1

Cybersecurity Risk Management Jobs in Brea, CA (NOW HIRING)

Director of IT Security (Remote US)

Irvine, CA ยท Remote

  • Medical

  • Dental

  • Vision

  • Life

  • Retirement

  • PTO

Risk Management and Threat Assessments: * Conduct ongoing enterprise-wide cybersecurity risk assessments across infrastructure, endpoints, applications and business processes. * Build and maintain ...

Director of IT Security (Remote US)

Irvine, CA ยท Remote

$190K/yr

  • Medical

  • Dental

  • Vision

  • Life

  • Retirement

  • PTO

Risk Management and Threat Assessments: * Conduct ongoing enterprise-wide cybersecurity risk assessments across infrastructure, endpoints, applications and business processes. * Build and maintain ...

Director of IT Security (Remote US)

Los Angeles, CA ยท Remote

  • Medical

  • Dental

  • Vision

  • Life

  • Retirement

  • PTO

Risk Management and Threat Assessments: * Conduct ongoing enterprise-wide cybersecurity risk assessments across infrastructure, endpoints, applications and business processes. * Build and maintain ...

Principal Cybersecurity Architect

Irvine, CA ยท On-site

$170K - $210K/yr

  • Medical

  • Dental

  • Vision

  • Life

  • Retirement

  • PTO

Collaborate with Quality, Regulatory, and Risk Management teams to support cybersecurity compliance and product lifecycle security activities. * Serve as a trusted advisor to engineering leadership ...

Principal Cybersecurity Architect

Irvine, CA ยท On-site

$170K - $210K/yr

  • Medical

  • Dental

  • Vision

  • Life

  • Retirement

  • PTO

Collaborate with Quality, Regulatory, and Risk Management teams to support cybersecurity compliance and product lifecycle security activities. * Serve as a trusted advisor to engineering leadership ...

New

Showing results 21-40

Cybersecurity Risk Management information

See Brea, CA salary details

$59K

$137.7K

$192.7K

How much do cybersecurity risk management jobs pay per year?

As of Aug 17, 2026, the average yearly pay for cybersecurity risk management in Brea, CA is $137,730.00, according to ZipRecruiter salary data. Most workers in this role earn between $115,000.00 and $155,400.00 per year, depending on experience, location, and employer.

What is cybersecurity risk management?

Cybersecurity risk management is the process of identifying, assessing, and prioritizing risks to an organization's digital assets and information systems. It involves implementing strategies and controls to minimize the impact of potential cyber threats, such as data breaches, malware, and unauthorized access. The goal is to balance security measures with business needs, ensuring sensitive information remains protected while maintaining operational efficiency. Effective risk management is ongoing, adapting to new threats and changes within the organization.

What are the key skills and qualifications needed to thrive in cybersecurity risk management, and why are they important?

To thrive in Cybersecurity Risk Management, you need a solid understanding of information security principles, risk assessment methodologies, compliance standards, and typically a degree in cybersecurity or a related field. Familiarity with risk management frameworks (such as NIST or ISO 27001), security tools, and professional certifications like CISSP or CRISC is highly valued. Strong analytical thinking, effective communication, and problem-solving skills help professionals translate technical risks for non-technical stakeholders and foster collaboration. These competencies are crucial to proactively identifying threats, managing vulnerabilities, and ensuring organizational resilience in a rapidly evolving digital landscape.

What are some common challenges faced by professionals in cybersecurity risk management, and how can they be addressed?

Professionals in Cybersecurity Risk Management often encounter challenges such as keeping up with rapidly evolving cyber threats, balancing security needs with business objectives, and ensuring compliance with industry regulations. Addressing these challenges requires continuous learning, effective communication with stakeholders, and close collaboration with IT, legal, and business teams. Building strong partnerships across departments and investing in ongoing training can help mitigate these obstacles and support proactive risk management.

What is the difference between Cybersecurity Risk Management vs Cybersecurity Analyst?

AspectCybersecurity Risk ManagementCybersecurity Analyst
CertificationsCRISC, CISSP, CISMCompTIA Security+, CEH, CISSP
Work EnvironmentRisk assessment, policy development, strategic planningMonitoring security systems, incident response, vulnerability analysis
Employer & Industry UsageFinancial, healthcare, government, large enterprisesIT departments, cybersecurity firms, corporate security teams

Cybersecurity Risk Management focuses on identifying, assessing, and mitigating security risks at an organizational level, often involving policy creation and strategic planning. In contrast, a Cybersecurity Analyst primarily monitors security systems, responds to incidents, and analyzes vulnerabilities. Both roles require similar certifications but serve different functions within cybersecurity teams.

What are popular job titles related to Cybersecurity Risk Management jobs in Brea, CA?

For Cybersecurity Risk Management jobs in Brea, CA, the most frequently searched job titles are:

What job categories do people searching Cybersecurity Risk Management jobs in Brea, CA look for?

The top searched job categories for Cybersecurity Risk Management jobs in Brea, CA are:

What cities near Brea, CA are hiring for Cybersecurity Risk Management jobs?

Cities near Brea, CA with the most Cybersecurity Risk Management job openings:

Sr. Manager, Information Security

First Entertainment Credit Union

Los Angeles, CA โ€ข Hybrid

$130K - $170K/yr

Full-time

Posted 11 days ago


Job description

First Entertainment Credit Union is looking for a Sr. Manager, Information Security who is responsible for leading the organization's information security program to protect information assets, technology infrastructure, and customer data. This role develops security strategy, oversees cybersecurity operations, governance, risk, and compliance (GRC), ensures regulatory compliance, manages security risks, and partners across the organization to strengthen the overall security posture.

The Sr. Manager will serve as a trusted advisor on cybersecurity strategy, emerging threats, risk exposure, and security investments. They will provide advice on security architecture, technology implementations, cloud adoption, and security requirements for new systems and initiatives. The role maintains and enhances cyber resilience through business continuity planning, disaster recovery management, cyber incident response planning, ransomware preparedness exercises, tabletop testing, and recovery readiness.

This is a full-time hybrid in Hollywood, CA and reports to the VP, Enterprise Risk Management. For candidates in California, the targeted pay range is between $130,000 to $170,000.

Responsibilities

  • Develop, execute, and continuously mature the enterprise Information Security Program, including security strategy, governance frameworks, policies, standards, procedures, roadmaps, and annual planning initiatives.
  • Establish and maintain security governance practices aligned with organizational objectives and provide cybersecurity reporting, metrics, risk insights, and strategic recommendations to executive leadership and the Board.
  • Lead enterprise cyber risk management activities, including risk assessments, cyber risk register ownership, emerging threat analysis, risk treatment planning, and integration with the enterprise risk management framework.
  • Oversee security operations, including security monitoring, incident detection, SOC relationships, incident response coordination, forensic investigations, vulnerability remediation, and post-incident corrective actions.
  • Direct identity and access management (IAM) programs, including least-privilege access controls, privileged access management, user access certifications, and segregation of duties compliance.
  • Lead vulnerability and threat management programs, including vulnerability scanning, pen test, threat intelligence review, risk-based remediation prioritization, and patch management oversight.
  • Oversee third-party cybersecurity risk management, including vendor assessments, SOC report reviews, cloud security evaluations, ongoing risk monitoring, and remediation of control gaps.
  • Ensure compliance with applicable cybersecurity laws, regulations, frameworks, and industry standards, including but not limited to NCUA, FFIEC, GLBA, PCI DSS, NIST, CIS Controls.
  • Lead cybersecurity audits, exams, and regulatory readiness efforts, including regulatory requests, corrective action tracking, policy exception management, risk acceptance processes, and control assessments.
  • Maintain and enhance cyber resilience through business continuity planning, disaster recovery coordination, cyber incident response planning, ransomware preparedness exercises, tabletop testing, and recovery readiness.
  • Develop and promote enterprise security awareness and education programs, including phishing simulations, executive cybersecurity education, and initiatives that foster a security-first culture.
  • Develop and maintain cybersecurity KRIs, KPIs, dashboards, and reporting processes while administering and optimizing Governance, Risk, and Compliance (GRC) platforms and tools.

At First Entertainment, your role and every role are essential to our Mission [We build lifelong financial relationships with the people in entertainment based on a deep understanding of how they live and work], Core Values [ Members First + Ownership + Integrity + Innovation + Inclusivity + One Team], and we expect you to uphold them.

Requirements

ย 

  • Bachelor's degree in Information Security, Cybersecurity, Computer Science, Information Systems, or a related field. A Master's degree preferred but not required.
  • 8+ years of progressive information security, cybersecurity, risk management, or IT governance experience, including 5+ years in a leadership or people management role.
  • Strong knowledge of cybersecurity frameworks, standards, and regulations, including NIST Cybersecurity Framework, NIST 800-53, FFIEC guidance, GLBA, CIS Controls, ISO 27001, and applicable financial services regulatory requirements.
  • Professional certifications such as CISSP, CISM, CRISC, CISA, CGEIT, CCSP, or equivalent preferred but not required.
  • Prior experience within the banking, credit union, financial services, fintech, or other highly regulated industries preferred but not required.
  • Experience conducting enterprise cyber risk assessments, maintaining risk registers, developing risk treatment plans, and integrating cyber risk into enterprise risk management programs.
  • Proficiency in security operations, vulnerability management, threat intelligence, penetration testing, and third-party cybersecurity risk management programs.
  • Strong understanding of identity and access management, privileged access controls, segregation of duties, and security governance best practices.
  • Experience reviewing technology implementations, cloud environments, network architectures, and system designs to identify and mitigate security risks.
  • Experience supporting business continuity, disaster recovery, cyber resilience planning, tabletop exercises, and ransomware preparedness activities.
  • Exceptional written, verbal, and presentation skills, with the ability to effectively communicate across all audience levels.
First Entertainment Credit Union does not utilize artificial intelligence (AI) tools in any part of the hiring process. This includes reviewing applications, analyzing resumes, or evaluating candidate responses. All hiring decisions are made exclusively by our hiring teams, in compliance with applicable employment laws and regulations to ensure fairness, transparency, and equal opportunity.
apply for this job