Establishing a Manager, Security & Compliance role will provide dedicated oversight for security ... Assess risk across business and technology initiatives, with a focus on data protection, access ...
Establishing a Manager, Security & Compliance role will provide dedicated oversight for security ... Assess risk across business and technology initiatives, with a focus on data protection, access ...
Conduct and oversee cloud security reviews, threat modeling activities, risk assessments, and ... Certified Information Security Manager (CISM) OR * Certified in Risk and Information Systems ...
Conduct and oversee cloud security reviews, threat modeling activities, risk assessments, and ... Certified Information Security Manager (CISM) OR * Certified in Risk and Information Systems ...
Meta's Integrity Risk team is the central engine driving risk management and compliance in Trust & Safety at the company, supporting Meta and the family.
Meta's Integrity Risk team is the central engine driving risk management and compliance in Trust & Safety at the company, supporting Meta and the family.
Director, AI Security
New York, NY · On-site
... to risk. * Conduct a structured controls assessment for every use case, validating that mandatory security baseline requirements are met - including least-privilege access, credential management ...
Director, AI Security
New York, NY · On-site
... to risk. * Conduct a structured controls assessment for every use case, validating that mandatory security baseline requirements are met - including least-privilege access, credential management ...
The AFC sub-unit is a second line function that acts as a primary subject matter expert (SME) for managing the Bank-wide AFC Risk Assessment (RA) and annual NYDFS Part 504 programs. These programs ...
The AFC sub-unit is a second line function that acts as a primary subject matter expert (SME) for managing the Bank-wide AFC Risk Assessment (RA) and annual NYDFS Part 504 programs. These programs ...
Head of Security & Risk
New York, NY · On-site
... Management : Build M0's enterprise risk program from scratch. Cover security, operational, regulatory, and counterparty risk, including the risk register, annual assessments, scenario analyses, and ...
Quick apply
Head of Security & Risk
New York, NY · On-site
... Management : Build M0's enterprise risk program from scratch. Cover security, operational, regulatory, and counterparty risk, including the risk register, annual assessments, scenario analyses, and ...
Head of Security & Risk
New York, NY · On-site
... Management : Build M0's enterprise risk program from scratch. Cover security, operational, regulatory, and counterparty risk, including the risk register, annual assessments, scenario analyses, and ...
Head of Security & Risk
New York, NY · On-site
... Management : Build M0's enterprise risk program from scratch. Cover security, operational, regulatory, and counterparty risk, including the risk register, annual assessments, scenario analyses, and ...
Cyber Security Governance, Risk, Compliance Manager - VP
Jersey City, NJ · Hybrid
$115K - $156K/yr
Guide the lines of business through assessments, translating the technology/security questions so ... At least 10 years' experience in a combination of risk management, information security and IT ...
Cyber Security Governance, Risk, Compliance Manager - VP
Jersey City, NJ · Hybrid
$115K - $156K/yr
Guide the lines of business through assessments, translating the technology/security questions so ... At least 10 years' experience in a combination of risk management, information security and IT ...
... assess, and prioritize physical security risks across all Jane Street locations and Streeters ... Helping manage the firm's operational relationship with security risk/emergency providers alongside ...
... assess, and prioritize physical security risks across all Jane Street locations and Streeters ... Helping manage the firm's operational relationship with security risk/emergency providers alongside ...
... management practices into their daily operations. Enterprise-Aligned Risk Assessments: Leads the ... execution of formal risk assessments (e.g., PRSA, RCSA, PRA) across supported VP areas, ensuring ...
Quick apply
... management practices into their daily operations. Enterprise-Aligned Risk Assessments: Leads the ... execution of formal risk assessments (e.g., PRSA, RCSA, PRA) across supported VP areas, ensuring ...
... assess, and prioritize physical security risks across all Jane Street locations and Streeters ... Helping manage the firm's operational relationship with security risk/emergency providers alongside ...
... assess, and prioritize physical security risks across all Jane Street locations and Streeters ... Helping manage the firm's operational relationship with security risk/emergency providers alongside ...
Intern, Information Security Risk and Compliance
New York, NY · On-site
$24/hr
This position will report to the Manager, Information Security , and be a part of the team ... Support risk assessment of prospective third parties to evaluate their security posture and ...
Intern, Information Security Risk and Compliance
New York, NY · On-site
$24/hr
This position will report to the Manager, Information Security , and be a part of the team ... Support risk assessment of prospective third parties to evaluate their security posture and ...
Information Security Risk Analyst (SOC)
Manhattan, NY · On-site
$90K - $125K/yr
We are one of the largest asset managers in Asia and number one among Japanese financial ... assess and evaluate and cyber security and information security risks inherent in the Branch ...
Quick apply
Information Security Risk Analyst (SOC)
Manhattan, NY · On-site
$90K - $125K/yr
We are one of the largest asset managers in Asia and number one among Japanese financial ... assess and evaluate and cyber security and information security risks inherent in the Branch ...
... management practices into their daily operations. Enterprise-Aligned Risk Assessments: Leads the ... execution of formal risk assessments (e.g., PRSA, RCSA, PRA) across supported VP areas, ensuring ...
... management practices into their daily operations. Enterprise-Aligned Risk Assessments: Leads the ... execution of formal risk assessments (e.g., PRSA, RCSA, PRA) across supported VP areas, ensuring ...
Risk & Compliance Engineer
Newark, NJ · On-site
Continuous improvement using AI into all aspects of vendor risk management * Lead and independently prioritize a range of vendor security risk assessments - scoped by service type and integration ...
Risk & Compliance Engineer
Newark, NJ · On-site
Continuous improvement using AI into all aspects of vendor risk management * Lead and independently prioritize a range of vendor security risk assessments - scoped by service type and integration ...
Risk & Compliance Engineer
Newark, NJ · On-site
Continuous improvement using AI into all aspects of vendor risk management * Lead and independently prioritize a range of vendor security risk assessments - scoped by service type and integration ...
Risk & Compliance Engineer
Newark, NJ · On-site
Continuous improvement using AI into all aspects of vendor risk management * Lead and independently prioritize a range of vendor security risk assessments - scoped by service type and integration ...
Management or participation in Cybersecurity, Information Security, Risk, Compliance and/or Data Privacy Programs or Projects * Sample projects/programs could include but are not limited to:
Management or participation in Cybersecurity, Information Security, Risk, Compliance and/or Data Privacy Programs or Projects * Sample projects/programs could include but are not limited to:
The Third Party Information Security Analyst supports the Bank's Third Party Risk Management ... risk assessment methodologies and techniques as well as Third Party Risk Management Lifecycle.
Quick apply
The Third Party Information Security Analyst supports the Bank's Third Party Risk Management ... risk assessment methodologies and techniques as well as Third Party Risk Management Lifecycle.
Third Party Information Security Analyst
Manhattan, NY · On-site
$90K - $125K/yr
The Third Party Information Security Analyst supports the Bank's Third Party Risk Management ... risk assessment methodologies and techniques as well as Third Party Risk Management Lifecycle.
Quick apply
Third Party Information Security Analyst
Manhattan, NY · On-site
$90K - $125K/yr
The Third Party Information Security Analyst supports the Bank's Third Party Risk Management ... risk assessment methodologies and techniques as well as Third Party Risk Management Lifecycle.
We are one of the largest asset managers in Asia and number one among Japanese financial ... assess and evaluate and cyber security and information security risks inherent in the Branch ...
Quick apply
We are one of the largest asset managers in Asia and number one among Japanese financial ... assess and evaluate and cyber security and information security risks inherent in the Branch ...
Manager Security Risk Assessment information
See Fair Lawn, NJ salary details
$52K - $62.9K
4% of jobs
$62.9K - $73.8K
6% of jobs
$73.8K - $84.7K
11% of jobs
$88.7K is the 25th percentile. Wages below this are outliers.
$84.7K - $95.5K
11% of jobs
The median wage is $104.2K / yr.
$95.5K - $106.4K
23% of jobs
$106.4K - $117.3K
13% of jobs
$124.5K is the 75th percentile. Wages above this are outliers.
$117.3K - $128.2K
12% of jobs
$128.2K - $139.1K
8% of jobs
$139.1K - $150K
6% of jobs
$150K - $160.8K
4% of jobs
$160.8K - $171.7K
2% of jobs
$52K
$112.7K
$171.7K
How much do manager security risk assessment jobs pay per year?
What is the difference between Manager Security Risk Assessment vs Security Analyst?
| Aspect | Manager Security Risk Assessment | Security Analyst |
|---|---|---|
| Certifications | CISSP, CISM, CRISC | CISSP, Security+ |
| Work Environment | Oversees security programs, manages teams | Analyzes security threats, monitors systems |
| Industry Usage | Common in organizations with complex security needs | Widely used across various industries for threat detection |
The Manager Security Risk Assessment focuses on leading security risk evaluations, managing teams, and developing security strategies. In contrast, a Security Analyst primarily monitors security systems, analyzes threats, and responds to incidents. Both roles require relevant certifications and work within the cybersecurity industry, but their responsibilities differ in scope and focus.
What cities near Fair Lawn, NJ are hiring for Manager Security Risk Assessment jobs?
Cities near Fair Lawn, NJ with the most Manager Security Risk Assessment job openings:
Full-time
Posted 13 days ago
Job description
As the organization continues to grow and adopt new technologies, the security and compliance function must scale beyond reactive reviews and ad hoc guidance. Business teams are increasingly relying on SaaS platforms, APIs, cloud services, integrations, automation, and AI-enabled tools to support daily operations. Each of these areas can introduce risk if access, data protection, vendor oversight, logging, configuration, and control requirements are not consistently managed.
Establishing a Manager, Security & Compliance role will provide dedicated oversight for security risk management, application and integration reviews, control design, compliance support, and secure technology adoption. This role will help reduce regulatory, audit, operational, and reputational risk by ensuring that security and compliance requirements are built into new initiatives early, documented clearly, and tracked through remediation.
The role will also relieve existing teams of one-off security assessments, strengthen accountability across the control environment, and create a scalable function that supports the business while maintaining appropriate governance over sensitive data and critical systems.
Position OverviewWe are seeking a Manager, Security & Compliance to help strengthen the organization's cybersecurity, technology risk, and compliance programs. This role will be responsible for evaluating security risks, designing practical controls, supporting audit and compliance activities, and partnering with business and technology teams to ensure new systems, integrations, and processes are implemented securely.
This is a highly visible, cross-functional role suited for someone who can operate effectively in a fast-moving, lean environment. The successful candidate will work directly with application owners, business leaders, IT, legal, and technology teams to translate security and compliance expectations into clear, practical requirements without unnecessarily slowing down the business.
This role reports to the Director of Cyber Security & Compliance.
What You'll Do- Lead security and compliance reviews for new and existing technologies, including SaaS platforms, applications, APIs, cloud services, integrations, automation tools, and AI-enabled solutions.
- Assess risk across business and technology initiatives, with a focus on data protection, access controls, vendor risk, logging, auditability, and secure configuration.
- Define and implement practical security controls that align with business needs, regulatory expectations, internal policies, and audit requirements.
- Partner with application owners and business stakeholders to identify security and compliance requirements early in the project lifecycle.
- Conduct security and architecture reviews for applications, APIs, integrations, data flows, and third-party platforms.
- Support compliance activities, including evidence collection, control documentation, risk remediation tracking, user access reviews, and audit response.
- Strengthen application and network security posture by contributing to secure design, vulnerability management, control improvements, and remediation planning.
- Review third-party technology solutions and support vendor due diligence from a security and compliance perspective.
- Establish and maintain guardrails for technology use, including acceptable use, data handling, access management, logging, monitoring, and approval standards.
- Support incident response and investigations involving applications, integrations, vendor platforms, data exposure, or control failures.
- Track risks, issues, remediation plans, and control maturity, and provide clear reporting to leadership.
- Help develop lightweight, scalable processes for reviewing and approving new technologies in a growing organization.
- Stay current on emerging threats, compliance expectations, cybersecurity frameworks, and industry best practices.
- Implement and test CI/CD and secure development controls within internally developed applications.
- Bachelor's degree in Computer Science, Information Security, Information Systems, or a related field.
- 7+ years of experience in cybersecurity, technology risk, IT audit, compliance, application security, or network security.
- Strong understanding of security and compliance fundamentals, including access management, authentication, authorization, data protection, logging, vulnerability management, and secure configuration.
- Experience reviewing applications, APIs, SaaS platforms, cloud environments, or integration-heavy technology ecosystems.
- Familiarity with application security concepts, including OWASP risks, secure SDLC practices, API security, and data protection requirements.
- Solid grounding in network security concepts and modern enterprise architectures.
- Experience designing, documenting, or testing security controls in SaaS, cloud, or API-driven environments.
- Ability to perform risk assessments and translate findings into practical, business-friendly recommendations.
- Experience supporting audits, compliance programs, or security governance activities.
- Strong communication skills and the ability to influence decisions across technical and non-technical teams.
- Comfortable operating in a lean, fast-paced environment with evolving priorities.
- Familiarity with frameworks such as NIST CSF, CIS Controls, SOC 2, ISO 27001, or similar control frameworks.
- Experience supporting SOC 2, internal audit, external audit, or regulatory compliance programs.
- Experience with third-party risk management, user access reviews, policy governance, or control testing.
- Exposure to AI governance, emerging technology risk, or responsible AI initiatives.
- Experience in a mid-sized or growth-stage company environment.
- Industry certifications such as CISSP, CISA, CCSP, GIAC, Security+, or similar.
- Direct impact on how the company manages cybersecurity, compliance, and technology risk as it grows.
- High visibility with leadership, IT, legal, business stakeholders, and application owners.
- Opportunity to build scalable security and compliance processes from the ground up.
- Broad exposure across applications, infrastructure, cloud, SaaS platforms, integrations, and emerging technologies.
- A chance to balance business enablement with real-world risk management, not just enforce policy.
- New technologies are reviewed consistently, with clear security and compliance requirements defined early.
- Security is seen as a practical business partner, not a blocker.
- Risks are identified, documented, prioritized, and tracked through remediation.
- Controls are practical, scalable, and aligned with audit and compliance expectations.
- Application, integration, and third-party risks are reduced before they become issues.
- Strong partnerships exist across security, IT, legal, compliance, and business teams.
- AI-enabled technologies are governed as part of the broader security and compliance program, rather than managed as a standalone effort.
About Authentic Brands Group
Sourced by ZipRecruiter
Industry
Marketing
Company size
201 - 500 Employees
Headquarters location
New York, NY, US
Year founded
2010