1

Manager Security Risk Assessment Jobs in Charlotte, NC

The Third Party Risk Manager position will be primarily responsible for managing and leading the assessment of the information security posture of key clients' third parties while overseeing the ...

Security Architect, Product Security

Charlotte, NC · On-site +1

$63.50 - $82/hr

Assess security risk and provide practical, risk-based remediation guidance to engineering teams ... Experience with enterprise security tooling and vulnerability management workflows. * Experience ...

Security Architect, Product Security

Charlotte, NC · On-site +1

$63.50 - $82/hr

Assess security risk and provide practical, risk-based remediation guidance to engineering teams ... Experience with enterprise security tooling and vulnerability management workflows. * Experience ...

Director, Senior Security Engineer

Charlotte, NC · On-site

$111K - $153K/yr

Experience with infrastructure hardening, vulnerability management, and security operations. * Security Risk Assessment * Ability to translate security requirements into practical engineering ...

EFR Capital Risk Manager

Charlotte, NC · On-site

$115 - $184.50/hr

... O-managed securities portfolio. As the Chief Risk Officer (CRO) function covering the Chief ... It provides an independent assessment of Bank of America's capital adequacy and the risks to the ...

next page

Showing results 1-20

Manager Security Risk Assessment information

See Charlotte, NC salary details

$50.3K

$109K

$166K

How much do manager security risk assessment jobs pay per year?

As of Sep 6, 2026, the average yearly pay for manager security risk assessment in Charlotte, NC is $108,958.00, according to ZipRecruiter salary data. Most workers in this role earn between $87,900.00 and $126,000.00 per year, depending on experience, location, and employer.

What is the difference between Manager Security Risk Assessment vs Security Analyst?

AspectManager Security Risk AssessmentSecurity Analyst
CertificationsCISSP, CISM, CRISCCISSP, Security+
Work EnvironmentOversees security programs, manages teamsAnalyzes security threats, monitors systems
Industry UsageCommon in organizations with complex security needsWidely used across various industries for threat detection

The Manager Security Risk Assessment focuses on leading security risk evaluations, managing teams, and developing security strategies. In contrast, a Security Analyst primarily monitors security systems, analyzes threats, and responds to incidents. Both roles require relevant certifications and work within the cybersecurity industry, but their responsibilities differ in scope and focus.

What are the most commonly searched types of Security Risk Assessment jobs in Charlotte, NC?

The most popular types of Security Risk Assessment jobs in Charlotte, NC are:

What cities near Charlotte, NC are hiring for Manager Security Risk Assessment jobs?

Cities near Charlotte, NC with the most Manager Security Risk Assessment job openings:

IT Security Associate (GRC) in Charlotte, NC 28202 (Hybrid)

Amicis Global

Charlotte, NC • On-site

CA$56/hr

Contractor

Re-posted 29 days ago


Key responsibilities

  • Perform information security risk assessments for SaaS, cloud-based solutions, client initiatives, and regulatory requests.

  • Review and assess third-party security postures through reports, certifications, and questionnaires.

  • Support remediation efforts by tracking issues, validating responses, and documenting outcomes.


Job description

Job Title:  IT Security Associate (GRC)
Location: Charlotte, NC 28202 (Hybrid)
Duration: 06 - 12 Months
 
Pay Rate: $50.00 - $56.00/- on W2
 
 
Kindly help me out with your most updated resume
 
 
Summary:
Seeking a 1st Line of Defense – GRC Specialist at the Associate level who has a strong passion for Information Security risk management and is interested in building a career at a fast-growing reputable bank.
As an Associate within GRC, you will play a vital role in protecting information assets by conducting comprehensive risk assessments, collaborating with stakeholders, and driving process improvements.
Reporting to the Head of Security Risk Assessments, you will help shape the bank's security risk management practices and ensure compliance with internal and external standards.
 
Roles and Responsibilities:
•Perform information security risk assessments for new and existing SaaS and cloud-based solutions, client initiatives, and regulatory-driven requests.
•Review and assess third‐party security postures by analyzing SOC 1 and SOC 2 reports, ISO 27001 certifications, penetration test summaries, SIG responses, and security questionnaires.
•Evaluate SaaS architectures, data flows, and hosting models, with particular attention to data protection, encryption, identity and access management, logging, and monitoring.
•Identify control gaps, assess both inherent and residual risk, and partner with stakeholders to define practical mitigation strategies or compensating controls.
•Translate technical and operational risks into clear, business‐focused language that resonates with both technical and non‐technical audiences.
•Collaborate regularly with IT, business, risk, and compliance teams to support timely, well‐informed decision making.
•Support remediation efforts by tracking open issues, validating responses, and documenting outcomes through established governance processes.
•Stay current with information security policies, standards, and procedures, and help stakeholders understand how changes may impact risk assessments.
•Contribute to the ongoing improvement of risk assessment processes, templates, and tooling.
Required Experience and Skills
•2–3 years of experience in banking, financial services, or another highly regulated environment.
•Hands-on familiarity with cloud service providers such as AWS, Azure, or GCP, and an understanding of how SaaS applications are built on cloud infrastructure.
•A solid foundation in information security principles, risk assessment concepts, and control-based evaluations.
•Working knowledge of common security and regulatory frameworks, including NIST, NYDFS Cybersecurity Regulation, GLBA, ISO 27001, NIST CSF, and data privacy regulations such as CCPA/CPRA.
•Basic understanding of enterprise systems, operating systems, databases, identity and access concepts.
•Strong written and verbal communication skills, with the ability to explain security risk clearly and concisely.
•Comfortable working independently while also collaborating effectively across technical and business teams.
•Well-organized, detail-oriented, and able to manage multiple assessments and competing priorities.
•A strong sense of ownership and follow-through.
•Ability to track and maintain risk assessment data and metrics using tools such as Microsoft Excel, Jira, or similar platforms.
Preferred / Nice to Have
•Experience supporting third‐party or vendor risk management programs.
•Exposure to GRC platforms or security risk assessment tools.
•Experience reviewing and interpreting SOC reports.
•Current or in progress security certifications (e.g., CompTIA Security+, CompTIA Cloud+, AWS, Azure, GCP, CCSP, CRISC).