1

Professional Risk Manager Jobs in Oregon (NOW HIRING)

Certified Information Security Manager (CISM), Certified Information Systems Security Professional (CISSP), Certified Information systems Auditor (CISA), or Certified Risk & Information Security ...

Senior VCISO

OR Β· On-site +1

Certified Information Security Manager (CISM), Certified Information Systems Security Professional (CISSP), Certified Information systems Auditor (CISA), or Certified Risk & Information Security ...

About the Role Reporting to Deputy COO, you will be M0's first dedicated information security and risk professional - responsible for building the enterprise risk management program, owning the ...

Professional Level Information: An Engineer, 3 typically plans and directs research or development ... Develop and implement risk-management processes and programs, including risk identification ...

Our growing team of professionals across North America represents a broad, deep and one-of -a kind ... Work collaboratively with Account Management, Customer Service, Claims, and Risk Services to bring ...

Compliance Manager

Fairview, OR Β· On-site

$125K/yr

Professional certification in Compliance, Risk Management, Sustainability, Project Management, or a related field. * Experience in manufacturing, industrial, engineering, or engineered products ...

Compliance Manager

Fairview, OR Β· On-site

$125K/yr

Professional certification in Compliance, Risk Management, Sustainability, Project Management, or a related field. * Experience in manufacturing, industrial, engineering, or engineered products ...

Showing results 41-60

Professional Risk Manager information

See Oregon salary details

$54.5K

$117.9K

$179.7K

How much do professional risk manager jobs pay per year?

As of Sep 11, 2026, the average yearly pay for professional risk manager in Oregon is $117,947.00, according to ZipRecruiter salary data. Most workers in this role earn between $95,200.00 and $136,400.00 per year, depending on experience, location, and employer.

How does a professional risk manager typically collaborate with other departments within an organization?

Professional Risk Managers work closely with teams across the organization, including finance, operations, compliance, and executive leadership. They facilitate communication to identify, assess, and prioritize potential risks, ensuring that all business units understand and adhere to risk mitigation strategies. Regular meetings and cross-functional projects are common, fostering a collaborative environment where risk insights inform decision-making. This collaborative approach helps to create a proactive risk culture and supports the organization’s overall objectives.

What are the key skills and qualifications needed to thrive as a professional risk manager, and why are they important?

To thrive as a Professional Risk Manager, you need a strong background in risk assessment, financial analysis, and regulatory compliance, often supported by a degree in finance or a related field and certifications like PRM or FRM. Proficiency with risk management software, quantitative modeling tools, and enterprise risk management (ERM) systems is typically required. Outstanding analytical thinking, attention to detail, and effective communication skills set successful risk managers apart. These skills and qualifications are crucial for accurately identifying, assessing, and mitigating risks that could impact an organization's objectives and stability.

What is the difference between Professional Risk Manager vs Risk Analyst?

AspectProfessional Risk ManagerRisk Analyst
CertificationsFRM, PRMCFA, FRM (optional)
Work EnvironmentStrategic, managerial, decision-making roles in finance, insurance, or corporate sectorsData analysis, risk assessment, reporting in finance or banking
Employer & Industry UsageFinancial institutions, corporations, consulting firmsBanks, investment firms, insurance companies

The Professional Risk Manager typically holds strategic responsibilities, focusing on risk policies and mitigation strategies, often requiring certifications like FRM or PRM. Risk Analysts primarily perform data-driven risk assessments and reporting. While both roles work within the risk management field, the Professional Risk Manager has a broader scope involving decision-making and policy development, whereas Risk Analysts focus on analyzing data to inform those decisions.

What does a professional risk manager do?

A professional risk manager identifies, assesses, and prioritizes potential risks that could impact an organization’s operations, finances, or reputation. They develop strategies to mitigate or manage these risks, often using tools like risk assessment frameworks and data analysis, and may hold certifications such as FRM or PRM. Their work involves continuous monitoring and reporting to ensure organizational resilience against various threats.

What are popular job titles related to Professional Risk Manager jobs in Oregon?

For Professional Risk Manager jobs in Oregon, the most frequently searched job titles are:

What job categories do people searching Professional Risk Manager jobs in Oregon look for?

The top searched job categories for Professional Risk Manager jobs in Oregon are:

Infographic showing various Professional Risk Manager job openings in Oregon as of August 2026, with employment types broken down into 1% As Needed, 72% Full Time, 23% Part Time, and 4% Contract. Highlights an 86% Physical, 2% Hybrid, and 12% Remote job distribution, with an average salary of $117,947 per year, or $56.7 per hour.
VC3, Inc.
IT ServicesΒ β€’Β 51 - 200 employees

Full-time

Retirement

This job post hasΒ expired 1 day ago.Β Applications are no longer accepted.


Key responsibilities

  • Provide strategic leadership and oversight for the information security programs of VC3 managed clients.

  • Lead the development and implementation of cybersecurity strategies, risk assessments, and incident response programs for clients and internal operations.

  • Collaborate with cross-functional teams and clients to ensure security initiatives support business objectives and align with industry best practices.


Job description

At VC3, we don't just solve IT problems - we own them. We serve hundreds of municipalities and organizations across the United States and Canada, bringing IT to the people who need it most. We believe in earning trust, having a growth mindset, and delivering excellence every single time.Β 
Β 
We're a team of doers, builders, and tech whisperers who live by 4 core values:
Β Go Beyond | Own It | Be Curious| Serve as OneΒ 
We pride ourselves on making IT personal, making IT easy, and getting IT right. And it all starts with our talented team that is committed to raising the bar.Β  Β 
The Impact you will have:Β  Β 

The Senior Virtual Chief Information Security Officer(Senior vCISO) will provide strategic leadership and oversight for the information security programs of VC3 managed clients. This role involves having a deep understanding of each client's unique business environment to develop tailored strategies that mitigate risks and align with client business objectives. The Senior vCISO is a top security expert that works with existing management and technical teams both within client environments and VC3 to manage risks and safeguard the company's and clients' data, while ensuring compliance with regulatory requirements. This role also assists in providing strategy for the Managed Security space to drive growth, delivery with consistency and excellence, and the desired level of profitability for the organization. Key focus areas are innovation, staying at or ahead of world events that are relevant, consistent excellence, proactiveness, and driving efficiency. By measuring progress and adjusting processes accordingly, the Senior vCISO keeps the clients under their purview on track.Β 

The Managed Security department at VC3 is responsible for ensuring our clients have the right security tools, policies and processes to thrive in today's fast-moving threat landscape. They ensure that our internal teams are equipped with the training and knowledge to support our clients and make sure that effective security is a key aspect of everything we do within VC3.Β 

In order to ensure an exceptional result, you will need to have a clear understanding of the challenges and opportunities our clients face and how our teams as a whole combine to deliver our promise. Providing services in a proactive, professional manner while ensuring key parties are kept informed is critical. We are a data driven company and analysis for decision making and overall strategy is ongoing.Β 



  • Understand and follow "The VC3 Way".Β  This is our set of standards and processes that produce a predictable result for the client.Β  You must be aware of and maintain our standards.Β 
  • Engage and provide consulting services to mid-market and enterprise clients, including:Β 
    • Provide strategic leadership in translating complex cybersecurity concepts into non-technical terms for clients to clearly understand specific applications to their business priorities.Β 
    • Understand and align with the client organization's overall strategy and business environment to ensure cybersecurity initiatives support business objectivesΒ 
    • Lead the development and implementation of a comprehensive cybersecurity strategy for clients and VC3 that aligns with the organization's goals and objectivesΒ 
    • Proactively identify and anticipate future security and compliance challenges for our clients and VC3, driving VC3 solutionsΒ 
    • Partner with cross-functional teams to integrate security into product design and implementation, and to develop security solution offerings for clients.Β 
    • Drive the creation and execution of a robust cybersecurity plan and program within client environments, ensuring alignment with industry best practices.Β 
    • Assist in the development of the information security incident response program for the VC3 Managed Security Department.Β 
    • Strategically develop and enhance client specific incident response programs as needed based on the development of Business Continuity and Disaster Recovery practices liaising with internal VC3 Departments as necessary.Β 
    • Lead comprehensive cybersecurity risk assessments based on the client organization's assets, identify vulnerabilities, and recommend remediation strategies.Β 
    • Collaborate within VC3 and with clients to assist with vendor selection, providing guidance and checklists to ensure third party security compliance.Β 
  • Engage and provide services to VC3 as an organization, including:Β 
    • Security Strategy & Vision:Β 
    • Develop and implement a comprehensive information security strategy for internal operations and client-facing services.Β 
    • Collaborate with senior management to align security initiatives with business objectives and regularly report on the status of security programs and initiatives.Β 
    • Drive the adoption of security policies, standards, and guidelines that protect the company and its clients.Β 
  • Risk Management:Β 
    • Identify, evaluate, and report on information security risks in a manner that meets compliance and regulatory requirements.Β 
    • Oversee risk assessments and mitigation strategies for both internal environments.Β 
  • Compliance & Regulatory Oversight:Β 
    • Ensure the organization complies with all relevant regulations, standards, and certifications (e.g., SOC II, FISMA, NIST).Β 
    • Lead audits and assessments to maintain compliance and certification standards.Β 
  • Incident Response & Management:Β 
    • Establish and oversee the organization's incident response program, including detection, investigation, and remediation of security incidents.Β 
    • Coordinate with legal, public relations, and other relevant teams to manage communication during and after a security breach.Β 
    • Post-incident, lead efforts to identify root causes and implement changes to prevent future incidents.Β 
Additional Responsibilities:Β 
  • Foster a security-conscious culture across the organization, ensuring all employees understand their role in protecting information.Β 
  • Serve as the security spokesperson to clients, partners, and regulatory bodies.Β 
  • Proactively engage with industry peers and continuously analyze and review new security technologies and understand emerging security threats while implementing proactive measures to mitigate potential risks.Β 
  • Strategically collaborate with internal stakeholders to stay informed of planned changes to technologies, practices, and business activities that could impact security.Β 
  • Collaborate across all VC3 departments to maximize our client security posture and experience during onboarding, system design, strategy and ongoing supportΒ 
  • Maintain precise and up-to-date timesheets, and document notes on troubleshooting steps and client communications.Β 
  • Actively seek and reflect on feedback from stakeholders, colleagues, and management using it to drive improvement.Β 
  • Escalate complex issues to senior resources or relevant teams when necessary.Β 
  • Engage actively in team huddles, L10 meetings, and other collaboratively structured meetings.Β 
  • Develop and revise documentation promptly to reflect changes or new findings.Β 
  • Attend company-based meetings as requiredΒ 
  • Additional duties as assignedΒ 

Performance Deliverables:Β 

Each employee's performance is tracked through both leading and lagging key performance metrics:Β 
  • Client & VC3 Cyber Security IncidentsΒ 
  • Client UtilizationΒ 
  • Security MRR GrowthΒ 
  • Client & VC3 Security Awareness EducationΒ 
  • Bachelor's Degree or Master's Degree (preferred) in an IT-based curriculum, or at least 10 years' experience in risk management, information security, or programming.Β 
  • One or more of the following qualifications: Certified Information Security Manager (CISM), Certified Information Systems Security Professional (CISSP), Certified Information systems Auditor (CISA), or Certified Risk & Information Security Controls (CRISC), Cisco Certified Internetwork Expert (CCIE) or equivalentΒ 
  • Extensive experience in cybersecurity strategy development, risk management, and program administration.Β 
  • Deep knowledge of current Β  common cybersecurity frameworks (CIS, NIST, MITRE ATT&CK)Β 
  • Expertise in compliance and regulatory requirements across various industries.Β 
  • An understanding of SIEM platforms, perimeter security, endpoint detection and response platforms, vulnerability management solutions, all aspects of IT infrastructure (compute, route/switch, security) and cloud securityΒ 
  • Possesses a high level of self-motivation and initiative, consistently taking ownership of tasks and projects.Β 
  • Demonstrate a strong sense of autonomy and resourcefulness, capable of making independent decisions and solving problems without relying heavily on coaching or direction.Β 
  • Exhibit excellent time management and organizational skills, effectively prioritizing tasks and allocating resources to meet deadlines and achieve objectives without extensive oversight.Β 
  • Displays a proactive and self-directed approach to learning and staying updated on industry trends, seeking out relevant information and resources to enhance their knowledge and skills.Β 
  • Shows the ability to adapt and thrive in ambiguous or uncertain situations, quickly assessing and navigating challenges.Β 
  • Possesses strong critical thinking and decision-making abilities, evaluating complex situations and determining the best course of action, while considering the broader organizational goals and objectives.Β 
  • Demonstrates effective communication skills, both written and verbal, articulating ideas and expectations clearly and concisely, minimizing the need for frequent guidance or clarification.Β 
  • Demonstrated ability to build and manage relationships with clients (internal and external) through consistent and proactive communication.Β 
  • Extraordinarily strong interpersonal skills, able to build effective working relationships, solicit co-operation and collaborate with various stakeholders internally and externally.Β 
Β 
Additional Information:Β 
Β 
  • Applicant selected will be subject to a criminal and department of motor vehicles background checks and must meet Criminal Justice Information Systems (CJIS) requirements post-employment.Β 
  • Available for domestic and international travel as required.Β 

Β  Well-being & Support - Caring for our team goes beyond the workday. We offer a range of benefits to support your overall well-being, from mental health and leave support through our Employee and Family Assistance Program, to financial wellness through company-matched 401(k)/RRSP plans. Whether it's today's needs or tomorrow's goals, we've got you covered.Β 
Grow with Us - Whether you're just getting started or ready to take the next step, we are committed to investing in your growth. We offer structured development through our Leadership Academy, monthly learning sessions, mentorship programs, learning reimbursements, internal career fairs, job shadowing, and personalized career-pathing to support internal mobility. Β 
People-First Culture - We live our values, support each other, and create a space where everyone belongs. We have a common goal of doing work that matters, with autonomy, recognition, and a mission to serve those who serve.Β 
Transparent Leadership - From open communication to clear company goals, our leaders are involved, and our managers are here to support your growth every step of the way.Β 
Β 
Applicant selected will be subject to a criminal and department of motor vehicles background checks and must meet Criminal Justice Information Systems (CJIS) requirements post-employmentΒ 
Β 
Thank you for your interest in VC3. We appreciate all applications; however, only those candidates selected for an interview will be contacted. Β 
Β 
Learn more about VC3 by visiting our website and follow us on LinkedIn to stay informed!Β 
Β