1

Cism Jobs in Florida (NOW HIRING)

Manager, Cybersecurity

Orlando, FL · Hybrid

$103K - $140K/yr

Relevant certifications such as CISSP, CISM, or CISA. Preferred Qualifications & Skills * Experience designing and governing security for hybrid cloud environments (AWS, Azure, GCP). * Demonstrated ...

Certifications like CISSP, CISM, CISA, CEH, GCIH, GCIA, etc. A bachelor's degree in computer science or equivalent work experience. Additional Information All your information will be kept ...

Lean Six, PMP, CRISC, CISM, or CISSP. ABOUT NALLEY CONSULTING Nalley Consulting is a Service Disabled Veteran Owned Small Business working with prime partners to staff Department of Defense and ...

next page

Showing results 1-20

CISM information

See Florida salary details

$22K

$70.9K

$127.4K

How much do cism jobs pay per year?

As of Jul 28, 2026, the average yearly pay for cism in Florida is $70,937.00, according to ZipRecruiter salary data. Most workers in this role earn between $37,000.00 and $95,300.00 per year, depending on experience, location, and employer.

What are some common challenges faced by CISMs when implementing information security policies across different departments?

One of the main challenges CISMs encounter is ensuring consistent adoption of security policies across diverse departments with varying needs and priorities. Each department may have unique workflows or legacy systems that require tailored approaches, making it essential for CISMs to collaborate closely and communicate the importance of compliance. Balancing security requirements with business operations often requires negotiation and ongoing education, as well as staying updated on evolving threats to adjust policies accordingly. Building strong relationships and demonstrating the value of security initiatives are keys to overcoming resistance and ensuring organization-wide adherence.

What are the key skills and qualifications needed to thrive as a Certified Information Security Manager (CISM), and why are they important?

To thrive as a Certified Information Security Manager (CISM), you need a strong background in information security governance, risk management, and incident response, usually supported by a relevant degree and the CISM certification. Familiarity with industry-standard frameworks like ISO/IEC 27001, as well as tools for security monitoring, compliance, and risk assessment, is essential. Exceptional leadership, strategic thinking, and communication skills set successful CISM professionals apart by enabling effective collaboration and policy enforcement. These qualifications and skills are crucial for protecting organizational assets, ensuring regulatory compliance, and driving a robust information security strategy.

Is CISM worth getting?

CISM (Certified Information Security Manager) is a recognized certification for information security management professionals, demonstrating expertise in security governance, risk management, and incident response. It can enhance career prospects, salary potential, and credibility in cybersecurity leadership roles. However, its value depends on individual career goals and industry demand for security management skills.

What is the difference between Cism vs CISSP?

CriteriaCismCISSP
CertificationsCertified Information Security Manager (CISM)Certified Information Systems Security Professional (CISSP)
FocusInformation security management and governanceBroad cybersecurity knowledge and security architecture
Work EnvironmentSecurity management roles, policy developmentSecurity analyst, architect, consultant roles
Industry UsageOrganizations emphasizing security managementOrganizations requiring comprehensive security expertise

The Cism and CISSP certifications are both highly valued in cybersecurity but serve different roles. Cism focuses on security management and governance, ideal for those leading security teams. CISSP covers a broad range of security topics, suitable for technical and strategic roles. Understanding these differences helps professionals choose the right certification for their career path.

What jobs can I get with CISM?

A Certified Information Security Manager (CISM) credential qualifies individuals for roles such as information security manager, security consultant, risk manager, and security director. These positions involve managing security programs, developing policies, and overseeing security teams, often requiring knowledge of security frameworks and risk management practices.

Can you make $500,000 a year in cyber security?

CISM (Certified Information Security Manager) professionals typically earn between $100,000 and $200,000 annually, depending on experience, location, and employer. Reaching a $500,000 salary usually requires senior leadership roles, extensive experience, specialized skills, or working in high-paying industries or consulting. Achieving such a high income in cybersecurity is possible but uncommon for standard roles like CISM practitioners.

What Jobs Can I Get With a CISM Certification?

CISM stands for Certified Information Security Manager. CISM certification provides access to a variety of jobs, most of which focus on information security, governance, and risk analysis. In this field, you may help assess the digital security needs of your employer's data projects, review existing security measures, and propose new defenses to counter developing threats. You may also be required to study for other exam processes to stay current with security techniques and emerging technology. Most jobs that require CISM certification are relatively senior positions that only hire people who already have several years of industry experience, so certification alone may not be enough to qualify you a security position.

What is a CISM?

CISM stands for Certified Information Security Manager. It is a globally recognized certification for professionals who manage, design, and oversee an enterprise’s information security program. Earning a CISM demonstrates expertise in information security governance, risk management, program development, and incident management. This credential is ideal for those pursuing or advancing careers in information security management, and is often required for senior security positions.

What is the average salary for a CISM?

The average salary for a Certified Information Security Manager (CISM) is approximately $120,000 to $150,000 annually, depending on experience, location, and industry. CISM certification demonstrates expertise in information security management and can lead to higher earning potential in cybersecurity roles.
What are the most commonly searched types of Cism jobs in Florida? The most popular types of Cism jobs in Florida are:
What are popular job titles related to Cism jobs in Florida? For Cism jobs in Florida, the most frequently searched job titles are:
What cities in Florida are hiring for Cism jobs? Cities in Florida with the most Cism job openings:
Infographic showing various Cism job openings in Florida as of July 2026, with employment types broken down into 91% Full Time, 6% Part Time, and 3% Contract. Highlights an 79% Physical, 8% Hybrid, and 13% Remote job distribution, with an average salary of $70,937 per year, or $34.1 per hour.

Senior Practice Manager/IT Auditing

360 Advanced Cybersecurity, LLC

Saint Petersburg, FL • On-site

$88K - $116K/yr

Full-time

Posted 29 days ago


Job description

GENERAL DESCRIPTION

The Senior IT Auditing Practice Manager position is full-time client serving with the expectation that he / she will work overtime as needed to fulfill job and client responsibilities. This position comes along with the expectation that he / she has a minimum of one of the following designations: CISA, CISSP, CISM, CPA, PCI QSA, ISO 27000 LA. The primary duties include planning and performing cybersecurity and compliance assessment services; managing projects and overseeing staff; and participating in all other functions associated with the management of the cybersecurity professional services practice.


DUTIES AND RESPONSIBILITIES

  • Manage projects, teams, and clients related to our service offerings (SOC reporting, PCI, HIPAA, ISO 27000, NIST 800-53/171, HITRUST, Vendor Privacy Assurance, GDPR and various other risk-based projects)
  • Plan, execute, conclude, and manage various cybersecurity assessment and compliance projects based on the unique requirements and circumstances of the project
  • Manage a book of business with multiple concurrent projects, including scheduling and administration. Draft and review written audit reports which accurately describe procedures performed and results of testing and the nature of control weaknesses and potential risk exposure
  • Use their knowledge and experience to document and test computer information systems for clients; provide recommendations on improvements to technology systems/infrastructure
  • Ensures information systems application/infrastructure/controls are operating as intended
  • Perform risk-based integrated reviews of financial, accounting, operational, systems and management controls
  • Work on multiple projects in varying stages through completion and issuance of final deliverables
  • Develop and maintain strong relationships with clients and team members; implement good client and employee retention practices
  • Create and maintain a team environment
  • Coach, train, and develop less experienced personnel
  • Perform detail review of workpapers, reports, proposal, and other materials, and ensure high quality deliverables
  • Complete original work in technical / complex areas when necessary
  • Individual must be able to travel to client locations as needed


REQUIRED QUALIFICATIONS

  • Bachelor's Degree in Management Information Systems, Cybersecurity, Accounting, Finance, or related field ·
  • Minimum of at least one of the following certifications is required: CPA, CISA, CISM, CISSP, ISO 27000 LA, PCI QSA ·
  • 8+ years of cybersecurity compliance experience and/or security assessment or architecture design/review ·
  • Executive presence with clients, excellent written and technical skills, and the ability to effectively coach/mentor less experienced personnel ·
  • Team motivator and team leader with the ability to complete engagements within defined timelines and within budget ·
  • Minimum of two years professional services experience at the senior level in a related practice
  • 10+ years supervisory / management experience
  • 3 to 10 years of IT audit experience and/or security assessment or architecture
  • At least one of the following certifications are required: CPA, CISA, CISM, CISSP, ISO 27000 Lead Auditor, PCI QSA
  • Working knowledge of application controls and application development life cycles and methodologies
  • Demonstrated entrepreneurial abilities, client focus, industry savvy and the ability to work independently or as part of a collaborative team
  • Executive presence with clients, excellent written and technical skills and the ability to effectively coach less experienced personnel are a must
  • Team motivator and team leader with the ability to pull projects over the finish line
  • Minimum of two years professional services experience at the senior or manager level in a related practice
  • Minimum of twenty-five professional services projects successfully completed related to our service offerings
  • Demonstrated consistency in values, principles, and work ethic
  • Strong, demonstrated technical skills necessary for scoping and executing projects

DESIRED QUALIFICATION

  • MBA or MS from a reputable full-time or executive program is highly desirable
  • Willingness to pursue relevant additional professional certifications (e.g., CPA, CISA, CISM, CISSP, ISO 27000 LA, PCI QSA, HITRUST CCSFP, etc.)
  • Working knowledge of multiple cybersecurity frameworks, application controls, and software development life cycle and methodologies
  • Demonstrate entrepreneurial abilities, client centric, industry savvy, and the ability to work independently or as part of a collaborative team
  • Minimum of twenty-five professional services projects successfully completed related to our service offerings
  • Demonstrated consistency in cultural values, principles, and work ethic
  • Strong, demonstrated technical skills necessary for scoping and executing projects
  • Ability to lift and move up to 15 pounds
  • Ability to sit for prolonged periods of time.
  • Ability to stand, walk, bend, or reach as necessary for job tasks.
  • Ability to use hands/fingers for typing, writing, or handling materials.


COMPANY DESCRIPTION

360 Advanced is a Cybersecurity and Compliance professional services firm that provides customized integrated solutions. Our clients range across industries and extend from small businesses to the Fortune 500. We work with client operations in over 40 states and on five continents globally. We are based in downtown St. Petersburg and are looking for a Senior Associate / IT Auditor to join our team.