1

Security Risk Manager Jobs in Calgary, AB (NOW HIRING)

Security Technical Architect

Calgary, AB · On-site

CA$106K - CA$139K/yr

Designing and implementing secure architectures focused on business continuity, risk management ... Implement industry leading security solutions by understanding client requirements through your ...

next page

Showing results 1-20

Security Risk Manager information

What is the difference between Security Risk Manager vs Security Analyst?

AspectSecurity Risk ManagerSecurity Analyst
CertificationsCRISC, CISSP, CISMCompTIA Security+, CISSP (optional)
Work EnvironmentStrategic, managerial, policy-focusedOperational, monitoring, incident response
Employer & Industry UsageOrganizations with risk management frameworksIT departments, cybersecurity teams

The Security Risk Manager focuses on identifying, assessing, and mitigating security risks at a strategic level, often managing policies and frameworks. In contrast, the Security Analyst handles day-to-day security monitoring, incident response, and vulnerability assessments. Both roles require cybersecurity certifications, but the Risk Manager's role is more strategic, while the Analyst's role is more technical and operational.

What are some common challenges Security Risk Managers face when implementing new security policies within an organization?

Security Risk Managers often encounter challenges such as resistance to change from employees, balancing security needs with business operations, and ensuring compliance with industry regulations. Gaining buy-in from various stakeholders requires strong communication and education efforts, as some team members may perceive new protocols as disruptive. Additionally, Security Risk Managers must continuously assess evolving threats while adapting policies to keep the organization protected without hindering productivity.

What are the key skills and qualifications needed to thrive as a Security Risk Manager, and why are they important?

To thrive as a Security Risk Manager, you need a solid understanding of risk assessment, security protocols, and regulatory compliance, typically supported by a degree in cybersecurity, information security, or a related field. Familiarity with risk management frameworks (like ISO 27001 or NIST), security information and event management (SIEM) systems, and certifications such as CISSP or CISM are commonly required. Strong analytical thinking, communication, and leadership skills help you effectively identify vulnerabilities and collaborate with stakeholders. These competencies are crucial for proactively managing threats, ensuring organizational resilience, and maintaining regulatory compliance.

What does a Security Risk Manager do?

A Security Risk Manager is responsible for identifying, assessing, and mitigating security risks that could impact an organization. They develop and implement risk management policies, conduct security audits, and ensure compliance with relevant laws and standards. Security Risk Managers work closely with other departments to create strategies that protect assets, data, and personnel from potential threats. Their role is critical in helping organizations minimize losses and maintain business continuity.

Manager, Cloud Security - Advisory

BDO Canada

Calgary, AB

Full-time

PTO

Posted 11 days ago


Job description

Putting people first, every day

BDO is a firm built on a foundation of positive relationships with our people and our clients. Each day, our professionals provide exceptional service, helping clients with advice and insight they can trust. In turn, we offer an award-winning environment that fosters apeople-first culturewith a high priority on your personal and professional growth.

Your Opportunity

Our Cloud Security Engineering team focuses on protecting cloud-first and hybrid organizations through modern security architectures, data protection, identity-centric controls, and continuous security operations. We work across Microsoft, AWS, and Google Cloud ecosystems and align security outcomes to business risk, regulatory expectations, and operational maturity.

We are seeking a Cloud Security Manager who combines strong technical leadership with people management experience, consulting delivery maturity, and the ability to help scale and evolve our cloud security services.

Key Responsibilities:

People Leadership & Team Management

  • Lead, coach, and develop a high-performing team of consultants and senior consultants through regular check-ins, feedback, and career development conversations.

  • Foster a culture of accountability, quality, collaboration, and continuous improvement.

  • Manage resourcing, utilization, and work allocation across multiple engagements.

  • Mentor team members on both technical execution and consulting delivery, including judgement in complex client environments.

  • Support recruitment, interviewing, onboarding, and integration of new team members.

Technical Leadership & Oversight

  • Provide technical leadership and oversight across complex cloud security engagements.

  • Act as the escalation point for complex technical or delivery challenges.

  • Lead solution design and implementation oversight in large, regulated, or complex environments

  • Lead and deliver cloud security assessments, architecture reviews across Azure, AWS, and GCP.

  • Support secure adoption of AI and GenAI workloads, including data exposure risk, identity boundaries, and model access controls.

  • Translate security risks into clear, business focused recommendations for both technical and executive audiences.

  • Work with multiple cloud service providers including Amazon Web Services, Microsoft Azure and Google Cloud Platform, and various security vendors to understand their solution offerings and advise clients on appropriate technologies and architectures, based on their needs.

  • Review key deliverables and ensure they meet technical and quality standards before client submission.

Client Delivery

  • Lead multiple concurrent client engagements, ensuring delivery quality, timelines, and budget adherence.

  • Serve as a trusted advisor to client security, IT, risk, and executive stakeholders.

  • Translate complex technical risks into clear, business-focused guidance.

  • Proactively identify delivery risks, dependencies, and improvement opportunities.

  • Contribute to proposals, statements of work, solution shaping, and effort estimation.

Service Development & Practice Growth

  • Contribute to the development and evolution of cloud security service offerings, accelerators, and delivery standards.

  • Provide input into strategic direction, tooling selection, and innovation priorities for the service line.

  • Identify opportunities to standardize delivery, improve margins, and enhance consistency across engagements.

  • Champion the adoption of automation, AI-enabled capabilities, and modern delivery approaches.

How do we define success for your role?

Success in this role is defined by demonstrating BDO's core values of Integrity, Respect, and Collaboration, understanding the client's industry and challenges, and delivering high-quality work and building strong, capable teams.

Additionally, you will:

  • Delivering high-quality, risk-based security outcomes that align to client priorities.

  • Build and sustain engaged, high-performing delivery teams.

  • Maintain strong technical credibility while enabling others to execute effectively.

  • Demonstrate sound judgement in complex, ambiguous environments.

  • Balance delivery excellence with commercial and operational awareness.

  • Living BDO's core values of integrity, respect, collaboration, and excellence

Your experience and education:

You should have a minimum of 3 to 6 years of relevant work experience and firsthand experience with:

  • Hands-on experience in cloud security, cybersecurity consulting, or security engineering.

  • Strong understanding of cloud security domains including identity, data protection, logging, monitoring, and architecture.

  • Demonstrated experience leading teams and managing delivery in a consulting environment.

  • Experience delivering engagements in large, complex, or regulated environments.

  • Familiarity with industry frameworks and standards

  • Ability to clearly communicate complex technical concepts to diverse audiences.

  • Experience working in consulting or client-facing delivery roles.

  • Successful candidates will have experience or strong exposure to several of the following areas:

    • Cloud & Platform Security

      • Microsoft Azure, AWS, and/or Google Cloud security services

      • Secure landing zones and cloud reference architectures

      • Infrastructure-as-Code (Bicep, Terraform, ARM, CloudFormation)

      • DevSecOps concepts, CI/CD pipeline security, and secrets management

    • Data Protection & Information Security

      • Microsoft Purview (Information Protection, DLP, eDiscovery, Insider Risk)

      • Data classification, labeling, and encryption strategies

      • Data Loss Prevention across cloud services and endpoints

      • Secure collaboration and third-party data sharing controls

    • Identity & Zero Trust

      • Microsoft Entra ID (formerly Azure AD)

      • Conditional Access, MFA, phishing-resistant authentication

      • Privileged Identity Management (PIM) and Just-in-Time access

      • Identity governance and lifecycle automation

    • AI & Emerging Technology Security

      • Securing Copilot, GenAI, and AI-enabled workloads

      • Data leakage risks in AI-assisted environments

      • Governance and access controls for AI services

Preferred Qualifications

  • College Diploma or University Degree in Cyber Security, Information Security, or Computer Science.

  • Advanced certification in one or more cloud service platforms (one of more preferred):

    • Azure Security Engineer, SC-series certifications

    • AWS Security Specialty

    • CISSP, CCSP, CISM

The expected range of compensation for this role is $115,,000 - $165,000 annually.


Why BDO?
Our people-first approach to talent has earned us a spot among Canada's Top 100 Employers for 2026. This recognition is a milestone we're thrilled to add to our collection of awards for both experienced and student talent experiences.

Our firm is committed to providing an environment where you can be successful in the following ways:

  • We enable you to engage with how we change and evolve, being a key contributor to the success and growth of BDO in Canada.

  • We help you become a better professional within our services, industries, and markets with extensive opportunities for learning and development.

  • We support your achievement of personal goals outside of the office and making an impact on your community.

Giving back adds up: Where company meets community. BDO is actively involved in our communities by supporting local charity initiatives. We support staff with local and national events where you will be given the opportunity to contribute to your community.


Total rewards that matter: We pay for performance with competitive total cash compensation that recognizes and rewards your contribution. We provide flexible benefits from day one, and a market leading personal time off policy. We are committed to supporting your overall wellness beyond working hours and provide reimbursement for wellness initiatives that fit your lifestyle.


Everyone counts: We believe every employee should have the opportunity to participate and succeed. Through leadership by our Diversity, Equity and Inclusion Leader, we are committed to a workplace culture of respect, inclusion, and diversity. We recognize and celebrate the valuable differences among each of us, including race, religious beliefs, physical or mental disabilities, age, place of origin, marital status, family status, gender or gender identity and sexual orientation. If you require accommodation to complete the application process, please contact us.

Flexibility: All BDO personnel are expected to spend some of their time working in the office, at the client site, and virtually unless accommodations or alternative work arrangements are in place.

Our model is a blended approach designed to support the flexible needs of our people, the firm and our clients. It's about creating work experiences that meet everyone's needs and providing flexibility to adjust when, where and how we work to meet the expectations of our role.

Code of Conduct: Our Code of Conduct sets clear standards for how we conduct business. It reflects our shared values and commitments and includes guiding principles to help us make ethical decisions and maintain trust with each other, our clients, and the public.

BDO may use artificial intelligence enabled tools to support certain aspects of the recruitment process. While these tools assist our teams, our use of AI does not replace human decision making, and all employment-related outcomes are made by BDO personnel.

More information on BDO Canada's Privacy Policy can be found here: Privacy Policy | BDO Canada

Ready to make your mark at BDO? Click "Apply now" to send your up-to-date resume to one of our Talent Acquisition Specialists.

To explore other opportunities at BDO, check out ourcareers page.