Enable job alerts via email!

GRC Manager, Information Security

First National Financial LP

Toronto

Hybrid

CAD 100,000 - 130,000

Full time

2 days ago
Be an early applicant

Boost your interview chances

Create a job specific, tailored resume for higher success rate.

Job summary

A leading company in the financial sector is looking for a GRC Manager, Information Security to enhance the security governance and compliance strategies within its operations. The successful candidate will oversee the GRC program and ensure adherence to industry standards while managing risks and auditing processes. This position offers competitive compensation, a supportive working environment, and opportunities for career advancement.

Benefits

Highly competitive compensation package
Comprehensive benefits program
Extensive training programs
Supportive teamwork culture

Qualifications

  • 6+ years of experience in GRC management.
  • Information security certifications preferred (CISA, CISSP, ISO27001, CISM).
  • Experience with SOC2 and ISO 27001 audits.

Responsibilities

  • Develop and enhance the GRC program for information security.
  • Ensure compliance with regulations and manage security audits.
  • Oversee physical security governance across all locations.

Skills

Risk Management
Compliance
Information Security
Governance
Audit Management

Education

Bachelor’s degree in computer science or information security
Graduate degree preferred

Job description

Join to apply for the GRC Manager, Information Security role at First National Financial LP

3 days ago Be among the first 25 applicants

Join to apply for the GRC Manager, Information Security role at First National Financial LP

Get AI-powered advice on this job and more exclusive features.

First National is proud to be an equal opportunity employer and is committed to diversity and inclusion regardless of race, color, religion, national origin, age, gender identity, physical or mental disability, sexual orientation and any other category protected by law.

First National supports requests for accommodation from applicants with disabilities; please contact Human Resources at [emailprotected] should you need an accommodation at any point in the recruitment process.

We are hiring a Manager of GRC, Information Security!

Reporting To

Senior Manager and Team Lead

Full-Time / Part- Time

Full-time

Posting Date

Closing Date

8 : 30 a.m. – 5 : 00 p.m.

Grade

Office Location : 16.4

Toronto, ON

Great location! Steps away from the main public transit station

What We Offer

Highly competitive compensation package which includes, base salary, bonus, benefits, and career advancement opportunities!

  • Eligibility for benefits is dependent on the terms of employment

The Opportunity

A strategic and integral member of the Information Security Team, reporting to the Senior Manager, Information Security, responsible for ensuring the security, integrity, and availability of the organization's information assets. The role will be responsible for the program management and continuous improvement of the GRC program (ISMS), including ISO 27001 certification and audit, SOC2 readiness and audits, day-to-day risk management, assessments, and controls testing, etc. Additionally, this Manager will oversee the enterprise Physical Security program.

Program Management

How you will contribute :

Develop, implement, and enhance the GRC program supporting information security governance, risk management, and compliance.

Improve the Information Security Management Framework and build cross-organizational relationships.

Manage the security risk management and compliance strategy, framework, and approach, ensuring alignment with ISO 27001 and other security standards.

Track and communicate the status of risk response activities and advise teams on effective security controls.

Manage the Information Security Risk Management program, conducting regular Information Security Risk assessments.

Oversee risk treatment and ensure program-specific risk assessments (Data Security, IAM, etc.) align with the broader security risk program.

Collaborate with stakeholders to address key risks and improve processes, tools, and technologies.

Compliance Management

Ensure adherence to relevant regulations and industry standards (specifically, SOC2 and ISO 27001).

Develop, document, and evaluate measures, metrics, and internal controls that contribute towards the ISMS objectives and SOC2 goals.

Review and update security policies, procedures, and standards to ensure compliance and security of First National assets.

Audit Management

Support all security-related audit and certification processes (e.g., ISO27001, SOC2).

Support audit and assessment activities, including internal and external audits, vendor assessments, benchmarking, and more.

Third Party Vendor Compliance and Risk Management

Assist the vendor management team in ensuring third-party security compliance.

Assist in implementing technical controls to mitigate third-party risks and monitor progress on security improvements.

Physical Security

Oversee physical security governance for First National, across all locations.

Develop and implement physical security policies and procedures, where required.

Conduct or coordinate physical security risk assessments.

Stay current with industry trends and emerging technologies and identify opportunities to integrate them into the GRC and information security program.

Identify new GRC requirements through industry resources, research, and consultation with technology subject matter experts.

The Experience You Need

  • A bachelor’s degree in computer science, information security, or equivalent work experience is required. Graduate degree preferred.
  • Information security certifications, such as CISA, CISSP, ISO27001, CISM, or equivalent preferred.
  • A minimum of 6 years of prior experience in GRC management in a medium or large size organization is required.
  • Experience with SOC2 and ISO 27001 audits and certifications.
  • Experience in developing and maintaining Information Security policies, standards, processes, guidelines, procedures, and controls, ideally within the Financial Services industry.
  • Knowledge of physical security principles and practices.

Relationships

  • Ability to work effectively with business unit and IT department managers, including Application Development, Infrastructure, Operations, Network, Technical Support, and others.

Working Environment And Physical Demands Analysis

  • Periods of high volume with tight timelines
  • Long periods of stationary position / sitting
  • Prolonged periods of repetitive movement (i.e. using a keyboard and mouse)
  • Long periods of time in viewing a computer screen
  • Multi-tasking may include speaking to customers on a telephone call while looking up information on a computer program.
  • Competitive Compensation
  • Comprehensive benefits program (i.e., Health Spending Account, Maternity and Parental Leave Top Up)
  • Hybrid working environment
  • Extensive training programs to set our employees up for success
  • Modern office environment conducive to collaboration
  • Supportive teamwork culture
  • Opportunities to give back to the communities and work through events focused on a variety of charities
  • Ongoing social events throughout the year

The Team You’ll Join

Founded in 1988, First National is one of Canada’s largest non-bank lenders. We provide residential mortgages exclusively through the mortgage broker channel and we are Canada’s largest commercial mortgage lender.

First National has been consistently recognized as a great place to work and we are proud that our employee engagement feedback is higher than our industry partners.

We would like to thank all applications for their interest in this existing vacancy, but only candidates selected for an interview will be contacted.

FNLOON

Seniority level

Seniority level

Mid-Senior level

Employment type

Employment type

Full-time

Job function

Job function

Information Technology

Referrals increase your chances of interviewing at First National Financial LP by 2x

Get notified about new Information Security Manager jobs in Toronto, Ontario, Canada .

Senior IT Manager, Operations and Security

Practice Director, Cyber and Information Security Services

Senior Manager, Security GRC & Engineering

Security Supervisor - Law Society of Ontario - Downtown Toronto

Security Supervisor - Law Society of Ontario - Downtown Toronto

Cyber Threat Detection and Prevention Manager, Deloitte Global Technology

Director, Cyber and IT Risk Framework Policy and Standards

Applications Development Manager, Security Tooling

Senior Information Security and Compliance Manager

Senior Manager, Information Security & Compliance (CISO)

Senior Manager, Cybersecurity Operations

Data Security Manager, Information Security, IT

Cybersecurity Investigator, Enterprise Cybersecurity & Data Investigations

Senior Manager, Information Security Architecture

Manager, Cyber Resilience & Offensive Security

Senior Information Security Business Manager

We’re unlocking community knowledge in a new way. Experts add insights directly into each article, started with the help of AI.

J-18808-Ljbffr

Create a job alert for this search

Manager Information Security • Toronto, ON, Canada

Get your free, confidential resume review.
or drag and drop a PDF, DOC, DOCX, ODT, or PAGES file up to 5MB.

Similar jobs

Data Security Manager, Information Security, IT

First National Financial LP

Toronto null

On-site

On-site

CAD 90,000 - 130,000

Full time

13 days ago

Data Security Manager, Information Security, IT

First National Financial LP

Toronto null

On-site

On-site

CAD 100,000 - 140,000

Full time

14 days ago

IAM Manager, Information Security

First National Financial LP

Toronto null

On-site

On-site

CAD 90,000 - 130,000

Full time

11 days ago

Director, Information Security & Security Programs (Remote)

Intello Technologies Inc.

Nanaimo null

Remote

Remote

CAD 126,000 - 190,000

Full time

Today
Be an early applicant

Director, Information Security & Security Programs

Intello Technologies Inc.

Toronto null

On-site

On-site

CAD 126,000 - 190,000

Full time

2 days ago
Be an early applicant

IAM Manager, Information Security

First National Corporation

Toronto null

Hybrid

Hybrid

CAD 100,000 - 140,000

Full time

24 days ago

GRC Manager, Information Security

First National Financial

Toronto null

On-site

On-site

CAD 80,000 - 120,000

Full time

30+ days ago

IAM Manager, Information Security

First National Financial

Toronto null

Hybrid

Hybrid

CAD 80,000 - 110,000

Full time

30+ days ago