Job Description
Insight Global is seeking a Director, Cyber Governance, Risk & Compliance (GRC) for a leading financial services organization undergoing a significant cybersecurity transformation.
This individual will play a critical role in building and maturing the organization's Cyber 2.0 program, with GRC identified as one of the most important pillars of a multi-year cybersecurity roadmap through 2027.
This is a unique opportunity for a senior cybersecurity professional who enjoys operating as both a strategic leader and hands-on contributor.
Although carrying a Director title, this position is a true individual contributor role with no direct reports, requiring someone who can seamlessly transition between technical discussions with engineering teams and executive-level conversations with Directors, VPs, and C-suite stakeholders.
The ideal candidate possesses solid cyber risk and governance expertise, understands how technology teams deliver, and has exceptional stakeholder management skills to drive accountability and risk remediation across the organization.
We are a company committed to creating diverse and inclusive environments where people can bring their full, authentic selves to work every day.
We are an equal opportunity/affirmative action employer that believes everyone matters.
Qualified candidates will receive consideration for employment regardless of their race, color, ethnicity, religion, sex (including pregnancy), sexual orientation, gender identity and expression, marital status, national origin, ancestry, genetic factors, age, disability, protected veteran status, military or uniformed service member status, or any other status or characteristic protected by applicable laws, regulations, and ordinances.
If you need assistance and/or a reasonable accommodation due to a disability during the application or recruiting process, please send a request to
[email protected].
To learn more about how we collect, keep, and process your private information,
please review Insight Global's Workforce Privacy Policy: https://insightglobal.com/workforce-privacy-policy/.
Skills and Requirements
10+ years of experience within Cybersecurity, Cyber Risk, Technology Risk or Information Security.
5 years specifically working with GRC
Strong experience managing cyber risk registers and enterprise risk governance activities.
Demonstrated experience driving accountability and remediation across large stakeholder groups.
Ability to communicate technical concepts to executive audiences.
Experience partnering closely with security, engineering, and technology teams.
Strong understanding of vulnerability management practices and cybersecurity operations.
Experience within data governance, information risk, or technology risk management.
Proven track record operating in a highly autonomous individual contributor capacity.
Excellent executive presence and ability to influence senior leadership.
The successful candidate will understand how technology teams operate, but have developed the communication and influence skills necessary to drive outcomes across the organization.
We are specifically looking for individuals who:
- Can operate strategically while remaining hands-on.
Understand delivery, execution, and accountability.
- Have strong executive communication skills.
- Can challenge stakeholders appropriately and drive action.
- Thrive in environments where they are building and transforming programs.
- Curious, creative, autonomous - Has the ability to make executive decisions - NO HANDHOLDING.
- Keeps a finger on the pulse on what is happening in the marketplace and ensures that we remain abreast of market demands Financial services, fintech, insurance, or other regulated industry experience.
Cloud security or cloud governance experience.
Previous technical background in engineering, infrastructure, security operations, or architecture.
Experience building, scaling, or maturing cybersecurity governance functions.
Certifications such as CISSP, CISM, or CRISC.
📌 Director GRC (Toronto)
🏢 Insight Global
📍 Toronto