1

Cybersecurity Risk Management Jobs in Draper, UT

This role works under the direction of the GRC Manager and is responsible for performing day-to-day risk, compliance, and audit activities that ensure our cybersecurity program remains aligned with ...

This role works under the direction of the GRC Manager and is responsible for performing day-to-day risk, compliance, and audit activities that ensure our cybersecurity program remains aligned with ...

This role works under the direction of the GRC Manager and is responsible for performing day-to-day risk, compliance, and audit activities that ensure our cybersecurity program remains aligned with ...

Bachelor's degree in Cybersecurity, Information Technology, Risk Management, or a related field * 3+ years of experience in cybersecurity, risk, compliance, or audit-related roles * Experience ...

Risk Management Specialist About Helpside: For more than 30 years, we have collaborated with and ... Administration of Helpside cyber security training * Administration of Helpside bonding insurance ...

Risk Management SpecialistAbout Helpside: For more than 30 years, we have collaborated with and ... Administration of Helpside cyber security training * Administration of Helpside bonding insurance ...

Administration of Helpside cyber security training * Administration of Helpside bonding insurance ... Risk management and/or insurance experience a plus, but not required Great Things That Come With ...

Cyber Security Tutor

Provo, UT · Remote

$18 - $40/hr

Emphasizes a systematic approach to security assessment and connects cybersecurity to business risk management, compliance requirements, and ethical computing practices. * Curriculum Awareness ...

next page

Showing results 1-20

Cybersecurity Risk Management information

See Draper, UT salary details

$53.3K

$124.3K

$173.9K

How much do cybersecurity risk management jobs pay per year?

As of Jun 29, 2026, the average yearly pay for cybersecurity risk management in Draper, UT is $124,299.00, according to ZipRecruiter salary data. Most workers in this role earn between $103,800.00 and $140,200.00 per year, depending on experience, location, and employer.

What is the role of a risk manager in cybersecurity?

A cybersecurity risk manager identifies, assesses, and prioritizes security risks to an organization’s information systems. They develop strategies to mitigate threats, implement security controls, and ensure compliance with industry standards, often using tools like risk assessment frameworks and security audits. Their role is essential in protecting digital assets and supporting overall cybersecurity posture.

Is security risk management a good career?

Security risk management is a valuable career in cybersecurity, focusing on identifying and mitigating threats to organizational assets. It often requires knowledge of security frameworks, risk assessment tools, and certifications like CISSP or CISM. The field offers strong job growth, competitive salaries, and opportunities across various industries.

What are some common challenges faced by professionals in Cybersecurity Risk Management, and how can they be addressed?

Professionals in Cybersecurity Risk Management often encounter challenges such as keeping up with rapidly evolving cyber threats, balancing security needs with business objectives, and ensuring compliance with industry regulations. Addressing these challenges requires continuous learning, effective communication with stakeholders, and close collaboration with IT, legal, and business teams. Building strong partnerships across departments and investing in ongoing training can help mitigate these obstacles and support proactive risk management.

What is the difference between Cybersecurity Risk Management vs Cybersecurity Analyst?

AspectCybersecurity Risk ManagementCybersecurity Analyst
CertificationsCRISC, CISSP, CISMCompTIA Security+, CEH, CISSP
Work EnvironmentRisk assessment, policy development, strategic planningMonitoring security systems, incident response, vulnerability analysis
Employer & Industry UsageFinancial, healthcare, government, large enterprisesIT departments, cybersecurity firms, corporate security teams

Cybersecurity Risk Management focuses on identifying, assessing, and mitigating security risks at an organizational level, often involving policy creation and strategic planning. In contrast, a Cybersecurity Analyst primarily monitors security systems, responds to incidents, and analyzes vulnerabilities. Both roles require similar certifications but serve different functions within cybersecurity teams.

What are the key skills and qualifications needed to thrive in Cybersecurity Risk Management, and why are they important?

To thrive in Cybersecurity Risk Management, you need a solid understanding of information security principles, risk assessment methodologies, compliance standards, and typically a degree in cybersecurity or a related field. Familiarity with risk management frameworks (such as NIST or ISO 27001), security tools, and professional certifications like CISSP or CRISC is highly valued. Strong analytical thinking, effective communication, and problem-solving skills help professionals translate technical risks for non-technical stakeholders and foster collaboration. These competencies are crucial to proactively identifying threats, managing vulnerabilities, and ensuring organizational resilience in a rapidly evolving digital landscape.

What is cybersecurity risk management?

Cybersecurity risk management is the process of identifying, assessing, and prioritizing risks to an organization's digital assets and information systems. It involves implementing strategies and controls to minimize the impact of potential cyber threats, such as data breaches, malware, and unauthorized access. The goal is to balance security measures with business needs, ensuring sensitive information remains protected while maintaining operational efficiency. Effective risk management is ongoing, adapting to new threats and changes within the organization.

What is risk management in cyber security?

In cybersecurity risk management, professionals identify, assess, and prioritize potential security threats to an organization’s information systems. They implement strategies and controls to mitigate or accept risks, often using frameworks like NIST or ISO 27001, and may hold certifications such as CISSP or CISM to ensure effective risk handling.

Can you make $500,000 a year in cyber security?

Cybersecurity risk management professionals can potentially earn $500,000 or more annually, especially at senior levels, in leadership roles, or with extensive experience and specialized certifications like CISSP or CISM. High salaries are often associated with executive positions, consulting, or working in large organizations with complex security needs.
What are popular job titles related to Cybersecurity Risk Management jobs in Draper, UT? For Cybersecurity Risk Management jobs in Draper, UT, the most frequently searched job titles are:
What job categories do people searching Cybersecurity Risk Management jobs in Draper, UT look for? The top searched job categories for Cybersecurity Risk Management jobs in Draper, UT are:
What cities near Draper, UT are hiring for Cybersecurity Risk Management jobs? Cities near Draper, UT with the most Cybersecurity Risk Management job openings:
Infographic showing various Cybersecurity Risk Management job openings in Draper, UT as of June 2026, with employment types broken down into 1% As Needed, 84% Full Time, 8% Part Time, 3% Temporary, 3% Contract, and 1% Nights. Highlights an 85% Physical, 5% Hybrid, and 10% Remote job distribution, with an average salary of $124,299 per year, or $59.8 per hour.

Cybersecurity GRC Engineer

swirecc

Draper, UT

Other

Posted 17 days ago


Job description

What does a Cybersecurity GRC Engineer do at Swire Coca - Cola?
Swire Coca-Cola is seeking a Cybersecurity GRC Engineer to support the execution and continuous improvement of our governance, risk, and compliance (GRC) program. This role works under the direction of the GRC Manager and is responsible for performing day-to-day risk, compliance, and audit activities that ensure our cybersecurity program remains aligned with regulatory, contractual, and business requirements. The GRC Engineer plays a critical role in operationalizing cybersecurity governance by conducting risk assessments, supporting audits, maintaining control frameworks, and partnering across IT and business teams to track and remediate findings. This role requires a detail-oriented and analytical individual who can translate technical controls and risks into clear documentation and actionable insights.
Responsibilities

  • Perform cybersecurity risk assessments for systems, applications, and business processes
  • Support third-party/vendor risk assessments and due diligence reviews
  • Identify control gaps, document risks, and assist in developing remediation plans
  • Maintain and update the enterprise risk register, including risk scoring and tracking
  • Partner with control owners to validate mitigation efforts and risk status
  • Support internal and external audits by coordinating evidence collection and responses
  • Track audit findings, remediation activities, and validate closure
  • Assist with security questionnaires, RFP responses, and due diligence requests
  • Help ensure compliance with regulatory and contractual requirements
  • Maintain and update cybersecurity policies, standards, and procedures
  • Support mapping of controls to frameworks such as NIST CSF, ISO 27001, and CIS
  • Assist in the development and maintenance of a unified control framework
  • Support control testing activities and documentation of effectiveness
  • Develop and maintain GRC metrics, dashboards, and reporting artifacts
  • Track key risk indicators (KRIs), audit trends, and remediation progress
  • Prepare reports and summaries for leadership and stakeholders
  • Maintain organized documentation and evidence repositories
  • Partner with cross-functional teams to drive risk awareness and remediation efforts
  • Support process improvements to enhance GRC efficiency and scalability
  • Assist in implementing and optimizing GRC tools and automation
  • Stay current on cybersecurity risks and compliance requirements
  • Performs other duties as assigned.


Requirements

  • Bachelor’s Degree in Cybersecurity, Information Technology, Risk Management, or related field required
  • Relevant certifications such as Security+, CISA, CRISC, or similar preferred
  • 3+ years of experience in cybersecurity, risk, compliance, or audit roles required
  • Experience supporting audits, risk assessments, and compliance activities required
  • Experience collaborating across IT and business teams required
  • Working knowledge of NIST CSF, ISO 27001, and CIS frameworks
  • Strong analytical, documentation, and organizational skills
  • Ability to communicate technical concepts to non-technical stakeholders
  • Familiarity with GRC tools such as ServiceNow GRC, Archer, Drata, Vanta, or similar preferred