11 Aug
|
Momentum Financial Services Group
|
Toronto
11 Aug
Momentum Financial Services Group
Toronto
Director, Governance, Risk and Compliance (GRC)Toronto, CanadaWho We AreAt Momentum Financial Services Group, we help people move forward by reimagining how money works for those who need it most. With more than 40 years of experience, we're the team behind Money Mart—Canada's largest non-bank branch network—and a leader in financial solutions for underserved communities.From short-term loans to money transfers and prepaid cards, we power the products, technology, and operations that connect over a million customers a year to the money they need, when they need it.At MFSG, we come together across teams and departments to create something bigger than ourselves: solutions that remove barriers and give people access to money they might not get anywhere else. Whether you're solving problems, building systems, or shaping strategy, your work fuels real support for real people.Compensation Philosophy: Our strategy is simple—we aim to match the market. We regularly review industry standards to ensure our total rewards package is competitive and fair. This commitment helps us attract and retain talented individuals who share our purpose.Discretionary Annual Bonus: Enjoy the chance for a discretionary bonus based on individual performance and company success.Comprehensive Benefits: Our benefits include health and dental plans with 100% of the premiums covered. We also offer an Employee Assistance Program to support your mental well‐being and provide resources for personal challenges.Retirement Plans: Plan for your future with our robust retirement savings options, ensuring you're set for the long haul.Hybrid Work Environment: Experience the best of both worlds with our hybrid work model, allowing you to balance remote work with in‐office. When you're at our corporate head office, enjoy a relaxed and collaborative environment featuring breakout rooms for brainstorming and unwinding, plus a variety of snacks to keep you energized throughout the day.Perks and Rewards: Enjoy reimbursement for tuition assistance and professional development, discounts through Perkopolis and participate in our rewards and recognition programs to celebrate your contributions.The Job: Director, Governance, Risk and Compliance (GRC)We're seeking a Director, Governance, Risk and Compliance (GRC) to lead and operate MFSG's cybersecurity governance, cyber risk management, compliance, and data governance functions. This is a highly hands‐on senior individual contributor role responsible for strengthening governance frameworks, overseeing cyber risk activities, supporting regulatory compliance,
and driving risk‐informed decision‐making across the organization.What You'll DoOwn and operate the enterprise cyber risk management frameworkMaintain cybersecurity, technology, and data risk registersConduct cyber risk assessments across business processes, systems, vendors, and strategic initiativesDefine and track key risk indicators (KRIs), metrics, and remediation activitiesSupport post‐incident risk reviews and continuous improvement effortsCompliance, Audit & Regulatory Oversight:Support internal and external audits, regulatory reviews, and customer due diligence requestsValidate control effectiveness and coordinate audit evidence collectionManage cybersecurity policy governance and exception management processesEnsure alignment with industry frameworks including NIST, ISO 27001, privacy regulations, and financial sector requirementsData Governance & Third‐Party Risk Management:Partner with data governance, privacy, legal, and compliance teams to manage information riskOversee data governance activities including classification, retention, protection, access governance, and recovery controlsSupport vendor and third‐party risk assessments and remediation effortsReporting, Stakeholder Engagement & Cross‐Functional Influence:Prepare executive‐level cyber risk reporting and governance updatesPresent risk trends, control gaps, remediation progress, and emerging risks to leadershipInfluence business, technology, and control owners to drive risk reduction activitiesBuild strong relationships across cybersecurity, IT, legal, compliance, enterprise risk, and operational teamsGovernance Program Development & Operational Leadership:Develop and mature cybersecurity governance programs, policies, standards, and proceduresImprove GRC processes, workflows, and governance effectivenessPersonally execute critical deliverables in a hands‐on leadership capacityBalance business objectives with practical, risk‐based governance and security controlsWhat You'll Bring to the Table10+ years of experience in information security, cybersecurity, technology risk, or IT controlsAt least 5 years of direct GRC experience,
including 3+ years in a leadership capacityExperience within banking, fintech, insurance, payments, wealth management, or another regulated financial services environmentProven success operating as a senior individual contributor with ownership of risk assessments, governance documentation, executive reporting, and remediation trackingStrong understanding of enterprise cyber risk management, governance, and compliance practicesExtensive experience with data governance risk management, privacy controls, and information asset protectionExperience managing cyber risk registers, risk reviews, issue management, and remediation programsStrong knowledge of Canadian financial sector regulatory expectations, operational resilience principles, and privacy obligationsExcellent communication skills with the ability to translate technical issues into clear business risk languageEducation + ExperienceBachelor's degree in Cybersecurity, Information Systems, Computer Science, Risk Management, or a related field, or equivalent practical experienceExperience supporting audits, regulatory reviews, customer security assessments, and control testing activitiesStrong understanding of identity and access management, data protection, cloud security, vulnerability management, incident response, third‐party risk, and business continuityPreferred QualificationsExperience within a Canadian regulated financial institution or fintech organizationProfessional certifications such as CISSP, CISM, CRISC, CGEIT, or ISO 27001 Lead Implementer/AuditorExperience implementing or enhancing GRC platforms, workflow automation, and reporting dashboardsFamiliarity with PCI DSS, SOC 2, cloud control frameworks, and privacy control frameworksExperience mapping controls across multiple regulatory and compliance frameworksClosingReady to lead cybersecurity governance and influence enterprise risk decisions across a growing organization? Join us and help strengthen the security, resilience, and compliance foundation of MFSG.Committed to Equal Opportunity:MFSG is committed to accommodating applicants up to the point of undue hardship during the recruitment, assessment and selection process. If you are selected for an interview, please notify MFSG if you require accommodation in respect of the materials or procedures used at any time during this process. If you require accommodation, MFSG will work with you to determine how to meet your needs.Please note: The salary range, inclusive of bonus, for this position is between C$175,000 to C$ 190,000. #J-18808-Ljbffr
📌 Director, Governance, Risk And Compliance (Toronto)
🏢 Momentum Financial Services Group
📍 Toronto