1

Security Risk Management Consultant Jobs (NOW HIRING)

WHAT WE DO Our Security, Risk and Compliance consultants work with clients at all levels of the ... Management or participation in Cybersecurity, Information Security, Risk, Compliance and/or Data ...

... risk selection and ongoing account management. Key functions include but are not limited to the following: Senior Loss Control Consultant * Conducts surveys to identify and evaluating hazards and ...

... risk selection and ongoing account management. Key functions include but are not limited to the following: Senior Loss Control Consultant * Conducts surveys to identify and evaluating hazards and ...

Security Risk Manager

San Francisco, CA · Hybrid

$194K - $220K/yr

Own Asana's security risk management program: Design and continuously mature a quantitative risk framework - including risk scoring methodologies, likelihood and impact modeling, and risk appetite ...

Showing results 41-60

Security Risk Management Consultant information

See salary details

$10

$50

$108

How much do security risk management consultant jobs pay per hour?

As of Jul 28, 2026, the average hourly pay for security risk management consultant in the United States is $50.91, according to ZipRecruiter salary data. Most workers in this role earn between $24.76 and $63.70 per hour, depending on experience, location, and employer.

What are the most common challenges faced by Security Risk Management Consultants when working with clients from different industries?

Security Risk Management Consultants often encounter challenges related to understanding and adapting to the unique regulatory requirements and business processes of each industry. Every sector—such as healthcare, finance, or manufacturing—has specific security standards, risk profiles, and compliance obligations. Consultants must quickly assess these nuances while building trust and effectively communicating recommendations to stakeholders with varying degrees of cybersecurity knowledge. Flexibility, strong communication skills, and continuous learning are essential to successfully navigate these diverse environments.

What is the difference between Security Risk Management Consultant vs Security Analyst?

AspectSecurity Risk Management ConsultantSecurity Analyst
CertificationsISO 27001 Lead Implementer, CISSP, CISMCISSP, Security+
Work EnvironmentConsulting firms, corporate security teams, client sitesIn-house security teams, IT departments, security operations centers
Employer & Industry UsageBusinesses seeking risk assessments, compliance, and security strategyOrganizations monitoring security threats, incident response, and system monitoring

The main difference is that Security Risk Management Consultants focus on assessing and advising on security risks, compliance, and strategy for multiple clients or organizations. Security Analysts primarily monitor, analyze, and respond to security threats within an organization. Both roles require security certifications, but their daily tasks and objectives differ significantly.

What does a Security Risk Management Consultant do?

A Security Risk Management Consultant assesses, identifies, and mitigates potential security risks to an organization's assets, data, and operations. They develop and implement risk management strategies, conduct vulnerability assessments, and provide recommendations to improve security posture. These consultants work closely with clients to ensure compliance with industry standards and to prepare for or respond to security incidents. Their goal is to minimize the impact of threats and help organizations operate securely and efficiently.

What are the key skills and qualifications needed to thrive as a Security Risk Management Consultant, and why are they important?

To thrive as a Security Risk Management Consultant, you need a solid understanding of risk assessment methodologies, cybersecurity principles, and regulatory compliance, often supported by a relevant degree and certifications like CISSP or CISM. Familiarity with risk management frameworks (such as ISO 31000 or NIST), assessment tools, and security information and event management (SIEM) systems is typically required. Strong analytical thinking, effective communication, and problem-solving abilities help consultants build trust with clients and deliver actionable recommendations. These skills ensure organizations can identify, assess, and mitigate security risks effectively, safeguarding their assets and maintaining regulatory compliance.
More about Security Risk Management Consultant jobs
What cities are hiring for Security Risk Management Consultant jobs? Cities with the most Security Risk Management Consultant job openings:
Infographic showing various Security Risk Management Consultant job openings in the United States as of July 2026, with employment types broken down into 1% Locum Tenens, 88% Full Time, 7% Part Time, and 4% Contract. Highlights an 87% Physical, 5% Hybrid, and 8% Remote job distribution, with an average salary of $105,890 per year, or $50.9 per hour.
Security, Risk and Compliance Consultant

Security, Risk and Compliance Consultant

SEI

Atlanta, GA

Other

Posted 18 days ago


Job description

WHAT WE DO

Our Security, Risk and Compliance consultants work with clients at all levels of the organization, from the C-suite to the shop floor, helping them to deliver on their most strategic initiatives. We're known for making realistic, data-driven decisions that deliver value in tangible ways to our clients. Our clients ask for us on projects that require a superior combination of technical and business capabilities, people and management skills, and a collaborative mindset. We excel in understanding complex programs and strategic initiatives and breaking them into actionable pieces.

We are actively looking for professionals in the following areas:

  • Compliance
  • Information Security
  • Risk Management
  • Data Privacy

The ideal candidate's experience may include but is not limited to the following:

  • Management or participation in Cybersecurity, Information Security, Risk, Compliance and/or Data Privacy Programs or Projects
    • Sample projects/programs could include but are not limited to:
      • Compliance framework mapping and implementation,
      • Regulatory mapping and implementation
      • Audit, risk or regulatory remediation management,
      • Readiness for new laws and regulations,
      • Risk, Compliance or Information Security risk reporting and monitoring
      • Creation of roadmaps to mature or advance Risk, Compliance or Information Security Strategies/Programs/Controls
      • Design and enablement of cyber controls functions and processes
      • Change management related to regulatory adoption or compliance changes
      • Audit or certification readiness
    • Familiarity or direct experience with GRC/Cybersecurity solutions, tools and technologies
    • Control design or maturation for high-demand technical areas such as ERP, Identity and Access Management, Business Continuity and Resiliency, Cloud
    • Knowledge of and/or application of industry specific regulations, laws, and standards such as the EU-GDPR, CCPA/CPRA, HIPAA, PCI
    • Knowledge of and/or application of compliance and security frameworks and standards such as COSO, NIST, ISO
    • Management of regulatory, internal or external audits, or experience as an auditor
    • Projects or roles requiring coordination across lines of defense working with technical, business, compliance, risk and audit teams to deliver solutions
    • Work or projects with military or federal government agencies in Risk, Compliance or Information Security/Cyber Security sectors
    • Certifications: CIPP, CRCM, CRM, ARM, CISSP, CISM

QUALIFICATIONS

Required-

  • Alignment to our core values: Excellence, Participation, Integrity, and Collaboration
  • Hungry, Humble, Smart
  • Demonstrated business and technology acumen
  • Strong written and verbal communication skills
  • Understanding and experience solving real business problems
  • Proven track record of delivering results
  • Experience working with and/or leading a team
  • Ability to work across industries, roles, functions & technologies
  • Authorization for permanent employment in the United States (this position is not eligible for immigration sponsorship)

Preferred-

  • Bachelor's degree
  • 8+ years professional experience
  • Experience across our service offerings