Director of Technology - Cybersecurity & IT Strategy

Confidential • Canada
Remote
Apply
AI Summary

Lead IT operations, cybersecurity, and technology strategy for a fully remote Ontario law firm. Oversee infrastructure, vendor management, security frameworks, and AI adoption aligned with legal regulations. Requires 8-12+ years of progressive IT leadership experience in a professional services environment.

Key Highlights
Fully remote leadership role with direct access to firm leadership
Ownership of IT operations, cybersecurity, and technology strategy
Experience in law firm or professional services IT environment
Strong cybersecurity and privacy expertise (PIPEDA, provincial laws)
Hands-on Microsoft 365, Azure, and modern security tooling
Vendor management and IT budget oversight
AI and automation strategy with acceptable-use policies
Post-merger IT integration experience preferred
Key Responsibilities
Oversee all IT operations, infrastructure, and end-user support across a fully remote workforce
Audit and rationalize the technology stack including hardware, software licensing, SaaS spend, and vendor relationships
Establish IT governance, policies, and procedures appropriate for a regulated legal environment
Design and implement a cybersecurity and data protection strategy aligned with PIPEDA, applicable provincial privacy laws, and Law Society of Ontario guidance
Oversee identity and access management, endpoint security, data encryption, and secure remote access
Lead incident detection and response including breach reporting obligations
Conduct regular risk assessments, audits, and vulnerability scans and deliver firm-wide security awareness training
Oversee core legal technology platforms including practice management, document management, billing, and secure client communication tools
Implement records management and data retention policies aligned with legal and regulatory obligations
Develop and execute the firm's strategy for AI and automation adoption and establish acceptable-use policies governing AI in a client-confidentiality environment
Lead IT due diligence and post-merger technology integration as the firm grows
Build and manage a small internal IT team over time
Develop and maintain a technology roadmap and advise firm leadership on IT risks and emerging technologies
Technical Skills Required
IT operations infrastructure end-user support technology stack audit hardware management software licensing SaaS spend management vendor management procurement IT budgeting cybersecurity strategy data protection PIPEDA compliance provincial privacy law compliance Law Society of Ontario guidance identity and access management endpoint security data encryption secure remote access incident detection and response breach reporting risk assessments vulnerability scans security awareness training practice management platforms document management billing systems secure client communication tools records management data retention policies AI adoption strategy acceptable-use policies Microsoft 365 cloud platforms Azure modern security tooling
Benefits & Perks
Fully remote work model
Collaborative and approachable culture
Nice to Have
Experience in a law firm or legal services environment
Professional services firms of comparable size
Familiarity with Law Society of Ontario requirements related to technology competence and confidentiality
Experience deploying or governing AI tools in a regulated setting
Post-merger IT integration experience
Relevant certifications (CISSP, CISM, CIPM, ITIL, Azure Security)
Knowledge of frameworks such as NIST, ISO 27001, or CIS Controls

Job Description


We are currently partnering with a well-established and growing Ontario law firm to recruit a Director of Technology. This organization has scaled significantly in recent years and is continuing to grow. The firm operates on a fully remote model with a collaborative and approachable culture.


Overview


This is a hands-on leadership role with direct access to firm leadership and broad ownership of the technology function. The Director of Technology will take full ownership of IT operations, cybersecurity, and technology strategy for a remote-first legal organization. This individual will establish proper governance and security frameworks, manage vendor and licensing relationships, and develop a technology roadmap aligned with the firm's growth plans.


Key Responsibilities


  • Oversee all IT operations, infrastructure, and end-user support across a fully remote workforce
  • Audit and rationalize the technology stack, including hardware, software licensing, SaaS spend, and vendor relationships
  • Establish IT governance, policies, and procedures appropriate for a regulated legal environment
  • Design and implement a cybersecurity and data protection strategy aligned with PIPEDA, applicable provincial privacy laws, and Law Society of Ontario guidance
  • Oversee identity and access management, endpoint security, data encryption, and secure remote access
  • Lead incident detection and response, including breach reporting obligations
  • Conduct regular risk assessments, audits, and vulnerability scans, and deliver firm-wide security awareness training
  • Oversee core legal technology platforms including practice management, document management, billing, and secure client communication tools
  • Implement records management and data retention policies aligned with legal and regulatory obligations
  • Develop and execute the firm's strategy for AI and automation adoption, and establish acceptable-use policies governing AI in a client-confidentiality environment
  • Lead IT due diligence and post-merger technology integration as the firm grows
  • Build and manage a small internal IT team over time
  • Develop and maintain a technology roadmap and advise firm leadership on IT risks and emerging technologies


Qualifications


  • 8–12+ years of progressive IT experience, including leadership roles
  • Background in a law firm or professional services firm of 20–300 people in size
  • Current or prior title of Manager, Senior Manager, or Director of IT — someone who has operated across multiple areas of IT, not a specialist from a large firm
  • Strong expertise in cybersecurity, privacy, and risk management, with demonstrated experience implementing PIPEDA-aligned controls
  • Hands-on experience with Microsoft 365, cloud platforms (Azure preferred), and modern security tooling
  • Experience managing vendors, procurement, and IT budgets
  • Strong communication skills with the ability to advise non-technical stakeholders
  • Experience in a law firm or legal services environment is preferred; professional services firms of comparable size will also be considered
  • Familiarity with Law Society of Ontario requirements related to technology competence and confidentiality is an asset
  • Experience deploying or governing AI tools in a regulated setting is an asset
  • Post-merger IT integration experience is an asset
  • Relevant certifications (CISSP, CISM, CIPM, ITIL, Azure Security) and knowledge of frameworks such as NIST, ISO 27001, or CIS Controls are considered assets

Similar Jobs

Explore other opportunities that match your interests

Director of Product

Networking
•
6h ago
Visa Sponsorship Relocation Remote
Job Type Full-time
Experience Level Not Applicable

mvp ventures

Canada

Senior IAM Manager - Enterprise Security & Strategy

Networking
•
1d ago

Premium Job

Sign up is free! Login or Sign up to view full details.

•••••• •••••• ••••••
Job Type ••••••
Experience Level ••••••

emergiTEL

Canada
Visa Sponsorship Relocation Remote
Job Type Contract
Experience Level Not Applicable

Alignerr

Canada

Subscribe our newsletter

New Things Will Always Update Regularly