Conduct regular risk assessments, including PCI-DSS and SOX, and develop comprehensive risk ... Bachelor's degree in information security, Computer Science, or a related field; Master's degree ...
Conduct regular risk assessments, including PCI-DSS and SOX, and develop comprehensive risk ... Bachelor's degree in information security, Computer Science, or a related field; Master's degree ...
... Vulnerability Assessment In-depth knowledge of security concepts such as cyber-attacks and ... security risk management frameworks and compliance practices. • Knowledge of securing network ...
... Vulnerability Assessment In-depth knowledge of security concepts such as cyber-attacks and ... security risk management frameworks and compliance practices. • Knowledge of securing network ...
The role drives consistent processes for business impact analysis, risk assessment, continuity ... In addition, the Director supports physical security and employee safety by partnering with ...
The role drives consistent processes for business impact analysis, risk assessment, continuity ... In addition, the Director supports physical security and employee safety by partnering with ...
The role drives consistent processes for business impact analysis, risk assessment, continuity ... In addition, the Director supports physical security and employee safety by partnering with ...
The role drives consistent processes for business impact analysis, risk assessment, continuity ... In addition, the Director supports physical security and employee safety by partnering with ...
Conduct risk assessments using frameworks like NIST and ISO. * Lead and support PCI-DSS assessments for compliance. * Architect and assess security measures for AWS and Azure environments. * Provide ...
Quick apply
Conduct risk assessments using frameworks like NIST and ISO. * Lead and support PCI-DSS assessments for compliance. * Architect and assess security measures for AWS and Azure environments. * Provide ...
Assess the level of risk and develop and/or recommend appropriate mitigation countermeasures in ... Proficiency in implementing security controls, conducting risk assessments, and documenting ...
Assess the level of risk and develop and/or recommend appropriate mitigation countermeasures in ... Proficiency in implementing security controls, conducting risk assessments, and documenting ...
Assess the level of risk and develop and/or recommend appropriate mitigation countermeasures in ... Proficiency in implementing security controls, conducting risk assessments, and documenting ...
Assess the level of risk and develop and/or recommend appropriate mitigation countermeasures in ... Proficiency in implementing security controls, conducting risk assessments, and documenting ...
Conducting AI risk assessments for privacy, security, model risk, and misuse-including prompt injection, sensitive data exposure, excessive agency, and overreliance-and translating findings into ...
Conducting AI risk assessments for privacy, security, model risk, and misuse-including prompt injection, sensitive data exposure, excessive agency, and overreliance-and translating findings into ...
Assess the level of risk and develop and/or recommend appropriate mitigation countermeasures in ... Proficiency in implementing security controls, conducting risk assessments, and documenting ...
Assess the level of risk and develop and/or recommend appropriate mitigation countermeasures in ... Proficiency in implementing security controls, conducting risk assessments, and documenting ...
ServiceNow Consultant
Raleigh, NC · On-site
Contribute to functional design and build for security/risk solutions (IRM, SecOps, ITOM, ITAM ... Includes design of the cyber organization, governance, and risk assessments. Skills and ...
ServiceNow Consultant
Raleigh, NC · On-site
Contribute to functional design and build for security/risk solutions (IRM, SecOps, ITOM, ITAM ... Includes design of the cyber organization, governance, and risk assessments. Skills and ...
Analyze segregation of duties risks, support ruleset updates, and perform user- and role-level risk assessments in SAP GRC 12.0. * Develop security solutions for custom transactions, tables, programs ...
Analyze segregation of duties risks, support ruleset updates, and perform user- and role-level risk assessments in SAP GRC 12.0. * Develop security solutions for custom transactions, tables, programs ...
Senior Systems and Security Administrator
Garner, NC · Remote
$88K - $119.20K/yr
Develop and maintain risk mitigation strategies and action plans for audit findings and security assessments. * Conduct periodic information security risk analyses and system activity reviews. * Own ...
Quick apply
Senior Systems and Security Administrator
Garner, NC · Remote
$88K - $119.20K/yr
Develop and maintain risk mitigation strategies and action plans for audit findings and security assessments. * Conduct periodic information security risk analyses and system activity reviews. * Own ...
Performing and scaling risk assessments and security architecture reviews for applications, cloud platforms, APIs, and system integrations. * Collaborating with software development teams to create ...
Performing and scaling risk assessments and security architecture reviews for applications, cloud platforms, APIs, and system integrations. * Collaborating with software development teams to create ...
... security threat and risk assessment and management experience, including using industry frameworks such as ITIL, COBIT, NIST CSF, CIS RAM, MITRE. 4. 2+ years' experience with digital banking deployed ...
... security threat and risk assessment and management experience, including using industry frameworks such as ITIL, COBIT, NIST CSF, CIS RAM, MITRE. 4. 2+ years' experience with digital banking deployed ...
Part-Time GSOC Operator (Weekends)
Raleigh, NC · On-site
$26.50/hr
... research, and assess information that could indicate a potential concern to the client, its ... You will create detailed reports of physical security risk incidents using internal incident ...
Part-Time GSOC Operator (Weekends)
Raleigh, NC · On-site
$26.50/hr
... research, and assess information that could indicate a potential concern to the client, its ... You will create detailed reports of physical security risk incidents using internal incident ...
Part-Time GSOC Operator (Weekends)
Raleigh, NC · On-site
$26.50/hr
... research, and assess information that could indicate a potential concern to the client, its ... You will create detailed reports of physical security risk incidents using internal incident ...
Part-Time GSOC Operator (Weekends)
Raleigh, NC · On-site
$26.50/hr
... research, and assess information that could indicate a potential concern to the client, its ... You will create detailed reports of physical security risk incidents using internal incident ...
... research, and assess information that could indicate a potential concern to the client, its ... You will create detailed reports of physical security risk incidents using internal incident ...
Quick apply
... research, and assess information that could indicate a potential concern to the client, its ... You will create detailed reports of physical security risk incidents using internal incident ...
... other risk assessment models. *5+ years of working knowledge of various industry security standards and frameworks including: ISO 27001, ISF Standard of Good Practice (SoGP), NIST Special ...
... other risk assessment models. *5+ years of working knowledge of various industry security standards and frameworks including: ISO 27001, ISF Standard of Good Practice (SoGP), NIST Special ...
Director of Security
Morrisville, NC · On-site
You can assess ambiguity, identify real risk, prioritize effectively, and drive pragmatic solutions end-to-end across engineering, infrastructure, and leadership. * You communicate complex security ...
Director of Security
Morrisville, NC · On-site
You can assess ambiguity, identify real risk, prioritize effectively, and drive pragmatic solutions end-to-end across engineering, infrastructure, and leadership. * You communicate complex security ...
Firmware Security Engineer
Cary, NC · On-site
Proven expertise in embedded systems security, with a strong focus on threat modeling, risk assessment, and security implementation. * Strong command of UEFI security standards (e.g., TPM 2.0, Secure ...
Quick apply
Firmware Security Engineer
Cary, NC · On-site
Proven expertise in embedded systems security, with a strong focus on threat modeling, risk assessment, and security implementation. * Strong command of UEFI security standards (e.g., TPM 2.0, Secure ...
Freelance Security Risk Assessment information
See Raleigh, NC salary details
$22.87 is the 25th percentile. Wages below this are outliers.
$14.49 - $24.85
31% of jobs
The median wage is $31.25 / hr.
$24.85 - $35.22
31% of jobs
$35.22 - $45.59
4% of jobs
$54.66 is the 75th percentile. Wages above this are outliers.
$45.59 - $55.95
10% of jobs
$55.95 - $66.32
9% of jobs
$66.32 - $76.69
5% of jobs
$76.69 - $87.05
0% of jobs
$87.05 - $97.42
8% of jobs
$97.42 - $107.79
0% of jobs
$107.79 - $118.15
0% of jobs
$118.15 - $128.52
1% of jobs
$14
$46
$128
How much do freelance security risk assessment jobs pay per hour?
What is the difference between Freelance Security Risk Assessment vs Security Consultant?
| Aspect | Freelance Security Risk Assessment | Security Consultant |
|---|---|---|
| Credentials | Certifications like CISSP, CISA, or CEH often required | Similar certifications, often with additional experience requirements |
| Work Environment | Independent, project-based, often remote or on-site at client locations | Typically employed by firms or consulting agencies, may work on multiple projects |
| Industry Usage | Used by organizations seeking independent risk assessments | Engaged for broader security strategy, policy development, and consulting |
While both roles involve assessing security risks, Freelance Security Risk Assessments focus on independent, project-specific evaluations, whereas Security Consultants often provide ongoing security advice and strategy within organizations or consulting firms.

Full-time
Posted 12 days ago
Job description
The Director of Governance and Risk will report to the CISO within Advance Auto Parts and will focus on the defining and deploying governance and risk management frameworks across Advance Auto Parts.
The Director of Governance and Risk will oversee cybersecurity policy, standards, procedures, compliance, ensuring the company adheres to relevant regulations, industry standards, and internal and 3rd party risk management. The ideal candidate will combine expertise in both cybersecurity and risk management disciplines and have exceptional communication and stakeholder management skills.
This position is 4 days in office, 1 day remote per week, based at our corporate headquarters in Raleigh, North Carolina (North Hills)
The key responsibilities of the role include:
- Develop a short term and long-term comprehensive Governance and Risk Management Strategy
- Develop, communicate, and implement enterprise-wide security policy, standards, procedures, and guidelines.
- Provide strategic guidance to the CISO for the representation of risks to the Board, Audit committee, and ERM
- Lead a team of cyber specialists, providing direction and supporting their development
- Conduct regular risk assessments, including PCI-DSS and SOX, and develop comprehensive risk management plans for various business units and projects
- Support Internal Audit with engagements requiring technology support.
- Vendor Risk Management (VRM): Oversee the VRM integration, including risk reviews, contract management, and ongoing monitoring to manage risks associated with third-party vendors and suppliers
- Support the identification, evaluation, and prioritization of cyber risks across the organization
- Oversee production, reporting and evolution of cyber risk metrics, including Key Performance Indicators (KPIs), scorecards, and Key Risk Indicators (KRIs)
- Conduct risk analysis, providing insights on issues and direction on risk mitigation strategies
- Drive automation, analytics, and continuous improvement of processes
- Engage with a range of senior stakeholders across Lines of Defense to ensure appropriate oversight and reporting of cybersecurity risks and vulnerabilities
- Collaborate with cross-functional teams on cyber risk remediation activities
- Ensure regulatory compliance with frameworks in NIST, SOC 1&2, PCI, SOX, CCPA
- Maintain the database and reporting platform to ensure compliance to our security policies and standards.
Skills/ Qualifications:
- Bachelor's degree in information security, Computer Science, or a related field; Master's degree preferred
- Minimum of 12 years of experience in cybersecurity, with a focus on risk management
- Expert in the implementation and operational management of OneTrust, working knowledge of Service Now, and Auditboard.
- Process driven with an extensive knowledge of cyber risk management frameworks, tools, and methodologies
- Master in the ability to "tell a story" through PowerPoint leveraging metrics and creativity for various levels of the enterprise (Board, ERM, Steerco, Business and/or tech leaders)
- Proven experience in senior leadership roles, managing teams, and influencing executive stakeholders, driving outcomes
- Experience in establishing and managing regulatory compliance in NIST, PCI-DSS, SOX, SOC 1/2, CCPA, HIPAA
- Deep understanding in cybersecurity metrics programs that are meaningful and risk/risk posture reporting
- Strategic thinker with a strong understanding of cyber risks, vulnerabilities, and risk mitigation options
- Innovative thinker, adaptable to change, self-driven, aggressive, and detail oriented with the ability to establish true partnerships that drives business enablement while managing risk
- Exceptional communication and executive level presentation skills, capable of translating technical risk into business terms
- Must have the ability to drive enterprise aligned roadmaps focusing on top cyber risks, cyber priorities, industry threats that align to the business
- Excellent analytical, problem-solving, and decision-making skills
California Residents click below for Privacy Notice:
https://jobs.advanceautoparts.com/us/en/disclosures
About Advance Auto Parts
Sourced by ZipRecruiter
At Advance Auto Parts we have a passion for YES. Each day we are motivated by a passion to help our Customers. We have a commitment to advance the lives of our fellow Team Members, Customers, and the Communities where we live and work.
Industry
Motor vehicle and motor vehicle parts wholesalers, retail, internet and it and elementary and secondary schools
Company size
10,000+ Employees
Headquarters location
Raleigh, NC, US