Sanjay Sharma
Chief Information Security Officer, Vice President @ Zafin
About
I am a seasoned Information Security Executive with over 20 years of experience helping organizations build resilient, future-ready cyber programs. My career has been dedicated to securing digital transformation, shaping strategic security initiatives, and enabling organizations to navigate today’s complex, AI-influenced threat landscape. As Chief Information Security Officer at Zafin, I lead enterprise-wide technology risk management, integrating threat intelligence, incident response, and vulnerability management into a unified, outcomes-driven strategy. I’ve architected scalable security programs that not only safeguard operations but also support business growth—most notably by advancing Zafin’s cybersecurity services and establishing an intelligence-led approach to threat detection. My focus lies in bridging cybersecurity, AI readiness, and risk governance to protect high-stakes environments. I specialize in aligning global frameworks with emerging technologies, fostering cross-functional stakeholder engagement, and championing secure innovation across all layers of the business. Whether steering regulatory alignment or enabling AI-adjacent strategies for secure digital finance, I bring a forward-thinking, performance-oriented approach to cybersecurity leadership. Throughout my career, I have excelled in leading diverse teams and optimizing processes for global entities. My strategic approach to IT risk activities and enhanced monitoring capabilities have resulted in substantial improvements in cyber defenses. By forging strategic partnerships with vendors and meticulously negotiating service agreements, I have significantly elevated service delivery and customer satisfaction. I bring a proven track record of driving organizational change and delivering impactful cybersecurity solutions. My unique blend of technical expertise and strategic vision positions me to effectively align security initiatives with business objectives, ensuring robust protection while enabling growth.
Canada
Greater Toronto Area
Information Technology & Services
Artificial Intelligence (AI), AI Security, Security Automation, Executive Advisory, Nonprofit Organizations, SOAR, Microsoft 365 Security, Microsoft Azure, IT Security Policies, Info Sec, Information Security Management, Security Certification, Stakeholder Management, Systems Design, Third Party Vendors, Supplier Risk Management, Security Evaluations, Microsegmentation, Risk Management, Incident Response
Experience

Chief Information Security Officer, Vice President
Toronto, ON
As Chief Information Security Officer at Zafin Inc, I lead enterprise-wide cyber and AI security strategy and technology risk governance for a global fintech innovator at the forefront of modern banking transformation. I serve as a strategic advisor to the executive team and Board, translating dynamic cyber risk into actionable, business-aligned security outcomes that reinforce client trust and accelerate secure growth. My remit includes building and scaling comprehensive security programs across cloud-native platforms, AI-augmented environments, and regulated financial ecosystems. I oversee initiatives spanning threat intelligence, incident response, vulnerability management, cloud and data security, and third-party risk — all while ensuring alignment with evolving global regulatory frameworks. In an era defined by AI disruption, digital finance, and heightened regulatory scrutiny, I champion security as a core business enabler. By embedding resilience into innovation, driving cross-functional accountability, and fostering a proactive security culture, I help Zafin deliver secure-by-design solutions that meet the complex demands of modern financial institutions.

Senior Vice President, CISO, Head of Cybersecurity Services
Greater Toronto Area, Canada
As the Senior Vice President and Chief Information Security Officer, my main responsibility is to shape our technical strategy and ensure operational excellence in an ever-changing organizational landscape. This involves creating and implementing strategic technology risk management practices to strengthen our security resilience, ensuring compliance with regulations, and promoting a culture of awareness and compliance. I work closely with the IT and engineering teams to integrate security measures into infrastructure and application designs, conduct regular penetration testing and vulnerability assessments, and administer ongoing security training programs. During my time here, I led the expansion of our cybersecurity services, resulting in a significant revenue increase. I also pioneered our organization's first-ever threat intelligence program and oversaw the development of a robust Security Operations Center (SOC) from scratch. My approach to policy development and enforcement aligns us with industry standards and regulatory requirements, making us a leader in compliance.

Head of IT Risk & Cybersecurity
Toronto, Ontario, Canada
As Head of IT Risk & Cybersecurity, I was handpicked to direct the enterprise risk and cybersecurity unit, providing critical support and risk insights to the Board of Directors. My tenure was marked by advancements in reporting capabilities, deepened business insight reporting, and optimization of IT risk activities. I led a diverse team in executing complex IT projects, including cyber and cloud migration strategies, and Zero Trust Architecture and Threat Hunting initiatives. Noteworthy accomplishments include partnering with vendors to develop comprehensive Master Services Agreements, enhancing monitoring capabilities, refining incident response strategies, and introducing data-driven approaches leveraging advanced analytics. I crystallized the focus on threat response by designing and implementing a 3-year cybersecurity program and introducing Quarterly Incident Response (IR) tabletop exercises, thereby elevating our organization's cyber defenses.

IT Security Strategy & Transformation Consultant
Toronto, Canada Area
During my tenure as the Cybersecurity Strategy & Transformation Lead at PwC Canada, I provided strategic leadership and managed key cybersecurity projects to drive organizational change. I masterminded cybersecurity strategy, risk management frameworks, and security architecture for large-scale transformations, aligning them with NIST standards and industry best practices. Notably, I delivered target state security architecture and risk monitoring frameworks for the financial services industry, ensuring compliance with regulations such as PCI-DSS and PIPEDA. Additionally, I enhanced clients' ability to manage third-party cyber risks effectively by designing a third-party risk management framework leveraging system and organization controls (SOC). My role also involved coordinating responses to RFPs for cybersecurity transformations and overseeing projects encompassing asset management, IAM, network security, and third-party cyber risk management. I drafted and presented C-level cybersecurity playbooks, providing strategic guidance and insight to senior leadership in the utility industry. Accomplishments: • Delivered target state security architecture and risk monitoring frameworks for the financial services industry, ensuring compliance with regulations. • Enhanced clients' ability to manage third-party cyber risks effectively by designing a third-party risk management framework leveraging system and organization controls.

Managed Services Senior Advisor
Toronto, Ontario, Canada
At Deloitte LLP Canada, I assumed the role of Managed Security Services Senior Advisor, where I provided leadership within security operations. I directed teams responsible for incident and service management with a focus on cloud-based security services. Employing a risk-based approach, I formulated strategies for secure cloud enablement, endpoint protection, and architecture for secure zones. One of my notable achievements was assessing security vulnerabilities for a large Australian bank and implementing a robust DDoS protection strategy. Additionally, I managed multiple vendors and partnerships, contributing thought leadership in DDoS mitigation and cloud access security. Accomplishments: • Implemented a robust DDoS protection strategy for a large Australian bank. • Contributed thought leadership in DDoS mitigation and cloud access security.

MBA, Strategy, Operations, and Information Systems
Toronto, Canada Area
Recipient of Tannah H. Schulich MBA Scholarship , and Dean's Entrance Award Led the Strategy Study Group of six MBA students to define growth strategy of a logistics firm
Sanjay Sharma's Contact Information
Phone
Find the Right Leads
Find Verified Contact Data
What LeadContact does well
Find verified emails, phone numbers, and decision-makers with 98% accuracy.
Find Leads
Find the right people by company, role, industry, location, and more.
925M+ professional profiles

Find Emails
Access verified email addresses for your target contacts.
657M+ emails

Find Phone Numbers
Get cross-validated phone data from multiple top sources.
239M+ phone numbers

More Accurate. Lower Cost.
Find contact data in 1 tool with 98% accuracy
LeadContact integrates leading enrichment tools to deliver more accurate contact data—without paying for each one.
Great conversations start with the right contact.
It’s time to find yours.









