1

Information Security Risk Management Jobs in California

Be Seen First

Vulnerability & Configuration Risk Management * Own the vulnerability management lifecycle using ... Information Security Controls & Governance * Enforce information security policies across Microsoft ...

INFORMATION SECURITY MANAGER Full Time Los Angeles, CA, US 8 days ago Requisition ID: 1096 Salary ... The incumbent also supports effective risk management and helps safeguard the Bank's data and ...

Showing results 41-60

Information Security Risk Management information

See California salary details

$31

$57

$74

How much do information security risk management jobs pay per hour?

As of Sep 13, 2026, the average hourly pay for information security risk management in California is $57.69, according to ZipRecruiter salary data. Most workers in this role earn between $44.86 and $64.76 per hour, depending on experience, location, and employer.

What is information security risk management?

Information Security Risk Management is the process of identifying, assessing, and prioritizing risks to an organization's information assets and implementing measures to mitigate those risks. This field involves analyzing potential threats, vulnerabilities, and the impact of security breaches to ensure data protection and regulatory compliance. Professionals in this area develop policies, select security controls, and monitor systems to reduce the likelihood and consequences of cybersecurity incidents. Effective risk management helps organizations safeguard sensitive information and maintain trust with customers and stakeholders.

What are the key skills and qualifications needed to thrive in information security risk management?

To thrive in Information Security Risk Management, you need a deep understanding of cybersecurity principles, risk assessment methodologies, and relevant legal or regulatory requirements, often supported by a bachelor’s degree in IT or cybersecurity and certifications like CISSP or CISM. Familiarity with risk management frameworks (e.g., ISO 27001, NIST), vulnerability assessment tools, and governance, risk, and compliance (GRC) systems is typically required. Strong analytical thinking, problem-solving abilities, and effective communication skills set top professionals apart in this field. These competencies are crucial for identifying, evaluating, and mitigating security risks, ensuring organizational resilience and regulatory compliance.

What are some common challenges faced by professionals in information security risk management, and how are they typically addressed?

Professionals in Information Security Risk Management often face challenges such as keeping up with constantly evolving cyber threats, balancing security needs with business objectives, and ensuring compliance with various regulations. These challenges are typically addressed through continuous learning, close collaboration with IT and business teams, and implementing robust risk assessment frameworks. Proactive communication and regular updates to security policies also help manage risks effectively while supporting organizational goals.

What is the difference between Information Security Risk Management vs Cybersecurity Analyst?

AspectInformation Security Risk ManagementCybersecurity Analyst
CertificationsISO 27001, CISSP, CISMCompTIA Security+, CEH, CISSP
Work EnvironmentPolicy development, risk assessments, complianceMonitoring security systems, incident response
Industry UsageRisk management, governance, compliance teamsSecurity operations centers, IT departments

While both roles focus on protecting information assets, Information Security Risk Management emphasizes identifying and mitigating risks through policies and assessments, whereas Cybersecurity Analysts focus on monitoring security systems and responding to threats. Both roles often collaborate but serve different functions within an organization's security framework.

Infographic showing various Information Security Risk Management job openings in California as of August 2026, with employment types broken down into 1% As Needed, 87% Full Time, 10% Part Time, and 2% Contract. Highlights an 84% Physical, 3% Hybrid, and 13% Remote job distribution, with an average salary of $119,985 per year, or $57.7 per hour.

Senior Analyst, Information Security Governance, Risk, & Compliance

Los Angeles, CA • On-site

AltaMed
Fitness and Sports Centers • 1 - 5K employees

$121K - $152K/yr

Full-time

Medical, Dental, Vision, Retirement, PTO

Re-posted 17 days ago


AltaMed rating

7.6

Company rating: 7.6 out of 10

Based on 37 frontline employees who took The Breakroom Quiz


Job description

Grow Healthy

If you are as passionate about helping those in need as you are about growing your career, consider AltaMed. At AltaMed, your passion for helping others isn't just welcomed - it's nurtured, celebrated, and promoted, allowing you to grow while making a meaningful difference. We don't just serve our communities; we are an integral part of them. By raising the expectations of what a community clinic can deliver, we demonstrate our belief that quality care is for everyone. Our commitment to providing exceptional care, despite any challenges, goes beyond just a job; it's a calling that drives us forward every day.

Job Overview

The Senior Analyst, Information Security Governance, Risk, & Compliance will be responsible for the corporate-wide Information Security GRC program. This person will work closely with Information Services, Office of Compliance and Risk Management (OCRM), Legal, HR, and Procurement to ensure reasonable and appropriate IT controls are in place to minimize risk and ensure compliance with AltaMed's Information Security Policy and Standards, the HIPAA Security Rule, Data Privacy regulations and the Payment Card Industry - Data Security Standards (PCI-DSS). This person will assist with the development, implementation, and maintenance of AltaMed's Information Security Policies, standards, and guidelines, and be an SME for HIPAA, PCI, and Privacy. Additionally, this person will also be responsible for leading vulnerability management efforts, and vendor and risk management programs, including leading the risk-based change management program, liaising with internal/external auditors to ensure audits lead to a successful outcome, and being responsible for the Security Exception/Risk Acceptance process. The position will also manage, maintain, and administer the company's IT Risk Register and Information Security Awareness Training program.

Minimum Requirements

  • A bachelor's degree in business, information systems management, or a related field is required.

  • A minimum of 5 years of experience in IT audit or IT risk management is required.

  • Experience in leading security assessments, IT vendor risk assessments, and InfoSec control management.

  • Working knowledge of HIPAA, Privacy, and PCI data requirements, and other state / federal regulatory requirements of sensitive information.

  • Experience with application security, SaaS, and/or cloud security is a plus.

  • Must hold an active Certified Information Systems Security Professional (CISSP) certification (Required)

Compensation

$121,780.05 - $152,225.07 annually

Compensation Disclaimer

Actual salary offers are considered by various factors, including budget, experience, skills, education, licensure and certifications, and other business considerations. The range is subject to change. AltaMed is committed to ensuring a fair and competitive compensation package that reflects the candidate's value and the role's strategic importance within the organization. This role may also qualify for discretionary bonuses or incentives.

Benefits & Career Development

  • Medical, Dental and Vision insurance
  • 403(b) Retirement savings plans with employer matching contributions
  • Flexible Spending Accounts
  • Commuter Flexible Spending
  • Career Advancement & Development opportunities
  • Paid Time Off & Holidays
  • Paid CME Days
  • Malpractice insurance and tail coverage
  • Tuition Reimbursement Program
  • Corporate Employee Discounts
  • Employee Referral Bonus Program
  • Pet Care Insurance

Job Advertisement & Application Compliance Statement

AltaMed Health Services Corp. will consider qualified applicants with criminal history pursuant to the California Fair Chance Act and City of Los Angeles Fair Chance Ordinance for Employers. You do not need to disclose your criminal history or participate in a background check until a conditional job offer is made to you. After making a conditional offer and running a background check, if AltaMed Health Service Corp. is concerned about a conviction directly related to the job, you will be given a chance to explain the circumstances surrounding the conviction, provide mitigating evidence, or challenge the accuracy of the background report.


What AltaMed employees say

Pay

Benefits

Hours and flexibility

Workplace

Get the full story on Breakroom


AltaMed Health Services logo

About AltaMed Health Services

Sourced by ZipRecruiter

AltaMed Health Services, based in Los Angeles, CA, US, is a leading provider in the healthcare industry. Founded in 1969 as the East LA Barrio Free Clinic, the organization provides high-quality health and human services to the underserved and uninsured communities in Southern California. AltaMed offers a broad range of services including medical care, senior care, dental services, HIV care, pharmacy services, and health education. The company's mission is to eliminate disparities in healthcare access and outcomes by providing superior quality health and human services through an integrated world-class delivery system. AltaMed has also made notable achievements, including becoming the nation's largest federally qualified community health center (FQHC) and being named a leader in healthcare equality by the Human Rights Campaign for several consecutive years.

Industry

Fitness and sports centers

Company size

1,001 - 5,000 Employees

Headquarters location

Los Angeles, CA, US

Year founded

1969

Social media