1

It Security Manager Jobs in California (NOW HIRING)

We are looking for a hands-on Senior IT Security Manager to own our cybersecurity posture while providing tactical IT operations support. This is a senior individual contributor role with potential ...

We are looking for a hands-on Senior IT Security Manager to own our cybersecurity posture while providing tactical IT operations support. This is a senior individual contributor role with potential ...

IT Security Engineer

Irvine, CA · On-site

$45 - $52.27/hr

IT Security Engineer Location:Irvine, CA (onsite) Contract: 12+ Month Schedule: Monday-Friday 8 ... Manage user access controls and identity management systems * Monitor and audit for potential ...

This role serves as an escalation point from the IT Helpdesk for security and access-related issues, supports Identity and Access Management (IAM) onboarding and offboarding processes, collaborates ...

next page

Showing results 1-20

It Security Manager information

See California salary details

$18.3K

$119.3K

$168.3K

How much do it security manager jobs pay per year?

As of Aug 30, 2026, the average yearly pay for it security manager in California is $119,290.00, according to ZipRecruiter salary data. Most workers in this role earn between $96,200.00 and $144,100.00 per year, depending on experience, location, and employer.

What does an IT Security Manager do?

An IT security manager monitors computer systems to protect them from security breaches. As an IT security manager, you work to minimize viruses and cyber attacks, collect information to determine the proper firewalls to install, conduct audits, and recommend improvements to management. You also enforce security guidelines for computer systems. In this career, you must be analytical, detail-oriented, and keep up with the latest information technology security trends. You need strong problem-solving skills to assess and resolve issues or violations as they occur. Companies rely on you to keep their computer networks secure, so you must be accountable and ethical when establishing security standards and a cybersecurity plan.

What does an IT Security Manager do?

An IT Security Manager is responsible for protecting an organization’s computer systems and networks from cyber threats. They develop and implement security policies, oversee security technologies, and ensure compliance with relevant regulations. Additionally, IT Security Managers lead incident response efforts, conduct risk assessments, and train staff on security best practices. Their role is critical in safeguarding sensitive data and maintaining the integrity of IT infrastructure.

What are some typical challenges an IT Security Manager faces when balancing security needs with business objectives?

IT Security Managers often face the challenge of implementing robust security measures without hindering business operations or user productivity. They must work closely with other departments to ensure that security protocols align with organizational goals and comply with industry regulations. Balancing risk management with the need for agility requires strong communication skills and the ability to educate stakeholders about the importance of security. Additionally, staying updated on evolving cyber threats while managing limited resources is a common aspect of the role.

What are the key skills and qualifications needed to thrive as an IT Security Manager, and why are they important?

To thrive as an IT Security Manager, you need expertise in information security, risk assessment, and cybersecurity frameworks, typically supported by a degree in computer science or related field and relevant certifications like CISSP or CISM. Familiarity with security information and event management (SIEM) tools, firewalls, intrusion detection systems, and compliance standards is essential. Strong leadership, problem-solving abilities, and effective communication are crucial soft skills for managing teams and collaborating across departments. These skills and qualities are critical to protecting organizational assets, ensuring regulatory compliance, and responding effectively to security threats.

What is the difference between It Security Manager vs Network Security Engineer?

AspectIt Security ManagerNetwork Security Engineer
CertificationsCISSP, CISM, CompTIA Security+CISCO CCNP Security, CompTIA Security+
Work EnvironmentOversees security policies, manages teams, strategic planningDesigns, implements, and maintains network security measures
Employer & Industry UsageUsed in organizations with dedicated security teams, across industriesCommon in IT departments, especially in networking-focused roles

The main difference is that an It Security Manager oversees overall security strategies and manages security teams, while a Network Security Engineer focuses on implementing and maintaining network-specific security measures. Both roles require similar certifications and work in related environments, but their responsibilities differ in scope and focus.

What are the most commonly searched types of It Security jobs in California?

The most popular types of It Security jobs in California are:

What cities in California are hiring for It Security Manager jobs?

Cities in California with the most It Security Manager job openings:

Infographic showing various It Security Manager job openings in California as of August 2026, with employment types broken down into 90% Full Time, 9% Part Time, and 1% Contract. Highlights an 81% Physical, 2% Hybrid, and 17% Remote job distribution, with an average salary of $119,290 per year, or $57.4 per hour.

Senior IT Security Manager

Goformz

San Diego, CA • On-site

Full-time

Re-posted 15 days ago


Job description

Description:

We are looking for a hands-on Senior IT Security Manager to own our cybersecurity posture while providing tactical IT operations support. This is a senior individual contributor role with potential team leadership responsibilities as the organization grows. The right candidate thrives in a small-team environment, is comfortable wearing multiple hats, and brings deep security expertise alongside solid IT fundamentals.


Approximately 75% of this role is focused on cybersecurity — strategy, implementation, monitoring, and compliance. The remaining 25% covers core IT support and systems administration to keep the organization running smoothly.


Key Responsibilities
Cybersecurity (75%)

Security Program Ownership

  • Own and continuously mature the organization's information security program, policies, and roadmap
  • Develop, implement, and enforce security policies, standards, and procedures aligned with industry frameworks (NIST CSF, ISO 27001, CIS Controls, or equivalent)
  • Conduct regular risk assessments and maintain a risk register; prioritize remediation based on business impact

Threat Detection & Incident Response

  • Monitor, triage, and respond to security events and alerts across endpoints, network, cloud, and SaaS environments
  • Own the incident response plan; lead investigation, containment, and post-incident review for security events
  • Manage vulnerability scanning programs and drive timely remediation with internal stakeholders

Security Architecture & Engineering

  • Evaluate, deploy, and manage security tooling (EDR, SIEM, MFA/SSO, email security, DLP, firewall, VPN, etc.)
  • Provide security guidance on cloud infrastructure (Azure/GCP), SaaS adoption, and new technology onboarding
  • Oversee identity and access management (IAM) including provisioning, deprovisioning, and least-privilege enforcement

Compliance & Third-Party Risk

  • Lead and support compliance efforts for applicable frameworks or regulations (SOC 2, HIPAA, PCI-DSS, CMMC, GDPR, etc.)
  • Manage the vendor security review process and maintain third-party risk inventory
  • Coordinate with external auditors, penetration testers, and security consultants

Security Awareness

  • Develop and run the organization's security awareness training program
  • Conduct phishing simulations and track outcomes; deliver targeted education where needed
  • Act as a security advocate internally — advising leadership and employees on security best practices
IT Support & Systems Administration (25%)
  • Serve as escalation point for complex IT support issues across hardware, software, and connectivity
  • Administer core systems: Microsoft 365 / Google Workspace, Active Directory / Entra ID, MDM (Intune, Jamf, or similar)
  • Manage software vendor relationships
  • Manage user lifecycle (onboarding/offboarding), device provisioning, and access reviews
  • Maintain IT asset inventory and ensure systems remain patched and up to date
  • Support network infrastructure including firewalls, switches, and wireless access points
  • Document IT processes, runbooks, and system configurations

Requirements:Qualifications

Required

  • 7+ years of progressive IT and cybersecurity experience, with at least 3 years in a senior or lead security role
  • Demonstrated experience managing security programs end-to-end in a resource-constrained environment
  • Hands-on experience with security tools: EDR, SIEM, vulnerability scanners, email security gateways, payment fraud systems, and identity platforms
  • Working knowledge of one or more compliance frameworks (SOC 2, NIST, ISO 27001, etc.)
  • Strong incident response skills — you've handled real events, not just tabletops
  • CISSP certification and prior experience managing security audits, penetration tests, and regulatory reviews
  • Prior involvement in security audits, penetration tests, or regulatory reviews
  • Experience administering Microsoft 365 or Google Workspace and cloud environments (AWS, Azure, or GCP)
  • Experience managing security and compliance planforms, such as Drata 
  • Excellent written and verbal communication; able to present risk to non-technical leadership clearly

Preferred

  • Relevant certifications: CISSP, CISM, Security+, CEH, GCIA, GCIH, or equivalent
  • Experience at a company with 50–500 employees; comfortable being the primary security resource
  • Familiarity with zero trust architecture principles
  • Experience managing or mentoring junior IT/security staffPhysical Requirements:
  • Prolonged periods of sitting at a desk and working on a computer.
  • Must be able to lift up to 25 pounds at times.