1

Cybersecurity Risk Management Jobs in Maine (NOW HIRING)

Cloud Security Architect

Westbrook, ME

$66.50 - $88.50/hr

Our cybersecurity and information security teams at IDEXX contribute to a more resilient, adaptable ... Assessments & Risk Management * Conduct cloud security assessments, threat modeling, and ...

... risk remediation, and broader cybersecurity practices. • Create and update technical ... managing endpoint administration tools such as Intune, NinjaOne, or similar platforms. • ...

... at risk -- so they can focus on taking their business to the next level. We know a diverse ... Train new and current cyber security analysts on existing or new technologies, new or existing ...

Our clients include large institutional investors such as investment advisors, asset managers ... Our services now include GIPS standards verification, cybersecurity and technology risk, regulatory ...

next page

Showing results 1-20

Cybersecurity Risk Management information

See Maine salary details

$55.2K

$128.7K

$180.1K

How much do cybersecurity risk management jobs pay per year?

As of Jun 21, 2026, the average yearly pay for cybersecurity risk management in Maine is $128,734.00, according to ZipRecruiter salary data. Most workers in this role earn between $107,500.00 and $145,200.00 per year, depending on experience, location, and employer.

What is the role of a risk manager in cybersecurity?

A cybersecurity risk manager identifies, assesses, and prioritizes security risks to an organization’s information systems. They develop strategies to mitigate threats, implement security controls, and ensure compliance with industry standards, often using tools like risk assessment frameworks and security audits. Their role is essential in protecting digital assets and supporting overall cybersecurity posture.

Is security risk management a good career?

Security risk management is a valuable career in cybersecurity, focusing on identifying and mitigating threats to organizational assets. It often requires knowledge of security frameworks, risk assessment tools, and certifications like CISSP or CISM. The field offers strong job growth, competitive salaries, and opportunities across various industries.

What are some common challenges faced by professionals in Cybersecurity Risk Management, and how can they be addressed?

Professionals in Cybersecurity Risk Management often encounter challenges such as keeping up with rapidly evolving cyber threats, balancing security needs with business objectives, and ensuring compliance with industry regulations. Addressing these challenges requires continuous learning, effective communication with stakeholders, and close collaboration with IT, legal, and business teams. Building strong partnerships across departments and investing in ongoing training can help mitigate these obstacles and support proactive risk management.

What is the difference between Cybersecurity Risk Management vs Cybersecurity Analyst?

AspectCybersecurity Risk ManagementCybersecurity Analyst
CertificationsCRISC, CISSP, CISMCompTIA Security+, CEH, CISSP
Work EnvironmentRisk assessment, policy development, strategic planningMonitoring security systems, incident response, vulnerability analysis
Employer & Industry UsageFinancial, healthcare, government, large enterprisesIT departments, cybersecurity firms, corporate security teams

Cybersecurity Risk Management focuses on identifying, assessing, and mitigating security risks at an organizational level, often involving policy creation and strategic planning. In contrast, a Cybersecurity Analyst primarily monitors security systems, responds to incidents, and analyzes vulnerabilities. Both roles require similar certifications but serve different functions within cybersecurity teams.

What are the key skills and qualifications needed to thrive in Cybersecurity Risk Management, and why are they important?

To thrive in Cybersecurity Risk Management, you need a solid understanding of information security principles, risk assessment methodologies, compliance standards, and typically a degree in cybersecurity or a related field. Familiarity with risk management frameworks (such as NIST or ISO 27001), security tools, and professional certifications like CISSP or CRISC is highly valued. Strong analytical thinking, effective communication, and problem-solving skills help professionals translate technical risks for non-technical stakeholders and foster collaboration. These competencies are crucial to proactively identifying threats, managing vulnerabilities, and ensuring organizational resilience in a rapidly evolving digital landscape.

What is cybersecurity risk management?

Cybersecurity risk management is the process of identifying, assessing, and prioritizing risks to an organization's digital assets and information systems. It involves implementing strategies and controls to minimize the impact of potential cyber threats, such as data breaches, malware, and unauthorized access. The goal is to balance security measures with business needs, ensuring sensitive information remains protected while maintaining operational efficiency. Effective risk management is ongoing, adapting to new threats and changes within the organization.

What is risk management in cyber security?

In cybersecurity risk management, professionals identify, assess, and prioritize potential security threats to an organization’s information systems. They implement strategies and controls to mitigate or accept risks, often using frameworks like NIST or ISO 27001, and may hold certifications such as CISSP or CISM to ensure effective risk handling.

Can you make $500,000 a year in cyber security?

Cybersecurity risk management professionals can potentially earn $500,000 or more annually, especially at senior levels, in leadership roles, or with extensive experience and specialized certifications like CISSP or CISM. High salaries are often associated with executive positions, consulting, or working in large organizations with complex security needs.
What job categories do people searching Cybersecurity Risk Management jobs in Maine look for? The top searched job categories for Cybersecurity Risk Management jobs in Maine are:
What cities in Maine are hiring for Cybersecurity Risk Management jobs? Cities in Maine with the most Cybersecurity Risk Management job openings:
Infographic showing various Cybersecurity Risk Management job openings in Maine as of June 2026, with employment types broken down into 92% Full Time, and 8% Contract. Highlights an 67% In-person, and 33% Remote job distribution, with an average salary of $128,734 per year, or $61.9 per hour.
Cloud Security Architect

$66.50 - $88.50/hr

Full-time

Medical, Dental, Vision, Retirement, PTO

Posted 6 days ago


IDEXX Laboratories rating

7.4

Company rating: 7.4 out of 10

Based on 54 frontline employees who took The Breakroom Quiz

60th of 103 rated laboratories


Job description

Our cybersecurity and information security teams at IDEXX contribute to a more resilient, adaptable, and security-aware enterprise prepared to navigate today's evolving threat landscape. We have complex, multi-dimensional programs across the organization that support all the technology needed to deliver products and solutions to customers - enabling them to focus on delivering high quality patient care.

IDEXX is seeking aCloud Security Architectto lead our multi-cloud security architecture across AWS, Azure, and GCP environments. This senior-level position will architect and implement cloud security posture management (CSPM) solutions, drive security standards enforcement, and partner with engineering teams to embed security controls directly into cloud deployment pipelines. You will play a critical role in protecting applications that serve our global veterinary diagnostics business while enabling development teams to move fast without compromising security.

This position reports to the Senior Manager of Product & Application Security and works closely with DevOps engineers and cloud platform owners across the organization.

In this role, you will be responsible for...

Cloud Security Architecture & CSPM

  • Architect, implement, and continuously improve cloud security posture management across AWS, Azure, and GCP environments supporting IDEXX products and applications
  • Lead the migration from AquaSec to CrowdStrike Falcon CSPM, ensuring continuity of visibility and compliance enforcement
  • Establish and maintain compliance with CIS Benchmarks Level 1 standards across all cloud platforms
  • Design monitoring and alerting strategies that surface actionable security gaps to both security and engineering teams

Infrastructure-as-Code Security

  • Implement automated security scanning and policy enforcement for Terraform, CloudFormation, and other IaC frameworks
  • Integrate tools like CrowdStrike Falcon, Checkov and Trivy into CI/CD pipelines to prevent misconfigurations before deployment
  • Develop policy-as-code frameworks that codify security requirements and enable self-service compliance

DevOps Partnership & Enablement

  • Embed security controls directly into cloud deployment pipelines using native platform capabilities and third-party tooling
  • Partner with DevOps teams to build secure-by-default infrastructure templates and golden paths
  • Conduct architecture reviews for new cloud services and deployment patterns
  • Translate complex security requirements into practical, actionable guidance for engineering teams

Security Assessments & Risk Management

  • Conduct cloud security assessments, threat modeling, and architecture reviews for critical workloads
  • Identify and prioritize security risks based on business impact, exploitability, and compensating controls
  • Work with product teams to implement mitigations that balance security effectiveness with operational feasibility

Tooling, Automation & Metrics

  • Manage and optimize cloud-native security tooling including CSPM, CNAPP, and secret scanning solutions
  • Build automation to reduce manual security work and improve consistency of controls
  • Establish metrics and reporting that demonstrate security posture improvement and compliance trends

What You Will Need to Succeed...

  • 7-10+ years of experience in information security with at least 5 years focused on cloud security architecture
  • Hands-on experience implementing and operating CSPM solutions in multi-cloud environments
  • Deep hands-on experience architecting security controls in AWS, Azure, and GCP production environments
  • Demonstrated proficiency with CSPM tools (CrowdStrike Falcon, Wiz, Prisma Cloud, or similar platforms)
  • Strong knowledge of CIS Benchmarks, cloud security frameworks (CSA CCM, NIST), and compliance standards (SOC 2, GDPR, HIPAA)
  • Expertise in Infrastructure-as-Code security scanning and policy enforcement (Checkov, Trivy, Terraform Sentinel, OPA)
  • Experience integrating security controls into CI/CD pipelines (GitHub Actions, GitLab CI, Jenkins, Azure DevOps)
  • Solid understanding of container security, Kubernetes security, and serverless security patterns
  • Proficiency with scripting and automation (Python, Bash, PowerShell)
  • Proven track record architecting security controls for large-scale cloud deployments
  • Experience with CIS Benchmarks implementation and compliance enforcement
  • Strong understanding of cloud-native architecture patterns and security implications
  • Bachelor's degree in Computer Science, Information Security, or equivalent practical experience
  • Proven ability to design security architectures that scale across large, complex cloud environments
  • Track record of successfully partnering with DevOps and engineering teams to implement security without blocking delivery
  • Experience driving security tool migrations and consolidations with minimal disruption
  • Strong analytical skills to assess risk, prioritize work, and make pragmatic security decisions
  • Ability to translate technical security concepts into language that resonates with both technical and business stakeholders
  • Excellent written and verbal communication skills; able to produce concise architecture documentation and executive summaries
  • Demonstrated ability to influence engineering teams through technical credibility rather than authority
  • Comfortable presenting security recommendations to senior technical leadership and defending design decisions
  • Self-directed and outcome-focused; able to identify problems, propose solutions, and drive them to completion with minimal supervision

Preferred

  • Relevant cloud security certifications (AWS Certified Security - Specialty, Azure Security Engineer Associate, GCP Professional Cloud Security Engineer, CCSP)
  • Experience with CrowdStrike Falcon CSPM or other leading CSPM/CNAPP platforms
  • Background in DevSecOps, SRE, or cloud platform engineering
  • Familiarity with OWASP SAMM or similar security maturity frameworks
  • Prior experience in regulated industries (healthcare, financial services) with SOC 2, HIPAA, or PCI-DSS compliance requirements
  • Contributions to open-source security tools or cloud security communities

What you can expect from us:
Base annual salary target: $120000 - $150000 (yes, we do have flexibility if needed)
Opportunity for annual cash bonus
Health / Dental / Vision Benefits Day-One
5% matching 401k
Additional benefits including but not limited to financial support, pet insurance, mental health resources, volunteer paid days off, employee stock program, foundation donation matching, and much more!

Why IDEXX?

We're proud of the work we do, because our work matters. An innovation leader in every industry we serve, we follow our Purpose and Guiding Principles to help pet owners worldwide keep their companion animals healthy and happy, to ensure safe drinking water for billions, and to help farmers protect livestock and poultry from diseases. We have customers in over 175 countries and a global workforce of over 10,000 talented people.
So, what does that mean for you? We enrich the livelihoods of our employees with a positive and respectful work culture that embraces challenges and encourages learning and discovery. At IDEXX, you will be supported by competitive compensation, incentives, and benefits while enjoying purposeful work that drives improvement.
Let's pursue what matters together.

IDEXX values a diverse workforce and workplace and strongly encourages women, people of color, LGBTQ+ individuals, people with disabilities, members of ethnic minorities, foreign-born residents, and veterans to apply.
IDEXX is an equal opportunity employer. Applicants will not be discriminated against because of race, color, creed, sex, sexual orientation, gender identity or expression, age, religion, national origin, citizenship status, disability, ancestry, marital status, veteran status, medical condition, or any protected category prohibited by local, state, or federal laws.

#LI-EV1


What IDEXX Laboratories employees say

Pay

Benefits

Hours and flexibility

Workplace

Get the full story on Breakroom