Lead the development and optimization of enterprise risk management frameworks. Drive the evolution of modern governance, risk, and compliance practices. Collaborate with cross-functional teams to embed risk-informed decision-making into everyday business operations.
Key Highlights
Key Responsibilities
Technical Skills Required
Benefits & Perks
Nice to Have
Job Description
This position is posted by Jobgether on behalf of a partner company. We are currently looking for a Principal Business Information Security Officer in Canada.
This is a strategic leadership opportunity for an experienced cybersecurity and governance professional looking to shape the future of enterprise risk advisory in a fast-moving SaaS environment. In this role, you will drive the evolution of modern governance, risk, and compliance practices while embedding risk-informed decision-making into everyday business operations. Working closely with cross-functional teams across product, engineering, business technology, legal, and security, you will provide actionable guidance that supports innovation without compromising security or compliance. The position offers high visibility, executive collaboration, and the chance to influence organizational resilience at a global scale. Ideal for someone who thrives in complex environments, enjoys translating technical risks into business value, and is passionate about building scalable governance frameworks in a collaborative, remote-first culture.
Accountabilities
- Lead the ongoing development and optimization of enterprise risk management frameworks to ensure scalable, repeatable, and business-aligned governance practices.
- Design and expand a BISO-aligned advisory model that strengthens collaboration between security, compliance, and operational teams.
- Deliver timely risk guidance related to product development, engineering initiatives, supplier assessments, architecture reviews, and strategic business decisions.
- Act as a trusted advisor to technical and executive stakeholders by translating complex risk scenarios into clear, actionable recommendations.
- Facilitate technical and executive-level risk discussions, governance meetings, and alignment sessions focused on risk appetite and accountability.
- Partner with governance and engineering teams to integrate risk insights into standards, monitoring systems, assurance workflows, and control frameworks.
- Mentor and coach GRC professionals to strengthen advisory capabilities and ensure consistent application of risk management methodologies.
- Create executive-ready dashboards, reports, and risk narratives that support strategic prioritization and informed decision-making across the organization.
- Foster strong cross-functional relationships with global teams to embed security and governance practices into daily operations.
Interested in remote work opportunities in Cyber Security? Discover Cyber Security Remote Jobs featuring exclusive positions from top companies that offer flexible work arrangements.
- Extensive experience in information security, governance, risk management, or compliance within technology-driven or SaaS environments.
- Strong expertise in risk analysis methodologies, risk quantification, governance frameworks, and risk-informed decision-making.
- Proven ability to lead executive-level discussions, facilitate governance committees, and influence stakeholders across technical and business functions.
- Experience delivering real-time security or risk advisory support for product development, engineering, or operational initiatives.
- Excellent communication, facilitation, and storytelling skills with the ability to simplify complex security concepts for diverse audiences.
- Demonstrated success building cross-functional partnerships and driving alignment across distributed global teams.
- Experience mentoring or coaching team members to improve advisory capabilities and governance consistency.
- Growth-oriented mindset with the ability to modernize processes, challenge outdated approaches, and implement scalable solutions.
- Relevant certifications such as CISSP, CISM, CRISC, CISA, Security+, or similar credentials are considered an asset.
- Familiarity with global business environments and remote collaboration practices is highly valued.
- Competitive compensation package.
- Fully remote-first work environment with flexible arrangements.
- Comprehensive healthcare coverage, including dependent benefits.
- Flexible paid time off, including additional self-care and volunteer days.
- Parental leave and employee wellness support programs.
- Home office setup assistance and remote work stipend.
- Continuous learning and professional development opportunities with annual learning support.
- Employee Assistance Program and peer recognition initiatives.
- Complimentary premium family account access for company products and services.
- Inclusive, collaborative, and high-growth work culture focused on innovation and employee development.
Browse our curated collection of remote jobs across all categories and industries, featuring positions from top companies worldwide.
We use an AI-powered matching process to ensure your application is reviewed quickly, objectively, and fairly against the role's core requirements. Our system identifies the top-fitting candidates, and this shortlist is then shared directly with the hiring company. The final decision and next steps (interviews, assessments) are managed by their internal team.
We appreciate your interest and wish you the best!
Why Apply Through Jobgether?
Data Privacy Notice: By submitting your application, you acknowledge that Jobgether will process your personal data to evaluate your candidacy and share relevant information with the hiring employer. This processing is based on legitimate interest and pre-contractual measures under applicable data protection laws (including GDPR). You may exercise your rights (access, rectification, erasure, objection) at any time.
We may use artificial intelligence (AI) tools to support parts of the hiring process, such as reviewing applications, analyzing resumes, or assessing responses. These tools assist our recruitment team but do not replace human judgment. Final hiring decisions are ultimately made by humans. If you would like more information about how your data is processed, please contact us.
Similar Jobs
Explore other opportunities that match your interests
Jobgether
Jobgether
Senior Engineering Manager, Application & Product Security