Enterprise Risk Management Lead the enterprise cybersecurity risk management program, ensuring ... analytical, problem-solving, and organizational leadership capabilities. Experience driving ...
Enterprise Risk Management Lead the enterprise cybersecurity risk management program, ensuring ... analytical, problem-solving, and organizational leadership capabilities. Experience driving ...
Enterprise Risk Management Lead the enterprise cybersecurity risk management program, ensuring ... analytical, problem-solving, and organizational leadership capabilities. Experience driving ...
Enterprise Risk Management Lead the enterprise cybersecurity risk management program, ensuring ... analytical, problem-solving, and organizational leadership capabilities. Experience driving ...
Cybersecurity Consultant
San Diego, CA · On-site
... resilience through risk management, governance, compliance, and security advisory services ... Conduct risk assessments, business impact analyses, tabletop exercises, and incident response ...
Cybersecurity Consultant
San Diego, CA · On-site
... resilience through risk management, governance, compliance, and security advisory services ... Conduct risk assessments, business impact analyses, tabletop exercises, and incident response ...
Digital Risk Advisory & Cybersecurity Associate Attorney
Orange, CA · On-site
$245K - $345K/yr
... analytical, and communication skills. * Strong project management skills and the ability to manage ... Risk management * Familiarity with privacy and cybersecurity laws such as: * CCPA * GDPR * GLBA
Quick apply
Digital Risk Advisory & Cybersecurity Associate Attorney
Orange, CA · On-site
$245K - $345K/yr
... analytical, and communication skills. * Strong project management skills and the ability to manage ... Risk management * Familiarity with privacy and cybersecurity laws such as: * CCPA * GDPR * GLBA
Cyber Security Controls Assessor
San Francisco, CA · Hybrid
$104K - $145K/yr
... risk management methodologies * Experience with regulatory compliance programs and audit support * Strong analytical, communication, and technical documentation skills * Ability to communicate ...
Quick apply
Cyber Security Controls Assessor
San Francisco, CA · Hybrid
$104K - $145K/yr
... risk management methodologies * Experience with regulatory compliance programs and audit support * Strong analytical, communication, and technical documentation skills * Ability to communicate ...
Cyber Security Controls Assessor
Los Angeles, CA · Hybrid
$104K - $145K/yr
... risk management methodologies * Experience with regulatory compliance programs and audit support * Strong analytical, communication, and technical documentation skills * Ability to communicate ...
Quick apply
Cyber Security Controls Assessor
Los Angeles, CA · Hybrid
$104K - $145K/yr
... risk management methodologies * Experience with regulatory compliance programs and audit support * Strong analytical, communication, and technical documentation skills * Ability to communicate ...
Cyber Security Controls Assessor
Sacramento, CA · Hybrid
$104K - $145K/yr
... risk management methodologies * Experience with regulatory compliance programs and audit support * Strong analytical, communication, and technical documentation skills * Ability to communicate ...
Quick apply
Cyber Security Controls Assessor
Sacramento, CA · Hybrid
$104K - $145K/yr
... risk management methodologies * Experience with regulatory compliance programs and audit support * Strong analytical, communication, and technical documentation skills * Ability to communicate ...
Cybersecurity Engineer
El Segundo, CA · On-site
$115K - $145K/yr
... program management, and strategic planning-helping teams deliver resilient capability to the ... The position combines technical cybersecurity analysis, risk assessment, system evaluation, and ...
Cybersecurity Engineer
El Segundo, CA · On-site
$115K - $145K/yr
... program management, and strategic planning-helping teams deliver resilient capability to the ... The position combines technical cybersecurity analysis, risk assessment, system evaluation, and ...
Cybersecurity Engineer
El Segundo, CA · On-site
$115K - $145K/yr
... program management, and strategic planning-helping teams deliver resilient capability to the ... The position combines technical cybersecurity analysis, risk assessment, system evaluation, and ...
Cybersecurity Engineer
El Segundo, CA · On-site
$115K - $145K/yr
... program management, and strategic planning-helping teams deliver resilient capability to the ... The position combines technical cybersecurity analysis, risk assessment, system evaluation, and ...
Digital Risk Advisory & Cybersecurity Associate Attorney
Los Angeles, CA · On-site
$245K - $345K/yr
... analytical, and communication skills. * Strong project management skills and the ability to manage ... Risk management * Familiarity with privacy and cybersecurity laws such as: * CCPA * GDPR * GLBA
Quick apply
Digital Risk Advisory & Cybersecurity Associate Attorney
Los Angeles, CA · On-site
$245K - $345K/yr
... analytical, and communication skills. * Strong project management skills and the ability to manage ... Risk management * Familiarity with privacy and cybersecurity laws such as: * CCPA * GDPR * GLBA
Digital Risk Advisory & Cybersecurity Associate Attorney
San Francisco, CA · On-site
$245K - $345K/yr
... analytical, and communication skills. * Strong project management skills and the ability to manage ... Risk management * Familiarity with privacy and cybersecurity laws such as: * CCPA * GDPR * GLBA
Quick apply
Digital Risk Advisory & Cybersecurity Associate Attorney
San Francisco, CA · On-site
$245K - $345K/yr
... analytical, and communication skills. * Strong project management skills and the ability to manage ... Risk management * Familiarity with privacy and cybersecurity laws such as: * CCPA * GDPR * GLBA
Industry/Sector Not Applicable Specialism Cybersecurity & Privacy Management Level Manager ... In this role, you will analyze and identify the linkages and interactions between the component ...
Industry/Sector Not Applicable Specialism Cybersecurity & Privacy Management Level Manager ... In this role, you will analyze and identify the linkages and interactions between the component ...
Cybersecurity Engineer
El Segundo, CA · On-site
$115K - $145K/yr
... program management, and strategic planning--helping teams deliver resilient capability to the ... The position combines technical cybersecurity analysis, risk assessment, system evaluation, and ...
Cybersecurity Engineer
El Segundo, CA · On-site
$115K - $145K/yr
... program management, and strategic planning--helping teams deliver resilient capability to the ... The position combines technical cybersecurity analysis, risk assessment, system evaluation, and ...
Cybersecurity Engineer
El Segundo, CA · On-site
$115K - $145K/yr
... program management, and strategic planning--helping teams deliver resilient capability to the ... The position combines technical cybersecurity analysis, risk assessment, system evaluation, and ...
Cybersecurity Engineer
El Segundo, CA · On-site
$115K - $145K/yr
... program management, and strategic planning--helping teams deliver resilient capability to the ... The position combines technical cybersecurity analysis, risk assessment, system evaluation, and ...
Cybersecurity Engineer
El Segundo, CA · Hybrid
$115K - $145K/yr
... program management, and strategic planning--helping teams deliver resilient capability to the ... The position combines technical cybersecurity analysis, risk assessment, system evaluation, and ...
Cybersecurity Engineer
El Segundo, CA · Hybrid
$115K - $145K/yr
... program management, and strategic planning--helping teams deliver resilient capability to the ... The position combines technical cybersecurity analysis, risk assessment, system evaluation, and ...
On our team, you'll troubleshoot and analyze complex challenges for customers using your knowledge of cybersecurity policy, networks and system infrastructure, and risk management. You'll use your ...
On our team, you'll troubleshoot and analyze complex challenges for customers using your knowledge of cybersecurity policy, networks and system infrastructure, and risk management. You'll use your ...
DoD Cybersecurity Engineer & RMF Risk Analyst
San Diego, CA · On-site
$69K - $158K/yr
A security solutions firm is seeking a Cybersecurity Engineer and Risk Analyst in San Diego ... IT systems for government agencies, focusing on risk management and security controls.
DoD Cybersecurity Engineer & RMF Risk Analyst
San Diego, CA · On-site
$69K - $158K/yr
A security solutions firm is seeking a Cybersecurity Engineer and Risk Analyst in San Diego ... IT systems for government agencies, focusing on risk management and security controls.
The Network Security Risk & Compliance Analyst serves as the primary liaison between Network ... The ideal candidate possesses a blend of cybersecurity governance, risk management, compliance ...
The Network Security Risk & Compliance Analyst serves as the primary liaison between Network ... The ideal candidate possesses a blend of cybersecurity governance, risk management, compliance ...
Cybersecurity Engineer and Risk Analyst The Opportunity: Are you looking for an opportunity to ... Using yourknowledgeandexperiencein Risk Management Framework (RMF), you'll assess security threats ...
Cybersecurity Engineer and Risk Analyst The Opportunity: Are you looking for an opportunity to ... Using yourknowledgeandexperiencein Risk Management Framework (RMF), you'll assess security threats ...
Cybersecurity Consultant
Roseville, CA · On-site
$118K - $133K/yr
This role brings cybersecurity, risk management, and regulatory expertise to consulting engagements ... Strong analytical, problem-solving, prioritization, and professional judgment skills. * Strong ...
Cybersecurity Consultant
Roseville, CA · On-site
$118K - $133K/yr
This role brings cybersecurity, risk management, and regulatory expertise to consulting engagements ... Strong analytical, problem-solving, prioritization, and professional judgment skills. * Strong ...
Cybersecurity Risk Management Analyst information
What does a Cybersecurity Risk Management Analyst do?
What are some typical challenges a Cybersecurity Risk Management Analyst faces when working with cross-functional teams?
What are the key skills and qualifications needed to thrive as a Cybersecurity Risk Management Analyst, and why are they important?
What is the difference between Cybersecurity Risk Management Analyst vs Cybersecurity Analyst?
| Aspect | Cybersecurity Risk Management Analyst | Cybersecurity Analyst |
|---|---|---|
| Certifications | CompTIA Security+, CISSP, CISM | CompTIA Security+, CEH, CISSP |
| Work Environment | Focus on risk assessment, policy development, and compliance | Focus on threat detection, incident response, and system monitoring |
| Employer & Industry Usage | Used in organizations prioritizing risk mitigation and compliance | Used across various sectors for security operations and monitoring |
While both roles involve cybersecurity, the Cybersecurity Risk Management Analyst primarily assesses and manages risks, ensuring compliance and policy adherence. In contrast, the Cybersecurity Analyst concentrates on identifying threats, monitoring security systems, and responding to incidents. Both roles are essential but focus on different aspects of cybersecurity defense.
What are popular job titles related to Cybersecurity Risk Management Analyst jobs in California?
For Cybersecurity Risk Management Analyst jobs in California, the most frequently searched job titles are:
What job categories do people searching Cybersecurity Risk Management Analyst jobs in California look for?
The top searched job categories for Cybersecurity Risk Management Analyst jobs in California are:

IT Sr Director, Compliance and Risk Governance
Sunnyvale, CA • On-site
Full-time
Posted 18 days ago
Job description
It started with a simple idea: what if surgery could be less invasive and recovery less painful? Nearly 30 years later, that question still fuels everything we do at Intuitive. As a global leader in robotic-assisted surgery and minimally invasive care, our technologies-like the da Vinci surgical system and Ion-have transformed how care is delivered for millions of patients worldwide.
We're a team of engineers, clinicians, and innovators united by one purpose: to make surgery smarter, safer, and more human. Every day, our work helps care teams perform with greater precision and patients recover faster, improving outcomes around the world.
The problems we solve demand creativity, rigor, and collaboration. The work is challenging, but deeply meaningful-because every improvement we make has the potential to change a life.
If you're ready to contribute to something bigger than yourself and help transform the future of healthcare, you'll find your purpose here.
Job Description
Primary Function of Position:
Responsible for providing strategic leadership and oversight of the enterprise
Cybersecurity Governance, Risk, and Compliance (GRC) program. This role
establishes the vision, operating model, and governance framework necessary to
effectively identify, assess, manage, and communicate cybersecurity and
technology risks across the organization. Serves as a trusted advisor to senior
leadership, business stakeholders, and technology teams, ensuring that
cybersecurity risk management practices align with organizational objectives,
regulatory requirements, and industry best practices. This leader drives a risk-
informed culture and enables the business to innovate securely while maintaining
compliance and operational resilience.
Roles & Responsibilities
Cybersecurity Governance
Define, implement, and continuously mature the enterprise cybersecurity
governance framework, including policies, standards, procedures, and
oversight mechanisms.
Establish strategic direction for cybersecurity governance, ensuring
alignment with corporate objectives, risk appetite, and business priorities.
Lead governance forums, steering committees, and executive reviews to
drive accountability and informed decision-making.
Develop and monitor key performance indicators (KPIs), key risk
indicators (KRIs), and executive dashboards that measure program
effectiveness and organizational risk posture.
Drive governance modernization initiatives through automation, process
optimization, and data-driven decision support.
Enterprise Risk Management
Lead the enterprise cybersecurity risk management program, ensuring
risks are identified, assessed, prioritized, mitigated, and monitored
effectively.
Develop risk assessment methodologies and reporting frameworks that
provide actionable insights to executive leadership.
Partner with business and technology leaders to implement risk mitigation
strategies that balance security, operational efficiency, and business
objectives.
Facilitate enterprise-level risk discussions and support
strategic decision-making by translating technical and cyber risks into
business-relevant impacts.
Compliance Oversight
Establish and maintain programs to ensure compliance with applicable
regulations, standards, and industry frameworks, including ISO 27001,
ISO 27036, NIST Cybersecurity Framework (CSF), as well as other
relevant frameworks such as AI risk management.
Lead internal and external audits, assessments, and regulatory reviews.
Ensure remediation activities are effectively managed and tracked through
closure.
Monitor emerging regulatory requirements and industry developments,
advising leadership on compliance obligations and risk implications.
Third-Party Risk Management
Establish and oversee governance processes for evaluating and
monitoring third-party cybersecurity and technology risks.
Collaborate with Procurement, Legal, Privacy, and business stakeholders
to assess vendor security posture and contractual risk requirements.
Drive continuous improvement of supplier risk management practices to
support organizational resilience and compliance objectives.
Engagement & Business Partnership
Serve as key advisor to senior leadership on cybersecurity
risk, governance, and compliance matters.
Provide clear, concise, and impactful reporting to executive leadership and
governance bodies.
Influence strategic business initiatives by integrating security, risk, and
compliance considerations into planning and execution activities.
Foster strong partnerships across business functions to promote risk-
aware decision-making and regulatory readiness.
Leadership & Organizational Development
Build, lead, and develop a high-performing team of cybersecurity
governance, risk, and compliance professionals.
Establish organizational goals, resource strategies, and performance
expectations aligned with enterprise priorities.
Manage departmental budgets, strategic planning activities, and program
investments.
Champion a culture of accountability, transparency, continuous
improvement, and risk awareness throughout the organization
Qualifications
Skills, Experience, Education, & Training:
Bachelor's degree in Cybersecurity, Information Technology, Information
Systems, Computer Science, Business Administration, or a related
discipline.
12+ years of progressive leadership experience in
cybersecurity, information security, governance, risk management,
compliance, or related disciplines.
7+ years of experience leading enterprise-scale cybersecurity GRC
programs and teams.
Demonstrated success developing and executing enterprise governance
and risk management strategies within complex, highly regulated
environments.
Experience presenting cybersecurity risk, compliance, and governance
topics to executive leadership, senior management, and governance
committees.
Proven track record of leading external audits, regulatory assessments,
and compliance initiatives.
Deep expertise in cybersecurity governance, enterprise risk management,
regulatory compliance, and industry frameworks.
Strong understanding of cybersecurity standards and frameworks,
including ISO 27001, ISO 27036, ISO 42001, NIST CSF, NIST AI RMF,
CSA AISMM, and related control frameworks.
Exceptional executive communication, stakeholder management, and
influencing skills.
Ability to translate complex technical concepts into clear business-focused
recommendations
Strong strategic thinking, analytical, problem-solving, and
organizational leadership capabilities.
Experience driving organizational transformation, process modernization,
and program maturity initiatives.
Preferred certifications:
o CISSP
o CISM
o CRISC
o CISA
Additional Information
Due to the nature of our business and the role, please note that Intuitive and/or your customer(s) may require that you show current proof of vaccination against certain diseases including COVID-19. Details can vary by role.
Intuitive is an Equal Opportunity Employer. We provide equal employment opportunities to all qualified applicants and employees, and prohibit discrimination and harassment of any type, without regard to race, sex, pregnancy, sexual orientation, gender identity, national origin, color, age, religion, protected veteran or disability status, genetic information or any other status protected under federal, state, or local applicable laws.
Mandatory Notices
U.S. Export Controls Disclaimer: In accordance with the U.S. Export Administration Regulations (15 CFR §743.13(b)), some roles at Intuitive Surgical may be subject to U.S. export controls for prospective employeeswho are nationals from countries currently on embargo or sanctions status.
Certain information you provide as part of the application will be used for purposes of determining whether Intuitive Surgical will need to (i) obtain an export license from the U.S. Government on your behalf (note: the government's licensing process can take 3 to 6+ months) or (ii) implement a Technology Control Plan ("TCP") (note: typically adds 2 weeks to the hiring process).
For any Intuitive role subject to export controls, final offers are contingent upon obtaining an approved export license and/or an executed TCP prior to the prospective employee'sstart date, which may or may not be flexible, and within a timeframe that does not unreasonably impede the hiring need. If applicable, candidates will be notified and instructed on any requirements for these purposes.
We will consider for employment qualified applicants with arrest and conviction records in accordance with fair chance laws.
Preference will be given to qualified candidates who do not reside, or plan to reside, in Alabama, Arkansas, Delaware, Florida, Indiana, Iowa, Louisiana, Maryland, Mississippi, Missouri, Oklahoma, Pennsylvania, South Carolina, or Tennessee.
This position may be filled at a different job level than listed here depending on
business need and/or on the selected candidate's experience, knowledge and skills.
Compensation will be based primarily on the job level at which the role is filled and the
candidate's qualifications, consistent with applicable law.
We provide market-competitive compensation packages, inclusive of base pay, incentives, benefits, and equity. It would not be typical for someone to be hired at the top end of range for the role, as actual pay will be determined based on several factors, including experience, skills, and qualifications. The target compensation ranges are listed.