About the job
About MealSuite
At MealSuite, we specialize in developing comprehensive foodservice technology tailored for healthcare and senior living organizations. Our mission is to empower care teams to provide exceptional dining experiences with minimal effort. As a rapidly expanding organization, we tackle significant challenges that have a direct impact on patient and resident care.
About the Role
In this pivotal position, you will be responsible for protecting our SaaS platform and internal IT infrastructure, spearheading our regulatory compliance initiatives (including SOC 2, HIPAA, GDPR, and PIPEDA), enhancing our risk management strategies, and establishing a high-performing security organization. This role is essential for maintaining customer confidence, safeguarding sensitive information, and ensuring our company remains compliant and secure as we grow.
Key Responsibilities
- Develop and manage the security roadmap for both the SaaS product and internal IT systems.
- Lead compliance programs for SOC 2, HIPAA, GDPR, and PIPEDA and oversee external audits.
- Implement best practices for cloud and application security, including DevSecOps, CI/CD security, and secure coding.
- Direct threat detection, logging, monitoring, vulnerability management, and incident response initiatives.
- Maintain internal IT security controls, policies, identity access management (IAM), endpoint security, and security awareness training.
- Conduct internal audits, risk assessments, and vendor security reviews.
- Create and uphold security frameworks, privacy policies, and incident response procedures.
- Provide company-wide training on phishing, data protection, and secure practices.
- Recruit, mentor, and develop a Security & Compliance team while establishing objectives and key performance indicators (KPIs).
- Collaborate cross-functionally with Engineering, IT, Product, Legal, and Leadership to align security initiatives with business objectives.
Qualifications
- Bachelor’s degree in a technical discipline or equivalent practical experience.
- Possession of one or more security certifications (CISSP preferred; SSCP, CISM, CISA, CRISC also accepted).
- A minimum of 7 years of experience in technical security roles.
- At least 3 years of experience leading security, compliance, or risk teams, preferably in a SaaS environment.
- Demonstrated experience managing SOC 2, HIPAA, GDPR, or related compliance programs.
- Strong understanding of threat detection, cloud security, incident response, and IT policy formulation.
- Experience in conducting customer-facing security or risk assessments.
- Proactive, independent mindset with exceptional critical-thinking abilities.
Why You’ll Enjoy Working Here
- Unlimited paid time off – we believe in empowering our employees to maintain a healthy work-life balance.
- Retirement savings support – 100% matched RRSP/401(k) contributions up to 3%.
- Comprehensive health benefits – including medical, dental, vision, life, and disability insurance.

