1

Information Risk Management Jobs in California (NOW HIRING)

RISK MANAGEMENT ANALYST

Beverly Hills, CA · On-site

$38.46 - $43.27/hr

Summary: We are seeking a Risk Management Analyst to join our Global Risk Management team in ... For further information on Kennedy Wilson, please visit www.kennedywilson.com. Key Responsibilities ...

Risk Management, Claims, Legal, Patient Safety, Quality, Accreditation, Regulatory, and Licensing ... Ensures timely and accurate response to inquiries for claims history and coverage information.

Risk Management Specialist

Ukiah, CA · On-site

$78K - $116K/yr

Risk Management, Claims, Legal, Patient Safety, Quality, Accreditation, Regulatory, and Licensing ... Ensures timely and accurate response to inquiries for claims history and coverage information.

Risk Management Coordinator

Upland, CA · On-site

$78K - $100K/yr

Develop statistical information and reports and analyze the city's loss prevention efforts. Makes recommendations for the development and revision of risk management documents, procedures, and forms ...

Partner closely with Legal, HR, IT, Finance, and Operations leadership to guide risk-related ... Lead renewal strategies, negotiations, and claims management with brokers and carriers. * Analyze ...

Risk Management Coordinator

Upland, CA · On-site

$78K - $100K/yr

Develop statistical information and reports and analyze the city's loss prevention efforts. * Makes recommendations for the development and revision of risk management documents, procedures, and ...

... information Requirements * A bachelor's degree, preferably a master's degree, professional ... A minimum of four (4) years of experience in vendor risk management, compliance, or a related role

New

next page

Showing results 1-20

Information Risk Management information

See California salary details

$50.8K

$110.1K

$167.8K

How much do information risk management jobs pay per year?

As of Aug 21, 2026, the average yearly pay for information risk management in California is $110,095.00, according to ZipRecruiter salary data. Most workers in this role earn between $88,800.00 and $127,300.00 per year, depending on experience, location, and employer.

What is information risk management?

Information Risk Management is the process of identifying, assessing, and controlling risks to an organization's information assets. This includes protecting sensitive data from threats like cyberattacks, data breaches, and unauthorized access. Information risk managers develop policies and procedures to minimize risks, ensure compliance with regulations, and support business objectives. Their work helps organizations maintain data integrity, confidentiality, and availability.

What are the key skills and qualifications needed to thrive in information risk management?

To excel in Information Risk Management, you need a solid background in cybersecurity principles, risk assessment methodologies, and regulatory compliance, often supported by a degree in information security or a related field. Familiarity with risk management frameworks like ISO 27001, NIST, and certifications such as CISSP or CISM, as well as proficiency in using risk assessment tools, is highly valuable. Strong analytical thinking, attention to detail, and effective communication are crucial soft skills for translating technical risks into business terms and collaborating with stakeholders. These skills enable professionals to identify, assess, and mitigate information risks, safeguarding organizational assets and ensuring regulatory compliance.

What are some common challenges faced by professionals in information risk management, and how can they be addressed?

Professionals in Information Risk Management often encounter challenges such as keeping up with rapidly evolving cyber threats, ensuring compliance with complex regulatory requirements, and effectively communicating risks to non-technical stakeholders. Staying current with industry trends and participating in ongoing training can help address knowledge gaps. Building strong relationships with IT, compliance, and business units fosters better collaboration and ensures risk mitigation efforts are aligned with organizational goals.

What jobs can you get with information risk management?

Jobs in information risk management include roles such as Information Security Analyst, Risk Analyst, Security Consultant, and Compliance Manager. These positions involve assessing and mitigating cybersecurity threats, implementing security policies, and ensuring regulatory compliance, often requiring knowledge of frameworks like ISO 27001 or NIST and certifications such as CISSP or CISM.
Infographic showing various Information Risk Management job openings in California as of August 2026, with employment types broken down into 1% As Needed, 87% Full Time, 10% Part Time, and 2% Contract. Highlights an 84% Physical, 3% Hybrid, and 13% Remote job distribution, with an average salary of $110,095 per year, or $52.9 per hour.

Director of Information Governance

Pillsbury Winthrop Shaw Pittman Llp

Los Angeles, CA • On-site

Full-time

Posted 17 days ago


Job description

Nashville, TennesseeJob Description

The Director of Information Governance (IG) is a senior member of the Risk Management department and is responsible for developing, implementing, and overseeing the firm's information governance strategy, policies, and programs. This leadership role ensures that client and firm information is managed throughout its lifecycle in a manner that supports regulatory compliance, client obligations, risk management, operational efficiency, cybersecurity, and business objectives.

The Director serves as a strategic partner to firm leadership, Operations, Information Technology, Risk Management, Privacy, Cybersecurity, eDiscovery and AI/Knowledge Management teams. The role is responsible for establishing governance frameworks that address information creation, import, classification, retention, disposition, privacy, security, AI-related data governance, and defensible information management practices.

KEY RESPONSIBILITIES

  • Develop and execute a comprehensive information governance program/team aligned with the firm's strategic objectives.

  • Establish policies, standards, procedures, and controls governing the management of physical and electronic information.

  • Lead enterprise-wide initiatives related to information lifecycle management, records management, data retention, disposition, and information risk reduction.

  • Advise firm leadership on emerging information governance trends, legal requirements, and industry best practices.

  • Participate in cross-functional governance committees and working groups.

  • Oversee firm-wide records management and retention programs for both physical and electronic records.

  • Maintain and administer records retention schedules consistent with legal, regulatory, ethical, and client requirements.

  • Implement defensible disposition programs to reduce information risk and storage costs.

  • Establish information classification and metadata standards to improve information retrieval and management.

  • Ensure appropriate controls for information archiving, preservation, and destruction.

  • Monitor evolving laws, regulations, and industry standards affecting information governance, privacy, records management, and data protection.

  • Partner with General Counsel, Risk Management, Compliance, and Privacy teams to ensure adherence to legal and regulatory obligations.

  • Support responses to client audits, outside counsel guidelines, security assessments, and information governance questionnaires.

  • Ensure governance practices align with applicable privacy laws and professional responsibility requirements.

  • Develop and maintain legal hold governance policies and procedures.

  • Collaborate with Litigation Support and eDiscovery teams regarding legal holds, data preservation, collections, and defensible processes.

  • Ensure governance practices align with applicable privacy laws and professional responsibility requirements.

  • Develop and maintain legal hold governance policies and procedures.

  • Collaborate with Litigation Support and eDiscovery teams regarding legal holds, data preservation, collections, and defensible processes.

  • Ensure information governance practices support efficient and cost-effective litigation and regulatory responses.

  • Assist with internal investigations, regulatory inquiries, and client matters requiring preservation and retrieval of information.

  • Partner with Information Security, Privacy, and Technology teams to align governance, security, and privacy controls.

  • Support data classification, data mapping, and information inventory initiatives.

  • Identify and mitigate information-related risks, including over-retention, unauthorized access, and data exposure.

  • Participate in incident response activities involving information management and regulatory reporting obligations.

  • Collaborate with firm leadership and technology teams to establish governance standards for artificial intelligence and emerging technologies.

  • Collaborate on the development of policies governing data usage, retention, confidentiality, and ethical considerations associated with AI systems.

  • Assess information governance implications of new technologies, cloud platforms, and collaboration tools.

  • Ensure governance controls support responsible innovation while protecting client confidentiality and firm data.

  • Lead and develop Information Governance, Records Management, and related personnel.

  • Establish program metrics, reporting, and key performance indicators.

  • Manage vendor relationships, technology solutions, and service providers supporting information governance initiatives.

  • Prepare and manage departmental budgets and strategic plans.

  • Conduct training and awareness programs to promote compliance with governance policies.

REQUIRED EDUCATION, KNOWLEDGE & EXPERIENCE

  • Advanced degree (JD, MLS, MBA, MS in Information Management, Library Science, Information Governance, or related field) preferred.

  • Relevant certifications preferred, such as:

  • IGP (Information Governance Professional)

  • CRM (Certified Records Manager)

  • CIP (Certified Information Privacy Professional)

  • CIPP/US, CIPP/E, CIPM, or CIPT

  • CDIA+

  • Certified eDiscovery Specialist (CEDS)

  • 10+ years of progressive experience in information governance, records management, legal operations, compliance, eDiscovery, privacy, or related disciplines.

  • Significant experience within a law firm, legal services organization, or highly regulated professional services environment preferred.

  • Demonstrated experience developing enterprise-wide governance programs and policies.

  • Experience managing legal hold, retention, disposition, privacy, and compliance initiatives.

  • Experience leading teams and managing cross-functional projects.

  • Deep understanding of information governance principles and lifecycle management practices.

  • Knowledge of legal and regulatory requirements affecting law firms and client information.

  • Familiarity with eDiscovery platforms, document management systems, records management technologies, and cloud collaboration environments.

  • Understanding of privacy, cybersecurity, data governance, and AI governance concepts.

SUCCESS MEASURES

  • Reduction of information-related risk and over-retention.

  • Effective compliance with retention, privacy, and client requirements.

  • Improved defensibility of legal hold and disposition processes.

  • Successful implementation of information governance and AI governance initiatives.

  • Positive client audit and security assessment outcomes.

  • Increased user adoption of governance policies and procedures.

PREFERRED SKILLS & QUALIFICATIONS

  • Exemplary written and verbal communication skills within all levels of an organization.

  • Strong executive communication, leadership, and stakeholder management skills.

  • Ability to influence across organizational boundaries and drive cultural change.

  • Excellent analytical, problem-solving, and project management capabilities.

  • Ability to provide clear and concise information under strict deadlines.

  • Strong organization skills, ability to prioritize and meet tight deadlines, and customer service focused mindset.

  • Appreciation for the confidential nature of information and ability to disseminate similar obligations to others throughout the firm.

The expected salary range for this position is $200,000 - $260,000. Final compensation will be determined based on several factors, including but not limited to, relevant experience, qualifications, skill set, and geographic location.

Qualified applicants with arrest and conviction records will be considered for the position in accordance with the California Fair Chance Act.

Pillsbury Winthrop Shaw Pittman LLP is an Equal Opportunity Employer.

If you require an accommodation in order to apply for a position, please contact us at PillsburyWorkday@pillsburylaw.com.