1

Cybersecurity Risk Management Jobs in Santa Rosa, CA

Improve monitoring and data analysis including improvements in security data management and log ... Security monitoring and analysis, incident response, and risk assessment; * Leading a project or ...

... and cybersecurity best practices. As one of the fastest growing firms in the nation, BT has the ... Provide leadership, management and strategic direction with a focus on providing an exceptional ...

Insurance Claims Advocate

Santa Rosa, CA ยท Hybrid

$23 - $28/hr

... cybersecurity, mortgage services - and more. In the last twelve years, Acrisure has grown in ... Refers complex coverage questions to Risk Manager * Secures loss runs from carriers as requested.

Corporate Counsel

Bodega Bay, CA ยท Remote

$180K - $195K/yr

Partner with Deal Desk, Sales, and Finance to accelerate deal velocity while managing risk ... privacy, cybersecurity, export controls). We offer a comprehensive compensation and benefits ...

Cybersecurity Risk Management information

See Santa Rosa, CA salary details

$62.3K

$145.4K

$203.4K

How much do cybersecurity risk management jobs pay per year?

As of Jun 8, 2026, the average yearly pay for cybersecurity risk management in Santa Rosa, CA is $145,372.00, according to ZipRecruiter salary data. Most workers in this role earn between $121,400.00 and $164,000.00 per year, depending on experience, location, and employer.

What are some common challenges faced by professionals in Cybersecurity Risk Management, and how can they be addressed?

Professionals in Cybersecurity Risk Management often encounter challenges such as keeping up with rapidly evolving cyber threats, balancing security needs with business objectives, and ensuring compliance with industry regulations. Addressing these challenges requires continuous learning, effective communication with stakeholders, and close collaboration with IT, legal, and business teams. Building strong partnerships across departments and investing in ongoing training can help mitigate these obstacles and support proactive risk management.

What is the difference between Cybersecurity Risk Management vs Cybersecurity Analyst?

AspectCybersecurity Risk ManagementCybersecurity Analyst
CertificationsCRISC, CISSP, CISMCompTIA Security+, CEH, CISSP
Work EnvironmentRisk assessment, policy development, strategic planningMonitoring security systems, incident response, vulnerability analysis
Employer & Industry UsageFinancial, healthcare, government, large enterprisesIT departments, cybersecurity firms, corporate security teams

Cybersecurity Risk Management focuses on identifying, assessing, and mitigating security risks at an organizational level, often involving policy creation and strategic planning. In contrast, a Cybersecurity Analyst primarily monitors security systems, responds to incidents, and analyzes vulnerabilities. Both roles require similar certifications but serve different functions within cybersecurity teams.

What are the key skills and qualifications needed to thrive in Cybersecurity Risk Management, and why are they important?

To thrive in Cybersecurity Risk Management, you need a solid understanding of information security principles, risk assessment methodologies, compliance standards, and typically a degree in cybersecurity or a related field. Familiarity with risk management frameworks (such as NIST or ISO 27001), security tools, and professional certifications like CISSP or CRISC is highly valued. Strong analytical thinking, effective communication, and problem-solving skills help professionals translate technical risks for non-technical stakeholders and foster collaboration. These competencies are crucial to proactively identifying threats, managing vulnerabilities, and ensuring organizational resilience in a rapidly evolving digital landscape.

What is cybersecurity risk management?

Cybersecurity risk management is the process of identifying, assessing, and prioritizing risks to an organization's digital assets and information systems. It involves implementing strategies and controls to minimize the impact of potential cyber threats, such as data breaches, malware, and unauthorized access. The goal is to balance security measures with business needs, ensuring sensitive information remains protected while maintaining operational efficiency. Effective risk management is ongoing, adapting to new threats and changes within the organization.
What job categories do people searching Cybersecurity Risk Management jobs in Santa Rosa, CA look for? The top searched job categories for Cybersecurity Risk Management jobs in Santa Rosa, CA are:
What cities near Santa Rosa, CA are hiring for Cybersecurity Risk Management jobs? Cities near Santa Rosa, CA with the most Cybersecurity Risk Management job openings:

IT Audit, Cybersecurity & Risk Experienced Consultant (SOC Focus)

Bakertilly

Santa Rosa, CA โ€ข On-site

Full-time

Posted 11 days ago


Job description

Overview

Baker Tilly is a leading advisory, tax and assurance firm, providing clients with a genuine coast-to-coast and global advantage in major regions of the U.S. and in many of the world's leading financial centers - New York, London, San Francisco, Los Angeles, Chicago and Boston. Baker Tilly Advisory Group, LP and Baker Tilly US, LLP (Baker Tilly) provide professional services through an alternative practice structure in accordance with the AICPA Code of Professional Conduct and applicable laws, regulations and professional standards. Baker Tilly US, LLP is a licensed independent CPA firm that provides attest services to its clients. Baker Tilly Advisory Group, LP and its subsidiary entities provide tax and business advisory services to their clients. Baker Tilly Advisory Group, LP and its subsidiary entities are not licensed CPA firms.

Baker Tilly Advisory Group, LP and Baker Tilly US, LLP, trading as Baker Tilly, are independent members of Baker Tilly International, a worldwide network of independent accounting and business advisory firms in 141 territories, with 43,000 professionals and a combined worldwide revenue of $5.2 billion. Visitbakertilly.comor join the conversation onLinkedIn,FacebookandInstagram.

Please discuss the work location status with your Baker Tilly talent acquisition professional to understand the requirements for an opportunity you are exploring.

Baker Tilly is an equal opportunity/affirmative action employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, disability or protected veteran status, gender identity, sexual orientation, or any other legally protected basis, in accordance with applicable federal, state or local law.

Any unsolicited resumes submitted through our website or to Baker Tilly Advisory Group, LP, employee e-mail accounts are considered property of Baker Tilly Advisory Group, LP, and are not subject to payment of agency fees. In order to be an authorized recruitment agency ("search firm") for Baker Tilly Advisory Group, LP, there must be a formal written agreement in place and the agency must be invited, by Baker Tilly's Talent Attraction team, to submit candidates for review via our applicant tracking system.

Job Description:

Are you interested in joining one of the fastest growingconsulting and accounting firms in the country?

Would you like the ability to join a highly dynamic team focusedon providing exceptional client service in the area of informational technology risk advisory?

If yes, consider joining Baker Tilly (BT) as an IT Audit, Cybersecurity & Risk Experienced Consultant (SOC Focus)! Our Risk Advisory practice provides a full spectrum of services to help our clients assess their risks, develop strategies to compete in an ever-changing business environment, and achieve their goals and objectives. All of this is accomplished through deep industry knowledge of risk, governance, internal audit, compliance, IT, and cybersecurity best practices.

As one of the fastest growing firms in the nation, BT has the ability to offer you upward career trajectory, flexibility in how and where you get your work done and meaningful relationships with clients, teammates and leadership who truly care about you and your development.

Does this describe you?

  • You want to continue to expand your work experiences and hone your skills as an IT risk professional in the areas of compliance, cybersecurity, and internal controls.
  • You crave the opportunity to be part of a fast growing, entrepreneurial risk consulting practice where your hard work and creativity will be rewarded
  • You do your best work when you are part of a talented, down-to-earth team that thrives in collaboration and truly enjoys working together
  • You feel valued when you are provided the resources and support to continually sharpen your technical skills and build your career now, for tomorrow

What you will do:

  • Work closely with client executives and management teams to understand their businesses and assist in identifying and managing financial and operational risks within their business systems to ensure technology risks are managed:
    • Develop in-depth knowledge of clients' businesses and industries by having direct client interaction while working on multiple aspects of an engagement
    • Think independently and strategically about your clients' business, systems and risks providing recommendations for business and processimprovements based upon knowledge gained relative to the client'soperations, processes and business objectives
    • Provide strategic business advice to clients by assisting in the implementation of new processes and controls that address key risks
    • Assess, manage and optimize information technology risk across a wide range of areas, IT general controls, financial account and auditing, IT strategy and governance, IT regulatory and compliance requirements and business continuity
    • Review clients' processes and controls against industry frameworks, identifying gaps in design and execution, and communicating issues and recommendations to clients
    • Assist in the development of audit programs and the execution of internal audits and IT control assessments in the areas of:
      • IT strategy and governance
      • IT operations, business process, key reports (IPE), automated controls
      • ITGC and application controls
      • Regulatory and compliance requirements, specifically Sarbanes Oxley
    • Assist in drafting comprehensive executive summaries and final reports for delivery to the client, documenting and reviewing engagement work papers in accordance with industry-accepted internal audit methodologies
    • Act as a valued business advisor, build relationships and communicateeffectively with the client to provide superior client service
    • Continue to develop your knowledge and experience working with a variety of technology environments, platforms, applications and tools/utilities
  • Demonstrate the desire to continually grow, learn and develop skills and knowledge through external and internal education, training and cross-training opportunities to maximize personal contribution to the organizational goals and ongoing career development
  • Utilize your entrepreneurial skills to network and build strong relationships internally and externally with clients
  • Enjoy friendships, social activities and team outings that encourage a work-life balance

Successful candidates will have:

  • Bachelor's degree in accounting, management/computer information systems, computer science, accounting information systems, computer engineering, industrial engineering, or related program
  • CISA, CIA, or CPA certification(s) preferred
  • 1+ year(s) experience with IT audit, previous experienced performing SOC audits preferred
  • Experience as a client serving professional for a consulting firm desired
  • Excellent analytical, technical and problem solving skills, with strong attention to detail
  • Exceptional verbal and written communication, collaboration, and time management skill

The pay rate ranges for this position are listed below. Actual compensation is influenced by avariety of relevant factors including but not limited to applicant's skills, prior experience,qualifications, degrees, professional certifications, work arrangements and geographiclocation. Baker Tilly offers a comprehensive compensation and benefits package to eligible employees.
The national pay rate range is $85,910 to $162,890
In California: pay rate range is $102,000 to $162,890

#LI-hybrid

#LI-LF2