Own AI governance and security strategy at the Alberta Energy Regulator, defining decision rights and the AI Register. Partner with security and data governance teams to ensure safe, secure AI use across a multi-vendor estate.
Responsibilities
Own the strategy for governing and securing AI at the AER, defining decision rights, the AI Register, and supporting processes aligned to ISO/IEC 42001 and NIST AI RMF. Define metrics and processes to monitor AI, including oversight of models and agents, and data protection signals from Microsoft Purview and Entra ID. Define the operating model for AI tools, including usage policies and FinOps cost controls. Maintain a platform-neutral view across the AI estate, advising on capability adoption and avoiding duplication. Partner with business branches, training, and communications to design training and communication on responsible AI use. Contribute to enterprise AI strategy and report quarterly to the AI Steering Committee and Executive Leadership Team.
Requirements
Bachelor's degree in Business, Public Administration, Environmental Science, Engineering, Information Technology, or related field. 10+ years of experience in information security, governance, or risk strategy, including AI/ML governance. Deep knowledge of ISO/IEC 42001 and NIST AI RMF. Strong command of Microsoft Purview, Entra ID, and FinOps consumption controls. Influence-first working style with excellent communication skills. CISSP, CISM, ISO/IEC 42001, IAPP AIGP, or Microsoft security/AI certifications are assets. Experience in energy industry or regulated environment is an asset.
Benefits
Competitive compensation program, defined benefit pension plan(s), flexible benefits, wellness programs, flexible work options and hours.
Threat Intelligence Analyst investigating telecom security threats and customer deployment data for Enea, a global telecom and cybersecurity software company. Supporting client security reviews and threat intelligence operations.
Information Security Analyst governing End - User Computing risks, controls, and remediation for TD, a major North American bank. Advising stakeholders and supporting governance reporting, audits, and regulatory requirements.
IT Security Analyst II coordinating cybersecurity monitoring, MSP oversight, audits, and incident follow - up. Supporting Veristat’s global life - sciences services and regulated technology environments.
Security Analyst protecting GitLab’s DevSecOps platform through vulnerability triage and CVE operations. Coordinating researchers, customers, and internal teams on secure software response.
SIEM/SOAR cybersecurity analyst monitoring threats, building alerts, and measuring controls. Supporting Wepoint’s digital transformation work for businesses and public sector organizations.
SIEM/SOAR information security analyst supporting Wepoint’s digital transformation services. Developing cybersecurity monitoring cases, alerts, dashboards, and security - control documentation.
Security Analyst II protecting Intact’s insurance operations through incident response and SIEM monitoring. Supporting security platforms, incident resolution, dashboards, and IT security initiatives.