1

Security Risk Management Consultant Jobs (NOW HIRING)

Showing results 41-60

Security Risk Management Consultant information

See salary details

$10

$50

$108

How much do security risk management consultant jobs pay per hour?

As of Aug 20, 2026, the average hourly pay for security risk management consultant in the United States is $50.91, according to ZipRecruiter salary data. Most workers in this role earn between $24.76 and $63.70 per hour, depending on experience, location, and employer.

What does a security risk management consultant do?

A Security Risk Management Consultant assesses, identifies, and mitigates potential security risks to an organization's assets, data, and operations. They develop and implement risk management strategies, conduct vulnerability assessments, and provide recommendations to improve security posture. These consultants work closely with clients to ensure compliance with industry standards and to prepare for or respond to security incidents. Their goal is to minimize the impact of threats and help organizations operate securely and efficiently.

What are the key skills and qualifications needed to thrive as a security risk management consultant?

To thrive as a Security Risk Management Consultant, you need a solid understanding of risk assessment methodologies, cybersecurity principles, and regulatory compliance, often supported by a relevant degree and certifications like CISSP or CISM. Familiarity with risk management frameworks (such as ISO 31000 or NIST), assessment tools, and security information and event management (SIEM) systems is typically required. Strong analytical thinking, effective communication, and problem-solving abilities help consultants build trust with clients and deliver actionable recommendations. These skills ensure organizations can identify, assess, and mitigate security risks effectively, safeguarding their assets and maintaining regulatory compliance.

What are the most common challenges faced by security risk management consultants when working with clients from different industries?

Security Risk Management Consultants often encounter challenges related to understanding and adapting to the unique regulatory requirements and business processes of each industry. Every sector—such as healthcare, finance, or manufacturing—has specific security standards, risk profiles, and compliance obligations. Consultants must quickly assess these nuances while building trust and effectively communicating recommendations to stakeholders with varying degrees of cybersecurity knowledge. Flexibility, strong communication skills, and continuous learning are essential to successfully navigate these diverse environments.

What is the difference between Security Risk Management Consultant vs Security Analyst?

AspectSecurity Risk Management ConsultantSecurity Analyst
CertificationsISO 27001 Lead Implementer, CISSP, CISMCISSP, Security+
Work EnvironmentConsulting firms, corporate security teams, client sitesIn-house security teams, IT departments, security operations centers
Employer & Industry UsageBusinesses seeking risk assessments, compliance, and security strategyOrganizations monitoring security threats, incident response, and system monitoring

The main difference is that Security Risk Management Consultants focus on assessing and advising on security risks, compliance, and strategy for multiple clients or organizations. Security Analysts primarily monitor, analyze, and respond to security threats within an organization. Both roles require security certifications, but their daily tasks and objectives differ significantly.

Does risk management consulting pay well?

Risk management consulting, including roles like Security Risk Management Consultants, generally offers competitive salaries that vary based on experience, certifications, and location. Professionals with specialized skills, such as cybersecurity knowledge or risk assessment tools, tend to earn higher compensation, especially at senior levels or in industries with high security demands.

How much do security risk management consultants make?

Security risk management consultants typically earn between $70,000 and $130,000 annually, depending on experience, certifications, and location. Senior professionals with specialized skills or certifications like CISSP can earn higher salaries, often exceeding $150,000.
More about Security Risk Management Consultant jobs

What cities are hiring for Security Risk Management Consultant jobs?

Cities with the most Security Risk Management Consultant job openings:

Infographic showing various Security Risk Management Consultant job openings in the United States as of August 2026, with employment types broken down into 1% As Needed, 84% Full Time, 13% Part Time, and 2% Contract. Highlights an 84% Physical, 3% Hybrid, and 13% Remote job distribution, with an average salary of $105,890 per year, or $50.9 per hour.

Information Security Risk - Risk Management - Advisor

Fannie Mae

Plano, TX

Full-time

Medical, Life

Posted 10 days ago


Fannie Mae rating

9.0

Company rating: 9.0 out of 10

Based on 8 frontline employees who took The Breakroom Quiz


Job description

Playing an essential role in the U.S. economy, Fannie Mae is foundational to housing finance. Here, your expertise can help fuel purpose-driven innovation that expands access to homeownership and affordable rental housing across the country. Join Fannie Mae to grow your career and help people find a place to call home.

Job Description

In this first-line risk role, you will provide risk management expertise with a particular focus on Identity and Access Management (IAM). You will partner with stakeholders across the enterprise to assess potential risks, evaluate processes and controls, and provide thoughtful, data-informed guidance that supports sound business decisions. Your ability to connect risk considerations with business objectives will help strengthen how the organization manages information security risk in a highly regulated environment.

The Way You Will Make a Difference
  • Advise on methods, models, and analytical approaches used to identify, assess, and evaluate information security risks, with an emphasis on risks related to Identity and Access Management.
  • Partner with business and risk stakeholders to evaluate potential risks and understand their impact on the enterprise.
  • Review processes and controls to identify opportunities to reduce risk and strengthen risk management practices through rigorous analysis.
  • Provide informed guidance and feedback to management on risk resolutions, control guidelines, and related risk management decisions.
  • Collaborate with stakeholders across the enterprise to communicate risk considerations clearly and support effective decision-making.
  • Apply sound judgment to assess risk within the context of business objectives, priorities, and the broader operating environment.
  • Contribute to the development and evaluation of business strategies by incorporating relevant information security and risk considerations.
  • Help the organization respond effectively to evolving business conditions, risk considerations, and regulatory expectations.

Minimum Required Experience

  • 6 years of relevant professional experience in risk management, information security risk, or a related discipline.
  • Demonstrated experience assessing risk, evaluating processes or controls, and using analysis to inform risk management decisions.
  • Experience collaborating with stakeholders and communicating risk considerations to support business decisions.
  • Ability to understand business objectives and apply sound judgment when evaluating risk.
  • Shows curiosity and adaptability in learning and responsibly applying new technologies, including artificial intelligence, to reimagine how we work.
Desired Experiences
  • Bachelor’s degree or equivalent.
  • Experience working with information security risk in a complex organizational environment.
  • Experience supporting or partnering with Identity and Access Management functions.
  • Experience providing advisory guidance to business, risk, or management stakeholders.
  • Experience operating in an environment where business decisions must account for evolving risk and regulatory considerations.

#LI - TW1 - Hybrid

Qualifications

Education:

Bachelor's Level Degree (Required)

The future is what you make it to be. Discover compelling opportunities at Fanniemae.com/careers.

For most roles, employees are expected to work onsite on a regular basis at their designated office location. In-office work cadence is determined by your manager. Proximity within a reasonable commute to your designated office location is preferred unless the job is noted as open to remote.


Fannie Mae is an equal opportunity employer and considers qualified applicants for employment without regard to race, color, religion, sex, national origin, disability, age, sexual orientation, gender identity/gender expression, marital or parental status, or any other protected factor. Fannie Mae is committed to providing reasonable accommodations to qualified individuals with disabilities who are employees or applicants for employment, unless to do so would cause undue hardship to the company. If you need assistance using our online system and/or you need a reasonable accommodation related to the hiring/application process, please complete this form.

The hiring range for this role is set forth below. Final salaries will generally vary within that range based on factors that include but are not limited to, skill set, depth of experience, certifications, and other relevant qualifications. This position is eligible to participate in a Fannie Mae incentive program (subject to the terms of the program). As part of our comprehensive benefits package, Fannie Mae offers a broad range of Health, Life, Voluntary Lifestyle, and other benefits and perks that enhance an employee's physical, mental, emotional, and financial well-being. See more here.

Requisition compensation:

141000

to

184000

What Fannie Mae employees say

Pay

Hours and flexibility

Workplace

Get the full story on Breakroom