Hiring.Camp

Director, Information Security

Brocku

·

Yesterday

Salary
$112k – $179k
Location
Main Campus (Employees), Canada
Type
Full-time
Department
Security
Seniority
Director
Education
Master
Closing date
Today
Source
Workday

Description

Brock University is located on the traditional territory of the Haudenosaunee and Anishinaabe peoples, many of whom continue to live and work here today. This territory is covered by the Upper Canada Treaties and is within the land protected by the Dish with One Spoon Wampum Agreement. 

We are one of Canada’s outstanding comprehensive universities, where excellence and innovation thriveBrock has been recognized as a Top Employer in Hamilton-Niagara for seven consecutive years. We have been ranked #3 as Canada’s Best Employers and top 10 as one of Canada’s Best Employers for Diversity. For 2025, Brock has been proudly recognized as one of Canada’s Top Employers for Company Culture, ranked seventh by Forbes in partnership with Statista. At Brock, you will find a welcoming, inclusive community and an exciting range of meaningful career opportunities.  

Ignite new possibilities for your career. Break through at Brock.

Post End Date:

August 6, 2026 at 11:59 PM

This job advertisement is to fill an existing vacancy in the Administrative Professional (Employee Group)

About the Role: 

Reporting to the Associate Vice-President, Information Technology Services, the Director, Information Security provides enterprise leadership and strategic direction for the University’s information security program, spanning security governance, policy and standards, risk management, security architecture, identity and access governance, security awareness, incident response, and cyber resilience. The incumbent serves as the University’s senior authority on information security and technology risk, setting security strategies, governance frameworks, policies, standards, and roadmaps that protect Brock’s digital assets, systems, and information resources and support regulatory and compliance requirements. The Information Security portfolio governs security for the University; it sets requirements, assesses risk, assures the effectiveness of controls, and directs the response to security incidents, while day-to-day security controls are operated by ITS delivery teams under those standards. The Director, Information Security partners closely with ITS leadership, the University’s privacy function, the research portfolio, and institutional stakeholders to strengthen Brock’s security posture while enabling teaching, learning, and research. 

The Director, Information Security will:  

  • Provide senior leadership, strategic direction, and oversight for the University’s information security, cybersecurity, and technology risk programs; 
  • Establish and advance the University’s information security vision, governance framework, and strategic roadmap to support institutional priorities and strengthen organizational resilience; 
  • Lead the development and governance of enterprise security policies, standards, procedures, and control frameworks to protect University information assets and services, ensuring alignment with institutional objectives, regulatory requirements, and industry frameworks; 
  • Direct the evolution of enterprise security architecture, secure-by-design principles, and technology standards to support a modern and resilient security posture; 
  • Establish performance measures and reporting mechanisms that enable effective oversight and decision-making; 
  • Provide strategic oversight of identity and access management, including standards and requirements for authentication, authorization, privileged access, and identity lifecycle management; 
  • Advise academic, administrative, and technology leaders on emerging threats, cybersecurity risks, privacy considerations, and security-related strategic initiatives; 
  • Oversee security risk assessment activities across applications, infrastructure, cloud services, research environments, third-party solutions, and business processes; 
  • Establish and govern vulnerability management, threat monitoring, penetration testing, and security assessment programs to proactively identify and address risks; 
  • Ensure security requirements are embedded throughout technology planning, procurement, solution design, implementation, and operational support processes; 
  • Provide leadership and command authority for enterprise cybersecurity incident response, leading institutional response to cybersecurity incidents, data breaches, ransomware events, malware outbreaks, phishing campaigns, and other security threats; 
  • Ensure effective monitoring, detection, investigation, containment, recovery, and reporting of cybersecurity incidents across the institution; 
  • Champion enterprise-wide security awareness, education, and training programs that strengthen cybersecurity knowledge and accountability across the University community; 
  • Provide leadership, coaching and mentorship to a Program Manager, Information Security, and an Information Security Analyst;
  • Support the University's research security obligations in partnership with the Office of Research, enabling researchers by embedding security across research activities while preserving a flexible operating environment. 

Key Skills and Experience: 

  • Degree in a related discipline or the equivalent combination of education and experience; 
  • Leadership experience in information security, cybersecurity, technology risk management, or enterprise technology environments, including oversight of enterprise cybersecurity programs, security operations, identity and access management (IAM), risk management, compliance, security governance, and vendor/cloud security; 
  • Experience leading security incident response, digital forensics, investigations, business continuity, and disaster recovery programs; 
  • Extensive knowledge of enterprise information security, cybersecurity governance, technology risk management, compliance, and regulatory frameworks, including NIST, ISO 27001, CIS Controls, PCI-DSS, FIPPA, federal research security requirements, and related standards; 
  • Comprehensive understanding of cybersecurity operations, including security operations centres (SOC), incident response, threat management, digital forensics, vulnerability management, security monitoring, and SIEM technologies; 
  • Advanced knowledge of security architecture and technologies, including cloud security, identity and access management (IAM), endpoint security, data protection, firewalls, intrusion detection and prevention systems, centralized logging, vulnerability management, and emerging infrastructure technologies; 
  • Strong understanding of enterprise infrastructure, networking, operating systems, and cloud environments, including Microsoft and Linux server platforms; 
  • Advanced knowledge of cyber risk assessment methodologies, security governance practices, compliance requirements, and risk mitigation strategies, with the ability to assess emerging threats and develop appropriate organizational responses; 
  • Ability to develop and execute long-term cybersecurity strategies, operating models, roadmaps, and organizational change initiatives aligned with institutional objectives; 
  • Promotes and embodies inclusivity and respect within the workplace and the broader community; 
  • Strong customer service skills, with the ability to maintain effective relationships with internal and external partners; 
  • Exceptional communication, presentation, and facilitation skills, with the ability to translate complex technical concepts into clear recommendations, reports, assessments, and briefings; 
  • Strong analytical, problem-solving, organizational, and decision-making skills. 

Preferred or Asset Skills:  

  • Experience in the higher education and/or public sector;  
  • Master's degree in Cybersecurity, Information Technology, Information Systems, Business Administration (MBA), or a related discipline;  
  • Professional cybersecurity certifications such as CISSP, CISM, CRISC, CCSP, GIAC, CGEIT;  
  • Project Management Professional (PMP), ITIL, COBIT, or related governance, risk, or service management certifications. 

Salary and Total Rewards:  

  • Job Grade Q, Salary Scale ($111,580-178,528); 
  • Target Hiring Range: $140,000-$160,000* 
  • This is a permanent position that includes:   
  • Health & Dental Benefits: Comprehensive extended health, dental, and vision coverage. 
  • Pension Plan: Enrollment eligibility in the Brock University Pension Plan. 
  • Vacation: Up to 3 weeks per year, in addition to university holidays. 
  • Professional Development: Eligibility for the Brock Tuition Waiver Program. 

*The final salary is based on experience, internal equity, and budget considerations within the target hiring range. 

We are committed to offering flexible work arrangements where possible as outlined in our Flexible Work Arrangement Policy. As a student-centered organization, all employees are required to work on campus as needed.

 

Brock University is committed to creating a respectful and equitable workplace. We strive to foster a culture of diversity and inclusion in our work and learning environments. We welcome applications from all qualified individuals and actively encourage applications from women, people with disabilities, members of the 2SLGBTQIA+ community, Indigenous Peoples, people who identify as Black, African and/or Caribbean, as racialized and/or as from ethnic and cultural minority groups, and other underrepresented demographic groups at Brock and in the Niagara region. Brock also recognizes intersectionality and the interconnected identities, histories, and experiences of these aforementioned groups.

 

We are committed to inclusive and barrier-free recruitment, and we accommodate the needs of applicants throughout all stages of the recruitment process, as outlined in our Employment Accommodation Policy and consistent with the requirements of the Ontario Human Rights Code. Please contact [email protected]if you require a disability related accommodation so we can ensure your participation needs are met.

 

Brock University does not use AI Technology at any stage of the recruitment process.

 

We appreciate all applications received. Candidates that are selected for an interview will be contacted.

 

Learn more about Brock University by visiting www.brocku.ca.

Skills

LinuxCybersecurityPenetration TestingSIEMSOCRisk ManagementComplianceCustomer ServiceProcurementProject ManagementPMPITILISO 27001CISSP

Similar Jobs

30

Director, Information Security

Centric Brands · Greensboro, NC, US · Remote, Hybrid, Onsite

6 days ago

Director, Information Security

Tera · 123 Front, Canada

6 days ago

Director Information Security

Akamai · Poland, PL · Remote

2 weeks ago

Information Security Director

Center Parcs Careers · Forest House, Forest House, Nottinghamshire, Newark, Nottinghamshire, United Kingdom

3 weeks ago

Director, Information Security

Trimedx · US IN Indianapolis - Central Office, United States of America

1 month ago

Information Security Director

Freemanhealth · 1102 W 32nd Street Freeman Hospital West, United States of America

1 month ago

Director, Information Security

UFCU · Austin, TX

2 months ago

Director, Information Security

Indigo Books & Music · Toronto, ON, Canada

2 months ago

Director Information Security

Bridgewater Bank · St Louis Park

2 months ago

Director, Information Security

whitecap · REMOTE GA 3 - Remotely Working in Georgia, United States of America · Hybrid, Remote

4 months ago

Director Information Security

American Express · Gurugram, HR, India · Hybrid

4 months ago

Director, Information Security

Brandeis University is · Brandeis - Waltham Campus, United States of America · Remote

5 months ago

Director, Information Security

Bdo · Toronto - Wellington St, Canada · Onsite

5 months ago

Director, Information Security

Whoop · Boston, MA · Onsite

5 months ago

Director - Information Security

Tdecu · Post Oak Corporate Office, United States of America

6 months ago

Director, Information Security

PetSmart Apply · Phoenix, AZ, US · Remote, Hybrid

1+ year ago

Director, Information Security - IFS Copperleaf

IFS · Vancouver, British Columbia, Canada · Hybrid

5 days ago

Director, Information Security - IFS Copperleaf

IFS · Vancouver, British Columbia, Canada · Hybrid

6 days ago

Senior Director, Information Security

Zillow · Bengaluru, India · Onsite

1 week ago

Director, Information Security & Technology

Gamechanger · GameChanger Remote - US · Remote

1 week ago

Director Information Security - GCC India & JAPAC

Regeneron · Hyderabad, India · Hybrid

2 weeks ago

Director, Information Security Office Consultant

Capitalone · McLean, VA, United States of America +2

2 weeks ago

Senior Director, Information Security Manager

0101022-GIA PROD US LOS ANGELES · Pittsburgh, PA, United States, US

3 weeks ago

Director, Information Security Operations

Mastercard · O'Fallon, Missouri (Main Campus), United States of America +2 · onsite

4 weeks ago

Director, Information Security (Security Engineering & Operations)

Achieve · Tempe, AZ, United States · Hybrid

4 weeks ago

Director, Information Security - Endpoint, Mobile, Cloud

Pru · Wash, 213 Washington St., Newark, NJ, United States of America

1 month ago

Director, Information Security - Assurance

Aveva · Cambridge - Science Park, United Kingdom +1

1 month ago

Director, Information Security - GRC

Aveva · Cambridge - Science Park, United Kingdom +1

1 month ago

Sr. Director Information Security

Viavisolutions · Chandler-HQ, AZ USA, United States of America +1

1 month ago

Associate Director, Information Security Risk

EQT Group · Stockholm, Stockholm, Sweden +1 · hybrid

1 month ago