×
Register Here to Apply for Jobs or Post Jobs. X

Senior Manager, Information Security

Job in Calgary, Alberta, D3J, Canada
Listing for: Benevity
Full Time position
Listed on 2026-09-23
Job specializations:
  • IT/Tech
    Cybersecurity, Information Security & Data Protection, IT Project Manager, Security Management & Operations
Salary/Wage Range or Industry Benchmark: 140000 - 175000 CAD Yearly CAD 140000.00 175000.00 YEAR
Job Description & How to Apply Below

Meet Benevity

Benevity is the way the world does good, providing companies (and their employees) with technology to take social action on the issues they care about. Through giving, volunteering, grantmaking, employee resource groups and micro-actions, we help most of the Fortune 100 brands build better cultures and use their power for good. We’re also one of the first B Corporations in Canada, meaning we’re as committed to purpose as we are to profits.

We have people working all over the world, including Canada, Spain, Switzerland, the United Kingdom, the United States and more!

Benevity is seeking a Senior Manager, Information Security to lead our security operations, product and application security, and corporate security teams. Accountable for the posture of our cloud-native platform, you will manage both leaders and senior individual contributors while maintaining the technical depth needed to critically review architectures, incident timelines, and risk ratings.

In this role, you will partner closely with GRC and fraud operations to drive alignment across the organization. Additionally, you will define how Benevity secures its AI-powered product capabilities and shapes the adoption of AI tooling to accelerate our internal security practice.

What you’ll do:
  • Lead and coach a multi-disciplinary security team, driving team development, hiring, and a sustainable operating cadence.

  • Own critical security KPIs and ensure continuous improvement on various metrics to improve Benevity’s security posture.

  • Drive the information security roadmap and manage security vendors, aligning execution directly with CISO strategy and direction.

  • Oversee end-to-end security operations and incident response, serving as the senior escalation lead during major events.

  • Hold external security partners (including MDR providers) accountable for high-fidelity coverage, triage quality, and rapid response.

  • Establish AI security standards for LLM integrations, RAG pipelines, and agentic workflows using frameworks like OWASP and MITRE ATLAS.

  • Operationalize AI within the security team to enhance triage, threat detection, investigation, and reporting capabilities.

  • Embed security into the SDLC via CI/CD automation, SAST/SCA/DAST tooling, secure API patterns, and threat modeling.

  • Maintain the enterprise security risk register and vulnerability management lifecycle, prioritizing remediation by real-world risk.

  • Direct corporate security hygiene, phishing simulations, security awareness training, and the Responsible Disclosure Program.

  • Partner with Dev Ops and GRC to implement infrastructure-as-code security, meet audit compliance obligations, and deliver clear posture metrics.

What you’ll bring:
  • 10+ years of progressive experience in information security, including 5+ years leading teams

  • Experience managing managers as well as individual contributors, with a track record of developing both

  • Breadth across security operations, product and application security, and cloud security Hands-on experience managing security operations on AWS, and other cloud providers.

  • Hands-on experience leading major incident response, including acting as incident commander, coordinating cross-functional responders and managing communications under pressure

  • Practical understanding of AI and LLM security risks, including the OWASP Top 10 for LLMs, prompt injection and the security implications of agentic systems

  • A clear, evidence-based point of view on where AI adds value in security work, where it falls short, and how to get it production-ready — and the curiosity to keep revising that view as the tooling changes

  • Working knowledge of SAST, SCA, DAST, API and microservices security, proven ability to set direction and evaluate the quality of the work

  • Deep…

Position Requirements
10+ Years work experience
To View & Apply for jobs on this site that accept applications from your location or country, tap the button below to make a Search.
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
 
 
 
Search for further Jobs Here:
(Try combinations for better Results! Or enter less keywords for broader Results)
Location
Increase/decrease your Search Radius (miles)
0
200
Filters
Education Level
Experience Level (years)
Posted in last:
Salary