Our large Oil & Gas industry client is seeking a Communications, Training & Security Awareness Specialist to support the continued development and maturity of its enterprise Human Risk Management and Security Awareness Program. This role is ideal for a communications-driven professional with a background in cybersecurity, security awareness, or human risk management who is passionate about creating engaging communications, delivering impactful training, and influencing employee behavior across the organization.
Contract duration: Initial contract through April with a strong potential of extension or transition into a full-time permanent position
Working model: Hybrid working model within downtown Calgary (3 days onsite/ 2 days remote).
Must-Haves:
- 4+ years of proven experience in communications, training, security awareness, cybersecurity, human risk management, or a related field.
- Experience developing cybersecurity awareness communications, presentations, training materials, and employee engagement initiatives.
- Experience analyzing security awareness, training, or behavioral data and presenting insights to stakeholders.
- Experience translating cybersecurity concepts, risks, and threats into clear messaging for non-technical audiences.
- Experience creating executive-level presentations, reports, dashboards, and communication packages.
- Strong written communication skills with excellent attention to detail, including reviewing and improving written content.
- Ability to adapt quickly, manage changing priorities, and incorporate feedback from stakeholders.
Nice-to-Haves:
- Experience supporting enterprise security awareness or human risk management programs.
- Experience supporting phishing simulations, social engineering awareness campaigns, or security behavior initiatives.
- Experience with security awareness, human risk management, or simulation platforms such as Dopple, Mirage, KnowBe4, HoxHunt, Cofense, Microsoft Attack Simulation Training, or similar solutions.
- Understanding of social engineering techniques including phishing, vishing, smishing, and AI-enabled threats.
- Relevant cybersecurity certifications (e.g., Security+, CISSP, CISM, or similar).
Key Responsibilities:
- Develop and deliver cybersecurity awareness communications, training materials, presentations, and employee engagement campaigns.
- Create clear, engaging content that helps employees understand cybersecurity risks and adopt safer behaviors.
- Partner directly with cybersecurity leadership and VP-level stakeholders to develop executive presentations, reporting materials, and communication packages.
- Support the continued maturity and evolution of the enterprise Security Awareness and Human Risk Management Program.
- Pull, analyze, validate, and interpret security awareness, training, simulation, and behavioral data.
- Identify data quality issues, trends, and insights to improve reporting and program effectiveness.
- Develop dashboards, reports, and presentations for leadership and executive audiences.
- Support phishing simulations, social engineering exercises, and other human risk initiatives.
- Use security awareness and simulation platforms (including tools such as Dopple and Mirage) to support campaigns, reporting, and awareness activities.
- Collaborate with Enterprise Security, Organizational Change Management (OCM), and other cross-functional teams.
- Build strong stakeholder relationships and incorporate feedback to continuously improve communications and training initiatives.