Director, Governance, Risk and Compliance (GRC)
Momentum Financial Services Group
| Company | Momentum Financial Services Group |
| Category | Legal & Compliance |
| Location | Toronto |
| Remote | On-site (inferred) |
| Employment | Not stated |
| Level | Director |
| Salary | Not stated by the employer |
| Posted | 4 Jun 2026 |
| Last verified | 11 Aug 2026 |
| Source | Employer ATS (greenhouse) |
Description
Who We Are
At Momentum Financial Services Group, we help people move forward by reimagining how money works for those who need it most. With more than 40 years of experience, we’re the team behind Money Mart—Canada’s largest non-bank branch network—and a leader in financial solutions for underserved communities.
From short-term loans to money transfers and prepaid cards, we power the products, technology, and operations that connect over a million customers a year to the money they need, when they need it.
At MFSG, we come together across teams and departments to create something bigger than ourselves: solutions that remove barriers and give people access to money they might not get anywhere else. Whether you're solving problems, building systems, or shaping strategy, your work fuels real support for real people.
We’ve Got You Covered
Compensation Philosophy: Our strategy is simple—we aim to match the market. We regularly review industry standards to ensure our total rewards package is competitive and fair. This commitment helps us attract and retain talented individuals who share our purpose.
Discretionary Annual Bonus: Enjoy the opportunity for a discretionary bonus based on individual performance and company success.
Comprehensive Benefits: Our benefits include health and dental plans with 100% of the premiums covered. We also offer an Employee Assistance Program to support your mental well-being and provide resources for personal challenges.
Retirement Plans: Plan for your future with our robust retirement savings options, ensuring you’re set for the long haul.
Hybrid Work Environment: Experience the best of both worlds with our hybrid work model, allowing you to balance remote work with in-office. When you're at our corporate head office, enjoy a relaxed and collaborative environment featuring breakout rooms for brainstorming and unwinding, plus a variety of snacks to keep you energized throughout the day.
Perks and Rewards: Enjoy reimbursement for tuition assistance and professional development, discounts through Perkopolis and participate in our rewards and recognition programs to celebrate your contributions.
The Job: Director, Governance, Risk and Compliance (GRC)
We’re seeking a Director, Governance, Risk and Compliance (GRC) to lead and operate MFSG’s cybersecurity governance, cyber risk management, compliance, and data governance functions. This is a highly hands-on senior individual contributor role responsible for strengthening governance frameworks, overseeing cyber risk activities, supporting regulatory compliance, and driving risk-informed decision-making across the organization.
What You’ll Do
Cyber Risk Management & Governance:
Own and operate the enterprise cyber risk management framework
Maintain cybersecurity, technology, and data risk registers
Conduct cyber risk assessments across business processes, systems, vendors, and strategic initiatives
Define and track key risk indicators (KRIs), metrics, and remediation activities
Support post-incident risk reviews and continuous improvement efforts
Compliance, Audit & Regulatory Oversight:
Support internal and external audits, regulatory reviews, and customer due diligence requests
Validate control effectiveness and coordinate audit evidence collection
Manage cybersecurity policy governance and exception management processes
Ensure alignment with industry frameworks including NIST, ISO 27001, privacy regulations, and financial sector requirements
Data Governance & Third-Party Risk Management:
Partner with data governance, privacy, legal, and compliance teams to manage information risk
Oversee data governance activities including classification, retention, protection, access governance, and recovery controls
Support vendor and third-party risk assessments and remediation efforts
Reporting, Stakeholder Engagement & Cross-Functional In