Leader, Governance, Risk & Compliance at Interac Corp. | CAN | Rezi

Leader, Governance, Risk & Compliance at Interac Corp.

Leader, Governance, Risk & Compliance

Interac Corp. · CAN

Today

Leader, Governance, Risk & Compliance

Interac Corp. · CAN

4 hours ago
Resume preview

Impress employers and recruiters.
Choose from hundreds of resume examples.

Target Resume Now

About the Role

As the Leader, Governance, Risk and Compliance (GRC), you will establish the GRC mandate and goals for Interac Corp., collaborating with key stakeholders on security risk and compliance initiatives. You will embed a security risk management culture into production, delivery, support, and operations to enable business objectives and strengthen controls in IT environments.

Responsibilities

  • Review corporate policies, identify additional policies, and develop policies to enhance existing controls and alignment with ISO 27000 series, NIST, and PCI standards and frameworks.
  • Socialize policies and standards and provide guidance to employees on adherence.
  • Coordinate and guide Information Security Risk Management process risk owners to ensure effective risk treatments.
  • Support internal IT audit functions, external auditors, and established organizational security certifications.
  • Assist in the development, training, and tracking of the internal control environment associated with various standards (e.g., SOC 2, ISO27001/2).
  • Conduct compliance activities to ensure adherence with relevant policies, standards, regulations, and applicable laws.
  • Manage internal and external auditors and their activities.
  • Regularly update and review the risk portfolio for changes in the environment.
  • Provide regular reporting of significant risks and the risk portfolio to pertinent Management Committees.
  • Drive improvements arising from the identification of risk and control gaps that balance risk with business operations.
  • Act as a key point of contact for raising awareness of identified risks with security management and business unit leads on a risk reduction plan.
  • Maintain a registry of risk remediation supported by a governance lifecycle and the implementation of management tools.
  • Stay abreast of incident response cases and track occurrence and resolution with documentation and reporting.
  • Provide leadership for disaster recovery and business continuity as they relate to security and framework/organization standards.
  • Leverage industry best practices to implement and mature an adaptive Governance, Risk and Compliance (GRC) program.
  • Develop and implement reporting metrics and key performance indicators (KPIs) to measure the effectiveness of Information Security Risk Management.
  • Work with other security leadership for annual strategic and budgetary directives.
  • Provide coaching, mentoring, and management to a team to obtain the best possible results.
  • Collaborate with business unit stakeholders including Internal Audit, Legal, Enterprise Risk, Data Governance, Privacy, and Vendor Management to ensure a strong security posture.

Requirements

  • Have a degree/diploma or combined relevant work experience and certifications (8-10 years) in Information Systems, law, or policy management.
  • Progressive leadership experience with a focus on information security, Governance, Risk and Compliance.
  • Strong understanding of technology risk, regulatory, and industry best practices (ISO 27000 Series, NIST, PCI).
  • Proven ability to identify, analyze, and translate risk in the context of achieving business objectives.
  • A “continuous improvement” mindset.
  • Sound and practical business-minded approach to implementation of a GRC program.
  • Experienced in the ability to influence and guide others across the organization to solve challenging problems.
  • Build and foster strong relationships through collaboration, influencing change, and building consensus.
  • You bring your real self to work and live our values – trust, teamwork, open communication and accountability.
  • Strong communication skills, including technical and business writing.
  • Strong problem-solving skills.
  • Ability to acquire secret clearance.
  • Successful candidates will be required to complete background checks, which may include Canadian Criminal Credit Check, Canadian ID Cross-Check, Public Safety Verification, 5-year Employment Verification, Education Verification, Credit Check, and Social Media Check.

Skills

  • Information security
  • Governance, Risk and Compliance (GRC)
  • Security certifications (CISM, CISA, CRISC)
  • Information Security Management System (ISMS)
  • ISO 27001
  • ISO 27000 Series
  • NIST
  • PCI
  • GRC platforms, technologies and solutions
  • Communication skills
  • Technical writing
  • Business writing
  • Problem-solving skills

Location

  • Canada

Work Type

  • Hybrid

Experience Level

  • 8-10 years

Education Level

  • Degree/diploma or combined relevant work experience and certifications

Salary/Compensations

  • $150,000 – $180,000

Benefits

  • Short-term incentive plan
  • Generous vacation and wellness days
  • Comprehensive employer-paid benefits coverage
  • Market-leading employer-funded RRSP program
  • Flexible hybrid work model
  • Free and confidential 24/7 employee & family assistance program
  • Pregnancy and parental leave top-up
  • Charitable donation matching with United Way

About the Company

  • Every transaction matters. Every Canadian matters. At Interac, we protect both — driving trust, security, and inclusion, so our digital economy thrives.
  • Founded in 1984, Interac connects Canadians through secure digital payments, advanced identity verification and industry-leading fraud protection.
  • Connecting banks, businesses, and individuals, Interac enables millions to send, receive, and manage money safely and effortlessly every day — across both digital and physical environments.
  • As the backbone of Canada’s financial ecosystem, Interac facilitates over 20 million transactions daily, supported by trusted partnerships with government and financial institutions.
  • Consistently ranked as Canada’s most reputable financial technology brand, Interac is deeply embedded in the daily lives of Canadians.
  • At Interac, the impact we make, and the people who drive it, is profound. When you become part of our team, you’re joining a purpose-driven organization that’s shaping the future of digital finance in Canada.
  • Investing in the Future – Help us unlock digital prosperity for all Canadians.
  • Innovative Thinking – Collaborate on products, practices, and platforms that redefine what’s possible.
  • Inclusive Culture – Be empowered to bring your whole self to work and realize your full potential.
  • Inspiring Community – Work in an ecosystem where we lift each other up and rise together.
  • Intentional Support – Enjoy flexible, supportive offerings that prioritize your total wellness.

Equal Opportunity

  • Interac is also an equal opportunity employer committed to fostering a diverse and inclusive workplace.
  • We believe that innovation thrives when people from different backgrounds, experiences, and perspectives come together.
  • That’s why we are committed to providing fair and equitable employment opportunities for all individuals, without discrimination based on race, color, ancestry, ethnic origin, place of origin, citizenship, creed, sex, sexual orientation, gender identity or expression, age, marital or family status, disability, or any other characteristic protected by applicable law.
  • If you require accommodation during any stage of the application or recruitment process, please contact us at humanresources@interac.ca. We will work with you to meet your needs.
  • Please be aware that certain individuals are misusing Interac Corp.’s name and logo to promote fictitious employment opportunities. Interac Corp. never requests, solicits, or accepts any form of payment in exchange for employment. Any such offers are fraudulent and should be disregarded. Interac Corp. assumes no liability for any claims, losses, damages, expenses, or inconveniences arising from or related to these fraudulent activities. Such communications do not constitute an offer or representation by Interac Corp. or its subsidiaries and affiliates.