Permanent FTE
Hybrid in Toronto
Salary: $180,000-$195,000
Required Skills & Experience
- 10+ years of experience within Cybersecurity, Cyber Risk, Technology Risk or Information Security.
- 5 years specifically working with GRC
- Strong experience managing cyber risk registers and enterprise risk governance activities.
- Demonstrated experience driving accountability and remediation across large stakeholder groups.
- Ability to communicate technical concepts to executive audiences.
- Experience partnering closely with security, engineering, and technology teams.
- Strong understanding of vulnerability management practices and cybersecurity operations.
- Experience within data governance, information risk, or technology risk management.
- Proven track record operating in a highly autonomous individual contributor capacity.
- Excellent executive presence and ability to influence senior leadership.
The successful candidate will understand how technology teams operate, but have developed the communication and influence skills necessary to drive outcomes across the organization.
We are specifically looking for individuals who:
- Can operate strategically while remaining hands-on.
- Understand delivery, execution, and accountability.
- Have strong executive communication skills.
- Can challenge stakeholders appropriately and drive action.
- Thrive in environments where they are building and transforming programs.
- Curious, creative, autonomous - Has the ability to make executive decisions
- Keeps a finger on the pulse on what is happening in the marketplace and ensures that we remain abreast of market demands
Nice to Have Skills & Experience
- Financial services, fintech, insurance, or other regulated industry experience.
- Cloud security or cloud governance experience.
- Previous technical background in engineering, infrastructure, security operations, or architecture.
- Experience building, scaling, or maturing cybersecurity governance functions.
- Certifications such as CISSP, CISM, or CRISC.
Job Description
Insight Global is seeking a Director, Cyber Governance, Risk & Compliance (GRC) for a leading financial services organization undergoing a significant cybersecurity transformation. This individual will play a critical role in building and maturing the organization's Cyber 2.0 program, with GRC identified as one of the most important pillars of a multi-year cybersecurity roadmap through 2027.
This is a unique opportunity for a senior cybersecurity professional who enjoys operating as both a strategic leader and hands-on contributor. Although carrying a Director title, this position is a true individual contributor role with no direct reports, requiring someone who can seamlessly transition between technical discussions with engineering teams and executive-level conversations with Directors, VPs, and C-suite stakeholders.
The ideal candidate possesses strong cyber risk and governance expertise, understands how technology teams deliver, and has exceptional stakeholder management skills to drive accountability and risk remediation across the organization.
We may use artificial intelligence tools to assist with the screening, assessment, or selection of potential applicants for this position.
Vacancy: This posting is for a currently vacant role, and the successful candidate will be hired into an existing open position.