IT Security and Compliance Manager

2 weeks ago


Remote, Canada Mogo Finance Technology Inc. Full time

We are looking for a capable IT Security and Compliance Manager, who enjoys remote security work and possesses both deep and wide expertise in the information security space.

The base salary for this role is: $90,000-$130,000

**Job Summary**:
As the IT Security and Compliance Manager at Mogo and its subsidiaries, you are entrusted with spearheading the organization's comprehensive security and IT Compliance strategy. This role is pivotal in managing a broad spectrum of responsibilities across the main company and its subsidiaries, including overseeing PCI DSS Level 1 Service Processor compliance, coordinating with external QSAs, and upholding the highest standards of data protection and cybersecurity practices. You will ensure adherence to stringent industry standards and safeguard our fintech environment.

Key Responsibilities:

- ** PCI DSS Compliance - Level 1 Service Processor**: Lead PCI DSS compliance initiatives as a Level 1 Service Provider, ensuring rigorous implementation of controls and adherence to standards for high-volume transaction processing.
- ** External QSA Coordination**: Work closely with external Qualified Security Assessors for regular PCI DSS audits and assessments, ensuring compliance and effective communication.
- ** Custom Code Review Oversight**: Manage the review of custom code for security vulnerabilities, upholding compliance with industry standards.
- ** Vulnerability and Penetration Testing Management**: Oversee internal and external vulnerability scans, as well as penetration testing, to identify and address security weaknesses.
- ** Compliance Leadership and Audit Management**: Conduct comprehensive compliance assessments, audits, and reviews, overseeing the implementation of corrective actions.
- ** Cross-Functional Regulatory Compliance Collaboration**: Engage in cross-functional teams, ensuring alignment of user activities and system processes with regulatory, security, privacy, and legal requirements.
- ** Due Diligence Documentation**: Lead the completion of due diligence documents. Ensure accurate and timely documentation across multiple departments.
- ** Security Event Management**: Manage security event monitoring systems and respond to security incidents swiftly and effectively.
- ** Continuous Compliance Monitoring**: Perform ongoing security compliance monitoring in coordination with other organizational functions.
- ** Risk Management and Incident Response Planning**: Manage risk indicators and enhance incident response plans and scenarios.
- ** Security Awareness and Training**: Develop and conduct security awareness training programs and phishing campaigns to enhance the cybersecurity knowledge and readiness of all employees.

Key Performance Indicators:

- ** PCI DSS Compliance Metrics**: Track effectiveness and timeliness of implementing PCI DSS controls as a Level 1 Service Processor.
- ** Custom Code Review KPIs** (Vulnerability Detection Rate, Time to Remediate, etc.)
- ** Vulnerability Resolution Efficiency**: Rate of successful identification and mitigation of vulnerabilities from scans and tests.
- ** Audit Compliance Rate**: Success rate in meeting compliance standards in audits and reviews.
- ** Incident Response Time**: Track the average time taken to respond to and mitigate security incidents identified during scans and tests.

Required Certifications and Skills:

- Bachelor’s degree in Information Technology, Cybersecurity, or a related field.
- Certifications: CISSP, CISM, CRISC, or equivalent.
- Extensive experience in managing PCI DSS compliance, particularly for Level 1 Service Processors.
- Proficiency in coordinating with external QSAs and managing comprehensive security audits.
- Strong background in IT security, particularly in a fintech setting.
- Must be located in Canada
- Skilled in risk management, incident response, and conducting security audits.

Preferred Qualifications:

- Master’s degree in Information Security or a related field.
- Additional certifications such as CEH, GCIH, or similar.
- Experience with cloud security, AI-based security systems, and big data analytics.

**Benefits of working with us**:

- Remote Work - Enjoy the flexibility of remote work, supported by necessary resources.
- Comprehensive Health and Wellness - Access medical, dental, and vision coverage.
- Stock Options - Have a stake in the company's success through stock options.
- Work-Life Balance - Benefit from paid time off, including vacation days, holidays, and personal days.
- Innovative and Inclusive Culture - Engage in cutting-edge projects and be part of an inclusive workplace with diversity and equality programs.
- Wellbeing Programs - Access counseling services, mental health support, and additional wellness resources.

**About Us**

We help make it easy for Canadians to achieve financial freedom while making a positive impact.
We live in the most innovative and technologically advanced era, yet so much struggle exists. Most of us are fa



  • Remote, Canada ATB Financial Full time

    **Our bottom line is different.** There’s something special about working at ATB, and it’s been recognized on every top employer list that matters. Maybe it’s our exceptional culture where your total wellness is supported through market-leading benefits and you’re free to bring your whole self to work. Maybe it’s our commitment to a growth mindset...


  • Remote, Canada ATB Financial Full time

    Our bottom line is different.There's something special about working at ATB, and it's been recognized on every top employer list that matters. Maybe it's our exceptional culture where your total wellness is supported through market-leading benefits and you're free to bring your whole self to work. Maybe it's our commitment to a growth mindset and our...


  • Remote, Canada Open Text Corporation Full time

    **Principal Security Compliance Analyst**: - Req id: 37918- Virtual, CA Virtual, US**OPENTEXT - THE INFORMATION COMPANY** As the Information Company, our mission at OpenText is to create software solutions and deliver services that redefine the future of digital. Be part of a winning team that leads the way in Enterprise Information Management. **The...


  • Remote, Canada Lyrical Security Full time

    Lyrical Security is looking for an Information Security Analyst to join our Advisory Services team. This role is well suited to someone who thrives on variety and is a lifelong learner who stays up-to-date on cybersecurity models and trends. As a generalist, you understand common information security frameworks (NIST SP 800-53, PCI-DSS, TSC for SOC2,...


  • Remote, Canada Open Text Corporation Full time

    Principal Security Compliance Analyst: Req id: Virtual, CA Virtual, USOPENTEXT THE INFORMATION COMPANYAs the Information Company, our mission at OpenText is to create software solutions and deliver services that redefine the future of digital. Be part of a winning team that leads the way in Enterprise Information Management.The OpportunityThe Security...

  • Compliance Manager

    5 days ago


    Remote, Canada Mogo Finance Technology Inc. Full time

    We're hiring a Compliance Manager who will have a key role in developing and implementing compliance policies and procedures related to all aspects of a provincially-regulated Portfolio Manager, Investment Fund Manager, and Exempt Market Dealer. Reporting directly to the Chief Compliance Officer, the Compliance Manager will work closely with the MAMI team...


  • Remote, Canada 360insights Full time

    **COMPLIANCE PROGRAM MANAGER** **Experiences that create growth. Growth that creates experiences.** Here at 360insights you will be a part of a fast-paced global team that is innovating and leading in the channel incentives and insights industry through our SaaS platform. You will be delivering great solutions for some of the world’s most recognizable...


  • Remote, Canada 360insights Full time

    COMPLIANCE PROGRAM MANAGERExperiences that create growth. Growth that creates experiences.Here at 360insights you will be a part of a fast-paced global team that is innovating and leading in the channel incentives and insights industry through our SaaS platform. You will be delivering great solutions for some of the world's most recognizable brands all...

  • Compliance Specialist

    2 weeks ago


    Remote, Canada SimplyCast Full time

    SimplyCast, a leading provider of interactive marketing software and services for organizations worldwide, is seeking a **Compliance Specialist** to join our team. This is a remote position. **About the **Compliance Specialist Position** As the Compliance Specialist you will be responsible for maintaining various management systems while acting as a...

  • IT Security Manager

    2 months ago


    Remote, Canada DREAMWORKS CONSULTANCY SERVICES LIMITED Full time

    Our client, A Leading IT service provider is looking to hire a IT Security Manager. Position: IT Security Manager /Contract Location: Remote **Job Description**: - Oversee the security operations center (SOC) - Manage the enterprise SIEM implementation - Understanding of security concepts DNS, VPN, DDOS, proxy services. - Deliver near real-time...

  • IT Security Manager

    5 days ago


    Remote, Canada DREAMWORKS CONSULTANCY SERVICES LIMITED Full time

    Our client, A Leading IT service provider is looking to hire a IT Security Manager.Position: IT Security Manager/ContractLocation: RemoteJob Description: Oversee the security operations center (SOC) Manage the enterprise SIEM implementation Understanding of security concepts DNS, VPN, DDOS, proxy services. Deliver near realtime monitoring, analysis, and...


  • Remote, Canada Daemon Defense Systems Full time

    We are looking for a skilled Security Project Manager who will work closely with the team and is responsible for devising security plans and strategies while leading the security team. Daemon Defense Security Program Managers maintain the highest level of professionalism and confidentiality. You will collaborate with the team and contribute to the security...

  • IT Compliance Analyst

    2 weeks ago


    Remote, Canada Syneos Health Clinical Full time

    **Description** **IT Compliance Analyst II** Syneos Health is the only fully integrated biopharmaceutical solutions organization purpose-built to accelerate customer success. We lead with a product development mindset, seamlessly connecting our capabilities to add high-value insights to speed therapies to patients and provide practical value to help our...


  • Remote, Canada Nest Wealth Full time

    **_We’re building our Nest!_** - Where you’ll be: Working remotely, anywhere in Canada (in EST)_ - Your Role: Chief Compliance Officer_ - Reporting to: Randy Cass, CEO_ **Who We Are**: Founded in 2014, Nest Wealth created Canada's first SaaS-based digital wealth management platform to ensure investors have access to sophisticated, personalized, and...


  • Remote, Canada Daemon Defense Systems Full time

    We are looking for a skilled Security Project Manager who will work closely with the team and is responsible for devising security plans and strategies while leading the security team. Daemon Defense Security Program Managers maintain the highest level of professionalism and confidentiality. You will collaborate with the team and contribute to the security...


  • Remote, Canada High Tech Genesis Full time

    Location: Ottawa, ON Canada Hybrid Term: Permanent High Tech Genesis is currently looking to hire a Chief Security Officer (CSO), you will play a pivotal role in safeguarding our organization's assets, mitigating risks, and ensuring compliance with regulatory standards. With your strategic vision and leadership, you will lead our security efforts, from...


  • Remote, Canada Compest Solutions Inc Full time

    **Job title : Cyber Security Project Manager** **Work Location: Remote in Canada **should be able to work in the EST time zone **Position Type - Fulltime Contract** **R**ate CAD$40 -45/hr on Inc Exp - 12+ YEARS Project Manager: PMP Certified Leads assigned projects from project initiation to implementation to achieve desired business results. Ensures...


  • Remote, Canada Pollard Banknote Ltd Full time

    We’re looking for a proactive Director, Information Security to join our Information Security team remotely. As a proven innovator in digital solutions, we are dedicated to helping lotteries adopt new technologies that improve the player experience, expand into new channels, and manage lottery operations more effectively.As Director, Information Security...

  • Project Manager

    4 weeks ago


    Remote, Canada Lyrical Security Full time

    The Project Manager is responsible for end-to-end delivery of Lyrical Security programs/projects and directly manages the full project lifecycle. Working as a key team member in the Lyrical PMO, this role is critical to successful service delivery and a positive client experience. Lyrical Project Managers demonstrate a strong ability to drive organization...


  • Remote, Canada Pollard Banknote Ltd Full time

    We’re looking for a proactive Director, Information Security to join our Information Security team remotely. As a proven innovator in digital solutions, we are dedicated to helping lotteries adopt new technologies that improve the player experience, expand into new channels, and manage lottery operations more effectively.As Director, Information Security...