Job Search and Career Advice Platform

Enable job alerts via email!

Information Systems Audit Manager

Canadian Pacific Railway

Calgary

On-site

CAD 100,000 - 125,000

Full time

Yesterday
Be an early applicant

Generate a tailored resume in minutes

Land an interview and earn more. Learn more

Job summary

A leading North American railroad is seeking an IS Audit Manager in Calgary. In this high-impact leadership position, you'll safeguard technology by leading audits covering cybersecurity and IT governance, shaping IS audit programs, and providing insights to strengthen controls. The ideal candidate will have at least 8 years in technology and 5 years in audit or risk, alongside a CISA certification. This role promises competitive benefits and opportunities for personal growth.

Benefits

Flexible and competitive benefits package
Competitive company pension
Annual fitness subsidy

Qualifications

  • University degree in Computer Science, Information Systems or another relevant field required.
  • Minimum of 8 years in Technology and 5 years in Audit/Risk experience.
  • Proven experience leading large IS audits and projects.

Responsibilities

  • Support development of a risk-based IS audit plan.
  • Conduct risk-based planning, fieldwork, reporting and supervision.
  • Present audit reports to management and communicate results.

Skills

Leadership in IS audits
Cybersecurity knowledge
Risk assessment
Strong presentation skills

Education

University degree in Computer Science or Information Systems

Tools

NIST frameworks
ISO 27001/2
COBIT
Job description

Join CPKC, North America’s first transnational railroad connecting U.S., Canada, and Mexico, where your career drives progress and safety is paramount. We connect communities, fuel economic growth, and provide meaningful work in a culture that values diversity, accountability, and pride. With opportunities for training, development, and advancement, you’re not just building a career—you’re part of something bigger. Together, we move goods, connect people, and create lasting change. Your future starts here.

PURPOSE OF THE POSITION:

As the IS Audit Manager, you’ll play a critical role in safeguarding CPKC’s technology landscape by leading complex audits that span cybersecurity, IT governance, cloud security, and industrial control systems. You’ll shape and enhance our IS audit program, delivering insights and recommendations that strengthen controls, mitigate risks, and support the modernization of our internal audit function. This is a high-impact leadership opportunity where your expertise will influence strategic decisions, protect critical infrastructure, and ensure resilience across a rapidly evolving digital environment.

POSITION ACCOUNTABILITIES:
  • Support the development and implementation of a risk-based IS audit plan to provide CPKC Management and the Board of Directors with an independent, objective assessment of the design and operating effectiveness of information system controls
  • Conduct risk-based planning, fieldwork, reporting, and supervision of IS audit and advisory engagements
  • Complete engagements effectively within scope and budget, in accordance with established standards and IT frameworks
  • Perform root cause analysis for non-compliance and other audit observations, and provide value-added recommendations and management insights
  • Present audit reports to management at various levels and obtain clear action plans that address identified business risks
  • Communicate results through strong presentation, negotiation, and report‑writing skills, and support an effective follow‑up program to ensure timely corrective action on risk exposures
  • Follow up with management on action plans to ensure they adequately address risks; participate in developing the annual audit plan and maintaining the IS audit universe
  • Maintain objectivity and independence while fostering positive, professional relationships with management
POSITION REQUIREMENTS:
  • University degree in Computer Science, Information Systems, or another relevant field required
  • Minimum of 8 years in Technology and 5 years in Audit/Risk experience
  • Proven experience leading large IS audits and projects in the specialized IS areas noted above, with strong results delivered
  • CISA certification is required; CISSP, CISM, and CIA certifications are considered an added advantage.
  • Experience using NIST 800-53, NIST Cybersecurity Framework, Center for Internet Security (CIS), ISO 27001/2, COBIT, ITIL, and CMMI for various audits
  • Expert knowledge of IT Risk Management practices and strong business acumen, including applying advanced analytics aligned with modernized audit principles and techniques
  • Understanding of the rail industry would be considered an asset
WHAT CPKC HAS TO OFFER:
  • Flexible and competitive benefits package
  • Competitive company pension and/or retirement plans
  • Employee share purchase plan
  • Performance incentive plan
  • Annual fitness subsidy
PRE-EMPLOYMENT REQUIREMENTS:
  • Criminal history check
  • Education verification
  • Professional references
BECOMING A RAILROADER:

As an employee with a North American presence, the possibility does exist that the location of your position may be changed based on organizational requirements.

Management Conductor Program

Becoming a qualified conductor or locomotive engineer is the single best way for a management employee to learn the business at CPKC. You may be required to obtain a certification or to maintain your current certification/qualification as a conductor or locomotive engineer.

CULTURE OF INCLUSION:

For our U.S. applicants, CPKC is an equal opportunity/affirmative action employer, inclusive of protected veterans and individuals with disabilities. For Canadian applicants CPKC is an employment equity employer committed to the principles of employment equity and inclusion. We encourage all qualified candidates to apply including: women, Black, Indigenous, People of Color (BIPOC), members of the LGBTQ+ community and people with disabilities. Accommodations for the job application process can be provided, as appropriate, upon request. All applicant information will be managed in accordance with the federal Personal Information Protection and Electronic Documents Act (PIPEDA).

Get your free, confidential resume review.
or drag and drop a PDF, DOC, DOCX, ODT, or PAGES file up to 5MB.