1

Cybersecurity Risk Management Jobs in Draper, UT

We are looking for an experienced GRC Security Manager to lead cybersecurity governance, risk, and compliance efforts for a health-focused organization in West Valley City, Utah. This position will ...

A Master's degree in Cybersecurity, Risk Management, or related fields is a plus. Certifications (preferred or required): Certified Information Systems Auditor (CISA) Certified Information Security ...

Sr. IT Security Engineer

Draper, UT · Hybrid

$100K - $130K/yr

... management program through assessment, prioritization, tracking, and remediation validation * Collaborate with system owners to remediate vulnerabilities and reduce cybersecurity risk * Analyze ...

... risk management, protect critical systems, and advance a resilient security posture that supports ... Shape and oversee the organization's cybersecurity strategy, long-term roadmap, and policy ...

Cyber Security Tutor

Provo, UT · Remote

$18 - $40/hr

Emphasizes a systematic approach to security assessment and connects cybersecurity to business risk management, compliance requirements, and ethical computing practices. * Curriculum Awareness ...

... an exceptional Cybersecurity Engineer . About RainFocus RainFocus cares about its employees ... Risk & Change Management: Own and conduct system impact analyses for proposed changes, represent ...

next page

Showing results 1-20

Cybersecurity Risk Management information

See Draper, UT salary details

$53.3K

$124.3K

$173.9K

How much do cybersecurity risk management jobs pay per year?

As of Aug 21, 2026, the average yearly pay for cybersecurity risk management in Draper, UT is $124,299.00, according to ZipRecruiter salary data. Most workers in this role earn between $103,800.00 and $140,200.00 per year, depending on experience, location, and employer.

What is cybersecurity risk management?

Cybersecurity risk management is the process of identifying, assessing, and prioritizing risks to an organization's digital assets and information systems. It involves implementing strategies and controls to minimize the impact of potential cyber threats, such as data breaches, malware, and unauthorized access. The goal is to balance security measures with business needs, ensuring sensitive information remains protected while maintaining operational efficiency. Effective risk management is ongoing, adapting to new threats and changes within the organization.

What are the key skills and qualifications needed to thrive in cybersecurity risk management, and why are they important?

To thrive in Cybersecurity Risk Management, you need a solid understanding of information security principles, risk assessment methodologies, compliance standards, and typically a degree in cybersecurity or a related field. Familiarity with risk management frameworks (such as NIST or ISO 27001), security tools, and professional certifications like CISSP or CRISC is highly valued. Strong analytical thinking, effective communication, and problem-solving skills help professionals translate technical risks for non-technical stakeholders and foster collaboration. These competencies are crucial to proactively identifying threats, managing vulnerabilities, and ensuring organizational resilience in a rapidly evolving digital landscape.

What are some common challenges faced by professionals in cybersecurity risk management, and how can they be addressed?

Professionals in Cybersecurity Risk Management often encounter challenges such as keeping up with rapidly evolving cyber threats, balancing security needs with business objectives, and ensuring compliance with industry regulations. Addressing these challenges requires continuous learning, effective communication with stakeholders, and close collaboration with IT, legal, and business teams. Building strong partnerships across departments and investing in ongoing training can help mitigate these obstacles and support proactive risk management.

What is the difference between Cybersecurity Risk Management vs Cybersecurity Analyst?

AspectCybersecurity Risk ManagementCybersecurity Analyst
CertificationsCRISC, CISSP, CISMCompTIA Security+, CEH, CISSP
Work EnvironmentRisk assessment, policy development, strategic planningMonitoring security systems, incident response, vulnerability analysis
Employer & Industry UsageFinancial, healthcare, government, large enterprisesIT departments, cybersecurity firms, corporate security teams

Cybersecurity Risk Management focuses on identifying, assessing, and mitigating security risks at an organizational level, often involving policy creation and strategic planning. In contrast, a Cybersecurity Analyst primarily monitors security systems, responds to incidents, and analyzes vulnerabilities. Both roles require similar certifications but serve different functions within cybersecurity teams.

What are popular job titles related to Cybersecurity Risk Management jobs in Draper, UT?

For Cybersecurity Risk Management jobs in Draper, UT, the most frequently searched job titles are:

What job categories do people searching Cybersecurity Risk Management jobs in Draper, UT look for?

The top searched job categories for Cybersecurity Risk Management jobs in Draper, UT are:

What cities near Draper, UT are hiring for Cybersecurity Risk Management jobs?

Cities near Draper, UT with the most Cybersecurity Risk Management job openings:

Infographic showing various Cybersecurity Risk Management job openings in Draper, UT as of August 2026, with employment types broken down into 1% As Needed, 83% Full Time, 13% Part Time, and 3% Contract. Highlights an 87% Physical, 3% Hybrid, and 10% Remote job distribution, with an average salary of $124,299 per year, or $59.8 per hour.

Manager of Cybersecurity GRC

Kforce Technology Staffing

Salt Lake City, UT • On-site

$107K - $145K/yr

Other

Medical, Dental, Vision, Life, Retirement, PTO

Posted 20 days ago


Job description

RESPONSIBILITIES:
Kforce's client in Salt Lake City, UT is seeking an experienced Cybersecurity Governance, Risk & Compliance (GRC) Manager to lead enterprise cybersecurity risk management, compliance initiatives, and governance programs. This individual will play a key role in strengthening the organization's security posture by overseeing risk assessments, policy development, regulatory compliance efforts, vendor security reviews, security awareness programs, and cybersecurity reporting.
Key Responsibilities:
* Lead enterprise cybersecurity governance and risk management initiatives
* Conduct ongoing risk assessments to identify threats, vulnerabilities, and emerging cybersecurity concerns
* Develop, maintain, and execute risk treatment and mitigation plans aligned with business objectives
* Monitor organizational risk exposure and communicate risk findings to leadership and stakeholders
* Ensure alignment with industry standards, regulatory requirements, and internal controls
* Develop and maintain cybersecurity policies, standards, procedures, and governance frameworks
* Evaluate and update security documentation to align with evolving threats, business needs, and regulatory expectations
* Partner with business units to drive policy adoption, awareness, and compliance throughout the organization
* Design and manage enterprise-wide cybersecurity awareness programs
* Deliver training initiatives focused on security best practices, compliance obligations, and emerging cyber threats
* Measure program effectiveness and continuously improve awareness efforts based on risk trends and organizational needs
* Serve as a primary cybersecurity contact for internal and external audit activities
* Coordinate audit responses, remediation efforts, and compliance reporting
* Support payment card industry (PCI) compliance programs and ensure ongoing adherence to applicable requirements
REQUIREMENTS:
Preferred Certifications:
* CISSP (Certified Information Systems Security Professional)
* CISM (Certified Information Security Manager)
* CRISC (Certified in Risk and Information Systems Control)
* CDPSE (Certified Data Privacy Solutions Engineer)
* 5+ years of experience in cybersecurity governance, risk management, compliance, or information security leadership
* Experience conducting enterprise risk assessments and developing risk mitigation strategies
* Proven success creating and maintaining cybersecurity policies, standards, and governance frameworks
* Experience managing security awareness and training programs
* Strong understanding of audit processes and regulatory compliance requirements
* Experience supporting compliance efforts related to PCI-DSS, GDPR, CCPA, SOX, or similar frameworks
Desired:
* Strong knowledge of cybersecurity control frameworks including NIST CSF, NIST 800-series, ISO 27001, and PCI-DSS
* Expertise in cybersecurity risk identification, assessment, reporting, and remediation planning
* Experience managing third-party and vendor cybersecurity risk programs
* Familiarity with AI governance, emerging technology risks, and security implications of AI adoption
* Knowledge of privacy regulations and data protection standards
* Strong analytical, organizational, and problem-solving capabilities
* Excellent verbal and written communication skills with the ability to engage both technical and non-technical stakeholders
* Ability to build relationships and influence cross-functional teams across technology, legal, privacy, audit, and business functions
Preferred:
* Experience leading enterprise GRC programs, partnering with audit and compliance organizations, and operating within regulated environments will be highly successful in this role
* Experience developing cybersecurity metrics, vendor risk programs, and privacy-focused security initiatives is strongly preferred
The pay range is the lowest to highest compensation we reasonably in good faith believe we would pay at posting for this role. We may ultimately pay more or less than this range. Employee pay is based on factors like relevant education, qualifications, certifications, experience, skills, seniority, location, performance, union contract and business needs. This range may be modified in the future.
We offer comprehensive benefits including medical/dental/vision insurance, HSA, FSA, 401(k), and life, disability & ADD insurance to eligible employees. Salaried personnel receive paid time off. Hourly employees are not eligible for paid time off unless required by law. Hourly employees on a Service Contract Act project are eligible for paid sick leave.
Note: Pay is not considered compensation until it is earned, vested and determinable. The amount and availability of any compensation remains in Kforce's sole discretion unless and until paid and may be modified in its discretion consistent with the law.
This job is not eligible for bonuses, incentives or commissions.
Kforce is an Equal Opportunity/Affirmative Action Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, pregnancy, sexual orientation, gender identity, national origin, age, protected veteran status, or disability status.
By clicking ?Apply Today? you agree to receive calls, AI-generated calls, text messages or emails from Kforce and its affiliates, and service providers. Note that if you choose to communicate with Kforce via text messaging the frequency may vary, and message and data rates may apply. Carriers are not liable for delayed or undelivered messages. You will always have the right to cease communicating via text by using key words such as STOP.

Kforce logo

About Kforce

Sourced by ZipRecruiter

Kforce is a professional staffing services firm that is located in Tampa, Florida, US. Operational since 1962, it specializes in flexible and direct hire staffing in Technology and Finance & Accounting, engaging over 23,000 highly skilled professionals annually with more than 4,000 customers. Kforce operates within various industry sectors such as healthcare, financial services, communications, and government. Their mission is to have a meaningful impact on all the lives they serve, with a focus on integrity, respect, and trust.

Industry

It services and finance and insurance

Company size

1,001 - 5,000 Employees

Headquarters location

Tampa, FL, US