Financeit

Director, Cybersecurity & Information Security

Financeit$120K — $150K *
Information Technology
5 - 7 years of experience
Job Overview by Ladders

Qualifications

  • 6+ years of experience in IT security and risk management
  • CISSP, CISA, CRISC, or equivalent security certifications
  • Proven knowledge of Governance, Risk and Compliance (GRC) platforms
  • Familiarity with the financial services/lending industry
  • Strong communication skills for non-technical audiences
  • Insight into organizational security controls and risk issues
  • Understanding of audit processes and risk-based audits

Responsibilities

  • Implement a broad information security risk management program
  • Establish security and compliance goals yearly and long-term
  • Evaluate and ensure the effectiveness of security frameworks
  • Report key privacy and security issues to Senior Management and the Board
  • Identify controls needed for data security across various stakeholders
  • Assess and manage current and potential security threats
  • Ensure policy application consistency across all business operations
  • Monitor and report on information security and cyber threats
  • Coordinate information security audit programs like SOC2 and PCI-DSS
  • Integrate security practices throughout the Software Development Lifecycle (SDLC)
  • Support incident management through investigation and corrective action
  • Manage vendor security assessments and ongoing risk monitoring.

Benefits

  • Award-winning company culture emphasizing collaboration and inclusivity
  • Flexible work arrangements with hybrid options
  • Competitive salary with performance-based bonuses
  • Comprehensive medical, dental, and vision insurance
  • RRSP matching and parental leave top-up program
  • Wellness initiatives including in-office massage and workout sessions
  • Opportunities for career development and learning programs
  • Engaging virtual team activities and charity initiatives.
Full Job Description
Who we are:

Financeit is a point-of-sale financing provider serving some of the largest home improvement and retail organizations in Canada.

Our platform helps businesses close more sales by offering customers affordable monthly payment options for their next big home improvement, vehicle or retail purchase.

We are small enough that you can make an impact within the company and large enough to make an impact in the market.

Financeit is a company where collaboration, inclusivity, fairness, and respect aren't just ideas that get talked about, but are part of who we are. If such a workplace intrigues you, we hope you'll join us.

About the role:

The Director of Cybersecurity & Information Security will provide specialized expertise and guidance on assessing risks, monitoring risks, identifying potential gaps, and providing security solutions to mitigate risks and protect Financeit in Canada and in the US. The position actively interacts with business management, Legal and Compliance, Operations, Information Technology, other control functions, and regulators.

This position will report to the Chief Compliance Officer.

What you'll do:
  • Implementing and monitoring a comprehensive enterprise-wide information security risk management program
  • Establishing annual and long-range security and compliance goals.
  • Assessing the adequacy of, adherence to, and the effectiveness of Financeit's information and data security framework
  • Preparing periodic reporting to Senior Management and quarterly updates to the Board of Directors on key items around privacy and security
  • Identifying required controls related to the availability, integrity and confidentiality of customers, business partners, employees, and business information, evaluating the effectiveness of control
  • Assess developing security threats and help Senior Management identify and effectively manage potential security problems that might arise from Financeit's current or proposed activities
  • Understanding and interacting with the business to ensure the consistent application of policies and standards across all projects, systems, and services
  • Monitoring remediation of information security, data security, and cyber security threats and assisting the Chief Compliance Officer in reporting those threats to Senior Management and the Board
  • Coordinating Financeit's information and data security audit programs, including SOC2 Type 2 and PCI-DSS
  • Collaborate closely with the development team to integrate security throughout the Software Development Lifecycle (SDLC), ensuring that secure coding practices are consistently followed, potential vulnerabilities are identified and addressed early, and the final product meets stringent security standards.
  • Support the organization's incident management process by identifying, investigating, and responding to security incidents, conducting root cause analysis, documenting findings, and implementing corrective actions to prevent future occurrences.
  • Manage the third-party risk management process by assessing the security posture of vendors, ensuring compliance with organizational policies, conducting thorough due diligence during onboarding, and continuously monitoring third-party activities to identify and mitigate ongoing risks.

Requirements
  • At least 6 years of deep working knowledge of IT technologies, security threats and information security risk management
  • CISSP, CISA, CRISC or other equivalent security credentials
  • Experience working with Governance, Risk and Compliance (GRC) platforms
  • Good understanding of financial services/lending
  • Ability to articulate IT security and technical issues in a clear and actionable manner to non-technical leadership
  • Strong understanding of organization and technology controls, security, and risk issues
  • Familiarity with the audit process and conducting risk-based audits
  • Interest and focus on the rapidly changing privacy regulatory landscape
  • Strong knowledge in risk management, vulnerability management, identity and access management, incident management, and third-party risk management

Benefits

Winner of Canada's Most Admired Corporate Cultures for two consecutive years. We offer more than just the basics, take advantage of:
  • An award-winning culture with a collaborative & inclusive team.
  • Competitive pay and performance-based bonus.
  • Committed to flexible work arrangements, offering hybrid workplace options.
  • Comprehensive medical, dental and vision coverage + Lifestyle Account.
  • RRSP Matching and Parental Leave Top UP Program.
  • In office massage, meditation & workout sessions.
  • Virtual events such as Lunch & Learns, company parties, fun team activities and charity initiatives.
  • Career learning and development programs.

Next Steps:

If what you just read excites you, we'd like to hear from you! Please submit your application and we'll contact you if you become selected for a phone interview.

Financeit is an equal opportunity employer. Accommodation is available on request for candidates taking part in all aspects of the selection process.

About Financeit

Financeit is a Canadian financial technology company that provides point-of-sale financing solutions for businesses. The company offers a range of financing options, including installment loans, revolving lines of credit, and deferred payment plans. Financeit's platform is designed to be easy to use and integrate with existing business systems, and the company provides support and training to help businesses get the most out of its services. Financeit has received numerous awards for its innovative approach to financing, and has been recognized as one of Canada's fastest-growing companies.
Learn more about Financeit
Size
200 employees
Industry
Founded
2007

Similar Jobs

More Jobs at Financeit

More Information Technology Jobs

Find similar Director, Cybersecurity & Information Security jobs: