... risk management. 3. Participate in or lead internal committees related to technology, innovation, and risk, as assigned. 4. Plan, prepare for, and participate in technology, cybersecurity, and ...
... risk management. 3. Participate in or lead internal committees related to technology, innovation, and risk, as assigned. 4. Plan, prepare for, and participate in technology, cybersecurity, and ...
Vice President of Technology Services
Tucson, AZ · On-site
$175 - $190/hr
... risk management. * 3. Participate in or lead internal committees related to technology, innovation, and risk, as assigned. * 4. Plan, prepare for, and participate in technology, cybersecurity, and ...
Vice President of Technology Services
Tucson, AZ · On-site
$175 - $190/hr
... risk management. * 3. Participate in or lead internal committees related to technology, innovation, and risk, as assigned. * 4. Plan, prepare for, and participate in technology, cybersecurity, and ...
Program Information Systems Security Manager (ISSM) - Tucson, AZ
Tucson, AZ · On-site
$107.50 - $204.50/hr
Cybersecurity, systems security or hardening; Information Technology Compliance-based auditing using the Risk Management Framework (RMF) and/or non-defense regulations such as FAA, Payment Card ...
Program Information Systems Security Manager (ISSM) - Tucson, AZ
Tucson, AZ · On-site
$107.50 - $204.50/hr
Cybersecurity, systems security or hardening; Information Technology Compliance-based auditing using the Risk Management Framework (RMF) and/or non-defense regulations such as FAA, Payment Card ...
Logistics Test Manager
Tucson, AZ · Remote
... ballistics, cybersecurity, motorsports, armor development, biological systems, missiles, and ... Design and implement risk management programs to guarantee supply chain continuity during ...
Quick apply
Logistics Test Manager
Tucson, AZ · Remote
... ballistics, cybersecurity, motorsports, armor development, biological systems, missiles, and ... Design and implement risk management programs to guarantee supply chain continuity during ...
... ballistics, cybersecurity, motorsports, armor development, biological systems, missiles, and ... Design and implement risk management programs to guarantee supply chain continuity during ...
... ballistics, cybersecurity, motorsports, armor development, biological systems, missiles, and ... Design and implement risk management programs to guarantee supply chain continuity during ...
Cybersecurity, systems security or hardening * Information Technology * Compliance-based auditing using the Risk Management Framework (RMF), DCSA Assessment and Authorization Process Manual (DAAPM ...
Cybersecurity, systems security or hardening * Information Technology * Compliance-based auditing using the Risk Management Framework (RMF), DCSA Assessment and Authorization Process Manual (DAAPM ...
Cybersecurity, systems security or hardening * Information Technology * Compliance-based auditing using the Risk Management Framework (RMF), DCSA Assessment and Authorization Process Manual (DAAPM ...
Cybersecurity, systems security or hardening * Information Technology * Compliance-based auditing using the Risk Management Framework (RMF), DCSA Assessment and Authorization Process Manual (DAAPM ...
Information System Security Officer
Tucson, AZ · On-site
$95K - $125K/yr
Work with the RRC Cybersecurity team to provide ISSO support to new and existing systems * Ensure ... Demonstrated knowledge and understanding of Risk Management Framework and ATO documentation * Hands ...
New
Quick apply
Information System Security Officer
Tucson, AZ · On-site
$95K - $125K/yr
Work with the RRC Cybersecurity team to provide ISSO support to new and existing systems * Ensure ... Demonstrated knowledge and understanding of Risk Management Framework and ATO documentation * Hands ...
New
IT GRC Specialist
Tucson, AZ · Hybrid
... including cybersecurity, networks, infrastructure, applications, cloud services, and enterprise platforms. * Proven experience in IT governance, risk management, and compliance. * Strong ...
New
IT GRC Specialist
Tucson, AZ · Hybrid
... including cybersecurity, networks, infrastructure, applications, cloud services, and enterprise platforms. * Proven experience in IT governance, risk management, and compliance. * Strong ...
New
IT GRC Specialist
Tucson, AZ · Hybrid
... including cybersecurity, networks, infrastructure, applications, cloud services, and enterprise platforms. * Proven experience in IT governance, risk management, and compliance. * Strong ...
New
IT GRC Specialist
Tucson, AZ · Hybrid
... including cybersecurity, networks, infrastructure, applications, cloud services, and enterprise platforms. * Proven experience in IT governance, risk management, and compliance. * Strong ...
New
Cybersecurity, systems security or hardening * Information Technology * Compliance-based auditing using the Risk Management Framework (RMF) and/or non-defense regulations such as FAA, Payment Card ...
Cybersecurity, systems security or hardening * Information Technology * Compliance-based auditing using the Risk Management Framework (RMF) and/or non-defense regulations such as FAA, Payment Card ...
Cybersecurity, systems security or hardening * Information Technology * Compliance-based auditing using the Risk Management Framework (RMF) and/or non-defense regulations such as FAA, Payment Card ...
Cybersecurity, systems security or hardening * Information Technology * Compliance-based auditing using the Risk Management Framework (RMF) and/or non-defense regulations such as FAA, Payment Card ...
Cybersecurity, systems security or hardening * Information Technology * Compliance-based auditing using the Risk Management Framework (RMF) and/or non-defense regulations such as FAA, Payment Card ...
Cybersecurity, systems security or hardening * Information Technology * Compliance-based auditing using the Risk Management Framework (RMF) and/or non-defense regulations such as FAA, Payment Card ...
Cybersecurity, systems security or hardening * Information Technology * Compliance-based auditing using the Risk Management Framework (RMF) and/or non-defense regulations such as FAA, Payment Card ...
Cybersecurity, systems security or hardening * Information Technology * Compliance-based auditing using the Risk Management Framework (RMF) and/or non-defense regulations such as FAA, Payment Card ...
Cybersecurity, systems security or hardening * Information Technology * Compliance-based auditing using the Risk Management Framework (RMF) and/or non-defense regulations such as FAA, Payment Card ...
Cybersecurity, systems security or hardening * Information Technology * Compliance-based auditing using the Risk Management Framework (RMF) and/or non-defense regulations such as FAA, Payment Card ...
Cybersecurity, systems security or hardening * Information Technology * Compliance-based auditing using the Risk Management Framework (RMF) and/or non-defense regulations such as FAA, Payment Card ...
Cybersecurity, systems security or hardening * Information Technology * Compliance-based auditing using the Risk Management Framework (RMF) and/or non-defense regulations such as FAA, Payment Card ...
Provides oversight and leadership of Cybersecurity projects and initiatives of cost-benefit and risk management analysis * Supports enterprise and business initiatives to drive technological ...
New
Provides oversight and leadership of Cybersecurity projects and initiatives of cost-benefit and risk management analysis * Supports enterprise and business initiatives to drive technological ...
New
Senior Information System Security Engineer (ISSE) II - Tucson, AZ
Tucson, AZ · On-site
$100K - $136K/yr
Provides oversight and leadership of Cybersecurity projects and initiatives of cost-benefit and risk management analysis * Supports enterprise and business initiatives to drive technological ...
New
Senior Information System Security Engineer (ISSE) II - Tucson, AZ
Tucson, AZ · On-site
$100K - $136K/yr
Provides oversight and leadership of Cybersecurity projects and initiatives of cost-benefit and risk management analysis * Supports enterprise and business initiatives to drive technological ...
New
ISSM 1 102-206
Tucson, AZ · On-site
Advise customer on Risk Management Framework (RMF) assessment and authorization issues * Perform ... Ensure that all IAOs, network administrators, and other cyber security personnel receive the ...
ISSM 1 102-206
Tucson, AZ · On-site
Advise customer on Risk Management Framework (RMF) assessment and authorization issues * Perform ... Ensure that all IAOs, network administrators, and other cyber security personnel receive the ...
Senior Principal Systems Security Engineer (Program Protection / Anti-Tamper) - P5 (Onsite-Tucson, A
Tucson, AZ · On-site
$98K - $135K/yr
Systems Security Engineering creates holistic security solutions leveraging Cybersecurity, Software Assurance and Supply Chain Risk Management to support Program Protection on embedded weapons ...
Senior Principal Systems Security Engineer (Program Protection / Anti-Tamper) - P5 (Onsite-Tucson, A
Tucson, AZ · On-site
$98K - $135K/yr
Systems Security Engineering creates holistic security solutions leveraging Cybersecurity, Software Assurance and Supply Chain Risk Management to support Program Protection on embedded weapons ...
Cyber Security Risk Management information
See Tucson, AZ salary details
$55K - $66.3K
1% of jobs
$66.3K - $77.6K
4% of jobs
$77.6K - $88.9K
5% of jobs
$88.9K - $100.2K
9% of jobs
$106.4K is the 25th percentile. Wages below this are outliers.
$100.2K - $111.5K
11% of jobs
$111.5K - $122.8K
10% of jobs
The median wage is $127.2K / yr.
$122.8K - $134.1K
28% of jobs
$140.7K is the 75th percentile. Wages above this are outliers.
$134.1K - $145.5K
14% of jobs
$145.5K - $156.8K
11% of jobs
$156.8K - $168.1K
4% of jobs
$168.1K - $179.4K
4% of jobs
$55K
$128.2K
$179.4K
How much do cyber security risk management jobs pay per year?
What is cyber security risk management?
What are the key skills and qualifications needed to thrive in cyber security risk management?
What are some typical challenges faced in cyber security risk management, and how can they be addressed?
What is the difference between Cyber Security Risk Management vs Cyber Security Analyst?
| Aspect | Cyber Security Risk Management | Cyber Security Analyst |
|---|---|---|
| Certifications | CompTIA Security+, CISSP, CISM | CompTIA Security+, CEH, CISSP (preferred) |
| Work Environment | Policy development, risk assessment, strategic planning | Monitoring security systems, incident response, vulnerability analysis |
| Employer & Industry Usage | Organizations focusing on risk mitigation and compliance | Organizations implementing and maintaining security measures |
Cyber Security Risk Management professionals focus on identifying, assessing, and mitigating security risks at an organizational level, often involved in policy and strategy. Cyber Security Analysts primarily monitor security systems, analyze threats, and respond to incidents. While both roles require similar certifications and work within the same industry, their core responsibilities differ: risk managers develop strategies, whereas analysts execute security measures and respond to threats.
What does a cyber security risk management do?
What are popular job titles related to Cyber Security Risk Management jobs in Tucson, AZ?
For Cyber Security Risk Management jobs in Tucson, AZ, the most frequently searched job titles are:
What job categories do people searching Cyber Security Risk Management jobs in Tucson, AZ look for?
The top searched job categories for Cyber Security Risk Management jobs in Tucson, AZ are:
What cities near Tucson, AZ are hiring for Cyber Security Risk Management jobs?
Cities near Tucson, AZ with the most Cyber Security Risk Management job openings:

Full-time
Posted 11 days ago
Job description
REPORTS TO: Chief Digital Officer
SUPERVISES: Infrastructure, Help Desk, Applications and Development, and the Cyber Risk Officer
EXEMPTION STATUS: Exempt
PRIMARY FUNCTION: Drive TFCU's strategic objectives by leading a high-performing Technology Services team to deliver secure, reliable, and innovative technology, enterprise infrastructure, applications, and cyber risk management while enhancing member experience and operational efficiency.
ESSENTIAL FUNCTIONS:
1. Lead the development and execution of TFCU's multi-year technology strategy and roadmap across infrastructure, applications, service delivery, and cyber risk. Align all technology investments with credit union business goals, digital strategy (in partnership with the Chief Digital Officer), and member experience objectives.
2. Oversee a secure, highly available, and redundant technology infrastructure, including network, cloud, systems, endpoint, and data center operations. Own the development, testing, and execution of IT Disaster Recovery and Business Continuity plans to ensure continuous uptime and operational resilience.
3. Direct end-user support, Help Desk operations, and IT Asset Management. Ensure high-quality staff and member technology experiences through efficient incident/service-request management, clear SLAs, streamlined access provisioning, and active hardware/software lifecycle management.
4. Direct the administration, integration, and development of core enterprise, back-office, and member-facing application platforms. Ensure seamless API data flows, reliable in-house scripts, and scalable digital solutions that support modern financial services.
5. Provide strategic oversight to the Cyber Risk Officer, maintaining a robust cybersecurity posture aligned with regulatory frameworks (NCUA, FFIEC, GLBA, NIST, CIS Controls). Ensure proactive vulnerability remediation and lead technology operational readiness for all internal, independent, and regulatory audits.
6. Serve as a key member of the Senior Management team, translating technical concepts into business-focused guidance for Executive Leadership and the Board. Manage the technology budget, develop business cases for major investments, and oversee strategic vendor, fintech, and MSP relationships to optimize costs and mitigate operational risk.
7. Build and sustain a high-performing technology team through clear role expectations, coaching, and talent development. Partner with senior leaders to drive digital transformation and organizational change management, redesigning processes and building change agility across TFCU.
8. Abide by state and federal banking regulations. Attend training sessions and complete compliance training on an annual basis. Maintain member and TFCU privacy and confidentiality.
OTHER DUTIES/RESPONSIBILITIES:
1. Provide expertise and information for technology investments, digital transformation initiatives, and strategic planning discussions.
2. Evaluate, recommend, and implement emerging products and services that improve member experience, operational efficiency, data insights, and risk management.
3. Participate in or lead internal committees related to technology, innovation, and risk, as assigned.
4. Plan, prepare for, and participate in technology, cybersecurity, and enterprise audits and examinations.
5. Represent TFCU with key external partners, peer groups, and industry forums on matters of technology strategy, security, and innovation.
6. Maintain a professional businesslike appearance in accordance with TFCU's dress code policy.
7. Engage in behavior that aligns with the credit union's cultural beliefs.
KNOWLEDGE, SKILLS AND ABILITIES:
Education: Bachelor's degree in Information Technology, Computer Science, Business, Finance, or related field required. Master's degree or MBA with a technology or risk management focus preferred.
Experience: Ten (10) years of progressively responsible experience in Information Technology, with a minimum of seven (7) years in a technology leadership role, may substitute for a degree requirement when accompanied by active relevant certifications.
Preferred certifications include PMP, ITIL, CISSP, CISM, Microsoft 365 Administrator Expert (MS-102), Azure Solutions Architect Expert (AZ-305), Microsoft Cybersecurity Architect Expert (SC-100), TOGAF, or other industry-recognized technology, cybersecurity, cloud architecture, governance, or project management credentials. Experience leading technology operations in a financial institution or other highly regulated environment is strongly preferred.
Qualifications:
1. Advanced experience with network and infrastructure technologies (e.g., routing, switching, firewalls, cloud platforms, identity and access management, endpoint management).
2. Advanced knowledge of financial institution core systems and their operations, including batch processing, integrations, digital channels, and back-office applications.
3. Experience leading applications administration and software development, including systems integration, APIs, and data flows to support secure, scalable solutions.
4. Demonstrated experience overseeing IT operations, service delivery, incident management, change control, and problem management.
5. Working knowledge of cybersecurity and regulatory frameworks (e.g., NCUA, FFIEC, GLBA, NIST, CIS Controls), with the ability to lead a cyber risk function and manage technology and operational risk.
6. Proven ability to lead through change and uncertainty, translating complex technology and risk topics into clear decisions and actions for executives and staff.
7. Demonstrated strength in organizational design, role clarity, and talent development for technical teams, including performance management, coaching, and succession planning.
8. Proficiency in the English language, including sentence structure, proper grammar, and spelling of words.
9. Ability to communicate complex technical subjects in simple, business-focused language to a variety of audiences.
10. A valid driver's license and ability to drive a vehicle is required.
11. Availability to travel and/or work offsite and be available for business continuity or emergency response purposes via phone, email, or other electronic channels.
Availability: Monday through Friday with the ability to work holidays and off-hours, on-call when required. Frequently works offsite and will need to maintain contact via phone, email, or other electronic channels.
Physical Demands: The Physical Demands described here are representative of those that must be met by the person in this position to successfully perform the essential functions of the job with or without reasonable accommodation.
1. Sit, Stand, Walk and Bend: While performing the duties of this job, this position is regularly required to sit, stand, and walk inside an office building and TFCU branches. Bending is also sometimes required to reach low cabinets and drawers.
2. Use of Hands/Fingers: To operate a computer, keyboard, mouse, and other office machinery such as, but not limited to: printers, copy machines, and other equipment. Additionally, this position is frequently required to sit and reach with hands and arms.
3. Speech/Hearing: This position frequently communicates via phone and in person. Must be able to talk to/hear members and educate them on products and services offered at the credit union.
4. Lifting: The ability to occasionally lift up to 5 lbs. is required for this position.
Job descriptions are not intended and should not be construed to be exhaustive lists of all responsibilities, skills, efforts, and working conditions associated with a job. They are intended to be accurate reflections of those principal job elements essential for making fair pay decisions about the value of the job. This job description does not create or constitute the terms of a contract of employment, commitment, or guarantee of employment; TFCU is an "employment at will employer."
Equal Opportunity Employer
This employer is required to notify all applicants of their rights pursuant to federal employment laws. For further information, please review the Know Your Rights notice from the Department of Labor.
About Tucson Federal Credit Union
Sourced by ZipRecruiter
Industry
Finance and insurance
Company size
1,001 - 5,000 Employees
Headquarters location
Tucson, AZ, US
Year founded
1937