Cybersecurity Risk Manager

Posted 4 Days Ago
Be an Early Applicant
Hiring Remotely in CA
Remote
Senior level
Artificial Intelligence • Cloud • Software
The Role
Leads enterprise cybersecurity risk management across cloud, product, third-party, and AI-enabled environments. Responsibilities include risk identification, assessment, prioritization, treatment planning, control evaluation, residual risk analysis, risk reporting, regulatory alignment, audit readiness, and risk register governance. The role supports FedRAMP, SOC 2, ISO 27001, and AI risk management initiatives while influencing engineering, product, legal, and compliance stakeholders and improving risk processes, metrics, tooling, and automation.
Summary Generated by Built In

About Kinaxis

Are you looking to join an innovative, market-leading company where you can truly elevate your career? At Kinaxis we are serious about culture, we are serious about technology, we are serious about customers, and we are serious about not taking ourselves too seriously. If you are looking to be part of an incredible growth story, then we might just be the place for you!


In 1984, we started out as a team of three engineers. Today, we have grown to become a global organization with over 2000 employees around the world, 6 global office and a best-in-class HQ in Ottawa, Canada. As winners of several Top Employer awards globally, we are proud to work with our customers and employees towards solving some of the biggest challenges facing supply chains today.


Kinaxis is a global leader in modern supply chain orchestration, powering complex global supply chains, and supporting the people who manage them. Our powerful, AI infused platform provides full transparency and visibility across end-to-end supply chains, enabling our customers to make faster, better decisions. We are trusted by renowned global brands to provide the agility and predictability needed to navigate today’s volatility and disruption. With more than 40,000 users in over 100 countries, we are expanding our team as we continue to innovate and revolutionize how we support our customers.

Location

Ottawa and Toronto, Canada - Hybrid

Other Canadian and USA locations - Remote

About the team

The Cybersecurity Risk Manager is accountable for the execution, quality, and continuous improvement of the enterprise cybersecurity risk management program. This role ensures that cybersecurity risks across cloud, product, third‑party, and AI-enabled capabilities are consistently identified, assessed, governed, and translated into decision‑ready insights and actionable remediation outcomes. This role does not include direct people management responsibilities, but it does require cross-functional influence.


The role also incorporates FedRAMP readiness and emerging AI risk management considerations into the broader cybersecurity risk program, ensuring cloud, product, third-party, and AI-enabled risks are evaluated consistently and translated into actionable remediation, reporting, and governance outcomes.

Vacancy Status

This is an existing job vacancy

What you will do

Cybersecurity Risk Program Execution

  • Lead the end‑to‑end execution of cybersecurity risk identification, assessment, prioritization, and treatment planning across enterprise systems and services
  • Ensure consistent application of risk frameworks and methodologies aligned to enterprise governance and regulatory expectations
  • Oversee control evaluation, residual risk analysis, and risk acceptance recommendations, ensuring clear rationale and alignment to risk appetite

Risk Governance and Reporting

  • Maintain a complete, accurate, and decision‑ready cybersecurity risk register with clear ownership, status, and evidence
  • Deliver management‑ready risk reporting and insights that enable informed decision‑making, prioritization, and escalation
  • Strengthen data quality, metrics, and reporting practices to improve visibility into enterprise risk posture

Regulatory and Compliance Alignment

  • Align cybersecurity risk practices to regulatory and assurance requirements including FedRAMP, SOC, ISO 27001, and related frameworks
  • Translate regulatory expectations into actionable risk management practices, remediation plans, and governance controls
  • Support continuous monitoring and evidence readiness for audit and certification requirements

Emerging Risk Domains

  • Evaluate risks associated with cloud environments, third‑party services, and AI-enabled capabilities
  • Contribute to AI risk governance practices, including assessment criteria, controls, and reporting mechanisms
  • Monitor emerging cybersecurity, AI, and regulatory developments and integrate relevant changes into the risk program

Technical Leadership and Influence

  • Provide technical leadership and quality oversight across risk assessment activities and outputs
  • Influence cross-functional stakeholders (engineering, product, legal, compliance) to ensure risks are understood, owned, and effectively addressed
  • Drive continuous improvement of processes, tooling, and automation to enhance risk program maturity

What we are looking for

Primary Skills and Qualifications

  • University degree or equivalent practical experience in Information Security, Computer Science, or related field
  • 5–7 years of progressive experience in cybersecurity risk, IT risk, audit, or compliance
  • Strong knowledge of risk and control frameworks (NIST CSF, NIST SP 800 53, ISO 27001, SOC 2)
  • Demonstrated ability to operationalize risk frameworks into scalable processes, metrics, and reporting

Role-Specific Skills and Experience

  • Strong analytical and influencing skills, with ability to translate technical risk into business decision insights
  • Experience working with GRC platforms, audit evidence, and workflow automation

Continuous Learning

  • A demonstrated commitment to continuous learning, with a strong desire to stay current on rapid advancements in AI, particularly in generative and agentic AI, and their implications for cybersecurity

Nice to Have

  • Professional certifications such as CRISC, CISSP, CISM, CISA, or equivalent.
  • Experience with cloud security and regulated SaaS/cloud environments, including FedRAMP readiness
  • Familiarity with AI risk management concepts, including governance, privacy, and emerging regulatory expectations (NIST AI, ISO/IEC 42001)
  • Practical experience applying AI, automation, analytics, or GRC workflow improvements to strengthen cybersecurity risk analysis, reporting, or evidence management.
  • Experience with privacy, data protection, or regulatory requirements such as GDPR, CCPA, NIS2, or other applicable security and compliance obligations.

#Senior #LI-CS1 

Work With Impact: Our platform directly helps companies power the world’s supply chains. We see the results of what we do out in the world every day, when we see store shelves stocked, when medications are available for our loved ones, and so much more.

Work with Fortune 500 Brands: Companies across industries trust us to help them take control of their integrated business planning and digital supply chain. Some of our customers include Lockheed Martin, Unilever, P&G, ExxonMobil, Cisco and more.

Social Responsibility at Kinaxis: Our Diversity, Equity, and Inclusion Committee weighs in on hiring practices, talent assessment training materials, and mandatory training on unconscious bias and inclusion fundamentals. Sustainability is key to what we do and we’re committed to a long-term net-zero operations strategy. We are involved in our communities and support causes where we can make the most impact.

People matter at Kinaxis and here are some of the perks and benefits we offer, which may vary by location and employee:

  • Flexible vacation and Kinaxis Days (company-wide days off)
  • Flexible work options
  • Physical and mental well-being programs
  • Regularly scheduled virtual fitness classes
  • Mentorship programs, training, and career development
  • Recognition programs and referral rewards
  • Hackathons

For more information, visit the Kinaxis website at www.kinaxis.com or the company’s blog at http://blog.kinaxis.com.

Kinaxis welcomes candidates to apply to our inclusive community. We provide accommodations upon request to ensure fairness and accessibility throughout our recruitment process for all candidates, including those with specific needs or disabilities. If you require an accommodation, please reach out to us at [email protected]. This contact information is for accessibility requests only and cannot be used to inquire about the status of applications.

Kinaxis is committed to ensuring a fair and transparent recruitment process. We use artificial intelligence (AI) tools in the initial step of the recruitment process to compare submitted resumes against the job description to identify candidates whose education, experience, and skills most closely match the requirements of the role. After the initial screening, all subsequent decisions regarding your application, including final selection, are made by our human recruitment team. AI does not make any final hiring decisions.

Skills Required

  • University degree or equivalent practical experience in Information Security, Computer Science, or a related field
  • 5-7 years of progressive experience in cybersecurity risk, IT risk, audit, or compliance
  • Strong knowledge of NIST CSF, NIST SP 800-53, ISO 27001, and SOC 2 frameworks
  • Ability to operationalize risk frameworks into scalable processes, metrics, and reporting
  • Strong analytical and influencing skills, including translating technical risk into business insights
  • Experience with GRC platforms, audit evidence, and workflow automation
  • Commitment to continuous learning in generative AI, agentic AI, and cybersecurity implications
  • CRISC, CISSP, CISM, CISA, or equivalent certification
  • Experience with cloud security and regulated SaaS or cloud environments, including FedRAMP readiness
  • Familiarity with AI risk management, governance, privacy, NIST AI, and ISO/IEC 42001
  • Experience applying AI, automation, analytics, or GRC workflow improvements
  • Experience with privacy, data protection, GDPR, CCPA, NIS2, or related requirements
Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
HQ: Ottawa, Ontario
1,243 Employees
Year Founded: 1984

What We Do

Everyday volatility and uncertainty demand quick action. Kinaxis® delivers the agility to make fast, confident decisions across integrated business planning and the digital supply chain. People can plan better, live better and change the world. Trusted by innovative brands, we combine human intelligence with AI and concurrent planning to help companies plan for any future, monitor risks and opportunities and respond at the pace of change. Powered by an extensible, cloud-based platform, Kinaxis delivers industry-proven applications so everyone can know sooner, act faster and remove waste

Similar Jobs

Block Logo Block

Director, Revenue Strategy & Planning

Blockchain • eCommerce • Fintech • Payments • Software • Financial Services • Cryptocurrency
In-Office or Remote
8 Locations
12000 Employees
218K-327K Annually

Block Logo Block

Ios Engineer

Blockchain • eCommerce • Fintech • Payments • Software • Financial Services • Cryptocurrency
In-Office or Remote
8 Locations
12000 Employees
264K-395K Annually

Affirm Logo Affirm

Senior Software Engineer

Big Data • Fintech • Mobile • Payments • Financial Services
Easy Apply
Remote
Canada
2200 Employees
153K-213K Annually

HiBob Logo HiBob

Enterprise Account Executive

HR Tech • Information Technology • Professional Services • Sales • Software
Remote or Hybrid
Canada
1350 Employees

Similar Companies Hiring

Onshore Thumbnail
Artificial Intelligence • Fintech • Software • Financial Services
New York, New York
60 Employees
Revel.io Thumbnail
Aerospace • Hardware • Robotics • Software
US
50 Employees
Blee Thumbnail
Artificial Intelligence • Marketing Tech • Software • Productivity
US
15 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account