This role partners with Enterprise Architecture, Security Engineering, IT, Platform Engineering, Cloud Operations, Privacy and Risk/Compliance to define security standards, reference architectures ...
This role partners with Enterprise Architecture, Security Engineering, IT, Platform Engineering, Cloud Operations, Privacy and Risk/Compliance to define security standards, reference architectures ...
This role partners with Enterprise Architecture, Security Engineering, IT, Platform Engineering, Cloud Operations, Privacy and Risk/Compliance to define security standards, reference architectures ...
This role partners with Enterprise Architecture, Security Engineering, IT, Platform Engineering, Cloud Operations, Privacy and Risk/Compliance to define security standards, reference architectures ...
This role partners with Enterprise Architecture, Security Engineering, IT, Platform Engineering, Cloud Operations, Privacy and Risk/Compliance to define security standards, reference architectures ...
This role partners with Enterprise Architecture, Security Engineering, IT, Platform Engineering, Cloud Operations, Privacy and Risk/Compliance to define security standards, reference architectures ...
This role partners with Enterprise Architecture, Security Engineering, IT, Platform Engineering, Cloud Operations, Privacy and Risk/Compliance to define security standards, reference architectures ...
This role partners with Enterprise Architecture, Security Engineering, IT, Platform Engineering, Cloud Operations, Privacy and Risk/Compliance to define security standards, reference architectures ...
SUMMARY The Senior Manager, Information Security GRC owns the strategy, execution, and continuous improvement of Greystar's Global Information Security Governance, Risk, and Compliance program. This ...
SUMMARY The Senior Manager, Information Security GRC owns the strategy, execution, and continuous improvement of Greystar's Global Information Security Governance, Risk, and Compliance program. This ...
SUMMARY The Senior Manager, Information Security GRC owns the strategy, execution, and continuous improvement of Greystar's Global Information Security Governance, Risk, and Compliance program. This ...
SUMMARY The Senior Manager, Information Security GRC owns the strategy, execution, and continuous improvement of Greystar's Global Information Security Governance, Risk, and Compliance program. This ...
AI Governance Coordinator - Remote / Telecommute
Dallas, TX · Remote
$43/hr
Strong communication and collaboration skills, with proven experience working alongside control function partners (Risk, Compliance, Privacy, Information Security). * Excellent writing skills -- able ...
Quick apply
AI Governance Coordinator - Remote / Telecommute
Dallas, TX · Remote
$43/hr
Strong communication and collaboration skills, with proven experience working alongside control function partners (Risk, Compliance, Privacy, Information Security). * Excellent writing skills -- able ...
Third-Party Risk Management Analyst
Plano, TX · On-site
$55 - $60/hr
... risk, compliance, or a related discipline * Foundational understanding of cybersecurity principles, risk assessment methodologies, and common security control frameworks * Experience supporting ...
Quick apply
Third-Party Risk Management Analyst
Plano, TX · On-site
$55 - $60/hr
... risk, compliance, or a related discipline * Foundational understanding of cybersecurity principles, risk assessment methodologies, and common security control frameworks * Experience supporting ...
Network Security Architecture Risk Lead
Dallas, TX · On-site
$141K - $237K/yr
Strong experience in Information security risk and cybersecurity control capabilities with ... Experience identifying, tracking, monitoring, and remediating critical non-compliance issues ...
Network Security Architecture Risk Lead
Dallas, TX · On-site
$141K - $237K/yr
Strong experience in Information security risk and cybersecurity control capabilities with ... Experience identifying, tracking, monitoring, and remediating critical non-compliance issues ...
Application Security Vulnerability Risk Lead
Dallas, TX · On-site
$141K - $211K/yr
As a Technology Risk: Vulnerability Management & Application Security Domain Lead, you will be ... Experience identifying, tracking, monitoring, and remediating critical non-compliance ...
Application Security Vulnerability Risk Lead
Dallas, TX · On-site
$141K - $211K/yr
As a Technology Risk: Vulnerability Management & Application Security Domain Lead, you will be ... Experience identifying, tracking, monitoring, and remediating critical non-compliance ...
Application Security Vulnerability Risk Lead
Dallas, TX · On-site
$141K - $211K/yr
As a Technology Risk: Vulnerability Management & Application Security Domain Lead, you will be ... Experience identifying, tracking, monitoring, and remediating critical non-compliance issues ...
Application Security Vulnerability Risk Lead
Dallas, TX · On-site
$141K - $211K/yr
As a Technology Risk: Vulnerability Management & Application Security Domain Lead, you will be ... Experience identifying, tracking, monitoring, and remediating critical non-compliance issues ...
Dallas,TX(Onsite) JD: * 8+ years of experience in Information Security, GRC, Risk, or Compliance. * Hands-on experience with GRC tools such as Archer, ServiceNow GRC, OneTrust, or MetricStream.
New
Dallas,TX(Onsite) JD: * 8+ years of experience in Information Security, GRC, Risk, or Compliance. * Hands-on experience with GRC tools such as Archer, ServiceNow GRC, OneTrust, or MetricStream.
New
... risk, compliance, or a related discipline * Foundational understanding of cybersecurity principles, risk assessment methodologies, and common security control frameworks * Experience supporting ...
... risk, compliance, or a related discipline * Foundational understanding of cybersecurity principles, risk assessment methodologies, and common security control frameworks * Experience supporting ...
Cyber Strategy, Risk & Compliance - AI Engineering for Cybersecurity - Senior Manager
Dallas, TX · On-site
$124K - $280K/yr
In regulatory risk compliance at PwC, you will focus on confirming adherence to regulatory ... Security Manager), or CRISC (Certified in Risk and Information Systems Control), Google AI ...
Cyber Strategy, Risk & Compliance - AI Engineering for Cybersecurity - Senior Manager
Dallas, TX · On-site
$124K - $280K/yr
In regulatory risk compliance at PwC, you will focus on confirming adherence to regulatory ... Security Manager), or CRISC (Certified in Risk and Information Systems Control), Google AI ...
Evaluate and monitor third-party providers for compliance and risk exposure. * Create and deliver security awareness and education materials for employees. What We're Looking For * 5+ years of IT ...
Quick apply
Evaluate and monitor third-party providers for compliance and risk exposure. * Create and deliver security awareness and education materials for employees. What We're Looking For * 5+ years of IT ...
Sr. SQL Database Administrator
Coppell, TX · On-site
$46.25 - $63.75/hr
... with Security, Risk, Compliance, and Cloud Platform teams in regulated or enterprise environments. Preferred : • Snowflake SnowPro Core or Advanced (Admin or Architect) certification is a plus.
Sr. SQL Database Administrator
Coppell, TX · On-site
$46.25 - $63.75/hr
... with Security, Risk, Compliance, and Cloud Platform teams in regulated or enterprise environments. Preferred : • Snowflake SnowPro Core or Advanced (Admin or Architect) certification is a plus.
Function as the primary day-to-day client interface, building rapport and driving outcomes across Engineering, Security, Risk/Compliance, and Operations. * Assist in business development (scope ...
Function as the primary day-to-day client interface, building rapport and driving outcomes across Engineering, Security, Risk/Compliance, and Operations. * Assist in business development (scope ...
Sr. Snowflake Administrator
Coppell, TX · On-site
$46.25 - $63.75/hr
... with Security, Risk, Compliance, and Cloud Platform teams in regulated or enterprise environments. Preferred : • Snowflake SnowPro Core or Advanced (Admin or Architect) certification is a plus.
Sr. Snowflake Administrator
Coppell, TX · On-site
$46.25 - $63.75/hr
... with Security, Risk, Compliance, and Cloud Platform teams in regulated or enterprise environments. Preferred : • Snowflake SnowPro Core or Advanced (Admin or Architect) certification is a plus.
Tech Risk and Controls Lead
Plano, TX · On-site
Proficient knowledge and expertise in data security, risk assessment & reporting, control ... compliance * Engage 2nd line of defense to discuss risk posture and to obtain non-objection when ...
Tech Risk and Controls Lead
Plano, TX · On-site
Proficient knowledge and expertise in data security, risk assessment & reporting, control ... compliance * Engage 2nd line of defense to discuss risk posture and to obtain non-objection when ...
The successful candidate will support Facility Security Assessments (FSAs), perform risk and data ... Coordinate Facility Security Assessment presentations to ensure compliance with applicable policies ...
The successful candidate will support Facility Security Assessments (FSAs), perform risk and data ... Coordinate Facility Security Assessment presentations to ensure compliance with applicable policies ...
Security Risk Compliance information
See Dallas, TX salary details
$32.1K - $40.3K
6% of jobs
$40.3K - $48.5K
0% of jobs
$48.5K - $56.7K
6% of jobs
$62.6K is the 25th percentile. Wages below this are outliers.
$56.7K - $64.9K
17% of jobs
The median wage is $72.7K / yr.
$64.9K - $73.1K
21% of jobs
$73.1K - $81.3K
7% of jobs
$81.3K - $89.4K
9% of jobs
$89.4K - $97.6K
7% of jobs
$98K is the 75th percentile. Wages above this are outliers.
$97.6K - $105.8K
12% of jobs
$105.8K - $114K
6% of jobs
$114K - $122.2K
7% of jobs
$32.1K
$80.3K
$122.2K
How much do security risk compliance jobs pay per year?
What is the difference between Security Risk Compliance vs Security Analyst?
| Aspect | Security Risk Compliance | Security Analyst |
|---|---|---|
| Certifications | ISO 27001 Lead Implementer, CISSP, CISA | CISSP, CompTIA Security+, GIAC Security Certifications |
| Work Environment | Policy development, compliance audits, risk assessments | Monitoring security systems, incident response, vulnerability analysis |
| Employer & Industry Usage | Financial, healthcare, government sectors focusing on regulatory adherence | IT departments across various industries focusing on security operations |
Security Risk Compliance professionals focus on ensuring organizations meet regulatory standards and manage security risks through policies and audits. Security Analysts primarily monitor security systems, analyze threats, and respond to incidents. While both roles require security certifications and work within similar environments, their core responsibilities differ: compliance versus active security monitoring.
What are some common challenges faced by security risk compliance professionals when balancing regulatory requirements with business objectives?
What are the key skills and qualifications needed to thrive as a security risk compliance professional?
Is risk and compliance a good career?
What is security risk compliance?

Full-time
Re-posted 2 hours ago
Job description
Associate Enterprise Security Architect
Who We Are
At Upbound Group, we are committed to elevating financial opportunity for all through innovative, inclusive, and technology-driven financial solutions that address the evolving needs and aspirations of consumers. The Company's customer-facing operating units include industry-leading brands such as Rent-A-Center, Acima and Brigit that facilitate consumer transactions across a wide range of store-based and digital retail channels, including over 2,400 company-branded retail units across the United States, Mexico, New York and Puerto Rico. Upbound Group, Inc. is headquartered in Plano, Texas.
Role Summary
The Associate Enterprise Security Architect helps shape and scale the organization's security architecture across the enterprise. This role partners with Enterprise Architecture, Security Engineering, IT, Platform Engineering, Cloud Operations, Privacy and Risk/Compliance to define security standards, reference architectures, and guardrails that ensure technology solutions are secure, consistent, and aligned with business objectives.
This is a growth role for someone who understands core security domains and wants to expand into enterprise-level architecture, strategy, and cross-team influence.
Key Responsibilities
- Assist in developing and maintaining enterprise security architecture standards, patterns, reference architectures and designs (identity, network segmentation, endpoint, cloud, application, data protection, AI, etc.).
- Assist in building the Enterprise Security Architecture framework for the company utilizing SABSA methodology at the direction of a SABSA certified architect.
- Participate in architecture and design reviews to ensure major initiatives align with enterprise security principles, approved patterns, and business objectives.
- Help define security requirements and controls that can be reused across teams, products, and platforms, including AI controls focused on GenAI, Agents, Agentic, MCP, RAG, etc.
- Support the creation and maintenance of target-state security roadmaps (e.g., Zero Trust adoption, logging and detection strategy, IAM modernization, AI Security).
- Contribute to security governance processes, including exception handling, risk acceptance support, and documenting architectural decisions.
- Partner with Security Engineering and IT to ensure enterprise standards can be implemented operationally (pragmatic, measurable, and supportable).
- Assist in vendor and technology evaluations to ensure tools align with architectural standards and integrate with the broader ecosystem.
- Help map security architecture to compliance frameworks and internal policies (NIST CSF, NIST AI RMF, SOC 2, ISO 27001, PCI DSS, etc.), ensuring designs support auditability.
- Contribute to metrics and reporting on architecture adoption (pattern usage, exceptions, gaps, and roadmap progress).
- Maintain clear architecture documentation and communicate standards to stakeholders through presentations, docs, and working sessions.
Focus Areas:
- Identity and Access Management (SSO, MFA, lifecycle automation, privileged access)
- Network and segmentation models (Zero Trust, secure access, remote connectivity)
- Cloud security baselines (landing zones, guardrails, policy-as-code)
- Data classification and protection (encryption, key management, DLP, DSPM)
- AI Security (data security and governance, model security, API, IAM, IRP)
- Logging, monitoring, and detection architecture (SIEM strategy, telemetry standards)
- Secure SDLC guardrails (security gates, code scanning standards, secrets management)
Required Qualifications
- 2 to 5+ years of experience in information security, security engineering, IT, systems engineering, or related technical roles.
- Working knowledge of core security domains: IAM, network security, endpoint security, vulnerability management, encryption, and logging/monitoring, data protection.
- Familiarity with cloud concepts and shared responsibility (AWS, Azure, and/or GCP) and how security guardrails are implemented in cloud environments.
- Experience with design and implementation of AI security controls for enterprise environments.
- Ability to translate security risk into clear requirements and actionable guidance for engineering and IT teams.
- Strong documentation and communication skills (comfortable writing standards and presenting to stakeholders).
- Understanding of common security frameworks and control concepts (e.g., NIST CSF, NIST AI RMF, NIST 800-53, CIS Controls, OWASP, PCI/DSS, etc.).
- Familiarity with SABSA Enterprise Security methodology
- Self-accountability is a must
Preferred Qualifications
- Exposure to enterprise architecture concepts (capability models, target-state roadmaps, architecture review boards).
- Exposure to SABSA Enterprise Security methodology, in practice.
- Experience contributing to Zero Trust programs, segmentation strategies, enterprise IAM modernization and enterprise AI security.
- Familiarity with GRC processes (risk exceptions, control mapping, audit support), without being purely a compliance role.
- Experience with security architecture modeling or diagramming (e.g., C4, ArchiMate, Visio/Lucidchart).
- Experience in security solutions design and evaluation.
- Certifications (nice to have, not required): SABSA Foundation, CCSP, Security+, AZ-500, AWS Security Specialty, CISSP (Associate), Logging/SIEM/Security Vendor certifications
Work Location
Ability to work in the Plano, Texas office, Monday through Friday.
Sponsorship
Applicants must be authorized to work for ANY employer in the U.S. We are unable to sponsor or take over sponsorship of an employment visa at this time.
Equal Opportunity Employer
Upbound Group is an equal opportunity employer committed to ensuring all employment decisions are made on a non-discriminatory basis in accordance with applicable federal, state, and local laws.
This job description is not intended to be all-inclusive. Coworker may perform other related duties as negotiated to meet the ongoing needs of the organization.
Upbound Group is an equal opportunity employer. We celebrate diversity and are committed to creating an inclusive environment for all employees.