1

Cybersecurity Risk Management Jobs in Kimberly, AL

... cybersecurity. Join our team to deliver powerful solutions to help our clients navigate the ever ... Risk Management workstreams in partnership with architects and product owners * Managing ...

... management, and strategic planning. * Develop risk monitoring frameworks, dashboards, and early ... Maintain awareness of global political trends, cybersecurity developments, sanctions regimes, and ...

... cybersecurity. Join our team to deliver powerful solutions to help our clients navigate the ever ... Develop and execute strategies for integrated risk management (IRM), governance, risk, and ...

... in cybersecurity. Join our team to deliver powerful solutions that help clients navigate an ... manage cyber, risk, and technology programs. Recruiting for this role ends on 12/31/2026. Work you ...

Showing results 21-40

Cybersecurity Risk Management information

See Kimberly, AL salary details

$54.1K

$126.2K

$176.5K

How much do cybersecurity risk management jobs pay per year?

As of Aug 7, 2026, the average yearly pay for cybersecurity risk management in Kimberly, AL is $126,179.00, according to ZipRecruiter salary data. Most workers in this role earn between $105,300.00 and $142,300.00 per year, depending on experience, location, and employer.

What are some common challenges faced by professionals in cybersecurity risk management, and how can they be addressed?

Professionals in Cybersecurity Risk Management often encounter challenges such as keeping up with rapidly evolving cyber threats, balancing security needs with business objectives, and ensuring compliance with industry regulations. Addressing these challenges requires continuous learning, effective communication with stakeholders, and close collaboration with IT, legal, and business teams. Building strong partnerships across departments and investing in ongoing training can help mitigate these obstacles and support proactive risk management.

What is the difference between Cybersecurity Risk Management vs Cybersecurity Analyst?

AspectCybersecurity Risk ManagementCybersecurity Analyst
CertificationsCRISC, CISSP, CISMCompTIA Security+, CEH, CISSP
Work EnvironmentRisk assessment, policy development, strategic planningMonitoring security systems, incident response, vulnerability analysis
Employer & Industry UsageFinancial, healthcare, government, large enterprisesIT departments, cybersecurity firms, corporate security teams

Cybersecurity Risk Management focuses on identifying, assessing, and mitigating security risks at an organizational level, often involving policy creation and strategic planning. In contrast, a Cybersecurity Analyst primarily monitors security systems, responds to incidents, and analyzes vulnerabilities. Both roles require similar certifications but serve different functions within cybersecurity teams.

What are the key skills and qualifications needed to thrive in cybersecurity risk management, and why are they important?

To thrive in Cybersecurity Risk Management, you need a solid understanding of information security principles, risk assessment methodologies, compliance standards, and typically a degree in cybersecurity or a related field. Familiarity with risk management frameworks (such as NIST or ISO 27001), security tools, and professional certifications like CISSP or CRISC is highly valued. Strong analytical thinking, effective communication, and problem-solving skills help professionals translate technical risks for non-technical stakeholders and foster collaboration. These competencies are crucial to proactively identifying threats, managing vulnerabilities, and ensuring organizational resilience in a rapidly evolving digital landscape.

What is cybersecurity risk management?

Cybersecurity risk management is the process of identifying, assessing, and prioritizing risks to an organization's digital assets and information systems. It involves implementing strategies and controls to minimize the impact of potential cyber threats, such as data breaches, malware, and unauthorized access. The goal is to balance security measures with business needs, ensuring sensitive information remains protected while maintaining operational efficiency. Effective risk management is ongoing, adapting to new threats and changes within the organization.
What cities near Kimberly, AL are hiring for Cybersecurity Risk Management jobs? Cities near Kimberly, AL with the most Cybersecurity Risk Management job openings:
Infographic showing various Cybersecurity Risk Management job openings in Kimberly, AL as of July 2026, with employment types broken down into 78% Full Time, 19% Part Time, 1% Temporary, and 2% Contract. Highlights an 85% Physical, 2% Hybrid, and 13% Remote job distribution, with an average salary of $126,179 per year, or $60.7 per hour.

Director of Cybersecurity

EBSCO Information Services

Birmingham, AL • Remote

Other

Posted 15 days ago


Job description

Headquartered in Birmingham, Alabama, Moultrie (www.moultrie.com) is the leader in game feeders and cellular camera innovation, building products used by hunters, property owners, and others for real-time remote monitoring.

We take pride in developing deep user understanding, obsessing about the details, and going the extra mile to show our users we love them. Moultrie is customer-driven - hardware, software, marketing, and customer success teams collaborate to deliver a quality user experience.

We are guided by the following principles: Customer Obsession.; Excellence is the Standard.; Bias for Action.; Act Boldly.; Deliver Results.; Hire and Develop the Best.; Be Curious and Learn.; Win as a Team

Job Summary

We are looking for a seasoned Director of Cybersecurity to lead and mature our security program across the full breadth of our business. This is a senior leadership role responsible for protecting our subscription products and customer data, securing our software engineering and DevOps pipelines, and building a governance framework that scales with the company.

You will partner closely with Software Engineering, Product, Legal, and Executive leadership to make security an essential part of our business - not just a compliance checkbox.

Job Responsibilities

Subscription Business & Infrastructure Security

Own the end-to-end security posture of the company's subscription platform, including customerfacing applications, APIs, and underlying cloud infrastructure.

Define and enforce security architecture standards for cloud environments (AWS, Azure, GCP), ensuring proper network segmentation, identity and access management (IAM), and data protection controls.

Lead vulnerability management, penetration testing, and red team exercises to proactively identify and remediate risk across production systems.

Establish and maintain a Security Operations Center (SOC) capability - whether in-house, managed, or hybrid - to ensure continuous monitoring, threat detection, and incident response readiness.

Oversee data security controls to protect subscriber PII and payment information in compliance with applicable regulations (PCI-DSS, CCPA, GDPR, etc.).

Define and rehearse incident response plans, leading the organization through security events from detection through post-mortem.

Software Development & DevSecOps

Embed security throughout the software development lifecycle (SDLC), partnering with Engineering and Product to shift security left without slowing delivery velocity.

Own the security of CI/CD build pipelines, including secrets management, pipeline integrity, dependency scanning, and supply chain security controls.

Drive adoption of SAST, DAST, SCA, and container/image scanning tools across development teams.

Define and maintain secure coding standards, conducting regular developer security training and threat modeling workshops.

Establish controls to detect and prevent dependency confusion, code injection, and software supply chain attacks in build and deployment processes.

Partner with platform and infrastructure engineering teams to ensure IaC (Terraform, Pulumi, etc.) follows security best practices and is reviewed prior to deployment.

Governance, Risk & Compliance Build and maintain a cybersecurity governance framework.

Own the company's risk register for cybersecurity, providing clear, quantified risk reporting to executive leadership and the board as appropriate.

Lead and manage third-party security assessments, customer security questionnaires, and audit responses (SOC 2 Type II, penetration test reports, etc.).

Develop and enforce security policies, standards, and procedures across the organization.

Drive vendor and third-party risk management, ensuring security requirements are embedded in procurement and contract processes.

Maintain awareness of the evolving regulatory landscape and ensure the company's practices remain compliant with applicable laws and industry standards.

Champion a culture of security awareness through company-wide training programs, phishing simulations, and ongoing communication.

Job Requirements

10+ years of progressive experience in cybersecurity, with at least three years in a leadership role managing security programs and teams.

Deep technical expertise in cloud security (AWS, Azure, or GCP) and securing SaaS or subscription-based products.

Proven experience implementing DevSecOps practices and securing CI/CD pipelines in modern engineering environments.

Hands-on knowledge of security tooling: SIEM, EDR, SAST/DAST, vulnerability scanners, secrets management platforms, and cloud security posture management (CSPM) tools.

Strong background in security governance frameworks (NIST CSF, ISO 27001, SOC 2) and working knowledge of compliance requirements (PCI-DSS, GDPR, CCPA).

Experience leading incident response efforts, including communication with executives, legal, and external stakeholders.

Excellent written and verbal communication skills - able to translate complex technical risk into clear, actionable business language.

Preferred Qualifications

Relevant certifications: CISSP, CISM, CISA, AWS Security Specialty, or equivalent.

Experience with software supply chain security frameworks (SLSA, SBOM generation, Sigstore, etc.).

Familiarity with zero trust architecture and its practical application in enterprise environments. Experience working in a subscription or SaaS business where availability and customer trust are directly tied to revenue. Background scaling security programs at a growth-stage company.

Essential Job Function

We are an equal opportunity employer and comply with all applicable federal, state, and local fair employment practices laws. We strictly prohibit and do not tolerate discrimination against employees, applicants, or any other covered persons because of race, color, sex, pregnancy status, age, national origin or ancestry, ethnicity, religion, creed, sexual orientation, gender identity, status as a veteran, and basis of disability or any other federal, state or local protected class. This policy applies to all terms and conditions of employment, including, but not limited to, hiring, training, promotion, discipline, compensation, benefits, and termination of employment.

We comply with the Americans with Disabilities Act (ADA), as amended by the ADA Amendments Act, and all applicable state or local law.