Senior Director, Information Security and Compliance

Foundant Technologies

Apply Now
Canada
Salary not disclosed
full-time
director
Posted August 31, 2026
via himalayas

About This Role

A NOTE ON HOW TO REACH US We're truly grateful that so many people have Foundant on their radar - it means a lot that our work resonates with others. That said, due to the high volume of direct messages and emails we receive, cold outreach isn't the preferred way to be considered for a role, and we're not able to prioritize applications submitted this way. To apply for open positions, please visit our careers page, which is the fastest and most effective route to being considered. About Foundant At Foundant, we build mission-critical software for the social good ecosystem - helping foundations, grantmakers, nonprofits, and community organizations streamline their work, strengthen relationships, and maximize their impact. We serve the giving community worldwide with a comprehensive suite of solutions spanning grant management, community foundation software, and giving analytics. We're a unified company shaped by strong roots across our product portfolio, and we operate with intention and purpose. Our team of ~350 people across six countries is connected by a shared North Star: to be the trusted partner and strategic advisor to the communities we serve. Where You ll Work: • As a remote-first workplace, we believe in offering flexibility and the freedom to work where it suits you best, while staying connected through technology. Our global network of talent is supported by physical office hubs and virtual collaboration, fostering a dynamic environment where innovation and growth thrive. • With office locations in Bozeman, MT, Toronto, Canada, and Dublin, Ireland, you'll be part of a globally connected team. Whether you're working remotely or from one of our office locations, you'll be contributing to a vibrant, collaborative culture focused on driving meaningful impact across the world. WhatYou llDo: • You'll own and drive the maturity of Foundant's information security and GRC program end to end - setting the strategic roadmap that protects the trust our clients place in us across five products and every region we serve. • You'll lead and develop our Head of Technical Security and Head of GRC, aligning both teams around a shared vision for reducing risk and building a security-first culture across the organization. • You'll serve as Foundant's executive voice during security incidents, communicating clearly and confidently with clients, leadership, and regulators - because how we show up when things go wrong says as much about who we are as how we operate day to day. • You'll build and mature Foundant's GRC program - policies, risk registers, control frameworks, and audits (e.g., SOC 2, ISO 27001) - ensuring compliance across US, Canadian, European, UK, and Australian regulatory requirements. • You'll partner closely with Product and Engineering leaders to embed security and privacy by design into all five product lines. • You'll develop and present security and compliance metrics to executive leadership and the Board, translating technical risk into business impact and clear priorities. • You'll own third-party and vendor risk management, ensuring our extended ecosystem meets the same standard of care we hold ourselves to. • You'll represent Foundant's security posture to clients and prospects during enterprise sales cycles, security reviews, and due-diligence questionnaires. • Other duties as assigned. WhatYou llNeed: • 8+ years of progressive leadership experience in information security and/or governance, risk, and compliance (GRC), including experience leading both technical security and compliance functions. • Demonstrated experience building or maturing a security and compliance program for a multi-product SaaS company. • Experience navigating international regulatory and compliance frameworks (e.g., GDPR, UK GDPR, Australian Privacy Act, SOC 2, ISO 27001). • Experience leading security incident response programs, including experience serving as a public-facing or client-facing spokesperson during incidents. • Experience managing and developing senior technical and compliance leaders. • CISSP, CISM, or CRISC preferred, but not required. • No specific degree requirement - equivalent professional experience is accepted. • Must be legally eligible to work in the United States. WhatYou llBring to our Team Dynamics: Strategic Thinking Translates Foundant's North Star into a multi-year security and compliance roadmap that scales across five product lines and every region we operate in, adapting the plan as regulatory and threat landscapes shift. Decision-Making Makes fast, values-aligned calls under pressure - especially during security incidents - using evidence and risk data to protect clients and the business while keeping leadership clearly informed. Change Management Leads with calm, direct communication during incidents and organizational change alike, serving as a steady and credible voice for clients, regulators, and internal teams when it matters most. Staff Develop...

Ready to Apply?

Click the button below to visit the company's application page.

Apply for this Position