1

Cybersecurity Risk Management Jobs in Houston, TX

Cyber Risk Lead

Houston, TX · On-site

$180 - $210/hr

... cyber security risk across Nscale's global AI infrastructure and build the risk function from the ground up. This senior individual contributor role sits at the intersection of risk management ...

Cyber Risk Lead

Houston, TX · On-site

$180 - $210/hr

... cyber security risk across Nscale's global AI infrastructure and build the risk function from the ground up. This senior individual contributor role sits at the intersection of risk management ...

Cybersecurity Senior

Houston, TX · On-site

$95K - $123K/yr

Strong cybersecurity and IT risk foundation Comfortable with security controls, risk assessments ... Ability to manage multiple priorities Comfortable working across different client engagements ...

Cyber Security

Houston, TX · On-site

$106K - $143K/yr

... cyber risk management, compliance, and assurance activities across our US and International ... This role works closely with cybersecurity, IT, and operational technology (OT) stakeholders to ...

Cyber Security Project Manager

Houston, TX · On-site

$106K - $143K/yr

Lead end-to-end delivery of cybersecurity initiatives across enterprise IT environments, ensuring alignment with business, compliance, and risk management objectives. Lead end-to-end delivery of ...

Showing results 21-40

Cybersecurity Risk Management information

See Houston, TX salary details

$54.4K

$127K

$177.6K

How much do cybersecurity risk management jobs pay per year?

As of Aug 22, 2026, the average yearly pay for cybersecurity risk management in Houston, TX is $126,975.00, according to ZipRecruiter salary data. Most workers in this role earn between $106,000.00 and $143,200.00 per year, depending on experience, location, and employer.

What is cybersecurity risk management?

Cybersecurity risk management is the process of identifying, assessing, and prioritizing risks to an organization's digital assets and information systems. It involves implementing strategies and controls to minimize the impact of potential cyber threats, such as data breaches, malware, and unauthorized access. The goal is to balance security measures with business needs, ensuring sensitive information remains protected while maintaining operational efficiency. Effective risk management is ongoing, adapting to new threats and changes within the organization.

What are the key skills and qualifications needed to thrive in cybersecurity risk management, and why are they important?

To thrive in Cybersecurity Risk Management, you need a solid understanding of information security principles, risk assessment methodologies, compliance standards, and typically a degree in cybersecurity or a related field. Familiarity with risk management frameworks (such as NIST or ISO 27001), security tools, and professional certifications like CISSP or CRISC is highly valued. Strong analytical thinking, effective communication, and problem-solving skills help professionals translate technical risks for non-technical stakeholders and foster collaboration. These competencies are crucial to proactively identifying threats, managing vulnerabilities, and ensuring organizational resilience in a rapidly evolving digital landscape.

What are some common challenges faced by professionals in cybersecurity risk management, and how can they be addressed?

Professionals in Cybersecurity Risk Management often encounter challenges such as keeping up with rapidly evolving cyber threats, balancing security needs with business objectives, and ensuring compliance with industry regulations. Addressing these challenges requires continuous learning, effective communication with stakeholders, and close collaboration with IT, legal, and business teams. Building strong partnerships across departments and investing in ongoing training can help mitigate these obstacles and support proactive risk management.

What is the difference between Cybersecurity Risk Management vs Cybersecurity Analyst?

AspectCybersecurity Risk ManagementCybersecurity Analyst
CertificationsCRISC, CISSP, CISMCompTIA Security+, CEH, CISSP
Work EnvironmentRisk assessment, policy development, strategic planningMonitoring security systems, incident response, vulnerability analysis
Employer & Industry UsageFinancial, healthcare, government, large enterprisesIT departments, cybersecurity firms, corporate security teams

Cybersecurity Risk Management focuses on identifying, assessing, and mitigating security risks at an organizational level, often involving policy creation and strategic planning. In contrast, a Cybersecurity Analyst primarily monitors security systems, responds to incidents, and analyzes vulnerabilities. Both roles require similar certifications but serve different functions within cybersecurity teams.

What are popular job titles related to Cybersecurity Risk Management jobs in Houston, TX?

For Cybersecurity Risk Management jobs in Houston, TX, the most frequently searched job titles are:

What job categories do people searching Cybersecurity Risk Management jobs in Houston, TX look for?

The top searched job categories for Cybersecurity Risk Management jobs in Houston, TX are:

What cities near Houston, TX are hiring for Cybersecurity Risk Management jobs?

Cities near Houston, TX with the most Cybersecurity Risk Management job openings:

Infographic showing various Cybersecurity Risk Management job openings in Houston, TX as of August 2026, with employment types broken down into 67% Full Time, and 33% Contract. Highlights an 100% In-person job distribution, with an average salary of $126,975 per year, or $61 per hour.

Senior Director, Information and Cybersecurity (Houston)

Pattern Energy

Houston, TX • On-site

Full-time

Medical, Dental, Vision, Life, Retirement, PTO

This job post has expired today. Applications are no longer accepted.


Job description

Responsibilities

JOB PURPOSE

The AVP, Information & Cybersecurity supports the SVP, Enterprise Technology in establishing, operating, and continuously improving Pattern Energy's cybersecurity, technology risk, operational resilience, AI governance, and critical infrastructure protection capabilities.

This leader partners closely with Enterprise Technology, Power Operations, Engineering, EPC, Legal, Compliance, Internal Audit, Enterprise Excellence, and executive leadership to embed cybersecurity and technology risk management into enterprise operations and strategic decision-making. Success requires balancing operational reliability, safety, regulatory compliance, cybersecurity risk reduction, scalability, and innovation while supporting secure business growth.

The role is also responsible for ensuring the resilience, recoverability, and cybersecurity readiness of enterprise and operational technology environments supporting Pattern's generation, storage, and transmission assets, including executive oversight of NERC CIP governance, cyber crisis management, operational resilience, and AI security governance.

Key AccountabilitiesCybersecurity Strategy, Risk & Governance
  • Develop and execute a multi-year cybersecurity, resilience, technology risk, and AI governance strategy aligned with enterprise objectives and growth plans.
  • Establish enterprise governance, risk management, reporting, and investment processes that improve accountability, transparency, operational resilience, and decision-making.
  • Develop cybersecurity operating and capital budgets while prioritizing investments based on business value, risk reduction, resilience, and regulatory obligations.
  • Provide executive leadership and Board reporting on cyber risk, resilience, material incidents, emerging threats, NERC CIP readiness, and strategic priorities.
  • Conduct cybersecurity maturity assessments, benchmarking, and continuous improvement initiatives.
  • Promote a culture of cybersecurity awareness, executive cyber literacy, and responsible AI adoption across the enterprise.
Cybersecurity Operations & Resilience
  • Lead enterprise cybersecurity capabilities including threat detection, threat intelligence, vulnerability management, identity and cloud security, incident response, cyber defense, and attack surface management.
  • Ensure effective protection, monitoring, response, recovery, business continuity, disaster recovery, and cyber crisis management across enterprise and operational technology environments.
  • Leverage automation and AI-enabled capabilities to improve cybersecurity effectiveness, operational efficiency, and resilience.
  • Oversee third-party cyber risk management across vendors, contractors, cloud providers, EPC partners, and strategic service providers.
Operational Technology & Critical Infrastructure Security
  • Lead cybersecurity governance supporting operational technology environments including SCADA, industrial control systems, generation, storage, transmission, plant communications, and operational support systems.
  • Establish standards for secure architecture, remote access, network segmentation, monitoring, asset visibility, vendor connectivity, and operational resilience.
  • Support secure integration of new facilities, acquisitions, operational technologies, and enterprise growth initiatives while maintaining reliability, safety, and resilience.
Regulatory Compliance & NERC CIP
  • Ensure cybersecurity programs comply with NERC CIP and other applicable cybersecurity, technology risk, and regulatory requirements.
  • Serve as executive sponsor for NERC CIP governance, audit readiness, compliance reporting, remediation, and evidence management.
  • Partner with Legal, Compliance, Internal Audit, Enterprise Technology, and operational leaders to maintain effective governance while adapting to evolving regulatory requirements.
AI Security & Governance
  • Establish governance, security, and risk management practices supporting responsible enterprise adoption of AI technologies.
  • Ensure AI systems, autonomous workflows, third-party AI services, models, prompts, training data, and outputs are appropriately governed, monitored, and protected.
  • Drive adoption of AI-enabled cybersecurity capabilities while maintaining strong cybersecurity, privacy, operational, and regulatory safeguards.
Enterprise Architecture & Technology Modernization
  • Partner with Enterprise Technology leadership to embed cybersecurity, resilience, AI governance, and compliance requirements into enterprise architecture, cloud transformation, operational technology initiatives, and modernization programs.
  • Support scalable, secure technology architectures while reducing complexity and ensuring cybersecurity is integrated throughout technology acquisition, development, deployment, and support.
Third-Party Risk Management
  • Lead a risk-based third-party cybersecurity and supply chain risk management program across vendors, contractors, cloud providers, operational technology suppliers, EPC partners, and strategic service providers.
  • Support cybersecurity due diligence for acquisitions, strategic partnerships, and major technology investments while embedding cybersecurity throughout procurement and vendor lifecycle management.
  • Partner with business leaders and Enterprise Excellence to strengthen enterprise prioritization, governance, execution discipline, operational metrics, accountability, and value realization across cybersecurity initiatives.
Talent & Organizational Leadership
  • Build and develop high-performing cybersecurity teams across governance, architecture, OT security, resilience, AI security, and risk management.
  • Foster a culture of accountability, continuous improvement, systems thinking, operational excellence, collaboration, succession planning, leadership development, and organizational capability.
Strategic Leadership
  • Serve as a trusted advisor to executive leadership and the Board on cybersecurity, technology risk, AI governance, operational resilience, and critical infrastructure protection.
  • Support enterprise growth, acquisitions, technology modernization, and strategic initiatives while representing Pattern Energy in industry forums, NERC working groups, and cybersecurity organizations.
QualificationsExperience / Qualifications / Education Required
  • Bachelor's or Master's degree in Computer Science, Cybersecurity, Engineering, Information Systems, Business Administration, or a related discipline.
  • 15+ years of progressive leadership experience across cybersecurity, technology risk, operational technology, operational resilience, or critical infrastructure environments.
  • Experience leading cybersecurity programs within complex, highly regulated, or critical infrastructure industries.
  • Strong expertise in cybersecurity governance, technology risk management, cyber defense, operational resilience, and critical infrastructure protection.
  • Demonstrated experience supporting operational technology, industrial control systems, and NERC CIP compliance programs.
  • Experience leading cyber crisis management, incident response, disaster recovery, business continuity, and enterprise resilience initiatives.
  • Strong knowledge of NIST Cybersecurity Framework (CSF), NIST 800-53, NIST 800-82, IEC/ISA 62443, CIS Controls, and related security frameworks.
  • Experience improving cybersecurity maturity, governance, resilience, and enterprise modernization.
  • Experience establishing AI governance, AI security, or responsible AI programs preferred.
  • Strong executive communication and stakeholder management skills with the ability to influence both technical and business leaders.
  • Experience supporting operational technology environments within energy, utilities, industrial, or critical infrastructure sectors preferred.
  • Professional certifications such as CISSP, CISM, CRISC, CISA, GICSP, GIAC, or equivalent are preferred.
  • Ability to travel regularly to corporate offices, operating facilities, construction projects, and integration sites across North America.

The expected starting pay range for this role is $203,000.00 $254,000.00 USD. This range is an estimate, and base pay may be above or below the range based on several factors including but not limited to location, work experience, certifications, and education. In addition to base pay, Pattern's compensation program includes a bonus structure for full-time employees of all levels. We also provide a comprehensive benefits package which includes medical, dental, vision, short and long-term disability, life insurance, voluntary benefits, family care benefits, employee assistance program, paid time off and bonding leave, paid holidays, 401(k)/RRSP retirement savings plan with employer contribution, and employee referral bonuses.

Pattern Energy Group is an Equal Opportunity Employer.

#J-18808-Ljbffr