1

Cybersecurity Risk Management Jobs in Santa Clara, CA

CyberSecurity Program Manager

San Jose, CA · On-site

$151K - $184K/yr

Cybersecurity Program Manager - GRC (San Jose, CA) Job Overview: We are seeking an experienced ... Compliance & Risk Management • Ensure compliance with applicable regulatory and industry ...

The ideal candidate combines strong account management skills with a working knowledge of cybersecurity operations, risk management, managed security services, and customer communication. This ...

Manage multiple tasks and priorities of customers and stakeholders, ensuring deadlines are met ... Experience performing cyber security risk analysis or demonstrated research skills (the ability to ...

Manage multiple tasks and priorities of customers and stakeholders, ensuring deadlines are met ... Experience performing cyber security risk analysis or demonstrated research skills (the ability to ...

Align cybersecurity initiatives with business objectives, product development, and go-to-market ... Oversee risk management programs, including enterprise risk assessments and mitigation strategies.

Strong knowledge of security risk management, incident response, product and cloud security ... Bachelor's degree in cybersecurity, computer science, engineering, or related discipline; CISSP ...

New

Director Cybersecurity

Sunnyvale, CA · On-site

$200K - $260K/yr

Align cybersecurity initiatives with business objectives, product development, and go-to-market ... Oversee risk management programs, including enterprise risk assessments and mitigation strategies.

Strong knowledge of security risk management, incident response, product and cloud security ... Bachelor's degree in cybersecurity, computer science, engineering, or related discipline; CISSP ...

Director Cybersecurity

Sunnyvale, CA · On-site

$200K - $260K/yr

Align cybersecurity initiatives with business objectives, product development, and go-to-market ... Oversee risk management programs, including enterprise risk assessments and mitigation strategies.

Director Cybersecurity

Sunnyvale, CA · On-site

$200K - $260K/yr

Align cybersecurity initiatives with business objectives, product development, and go-to-market ... Oversee risk management programs, including enterprise risk assessments and mitigation strategies.

Cyber Security Assessment Manager

San Jose, CA · On-site

$130K - $175K/yr

As a Cyber Security Assessment Manager , you will work directly with client stakeholders to ... Third Party Risk Management (TPRM) * Cyber Resilience and Incident Response * Infrastructure risk ...

Showing results 21-40

Cybersecurity Risk Management information

See Santa Clara, CA salary details

$67.3K

$157K

$219.7K

How much do cybersecurity risk management jobs pay per year?

As of Aug 30, 2026, the average yearly pay for cybersecurity risk management in Santa Clara, CA is $157,025.00, according to ZipRecruiter salary data. Most workers in this role earn between $131,100.00 and $177,100.00 per year, depending on experience, location, and employer.

What is cybersecurity risk management?

Cybersecurity risk management is the process of identifying, assessing, and prioritizing risks to an organization's digital assets and information systems. It involves implementing strategies and controls to minimize the impact of potential cyber threats, such as data breaches, malware, and unauthorized access. The goal is to balance security measures with business needs, ensuring sensitive information remains protected while maintaining operational efficiency. Effective risk management is ongoing, adapting to new threats and changes within the organization.

What are the key skills and qualifications needed to thrive in cybersecurity risk management, and why are they important?

To thrive in Cybersecurity Risk Management, you need a solid understanding of information security principles, risk assessment methodologies, compliance standards, and typically a degree in cybersecurity or a related field. Familiarity with risk management frameworks (such as NIST or ISO 27001), security tools, and professional certifications like CISSP or CRISC is highly valued. Strong analytical thinking, effective communication, and problem-solving skills help professionals translate technical risks for non-technical stakeholders and foster collaboration. These competencies are crucial to proactively identifying threats, managing vulnerabilities, and ensuring organizational resilience in a rapidly evolving digital landscape.

What are some common challenges faced by professionals in cybersecurity risk management, and how can they be addressed?

Professionals in Cybersecurity Risk Management often encounter challenges such as keeping up with rapidly evolving cyber threats, balancing security needs with business objectives, and ensuring compliance with industry regulations. Addressing these challenges requires continuous learning, effective communication with stakeholders, and close collaboration with IT, legal, and business teams. Building strong partnerships across departments and investing in ongoing training can help mitigate these obstacles and support proactive risk management.

What is the difference between Cybersecurity Risk Management vs Cybersecurity Analyst?

AspectCybersecurity Risk ManagementCybersecurity Analyst
CertificationsCRISC, CISSP, CISMCompTIA Security+, CEH, CISSP
Work EnvironmentRisk assessment, policy development, strategic planningMonitoring security systems, incident response, vulnerability analysis
Employer & Industry UsageFinancial, healthcare, government, large enterprisesIT departments, cybersecurity firms, corporate security teams

Cybersecurity Risk Management focuses on identifying, assessing, and mitigating security risks at an organizational level, often involving policy creation and strategic planning. In contrast, a Cybersecurity Analyst primarily monitors security systems, responds to incidents, and analyzes vulnerabilities. Both roles require similar certifications but serve different functions within cybersecurity teams.

What are popular job titles related to Cybersecurity Risk Management jobs in Santa Clara, CA?

For Cybersecurity Risk Management jobs in Santa Clara, CA, the most frequently searched job titles are:

What job categories do people searching Cybersecurity Risk Management jobs in Santa Clara, CA look for?

The top searched job categories for Cybersecurity Risk Management jobs in Santa Clara, CA are:

What cities near Santa Clara, CA are hiring for Cybersecurity Risk Management jobs?

Cities near Santa Clara, CA with the most Cybersecurity Risk Management job openings:

Infographic showing various Cybersecurity Risk Management job openings in Santa Clara, CA as of August 2026, with employment types broken down into 1% As Needed, 80% Full Time, 17% Part Time, and 2% Contract. Highlights an 84% Physical, 3% Hybrid, and 13% Remote job distribution, with an average salary of $157,025 per year, or $75.5 per hour.

CyberSecurity Program Manager

San Jose, CA • On-site

Saige Partners
Recruiting and Staffing Services • 11 - 50 employees

$151K - $184K/yr

Other

Posted 10 days ago


Job description

Cybersecurity Program Manager – GRC (San Jose, CA) 

Job Overview:
We are seeking an experienced Cybersecurity Program Manager to lead the development and execution of enterprise-wide cybersecurity governance, compliance, and risk management initiatives. This role will be responsible for establishing cybersecurity programs, creating security policies and standards from the ground up, driving compliance efforts, and partnering with cross-functional stakeholders to strengthen the organization''s security posture.
The ideal candidate combines deep cybersecurity expertise with strong program management capabilities and a proven track record of developing security governance frameworks, policies, and procedures in complex enterprise environments.
This is a W2 contract position and is not eligible for C2C or W2 referral candidates.

Key Responsibilities: 
Security Governance, Policy & Procedure Development
• Lead the development, documentation, and maintenance of enterprise-wide IT security policies, standards, and procedures.
• Create comprehensive security governance documentation from scratch, ensuring alignment with business objectives and regulatory requirements.
• Collaborate with IT, Security, Compliance, and business stakeholders to identify policy gaps and define security requirements.
• Develop and maintain policies covering areas such as access management, data protection, incident response, risk management, and security operations.
• Establish clear, enforceable standards and implementation guidelines for both technical and non-technical teams.
• Document detailed operational procedures to ensure consistent execution across departments.
• Facilitate policy review cycles, stakeholder approvals, and governance processes.
• Conduct periodic audits of policy compliance and recommend updates based on findings, organizational changes, and emerging threats.
Cybersecurity Program Management & Strategy
• Develop, implement, and maintain enterprise-wide cybersecurity programs aligned with organizational goals and industry best practices.
• Create and execute multi-year cybersecurity roadmaps and strategic initiatives.
• Define program objectives, success metrics, and key performance indicators (KPIs) to measure effectiveness.
• Monitor emerging cybersecurity threats, vulnerabilities, and industry trends to proactively adjust program strategies.
• Manage cybersecurity program budgets, resources, and project priorities.
Cross-Functional Leadership & Governance
• Partner with IT, Security Operations, Risk Management, Compliance, Legal, and business leadership teams to drive cybersecurity initiatives.
• Establish governance frameworks, decision-making processes, and accountability structures.
• Coordinate activities with external vendors, consultants, auditors, and third-party service providers.
• Communicate complex cybersecurity concepts to both technical and non-technical audiences.
• Promote a culture of cybersecurity awareness and accountability across the organization.
Compliance & Risk Management
• Ensure compliance with applicable regulatory and industry frameworks, including CCPA, CPRA, SOC 2, CMMC, and related standards.
• Lead risk assessments, vulnerability management initiatives, and penetration testing programs.
• Develop and maintain risk management processes and security control frameworks.
• Monitor and report on organizational security posture and compliance status.
• Support incident response planning, testing, and coordination during cybersecurity events.
Security Program Implementation & Optimization
• Oversee the evaluation, implementation, and optimization of security technologies, tools, and controls.
• Conduct security architecture reviews and technology assessments.
• Drive continuous improvement initiatives across cybersecurity programs and processes.
• Maintain comprehensive program documentation, operational procedures, and knowledge repositories.
• Ensure effective documentation management and organizational readiness for audits and assessments.
Executive Reporting & Stakeholder Management
• Provide executive leadership and key stakeholders with regular updates on cybersecurity initiatives, risks, and program performance.
• Develop dashboards, metrics, and reports to communicate compliance and security effectiveness.
• Present cybersecurity strategies, findings, and recommendations to senior management and executive leadership.
• Escalate critical risks, compliance issues, and security concerns as appropriate.

Qualifications: 

Required
• Bachelor''s degree in Computer Science, Cybersecurity, Information Technology, or a related field.
• 10+ years of cybersecurity experience, including at least 5 years in a program management, governance, or leadership role.
• Proven experience developing and implementing IT security policies, standards, and procedures from the ground up.
• Demonstrated success collaborating with cross-functional teams to create and maintain enterprise security documentation.
• Strong knowledge of cybersecurity frameworks and standards, including NIST CSF, ISO 27001, CIS Controls, SOC 2, and CMMC.
• Experience with security governance, compliance management, and risk assessment methodologies.
• Deep understanding of security controls, threat management, vulnerability management, and security operations.
• Experience managing complex, enterprise-wide cybersecurity programs and initiatives.
• Strong project and program management skills with the ability to manage multiple priorities simultaneously.
• Excellent written, verbal, and executive-level communication skills.
Preferred
• PMP (Project Management Professional) certification or equivalent program management certification.
• Professional cybersecurity certifications such as CISSP, CISM, CRISC, or similar.
• Experience supporting highly regulated industries and compliance-driven environments.
• Familiarity with Agile, Waterfall, and hybrid project management methodologies.

Key Competencies: 

• Cybersecurity Governance
• Policy & Procedure Development
• Regulatory Compliance
• Risk Management
• Program & Portfolio Management
• Security Frameworks (NIST, ISO 27001, CIS, SOC 2, CMMC)
• Executive Communication
• Cross-Functional Leadership
• Vendor & Stakeholder Management