1

Information Security Risk Manager Jobs (NOW HIRING)

The IT Security Risk Manager will lead the identification, assessment, monitoring, and mitigation of information technology and security risks across the health system, ensuring compliance with ...

Security Risk Manager

San Francisco, CA · Hybrid

$194K - $220K/yr

  • Retirement

About you * 7+ years of experience in information security with a strong focus on security risk management and GRC. * Demonstrated experience building or leading a security risk management program ...

Developing an agency Information Security Risk Management Strategy in accordance with the latest released versions of NIST Special Publications (SPs) such as SP 800-37, Risk Management Framework for ...

Developing an agency Information Security Risk Management Strategy in accordance with the latest released versions of NIST Special Publications (SPs) such as SP 800-37, Risk Management Framework for ...

Developing an agency Information Security Risk Management Strategy in accordance with the latest released versions of NIST Special Publications (SPs) such as SP 800-37, Risk Management Framework for ...

Job Title: IT Security Risk Mgr Requisition Number: 45652 Employment Type: Full Time Division: RISK MANAGEMENT Compensation Type: Salaried Job Category: Business / Professional Hours Worked: 8:00AM ...

next page

Showing results 1-20

Information Security Risk Manager information

See salary details

$62.5K

$136.1K

$200K

How much do information security risk manager jobs pay per year?

As of Aug 19, 2026, the average yearly pay for information security risk manager in the United States is $136,104.00, according to ZipRecruiter salary data. Most workers in this role earn between $110,500.00 and $160,500.00 per year, depending on experience, location, and employer.

What cities are hiring for Information Security Risk Manager jobs?

Cities with the most Information Security Risk Manager job openings:

What states have the most Information Security Risk Manager jobs?

States with the most job openings for Information Security Risk Manager jobs include:

Infographic showing various Information Security Risk Manager job openings in the United States as of August 2026, with employment types broken down into 1% As Needed, 73% Full Time, 23% Part Time, and 3% Contract. Highlights an 94% Physical, 2% Hybrid, and 4% Remote job distribution, with an average salary of $136,104 per year, or $65.4 per hour.

Information Security Risk & Compliance

Trinus

Alhambra, CA • On-site

Contractor

Re-posted 28 days ago


Job description

Description:

Trinus Corporation is seeking a skilled Information Security Risk & Compliance professional for a 12-month contract with strong potential for extension after the initial period. This position is ONSITE in Alhambra, CA 91803. Candidates must be authorized to work in the U.S. on a W2 basis.

Skills:

  • Demonstrated expertise in governance, risk management, and cybersecurity compliance, including the development and implementation of policies, standards, and control frameworks.
  • Strong working knowledge of information security regulations and industry frameworks such as NIST (800-53, CSF), ISO/IEC 27001, and PCI DSS, with the ability to map controls and assess compliance.
  • Experience conducting risk assessments, control evaluations, and compliance audits to support enterprise-wide GRC initiatives.
  • Familiarity with vulnerability management, threat intelligence analysis, and security architecture design in support of risk and compliance objectives.
  • Understanding of encryption technologies and data protection principles as they relate to governance and regulatory obligations.
  • Foundational knowledge of technical environments including IT security, networking, and systems administration, with awareness of tools such as SIEM (e.g., Microsoft Sentinel), firewalls, and other endpoint/network security platforms. 

Experience Required:

  • 5 years of experience applying security policies, standards, testing, modification and implementation. At least 3 years of that experience must be in information security analysis.     
  • 3+ years of experience within each of the following:
    • Applying risk management principles, including conducting audits, security assessments, and interpreting industry-standard security frameworks (e.g., NIST, ISO 27001, CIS).
    • Conducting and supporting security operations, control assessments, audit remediation, and enterprise risk governance initiatives.
    • Performing information security risk assessments, evaluating control effectiveness, and analyzing risk impact for technology initiatives and third-party integrations.
    • Participating in incident response processes, including detection, containment, and post-incident analysis.
    • Managing the security of complex, multi-platform IT environments, including various operating systems, software suites, and network protocols, within a large organization.  

Education Required:  

  • This classification requires possession of a bachelor’s degree in an IT-related or Engineering field. Additional qualifying experience may be substituted for the required education on a year-for-year basis. 

Certification (must have 1 of the following listed):

  • CISSP - Certified Information Systems Security Professional.
  • CRISC - Certified in Risk and Information Systems Control.
  • CISA - Certified Information Systems Auditor.
  • CISM - Certified Information Security Manager.

Interview Process:

  • Interviews will be conducted in person in Alhambra, CA 91803.

Work Schedule:

  • Work schedule is Mon - Thu 7:15 am – 6:00 pm (10 hours/day).