1

Ciso Jobs in Raleigh, NC (NOW HIRING)

Experience in consulting or advisory roles for large enterprise customers , especially in CISO/CIO-level conversations. * Familiarity with compliance and security frameworks (MITRE ATT&CK, NIST CSF ...

Experience in consulting or advisory roles for large enterprise customers , especially in CISO/CIO-level conversations. * Familiarity with compliance and security frameworks (MITRE ATT&CK, NIST CSF ...

Experience in consulting or advisory roles for large enterprise customers , especially in CISO/CIO-level conversations. * Familiarity with compliance and security frameworks (MITRE ATT&CK, NIST CSF ...

Presenting architecture strategies and design decisions to client executive stakeholders (CIO, CRO, CISO) and translating technical concepts into business-aligned language * Mentoring and developing ...

ITSO Sr. Program Manager

Durham, NC

$112K - $112K/yr

You will partner closely with leadership, including the CISO and other Security Office leaders, to craft and communicate standards, practices, and program direction. This position is ideal for ...

ITSO Sr. Program Manager

Durham, NC · On-site

$112K - $112K/yr

You will partner closely with leadership, including the CISO and other Security Office leaders, to craft and communicate standards, practices, and program direction. This position is ideal for ...

You can confidently work with all levels of customer roles, from the BIM Manager to the CIO, CTO, and CISO. * IT Knowledge: Broad knowledge of SaaS, infrastructure, network (bandwidth/latency impact ...

Showing results 21-36

Ciso information

See Raleigh, NC salary details

$48.1K

$106.3K

$153.1K

How much do ciso jobs pay per year?

As of Aug 9, 2026, the average yearly pay for ciso in Raleigh, NC is $106,299.00, according to ZipRecruiter salary data. Most workers in this role earn between $82,100.00 and $132,200.00 per year, depending on experience, location, and employer.

What is the difference between Ciso vs Security Manager?

AspectCisoSecurity Manager
CredentialsOften requires CISSP, CISM, or CISA certificationsTypically holds CISSP, Security+, or similar certifications
Work EnvironmentStrategic, executive-level, overseeing entire security postureOperational, managing security teams and implementing policies
Employer & Industry UsageUsed in large organizations, corporations, and government agenciesCommon in mid-sized to large companies across various industries
Search & Comparison IntentFocuses on high-level security leadershipFocuses on day-to-day security operations

The Ciso (Chief Information Security Officer) is a senior executive responsible for the overall security strategy, while a Security Manager handles daily security operations and team management. Both roles require relevant certifications and are vital in organizational security, but they differ in scope and strategic focus.

What are the key skills and qualifications needed to thrive as a CISO?

To thrive as a Chief Information Security Officer (CISO), you need deep expertise in information security, risk management, and regulatory compliance, typically supported by a degree in computer science or a related field and extensive experience in cybersecurity leadership. Familiarity with security frameworks (such as NIST, ISO 27001), incident response platforms, and certifications like CISSP or CISM are highly valued. Strong leadership, strategic thinking, and communication skills set top CISOs apart, enabling them to influence organizational culture and bridge gaps between technical and executive teams. These skills ensure effective protection of organizational assets, regulatory compliance, and resilience against evolving cyber threats.

What are the most common challenges faced by a CISO when aligning security initiatives with business objectives?

A CISO often faces the challenge of balancing robust security measures with the need for business agility and innovation. This includes translating technical risks into business terms that stakeholders understand and ensuring security initiatives support, rather than hinder, business goals. CISOs must also navigate competing priorities, manage limited resources, and foster a security-aware culture across departments. Regular collaboration with executive leadership and other business units is essential to align security strategies with organizational objectives and demonstrate the value of security investments.

What does a CISO do?

A chief information security officer (CISO) is an executive who ensures that the information, communications, and computer infrastructure of a company or organization remain secure. In this position, you are responsible for the overall information security strategy of your employer. Your responsibilities focus on ensuring that security measures are sufficient throughout the organization and that they meet operational needs and address current cybersecurity threats. Your duties include making high-level decisions about security practices, threat response strategies, and liaising with law enforcement and investigative agencies if necessary. You also ensure compliance with information privacy regulations.

What are the most commonly searched types of Ciso jobs in Raleigh, NC? The most popular types of Ciso jobs in Raleigh, NC are:
What are popular job titles related to Ciso jobs in Raleigh, NC? For Ciso jobs in Raleigh, NC, the most frequently searched job titles are:
What cities near Raleigh, NC are hiring for Ciso jobs? Cities near Raleigh, NC with the most Ciso job openings:
Infographic showing various Ciso job openings in Raleigh, NC as of August 2026, with employment types broken down into 91% Full Time, 4% Part Time, and 5% Contract. Highlights an 72% Physical, 5% Hybrid, and 23% Remote job distribution, with an average salary of $106,299 per year, or $51.1 per hour.

Manager Security Compliance and Risk Management

LexisNexis

Raleigh, NC • On-site

Full-time

Posted 23 days ago


LexisNexis rating

7.6

Company rating: 7.6 out of 10

Based on 17 frontline employees who took The Breakroom Quiz

187th of 485 rated business services


Job description

Manager, Security - Security Compliance & Risk Management
Core Responsibilities
Risk Management
  • Own and operate the enterprise technology and security risk management program, including risk identification, scoring, tracking, and maintenance of the risk register

  • Lead the risk exception and acceptance process, ensuring documentation, approvals, and periodic review are consistently enforced

  • Drive timely identification, escalation, and resolution of cybersecurity risks and issues across the organization

  • Serve as a trusted advisor to business and technology stakeholders, providing pragmatic, risk-based guidance that unblocks decisions rather than just flagging concerns

People Leadership
  • Manage, coach, and develop a team of security engineers, including performance management, career growth planning, and hiring

  • Set clear priorities, delegate work effectively, and maintain team capacity across concurrent audit, compliance, and ConMon activities

  • Build a team culture where audit-readiness and evidence quality are treated as ongoing standards, not last-minute scrambles

Reporting & Communication
  • Produce metrics, KPIs, and dashboard-level reporting for senior leadership, including risk dashboards, compliance posture summaries, and control effectiveness metrics

  • Communicate risk and compliance posture clearly to technical and non-technical stakeholders, translating audit findings and control gaps into concrete next steps

  • Support the CISO in preparing board and executive committee materials on the state of the security and compliance program

Management Duties
  • Carry out management responsibilities in accordance with the organization's policies, procedures, and applicable laws. Responsibilities include interviewing, hiring, and training employees; planning, assigning, and directing work; appraising performance; rewarding and disciplining employees; and addressing complaints and resolving problems.

  • Ensure all staff is provided with training and resources needed to perform their jobs to the most outstanding degree possible. Ensure all staff is provided with frequent feedback and coaching in order to meet and exceed individual and team performance goals consistently.

  • Manage and encourage new ideas from staff to foster improvements through innovations.

  • Empower the staff to be accountable and responsible for their own actions and decisions.

  • All other duties as assigned.

Qualifications
Required
  • 6-8 years of progressive experience in information security compliance, risk management, or IT audit, with demonstrated ownership of program-level responsibilities - not just participation

  • 2-3 years of people management or formal team leadership experience, including performance management and team development

  • Deep, hands-on knowledge of GRC disciplines across risk management, compliance, and control governance, with the ability to speak credibly to program design decisions, control gaps, and risk trade-offs in both technical and executive conversations

  • Demonstrated experience owning an enterprise risk register and managing the full risk lifecycle and producing risk reporting for executive audiences

  • Deep working knowledge of control frameworks including NIST CSF and ISO 27001, with hands-on experience performing control mapping, identifying gaps, and translating framework requirements into actionable compliance activities; SOC 2 experience required

  • Experience with technology-sector regulatory obligations (e.g., SOC 2, GDPR, CCPA) and the ability to assess organizational impact of emerging compliance requirements

  • Experience with FedRAMP Continuous Monitoring programs and associated compliance obligations

  • Proven ability to manage audit engagements end-to-end and interface directly with internal and external auditors

  • Proven ability to design or mature a compliance program, driving continuous improvement across people, processes, and controls

  • Demonstrated ability to build relationships with both technical and executive stakeholders, influence decisions across organizational boundaries, and drive remediation at an organizational level

  • Strong written and verbal communication skills; ability to translate technical risk into clear business language and present risk and compliance posture to senior leadership and board-level audiences

  • Familiarity with cloud environments (e.g., AWS, GCP, or Azure) and their risk and compliance implications, including how cloud architecture decisions affect control design and evidence collection

  • Bachelor's degree in Information Security, Computer Science, Risk Management, or a related field - or equivalent practical experience

Preferred
  • CRISC or CISA strongly preferred; CISSP or CISM acceptable with demonstrated GRC focus - candidates without a relevant certification should be prepared to demonstrate equivalent depth through experience

  • Experience with GRC platforms such as ServiceNow GRC, Archer, OneTrust, or LogicGate

  • Familiarity with AI governance concepts and emerging frameworks (e.g., ISO 42001, NIST AI RMF)

  • Prior experience in a SaaS, cloud, or technology product company

U.S. National Base Pay Range: $118,300 - $219,800. Geographic differentials may apply in some locations to better reflect local market rates.This job is eligible for an annual incentive bonus.
We know your well-being and happiness are key to a long and successful career. We are delighted to offer country specific benefits. Click here to access benefits specific to your location.
We are committed to providing a fair and accessible hiring process. If you have a disability or other need that requires accommodation or adjustment, please let us know by completing our Applicant Request Support Form or please contact 1-855-833-5120.
Criminals may pose as recruiters asking for money or personal information. We never request money or banking details from job applicants. Learn more about spotting and avoiding scams here
Please read our Candidate Privacy Policy.
We are an equal opportunity employer: qualified applicants are considered for and treated during employment without regard to race, color, creed, religion, sex, national origin, citizenship status, disability status, protected veteran status, age, marital status, sexual orientation, gender identity, genetic information, or any other characteristic protected by law.
USA Job Seekers:
EEO Know Your Rights.

What LexisNexis employees say

Pay

Benefits

Hours and flexibility

Workplace

Get the full story on Breakroom