Senior Manager, Security GRC

1 day ago


Toronto, Ontario, Canada Moneris Full time

Your Moneris Career - The Opportunity

As the Senior Manager, Security GRC, you will be in a leadership role responsible for overseeing our security governance, risk management, compliance, and awareness programs. Reporting directly to the VP, Information Security, you will play a critical part in ensuring that security initiatives align with business objectives and regulatory requirements. The successful candidate will lead efforts to assess and manage risks, develop security metrics, ensure regulatory compliance, and drive security awareness across the organization. . You will ensure that our security posture is robust and aligned with regulatory requirements, industry standards, and best practices.

Location: You will be based in our Toronto office, balancing in-office collaboration with remote flexibility.

Reporting Relationship: You will report to the Vice President, Information Security.

Posting Type: Replacement Position.

Salary Range: The expected base salary range for this role is $141,973 - $186,339.

Total compensation may also include variable or discretionary incentive components, including but not limited to bonuses and commissions. Individual job offers are determined by various factors, including experience, education, skills, certifications, and other business needs

Your Moneris Career - What you'll do

  • Develop and lead our security GRC strategy, ensuring alignment with business objectives and regulatory requirements and serves as key advisor to CISO and other senior executives on security GRC initiatives.

  • Build, manage a security GRC team, promoting a culture of continuous learning and professional development. Management includes the team's performance, ensuring organizational goals and always tracking OKRs defined for security GRC vertical.

  • Establish and maintain security policies, standards, and frameworks that align with industry best practices (e.g., ISO 27001, NIST, GDPR, PCI-DSS), that includes providing guidance and oversight to business partners ensuring Moneris's application and products are following applicable policies and standards.

  • Lead the Security Governance Committee to ensure ongoing oversight and governance of security risks.

  • Take the ownership to develop and maintain the enterprise-wide security risk register, ensuring risks are properly documented, prioritized, and mitigated.

  • Constant guidance and participate in risk assessments and threat modeling exercises to identify vulnerabilities across different products and oversee govern risk treatment plans.

  • Design the targeted security programs (including measuring the effectiveness), like phishing/ spear-phishing simulations to enhance our security culture, mandatory data breach training, etc.

  • Collaborate with the incident response team to manage security incidents and breaches, ensuring root cause analysis and corrective actions are completed.

  • Lead the end-to-end planning and execution of Moneris' annual audits such as PCI DSS, IT General Controls audit, internal audits, etc.

  • Coordinate across teams (IT, InfoSec, Legal, Operations, etc.) to collect, validate, and organize documentation and controls evidence.

  • Track audit status, risks, and issues, providing regular updates to executive leadership.

  • Maintain documentation to support compliance, including system inventories, data flow diagrams, risk assessments, and remediation logs.

Your Moneris Career - What you bring

  • Bachelors in Computer Science, Information Security, Risk Management or Equivalent.

  • Minimum 12+ years of experience Previous experience in the payment industry considered an asset. Also, out of 12 years, minimum 5 years in leadership capacity.

  • Experience developing and executing security GRC strategies in a complex, global organization.

  • Experience with security frameworks, standards, and regulations (e.g., NIST, PCI-DSS, ISO27001, GDPR).

  • Navigate regulatory environments and influence organizational change.

  • Information Security GRC, Regulatory Compliance management, Information Security domain knowledge in IAM, Network Security, Cloud Security.

  • Experience with frameworks NIST, PCI-DSS etc.

  • Relevant certifications such as CISM, CISSP, CRISC, CISA, or similar are highly preferred.

Your Moneris Career - What you get

At Moneris, we believe in empowering you to succeed—personally and professionally. As part of our team, you'll have access to resources, opportunities, and an inclusive environment that supports your development and career.

  • Comprehensive Total Rewards Program, including performance-based bonuses, flexible benefits starting from day one, and your choice of a health spending account (HSA) or personal spending account (PSA).

  • Retirement planning support, with profit-sharing programs including company match and a defined contribution pension plan.

  • Growth & development opportunities, including unlimited access to Coursera, mentorship programs, and an internal gig marketplace.

  • Holistic wellness support, with an Employee & Family Assistance Program, 24/7 virtual healthcare, and workplace wellness initiatives.

  • Flexibility that works for you, including hybrid work arrangements, a Work from Abroad program, and paid time off programs.

  • Recognition and rewards, with company-wide recognition programs, exclusive banking perks from RBC & BMO, and access to great employee discounts.

Find out more about the work perks and benefits you get as a Moneris employee at .

AI Disclosure: We may use AI-enabled tools to screen, select, and assess applications. All AI outputs are reviewed and validated by our recruitment team.

#LI-Hybrid

#TECH-IND

Note: We welcome and encourage applications from Indigenous peoples, people of colour, people with disabilities, people of all genders, sexual orientation and intersectional identities.

We acknowledge that people from equity-deserving groups (including racialized individuals, women, gender diverse individuals, individuals with disabilities, neurodivergent individuals, members of 2SLGBTQIA+ communities and those born outside of Canada) are less likely to apply for jobs unless they feel they meet all the requirements posted. At Moneris, we believe candidates bring experience to their work in many ways. We encourage you to apply and share, in the application form, the transferrable experience you bring, and how this will support your success in this role.


  • SAP GRC Security

    2 weeks ago


    Toronto, Ontario, Canada Evoort Solutions Full time

    Job Title: Senior SAP GRC & Security Consultant (8+ Years Experience)Location: Remote / OnsiteEmployment Type: Full-Time / ContractRole Summary:We are seeking an experienced SAP GRC and Security Consultant with deep expertise across SAP ECC and SAP S/4HANA, including multiple Security & GRC implementations and ECC to S/4HANA migration projects. This role...

  • Senior Manager GRC

    1 week ago


    Toronto, Ontario, Canada KPMG Canada Full time

    OverviewAt KPMG, you'll join a team of diverse and dedicated problem solvers, connected by a common cause turning insight into opportunity for clients and communities around the world.Are you a talented leader with a proven track record for motivating teams and delivering exceptional client service?Our Technology Risk Consulting services team is growing and...

  • Senior Manager GRC

    1 week ago


    Toronto, Ontario, Canada KPMG Canada Full time

    OverviewAt KPMG, you'll join a team of diverse and dedicated problem solvers, connected by a common cause turning insight into opportunity for clients and communities around the world.Are you a talented leader with a proven track record for motivating teams and delivering exceptional client service?Our Technology Risk Consulting services team is growing and...

  • Manager, GRC

    2 weeks ago


    Toronto, Ontario, Canada KPMG Canada Full time

    OverviewAt KPMG, you'll join a team of diverse and dedicated problem solvers, connected by a common cause turning insight into opportunity for clients and communities around the world.Our Technology Risk Services team is growing and we are looking for a Manager, GRC to join our team in Toronto. The Technology Risk Services practice provides a variety of...

  • SAP GRC Consultant

    2 weeks ago


    Toronto, Ontario, Canada n2psystems Full time

    Job SummaryThe SAP GRC Consultant will lead projects involving SAP GRC Access Control, focusing on User Access Review (UAR) automation, Firefighter ID creation, and compliance management. The role involves analyzing current processes, designing and implementing SAP GRC solutions, configuring workflows and connectors, performing testing, ensuring audit...


  • Toronto, Ontario, Canada StafinGo Full time

    Senior Security Specialist – Governance, Risk & Compliance (GRC) / Cyber DefenceLocation:Toronto, ON (Hybrid – up to 3 days onsite)Contract Length: 2-3 months to start(with potential extension)Sector:Public Sector / HealthcareA leadingpublic-sector organization in Ontariois seeking a highly experiencedSenior Security Specialistto support multiple...


  • Toronto, Ontario, Canada Capco Full time

    Consultant – Cyber / InfoSec / GRCLocation: Toronto (In Person 4 Days per Week) | Type: PermanentHelping our clients strengthen cyber resilience, reduce risk, and protect what matters most.The RoleWe are expanding our Cyber practice in Canada and are looking for Consultants with hands-on experience across cybersecurity, information security, GRC, and...


  • Toronto, Ontario, Canada Bevertec Full time

    Security Specialist - SeniorLocation: Up to 3 days onsite Toronto, ONContract RoleMust Haves:Background InformationThe purpose of this request is to acquire a Sr. Security Specialist to support and deliver on multiple initiatives related to Security Governance, Risk and Compliance and Cyber Defence Operations. This includes leading multiple initiatives...


  • Toronto, Ontario, Canada Groq Full time US$30 - US$50

    Winter 2026 (January - April) Internship - full-time - hybrid Mission: As a Security Technical Program Management Intern, you will partner with both the GRC and Security Engineering teams to drive visibility, alignment, and execution across Groq's global security initiatives. This role focuses on metrics, documentation, and coordination — helping...


  • Toronto, Ontario, Canada Future Vision 360 LLC Full time

    Service Now Techno functional consultant - (GRCIRM - Governance Risk Compliance and Integrated Risk Management solutions)100% Remote - in CanadaContractJob SummarySeeking an Associate Principal with 11 to 15 years of experience in ServiceNow GRCIRM to lead the design development and deployment of enterprise Governance Risk Compliance and Integrated Risk...