1

Cyber Governance Jobs (NOW HIRING)

Dev Sec Ops Engineer TS/SCI

King Of Prussia, PA · On-site

$51.50 - $70.50/hr

Oversee cyber governance, risk, and compliance processes, policies, tools, and strategies to assess, identify, mitigate, and validate cyber risk across the organization or program. Why join us: Your ...

Sr. Director IT Cyber Security

Waller, TX

$100K - $135K/yr

Establish a unified cyber governance framework encompassing policies, standards, risk assessments, compliance, and regulatory alignment (e.g., SOX, NIST CSF, ISO 27001, CIS Controls). * Drive ...

next page

Showing results 1-20

Cyber Governance information

See salary details

$46.5K

$132.6K

$188.5K

How much do cyber governance jobs pay per year?

As of Jun 9, 2026, the average yearly pay for cyber governance in the United States is $132,641.00, according to ZipRecruiter salary data. Most workers in this role earn between $117,000.00 and $147,500.00 per year, depending on experience, location, and employer.

What is cyber governance?

Cyber governance refers to the processes, policies, and frameworks that organizations use to manage and oversee their cybersecurity efforts. It ensures that cybersecurity strategies align with business objectives, regulatory requirements, and risk management practices. Effective cyber governance involves leadership oversight, defined roles and responsibilities, and regular assessments to safeguard information assets and maintain compliance. This approach helps organizations proactively address cyber threats and maintain trust with stakeholders.

What is the difference between Cyber Governance vs Cyber Security Analyst?

AspectCyber GovernanceCyber Security Analyst
Primary FocusEstablishing policies, frameworks, and oversight for cybersecurityImplementing security measures, monitoring threats, and responding to incidents
Required CredentialsCertifications like CISA, CISSP, CISM often preferredCertifications like CompTIA Security+, CISSP, CEH common
Work EnvironmentPolicy development, compliance audits, executive collaborationTechnical analysis, threat detection, incident response
Employer & Industry UsageUsed by organizations to ensure cybersecurity compliance and governanceUsed by security teams to protect systems and respond to threats

Cyber Governance focuses on creating and maintaining cybersecurity policies and ensuring compliance, while Cyber Security Analysts are hands-on professionals who implement security measures and respond to security incidents. Both roles are essential but differ in scope and daily responsibilities.

What are the main challenges faced by professionals in Cyber Governance roles, and how can they effectively address them?

Professionals in Cyber Governance often encounter challenges such as keeping up with evolving regulatory requirements, ensuring consistent policy enforcement across diverse business units, and balancing security needs with business objectives. To address these, it's important to stay informed about industry standards, foster strong communication with stakeholders, and implement regular training and awareness programs. Collaborating closely with IT, legal, and compliance teams also helps ensure governance frameworks remain effective and relevant as risks and technologies change.

What are the key skills and qualifications needed to thrive as a Cyber Governance professional, and why are they important?

To thrive in Cyber Governance, you need a strong understanding of cybersecurity frameworks, risk management, compliance regulations, and typically a degree in information security or a related field. Familiarity with tools like GRC (Governance, Risk, and Compliance) platforms, ISO 27001, NIST standards, and certifications such as CISSP or CISM is often required. Excellent communication, analytical thinking, and attention to detail are crucial soft skills for interpreting policies and influencing organizational behavior. These competencies ensure organizations can effectively manage cyber risks, maintain regulatory compliance, and protect sensitive information.
More about Cyber Governance jobs
What states have the most Cyber Governance jobs? States with the most job openings for Cyber Governance jobs include:
Infographic showing various Cyber Governance job openings in the United States as of June 2026, with employment types broken down into 90% Full Time, 5% Part Time, and 5% Contract. Highlights an 81% Physical, 8% Hybrid, and 11% Remote job distribution, with an average salary of $132,641 per year, or $63.8 per hour.
Principal Engineer I, Cyber - IT Security Governance

Principal Engineer I, Cyber - IT Security Governance

Western Alliance Bank

Columbus, OH

Full-time

Medical, Dental, Retirement

Posted 8 days ago


Job description

Job Title:

Principal Engineer I, Cyber - IT Security Governance

Location:

CityScape

What you'll do:

As a Principal IT Security Governance Engineer, you will serve as a senior individual contributor responsible for leading and advancing the organization's cybersecurity governance, risk management, and maturity initiatives. This role combines deep expertise in cyber risk, control design, CRI Profile maturity, and policy management with a strong understanding of modern engineering practices, data, automation, and AI-driven capabilities.
You will drive complex, cross-functional initiatives that embed secure, compliant, and scalable practices into technology, data, and AI solutions, ensuring alignment with enterprise risk management objectives and regulatory expectations. This includes designing and implementing governance frameworks, control structures, and engineering-enabled solutions that enhance the effectiveness, consistency, and automation of risk assessments, RCSAs, and control monitoring.
In this role, you will act as both a governance and technical authority, partnering closely with engineering, data, and risk teams to translate evolving technologies into defensible, regulator-ready processes, controls, and documentation. You will leverage data, automation, and AI to improve visibility into risk posture, drive operational efficiency, and enable sustained improvements in cybersecurity maturity and program scalability.
  • Own and lead cybersecurity governance initiatives spanning risk identification, control design, policy management, and maturity improvement.
  • Serve as a subjectmatter expert for cyber risk management, providing guidance on control effectiveness, risk treatment, and residual risk decisions.
  • Drive execution of cybersecurity Risk & Control SelfAssessments (RCSAs), ensuring alignment to ERM standards and regulatory expectations.
  • Own and manage CRI Profile assessments, maturity scoring, evidence standards, and remediation tracking. Partner with technology, security, and risk teams to drive improved and sustained maturity gains.
  • Maintain traceability between risks, controls, assessment results, and remediation activities.
  • Lead the development, maintenance, and rationalization of cybersecurity policies, standards, and procedures in alignment with industry best practices (e.g., GLBA, FFIEC, NIST).
  • Design, document, and maintain cyber risk statements, control descriptions, and control narratives suitable for audits and regulatory exams.
  • Support internal audits, regulatory exams, and second line credible challenge through structured responses, evidence packaging, and issue management.
  • Track and report on control performance, risk posture, and remediation progress using defined metrics and governance forums.
  • Manage complex projects requiring coordination across IT, Information Security, ERM, Privacy, and Audit.
  • Act as a trusted advisor to senior leaders on risk posture, maturity trends, and program health.
  • Produce clear, executiveready artifacts including risk summaries, maturity dashboards, remediation roadmaps, and briefing materials.
  • Develop and maintain automation solutions (e.g., scripting, workflow tools, AI-assisted processes) to improve efficiency of risk assessments, control testing, and evidence collection.
  • Enable data-driven insights and reporting through engineering-oriented solutions (e.g., dashboards, metrics automation, control monitoring).
  • Drive integration of AI and automation into RCSA, CRI assessments, and risk reporting processes to improve scalability, consistency, and accuracy.

What you'll need:

  • 8+ years of related experience in Cybersecurity, Information Security Governance, IT Risk, or Enterprise Risk Management.
  • Bachelor's degree in Information Systems, Computer Science, Cybersecurity, Risk Management, or a related field. Masters or MBA in related field preferred.
  • Advanced to expert experience with:
    • Cyber Risk Management frameworks (NIST CSF, CRI Profile, FFIEC, ISO 27001 principles).
    • RCSAs, risk identification, control design, and residual risk assessment.
    • Policy, standard, and procedure lifecycle management.
    • Regulatory and audit engagement support in a financial services environment.
  • Strong ability to translate complex technical and regulatory concepts into clear, defensible documentation.
  • Proven experience managing cross functional initiatives with competing priorities.
  • Expert speaking and writing communication skills.
  • Demonstrated experience leveraging or governing AI/ML, automation, or advanced analytics within cybersecurity, risk, or compliance domains preferred.
  • Strong understanding of data architectures, data flows, and system integrations, with the ability to assess associated cyber and privacy risks preferred.
  • Familiarity with emerging regulatory expectations related to AI, model risk, and data usage in financial services preferred.
  • Working knowledge of software engineering or scripting practices (e.g., Python, PowerShell, automation workflows) to support scalable governance solutions preferred.
  • Strong analytical mindset with the ability to use data and automation to enhance risk identification, monitoring, and reporting preferred.
  • Relevant industry certifications (e.g., CISA, CRISC, CISSP, CISM, CGEIT, ITIL) preferred.

Benefits you'll love:
We offer all the important things you'd want - like competitive salaries, an ownership stake in the company, medical and dental insurance, time off, a great 401k matching program, tuition assistance program, an employee volunteer program, and a wellness program. In addition, you'll have the opportunity to bolster your business knowledge, learning the ins and outs of how successful companies operate and manage their finances, giving you invaluable hands-on experience to help grow your career!

About the company:

Western Alliance Bank, Member FDIC, is a wholly owned subsidiary of Western Alliance Bancorporation. Serving clients nationwide, Western Alliance Bank includes six legacy bank brands - Alliance Association Bank, Alliance Bank of Arizona, Bank of Nevada, Bridge Bank, First Independent Bank and Torrey Pines Bank - that remain part of the company's heritage, as well as AmeriHome Mortgage, a Western Alliance Bank Company.

Western Alliance Bancorporation is committed to equal employment and will consider all qualified applicants without regard to race, sex, color, religion, age, nation origin, marital status, disability, protected veteran status, sexual orientation, gender identity or genetic information. Western Alliance Bancorporation is committed to working with and providing reasonable accommodations for individuals with disabilities. If you are an individual with a disability and require a reasonable accommodation to complete any part of the application process and/or need an alternative method of applying, please email HR@westernalliancebank.com or call 602-386-2488. When contacting us, please provide your contact information and state the nature of your accessibility issue. We will only respond to inquiries concerning requests that involve a reasonable accommodation in the application process.

Western Alliance Bancorporation