1

Cyber Security Risk Management Jobs in Florida (NOW HIRING)

Cybersecurity Manager - Lead ISSO

Tampa, FL · On-site

$104K - $141K/yr

... and Risk Management Framework (RMF) activities for the C-17 Training System, ensuring full ... Ensure that cybersecurity measures are integrated into all aspects of C-17 simulation and ...

Third-party and vendor risk management * Incident response, cyber resilience, and disaster recovery ... Cybersecurity operations and controls * Data protection principles * HIPAA Security and Privacy ...

Third-party and vendor risk management * Incident response, cyber resilience, and disaster recovery ... Cybersecurity operations and controls * Data protection principles * HIPAA Security and Privacy ...

Third-party and vendor risk management * Incident response, cyber resilience, and disaster recovery ... Cybersecurity operations and controls * Data protection principles * HIPAA Security and Privacy ...

Third Party Risk Analyst

Tampa, FL · On-site

$60K - $90K/yr

Bachelor's degree in business, information systems, cybersecurity, risk management, or a related field (A comparable combination of work experience and training may be substituted for education ...

Manager, Cybersecurity

Orlando, FL · Hybrid

$103K - $140K/yr

Role Summary The Manager, Cybersecurity owns the enterprise-wide cybersecurity strategy and ... This leader is accountable for risk management, security operations, engineering of cyber ...

Showing results 41-60

Cyber Security Risk Management information

See Florida salary details

$42.6K

$99.4K

$139K

How much do cyber security risk management jobs pay per year?

As of Sep 7, 2026, the average yearly pay for cyber security risk management in Florida is $99,361.00, according to ZipRecruiter salary data. Most workers in this role earn between $82,900.00 and $112,100.00 per year, depending on experience, location, and employer.

What is cyber security risk management?

Cyber security risk management is the process of identifying, assessing, and prioritizing risks to an organization's information systems and data. It involves evaluating potential threats and vulnerabilities, determining the likelihood and impact of these risks, and implementing measures to mitigate or manage them. Effective risk management helps organizations protect sensitive data, ensure regulatory compliance, and minimize the impact of cyber attacks. This process is ongoing and adapts to new threats and changes in technology.

What are the key skills and qualifications needed to thrive in cyber security risk management?

To thrive in Cyber Security Risk Management, you need a solid understanding of risk assessment methodologies, information security frameworks (such as ISO 27001 or NIST), and often a relevant degree or certification like CISSP or CISM. Familiarity with security tools, vulnerability assessment platforms, and risk management software is typically required. Strong analytical thinking, attention to detail, and effective communication are crucial soft skills for identifying threats and conveying risk to stakeholders. These skills ensure that organizations can proactively manage and mitigate cyber threats, safeguarding critical assets and maintaining compliance.

What are some typical challenges faced in cyber security risk management, and how can they be addressed?

Professionals in Cyber Security Risk Management often encounter challenges such as staying updated with rapidly evolving threats, balancing security needs with business objectives, and ensuring compliance with various regulations. Addressing these challenges requires continuous learning, effective communication with stakeholders, and the implementation of robust risk assessment frameworks. Collaboration with IT, legal, and business teams is essential to develop practical security policies that protect assets without hindering operations.

What is the difference between Cyber Security Risk Management vs Cyber Security Analyst?

AspectCyber Security Risk ManagementCyber Security Analyst
CertificationsCompTIA Security+, CISSP, CISMCompTIA Security+, CEH, CISSP (preferred)
Work EnvironmentPolicy development, risk assessment, strategic planningMonitoring security systems, incident response, vulnerability analysis
Employer & Industry UsageOrganizations focusing on risk mitigation and complianceOrganizations implementing and maintaining security measures

Cyber Security Risk Management professionals focus on identifying, assessing, and mitigating security risks at an organizational level, often involved in policy and strategy. Cyber Security Analysts primarily monitor security systems, analyze threats, and respond to incidents. While both roles require similar certifications and work within the same industry, their core responsibilities differ: risk managers develop strategies, whereas analysts execute security measures and respond to threats.

What does a cyber security risk management do?

A cyber security risk management professional identifies, assesses, and prioritizes potential security threats to an organization’s information systems. They develop strategies and implement controls to mitigate risks, often using frameworks like NIST or ISO, and may conduct regular audits to ensure security measures are effective.

What are popular job titles related to Cyber Security Risk Management jobs in Florida?

For Cyber Security Risk Management jobs in Florida, the most frequently searched job titles are:

What job categories do people searching Cyber Security Risk Management jobs in Florida look for?

The top searched job categories for Cyber Security Risk Management jobs in Florida are:

What cities in Florida are hiring for Cyber Security Risk Management jobs?

Cities in Florida with the most Cyber Security Risk Management job openings:

Infographic showing various Cyber Security Risk Management job openings in Florida as of August 2026, with employment types broken down into 1% As Needed, 86% Full Time, 11% Part Time, and 2% Contract. Highlights an 88% Physical, 3% Hybrid, and 9% Remote job distribution, with an average salary of $99,361 per year, or $47.8 per hour.

AI Cyber Risk and Credible Challenge Associate Director

The Depository Trust Clearing

Tampa, FL • Hybrid

Full-time

Medical, Life, Retirement, PTO

Posted 18 days ago


Job description

Are you ready to make an impact at DTCC?  

Do you want to work on innovative projects, collaborate with a dynamic and supportive team, and receive investment in your professional development? At DTCC, we are at the forefront of innovation in the financial markets.  We're committed to helping our employees grow and succeed. We believe that you have the skills and drive to make a real impact.  We foster a thriving internal community and are committed to creating a workplace that looks like the world that we serve.

Pay and Benefits:

  • Competitive compensation, including base pay and annual incentive
  • Comprehensive health and life insurance and well-being benefits, based on location
  • Pension / Retirement benefits 
  • Paid Time Off and Personal/Family Care, and other leaves of absence when needed to support your physical, financial, and emotional well-being.
  • DTCC offers a flexible/hybrid model of 3 days onsite and 2 days remote (onsite Tuesdays, Wednesdays and a third day unique to each team or employee). 

The Impact You will have in this role:

In this role, you will play a key part in executing the Credible Challenge assessment program within the Cyber Security Risk Office (CSRO), with a specialized focus on AI risk oversight across the AI lifecycle. Your work will directly contribute to strengthening DTCC's cyber risk governance by independently assessing First Line functions and evaluating the design and effectiveness of controls.
You will work closely with CSRO leadership, assessment leads, and First Line stakeholders to perform structured assessments, analyze evidence, identify risks and control gaps, and support clear, defensible assessment conclusions.

Your Primary Responsibilities:

  • Lead and execute Credible Challenge assessments of First Line AI risk practices across the AI lifecycle, including planning, scoping, fieldwork, and documentation
  • Perform walkthroughs, interviews, and evidence reviews to assess the design and operating effectiveness of controls governing AI use cases (including GenAI, agentic workflows, and embedded AI)
  • Evaluate alignment of First Line AI practices to the AI Policy, AI Governance Procedure, AI Acceptable Usage Policy, and applicable frameworks (NIST AI RMF, CRI Profile, EU AI Act)
  • Represent CSRO on the AI Working Groups, conducting independent AI use case reviews and applying the AI risk tiering framework to scale challenge intensity to data exposure, automation, and business impact
  • Identify, assess, and communicate material AI risks, control gaps, and thematic issues across cyber, model, data, privacy, and third-party risk domains
  • Engage with senior CSRO and First Line stakeholders to discuss assessment results and remediation of AI control deficiencies
  • Contribute to continuous improvement of the Credible Challenge methodology, standards, and templates as applied to the AI domain
  • Support AI policy awareness and acceptable-usage training, and assist with regulatory and audit responses on AI (e.g., Reg SCI, FRBNY/SEC inquiries)
  • Lead and contribute to special projects including program enhancements, resource coordination, and senior management presentations
  • Develop, communicate and ensure adherence to department risk policies, procedures and best practices
  • Stay abreast of industry and market events that impact cyber risk management processes
  • Foster an environment of regulatory awareness and ensure regulatory compliance
  • Conduct periodic assessments and surveys to gauge DTCC's AI risk and acceptable usage awareness level and recommend adjustments to the program

**NOTE:  The Primary Responsibilities of this role are not limited to the details above. **

Qualifications:

  • Minimum of 8 years of related experience in cyber security, cyber operations, cyber risk, IT audit, or technology risk.
  • Cyber security risk background with working knowledge of AI/GenAI risk domains (prompt injection, model drift, hallucination, data leakage, shadow AI)
  • Bachelor's degree preferred or equivalent experience
  • Professional certifications such as CISSP, CISA, CRISC or equivalent are a plus
  • Knowledge of frameworks and regulations, including Cyber Risk Institute (CRI), National Institute of Standards and Technology (NIST) Cybersecurity Framework, Federal Financial Institutions Examination Council (FFIEC), and New York State Department of Financial Services (NYSDFS)

Talents Needed for Success:

  • Naturally curious and eager to learn, with a passion for understanding emerging technologies and complex risk topics. 
  • Comfortable asking thoughtful questions, challenging assumptions, and investigating issues beyond the obvious. 
  • Strong analytical thinker who thrives in dynamic environments and enjoys solving complex problems. 
  • Self-starter who continuously looks for opportunities to improve processes, controls, and risk management practices.

The salary range is indicative for roles at the same level within DTCC across all US locations. Actual salary is determined based on the role, location, individual experience, skills, and other considerations. We are an equal opportunity employer and value diversity at our company. We do not discriminate on the basis of race, religion, color, national origin, sex, gender, gender expression, sexual orientation, age, marital status, veteran status, or disability status. We will ensure that individuals with disabilities are provided reasonable accommodation to participate in the job application or interview process, to perform essential job functions, and to receive other benefits and privileges of employment. Please contact us to request accommodation.

With over 50 years of experience, DTCC is the premier post-trade market infrastructure for the global financial services industry. From 20 locations around the world, DTCC, through its subsidiaries, automates, centralizes, and standardizes the processing of financial transactions, mitigating risk, increasing transparency, enhancing performance and driving efficiency for thousands of broker/dealers, custodian banks and asset managers. Industry owned and governed, the firm innovates purposefully, simplifying the complexities of clearing, settlement, asset servicing, transaction processing, trade reporting and data services across asset classes, bringing enhanced resilience and soundness to existing financial markets while advancing the digital asset ecosystem. In 2024, DTCC's subsidiaries processed securities transactions valued at U.S. $3.7 quadrillion and its depository subsidiary provided custody and asset servicing for securities issues from over 150 countries and territories valued at U.S. $99 trillion. DTCC's Global Trade Repository service, through locally registered, licensed, or approved trade repositories, processes more than 25 billion messages annually. To learn more, please visit us at www.dtcc.com or connect with us on LinkedIn, X, YouTube, Facebook and Instagram.

DTCC proudly supports Flexible Work Arrangements favoring openness and gives people freedom to do their jobs well, by encouraging diverse opinions and emphasizing teamwork.  When you join our team, you'll have an opportunity to make meaningful contributions at a company that is recognized as a thought leader in both the financial services and technology industries. A DTCC career is more than a good way to earn a living. It's the chance to make a difference at a company that's truly one of a kind.

Learn more about Clearance and Settlement by clicking here.

Our Risk Management teams work to protect the safety and soundness of our systems and are responsible for identifying, managing, measuring and mitigating a spectrum of key risk types including credit, market, liquidity, systemic, operational and technology in all existing and new products, activities, processes and systems.

The Technology Risk Management department is responsible for setting strategic direction in the areas of IT Risk and Information Security. They are accountable for maintaining DTCC's corporate security policies and control standards and acting as an operational arm for monitoring threat intelligence.