, and contractual obligations.
  • Qualifications :

  • Minimum 10 years of IT experience, including 5+ years in a senior leadership role within security operations, architecture, or governance.
  • Bachelor’s degree in Computer Science, Engineering, or related field preferred.
  • Certifications such as CISSP, CISM, CISA; CRISC are considered an asset.
  • Strong knowledge of security architecture principles, secure design patterns, and enterprise risk management.
  • Experience conducting Threat Risk Assessments, threat modeling, and control design.
  • Familiarity with GRC frameworks (ISO 27001, NIST CSF, PCI DSS) and privacy regulations.
  • Expertise in IT disaster recovery planning and operational resilience strategies.
  • Experience with application security practices, secure coding standards, and vulnerability management.
  • Experience in project management is considered an asset. Exposure to security operations and financial management for security programs is also an asset.
  • Excellent leadership, communication, and presentation skills, with the ability to convey complex security concepts to executive and board-level audiences.
  • 407 ETR's Information Technology division is responsible for the infrastructure and software to enable the efficient operation of the highway including toll capture, account management, financials, and data storage / analytics as well as customer services including call-center, web, IVR and supporting workflows.

    Delivery is accomplished using an Agile-Scrum approach, including self-organization, short iterations, strong collaboration, and dedicated teams in scrum rooms.

    We are actively seeking to fill this role as it is a current vacancy.

    About 407 ETR

    Highway 407 ETR is an all-electronic open-access toll highway located in the Greater Toronto Area in Ontario, Canada. The highway spans 108 kilometres from Burlington in the west to Pickering in the east.

    407 International Inc. is the sole shareholder of 407 ETR and is owned by :

    Cintra Global S.E. which is a wholly owned subsidiary of Ferrovial S.A. (48.29%);

    Canada Pension Plan Investment Board (CPP Investments) and other institutional investors (44.20%); and

    Public Sector Pension Investment Board (PSP Investments) (7.51%)

    Learn more at

    Note :

    Create a job alert for this search

    Senior Manager Security Architecture and Governance • Woodbridge, Ontario

    Similar jobs
    Senior Application Security Architect

    Senior Application Security Architect

    Rexall Pharmacy Group Ltd. • Mississauga
    Full-time
    Senior Application Security Architect.A total rewards package meant to enhance your work-life flexibility.Professional growth and development via challenging projects and assignments.Warm and fuzzy...Show more
    Last updated: 19 days ago • Promoted
    Tech Lead / Architect - Government Entity

    Tech Lead / Architect - Government Entity

    Government Entity • mississauga, on, ca
    Full-time
    Location : - Toronto Ontario, Canada.Set squad technical direction and lead complex solution design and implementation across development, build, and integration. Provide technical governance on desig...Show more
    Last updated: 4 days ago • Promoted
    Strategic Enterprise Security Architect

    Strategic Enterprise Security Architect

    Randstad Digital • Oakville
    Full-time
    A leading financial services provider in Canada seeks a Security Solutions Architect to design and implement secure architectures across multiple environments, including cloud.This critical role re...Show more
    Last updated: 22 hours ago • Promoted • New!
    Senior Technical Product Manager

    Senior Technical Product Manager

    LanceSoft, Inc. • mississauga, on, ca
    Full-time
    Senior Technical Product Manager.Location Address : 44 King street 10th floor.Work arrangement : 4 days onsite / week.Contract Duration : Aug 30th, 2026. Possibility of extension & conversion to FTE? – Y...Show more
    Last updated: 5 hours ago • Promoted • New!
    Architect, Solutions (Security)

    Architect, Solutions (Security)

    First American • Oakville
    Full-time
    Company Summary • •Come work for a company that’s committed to the success of each and every employee.A place where innovators and collaborators come together and build on each other’s talents.Where ...Show more
    Last updated: 1 day ago • Promoted
    Supervisor - Security

    Supervisor - Security

    AFIMAC Canada • Burlington, ON, Canada
    Full-time
    AFIMAC Canada is seeking experienced Supervisors for upcoming assignments related to labour disruptions, organized protests and man made crisis / disasters. This position will require you to work 12 h...Show more
    Last updated: 30+ days ago • Promoted
    Lead Architect

    Lead Architect

    Akkodis • mississauga, on, ca
    Full-time
    Duration : 12-month assignment (long term contract).Toronto, ON (Hybrid : 8 hours / day between 8 : 00 AM and 5 : 00 PM, Monday to Friday). Professional Services Engagement – B2B (Incorporated Entities Only)...Show more
    Last updated: 12 days ago • Promoted
    Program Manager

    Program Manager

    Dexian • mississauga, on, ca
    Full-time
    Location : Toronto, ON (Hybrid).Duration : 3 months with possible extension or conversion.This position reports to Associate Vice President, Cyber Security Governance Remediation, Program Strategy.We...Show more
    Last updated: 9 days ago • Promoted
    Cybersecurity Consultant – Azure & AI Governance ((French Bilingual)

    Cybersecurity Consultant – Azure & AI Governance ((French Bilingual)

    Concentrix • burlington, ON, ca
    Full-time
    We’re looking for a Cybersecurity Consultant – Azure & AI Governance with deep expertise in the Microsoft ecosystem to advise enterprise customers and lead strategic AI secur...Show more
    Last updated: 21 days ago • Promoted
    Senior Manager - Risk Operations - Hard Rock Digital

    Senior Manager - Risk Operations - Hard Rock Digital

    Hard Rock Digital • mississauga, on, ca
    Full-time
    Hard Rock Digital is a team focused on becoming the best online sportsbook, casino, and social gaming company in the world. We’re building a team that resonates passion for learning, operating and b...Show more
    Last updated: 8 days ago • Promoted
    Azure Solutions Architect

    Azure Solutions Architect

    Hays • burlington, ON, ca
    Full-time
    Azure Solutions Architect Hybrid, 3 days onsite in Burlington Salary : 120-130K annually Your New Company&...Show more
    Last updated: 7 days ago • Promoted
    Senior Enterprise Architect

    Senior Enterprise Architect

    Maarut Inc • mississauga, on, ca
    Full-time
    Experience and Skill Set Requirements : .Expert knowledge and 10+ years experience in Identity and Access Management technologies and services with a focus on PKI. Extensive experience leading the des...Show more
    Last updated: 9 days ago • Promoted
    Senior Manager – Security Architecture and Governance

    Senior Manager – Security Architecture and Governance

    407 ETR • Vaughan
    Full-time
    Senior Manager – Security Architecture and Governance.IT Infrastructure and Security.Reporting to the Head of IT Security and Infrastructure, the Senior Manager – Security Architecture and Governan...Show more
    Last updated: 10 days ago • Promoted
    Product Manager

    Product Manager

    Terra Recruitment Inc. • King City, ON, Canada
    Full-time
    Toronto, ON (Hybrid – 3 days / week in office).Our client is a mission-driven food company focused on delivering high-quality, ethically sourced protein products across North America.As the com...Show more
    Last updated: 30+ days ago • Promoted
    Senior Network Security Engineer – HPE Aruba SSE

    Senior Network Security Engineer – HPE Aruba SSE

    Ateko, backed by Bell Canada • brampton, on, ca
    Temporary
    Job Title : Senior Network Security Engineer – HPE Aruba SSE.We are looking for a Senior Network Security Engineer with strong hands-on expertise in HPE Aruba Secure Service Edge (SSE) deployments.T...Show more
    Last updated: 9 days ago • Promoted
    Security Analyst

    Security Analyst

    Procom • mississauga, on, ca
    Temporary
    On behalf of our banking client, Procom is searching for a Security Analyst for an 8-month role.This position is a hybrid position with 2 days onsite at our client’s Toronto office.Security Analyst...Show more
    Last updated: 5 hours ago • Promoted • New!
    Manager, Vulnerability Management

    Manager, Vulnerability Management

    Moneris • etobicoke, on, ca
    Full-time
    Our client is seeking a Manager, Security Operations & Vulnerability Management to lead and mature their enterprise Vulnerability Management (VM) program within a highly regulated, payments‑focused...Show more
    Last updated: 5 hours ago • Promoted • New!
    Project Manager / Estimator (Electronic Security) - ABC Security

    Project Manager / Estimator (Electronic Security) - ABC Security

    ABC Security • mississauga, on, ca
    Full-time +1
    Project Manager / Estimator (Electronic Security).Project Manager / Estimator (Electronic Security).Director of Project Management and Estimation. Primarily office-based with regular travel to projec...Show more
    Last updated: 20 days ago • Promoted