1

Information Risk Management Jobs (NOW HIRING)

Risk Management Associate

Richmond, VA · On-site

$45K - $50K/yr

Support Risk Management with vendor correspondence ... Maintains confidential and sensitive information and materials in a professional and private manner.

IT Risk Technical Lead

Mclean, VA · On-site

$136 - $204/hr

Coordinate and manage third‑party vendor risk governance activities, including vendor SOC and Enhanced Information Risk Review * Lead AI Clearinghouse operations and strategic initiatives ...

Showing results 41-60

Information Risk Management information

See salary details

$51.5K

$111.6K

$170K

How much do information risk management jobs pay per year?

As of Aug 21, 2026, the average yearly pay for information risk management in the United States is $111,556.00, according to ZipRecruiter salary data. Most workers in this role earn between $90,000.00 and $129,000.00 per year, depending on experience, location, and employer.

What is information risk management?

Information Risk Management is the process of identifying, assessing, and controlling risks to an organization's information assets. This includes protecting sensitive data from threats like cyberattacks, data breaches, and unauthorized access. Information risk managers develop policies and procedures to minimize risks, ensure compliance with regulations, and support business objectives. Their work helps organizations maintain data integrity, confidentiality, and availability.

What are the key skills and qualifications needed to thrive in information risk management?

To excel in Information Risk Management, you need a solid background in cybersecurity principles, risk assessment methodologies, and regulatory compliance, often supported by a degree in information security or a related field. Familiarity with risk management frameworks like ISO 27001, NIST, and certifications such as CISSP or CISM, as well as proficiency in using risk assessment tools, is highly valuable. Strong analytical thinking, attention to detail, and effective communication are crucial soft skills for translating technical risks into business terms and collaborating with stakeholders. These skills enable professionals to identify, assess, and mitigate information risks, safeguarding organizational assets and ensuring regulatory compliance.

What are some common challenges faced by professionals in information risk management, and how can they be addressed?

Professionals in Information Risk Management often encounter challenges such as keeping up with rapidly evolving cyber threats, ensuring compliance with complex regulatory requirements, and effectively communicating risks to non-technical stakeholders. Staying current with industry trends and participating in ongoing training can help address knowledge gaps. Building strong relationships with IT, compliance, and business units fosters better collaboration and ensures risk mitigation efforts are aligned with organizational goals.

What jobs can you get with information risk management?

Jobs in information risk management include roles such as Information Security Analyst, Risk Analyst, Security Consultant, and Compliance Manager. These positions involve assessing and mitigating cybersecurity threats, implementing security policies, and ensuring regulatory compliance, often requiring knowledge of frameworks like ISO 27001 or NIST and certifications such as CISSP or CISM.
More about Information Risk Management jobs

What cities are hiring for Information Risk Management jobs?

Cities with the most Information Risk Management job openings:

What states have the most Information Risk Management jobs?

States with the most job openings for Information Risk Management jobs include:

Infographic showing various Information Risk Management job openings in the United States as of August 2026, with employment types broken down into 1% As Needed, 84% Full Time, 13% Part Time, and 2% Contract. Highlights an 84% Physical, 3% Hybrid, and 13% Remote job distribution, with an average salary of $111,556 per year, or $53.6 per hour.

Risk Management Lead

INFORMATION TECHNOLOGY STRATEGIES INC

Scott Air Force Base, IL • On-site

Full-time

Medical, Dental, Vision, Life, Retirement, PTO

Re-posted 26 days ago


Job description

Information Technology Strategies, Inc. is a government IT solutions provider servicing commercial and government initiative in various parts of the United States. We are currently seeking a Risk Management Lead to work for our company.

Summary:

  • Client Agency is the US Transportation Command.
  • The Task Lead shall be responsible for managing on-site deliverables and coordinating with the Government functional lead.
  • Performs a DOD cybersecurity process while either authorizing an information system or serving as a SME for an information system undergoing authorization.
  • Determines the applicable severity value for an identified vulnerability (e.g., non-compliant security control), and determines the possible ramifications on the system’s current or future authorization.
  • Briefs senior management on the progress or results of an information system undergoing the Risk Management Framework (RMF) process.

Requirements:

  • Must possess IT-II security clearance or have a current National Agency Check with Local Agency Check and Credit Check (NACLC). (Basic Federal Clearance requirements are U.S. Citizenship, clear criminal history check, no recent or pending bankruptcies).
  • A minimum of seven (7) years of experience leading teams in Information Systems Security Engineering (ISSE), security control assessment, and vulnerability management within the DoD.
  • Proven expertise in the application of the Risk Management Framework (RMF) for DoD systems.
  • Possess an active DoD 8570.01-M Information Assurance Management (IAM) Level III certification (e.g., CISM, CISSP).
  • Demonstrated experience with tools such as eMASS, ACAS, and DISA STIGs.


Work With Us

IT-Strat is a technology consulting company that holds various contract vehicles including best in class vehicles. IT-Strat has supported multiple clients including the Department of Homeland Security (DHS), Customs and Border Protection (CBP) and Immigration and Customs Enforcement (ICE via both prime and meaningful subcontracts). Additionally, IT-Strat has prime contracts with Defense Information Systems Agency (DISA), Defense Logistics Agency (DLA) and many others. We maintain relationships with multiple large businesses.

IT-Strat was established in 2002. We are a certified Woman Owned Small Business. IT-Strat also successfully graduated as an SBA 8(A) company. It was an 8(a) company from 2008 through 2017 and currently still has 8(a) contract vehicles.

Benefits We Offer:

  • Four Medical/Vision options including an HSA plan
  • Dental and Orthodontia plan
  • Vision Materials plan
  • Paid Life, Short-Term Disability, and Long-Term Disability
  • 401K Retirement Program with company contribution
  • Paid Vacation, Holidays, Sick Leave, Floating Holidays, Bereavement Leave
  • Semi-monthly pay cycle

Information Technology Strategies (“IT-Strat”) is an Equal Employment Opportunity employer, and it is our policy to consider applicants for employment without regard to sex, race, color, creed, religion, national origin, sexual orientation, marital status, age, disability, veteran status, alienage, ancestry, and any other factors prohibited by law. Employment selections are based on company and client requirements and the qualifications and skills of the candidate. IT-Strat is committed to actively capitalizing on the diversity of skills, talents, and perspectives of our employees.