... manage security related audit plans, security plans and risk plan documentation for accuracy and consistency, proactively solves problems. • Evaluate data and formulate comprehensive reports ...
... manage security related audit plans, security plans and risk plan documentation for accuracy and consistency, proactively solves problems. • Evaluate data and formulate comprehensive reports ...
Manage the vendor security review process, including security questionnaires, vendor documentation review, risk identification, and mitigation recommendations. * Partner with legal, finance ...
Manage the vendor security review process, including security questionnaires, vendor documentation review, risk identification, and mitigation recommendations. * Partner with legal, finance ...
SUMMARY The GMS Business Security Leader is responsible for delivering Greystar's security, risk management, and incident management objectives across all GMS operations. This role serves as the ...
SUMMARY The GMS Business Security Leader is responsible for delivering Greystar's security, risk management, and incident management objectives across all GMS operations. This role serves as the ...
Manage the vendor security review process, including security questionnaires, vendor documentation review, risk identification, and mitigation recommendations. * Partner with legal, finance ...
Manage the vendor security review process, including security questionnaires, vendor documentation review, risk identification, and mitigation recommendations. * Partner with legal, finance ...
... Global Risk Management (GRM) organization operates - moving it from today's manually intensive ... security, financial risk, and enterprise risk to define an ambitious vision for every process ...
... Global Risk Management (GRM) organization operates - moving it from today's manually intensive ... security, financial risk, and enterprise risk to define an ambitious vision for every process ...
Support inquiries from compliance teams such as IT risk management and internal and external auditors to ensure documentation is complete and processes are in compliance with information security ...
Support inquiries from compliance teams such as IT risk management and internal and external auditors to ensure documentation is complete and processes are in compliance with information security ...
The role establishes repeatable operating practices for audits, assessments, evidence management, compliance obligations, and remediation activities while helping Security, Technology, Risk, Audit ...
New
The role establishes repeatable operating practices for audits, assessments, evidence management, compliance obligations, and remediation activities while helping Security, Technology, Risk, Audit ...
New
Vendor, Third-Party, and Security Advisory Support** + Manage the vendor security review process, including security questionnaires, vendor documentation review, risk identification, and mitigation ...
Vendor, Third-Party, and Security Advisory Support** + Manage the vendor security review process, including security questionnaires, vendor documentation review, risk identification, and mitigation ...
Support inquiries from compliance teams such as IT risk management and internal and external auditors to ensure documentation is complete and processes are in compliance with information security ...
Support inquiries from compliance teams such as IT risk management and internal and external auditors to ensure documentation is complete and processes are in compliance with information security ...
Support inquiries from compliance teams such as IT risk management and internal and external auditors to ensure documentation is complete and processes are in compliance with information security ...
Support inquiries from compliance teams such as IT risk management and internal and external auditors to ensure documentation is complete and processes are in compliance with information security ...
Support inquiries from compliance teams such as IT risk management and internal and external auditors to ensure documentation is complete and processes are in compliance with information security ...
Support inquiries from compliance teams such as IT risk management and internal and external auditors to ensure documentation is complete and processes are in compliance with information security ...
Senior Manager, Security Operations
Mesa, AZ · On-site
$80K - $100K/yr
Security Leadership & Risk Management * Develop and execute the overall security strategy for Sloan Park and the Nike Performance Center, ensuring alignment with organizational objectives and ...
Senior Manager, Security Operations
Mesa, AZ · On-site
$80K - $100K/yr
Security Leadership & Risk Management * Develop and execute the overall security strategy for Sloan Park and the Nike Performance Center, ensuring alignment with organizational objectives and ...
Senior Manager, Security Operations
Mesa, AZ · On-site
$80K - $100K/yr
Security Leadership & Risk Management * Develop and execute the overall security strategy for Sloan Park and the Nike Performance Center, ensuring alignment with organizational objectives and ...
Senior Manager, Security Operations
Mesa, AZ · On-site
$80K - $100K/yr
Security Leadership & Risk Management * Develop and execute the overall security strategy for Sloan Park and the Nike Performance Center, ensuring alignment with organizational objectives and ...
Support inquiries from compliance teams such as IT risk management and internal and external auditors to ensure documentation is complete and processes are in compliance with information security ...
Support inquiries from compliance teams such as IT risk management and internal and external auditors to ensure documentation is complete and processes are in compliance with information security ...
Senior Manager, Security Operations
Mesa, AZ · On-site
$80K - $100K/yr
Security Leadership & Risk Management * Develop and execute the overall security strategy for Sloan Park and the Nike Performance Center, ensuring alignment with organizational objectives and ...
Senior Manager, Security Operations
Mesa, AZ · On-site
$80K - $100K/yr
Security Leadership & Risk Management * Develop and execute the overall security strategy for Sloan Park and the Nike Performance Center, ensuring alignment with organizational objectives and ...
Security Engineer
Paradise Valley, AZ · On-site
Risk Management & Security Operations * Conduct security risk assessments, vulnerability reviews, and threat analyses to identify potential risks and vulnerabilities. * Develop and implement ...
Security Engineer
Paradise Valley, AZ · On-site
Risk Management & Security Operations * Conduct security risk assessments, vulnerability reviews, and threat analyses to identify potential risks and vulnerabilities. * Develop and implement ...
Sr. Data Specialist - Risk Management
Scottsdale, AZ · Hybrid
$84K - $105K/yr
Support the production of all necessary reports to the ERM Committee, Risk & Security Committee, and the Management Committee. * Create, maintain, format, and update reporting decks and presentations ...
Sr. Data Specialist - Risk Management
Scottsdale, AZ · Hybrid
$84K - $105K/yr
Support the production of all necessary reports to the ERM Committee, Risk & Security Committee, and the Management Committee. * Create, maintain, format, and update reporting decks and presentations ...
Sr. Data Analyst - Risk Management
Scottsdale, AZ · On-site
$84K - $105K/yr
Support the production of all necessary reports to the ERM Committee, Risk & Security Committee, and the Management Committee. * Create, maintain, format, and update reporting decks and presentations ...
Sr. Data Analyst - Risk Management
Scottsdale, AZ · On-site
$84K - $105K/yr
Support the production of all necessary reports to the ERM Committee, Risk & Security Committee, and the Management Committee. * Create, maintain, format, and update reporting decks and presentations ...
Sr. Data Specialist - Risk Management
Scottsdale, AZ · On-site
$84K - $105K/yr
Support the production of all necessary reports to the ERM Committee, Risk & Security Committee, and the Management Committee. * Create, maintain, format, and update reporting decks and presentations ...
Sr. Data Specialist - Risk Management
Scottsdale, AZ · On-site
$84K - $105K/yr
Support the production of all necessary reports to the ERM Committee, Risk & Security Committee, and the Management Committee. * Create, maintain, format, and update reporting decks and presentations ...
Jr. Security Engineer
Chandler, AZ · On-site
Perform remediation of security assessment review issues, complex ad hoc data, and reporting to support information security risk management * Provide guidance and direction in reviewing assessment ...
Quick apply
Jr. Security Engineer
Chandler, AZ · On-site
Perform remediation of security assessment review issues, complex ad hoc data, and reporting to support information security risk management * Provide guidance and direction in reviewing assessment ...
Security Risk Management information
See Phoenix, AZ salary details
$10.26 - $15.64
2% of jobs
$15.64 - $21.03
0% of jobs
$21.03 - $26.41
1% of jobs
$26.41 - $31.79
1% of jobs
$31.79 - $37.17
1% of jobs
$41.20 is the 25th percentile. Wages below this are outliers.
$37.17 - $42.55
26% of jobs
$42.55 - $47.93
11% of jobs
The median wage is $49.85 / hr.
$47.93 - $53.31
22% of jobs
$53.31 - $58.69
9% of jobs
$59.11 is the 75th percentile. Wages above this are outliers.
$58.69 - $64.07
17% of jobs
$64.07 - $69.46
9% of jobs
$10
$50
$69
How much do security risk management jobs pay per hour?
What is security risk management?
What are the key skills and qualifications needed to thrive in security risk management, and why are they important?
What are the typical challenges faced by professionals in security risk management, and how can they be addressed?
What is the difference between Security Risk Management vs Security Analyst?
| Aspect | Security Risk Management | Security Analyst |
|---|---|---|
| Certifications | CRISC, CISSP, CISM | CompTIA Security+, CISSP, CEH |
| Work Environment | Strategic, policy-focused, risk assessment | Operational, monitoring, incident response |
| Employer & Industry Usage | Organizations managing enterprise security risks | Security teams, cybersecurity firms, IT departments |
Security Risk Management focuses on identifying, assessing, and mitigating security risks at an organizational level, often involving policy development and strategic planning. In contrast, Security Analysts primarily monitor security systems, analyze threats, and respond to incidents. Both roles are essential but differ in scope and responsibilities within the cybersecurity field.
What do you need to be a security risk manager?
What does security risk management do?
What are popular job titles related to Security Risk Management jobs in Phoenix, AZ?
For Security Risk Management jobs in Phoenix, AZ, the most frequently searched job titles are:
What job categories do people searching Security Risk Management jobs in Phoenix, AZ look for?
The top searched job categories for Security Risk Management jobs in Phoenix, AZ are:

Analyst - GOVERNANCE, RISK, AND COMPLIANCE ANALYST
Phoenix, AZ • On-site
Other
Posted 28 days ago
Key responsibilities
Perform risk assessments, audit reviews, generate findings reports, and make recommendations for improvement.
Review, update, and manage security-related audit plans, security plans, and risk documentation.
Evaluate data, prepare comprehensive reports on findings and non-compliance, and investigate suspicious network activity.
Job description
Idealforce has contract to hire position available immediately for a Analyst - GOVERNANCE, RISK, AND COMPLIANCE ANALYST to join our customer in Phoenix,AZ. This is Hybrid Position.Please find below additional details about this job.Local Candidates.
Job Summary:
Job Summary:
The Client is seeking an experienced and highly motivated individual to join our team as a Information Security Analyst, (ISA) contractor. This position will work on the Governance Risk and Compliance (GRC) Team to communicate and engage with business units to develop a strong understanding of their reporting, data, and product needs. The team member will work with other personnel across departments to define requirements for projects, identify data dependencies and relationships to develop logical and physical data models, data flows and system activity diagrams, and write specifications for managing enterprise information policies. The team member will help develop plans and materials to support user adoption, training, and customer service, working through direct and regular contact with users from other divisions, programs, and service units to provide regular insight and guidance in prioritizing enhancements for the data systems. The team member will also support technical project managers to ensure that all aspects of the information analysis and requirements gathering process are completed with the highest degree of accuracy and quality, which includes developing and socializing key project artifacts.
The state of Arizona strives for a work culture that affords employees flexibility, autonomy, and trust. Across our many agencies, boards, commissions, many State employees participate in the State's Remote Work Program and are able to work remotely in their homes, in offices, and in hoteling spaces. All work, including remote work, should be performed within Arizona unless an exception is properly authorized in advance.
Job Duties:
• Perform risk assessments, audit reviews, generate findings reports, and make appropriate recommendations for improvement and track outcomes from those activities for DES reporting requirements. Develop and formulate comprehensive reports detailing the findings, areas of non-compliance, required POA&Ms (Plan of Action and Milestones), environmental observations, and incident reports.
• Review, update, and manage security related audit plans, security plans and risk plan documentation for accuracy and consistency, proactively solves problems.
• Evaluate data and formulate comprehensive reports detailing the findings, areas of non-compliance, required action plans, and environmental observations. Generates incident reports and investigates suspicious network activity.
• Preparing audit documentation that supports audit results, drafting and editing audit findings to adhere to the standards and the agency's writing style.
• Research agency and industry IT security practices standards, best practices, laws and regulations, and other applicable resources, ensures compliance with standards
Knowledge, Skills & Abilities (Not incompassing)
• Knowledge of security principles, policies, and procedures, and be able to develop effective security policies.
• Knowledge of Information Security Risk Management.
• Knowledge of laws, regulations, policies, principles, and ethics as they relate to cybersecurity and privacy. (Required: NIST 800-53 R5, IRS Pub1075, IPAA/HITRUST, CJIS and MARS-E)
• Expert knowledge of internal auditing, internal controls, and risk management practices and methods.
• Knowledge of Selection/Approval, Implementation, and Assessment/Audit of Security and Privacy Controls.
• Knowledge of Risk Management Framework (RMF) requirements.
• Knowledge of Authorization/Approval of Information Systems.
•Knowledge in conducting audits or reviews of technical systems.
•Knowledge in comprehensive understanding of internal control environments within the IT function.
•Knowledge in multiple technology domains including aspects of Windows, Unix and/or database administration, software development and networking.
•Knowledge in identifying cybersecurity and privacy issues that stem from connections with internal and external customers and partner organizations.
• Ability to produce high quality work products for both the IT groups and Senior Management.
• Ability to perform excellent interpersonal, written and oral communication skills.
• Ability to assess, manage, and improve security policies and procedures.
• Ability to work collaboratively in teams and across organizations.
• Ability to synthesize feedback and adjust plans accordingly, build strong relationships inside and outside the organization and manage large teams.
• Ability to ensure security practices are followed throughout all phases of the life cycle of every aspect of business and IT processes.
• Ability to develop policy, plans, and strategy in compliance with laws, regulations,
policies, and standards in support of organizational cyber activities.
• Ability to exercise judgment when policies are not well-defined.
• Ability to ensure information security management processes are integrated with strategic and operational planning processes.
• Ability to ensure that senior officials within the organization provide information security for the information and systems that support the operations and assets under their control.
• Ability to understand technology, management, and leadership issues related to organization processes and problem solving.
• Ability to understand the basic concepts and issues related to cyber and its organizational impact.Develop plans and materials to support user adoption, training, and customer service.
• Ability to work collaboratively in teams and across organizations.
•Develop plans and materials to support user adoption, training, and customer service.
•Work directly with users from other divisions, programs, and service units to provide insight and guidance.
•Identify risks and suggest improvements to information systems and processes.
•Support technical project managers to fulfill information analysis requirements with the highest degree of accuracy and quality.
•Develop and maintain key project artifacts.
Required Skills
NIST 800-53R5 (Must have)
Risk Management Framework (RMF)
Windows/Unix experience
Preferred Skills
Project Management experience
CISSP, CCSP, GSTRT, GSNA, or CAP certification
Disclaimer :The above statements are intended to describe the general nature and level of work being performed by people assigned to this classification. They are not to be construed as an exhaustive list of all responsibilities, duties, and skills required of personnel so classified. All personnel may be required to perform duties outside of their normal responsibilities from time to time, as needed.
About Idealforce
Sourced by ZipRecruiter
Idealforce is a reputable company headquartered in Austin, TX, United States, that operates within the dynamic technology industry. As indicated by the information derived from its official website, idealforce.com, the company's specialization lies in providing innovative technology solutions and digital services for various business operations. Founded on the principles of excellence, efficiency, and progressive technology, Idealforce has significantly contributed toward shifting the business landscape to a more digital realm.
Industry
It services
Company size
11 - 50 Employees
Headquarters location
Austin, TX, US
Year founded
2008