1

Information Security Risk Management Jobs in Wisconsin

WI Β· On-site

$118K - $143K/yr

Project Management * Information Security * IT Auditing * Security Risk Mitigation * Technology Implementation * Endpoint Security * Network Security * Cloud Security * Application Security

WI Β· On-site

Acting as a trusted advisor to senior management, you will collaborate closely with technology ... complex risk scenarios to senior stakeholders. * Good knowledge of NIS2 requirements and ...

New

WI Β· On-site

Manage and triage the Information Security ticket queue, providing timely and effective technical support to SpaceX employees and stakeholders. * Perform operational tasks required to keep security ...

Showing results 41-60

Information Security Risk Management information

See Wisconsin salary details

$32

$58

$76

How much do information security risk management jobs pay per hour?

As of Sep 12, 2026, the average hourly pay for information security risk management in Wisconsin is $59.00, according to ZipRecruiter salary data. Most workers in this role earn between $45.87 and $66.25 per hour, depending on experience, location, and employer.

What is information security risk management?

Information Security Risk Management is the process of identifying, assessing, and prioritizing risks to an organization's information assets and implementing measures to mitigate those risks. This field involves analyzing potential threats, vulnerabilities, and the impact of security breaches to ensure data protection and regulatory compliance. Professionals in this area develop policies, select security controls, and monitor systems to reduce the likelihood and consequences of cybersecurity incidents. Effective risk management helps organizations safeguard sensitive information and maintain trust with customers and stakeholders.

What are the key skills and qualifications needed to thrive in information security risk management?

To thrive in Information Security Risk Management, you need a deep understanding of cybersecurity principles, risk assessment methodologies, and relevant legal or regulatory requirements, often supported by a bachelor’s degree in IT or cybersecurity and certifications like CISSP or CISM. Familiarity with risk management frameworks (e.g., ISO 27001, NIST), vulnerability assessment tools, and governance, risk, and compliance (GRC) systems is typically required. Strong analytical thinking, problem-solving abilities, and effective communication skills set top professionals apart in this field. These competencies are crucial for identifying, evaluating, and mitigating security risks, ensuring organizational resilience and regulatory compliance.

What are some common challenges faced by professionals in information security risk management, and how are they typically addressed?

Professionals in Information Security Risk Management often face challenges such as keeping up with constantly evolving cyber threats, balancing security needs with business objectives, and ensuring compliance with various regulations. These challenges are typically addressed through continuous learning, close collaboration with IT and business teams, and implementing robust risk assessment frameworks. Proactive communication and regular updates to security policies also help manage risks effectively while supporting organizational goals.

What is the difference between Information Security Risk Management vs Cybersecurity Analyst?

AspectInformation Security Risk ManagementCybersecurity Analyst
CertificationsISO 27001, CISSP, CISMCompTIA Security+, CEH, CISSP
Work EnvironmentPolicy development, risk assessments, complianceMonitoring security systems, incident response
Industry UsageRisk management, governance, compliance teamsSecurity operations centers, IT departments

While both roles focus on protecting information assets, Information Security Risk Management emphasizes identifying and mitigating risks through policies and assessments, whereas Cybersecurity Analysts focus on monitoring security systems and responding to threats. Both roles often collaborate but serve different functions within an organization's security framework.

Infographic showing various Information Security Risk Management job openings in Wisconsin as of August 2026, with employment types broken down into 1% As Needed, 85% Full Time, 12% Part Time, and 2% Contract. Highlights an 84% Physical, 3% Hybrid, and 13% Remote job distribution, with an average salary of $122,714 per year, or $59 per hour.

Director - Enterprise Risk Management

Madison, WI β€’ On-site

Full-time

Re-posted 14 days ago


Job description

BASIC PURPOSE:
Responsible for the leadership, innovation, governance, and management necessary to identify, evaluate, mitigate, and monitor the company's enterprise risks. Evaluate emerging risks and trends that may impact the company's risk appetite and present mitigation strategies. Prioritize risks within the company's ERM framework, enterprise risk register, and risk profile to ensure risks are managed to minimize negative financial and operational impact. Manage tools, practices, and policies to analyze and report enterprise risks; evaluate new methodologies and risk technologies for continuous improvement. Responsible for creating organizational awareness of risk management through training and education. Develop, maintain, and administer the Business Continuity Program. Supervisor responsibilities to include staffing, training and development, performance management, and workforce planning.
PRIMARY JOB RESPONSIBILITIES:
  • Supervisor/Manager responsibilities may include all of the following:
    • Staffing needs, to include interviewing and onboarding for new employees.
    • Training and development, as well as coaching and motivation, for staff.
    • Performance management, goal setting, employee engagement, and salary administration.
    • Workforce management to include: unit equipment, software, and space needs; approving time off and overtime usage; and budget recommendations.
  • Lead or coordinate the development, maintenance, and governance of Own Risk and Solvency Assessment materials, ensuring alignment with regulatory expectations, capital adequacy considerations, the ERM framework, and enterprise risk appetite.
  • Monitor emerging strategic, operations, financial, regulatory, cyber, technology, third-party data, and AI-related risks and recommend practical mitigation strategies that support risk-informed business decisions.
  • Lead the design, development, implementation, and ongoing enhancement of CM Group's ERM framework. Responsible for the leadership, innovation, governance, and management necessary to identify, evaluate, mitigate, monitor, and report the company's enterprise risks.
  • Facilitate the determination of the company's risk appetite, tolerances, and limits. Identify and report key regulatory changes, external factors, emerging risks, and trends that might impact the company's risk profile and present mitigation strategies for management's review.
  • Develop, analyze, quantify, and prioritize risks within the company's risk universe, enterprise risk register, and risk profile. Develop and maintain Key Risk Indicators (KRIs), risk appetite metrics, and related reporting to actively monitor risk exposures and trends. Ensure risks are recognized and managed in a manner the minimizes negative financial and operational impact while supporting efficient, cost-effective mitigation strategies.
  • Ensure the ERM framework is appropriate to the nature, scale, and complexity of the business. Work with cross-functional business leaders to regularly identify key risks across all types and categories. Assess risks based on likelihood, impact, and level of mitigation.
    • Prepare and present ERM reporting, risk assessments, emerging risk updates, risk appetite results, ERI trends, and mitigation plans for senior leadership, management committees, the Risk Management Committee, Board-level audiences, regulators, and auditors, as appropriate.
  • Lead the Business Continuity Program. Complete risk analysis, business impact analysis, assessment, and evaluation for all CM Group internal departments and critical outsourced partners. Identify comprehensive strategic solutions to satisfy the various business, regulatory, and technology requirements.
  • Manage the development and delivery of training that facilitates corporate ERM and Business Continuity awareness.
  • Manage the development and implementation of tools, practices, policies, and risk technology solutions to analyze, monitor, and report enterprise risks.
  • Leverage internal and external relationships of the ERM Department to deliver projects on time. Exerts influence appropriately on outside teams to meet project deliverables while creating positive impact within the organization.
  • Professionally represent the company's position with regulators, auditors, rating agencies, external vendors, and other key stakeholders.

QUALIFICATIONS:
  • Professional certification or designation in risk management, business continuity, audit, information security, compliance, or a related discipline is preferred.
  • Bachelor's degree in business or a related field is required.
  • 12-15 years' risk management experience developing and implementing enterprise risk management programs, including writing policies and procedures, producing executive materials, supporting risk committees/meetings, and instituting industry best practice risk management principles and practices.
    • Experience supporting insurance regulatory reporting, ORSA-related activities, risk appetite development, KRI reporting, enterprise risk assessments, and management or Board-level risk governance forums is preferred.
  • Demonstrated management experience.
  • Proficient in current ERM tools, risk reporting processes, and, where applicable, governance, risk, and compliance technology platforms. Able to add to and/or build complex models, tools, dashboards, or reporting solutions and monitor their effectiveness. .
  • Excellent oral communication and writing skills to produce clear and concise materials.
  • High-level critical thinking skills, including strategic thinking, effective analysis of data, and the ability to aggregate information.
  • Strong project management discipline and demonstrated success overseeing multiple projects to completion.
  • Proven ability to foster productive relationships with diverse staff, including senior leadership.
  • Strong ability to influence and lead a successful team.
  • Detail oriented, with a hands-on approach.
  • Ability to travel as necessary.

WORK ENVIRONMENT:
Professional office environment.
NOTE: This job description in no way states or implies that these are the only duties performed by this employee. Employees may be requested to perform job-related tasks other than those specifically presented in this job description. The employer reserves the right to change or assign other duties to this position.
The CM Group is made up of Church Mutual Insurance Company, S.I., CM Regent Insurance Company, and CM Vantage Specialty Insurance Company.