Certified Information Systems Manager (CISM) * GIAC Enterprise Vulnerability Assessor (GEVA) * Certified in Risk and Information Systems Control (CRISC) * Cloud Security Certifications * Information ...
Certified Information Systems Manager (CISM) * GIAC Enterprise Vulnerability Assessor (GEVA) * Certified in Risk and Information Systems Control (CRISC) * Cloud Security Certifications * Information ...
You know when to accept calculated risk and when to hold the line -- your decisions are pragmatic ... Team management: Hire, develop, and retain application security developers. Set technical direction ...
Quick apply
You know when to accept calculated risk and when to hold the line -- your decisions are pragmatic ... Team management: Hire, develop, and retain application security developers. Set technical direction ...
Certified Information Systems Manager (CISM) * GIAC Enterprise Vulnerability Assessor (GEVA) * Certified in Risk and Information Systems Control (CRISC) * Cloud Security Certifications * Information ...
Certified Information Systems Manager (CISM) * GIAC Enterprise Vulnerability Assessor (GEVA) * Certified in Risk and Information Systems Control (CRISC) * Cloud Security Certifications * Information ...
Certified Information Systems Manager (CISM) * GIAC Enterprise Vulnerability Assessor (GEVA) * Certified in Risk and Information Systems Control (CRISC) * Cloud Security Certifications * Information ...
Certified Information Systems Manager (CISM) * GIAC Enterprise Vulnerability Assessor (GEVA) * Certified in Risk and Information Systems Control (CRISC) * Cloud Security Certifications * Information ...
Senior Managers support both high-value and high-risk advisor offices through onsite visits and ... securities legislation and the regulatory requirements of CIRO and the provincial securities ...
Senior Managers support both high-value and high-risk advisor offices through onsite visits and ... securities legislation and the regulatory requirements of CIRO and the provincial securities ...
Network and Perimeter Security IT Specialist I - Load Balancing
Edmonton, AB · On-site
CA$95K - CA$125K/yr
Demonstrated strength in regulatory compliance, audit readiness, risk management, and detailed ... Solid understanding of core network security components including firewalls, DNS, and encryption ...
Network and Perimeter Security IT Specialist I - Load Balancing
Edmonton, AB · On-site
CA$95K - CA$125K/yr
Demonstrated strength in regulatory compliance, audit readiness, risk management, and detailed ... Solid understanding of core network security components including firewalls, DNS, and encryption ...
Network and Perimeter Security IT Specialist I - Load Balancing
Calgary, AB · On-site
CA$95K - CA$125K/yr
Demonstrated strength in regulatory compliance, audit readiness, risk management, and detailed ... Solid understanding of core network security components including firewalls, DNS, and encryption ...
Network and Perimeter Security IT Specialist I - Load Balancing
Calgary, AB · On-site
CA$95K - CA$125K/yr
Demonstrated strength in regulatory compliance, audit readiness, risk management, and detailed ... Solid understanding of core network security components including firewalls, DNS, and encryption ...
Airport Security Operations Manager
Edmonton, AB · On-site
CA$82K - CA$87K/yr
Lead Security. Drive Compliance. Inspire Excellence. We are seeking an experienced Airport Security ... Lead health, safety, risk management, and incident investigations. Qualifications * Candidates must ...
Airport Security Operations Manager
Edmonton, AB · On-site
CA$82K - CA$87K/yr
Lead Security. Drive Compliance. Inspire Excellence. We are seeking an experienced Airport Security ... Lead health, safety, risk management, and incident investigations. Qualifications * Candidates must ...
Engineering Manager
Edmonton, AB · On-site
Security risk and incident decisions. One of your teams covers platform and office security (SOC 2, network security). You'll manage that lead's delivery cadence and growth like any other. However ...
Quick apply
Engineering Manager
Edmonton, AB · On-site
Security risk and incident decisions. One of your teams covers platform and office security (SOC 2, network security). You'll manage that lead's delivery cadence and growth like any other. However ...
Security risk and incident decisions. One of your teams covers platform and office security (SOC 2, network security). You'll manage that lead's delivery cadence and growth like any other. However ...
Security risk and incident decisions. One of your teams covers platform and office security (SOC 2, network security). You'll manage that lead's delivery cadence and growth like any other. However ...
Manager, IT Security
Calgary, AB · On-site +1
As Manager, IT Security, you will lead a capable team, strengthen security practices, and help ... Advance risk and compliance by developing standards, support policies, conducting risk assessments ...
Manager, IT Security
Calgary, AB · On-site +1
As Manager, IT Security, you will lead a capable team, strengthen security practices, and help ... Advance risk and compliance by developing standards, support policies, conducting risk assessments ...
Manager Cyber Cloud Security and AI
Calgary, AB · Hybrid
CA$116K - CA$166K/yr
Risk Management:Conduct risk assessments toidentifyvulnerabilities in AI systems and data ... Coordinate with the security incident response * Stakeholder Engagement:Liaise with senior ...
Manager Cyber Cloud Security and AI
Calgary, AB · Hybrid
CA$116K - CA$166K/yr
Risk Management:Conduct risk assessments toidentifyvulnerabilities in AI systems and data ... Coordinate with the security incident response * Stakeholder Engagement:Liaise with senior ...
Define, configure, and implementprocess control and risk management modules of SAP GRC. * Design and develop SAP BTP security (role collection) andintegratingIAGwith onpremise SAP GRC. * Configure ...
Define, configure, and implementprocess control and risk management modules of SAP GRC. * Design and develop SAP BTP security (role collection) andintegratingIAGwith onpremise SAP GRC. * Configure ...
Senior Manager Cyber Cloud Security and AI
CA$168K - CA$218K/yr
Risk Management:Conduct risk assessments toidentifyvulnerabilities in AI systems and data ... Coordinate with the security incident response * Stakeholder Engagement:Liaise with senior ...
Senior Manager Cyber Cloud Security and AI
CA$168K - CA$218K/yr
Risk Management:Conduct risk assessments toidentifyvulnerabilities in AI systems and data ... Coordinate with the security incident response * Stakeholder Engagement:Liaise with senior ...
Risk and Compliance Team Lead
CA$100K - CA$120K/yr
Manage Security Incidents: Oversee incident response, including investigation, reporting ... risk management. * Postgraduate education in cybersecurity or a related field. * Strong ...
Risk and Compliance Team Lead
CA$100K - CA$120K/yr
Manage Security Incidents: Oversee incident response, including investigation, reporting ... risk management. * Postgraduate education in cybersecurity or a related field. * Strong ...
VP of Security
Calgary, AB · On-site
$220 - $340/hr
Experience with governance, risk, and compliance programs, including security policies, risk management, vendor assessments, SOX ITGC, SOC 2 readiness, audit preparation, and executive-level security ...
VP of Security
Calgary, AB · On-site
$220 - $340/hr
Experience with governance, risk, and compliance programs, including security policies, risk management, vendor assessments, SOX ITGC, SOC 2 readiness, audit preparation, and executive-level security ...
$20/hr
Excellent report writing skills AFIMAC is a global risk management and elite security company. For more than 40 years, AFIMAC has helped image-conscious companies and organizations across the globe ...
$20/hr
Excellent report writing skills AFIMAC is a global risk management and elite security company. For more than 40 years, AFIMAC has helped image-conscious companies and organizations across the globe ...
CA$20/hr
Excellent report writing skills AFIMAC is a global risk management and elite security company. For more than 40 years, AFIMAC has helped image-conscious companies and organizations across the globe ...
Quick apply
CA$20/hr
Excellent report writing skills AFIMAC is a global risk management and elite security company. For more than 40 years, AFIMAC has helped image-conscious companies and organizations across the globe ...
$20/hr
Excellent report writing skills AFIMAC is a global risk management and elite security company. For more than 40 years, AFIMAC has helped image-conscious companies and organizations across the globe ...
$20/hr
Excellent report writing skills AFIMAC is a global risk management and elite security company. For more than 40 years, AFIMAC has helped image-conscious companies and organizations across the globe ...
$20/hr
Excellent report writing skills AFIMAC is a global risk management and elite security company. For more than 40 years, AFIMAC has helped image-conscious companies and organizations across the globe ...
$20/hr
Excellent report writing skills AFIMAC is a global risk management and elite security company. For more than 40 years, AFIMAC has helped image-conscious companies and organizations across the globe ...
Security Risk Manager information
See Alberta salary details
$24.5K - $37K
3% of jobs
$37K - $49.5K
4% of jobs
$49.5K - $62K
4% of jobs
$62K - $74.5K
6% of jobs
$82.6K is the 25th percentile. Wages below this are outliers.
$74.5K - $87K
11% of jobs
$87K - $99.5K
15% of jobs
The median wage is $104.9K / yr.
$99.5K - $112K
15% of jobs
$112K - $124.5K
12% of jobs
$128.5K is the 75th percentile. Wages above this are outliers.
$124.5K - $137K
15% of jobs
$137K - $149.5K
11% of jobs
$149.5K - $162K
4% of jobs
$24.5K
$105.4K
$162K
How much do security risk manager jobs pay per year?
How much does a risk manager get paid?
What is the difference between Security Risk Manager vs Security Analyst?
| Aspect | Security Risk Manager | Security Analyst |
|---|---|---|
| Certifications | CRISC, CISSP, CISM | CompTIA Security+, CISSP (optional) |
| Work Environment | Strategic, managerial, policy-focused | Operational, monitoring, incident response |
| Employer & Industry Usage | Organizations with risk management frameworks | IT departments, cybersecurity teams |
The Security Risk Manager focuses on identifying, assessing, and mitigating security risks at a strategic level, often managing policies and frameworks. In contrast, the Security Analyst handles day-to-day security monitoring, incident response, and vulnerability assessments. Both roles require cybersecurity certifications, but the Risk Manager's role is more strategic, while the Analyst's role is more technical and operational.
What are some common challenges Security Risk Managers face when implementing new security policies within an organization?
What are the key skills and qualifications needed to thrive as a Security Risk Manager, and why are they important?
What is the highest salary for a risk manager?
What does a security risk manager do?
Can I make $200,000 a year in cyber security?

Other
Posted 25 days ago
Canadian National Railway rating
7.3
Based on 48 frontline employees who took The Breakroom Quiz
163rd of 356 rated logistics
Job description
Specialist, Network Security Integrator
At CN, everyday brings new and exciting challenges. You can expect an interesting environment where you're part of making sure our business is running optimally and safely-helping keep the economy on track. We provide the kind of paid training and opportunities that long-term careers are built on and we recognize hard workers who strive to make a difference. You will be able to thrive in our close-knit, safety-focused culture working together as ONE TEAM. The careers we offer are meaningful because the work we do matters. Join us!
Job Summary
The Specialist, Cloud Network Security Operation Center (Subject Matter Expert) provides technical leadership and hands-on delivery for Network Security projects, ensuring the confidentiality, integrity, and availability of CN's information assets across on-prem and cloud environments. The incumbent leads end-to-end project execution (from requirements and design through implementation and transition to operations), partners with architecture, product, and project management teams to align outcomes to corporate priorities, and produces clear technical assessments and recommendations for emerging risks, issues, and initiatives. The role also mentors permanent employees and consultants, driving high-quality, repeatable delivery-especially for net-new or innovative initiatives that require building processes and operational runbooks from the ground up.
Main Responsibilities
Delivery
Lead the team by providing technical guidance and methodology with regards to the security practice
Interface and guide product managers, project managers (PMs), and architecture to align corporate priorities within the team
Ensure solutions are in line with business expectations and CN's vision
Contribute to process improvement and elaboration
Contribute to Request for Proposals (RFPs) and Root Cause Analysis (RCA)
Participate in collecting, assessing, and cataloging threat indicators
Oversee development of new cloud security operations literature for use across CN information security functions by Security Operation Center (SOC) team members
Maintain knowledge of the threat landscape
Implement a proven testing methodology using industry-leading tactics and techniques
Adapt information security approaches to target real-world enterprise challenges
Practice Evolution
Enable the Continuous Service Improvement lifecycle (e.g., reporting for various internal audiences, conduct regular interactions with Governance, enable the Cloud Security Management Lifecycle)
Oversee process improvements, and drive implementation of new capabilities to enhance defense and response of CN cloud systems and networks
Develop and apply high standards to reduce impact on operations and reduce total Cost of Ownership (TCO)
Provide information security risk analysis and strategic recommendations for the ongoing improvement of the security posture of corporate networks, systems, and services
Develop comprehensive security write-ups and presentations, which describe security issues, analysis, and remediation techniques to company leadership
Act as liaison between different departments providing guidance
Provide targeted training and workshops to various teams on a regular basis
Requirements
Experience
Network Security
Between 7 to 10 years of network security industry experience
Minimum 5 years of experience demonstrating technical leadership qualities and overseeing deliverables
Demonstrated experience building and managing systems and programs
Demonstrated experience working with senior management on sensitive projects that require discretion and strict confidentiality for all data, records, and tasks
Demonstrated ability to lead the development of proactive procedures for the detection of security breaches across a large enterprise network
Education/Certification/Designation
Master's Degree in Computer Science or related field or equivalent work experience
Advanced Incident Response, Threat Hunting and Digital Forensics (GCFA)
GIAC Certified Enterprise Defender (GCED)
Certified Information Systems Security Professional (CISSP)
GIAC Certified Incident Handler (GCIH)
Certified Information Systems Manager (CISM)
GIAC Enterprise Vulnerability Assessor (GEVA)
Certified in Risk and Information Systems Control (CRISC)
Cloud Security Certifications
Information Technology Infrastructure Library (ITIL) Certification*
*Any designation for these above would be considered as an asset
Competencies
Applies critical thinking
Knows the business and stays current on industry needs
Collaborates with others and shares information
Communicates with impact
Identifies needs and finds solutions to create value for all stakeholders
Identifies potential safety and security risks
Leads by example for the safety and security of all
Technical Skills/Knowledge
Expertise in public cloud platforms, hybrid and multi-cloud environments, and containerization technologies for scalable and secure solutions
Proficiency in implementing and handling security frameworks and compliance standards
Strong knowledge of cloud Identity and Access Management (IAM) services, privileged access management tools, and multi-factor authentication solutions
Familiarity with cloud firewalls, web application firewalls, zero trust architectures, and Distributed Denial of Service (DDoS) mitigation strategies
Expertise in securing Application Programming Interface (APIs), microservice architectures, and service mesh security
Experience integrating security into Development Operations (DevOps) practices, securing infrastructure as code, and implementing container security measures
Ability to assess and handle cloud security posture using relevant tools and best practices
Proficiency in scripting languages (e.g., Python, PowerShell, Bash) for automating security processes and cloud infrastructure management
Knowledge of common network and application stack protocols (Transmission Control Protocol/Internet Protocol (TCP/IP), Simple Mail Transfer Protocol (SMTP), Domain Name System (DNS), Transport Layer Security (TLS), Extensible Markup Language (XML), HyperText Transfer Protocol (HTTP))
Understanding of key security concepts and analytical techniques
Key Skills and Qualifications
Proven ability to deliver complex Network Security initiatives end-to-end (requirements, design, implementation, testing, cutover, and transition to operations), including documentation and operational readiness.
Deep hands-on expertise with enterprise network security technologies and architectures, including firewall stacks (e.g., Palo Alto Networks NGFW/Panorama, Fortinet FortiGate/FortiManager/FortiAnalyzer, Check Point/SmartConsole), IDS/IPS, VPN/remote access, segmentation, NAC, DDoS protection, and secure DNS/proxy-plus the ability to troubleshoot in large-scale environments.
Strong understanding of cloud and hybrid networking/security patterns (e.g., cloud firewalling, routing, connectivity, micro-segmentation, identity-aware controls) and how they integrate with on-prem controls.
Ability to produce high-quality technical artifacts: high-level/low-level designs, standards, reference architectures, implementation plans, test plans, rollback plans, and runbooks.
Risk-based security mindset: ability to assess threats and vulnerabilities, perform technical risk analysis, and recommend pragmatic mitigation options aligned to business needs.
Demonstrated stakeholder management and communication skills, including presenting recommendations and trade-offs to technical and non-technical audiences.
Experience working with vendors and integrators: evaluating solutions, contributing to RFPs, reviewing statements of work, and validating deliverables against requirements.
Strong collaboration and coaching capability to guide permanent employees and consultants, set delivery standards, and drive consistent execution.
Strong process discipline and familiarity with IT service management and change practices (e.g., change control, incident/problem, continuous improvement).
Education/Certification: Degree in Computer Science or related field (or equivalent experience). Relevant security/network certifications are considered an asset (e.g., CISSP, CCNP/CCIE Security, PCNSE/PCNSA, Fortinet NSE, GIAC, cloud security certifications).
CN is a world-class transportation leader and trade-enabler. Essential to the economy, to the customers, and to the communities it serves, CN safely transports more than 300 million tons of natural resources, manufactured products, and finished goods throughout North America every year. As the only railroad connecting Canada's Eastern and Western coasts with the Southern tip of the U.S. through a 19,500 mile rail network,CN and its affiliates have been contributing to community prosperity and sustainable trade since 1919. CN is committed to programs supporting social responsibility and environmental stewardship. At CN, we work as ONE TEAM, focused on safety, sustainability and our customers, providing operational and supply chain excellence to deliver results.
What Canadian National Railway employees say
Pay
Benefits
Hours and flexibility
Workplace
Get the full story on Breakroom
About Canadian National Railway
Sourced by ZipRecruiter
Industry
Rail transportation
Company size
10,000+ Employees
Headquarters location
West Montreal, QC, CA