1

Cyber Security Jobs in Calgary, AB (NOW HIRING)

Summary This is an opportunity for a practical, hands-on cybersecurity leader to make a visible impact across a global technology environment. As Manager, IT Security, you will lead a capable team ...

Negotiable / DOE About Us Integrity360 is a leading independent cybersecurity and PCI specialist operating across Europe, Africa, the Caribbean, and North America. The company has office locations in ...

SOAR Service Lead

Calgary, AB · Hybrid

CA$84K - CA$134K/yr

As a cybersecurity generalist at PwC, you will focus on providing comprehensive security solutions and experience across various domains, maintaining the protection of client systems and data. You ...

Stay updated on emerging cybersecurity threats and vulnerabilities, implementing proactive measures to safeguard our clients' network * Evaluate and select the most advanced and effective network ...

Working closely with the Infrastructure Solution Architect, Cloud team, Cybersecurity, Application teams, vendors, and business stakeholders, you will lead complex cloud initiatives, contribute to ...

Security Principles & Frameworks Practical understanding of security concepts, specifically the Principle of Least Privilege and alignment with the NIST Cybersecurity Framework. Communication ...

About the Role: Grade Level (for internal use): 12 S&P Global Corporate The Role: Lead Penetration TestEngineer Location: Hybrid 2 days per week onsite on one of our following sites: US: Boston, MA ...

About the Role: Grade Level (for internal use): 12 S&P Global Corporate The Role: Lead Penetration TestEngineer Location: Hybrid 2 days per week onsite on one of our following sites: US: Boston, MA ...

Showing results 21-40

Cyber Security information

See Calgary, AB salary details

$41K

$110.8K

$299.5K

How much do cyber security jobs pay per year?

As of Sep 5, 2026, the average yearly pay for cyber security in Calgary, AB is $110,823.00, according to ZipRecruiter salary data. Most workers in this role earn between $60,000.00 and $114,500.00 per year, depending on experience, location, and employer.

What is cyber security?

Cyber security refers to the practice of protecting computer systems, networks, and digital data from unauthorized access, attacks, and damage. It involves various technologies, processes, and best practices designed to safeguard sensitive information and ensure the integrity, confidentiality, and availability of data. Cyber security professionals work to prevent cyber threats such as hacking, phishing, malware, and ransomware. With the increasing reliance on digital technologies, cyber security has become essential for individuals, businesses, and governments to protect against cybercrime and data breaches.

What does a cyber security professional do?

As a cybersecurity professional, you help protect sensitive data and information online and on your employer’s servers. You manage firewalls, encryption, and databases, working at all times to stay ahead of whatever security threats might be putting your employer at risk. Cybersecurity is never a completed task; you must continue to assess risks and implement updates to stay ahead of them.

What are the key skills and qualifications needed to thrive as a cyber security professional, and why are they important?

To thrive as a Cyber Security professional, you need a solid understanding of network security, risk assessment, and information systems, typically supported by a degree in computer science or a related field. Familiarity with security tools like firewalls, intrusion detection systems, and certifications such as CISSP or CompTIA Security+ are highly valued. Strong analytical thinking, attention to detail, and effective communication help professionals identify threats and collaborate with teams. These skills and qualifications are crucial for protecting organizations from evolving cyber threats and ensuring the integrity of sensitive data.

How does a cyber security professional typically collaborate with other departments within an organization?

Cyber Security professionals work closely with various departments, such as IT, legal, and compliance, to ensure that security policies are effectively implemented and maintained. They often participate in cross-functional meetings to assess risks, communicate potential threats, and develop incident response plans. Building strong relationships with other teams is crucial, as it helps foster a culture of security awareness and ensures that all employees understand their role in protecting organizational data. Effective collaboration also allows for quicker identification and resolution of security issues.

What is the difference between Cyber Security vs Network Security?

AspectCyber SecurityNetwork Security
CertificationsCompTIA Security+, CISSP, CEHCompTIA Security+, Cisco CCNA Security
Work EnvironmentProtects digital assets across entire organizations, including applications and dataFocuses on securing network infrastructure, devices, and communication channels
Employer & Industry UsageUsed across all industries to safeguard information systemsPrimarily used in IT and networking departments within organizations

Cyber Security encompasses a broad range of practices to protect all digital assets, including networks, applications, and data. Network Security is a subset focused specifically on securing network infrastructure and communication channels. While both roles require similar certifications and are vital in IT, Cyber Security professionals have a wider scope, whereas Network Security specialists concentrate on network-specific threats and defenses.

Is cybersecurity a hard job to learn?

Cybersecurity is a complex field that requires understanding of networks, systems, and security principles, often involving learning programming, threat analysis, and security tools. While it can be challenging initially, gaining certifications like CompTIA Security+ or CISSP and practical experience can help develop skills more effectively.

What jobs can I do with cyber security?

With a background in cyber security, you can pursue roles such as security analyst, penetration tester, security engineer, incident responder, or security consultant. These jobs typically require knowledge of network security, risk management, and tools like firewalls and intrusion detection systems, often supported by certifications such as CISSP or CEH.

What kind of jobs can you do in cyber security?

Cyber security offers a range of roles including security analyst, penetration tester, security engineer, incident responder, and security architect. These jobs typically require knowledge of networks, systems, and security tools, along with certifications like CISSP or CompTIA Security+; work environments can vary from corporate offices to remote settings.

What are the most commonly searched types of Cyber Security jobs in Calgary, AB?

The most popular types of Cyber Security jobs in Calgary, AB are:

What cities near Calgary, AB are hiring for Cyber Security jobs?

Cities near Calgary, AB with the most Cyber Security job openings:

Infographic showing various Cyber Security job openings in Calgary, AB as of August 2026, with employment types broken down into 85% Full Time, 13% Part Time, and 2% Contract. Highlights an 90% Physical, 3% Hybrid, and 7% Remote job distribution, with an average salary of $110,823 per year, or $53.3 per hour.

Development Security Specialist (Industrial Oil & Gas Applications)

Pengcorp Ltd.

Calgary, AB • Hybrid

Full-time

This job post has expired 1 day ago. Applications are no longer accepted.


Job description

Role: Development Security Specialist (DevSecOps)

Reports To: Manager, Application & Software Development

Department: Digitization

Position Type: Full Term

Location: Calgary, Alberta (Hybrid)


Position Overview

We are seeking a Senior Application Security & DevSecOps Engineer to establish, operationalize, and continuously improve our Secure Software Development Lifecycle (SSDLC) across enterprise, mobile, cloud, and OT-integrated applications.

This role will serve as the bridge between Software Development, DevOps, Infrastructure, and Operational Technology (OT) teams, ensuring that security is embedded into products, platforms, deployment pipelines, and operational processes from design through production.

The successful candidate will own application security strategy, security automation, vulnerability management, threat modeling, secure architecture reviews, and security governance while enabling fast and reliable product delivery.


Key Responsibilities


Application Security

  • Lead the integration of security requirements and controls throughout all phases of the Secure Software Development Lifecycle (SSDLC).
  • Conduct application security assessments, architecture reviews, and threat modeling for new applications, APIs, mobile solutions, and major product enhancements.
  • Perform secure code reviews and identify security vulnerabilities, insecure coding practices, and design weaknesses.
  • Establish and maintain secure coding standards, application security guidelines, and remediation best practices.
  • Lead security design reviews for enterprise, cloud-native, mobile, and OT-integrated applications.
  • Collaborate with development teams to embed security-by-design principles into software architecture and development practices.
  • Manage application vulnerability assessment and remediation processes, including risk prioritization and validation of corrective actions.
  • Coordinate internal and external penetration testing activities and support remediation planning.
  • Ensure secure integration between enterprise applications, mobile platforms, cloud services, and Operational Technology (OT) environments.
  • Support customer security assessments, audits, and compliance initiatives related to application security.


DevSecOps

  • Design, implement, and continuously improve security controls within CI/CD pipelines in collaboration with DevOps teams.
  • Automate security testing, code scanning, vulnerability detection, and compliance validation throughout the software delivery process.
  • Implement and maintain:
  • Static Application Security Testing (SAST)
  • Dynamic Application Security Testing (DAST)
  • Software Composition Analysis (SCA)
  • Infrastructure as Code (IaC) scanning
  • Secret scanning
  • Container security scanning
  • Develop and enforce secure deployment standards for cloud, on-premises, and hybrid environments.
  • Implement security quality gates and release criteria within deployment pipelines.
  • Manage and govern secrets, encryption keys, certificates, privileged access controls, and secure credential management practices.
  • Partner with DevOps teams to strengthen cloud security posture, container security, infrastructure security, and platform hardening.
  • Develop security dashboards, metrics, and reporting to measure security coverage, vulnerability trends, and risk reduction.
  • Continuously evaluate and improve DevSecOps tooling, automation, and security processes across the organization.
  • Provide security guidance during platform modernization, cloud migrations, and implementation of emerging technologies.


Penetration Testing

Conduct and coordinate:

  • Web application and API security testing to identify and remediate vulnerabilities.
  • Cloud, container, and Kubernetes security assessments to evaluate risks and security controls.
  • Annual third-party penetration testing, including remediation tracking and validation of findings.

Industrial Cybersecurity Responsibilities

  • Design and maintain cybersecurity controls protecting Oil & Gas operational applications.
  • Implement security architectures aligned with:
  • IEC 62443
  • NIST Cybersecurity Framework (CSF)
  • NIST SP 800-82
  • ISA/IEC Industrial Automation Security Standards
  • ISO 27001
  • Support cybersecurity risk assessments for industrial applications and supporting infrastructure.
  • Develop secure interfaces between SCADA systems, historians, PLCs, RTUs, IIoT devices, and enterprise applications.
  • Identify and mitigate cybersecurity threats affecting industrial operations.
  • Implement segmentation strategies between IT and OT environments.
  • Assist in the deployment and maintenance of Zero Trust security principles across industrial systems.
  • Conduct threat modeling for critical operational applications.


Vulnerability Management & Security Monitoring

  • Perform regular vulnerability assessments and remediation tracking.
  • Analyze application and infrastructure security findings.
  • Coordinate security patch management activities.
  • Monitor security events using SIEM and security monitoring platforms.
  • Investigate cybersecurity incidents affecting development environments and industrial applications.
  • Participate in incident response exercises and post-incident reviews.
  • Develop automated security alerting and compliance reporting.
  • Cloud & Infrastructure Security
  • Secure AWS, Azure, or private cloud infrastructures hosting industrial applications.
  • Implement infrastructure hardening standards.
  • Manage container security for Docker and Kubernetes environments.
  • Establish secure network architectures including firewalls, VPNs, reverse proxies, and micro-segmentation.
  • Secure APIs and application integrations.
  • Governance, Risk & Compliance
  • Support audits and compliance activities.
  • Maintain cybersecurity policies, standards, and procedures.
  • Document security architectures, risk assessments, and remediation plans.
  • Ensure compliance with customer, industry, and regulatory cybersecurity requirements.
  • Track cybersecurity KPIs and risk metrics.


Required Qualifications

Education

  • Bachelor's Degree in:
  • Computer Science
  • Software Engineering
  • Cybersecurity
  • Computer Engineering
  • Related Technical Field

Experience

  • 5+ years of software development, DevOps, cybersecurity, or DevSecOps experience.
  • 3+ years securing industrial, operational technology (OT), or critical infrastructure systems.
  • Experience supporting Oil & Gas, Energy, Utilities, Manufacturing, or Industrial Automation environments.
  • Experience securing cloud-based applications.
  • Experience with Azure DevOps, GitHub, or GitLab pipelines.
  • Strong understanding of:
  • OWASP Top 10
  • API Security
  • Identity and Access Management
  • Secure SDLC
  • Threat Modeling
  • CI/CD Security


Technical Skills

  • CI/CD Platforms:
  • Azure DevOps
  • GitHub Actions
  • Jenkins
  • GitLab CI/CD
  • Programming & Scripting:
  • Python
  • PowerShell
  • Bash
  • C#
  • JavaScript
  • Cloud Platforms:
  • Microsoft Azure
  • AWS
  • Google Cloud Platform (GCP)
  • Security Tools:
  • Microsoft Defender Suite
  • CrowdStrike
  • Qualys
  • Tenable
  • SonarQube
  • Checkmarx
  • Veracode
  • Snyk
  • Containers & Infrastructure:
  • Docker
  • Kubernetes
  • Terraform
  • Ansible
  • OT Technologies:
  • SCADA Systems
  • PLCs
  • Historians
  • OPC UA
  • Modbus
  • DNP3
  • Industrial Networks


Preferred Certifications

  • OSCP (Offsec Certified Professional)
  • CCSK (Certificate of Cloud Security Knowledge)
  • CISSP (Certified Information Systems Security Professional)
  • GICSP (Global Industrial Cyber Security Professional)
  • CSSLP (Certified Secure Software Lifecycle Professional)
  • CISM (Certified Information Security Manager)
  • Certified Kubernetes Security Specialist (CKS)
  • Microsoft Cybersecurity Architect Expert
  • AZ-500 or similar
  • Azure Security Engineer Associate
  • GIAC Industrial Cyber Security Certifications
  • ISA/IEC 62443 Cybersecurity Certificate


Key Competencies

  • Secure Software Development
  • Industrial Cybersecurity
  • DevSecOps Automation
  • Risk Management
  • Threat Modeling
  • Incident Response
  • Vulnerability Management
  • Cloud Security
  • OT/IT Convergence Security
  • Analytical Problem Solving
  • Communication and Collaboration


Success Measures

  • The successful candidate will:
  • Reduce application security vulnerabilities and remediation times.
  • Improve security automation coverage across CI/CD pipelines.
  • Maintain compliance with industrial cybersecurity standards.
  • Successfully secure critical Oil & Gas operational applications.
  • Minimize cybersecurity risk to production and operational environments.
  • Enhance resilience against cyber threats targeting industrial operations.


Typical Applications Protected

  • Production Management Systems
  • Pipeline Monitoring Applications
  • Asset Integrity Platforms
  • Predictive Maintenance Systems
  • SCADA and HMI Interfaces
  • Digital Oilfield Applications
  • Field Data Collection Systems
  • Emissions Monitoring Applications
  • Industrial IoT Platforms
  • Operational Analytics and Reporting Systems


This role is critical to ensuring that industrial software applications remain secure, reliable, and resilient while supporting safe and efficient Oil & Gas operations.