CAE Inc

Cybersecurity Governance, Risk and Compliance Specialist - Risk Management

CAE Inc$95K — $115K *
Information Technology
5 - 7 years of experience
Job Overview by Ladders

Qualifications

  • Bilingual in French and English is required.
  • Minimum of seven years in IT Security or Cybersecurity.
  • In-depth knowledge of IT Security and Telecommunications.
  • Strong understanding of risk analysis methodologies and security standards (e.g. ISO, NIST).
  • Industry-recognized certifications (CISSP, CISA, CIRISC, CISM) are a plus.
  • Familiarity with threat modeling methodology is required.
  • Experience in the aerospace industry is an asset.

Responsibilities

  • Lead and enhance the cybersecurity risk management program.
  • Maintain the enterprise cybersecurity risk register.
  • Conduct risk assessments for projects, technologies, and third parties.
  • Partner with stakeholders to develop and monitor risk treatment plans.
  • Prepare risk reporting and dashboards for leadership.
  • Support the improvement of risk methodologies and governance processes.
  • Monitor key risk indicators and emerging threats.

Benefits

  • Collaborative work environment in a high-performing team.
  • Opportunities for professional growth and development.
  • Engagement with various business and technology stakeholders.
  • Access to industry-standard training and certifications.
Full Job Description
Your Mission

As a Cybersecurity Risk Manager, your mission is to lead and mature the cybersecurity risk management program by identifying, assessing, treating, monitoring and communicating cybersecurity risks that may impact CAE's operations, technologies and business objectives.

Your Role & Main Responsibilities
  • Lead and mature the cybersecurity risk management program, including risk identification, assessment, treatment, monitoring and reporting.
  • Maintain the enterprise cybersecurity risk register and ensure risks, issues, exceptions and mitigation plans are documented, tracked and regularly reviewed.
  • Conduct cybersecurity risk assessments for projects, technologies, third parties and business initiatives, and provide practical risk-based recommendations.
  • Partner with business and technology stakeholders to define risk treatment plans, clarify ownership, track remediation progress and support risk acceptance decisions.
  • Prepare clear risk reporting, dashboards and executive summaries to support informed decision-making by cybersecurity leadership and governance committees.
  • Support the development and continuous improvement of risk methodologies, scoring models, control expectations and governance processes aligned with industry frameworks.
  • Monitor key risk indicators, emerging threats and control gaps, and translate them into actionable insights for stakeholders.
  • Advise project teams on cybersecurity risk requirements and ensure risks are identified early, assessed consistently and managed throughout the project lifecycle.
  • Contribute to risk awareness, governance routines and performance indicators that strengthen the Governance, Risk and Compliance function.


Your Qualifications

Soft skills
  • Want to be in a performing team
  • Show Initiative & leadership
  • Be customer orientated
  • Display a sense of collaboration (teamwork) & interpersonal skills
  • Ability to influence


Technical skills
  • Bilingualism (French and English) is required
  • A minimum of seven (7) years experience in IT Security or Cybersecurity
  • In-depth knowledge and experience in IT Security and Telecommunications
  • In-depth knowledge risk analysis methodologies and security standards (e.g. ISO, NIST)
  • Industry-recognized certification (CISSP, CISA, CIRISC, CISM) would be considered an asset
  • Knowledge about threat modeling methodology
  • Aerospace industry knowledge would be considered an asset


At CAE, connecting with people is very important. If you have any questions on this career opportunity, please do not hesitate to contact Didier Avignon, Talent Acquisition Specialist and ([redacted]) or Rémi Beauregard, Head of Cybersecurity Governance, Risk and Compliance ([redacted]).

Position Type
Regular

About CAE Inc

CAE Inc. is a Canadian manufacturer of simulation technologies, modelling technologies and training services to airlines, aircraft manufacturers, healthcare specialists, and defense customers. CAE was founded in 1947, and has manufacturing operations and training facilities in 35 countries. CAE's Defense and Security business unit focuses on training solutions for defense forces across the world. CAE's Civil Aviation Training Solutions business unit provides training solutions for civil aviation organizations worldwide, including airlines, aircraft manufacturers, training centers, and aircraft maintenance, repair and overhaul organizations. CAE's Healthcare business unit designs and manufactures simulators and offers audiovisual and simulation center management services for medical schools, nursing schools, hospitals, defense forces, and other medical organizations. CAE is headquartered in Saint-Laurent, Quebec.
Learn more about CAE Inc
Size
13,000 employees
Market Cap
$6 billion
Industry
Founded
1947
5 Year Trend
+4.5%
NASDAQ

Similar Jobs

More Jobs at CAE Inc

More Information Technology Jobs

Find similar Cybersecurity Governance, Risk and Compliance Specialist - Risk Management jobs: