Job Description
Description
Your Moneris Career – The Opportunity
You will be in a leadership role responsible for overseeing our security governance, risk management, compliance, and awareness programs. Reporting directly to the VP, Information Security, you will play a critical part in ensuring that security initiatives align with business objectives and regulatory requirements. The successful candidate will lead efforts to assess and manage risks, develop security metrics, ensure regulatory compliance, and drive security awareness across the organization. . You will ensure that our security posture is robust and aligned with regulatory requirements, industry standards, and best practices.
Location: You will be based in our Toronto office, balancing in-office collaboration with remote flexibility.
Reporting Relationship : You will report to the VP, Information Security
Your Moneris Career – What you’ll do
-
Develop and lead our security GRC strategy, ensuring alignment with business objectives and regulatory requirements and serves as key advisor to CISO and other senior executives on security GRC initiatives
-
Build, manage a security GRC team, promoting a culture of continuous learning and professional development. Management includes the team’s performance, ensuring organizational goals and always tracking OKRs defined for security GRC vertical.
-
Establish and maintain security policies, standards, and frameworks that align with industry best practices (e.g., ISO 27001, NIST, GDPR, PCI-DSS), that includes providing guidance and oversight to business partners ensuring Moneris’s application and products are following applicable policies and standards.
-
Lead the Security Governance Committee to ensure ongoing oversight and governance of security risks
-
Take the ownership to develop and maintain the enterprise-wide security risk register, ensuring risks are properly documented, prioritized, and mitigated.
-
Constant guidance and participate in risk assessments and threat modeling exercises to identify vulnerabilities across different products and oversee govern risk treatment plans.
-
Design the targeted security programs (including measuring the effectiveness), like phishing/ spear-phishing simulations to enhance our security culture, mandatory data breach training, etc.
-
Collaborate with the incident response team to manage security incidents and breaches, ensuring root cause analysis and corrective actions are completed
-
Lead the end-to-end planning and execution of Moneris’ annual audits such as PCI DSS, IT General Controls audit, internal audits, etc..
-
Coordinate across teams (IT, InfoSec, Legal, Operations, etc.) to collect, validate, and organize documentation and controls evidence.
-
Track audit status, risks, and issues, providing regular updates to executive leadership
-
Maintain documentation to support compliance, including system inventories, data flow diagrams, risk assessments, and remediation logs
Your Moneris Career – What you bring
-
Bachelors in Computer Science, Information Security, Risk Management or Equivalent
-
Minimum 12+ years of experience Previous experience in the
Company
Moneris
Location
Toronto
Country
Canada
Salary
125.000
URL