


STRENGTHEN YOUR
CYBER RESILIENCE
AD Cyberdefense Group offers strategic cybersecurity leadership to organizations operating in regulated, critical, and transforming environments. Specializing in governance, defense compliance (CMMC/CPCSC – NIST SP 800-171/ITSP.10.171), and artificial intelligence systems security, we support you from maturity assessment and regulatory alignment to operational implementation.
Our approach combines strategic vision, architectural rigor and execution capability — without the cost of a full-time CISO.
OUR SERVICES


Your organization needs cybersecurity leadership, but not necessarily a full-time CISO. Our vCISO service gives you access to executive-level expertise to plan, govern, and manage your security program.
Development and management of a comprehensive cybersecurity program
Security-business strategy alignment, roadmap and maturity analysis
Risk, incident and stakeholder management
Preparation for audits, compliance and regulatory requirements
Support in the context of transformation, merger and acquisition (M&A)
Virtual CISO (vCISO)
Tailored Cybersecurity Leadership
STRATEGIES, GOVERNANCE
AND MANAGEMENT
RISK MANAGEMENT
AND COMPLIANCE


The Canadian Cyber Security Certification Program (CPCSC) imposes new obligations on suppliers in the Canadian defence supply chain.
The AD Cyberdefense Group supports you in your CMMC / CPCSC compliance journey, from the initial diagnosis to the preparation for the assessment.
Gap analysis against the 110 practices NIST SP 800-171 / ITSP.10.171
Development of the System Security Plan (SSP) and the Action Plan and Milestones (APM)
Support in implementing security controls
Preparation for assessment by a third-party body (C3PAO / OEC)
Regulatory monitoring and continuous alignment


The adoption of artificial intelligence creates new risk vectors that traditional cybersecurity frameworks don't fully cover. We help you govern your AI systems securely and responsibly.
Risk assessment associated with AI systems (bias, opacity, data dependency)
AI policy and governance framework development
Alignment with emerging standards (NIST AI RMF, ISO/IEC 42001)
Integrating AI security into the existing cybersecurity program
Raising awareness and training management teams
CMMC/CPCSC COMPLIANCE
(NIST SP 800-171 / ITSP.10.171)
AI SYSTEMS GOVERNANCE & SECURITY


STRATEGIES, GOVERNANCE AND MANAGEMENT
IT-Business Alignment, Roadmap and Maturity Analysis
Enterprise security architecture
Implementation of ISMS, policies, standards and governance committees (ISO 27001)
Development of a cybersecurity program and master plan
Strategic advice, communication and decision-making support for management
Program management: structuring, monitoring, dashboards and indicators


RISK MANAGEMENT AND
COMPLIANCE
Risk assessment, analysis and management
Compliance with legal requirements, laws and regulations, policies and safety standards
Implementation of regulatory compliance programs (multi-compliance)
Audit, verification and internal control
Supplier risk management
Design and integration of business continuity and succession processes
STRATÉGIES , GOUVERNANCE
ET GESTION
RISK MANAGEMENT
AND COMPLIANCE


Security organization and information asset management
Information classification and security architecture
Design and integration of operational processes and procedures
Detection of cyber espionage, cybercrime and cyber threats
Identity and Access Management (IAM) system
Cloud computing (AWS, GCP) — security and governance


Auditing and verifying the effectiveness of control measures
Comprehensive review and security maturity assessment
Definition and implementation of dashboards and management indicators
System and application security assessment
INFORMATION SYSTEMS SECURITY
PERFORMANCE MEASUREMENT

OUR VISION
To be the leading strategic partner for organizations operating at the intersection of cybersecurity, defense compliance, and artificial intelligence — by offering them expert leadership grounded in operational realities and regulatory requirements constantly evolving.
OUR MISSION
Supporting leaders and IT teams in implementing robust, compliant and sustainable cybersecurity programs — so they can focus on their growth, with confidence.
OUR VALUES

PERSEVERANCE
We embody continuous effort, determination, and the ability and desire to learn in order to achieve excellence.

INTEGRITY
We are ethical, honest, independent, and provide an objective perspective.

INCLUSIVITY
We work collaboratively to leverage the diversity of people and ideas, both inside and outside the group, to achieve the best solutions to challenges.

EXCELLENCE
We apply rigor and critical thinking to achieve world-class results and continuous improvement in everything we do.



ALEXANDRE DUBOIS
vCISO · CMMC/CPCSC · AI Governance · GRC
Alexandre Dubois is the founder and president of Groupe AD Cyberdéfense Inc., where he acts as Fractional vCISO for organizations operating in complex, regulated and critical environments — particularly in aeronautics, finance and sensitive infrastructure.
With over 26 years of experience, he has led major projects at Bombardier Aerospace (strategic consulting in cybersecurity and M&A, including the migration to Google Cloud Platform), the Caisse de dépôt et placement du Québec (head of security architecture, AWS deployment), the Réseau de transport d'électricité (RTE), and SFR in Paris. These projects have given him rare expertise at the intersection of governance, security architecture, and risk management in a transformation context.
His areas of expertise include CMMC/CPCSC compliance (NIST SP 800-171/ITSP.10.171), governance and security of artificial intelligence systems, and the implementation of cybersecurity programs aligned with ISO 27001, NIST, and CIS. He assists management in defining pragmatic security frameworks, assessing maturity levels, and prioritizing risks.
He holds a Master of Administration (M.Adm., concentration in Governance, Audit and IT Security, University of Sherbrooke) and possesses the most recognized certifications in the industry:
CCISO, CISSP, CISM, CRISC, AAISM, PMP
to which is added the
CMMC Certified Professional (CCP), currently being obtained.
