Privacy as an enabler, not a blocker
Well-designed privacy programs unlock product velocity by making risk decisions faster and clearer—not by saying no more often.

Toronto, Canada
About · Toronto, Canada
Data Privacy & AI Governance Expert
Privacy operator. AI-aware advisor. Process thinker.
I help organizations build trustworthy data ecosystems—where compliance is clear, AI is governed, and teams can move without guessing at risk. CIPP/C-certified privacy professional and Data Protection & Security Specialist at The Globe and Mail, based in Toronto, Canada— advising on Canadian privacy programs, AI governance, and operational excellence.
Journey
I am Mohammad Movahedi—CIPP/C, Data Protection & Security Specialist at The Globe and Mail, and an advisor on privacy programs, AI governance, and operational excellence. My work sits at the intersection of personal data, security operations, and emerging AI systems.
The journey started in industrial engineering: optimizing systems of people, machines, and materials with measurement and continuous improvement. A Master of Science in Data Analytics (Machine Learning) from Northeastern University sharpened how I think about models, data quality, and evidence—skills that now inform both privacy analytics and AI risk conversations.
At TELUS, I worked as a Data Governance Analyst managing enterprise privacy and risk platforms (OneTrust), automating Privacy Impact Assessments and Secure by Design reviews, and training 450+ stakeholders on governance processes. That role taught me that privacy programs fail in the handoffs—not in the policy PDF.
At The Globe and Mail, I lead privacy and security work in a media environment where audience trust is the product. That includes monitoring and investigating alerts across modern security stacks, breach response with legal and business partners, consent and cookie compliance, master data inventory, vendor completeness, and PIAs—under real production pressure.
Today I combine that operator experience with Six Sigma Black Belt discipline and a clear point of view on AI: shadow systems and agentic tools will not wait for perfect regulation. Controls for usage and application security need to ship alongside innovation. Whether you need a fractional privacy lead, a focused program build, or an AI governance framework the board can understand—I bring calm execution and workable controls.
Philosophy
Principles drawn from operating privacy and security programs—not slogans.
Well-designed privacy programs unlock product velocity by making risk decisions faster and clearer—not by saying no more often.
Shadow AI and agentic systems will not wait for perfect regulation. Controls for usage and application security must ship alongside innovation.
Six Sigma and Lean turn one-off privacy heroics into measurable, repeatable operations that survive org change.
Publishing lives at the intersection of public trust, personal data, and AI-assisted newsroom tools—lessons that transfer to any data-rich enterprise.
Focus
Where I spend most of my attention—aligned with live program work and consulting engagements.
Location
Geographic context from verified experience—not a language list (spoken languages are not published in the profile data).
A downloadable CV PDF will be published here. Until then, explore the full experience timeline or request a copy by email.
Next step
Share context on your privacy or AI challenges—I'll respond with a clear next step.
Toronto-based · Remote-friendly across Canada, the US, and EU · Mohammad@movahedi.ca