... risk assessment and treatment, internal controls, third-party risk management, audit readiness, and regulatory engagement. The Director partners closely with security architecture, security ...
... risk assessment and treatment, internal controls, third-party risk management, audit readiness, and regulatory engagement. The Director partners closely with security architecture, security ...
Business Information Security Leader (BISL) - Commercial -- Hybrid - Bridgewater, NJ or Morrisvil...
Morrisville, NC · Hybrid
Ensure risk assessments are conducted, partnering with the Risk Management function, for new and materially changed technologies. Serve as a security risk advisor to business-aligned STS leadership ...
Business Information Security Leader (BISL) - Commercial -- Hybrid - Bridgewater, NJ or Morrisvil...
Morrisville, NC · Hybrid
Ensure risk assessments are conducted, partnering with the Risk Management function, for new and materially changed technologies. Serve as a security risk advisor to business-aligned STS leadership ...
Business Information Security Leader - Corporate Systems - Hybrid Bridgewater, NJ or Morrisville...
Morrisville, NC · Hybrid
Ensure risk assessments are conducted, partnering with the Risk Management function, for new and materially changed technologies. Serve as a security risk advisor to business-aligned STS leadership ...
Business Information Security Leader - Corporate Systems - Hybrid Bridgewater, NJ or Morrisville...
Morrisville, NC · Hybrid
Ensure risk assessments are conducted, partnering with the Risk Management function, for new and materially changed technologies. Serve as a security risk advisor to business-aligned STS leadership ...
Intake, risk assessment, approval, monitoring, and retirement * Lead the AIS / Security Governance Team, responsible for executing AI governance activities defined in the AIS Program, including: * AI ...
Intake, risk assessment, approval, monitoring, and retirement * Lead the AIS / Security Governance Team, responsible for executing AI governance activities defined in the AIS Program, including: * AI ...
Conducting risk assessments across privacy, security, model risk, and misuse scenarios, including prompt injection, sensitive data exposure, excessive agency, and overreliance, and translating ...
Conducting risk assessments across privacy, security, model risk, and misuse scenarios, including prompt injection, sensitive data exposure, excessive agency, and overreliance, and translating ...
Security Specialist
Raleigh, NC · On-site
C2C/W2 3The Compliance Officer will be familiar with risk management, comfortable leading internal risk assessments, and possess knowledge of HIPAA and NIST privacy and security requirements for ...
Security Specialist
Raleigh, NC · On-site
C2C/W2 3The Compliance Officer will be familiar with risk management, comfortable leading internal risk assessments, and possess knowledge of HIPAA and NIST privacy and security requirements for ...
Senior IT Audit & Assurance Analyst
Raleigh, NC · On-site +1
... risk assessment activities for a fast-paced fintech SaaS company serving community financial ... under a security-first model under the Chief Information Security Officer. What You'll Do: SOC ...
Senior IT Audit & Assurance Analyst
Raleigh, NC · On-site +1
... risk assessment activities for a fast-paced fintech SaaS company serving community financial ... under a security-first model under the Chief Information Security Officer. What You'll Do: SOC ...
Minimum 10+ years of IT experience * 8+ years of Security Assessment, IT Risk Compliance, IT audit or similar experience * 5+ years internal control risk management, IT controls and related standards
Minimum 10+ years of IT experience * 8+ years of Security Assessment, IT Risk Compliance, IT audit or similar experience * 5+ years internal control risk management, IT controls and related standards
Implement AI risk management: risk assessments, AI guardrails, lifecycle gates, bias/fairness ... Certified Information Systems Security Professional (CISSP), Certified Information Privacy ...
Implement AI risk management: risk assessments, AI guardrails, lifecycle gates, bias/fairness ... Certified Information Systems Security Professional (CISSP), Certified Information Privacy ...
Senior Director, Information Security
Chapel Hill, NC · On-site +1
$190K - $230K/yr
As the Security Officer for Well, you will collaborate with executive management and key ... Work directly with the business units to facilitate risk assessment and risk management processes
Senior Director, Information Security
Chapel Hill, NC · On-site +1
$190K - $230K/yr
As the Security Officer for Well, you will collaborate with executive management and key ... Work directly with the business units to facilitate risk assessment and risk management processes
The Compliance Officer will be familiar with risk management, comfortable leading internal risk assessments, and possess knowledge of HIPAA and NIST privacy and security requirements for health ...
The Compliance Officer will be familiar with risk management, comfortable leading internal risk assessments, and possess knowledge of HIPAA and NIST privacy and security requirements for health ...
Sr Security Engineer - IAM
Raleigh, NC · On-site
$111K - $152K/yr
The Sr. Security Engineer - IAM is a mid to senior-level role responsible for driving the design ... Understanding of threat modeling and risk assessment related to identity and access. * Incident ...
Sr Security Engineer - IAM
Raleigh, NC · On-site
$111K - $152K/yr
The Sr. Security Engineer - IAM is a mid to senior-level role responsible for driving the design ... Understanding of threat modeling and risk assessment related to identity and access. * Incident ...
Sr Security Engineer - IAM
$111K - $152K/yr
The Sr. Security Engineer - IAM is a mid to senior-level role responsible for driving the design ... Understanding of threat modeling and risk assessment related to identity and access. * Incident ...
Sr Security Engineer - IAM
$111K - $152K/yr
The Sr. Security Engineer - IAM is a mid to senior-level role responsible for driving the design ... Understanding of threat modeling and risk assessment related to identity and access. * Incident ...
Sr Security Engineer - IAM
$111K - $152K/yr
The Sr. Security Engineer - IAM is a mid to senior-level role responsible for driving the design ... Understanding of threat modeling and risk assessment related to identity and access. * Incident ...
Sr Security Engineer - IAM
$111K - $152K/yr
The Sr. Security Engineer - IAM is a mid to senior-level role responsible for driving the design ... Understanding of threat modeling and risk assessment related to identity and access. * Incident ...
Sr. Manager of Cybersecurity, Third Party Risk
Raleigh, NC · Hybrid
$107K - $145K/yr
Oversee cybersecurity risk assessments for new and existing vendors. * Evaluate vendor controls across identity and access management, network security, cloud security, application security, data ...
Sr. Manager of Cybersecurity, Third Party Risk
Raleigh, NC · Hybrid
$107K - $145K/yr
Oversee cybersecurity risk assessments for new and existing vendors. * Evaluate vendor controls across identity and access management, network security, cloud security, application security, data ...
Sr Security Engineer - IAM
Raleigh, NC · On-site
$111K - $152K/yr
The Sr. Security Engineer - IAM is a mid to senior-level role responsible for driving the design ... Understanding of threat modeling and risk assessment related to identity and access. * Incident ...
Sr Security Engineer - IAM
Raleigh, NC · On-site
$111K - $152K/yr
The Sr. Security Engineer - IAM is a mid to senior-level role responsible for driving the design ... Understanding of threat modeling and risk assessment related to identity and access. * Incident ...
Sr. Manager of Cybersecurity, Third Party Risk
Raleigh, NC · On-site
$107K - $145K/yr
Oversee cybersecurity risk assessments for new and existing vendors. * Evaluate vendor controls across identity and access management, network security, cloud security, application security, data ...
Sr. Manager of Cybersecurity, Third Party Risk
Raleigh, NC · On-site
$107K - $145K/yr
Oversee cybersecurity risk assessments for new and existing vendors. * Evaluate vendor controls across identity and access management, network security, cloud security, application security, data ...
Sr. Manager of Cybersecurity, Third Party Risk
Raleigh, NC · On-site
$107K - $145K/yr
Oversee cybersecurity risk assessments for new and existing vendors. * Evaluate vendor controls across identity and access management, network security, cloud security, application security, data ...
Sr. Manager of Cybersecurity, Third Party Risk
Raleigh, NC · On-site
$107K - $145K/yr
Oversee cybersecurity risk assessments for new and existing vendors. * Evaluate vendor controls across identity and access management, network security, cloud security, application security, data ...
Applied Responsible AI Lead
Raleigh, NC · On-site
... Security, and Enterprise Risk). The role is neither a rubber stamp nor a late-stage blocker. It is ... Develop reusable risk assessment approaches, control mappings, AI pattern blueprints, evidence ...
Applied Responsible AI Lead
Raleigh, NC · On-site
... Security, and Enterprise Risk). The role is neither a rubber stamp nor a late-stage blocker. It is ... Develop reusable risk assessment approaches, control mappings, AI pattern blueprints, evidence ...
Senior Cloud Security Architect (26185)
Durham, NC · Hybrid
$61.75 - $82/hr
... risk assessment activities as subject matter expert for infrastructure and general information security concerns Determines security requirements by evaluating business strategies and requirements ...
Senior Cloud Security Architect (26185)
Durham, NC · Hybrid
$61.75 - $82/hr
... risk assessment activities as subject matter expert for infrastructure and general information security concerns Determines security requirements by evaluating business strategies and requirements ...
Freelance Security Risk Assessment information
See Raleigh, NC salary details
$22.87 is the 25th percentile. Wages below this are outliers.
$14.49 - $24.85
31% of jobs
The median wage is $31.25 / hr.
$24.85 - $35.22
31% of jobs
$35.22 - $45.59
4% of jobs
$54.66 is the 75th percentile. Wages above this are outliers.
$45.59 - $55.95
10% of jobs
$55.95 - $66.32
9% of jobs
$66.32 - $76.69
5% of jobs
$76.69 - $87.05
0% of jobs
$87.05 - $97.42
8% of jobs
$97.42 - $107.79
0% of jobs
$107.79 - $118.15
0% of jobs
$118.15 - $128.52
1% of jobs
$14
$46
$128
How much do freelance security risk assessment jobs pay per hour?
What is the difference between Freelance Security Risk Assessment vs Security Consultant?
| Aspect | Freelance Security Risk Assessment | Security Consultant |
|---|---|---|
| Credentials | Certifications like CISSP, CISA, or CEH often required | Similar certifications, often with additional experience requirements |
| Work Environment | Independent, project-based, often remote or on-site at client locations | Typically employed by firms or consulting agencies, may work on multiple projects |
| Industry Usage | Used by organizations seeking independent risk assessments | Engaged for broader security strategy, policy development, and consulting |
While both roles involve assessing security risks, Freelance Security Risk Assessments focus on independent, project-specific evaluations, whereas Security Consultants often provide ongoing security advice and strategy within organizations or consulting firms.

Full-time
Medical, Retirement, PTO
Posted 12 days ago
Job description
For 11,000+ health care and human service organizations, Relias helps clients deliver better clinical and financial outcomes by elevating the performance of teams. We help organizations across the continuum of care get better at maintaining compliance, developing staff and promoting consistent, high-quality care. Our platform employs assessments to reveal specific gaps in skills and addresses them with personalized and engaging learning, choosing from 7,000+ online courses that meet accrediting board, state and federal requirements. We are passionate about our products and our clients; what we deliver and the impact we have on the world is truly something you can be proud to represent. Join us and make a difference.
WHAT CAN RELIAS OFFER YOU?
- Fantastic health and wellness benefits package, including an outstanding 401k match, a flexible PTO program, and a generous and inclusive parental leave policy. Additionally, Relias pays for the employee portion of the monthly healthcare premium!
- Flexible work environment with onsite and work from home options - you choose when you want to come into the office!
- Active Employee Resource Groups open to all employees!
- Comprehensive onboarding program - a great introduction to our company, customers and culture!
- Growth and career advancement opportunities!
- Promotes internal mobility and career growth aligned with evolving business needs
- Multiple development program options - leadership development, professional development curriculums, and Nanodegree options in both technology and data science
- Professional development gained from conference attendance and participation in organizations like NC Tech
- Onsite 321 Coffee Shop providing free coffee and pastries to employees
The Director of (Cyber) Governance, Risk & Compliance (GRC) is a cyber leadership role responsible for establishing, operationalizing, and continuously maturing the organization's cybersecurity governance, risk management, and compliance programs in alignment with enterprise strategy and regulatory obligations. This role provides strategic oversight of policy development, risk assessment and treatment, internal controls, third-party risk management, audit readiness, and regulatory engagement. The Director partners closely with security architecture, security operations, legal, privacy, internal audit, product, and business stakeholders to ensure cybersecurity practices are aligned with enterprise risk tolerance and customer expectations. The role is accountable for defining governance structures, driving risk-informed decision-making, ensuring compliance with applicable frameworks and regulations, and building a scalable GRC function that enhances transparency, accountability, and trust across the organization.
WHAT YOU'LL BE DOING:
• Lead the strategy, operating model, and maturity roadmap for governance, risk, and compliance programs.
• Develop, maintain, and enforce information security policies, standards, procedures, and guidelines aligned with regulatory and business requirements.
• Oversee enterprise risk management for cybersecurity, including risk identification, assessment, prioritization, treatment tracking, and reporting.
• Maintain a centralized risk register and ensure appropriate risk acceptance, mitigation, or transfer decisions are documented and approved.
• Lead internal and external audit readiness activities, including coordination of evidence collection, control validation, and remediation tracking.
• Manage compliance with applicable frameworks and standards such as NIST CSF, ISO 27001, SOC 2, HIPAA, PCI DSS, and other regulatory obligations as applicable.
• Oversee third-party risk management processes, including vendor assessments, due diligence, risk rating, and monitoring of remediation activities.
• Establish governance forums, reporting structures, and escalation pathways to support risk-informed decision-making and accountability.
• Develop and deliver risk reporting, dashboards, and executive communications that articulate control effectiveness, compliance posture, and residual risk.
• Partner with legal, privacy, human resources, and business stakeholders to ensure alignment on regulatory obligations and data protection requirements.
• Drive continuous improvement of controls, processes, and governance practices based on audit findings, risk trends, and evolving threats.
• Support customer-facing security and compliance inquiries, including RFPs, due diligence questionnaires, and assurance reporting.
• Manage technology platforms supporting GRC functions (e.g., risk management systems, policy tools, audit tracking solutions).
• Lead, coach, and develop GRC professionals while fostering a culture of accountability, transparency, and continuous improvement.
YOU'VE GOT WHAT IT TAKES IF YOU HAVE/ARE:
• 10+ years of progressive experience in cybersecurity, risk management, compliance, or related fields.
• 5+ years of leadership experience in a GRC or related cybersecurity function.
• Bachelor's degree in Cybersecurity, Information Security, Information Technology, Business, or a related field; or equivalent professional experience.
• Demonstrated experience building or managing governance, risk, and compliance programs in a mid-sized or large organization.
• Experience supporting audits, regulatory inspections, and compliance assessments.
• Experience managing third-party risk and vendor assessment processes.
• Experience developing policies, standards, and enterprise risk frameworks.
• Experience partnering with executive leadership and cross-functional stakeholders on risk and compliance initiatives.
EXPERIENCE/EDUCATION PREFERRED:
• Master's degree in Cybersecurity, Risk Management, Information Assurance, Business Administration, or related discipline.
• Professional certifications such as CISSP, CISM, CRISC, or CISA.
• Experience in SaaS, cloud-native, or highly regulated industries.
• Experience aligning security and compliance programs to FedRAMP, SOC 2, ISO 27001, or similar frameworks.
• Experience supporting customer trust programs and external assurance reporting.
• Experience implementing or optimizing GRC tooling and automation.
Relias is an Equal Opportunity Employer and a Drug-Free workplace. Relias welcomes and encourages applications from people with disabilities and is happy to make reasonable accommodations in all aspects of the selection process. If you are an individual with a disability and require reasonable accommodation to complete any part of the job application process, please visit our career page for instructions.
IN OFFICE REQUIREMENT:
Relias values collaboration and wants to ensure that our team members have opportunities to work with their teams regularly for professional development opportunities. Our flexible hybrid work environment requires that you live in the state of North Carolina, within a commutable distance to our office (~1-hour commute). You would be expected to work in our Morrisville, NC Headquarters (close to the Raleigh/Durham airport) approximately 40 days/quarter.
Company: Relias LLC
Country: United States of America
State/Region: North Carolina
City: Morrisville
Postal Code: 27560
Job ID: 289682
About Bertelsmann SE & Co. KGaA
Sourced by ZipRecruiter
Industry
Technology, communication and media
Company size
10,000+ Employees
Headquarters location
Gütersloh, NRW, GER