1

Director Cybersecurity Risk Management Jobs (NOW HIRING)

Director Cybersecurity

Sunnyvale, CA · On-site

$200K - $260K/yr

... seeking a Director Cybersecurity to lead the strategic direction, governance, and long-term ... Oversee risk management programs, including enterprise risk assessments and mitigation strategies.

Director Cybersecurity

Sunnyvale, CA · On-site

$200K - $260K/yr

... seeking a Director Cybersecurity to lead the strategic direction, governance, and long-term ... Oversee risk management programs, including enterprise risk assessments and mitigation strategies.

Cybersecurity Risk Lead

Auburn, ME · On-site

$119K - $161K/yr

The Cybersecurity Risk Leadis responsible foraligning cybersecurity capabilities, processes, and ... Risk management experience * Experience with Zero Trust, SASE/SSE, ZTNA, or cloud security ...

This role will serve as the Risk Oversight Leader for all functions within Cybersecurity. This role ... management including up to the Board of Directors; 5) consistently and appropriately apply second ...

Director Cybersecurity

Manhattan, NY · On-site

$200 - $250/hr

The Director of Cybersecurity is responsible for developing, implementing, and overseeing the ... Manage third-party and vendor security risk assessments, ensuring proper controls, attestations ...

Director Cybersecurity

Sunnyvale, CA · On-site

$200K - $260K/yr

... seeking a Director Cybersecurity to lead the strategic direction, governance, and long-term ... Oversee risk management programs, including enterprise risk assessments and mitigation strategies.

Director Cybersecurity

Sunnyvale, CA · On-site

$200K - $260K/yr

... seeking a Director Cybersecurity to lead the strategic direction, governance, and long-term ... Oversee risk management programs, including enterprise risk assessments and mitigation strategies.

Cybersecurity Risk Lead

Camden, ME · On-site

$121K - $164K/yr

The Cybersecurity Risk Leadis responsible foraligning cybersecurity capabilities, processes, and ... Risk management experience * Experience with Zero Trust, SASE/SSE, ZTNA, or cloud security ...

Cybersecurity Risk Lead

Portland, ME · On-site

$113K - $153K/yr

The Cybersecurity Risk Leadis responsible foraligning cybersecurity capabilities, processes, and ... Risk management experience * Experience with Zero Trust, SASE/SSE, ZTNA, or cloud security ...

Cybersecurity Risk Lead

Gardiner, ME · On-site

$107K - $144K/yr

The Cybersecurity Risk Leadis responsible foraligning cybersecurity capabilities, processes, and ... Risk management experience * Experience with Zero Trust, SASE/SSE, ZTNA, or cloud security ...

Showing results 41-60

Director Cybersecurity Risk Management information

See salary details

$54K

$143.2K

$260K

How much do director cybersecurity risk management jobs pay per year?

As of Sep 9, 2026, the average yearly pay for director cybersecurity risk management in the United States is $143,185.00, according to ZipRecruiter salary data. Most workers in this role earn between $105,500.00 and $167,500.00 per year, depending on experience, location, and employer.

What is a director cybersecurity risk management?

A Director of Cybersecurity Risk Management is a senior leader responsible for overseeing an organization’s cybersecurity risk strategies and programs. They identify, evaluate, and mitigate potential cyber threats to protect company assets and data. This role involves developing risk management frameworks, ensuring compliance with regulations, and leading a team of security professionals. Directors also collaborate with other departments to promote a culture of security awareness across the organization.

How does a director cybersecurity risk management typically collaborate with other departments to ensure organization-wide security?

A Director of Cybersecurity Risk Management frequently works cross-functionally, engaging with IT, legal, compliance, and executive leadership to align security initiatives with business objectives. They lead risk assessments, communicate cyber risks in business terms, and help other departments understand and mitigate their own vulnerabilities. Regular meetings, security awareness training, and participation in strategic planning sessions are common, ensuring that cybersecurity policies are integrated into the organization's overall operations. This collaborative approach is essential for building a robust security culture and addressing complex threats.

What are the key skills and qualifications needed to thrive as a director cybersecurity risk management, and why are they important?

To excel as a Director of Cybersecurity Risk Management, you need deep expertise in information security frameworks, risk assessment, and compliance, typically supported by a bachelor's or master's degree in cybersecurity or a related field. Familiarity with risk management platforms, security information and event management (SIEM) systems, and certifications such as CISSP, CISM, or CRISC are highly valuable. Exceptional leadership, strategic thinking, and communication skills enable effective collaboration with executive teams and cross-functional stakeholders. These competencies are crucial for developing robust security strategies, mitigating threats, and ensuring organizational resilience in an evolving cyber risk landscape.

What is the difference between Director Cybersecurity Risk Management vs Cybersecurity Risk Analyst?

AspectDirector Cybersecurity Risk ManagementCybersecurity Risk Analyst
CertificationsCISSP, CISM, CRISCCISSP, CompTIA Security+
Work EnvironmentLeadership, strategic planning, executive collaborationOperational, technical analysis, risk assessment
Employer & Industry UsageLarge organizations, corporate security teamsSecurity teams, consulting firms, IT departments

The main difference is that the Director Cybersecurity Risk Management focuses on strategic oversight, policy development, and managing cybersecurity risk at an organizational level. In contrast, the Cybersecurity Risk Analyst handles technical risk assessments, vulnerability analysis, and supports risk mitigation efforts. Both roles require relevant certifications, but the director position emphasizes leadership and strategic planning, while the analyst role is more technical and operational.

What cities are hiring for Director Cybersecurity Risk Management jobs?

Cities with the most Director Cybersecurity Risk Management job openings:

What states have the most Director Cybersecurity Risk Management jobs?

States with the most job openings for Director Cybersecurity Risk Management jobs include:

What are popular job titles related to Director Cybersecurity Risk Management jobs?

For Director Cybersecurity Risk Management jobs, the most frequently searched job titles are:

Infographic showing various Director Cybersecurity Risk Management job openings in the United States as of August 2026, with employment types broken down into 1% As Needed, 84% Full Time, 13% Part Time, and 2% Contract. Highlights an 83% Physical, 2% Hybrid, and 15% Remote job distribution, with an average salary of $143,185 per year, or $68.8 per hour.

Cybersecurity Director Business Wire · $230k - $245k Director 15h ago (Northern)

Eastern, KY • On-site

Full-time

Medical, Retirement, PTO

This job post has expired today. Applications are no longer accepted.


Job description

United States Director Cybersecurity 1d ago $230k – $245k

About this role

Business Wire, a Berkshire Hathaway company, is the global market leader in press release distribution and regulatory disclosure. We are on a mission to redefine how organizations connect with their audiences - and that’s just the beginning!

Organizations, large and small, depend on us to accurately publicize market-moving news and multimedia, and generate social engagements that develop interactions with their target audiences.

About the Role

The Cybersecurity Director is responsible for providing strategic leadership across Business Wire’s cybersecurity function, providing strategy, overseeing security architecture and infrastructure, guiding cybersecurity-related risk decisions across the organization, and advancing and managing a comprehensive Governance, Risk, and Compliance (GRC) program.

This role works collaboratively with all areas of the business to ensure that we maintain a robust and highly effective Information Security program for our existing solutions while also supporting the buildout of new client solutions hosted in our data centers and the cloud. This role provides oversight of our external cyber defense partner and drives efforts in cloud security, application security, identity and access strategies, Zero Trust, vulnerability management, email security, data protection, privacy requirements, and emerging technology risks—including AI.

This role is additionally responsible for establishing a robust security governance framework, ensuring compliance with internal and external audit requirements, fostering a security-first culture across the organization, and collaborating with cross-functional teams to integrate risk management practices into all business operations.

What You’ll Do
  • Develop and maintain cybersecurity and GRC strategy and long-term roadmap, with the goal of enhancing overall strategy in alignment with business objectives.
  • Make continuous improvements to our security strategies to protect critical assets and data.
  • Provide strategic decision-making and problem-solving to navigate complex security and regulatory landscapes.
  • Manage a comprehensive Governance, Risk, and Compliance program in support of corporate audits, client assessments, and regulatory standards such as PCI DSS, SOC 2, and ISO 27001; ensure that our company meets all internal and external audit requirements.
  • Conduct regular risk assessments and periodic penetration testing and vulnerability assessments to identify and mitigate potential threats to the organization’s infrastructure, applications, and data.
  • Manage the timely creation and dissemination of security-related communications including security awareness and training announcements, security compliance policies and processes, security alerts, and event messaging.
  • Provide oversight in maintaining a successful collaborative relationship with our external cyber defense partner, including evaluation of service delivery performance and in alignment with BW’s cybersecurity priorities.
  • Provide strategic leadership during cybersecurity incidents, coordinating with IT, Legal, HR, Privacy, Communications, and other stakeholders, and act as executive-level point-of-contact.
  • Offer senior-level guidance in developing and improving cybersecurity governance programs, policies, standards, and secure architecture guidelines.
  • Oversee enterprise cybersecurity risk assessments and ensure corrective actions are prioritized and implemented effectively; provide direction for privacy and data protection initiatives.
  • Provide leadership, guidance, and mentorship to cybersecurity and GRC team members, drive strong performance across all initiatives and support individual and team development.
  • Act as a trusted advisor to senior leadership on cybersecurity risk, architecture decisions, and strategic measures.
  • Use metrics to evaluate and track effectiveness of security, governance, and compliance initiatives.
  • Leverage exceptional communication skills to translate technical requirements into actionable business solutions.
What You’ll Need
  • Ability to work in the San Francisco office an average of twice a week.
  • Bachelor’s or Master’s degree in Computer Science, Information Security, or a related field.
  • 10+ years of relevant industry experience in Information Security, with 5+ years of managerial and strategic leadership experience.
  • Knowledge of data protection, privacy regulations, and cybersecurity governance frameworks.
  • Expertise in cloud security, including AWS and Azure, as well as cybersecurity architecture, application security, identity management, and Zero Trust.
  • Experience in data encryption, access controls, code reviews, and secure coding practices.
  • Expertise in building and implementing GRC frameworks and risk management processes.
  • Familiarity with regulatory compliance requirements, including PCI DSS, SOC 2, and ISO 27001.
  • Certified Information Systems Security Professional (CISSP) or equivalent certification is a plus.
  • Strong leadership and team-building skills.
  • Excellent written and verbal communication skills with external and internal stakeholders and executives, and the ability to simplify complex cybersecurity topics. Ability to deliver constructive & encouraging feedback.
  • Proactive, organized, analytical, detail-oriented, and persistent.
  • Experience managing and overseeing external security service providers or technology partners.

Business Wire will not sponsor a new applicant for employment authorization for this position.

What We Offer

The base salary range for this position is $230K to $245K/year. Offered salary will be determined by several factors, including but not limited to: applicant’s education, experience, knowledge, skills and abilities, as well as internal equity and alignment with geographic market data. Business Wire reserves the right to modify this salary range at any time.

Business Wire’s total rewards include:

  • Ability to work remotely
  • Excellent health benefits that begin on your first day of employment
  • $100 monthly fitness allotment, a tuition reimbursement program, and enhanced mental health resources
  • 401(k) plan with generous company match, and annual profit sharing contribution (subject to company performance)
  • PTO, Floating Holidays, Wellness Day Off, Birthday Day Off, and more!

A pre-employment background check will be required after the acceptance of an offer. Business Wire is proud to be an equal opportunity workplace. We are committed to equal employment opportunity regardless of race, color, ancestry, religion, sex, national origin, sexual orientation, age, citizenship, marital status, disability, gender identity or Veteran status. Pursuant to the San Francisco Fair Chance Ordinance and other similar state laws and local ordinances, and its internal policy, Business Wire will also consider for employment qualified applicants with arrest and conviction records.

#J-18808-Ljbffr