1

Cyber Security Risk Management Jobs in North Carolina

Cybersecurity Manager

Charlotte, NC

$108K - $146K/yr

Third-party and vendor risk management * Incident response, cyber resilience, and disaster recovery ... Cybersecurity operations and controls * Data protection principles * HIPAA Security and Privacy ...

GRC Analyst

Charlotte, NC · On-site

$85 - $120/hr

Cybersecurity Risk Management * Perform cybersecurity risk assessments for applications, infrastructure, cloud environments, vendors, and business processes. * Facilitate risk identification ...

Cybersecurity Analyst SME

Concord, NC · On-site

$164K - $212K/yr

Cyber and IT Risk Management Job Qualifications: Skills: Cyber Security Architecture, Risk Management Framework, Zero Trust Certifications: None Experience: 10 + years of related experience US ...

M365 Risk Manager

Charlotte, NC · On-site

$90 - $96/hr

Required Qualifications* 5+ years of technology risk management, operational risk, cybersecurity risk, or application governance experience.* Experience performing risk assessments, issue management ...

Required Qualifications * 5+ years of technology risk management, operational risk, cybersecurity risk, or application governance experience. * Experience performing risk assessments, issue ...

Third-party and vendor risk management * Incident response, cyber resilience, and disaster recovery ... Cybersecurity operations and controls * Data protection principles * HIPAA Security and Privacy ...

Information Technology and/or Cybersecurity background and/or experience, including 5-8+ years of IT, cybersecurity, risk management, or third-party risk experience with network, platform, and/or ...

Showing results 21-40

Cyber Security Risk Management information

See North Carolina salary details

$51.8K

$120.8K

$169K

How much do cyber security risk management jobs pay per year?

As of Sep 5, 2026, the average yearly pay for cyber security risk management in North Carolina is $120,836.00, according to ZipRecruiter salary data. Most workers in this role earn between $100,900.00 and $136,300.00 per year, depending on experience, location, and employer.

What is cyber security risk management?

Cyber security risk management is the process of identifying, assessing, and prioritizing risks to an organization's information systems and data. It involves evaluating potential threats and vulnerabilities, determining the likelihood and impact of these risks, and implementing measures to mitigate or manage them. Effective risk management helps organizations protect sensitive data, ensure regulatory compliance, and minimize the impact of cyber attacks. This process is ongoing and adapts to new threats and changes in technology.

What are the key skills and qualifications needed to thrive in cyber security risk management?

To thrive in Cyber Security Risk Management, you need a solid understanding of risk assessment methodologies, information security frameworks (such as ISO 27001 or NIST), and often a relevant degree or certification like CISSP or CISM. Familiarity with security tools, vulnerability assessment platforms, and risk management software is typically required. Strong analytical thinking, attention to detail, and effective communication are crucial soft skills for identifying threats and conveying risk to stakeholders. These skills ensure that organizations can proactively manage and mitigate cyber threats, safeguarding critical assets and maintaining compliance.

What are some typical challenges faced in cyber security risk management, and how can they be addressed?

Professionals in Cyber Security Risk Management often encounter challenges such as staying updated with rapidly evolving threats, balancing security needs with business objectives, and ensuring compliance with various regulations. Addressing these challenges requires continuous learning, effective communication with stakeholders, and the implementation of robust risk assessment frameworks. Collaboration with IT, legal, and business teams is essential to develop practical security policies that protect assets without hindering operations.

What is the difference between Cyber Security Risk Management vs Cyber Security Analyst?

AspectCyber Security Risk ManagementCyber Security Analyst
CertificationsCompTIA Security+, CISSP, CISMCompTIA Security+, CEH, CISSP (preferred)
Work EnvironmentPolicy development, risk assessment, strategic planningMonitoring security systems, incident response, vulnerability analysis
Employer & Industry UsageOrganizations focusing on risk mitigation and complianceOrganizations implementing and maintaining security measures

Cyber Security Risk Management professionals focus on identifying, assessing, and mitigating security risks at an organizational level, often involved in policy and strategy. Cyber Security Analysts primarily monitor security systems, analyze threats, and respond to incidents. While both roles require similar certifications and work within the same industry, their core responsibilities differ: risk managers develop strategies, whereas analysts execute security measures and respond to threats.

What does a cyber security risk management do?

A cyber security risk management professional identifies, assesses, and prioritizes potential security threats to an organization’s information systems. They develop strategies and implement controls to mitigate risks, often using frameworks like NIST or ISO, and may conduct regular audits to ensure security measures are effective.

What are popular job titles related to Cyber Security Risk Management jobs in North Carolina?

For Cyber Security Risk Management jobs in North Carolina, the most frequently searched job titles are:

What job categories do people searching Cyber Security Risk Management jobs in North Carolina look for?

The top searched job categories for Cyber Security Risk Management jobs in North Carolina are:

What cities in North Carolina are hiring for Cyber Security Risk Management jobs?

Cities in North Carolina with the most Cyber Security Risk Management job openings:

Infographic showing various Cyber Security Risk Management job openings in North Carolina as of August 2026, with employment types broken down into 1% As Needed, 87% Full Time, 10% Part Time, and 2% Contract. Highlights an 82% Physical, 3% Hybrid, and 15% Remote job distribution, with an average salary of $120,836 per year, or $58.1 per hour.

Sr. Director of Cybersecurity - 34250

Rack Room Shoes, Inc.

Charlotte, NC • On-site

$190K - $230K/yr

Full-time

Posted 27 days ago


Rack Room Shoes rating

5.6

Company rating: 5.6 out of 10

Based on 101 frontline employees who took The Breakroom Quiz

67th of 105 rated fashion retailers


Job description

About Rack Room Shoes:
Rack Room Shoes is recognized as a footwear industry innovator and has proudly served our communities, pairing people with their favorite shoes for over 100 years. We offer a great variety of on-trend styles for women, men and children in athletic, comfort and dress categories. We pride ourselves on a delightful and trusted shopping experience for our valued customers while offering an outstanding value on a wide selection of nationally recognized brands and exclusive private labels. We operate approximately 515 stores in 37 states.
Why Join Us?
At Rack Room Shoes, technology is a critical driver of our business success. As part of our IT team, you will play a key role in shaping the future of our enterprise data environment, supporting innovation, business intelligence, and data-driven decision-making across the organization. We value collaboration, continuous improvement, and forward-thinking solutions that enhance performance and scalability. If you are passionate about building reliable, high-performing data platforms and want to make a meaningful impact in a dynamic retail environment, we invite you to join our team and help drive our digital transformation journey.
Position Summary:
Responsible for defining, leading, and continuously improving the enterprise cybersecurity program for Rack Room Shoes. Owns cybersecurity strategy, governance, risk posture, security architecture, and cyber resilience, ensuring alignment with business priorities, regulatory requirements, and evolving threats.
Provides executive-level leadership across security operations, engineering, governance, compliance, risk management, and incident response while partnering with technology and business leaders to reduce risk and strengthen the organization's security maturity.
Serves as the primary advisor to the CIO and executive leadership team on cybersecurity strategy, risk management, regulatory compliance, and cyber resilience. Establishes security frameworks, policies, and standards; oversees security operations and third-party partners; and guides investment decisions to protect company systems, networks, applications, customers, associates, and data assets.
Essential Functions:
  • Serve as the accountable executive owner of enterprise cybersecurity risk, governance, and overall program effectiveness
  • Define and execute the enterprise cybersecurity strategy, roadmap, and target maturity model
  • Establish and maintain cybersecurity governance, policies, standards, and best practices
  • Own the organization's overall cyber risk posture, including identification, assessment, mitigation, and reporting of cybersecurity risks
  • Provide executive-level reporting on cybersecurity posture, key risks, security metrics, and investment priorities
  • Present cybersecurity strategy, risk posture, and investment recommendations to executive leadership and governance committees
  • Own and lead the PCI DSS compliance program, including annual assessments, remediation efforts, audit coordination, and continuous compliance monitoring
  • Ensure cybersecurity controls align with high-availability retail and eCommerce environments, balancing security with uptime and customer experience
  • Oversee cybersecurity controls supporting retail store operations, point-of-sale systems, eCommerce platforms, cloud environments, corporate systems, and third-party services
  • Direct security operations including monitoring, threat detection, incident response, recovery, and threat intelligence activities
  • Lead crisis management efforts during significant cybersecurity incidents and coordinate cross-functional response activities
  • Direct and guide security engineering, governance, and operations teams to ensure effective execution and continuous improvement
  • Establish clear separation of responsibilities across security engineering, security operations, governance, risk, and compliance functions
  • Oversee vulnerability management, threat detection, security monitoring, penetration testing, and enterprise remediation efforts
  • Ensure continuous improvement of monitoring, detection capabilities, incident response readiness, and cyber resilience
  • Define and maintain enterprise security architecture standards aligned with business and technology strategies
  • Lead identity and access management (IAM) strategy, including MFA, identity governance, privileged access, and zero trust capability development
  • Establish and manage third-party cybersecurity risk management processes for vendors, service providers, and technology partners
  • Manage relationships with third-party security partners and ensure service effectiveness and contractual compliance
  • Evaluate, approve, and oversee implementation of security technologies, platforms, and vendor engagements
  • Lead enterprise security awareness and training initiatives
  • Partner with Legal, HR, Finance, Internal Audit, and Technology teams to align cybersecurity initiatives with enterprise priorities
  • Partner with Infrastructure and Business Continuity teams to ensure disaster recovery readiness, ransomware preparedness, and overall cyber resilience
  • Recruit, develop, mentor, and retain cybersecurity talent while building a high-performing security organization
  • Define and evolve the cybersecurity organizational structure to support program scale and maturity
  • Develop and manage cybersecurity budgets, investments, resource planning, and strategic staffing plans
  • Establish and report cybersecurity KPIs and KRIs aligned to business risk, regulatory expectations, and executive decision-making
  • Drive continuous program improvement through benchmarking, maturity assessments, and industry best practices
  • Own cybersecurity governance and technology-related data privacy controls, ensuring protection of customer, associate, and enterprise information assets.

Knowledge, Skills, and Abilities:
  • Strong understanding of cybersecurity frameworks, governance, risk management, compliance, and security operations disciplines
  • Deep knowledge of enterprise security architecture, network security, cloud security, identity management, and modern threat landscapes
  • Proven ability to develop and execute cybersecurity strategy within a complex enterprise environment
  • Strong leadership and organizational skills with the ability to influence across multiple business and technology functions
  • Ability to translate technical risks into business impact and executive-level decision-making
  • Experience managing incident response, crisis coordination, and post-incident improvement initiatives
  • Strong knowledge of security monitoring, threat detection, vulnerability management, and remediation practices
  • Ability to evaluate and implement cybersecurity technologies, platforms, and managed security services
  • Excellent communication, presentation, and stakeholder engagement skills
  • Strategic thinker with a strong focus on risk reduction and business alignment
  • Strong decision-making ability under pressure, particularly during cybersecurity incidents
  • High level of integrity, accountability, and professionalism
  • Collaborative leader capable of building strong relationships across technical and business teams
  • Analytical, proactive, and continuously focused on improving organizational security posture
  • Ability to balance security requirements with business objectives and operational realities

Minimum Requirements:
  • Bachelor's degree in Information Technology, Cybersecurity, Computer Science, or related field required
  • 12+ years of progressive experience in cybersecurity, information security, network security, or related disciplines
  • 7+ years of leadership experience managing cybersecurity teams, programs, budgets, and strategic initiatives
  • Experience leading enterprise cybersecurity programs across strategy, governance, architecture, engineering, operations, and compliance
  • Experience operating within regulated environments including PCI DSS and related compliance frameworks
  • Experience supporting multi-location retail, restaurant, hospitality, or other distributed enterprise environments preferred
  • Experience managing third-party security providers and cybersecurity consulting engagements preferred
  • Preferred Certifications: CISSP, CISM, CRISC, CCSP, or equivalent industry certifications

Work Environment:
  • This position is located in Charlotte, NC and the candidate must be willing to relocate, if not already in the Charlotte Metro area.
    Working primarily in an office environment.

We are an Equal Opportunity Employer. We consider all qualified applicants without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, veteran status, or any other protected characteristic.
The above statements are intended to describe the general nature and level of work being performed by individuals assigned to this job. They are not intended to be an exhaustive list of all responsibilities, duties, and skills requires of the position. All employees may have other duties assigned at any time.
Pay Rate: $190,000.00 - $230,000.00 Annually
Company Description:
About Rack Room Shoes
Great shoes for men, women and children in comfort, dress, casual, and athletic categories make Rack Room Shoes the family footwear retailer of choice. The company offers a wide selection of nationally recognized brands known for their quality. Rack Room Shoes also offers an assortment of exclusive private brands commissioned from the best manufacturers in the business. Our private brands offer customers great styles and outstanding values, which translates into satisfied, loyal, repeat customers.
Rack Room Shoes provides equal employment opportunities to all employees and applicants for employment without regard to race, color, religion, sex (including pregnancy, sexual orientation and gender identity), national origin, marital status, disability, genetic information, age, military service, or any other characteristic that is protected by applicable law. This policy of equal employment opportunity extends to all aspects of employment including, but not limited to, recruitment, hiring, training, promotion, transfer, reassignment, demotion, discipline, discharge, performance evaluation, compensation and benefits.

What Rack Room Shoes employees say

Pay

Benefits

Hours and flexibility

Workplace

Get the full story on Breakroom


Rack Room Shoes logo

About Rack Room Shoes

Sourced by ZipRecruiter

Rack Room Shoes is an established retail industry entity that operates within the specialty footwear segment. Headquartered in Charlotte, NC, US, the company offers an extensive variety of shoes for men, women, and children. Founded in 1920, Rack Room Shoes has expanded its inventory to include comfort, dress, casual, and athletic shoes from well-known brands. The company's initial vision centered on offering top-quality products and excellent value, a mission it has successfully upheld, thus contributing to its robust standing in the sector. Besides its reputation for affordability, Rack Room Shoes is also known for its 'Buy One Get One 50% Off' sale, a long-time hallmark of the brand.

Industry

Retail

Company size

1,001 - 5,000 Employees

Headquarters location

Salisbury, NC, US

Year founded

1920

Social media