1

Cyber Risk Assessment Jobs in California (NOW HIRING)

Cyber Data Protection Manager

San Francisco, CA · Remote

$130K - $176K/yr

If so, consider joining Deloitte & Touche LLP's growing Cyber Risk Digital Trust & Privacy practice ... Serve as a subject matter expert and trusted advisor to clients, helping them assess strategic and ...

IT Risk & Compliance Analyst

San Francisco, CA · On-site

$110K - $111K/yr

... chain cyber risk program management Primary Responsibilities: * Conduct readiness assessments, including reviews of relevant documentation in advance of audits, 2LOD assessments, and external ...

Cyber Data Protection Manager

Los Angeles, CA · Remote

$119K - $161K/yr

If so, consider joining Deloitte & Touche LLP's growing Cyber Risk Digital Trust & Privacy practice ... Serve as a subject matter expert and trusted advisor to clients, helping them assess strategic and ...

Senior Manager - Cloud Architect

Los Angeles, CA · On-site

$70.50 - $93.75/hr

Leading cloud cyber risk engagements across assessment, design, implementation, and post-implementation phases for client environments. * Advising clients on cloud security architecture ...

Consultant - Cloud Architect

San Diego, CA · On-site

$69.50 - $92.25/hr

Supporting cloud cyber risk engagements across assessment, design, implementation, and post-implementation activities for client environments. * Assisting clients with cloud security architecture ...

Consultant - Cloud Architect

Los Angeles, CA · On-site

$70.50 - $93.75/hr

Supporting cloud cyber risk engagements across assessment, design, implementation, and post-implementation activities for client environments. * Assisting clients with cloud security architecture ...

Senior Manager - Cloud Architect

San Francisco, CA · On-site

$77.25 - $102.50/hr

Leading cloud cyber risk engagements across assessment, design, implementation, and post-implementation phases for client environments. * Advising clients on cloud security architecture ...

Cyber Data Protection Manager

Costa Mesa, CA · Remote

$119K - $160K/yr

If so, consider joining Deloitte & Touche LLP's growing Cyber Risk Digital Trust & Privacy practice ... Serve as a subject matter expert and trusted advisor to clients, helping them assess strategic and ...

Cyber Data Protection Manager

Los Angeles, CA · Remote

$119K - $161K/yr

If so, consider joining Deloitte & Touche LLP's growing Cyber Risk Digital Trust & Privacy practice ... Serve as a subject matter expert and trusted advisor to clients, helping them assess strategic and ...

Leading workstreams across cloud cyber risk engagements, including assessment, design, implementation, and post-implementation activities. * Designing and evaluating cloud security architectures ...

Senior Consultant - Cloud Architect

Los Angeles, CA · On-site

$70 - $89.25/hr

Leading workstreams across cloud cyber risk engagements, including assessment, design, implementation, and post-implementation activities. * Designing and evaluating cloud security architectures ...

Leading workstreams across cloud cyber risk engagements, including assessment, design, implementation, and post-implementation activities. * Designing and evaluating cloud security architectures ...

Senior Consultant - Cloud Architect

San Francisco, CA · On-site

$76.50 - $97.50/hr

Leading workstreams across cloud cyber risk engagements, including assessment, design, implementation, and post-implementation activities. * Designing and evaluating cloud security architectures ...

next page

Showing results 1-20

Cyber Risk Assessment information

What is the difference between Cyber Risk Assessment vs Cyber Security Analyst?

AspectCyber Risk AssessmentCyber Security Analyst
Primary FocusIdentifying and evaluating cybersecurity risks and vulnerabilitiesMonitoring, detecting, and responding to security threats
CertificationsCompTIA Security+, CISSP, CISACompTIA Security+, CEH, CISSP
Work EnvironmentRisk management teams, consulting firms, security departmentsSecurity operations centers, IT departments, incident response teams
ResponsibilitiesRisk analysis, vulnerability assessments, complianceThreat detection, incident response, security monitoring

While both roles involve cybersecurity, Cyber Risk Assessments focus on evaluating potential risks and vulnerabilities to inform security strategies, whereas Cyber Security Analysts actively monitor and respond to ongoing security threats. Understanding these differences helps organizations assign the right roles for comprehensive cybersecurity management.

What is a cyber risk assessment?

A cyber risk assessment is a process used to identify, evaluate, and prioritize potential threats and vulnerabilities in an organization's information systems. It helps organizations understand the potential impact of cyber threats and determine the likelihood of such events occurring. By conducting a cyber risk assessment, businesses can implement appropriate security controls and strategies to mitigate risks, comply with regulatory requirements, and protect sensitive data from cyberattacks. Regular assessments are essential to adapt to evolving threats and maintain a strong cybersecurity posture.

What are some common challenges faced by professionals in Cyber Risk Assessment, and how can they be addressed?

Professionals in Cyber Risk Assessment often encounter challenges such as rapidly evolving threat landscapes, keeping up with regulatory changes, and ensuring clear communication of technical risks to non-technical stakeholders. To address these, staying current with industry trends through continuous learning, leveraging robust risk assessment frameworks, and developing strong communication skills are essential. Additionally, collaborating closely with IT, compliance, and business units helps ensure comprehensive and effective risk management.

What are the key skills and qualifications needed to thrive as a Cyber Risk Assessor, and why are they important?

To thrive as a Cyber Risk Assessor, you need a strong understanding of cybersecurity principles, risk management frameworks, and relevant regulations, often backed by a degree in information security or related certifications like CISSP or CISA. Familiarity with security assessment tools, vulnerability scanners, and risk analysis platforms is typically required. Analytical thinking, attention to detail, and effective communication are vital soft skills for accurately identifying threats and conveying risks to stakeholders. These skills and qualities are crucial for protecting organizational assets and ensuring compliance in an evolving threat landscape.

Can you make $500,000 a year in cyber security?

Cyber Risk Assessment professionals with extensive experience, advanced certifications, and specialized skills can potentially earn salaries approaching or exceeding $500,000 annually, especially in senior or executive roles. Achieving this level often requires a combination of technical expertise, leadership responsibilities, and working in high-demand industries or organizations. However, such salaries are not typical for entry- or mid-level positions in cybersecurity.
What are popular job titles related to Cyber Risk Assessment jobs in California? For Cyber Risk Assessment jobs in California, the most frequently searched job titles are:
What job categories do people searching Cyber Risk Assessment jobs in California look for? The top searched job categories for Cyber Risk Assessment jobs in California are:
What cities in California are hiring for Cyber Risk Assessment jobs? Cities in California with the most Cyber Risk Assessment job openings:
Infographic showing various Cyber Risk Assessment job openings in California as of June 2026, with employment types broken down into 2% As Needed, 78% Full Time, 17% Part Time, 1% Temporary, and 2% Contract. Highlights an 92% Physical, 3% Hybrid, and 5% Remote job distribution.
Cyber Data Protection Manager

Cyber Data Protection Manager

Deloitte

San Francisco, CA • Remote

$130K - $176K/yr

Other

This job post has expired today. Applications are no longer accepted.


Deloitte rating

8.1

Company rating: 8.1 out of 10

Based on 86 frontline employees who took The Breakroom Quiz

58th of 138 rated financial services


Job description

Cyber Data Protection Manager

Are you passionate about helping leading organizations reduce cyber risk, protect critical data, and build resilience in an increasingly complex digital world? If so, consider joining Deloitte & Touche LLP's growing Cyber Risk Digital Trust & Privacy practice. Our teams work with clients to deliver business-driven data protection and privacy solutions that not only address regulatory requirements, but also enable secure growth, strengthen trust, and improve operational effectiveness. You'll help organizations harness emerging and innovative technologies to better understand their data, protect what matters most, and stay ahead of evolving threats.

Recruiting for this role ends on 6/5/2026.

 Work You'll Do

  • Serve as a subject matter expert and trusted advisor to clients, helping them assess strategic and practical data protection needs in response to emerging risks
  • Assist clients in designing, implementing and operating technology and process solutions to reduce data risks
  • Assist clients with developing requirements, evaluating vendor solutions, architecting, implementing and operating data protection solutions
  • Lead client engagements and drive results by:
    • Driving day-to-day execution, communicating updates to clients and firm leadership
    • Providing leadership and support to delivery teams to ensure completion and accuracy of high-quality work products
    • Tracking and reporting on project timelines to ensure on time and on budget delivery
  • Perform the role of mentor and coach to assist junior staff to develop skills by providing feedback, sharing experiences and creating opportunities for professional growth
  • Manage and lead the proposal development process
  • Contribute to Deloitte's thought leadership in client organizations and external marketplace
  • Help foster an inclusive, collaborative, and high-performing team environment
  • Stay current on industry trends in cyber risk, data protection, and emerging technologies

The Team

Enables trust and safety of online communications and digital products, protecting users, consumers, and patients from harm. Enables clients to provide consumer confidence in knowing with whom they are dealing and ensuring the integrity of access to data.

Qualifications

Required:

  • 7+ years of professional experience in data protection and information security, which may include Data Discovery, Data Classification and Rights Management (DCRM, DRM, IRM), Data Access Governance(DAG), Data Loss Prevention (DLP), Cloud Access Security Broker (CASB), Data Security Posture Management (DSPM), Cloud Security and SaaS Security (e.g., AWS security, Azure/M365 security, Databricks, Snowflake)
  • 3+ years of professional experience developing data protection strategies, roadmaps and frameworks, including designing, implementing and operating data protections services
  • 3+ years of total hands-on technical experience and/or architecture-level experience with two or more data protection technologies
  • Experience with collaboration security, SharePoint security, SharePoint Advanced Management, SharePoint lifecycle management, or data access governance controls
  • Hands-on technical experience and/or architecture-level experience with Microsoft Purview, including one or more of the following: DLP, sensitivity labels, data classification, DSPM, DSPM for AI, on-demand classification, or related Microsoft 365 data security capabilities
  • Knowledge of AI security and governance concepts, including data protection considerations for generative AI, copilots, agents, or other AI-enabled business use cases
  • Experience defining data protection use cases, documenting business requirements and evaluating technology solutions
  • Experience leading collaborative efforts across organizational silos, including multifunctional teams of IT professionals, legal/compliance teams, and business executives
  • Experience managing project plans, budgets, staffing, and executive-level stakeholder communications in a consulting or client-facing environment
  • Familiarity with change management, deployment and operational processes in large IT organizations
  • Professional certifications such as CISSP, CISM, CCSP, SC-100, SC-400, AWS Security Specialty or similar.
  • Bachelor's degree in Cybersecurity, Information Security, Engineering, Computer Science, Information Technology or related field
  • Ability to travel 25-50%, on average, based on the work you do and the clients and industries/sectors you serve.
  • Limited Sponsorship may be offered.

Preferred:

  • Significant industry work experience preferred
  • Experience with public cloud (Azure, AWS, GCP) security and modern data platforms (e.g., Snowflake, Data bricks)
  • Experience with third-party DSPM, data discovery, or data governance solutions such as Cyera, Securiti, Varonis, Sentra, AvePoint, Atlan, or Collibra
  • Familiarity with sophisticated multinational companies and distributed business models
  • Experience in regulated industries and familiarity with requirements such as HIPAA, PCI DSS, SOX, or global privacy obligations.
  • Demonstrated success contributing to proposals, practice growth, market eminence, or people development.

The wage range for this role takes into account the wide range of factors that are considered in making compensation decisions including but not limited to skill sets; experience and training; licensure and certifications; and other business and organizational needs. The disclosed range estimate has not been adjusted for the applicable geographic differential associated with the location at which the position may be filled. At Deloitte, it is not typical for an individual to be hired at or near the top of the range for their role and compensation decisions are dependent on the facts and circumstances of each case. A reasonable estimate of the current range is $144,200 - $265,600.

You may also be eligible to participate in a discretionary annual incentive program, subject to the rules governing the program, whereby an award, if any, depends on various factors, including, without limitation, individual and organizational performance.

#CyberDTP27

Qualifications:

Cyber Data Protection Manager

Are you passionate about helping leading organizations reduce cyber risk, protect critical data, and build resilience in an increasingly complex digital world? If so, consider joining Deloitte & Touche LLP's growing Cyber Risk Digital Trust & Privacy practice. Our teams work with clients to deliver business-driven data protection and privacy solutions that not only address regulatory requirements, but also enable secure growth, strengthen trust, and improve operational effectiveness. You'll help organizations harness emerging and innovative technologies to better understand their data, protect what matters most, and stay ahead of evolving threats.

Recruiting for this role ends on 6/5/2026.

 Work You'll Do

  • Serve as a subject matter expert and trusted advisor to clients, helping them assess strategic and practical data protection needs in response to emerging risks
  • Assist clients in designing, implementing and operating technology and process solutions to reduce data risks
  • Assist clients with developing requirements, evaluating vendor solutions, architecting, implementing and operating data protection solutions
  • Lead client engagements and drive results by:
    • Driving day-to-day execution, communicating updates to clients and firm leadership
    • Providing leadership and support to delivery teams to ensure completion and accuracy of high-quality work products
    • Tracking and reporting on project timelines to ensure on time and on budget delivery
  • Perform the role of mentor and coach to assist junior staff to develop skills by providing feedback, sharing experiences and creating opportunities for professional growth
  • Manage and lead the proposal development process
  • Contribute to Deloitte's thought leadership in client organizations and external marketplace
  • Help foster an inclusive, collaborative, and high-performing team environment
  • Stay current on industry trends in cyber risk, data protection, and emerging technologies

The Team

Enables trust and safety of online communications and digital products, protecting users, consumers, and patients from harm. Enables clients to provide consumer confidence in knowing with whom they are dealing and ensuring the integrity of access to data.

Qualifications

Required:

  • 7+ years of professional experience in data protection and information security, which may include Data Discovery, Data Classification and Rights Management (DCRM, DRM, IRM), Data Access Governance(DAG), Data Loss Prevention (DLP), Cloud Access Security Broker (CASB), Data Security Posture Management (DSPM), Cloud Security and SaaS Security (e.g., AWS security, Azure/M365 security, Databricks, Snowflake)
  • 3+ years of professional experience developing data protection strategies, roadmaps and frameworks, including designing, implementing and operating data protections services
  • 3+ years of total hands-on technical experience and/or architecture-level experience with two or more data protection technologies
  • Experience with collaboration security, SharePoint security, SharePoint Advanced Management, SharePoint lifecycle management, or data access governance controls
  • Hands-on technical experience and/or architecture-level experience with Microsoft Purview, including one or more of the following: DLP, sensitivity labels, data classification, DSPM, DSPM for AI, on-demand classification, or related Microsoft 365 data security capabilities
  • Knowledge of AI security and governance concepts, including data protection considerations for generative AI, copilots, agents, or other AI-enabled business use cases
  • Experience defining data protection use cases, documenting business requirements and evaluating technology solutions
  • Experience leading collaborative efforts across organizational silos, including multifunctional teams of IT professionals, legal/compliance teams, and business executives
  • Experience managing project plans, budgets, staffing, and executive-level stakeholder communications in a consulting or client-facing environment
  • Familiarity with change management, deployment and operational processes in large IT organizations
  • Professional certifications such as CISSP, CISM, CCSP, SC-100, SC-400, AWS Security Specialty or similar.
  • Bachelor's degree in Cybersecurity, Information Security, Engineering, Computer Science, Information Technology or related field
  • Ability to travel 25-50%, on average, based on the work you do and the clients and industries/sectors you serve.
  • Limited Sponsorship may be offered.

Preferred:

  • Significant industry work experience preferred
  • Experience with public cloud (Azure, AWS, GCP) security and modern data platforms (e.g., Snowflake, Data bricks)
  • Experience with third-party DSPM, data discovery, or data governance solutions such as Cyera, Securiti, Varonis, Sentra, AvePoint, Atlan, or Collibra
  • Familiarity with sophisticated multinational companies and distributed business models
  • Experience in regulated industries and familiarity with requirements such as HIPAA, PCI DSS, SOX, or global privacy obligations.
  • Demonstrated success contributing to proposals, practice growth, market eminence, or people development.

The wage range for this role takes into account the wide range of factors that are considered in making compensation decisions including but not limited to skill sets; experience and training; licensure and certifications; and other business and organizational needs. The disclosed range estimate has not been adjusted for the applicable geographic differential associated with the location at which the position may be filled. At Deloitte, it is not typical for an individual to be hired at or near the top of the range for their role and compensation decisions are dependent on the facts and circumstances of each case. A reasonable estimate of the current range is $144,200 - $265,600.

You may also be eligible to participate in a discretionary annual incentive program, subject to the rules governing the program, whereby an award, if any, depends on various factors, including, without limitation, individual and organizational performance.

#CyberDTP27

Education:Bachelor's DegreeEmployment Type:

What Deloitte employees say

Pay

Benefits

Hours and flexibility

Workplace

Get the full story on Breakroom