1

Cyber Security Risk Management Jobs in California

Some of the job responsibilities include but are not limited to: - Perform systems engineering activities in the areas of cybersecurity, Risk Management Framework (RMF) Assessment & Authorization (A ...

Title: Cyber Security Engineer Belong. Connect. Grow. with KBR! KBR's National Security Solutions ... Apply risk management concepts to mitigate vulnerabilities in system security architectures

Title: Cyber Security Engineer Belong. Connect. Grow. with KBR! KBR's National Security Solutions ... Apply risk management concepts to mitigate vulnerabilities in system security architectures

Some of the job responsibilities include but are not limited to: - Perform systems engineering activities in the areas of cybersecurity, Risk Management Framework (RMF) Assessment & Authorization (A ...

Risk Management & Assessment: o Lead comprehensive cybersecurity risk assessments across the enterprise, identifying vulnerabilities and recommending prioritized mitigation strategies. o Develop and ...

We are seeking an Information Systems Security Engineer (ISSE) / Cybersecurity Engineer to support Risk Management Framework (RMF), cybersecurity engineering, Assessment & Authorization (A&A ...

Risk Management & Assessment: * Lead comprehensive cybersecurity risk assessments across the enterprise, identifying vulnerabilities and recommending prioritized mitigation strategies. * Develop and ...

Senior Cybersecurity GRC Analyst

San Jose, CA · On-site

$117K - $151K/yr

C. is seeking a Senior Cybersecurity GRC Analyst to lead governance and compliance initiatives ... The role involves managing the Compliance Program, conducting risk assessments, overseeing access ...

next page

Showing results 1-20

Cyber Security Risk Management information

See California salary details

$56.3K

$131.2K

$183.6K

How much do cyber security risk management jobs pay per year?

As of Jun 30, 2026, the average yearly pay for cyber security risk management in California is $131,221.00, according to ZipRecruiter salary data. Most workers in this role earn between $109,500.00 and $148,000.00 per year, depending on experience, location, and employer.

What are the key skills and qualifications needed to thrive as a Cyber Security Risk Management professional, and why are they important?

To thrive in Cyber Security Risk Management, you need a solid understanding of risk assessment methodologies, information security frameworks (such as ISO 27001 or NIST), and often a relevant degree or certification like CISSP or CISM. Familiarity with security tools, vulnerability assessment platforms, and risk management software is typically required. Strong analytical thinking, attention to detail, and effective communication are crucial soft skills for identifying threats and conveying risk to stakeholders. These skills ensure that organizations can proactively manage and mitigate cyber threats, safeguarding critical assets and maintaining compliance.

What is cyber security risk management?

Cyber security risk management is the process of identifying, assessing, and prioritizing risks to an organization's information systems and data. It involves evaluating potential threats and vulnerabilities, determining the likelihood and impact of these risks, and implementing measures to mitigate or manage them. Effective risk management helps organizations protect sensitive data, ensure regulatory compliance, and minimize the impact of cyber attacks. This process is ongoing and adapts to new threats and changes in technology.

What is risk management in cyber security?

In cyber security risk management, professionals identify, assess, and prioritize potential security threats to an organization’s information systems. They implement strategies and controls to mitigate or accept risks, often using frameworks like NIST or ISO 27001, to protect data and ensure business continuity.

Is 40 too old for cyber security?

Cyber security risk management is a field open to individuals of all ages, and age is not a barrier to entering the profession. Many professionals successfully transition into cyber security later in their careers by gaining relevant certifications like CISSP or CompTIA Security+ and developing skills in areas such as threat analysis and security tools. Experience, continuous learning, and adaptability are often more important than age in this industry.

What is the difference between Cyber Security Risk Management vs Cyber Security Analyst?

AspectCyber Security Risk ManagementCyber Security Analyst
CertificationsCompTIA Security+, CISSP, CISMCompTIA Security+, CEH, CISSP (preferred)
Work EnvironmentPolicy development, risk assessment, strategic planningMonitoring security systems, incident response, vulnerability analysis
Employer & Industry UsageOrganizations focusing on risk mitigation and complianceOrganizations implementing and maintaining security measures

Cyber Security Risk Management professionals focus on identifying, assessing, and mitigating security risks at an organizational level, often involved in policy and strategy. Cyber Security Analysts primarily monitor security systems, analyze threats, and respond to incidents. While both roles require similar certifications and work within the same industry, their core responsibilities differ: risk managers develop strategies, whereas analysts execute security measures and respond to threats.

What are some typical challenges faced by professionals in Cyber Security Risk Management, and how can they be addressed?

Professionals in Cyber Security Risk Management often encounter challenges such as staying updated with rapidly evolving threats, balancing security needs with business objectives, and ensuring compliance with various regulations. Addressing these challenges requires continuous learning, effective communication with stakeholders, and the implementation of robust risk assessment frameworks. Collaboration with IT, legal, and business teams is essential to develop practical security policies that protect assets without hindering operations.

Can you make $500,000 a year in cyber security?

Cyber security risk management professionals can potentially earn $500,000 or more annually, especially at senior levels, in leadership roles, or with extensive experience and specialized certifications like CISSP or CISM. High salaries are often associated with executive positions, consulting, or working for large organizations with complex security needs.

Is security risk management a good career?

Security risk management is a valuable career in cybersecurity, focusing on identifying and mitigating potential threats to an organization’s information systems. It often requires knowledge of security frameworks, risk assessment tools, and certifications like CISSP or CISM, and offers strong job growth and demand across various industries.
What are popular job titles related to Cyber Security Risk Management jobs in California? For Cyber Security Risk Management jobs in California, the most frequently searched job titles are:
What job categories do people searching Cyber Security Risk Management jobs in California look for? The top searched job categories for Cyber Security Risk Management jobs in California are:
What cities in California are hiring for Cyber Security Risk Management jobs? Cities in California with the most Cyber Security Risk Management job openings:
Cyber Security Engineer

Cyber Security Engineer

ENSCO, Inc.

El Segundo, CA • On-site

Other

Posted 10 days ago


Job description

ENSCO Inc is a diverse engineering and technology company that provides engineering, science and advanced technology solutions that guarantee mission success, safety, and security to governments and private industries worldwide. 
We are seeking a Cyber Security Engineer. The candidate will join our Evolved Strategic Systems (ESS) program in El Segundo, CA. Due to security requirements, work is required to be on-site in a secure facility.
The MILSATCOM Systems Engineering, Integration, and Test (MSEIT) effort provides leading edge Systems Engineering & Integration (SE&I) for the US Space Force's Space Systems Center (SSC). We support the Space Force's acquisition of state of the art satellite communications systems, providing global secure, survivable, and protected communications for our nation's warfighters. We seek technical individuals who will thrive in a highly collaborative work environment of small teams, using the most modern tools and methodologies to tackle the challenges of integrating complex space and ground communications systems. This position is on-site at El Segundo, CA. Some of the job responsibilities include but are not limited to: 
- Perform systems engineering activities in the areas of cybersecurity, Risk Management Framework (RMF) Assessment & Authorization (A&A) in accordance with DoDI 8510.01
- Perform cryptographic System Security Engineering (SSE) in compliance with NSA requirements and regulations
- Define security requirements, architecture, and design for embedded and large-scale, distributed DoD space and ground control systems
- Apply risk management concepts to mitigate vulnerabilities in system security architectures
- Interface with the Space Force customer, system stakeholders, and external contractors to coordinate cybersecurity and cryptographic requirements and architecture flow down from the system level to individual elements of the system
- Support integration activities of cybersecurity for space and ground networks
- Participate and propose inputs for verification and validation of cybersecurity requirements
- Perform cybersecurity planning and scheduling for RMF and coordinate efforts to categorize and assign impact values for confidentiality, integrity, and availability of systems per CNSSI 1253 to produce a tailored set of RMF security controls per NIST 800-53
- Provide critical inputs to the Program Protection Plan and assist in identification of Critical Program Information (CPI)/Critical Components (CC)
- Provide critical inputs to Cybersecurity Strategies and assist government with milestone approvals

Qualifications Required:
- Bachelor's degree in technical field such as engineering, mathematics, physics, IA/Cybersecurity, or computer science
- 5+ years of work experience in System Engineering Architecture/Design
- 5+ years of work experience in Information Assurance (IA)/Cyber Security
- Provide cybersecurity inputs to the Test and Evaluation Master Plan (TEMP) and coordinate Cybersecurity Test and Evaluation (T&E) requirements/activities (e.g., CVI, ACD, CVPA, AA) with stakeholders
- Lead Mission Based Cybersecurity Risk Assessments (MBCRA) (e.g., MRAP-C, CTT) events and provide Mission Impact Analysis and recommendations to the program office
- Understanding of the discipline and practice of Systems Engineering throughout the system lifecycle phases of concept, development, production, use, support, and retirement
- Understanding of modern computing architectures including CI/CD, microservices, cloud, and container technologies
- Proficient with Microsoft Office products (Word, Excel, Powerpoint)
- Strong interpersonal, organizational, and teambuilding skills
- Strong writing and oral presentation skills; ability to write final-version deliverable technical documents and reports
- Background in software design
- ABILITY TO OBTAIN AND MAINTAIN A DOD SECRET SECURITY CLEARANCE IS REQUIRED FOR THIS POSITION FOR WHICH, YOU MUST BE A U.S. CITIZEN

Qualifications Desired:
- Master's degree in technical field, such as engineering, mathematics, physics, IA/Cybersecurity, or computer science
- Experience working on DoD programs
- Proficient understanding of RMF process
- Familiarity with Cybersecurity Requirements Independent Verification and Validation (IV&V)
- Familiarity with NIST 800-53 and CNSSI 1253 RMF Analysis and Accreditation
- Familiarity with Network Engineering
- Familiarity with Communications Systems
- Familiarity with Security Test and Evaluation (ST&E)
- Security certification (CISSP)
- Top Secret with SCI security clearance

Work Location Type: On-Site
Required Certifications: None
U.S. Citizenship Required: Yes
Security Clearance Required: Ability to Obtain
Employment Type: Regular Full-time
Background Check Type:  7 Year Pre-Employment
Drug Screen Required: None
Position Contingent Upon Contract Award: No