2

Remote Security Risk Assessment Jobs (NOW HIRING)

... security risk assessments; and provide independent oversight of technology and security risks in ... Remote Travel requirements As a digital first company, the majority of your work can be ...

Cover security, operational, regulatory, and counterparty risk, including the risk register, annual assessments, scenario analyses, and escalation framework across all entities. * Own the Information ...

Risk Assessment & Operational Support * Monitor national and international events to identify ... Strategic thinker with demonstrated leadership experience across distributed or remote business ...

You are comfortable with the principles and methods of human health risk assessment and are eager ... This position may offer in-office, remote, or hybrid opportunities based on the candidate ...

For candidates not in those locations, we would consider fully remote work for a highly qualified ... Knowledge of toxicology, statistics, human health risk assessment and regulatory compliance

next page

Showing results 1-20

Remote Security Risk Assessment information

See salary details

$10

$50

$69

How much do remote security risk assessment jobs pay per hour?

As of Jun 20, 2026, the average hourly pay for remote security risk assessment in the United States is $50.41, according to ZipRecruiter salary data. Most workers in this role earn between $40.87 and $60.10 per hour, depending on experience, location, and employer.

What are the key skills and qualifications needed to thrive as a Remote Security Risk Assessor, and why are they important?

To thrive as a Remote Security Risk Assessor, you need expertise in cybersecurity principles, risk analysis, and a relevant degree or certifications such as CISSP, CISM, or CRISC. Familiarity with tools like vulnerability scanners, security information and event management (SIEM) systems, and risk assessment frameworks (e.g., NIST, ISO 27001) is essential. Strong analytical thinking, communication skills, and attention to detail help in accurately identifying and communicating risks to stakeholders. These skills and qualities are vital to ensure organizations can proactively mitigate threats and maintain robust security postures in remote or distributed environments.

What is the difference between Remote Security Risk Assessment vs Cybersecurity Analyst?

AspectRemote Security Risk AssessmentCybersecurity Analyst
CredentialsCertifications like CISSP, CISA, CISMCertifications like CompTIA Security+, CISSP, CEH
Work EnvironmentRemote or on-site, focusing on risk evaluationRemote or on-site, focusing on security monitoring and incident response
Industry UsageUsed in risk management, compliance, and audit contextsUsed in security operations, threat analysis, and incident handling

Remote Security Risk Assessments and Cybersecurity Analysts both require security certifications and often work in similar environments. However, risk assessors focus on evaluating vulnerabilities and compliance, while analysts handle ongoing security monitoring and incident response. Understanding these differences helps organizations assign the right roles for their security needs.

What is a Remote Security Risk Assessment?

A Remote Security Risk Assessment is a process where security professionals evaluate an organization's security risks, vulnerabilities, and threats without being physically present on-site. This assessment is typically conducted through virtual meetings, digital questionnaires, and remote access to systems and documentation. The goal is to identify potential security gaps and recommend improvements to protect sensitive data and systems from cyber threats. Remote assessments have become increasingly popular due to their flexibility, cost-effectiveness, and ability to serve organizations regardless of location.

What are some common challenges faced by professionals in remote security risk assessment roles?

Professionals in remote security risk assessment often encounter challenges such as limited on-site visibility, reliance on digital communication, and the need to assess complex IT environments from afar. Effective collaboration with on-site staff and stakeholders is essential to gather accurate information and implement recommendations. Additionally, staying up-to-date with evolving cybersecurity threats and maintaining clear documentation are vital for success in this role.
More about Remote Security Risk Assessment jobs
What cities are hiring for Remote Security Risk Assessment jobs? Cities with the most Remote Security Risk Assessment job openings:
What are the most commonly searched types of Security Risk Assessment jobs? The most popular types of Security Risk Assessment jobs are:
What states have the most Remote Security Risk Assessment jobs? States with the most job openings for Remote Security Risk Assessment jobs include:
What job categories do people searching Remote Security Risk Assessment jobs look for? The top searched job categories for Remote Security Risk Assessment jobs are:
Infographic showing various Remote Security Risk Assessment job openings in the United States as of June 2026, with employment types broken down into 79% Full Time, 14% Part Time, and 7% Contract. Highlights an 100% Remote job distribution, with an average salary of $104,848 per year, or $50.4 per hour.
Sr. Manager Information Security Risk Manager

Sr. Manager Information Security Risk Manager

Instructure, Inc

Remote

$120K - $150K/yr

Full-time

Posted yesterday


Job description

At Instructure, we believe in the power of people to grow and succeed throughout their lives. Our goal is to amplify that power by creating intuitive products that simplify learning and personal development, facilitate meaningful relationships, and inspire people to go further in their education and careers.
We do this by giving smart, creative, passionate people opportunities to create awesome. And that's where you come in:
Instructure is looking for a Sr. Risk Manager to help mature the GRC function by strengthening information security maturity through the creation and upkeep of a risk management program, including risk register(s) and the third-party risk program. A quality applicant is someone familiar with risk assessments, risk frameworks, is outgoing, understands learning frameworks, works independently, is trusted and can learn new things. A passion for Risk and Compliance is a must!
What you will do:
  • Reviewing the current information risk program, including improvements to processes that identify, measure, track, and remediate risks with business owners.
  • Working collaboratively with other information security risk personnel across Instructure to help identify enterprise-level risks for the CISO and work on finding enterprise-level solutions.
  • Assisting in annual audits for industry-specific reports, such as ISO27001, PCI, SOC 1 and SOC 2 Type I and Type II reports where risk controls are affected.
  • Developing and executing information security for internal control testing across the enterprise.
  • Work with product Engineering teams to secure solutions and ensure that Instructure procedures comply with regulatory framework requirements.
  • Partner with engineering teams to design and implement technical solutions to mitigate security risks
  • Collaborate with internal teams to establish metrics and dashboards that effectively measure the success of security programs.
  • Coordinate between external auditors and internal controls owners, ensuring smooth communication and efficient evidence gathering.
  • Documenting findings and assessing risk where deviations exist resulting from internal and external testing.
  • Evaluating third-party vendors to ensure compliance with established standards and risk tolerance levels.
  • Presenting results and findings of audits to peers and leadership when necessary.
  • Writing and editing policies and reports to maintain an industry-leading risk program.
  • Communicating the value of GRC and information risk management at Instructure.
  • Acting as an information security risk leader for Instructure, ensuring a world-class security posture.
  • Reviewing new tools for security risks during the procurement process.

What you will need to know/have
  • 7+ years of experience in information security, GRC, and/or risk management.
  • High school diploma or equivalent experience required. Bachelor's degree in information security or IT-related program preferred.
  • Excellent written and verbal communication skills.
  • Security+, CRISC, CISA preferred.
  • Willingness to learn new concepts, train junior members, and work with information security leaders on the most complex projects.

Get in on all the awesome at Instructure!
We offer competitive, meaningful benefits in every country where we operate. While they vary by location, here's a general idea of what you can expect:
  • Competitive compensation, plus all full-time employees participate in our ownership program - because everyone should have a stake in our success.
  • Flexible work culture. Our remote, hybrid and in-office collaboration spaces vary by role, team and location.
  • Generous time off, including local holidays and our annual "Dim the Lights" period in late December, when teams are encouraged to step back and recharge based on departmental needs.
  • Comprehensive wellness programs and mental health support
  • Learning and development resources, including professional development tools and tuition reimbursement, to support your growth
  • The technology and tools you need to do your best work
  • Motivosity employee recognition program
  • A culture rooted in inclusivity, support, and meaningful connection

We believe in hiring great people and treating them right. The more diverse we are, the better our ideas and outcomes.
Instructure is an Equal Opportunity Employer. We comply with applicable employment and anti-discrimination laws in every country where we operate.
All employees must pass a background check as part of the hiring process. To help protect our teams and systems, we've implemented identity verification measures. Candidates may be asked to verify their legal name, current physical location, and provide a valid contact number and residential address, in accordance with local data privacy laws.
Any attempt to misrepresent personal or professional information will result in disqualification.