1

It Risk Manager Jobs in Hawaii (NOW HIRING)

At least five (5) years providing technical and direct support as IT Helpdesk Tier-II/III * At least five (5) years of experience with management of IT systems infrastructure and related processes.

... risk. * Manage vendor contracts, MSPs, telecom, device vendors, and support agreements with ... Direct IT change management, disaster recovery planning, and downtime readiness to support ...

IT Specialist

Pearl City, HI · On-site

$90K - $110K/yr

At least five (5) years providing technical and direct support as IT Helpdesk Tier-II/III * At least five (5) years of experience with management of IT systems infrastructure and related processes.

Required : • At least five (5) years providing technical and direct support as IT Helpdesk Tier-II/III • At least five (5) years of experience with management of IT systems infrastructure and ...

Be Seen First

IT Field Technician

Honolulu, HI · On-site

$16 - $20/hr

Field Technician -- Managed Services Enlighten Technology · Honolulu, HI · Part-time · In person ... We are looking for an entry-level Field Technician who wants to begin a career in information ...

Showing results 41-60

It Risk Manager information

See Hawaii salary details

$53.5K

$115.9K

$176.6K

How much do it risk manager jobs pay per year?

As of Aug 12, 2026, the average yearly pay for it risk manager in Hawaii is $115,902.00, according to ZipRecruiter salary data. Most workers in this role earn between $93,500.00 and $134,000.00 per year, depending on experience, location, and employer.

What are some common challenges faced by IT Risk Managers when implementing risk mitigation strategies across different departments?

IT Risk Managers often encounter challenges such as varying levels of risk awareness among departments, resistance to new controls or procedures, and balancing business objectives with security requirements. Successful risk mitigation requires clear communication, stakeholder buy-in, and tailored training to ensure all teams understand the importance of compliance. Building strong relationships and fostering a culture of shared responsibility are key to overcoming these hurdles and ensuring effective risk management across the organization.

What are the key skills and qualifications needed to thrive as an IT Risk Manager, and why are they important?

To thrive as an IT Risk Manager, you need a solid understanding of risk assessment, information security, and compliance frameworks, often backed by a bachelor's degree in information technology or related fields. Familiarity with tools such as risk management software, GRC platforms, and certifications like CISSP, CISM, or CRISC is typically required. Strong analytical thinking, communication skills, and the ability to influence stakeholders are crucial soft skills in this role. These skills ensure effective identification, mitigation, and communication of IT risks, supporting organizational resilience and compliance.

What does an IT Risk Manager do?

An IT Risk Manager is responsible for identifying, assessing, and mitigating risks that could impact an organization's information technology systems and data. They develop and implement risk management strategies, policies, and procedures to protect against cybersecurity threats, data breaches, and compliance violations. IT Risk Managers also work closely with other departments to ensure security best practices are followed and often lead risk assessments, audits, and incident response planning.

What is the difference between It Risk Manager vs Cybersecurity Analyst?

AspectIt Risk ManagerCybersecurity Analyst
CertificationsCRISC, CISSP, CISMCISSP, Security+, CEH
Work EnvironmentOversees risk management strategies across IT systemsMonitors and responds to security threats and incidents
Industry UsageUsed in organizations with complex IT infrastructuresCommon in security-focused roles across industries

The It Risk Manager focuses on identifying and managing IT risks at an organizational level, ensuring compliance and risk mitigation strategies. In contrast, a Cybersecurity Analyst primarily monitors security threats and responds to incidents. While both roles require similar certifications and work within the IT security domain, the It Risk Manager has a broader scope related to risk management policies, whereas the Cybersecurity Analyst concentrates on threat detection and response.

What are popular job titles related to It Risk Manager jobs in Hawaii? For It Risk Manager jobs in Hawaii, the most frequently searched job titles are:
What job categories do people searching It Risk Manager jobs in Hawaii look for? The top searched job categories for It Risk Manager jobs in Hawaii are:
What cities in Hawaii are hiring for It Risk Manager jobs? Cities in Hawaii with the most It Risk Manager job openings:
Infographic showing various It Risk Manager job openings in Hawaii as of August 2026, with employment types broken down into 90% Full Time, 9% Part Time, and 1% Contract. Highlights an 84% Physical, 3% Hybrid, and 13% Remote job distribution, with an average salary of $115,902 per year, or $55.7 per hour.

Information System Security Officer

Magnus Management Group LLC

Honolulu, HI • On-site

Full-time

Medical, Dental, Vision, Retirement, PTO

Re-posted 15 hours ago


Job description

Benefits:
  • 401(k)
  • Dental insurance
  • Health insurance
  • Paid time off
  • Vision insurance


Senior Information System Security Officer (Senior ISSO)
 
Employer: Magnus Management Group 
Department: Federal Government Program  
Location: Honolulu, HI  
Clearance: None 
Telecommute: On‑site 
Position Type: Full‑time 
 
Position Overview 
The Senior Information System Security Officer (Senior ISSO) provides expertlevel cybersecurity leadership supporting a federal government program within the Pacific Region Headquarters. This role ensures the confidentiality, integrity, and availability of federal information systems by leading security governance, advising senior leadership, and overseeing compliance with federal cybersecurity requirements. 
The Senior ISSO serves as a technical authority, guiding system owners, administrators, and program leadership through the implementation of NIST‑aligned security controls, risk management processes, and enterprise security strategies across mission‑critical federal systems. 

Senior
Level Responsibilities 
Cybersecurity Leadership & Governance 
  • Serve as the primary cybersecurity advisor to federal program leadership, system owners, and technical teams on all matters related to IT security, risk, and compliance. 
  • Lead the development, implementation, and continuous improvement of the program’s cybersecurity posture in alignment with federal directives and policies. 
  • Oversee the application of NIST SP 800‑series guidance, FIPS requirements, and federal IT security standards across all assigned systems. 
  • Direct the creation, review, and maintenance of security policies, procedures, standards, and governance documentation

Risk Management & Compliance 
  • Lead the execution of the Risk Management Framework (RMF) lifecycle, including categorization, control selection, implementation, assessment, authorization, and continuous monitoring. 
  • Develop and maintain system security plans (SSPs), POA&Ms, security assessment reports, and other RMF artifacts. 
  • Conduct senior‑level risk analyses, recommending mitigation strategies and presenting risk decisions to Authorizing Officials and senior stakeholders. 
  • Ensure compliance with federal IT security baseline policies and all applicable federal cybersecurity requirements. 

Technical Security Expertise
 
  • Provide expert guidance on the implementation and monitoring of security controls across Windows, Linux, and hybrid enterprise environments. 
  • Oversee the use of enterprise security tools such as Cybersecurity Asset Management, Tenable Security Center, and other vulnerability, configuration, and compliance platforms. 
  • Lead the development and validation of contingency plans, backup strategies, and disaster recovery procedures, ensuring alignment with NIST SP 800‑34 and related guidance. 
  • Provide senior‑level expertise in encryption technologies, secure configurations, and data protection best practices. 

Security Operations & Continuous Monitoring
 
  • Direct vulnerability management activities, ensuring timely remediation and reporting of findings. 
  • Lead incident response coordination with federal cybersecurity teams, providing expert analysis and documentation. 
  • Oversee continuous monitoring activities, dashboards, and reporting to ensure ongoing compliance and operational readiness. 

Documentation, Reporting & Executive Communication
 
  • Develop high‑quality white papers, technical briefs, and decision documents for senior leadership. 
  • Present complex cybersecurity issues and recommendations to executives, system owners, and cross‑agency partners. 
  • Lead security reviews, audits, and assessments, ensuring accurate and complete documentation. 

Collaboration & Stakeholder Engagement
 
  • Coordinate with federal CIO offices, cybersecurity leadership, system owners, network administrators, and external partners to ensure a unified security posture. 
  • Mentor junior ISSOs, analysts, and technical staff, providing guidance on federal cybersecurity practices and NIST frameworks. 
  • Represent the Pacific Region program in enterprise‑level cybersecurity working groups and governance boards. 
 
Required Technical Skills 
  • Expert knowledge of US Federal IT security policies, implementation standards, and NIST SP 800‑series and FIPS requirements. 
  • Advanced proficiency applying IT security concepts, methodologies, and tools, including vulnerability management, asset management, and enterprise security platforms. 
  • Deep experience with enterprise architecture and security engineering principles. 
  • Senior‑level expertise in contingency planning, continuity of operations, and disaster recovery aligned with NIST guidance. 
  • Comprehensive understanding of encryption technologies, secure data handling, and cryptographic best practices. 
  • Demonstrated mastery of IT security tools, applications, and implementation techniques across diverse federal environments. 

Required Experience 
Experience must include federal government projects/contracts involving: 
  • Minimum of 10 years of progressive experience in federal cybersecurity, information assurance, or IT security operations, including direct support to federal programs and execution of NIST‑based security frameworks. 
  • Leading the development of IT security requirement solutions, including authoring white papers, technical analyses, and executive‑level documentation. 
  • Directing the creation of solution migration strategies, implementation plans, and security engineering roadmaps. 
  • Developing, implementing, and governing IT security policies, procedures, and standards across enterprise environments. 
  • Serving as a senior advisor to leadership on cybersecurity risk, compliance, and system authorization activities. 
  • Managing RMF activities for complex or high‑impact federal systems. 
 
Required Certifications 
At least one senior level certification must be included: 
  • CompTIA A+, Network+, Security+ 
  • GCIH, GSE, GISP, GSLC 
  • ISC2 CAP, SSCP, CISSP 
  • CISA, CRISC 
  • SCNP, SCNA