1

Security Risk Management Jobs in Raleigh, NC (NOW HIRING)

Establish Information Security and Risk Management programs. Some of the responsibilities include developing, implementing and maintaining DES information security enterprise standards, processes ...

As the Security Officer for Well, you will collaborate with executive management and key operational teams to determine acceptable levels of risk for the organization and you will be responsible for ...

Technology Risk Senior Specialist

Raleigh, NC · On-site +1

$95K/yr

... security and service availability. 4. Strengthen and sustain proactive risk culture through conducting effective risk focused management and partnership routines with technology teams and internal ...

The Director of Security will have direct influence on product architecture, infrastructure design, and company-wide risk management. * You've built and evolved security programs and can point to ...

... Risk Management & Compliance Business Continuity & Disaster Recovery Security & Privacy Specialties Contract Staffing (Staff Augmentation) Permanent Placement (Staff Augmentation) ICAP (Contractor ...

Risk Management: Must be able to Identify gaps through risk management, and assist in developing mitigation strategies. Required 7 Years * Experience updating privacy and security policies based on ...

Serve as the senior subject matter expert for ERP security and Oracle Risk Management Cloud capabilities * Direct the design, implementation, and maintenance of ERP roles, privileges, and security ...

... develop security risk management plans. Qualifications Required Qualifications: The requirements listed below are representative of the knowledge, skill and/or ability required. Reasonable ...

... develop security risk management plans. Qualifications Required Qualifications: The requirements listed below are representative of the knowledge, skill and/or ability required. Reasonable ...

next page

Showing results 1-20

Security Risk Management information

See Raleigh, NC salary details

$10

$48

$67

How much do security risk management jobs pay per hour?

As of Jun 19, 2026, the average hourly pay for security risk management in Raleigh, NC is $49.00, according to ZipRecruiter salary data. Most workers in this role earn between $39.71 and $58.41 per hour, depending on experience, location, and employer.

What are the typical challenges faced by professionals in Security Risk Management, and how can they be addressed?

Professionals in Security Risk Management often encounter challenges such as rapidly evolving threats, balancing security with business operations, and ensuring organization-wide compliance with regulations. Staying current with the latest risk trends and fostering cross-department collaboration are key strategies for overcoming these obstacles. Additionally, clear communication of risks to non-technical stakeholders and ongoing training are essential for building a proactive security culture and effective risk mitigation.

Can I make $200,000 a year in cyber security?

Security Risk Management professionals can potentially earn $200,000 or more annually, especially with extensive experience, advanced certifications like CISSP or CISM, and roles in high-demand industries or senior leadership positions. Salary levels vary based on location, company size, and individual expertise, but high-level cybersecurity roles often offer compensation in this range.

Can you make $500,000 a year in cyber security?

Security Risk Management professionals can potentially earn $500,000 or more annually, especially at senior levels, in leadership roles, or within large organizations. Achieving this income typically requires extensive experience, advanced certifications like CISSP or CISM, and expertise in high-demand areas such as threat intelligence or security architecture.

Is security risk management a good career?

Security risk management is a viable career that involves identifying, assessing, and mitigating security threats to organizations. It often requires certifications such as CISSP or CISM and skills in risk analysis, security policies, and incident response. The field offers opportunities across various industries with increasing demand for cybersecurity expertise.

What is Security Risk Management?

Security Risk Management is the process of identifying, assessing, and mitigating risks to an organization's information, assets, and operations. It involves evaluating potential threats and vulnerabilities, determining their potential impact, and implementing strategies to minimize or control these risks. The goal is to protect the organization from security breaches, data loss, and other threats while ensuring compliance with legal and regulatory requirements. Security Risk Management is essential for maintaining business continuity and safeguarding reputation.

What are the key skills and qualifications needed to thrive in Security Risk Management, and why are they important?

To excel in Security Risk Management, you need a solid understanding of risk assessment frameworks, cybersecurity principles, and compliance standards, often supported by a degree in information security or related fields. Familiarity with risk management tools, security incident response systems, and certifications such as CISSP or CISM is typically required. Strong analytical thinking, communication, and decision-making skills help professionals navigate complex threats and collaborate across departments. These competencies are crucial for effectively identifying, mitigating, and communicating risks to protect organizational assets and ensure regulatory compliance.

What is the difference between Security Risk Management vs Security Analyst?

AspectSecurity Risk ManagementSecurity Analyst
CertificationsCRISC, CISSP, CISMCompTIA Security+, CISSP, CEH
Work EnvironmentStrategic, policy-focused, risk assessmentOperational, monitoring, incident response
Employer & Industry UsageOrganizations managing enterprise security risksSecurity teams, cybersecurity firms, IT departments

Security Risk Management focuses on identifying, assessing, and mitigating security risks at an organizational level, often involving policy development and strategic planning. In contrast, Security Analysts primarily monitor security systems, analyze threats, and respond to incidents. Both roles are essential but differ in scope and responsibilities within the cybersecurity field.

Is SOC 1 entry level?

SOC 1 (Service Organization Control 1) reports are audit reports used to evaluate internal controls at a service organization and are not job roles. In the context of security risk management, entry-level positions typically require foundational knowledge of security principles, certifications like CompTIA Security+ or CISSP, and experience with risk assessment tools, but SOC 1 itself is not an entry-level role.
What are popular job titles related to Security Risk Management jobs in Raleigh, NC? For Security Risk Management jobs in Raleigh, NC, the most frequently searched job titles are:
What job categories do people searching Security Risk Management jobs in Raleigh, NC look for? The top searched job categories for Security Risk Management jobs in Raleigh, NC are:
Infographic showing various Security Risk Management job openings in Raleigh, NC as of June 2026, with employment types broken down into 4% As Needed, 88% Full Time, and 8% Part Time. Highlights an 92% Physical, 2% Hybrid, and 6% Remote job distribution, with an average salary of $101,915 per year, or $49 per hour.
GRC e-Discovery and Risk Analyst

GRC e-Discovery and Risk Analyst

DPR Construction

Raleigh, NC • On-site

Full-time

Posted 19 days ago


DPR Construction rating

7.8

Company rating: 7.8 out of 10

Based on 35 frontline employees who took The Breakroom Quiz

25th of 78 rated construction


Job description

Job DescriptionGRC e-Discovery SpecialistPosition Summary

The company is seeking a GRC e-Discovery Specialist to support governance, risk, and compliance (GRC) operations by identifying, collecting, preserving, reviewing, and producing electronically stored information (ESI)for legal or regulatory matters using Microsoft Purview.

The key responsibilities of this role will be the day-to-day execution of governance and compliance workflows related to eDiscovery, data retention, and privacy. The role will ensure the company's audit readiness and eDiscovery risk tracking. In addition to these responsibilities, the role may be called upon to perform other GRC-related activities in the direction of the Manager, GRC. This position is well-suited for an early-to-mid-career professional (3+ years of experience) looking to grow into broader governance and compliance responsibilities.

Key Responsibilities
  • Support and administer, from a GRC perspective, Microsoft Purview (Compliance Portal), including eDiscovery, legal holds, retention policies, and content search.
  • Manage litigation holds and the eDiscovery lifecycle for legal and regulatory matters.
  • Partner with Legal, Risk, Privacy, enterprise Data Management and IT teams on discovery, audit, regulatory inquiries, compliance, and evidence collection
  • Maintain and audit data retention schedules across Microsoft 365 and other collaboration platforms.
  • Support data privacy operations, including DSARs under GDPR, CCPA, and related regulations.
  • Support documentation, SOPs, and GRC governance workflows related to eDiscovery.
  • Identify opportunities to improve or automate GRC processes related to eDiscovery.
Skills and CompetenciesTechnical Skills
  • Hands-on experience supporting or administeringMicrosoft Purview (Compliance Portal)
  • Working knowledge of the eDiscovery lifecycle, including litigation holds and ESI handling.
  • Working knowledge of GRC best practices and various regulatory and best practice frameworks to include GDPR, TRAIGA and NIST CSF, NIST Privacy Framework and NIST Risk Management Framework (RMF)
  • Experience with data retention, records management, and defensible deletion
  • Familiarity with Microsoft 365(SharePoint, Teams), Box, and other collaboration platforms
  • Experience supporting control and risk assessments of data controls to include risk evaluation of Third Parties as it relates to their support of e-Discovery.
  • Experience supporting audits, legal requests, risk assessments, or regulatory inquiries.
  • Ability to document processes, procedures, and workflows clearly and accurately.

Core Competencies

  • Strong analytical and problem-solving skills with attention to detail
  • Ability to explain technical processes to non-technical stakeholders.
  • Effective collaboration across Legal, Risk, Compliance, enterprise Data Management, IT, and business teams
  • High integrity and commitment to confidentiality
  • Adaptability in evolving regulatory and technological landscapes.
  • Initiative and ownership in improving processes and policies.
QualificationsRequired
  • 3+ yearsof experience in eDiscovery, information governance, compliance operations, privacy operations, or a related field
  • Hands-on experience supporting or administering Microsoft Purview
  • Familiarity with regulatory and best practice frameworks GDPR, TRAIGA and NIST CSF, NIST Privacy Framework and NIST Risk Management Framework (RMF)
  • Familiarity with GRC best practices (Controls Management, Risk Management, Policy Management, Third-Party Risk Management)
  • Familiarity with the eDiscovery lifecycle and litigation holds.
  • Experience with Microsoft 365 (SharePoint, Teams), Box, and similar platforms
  • Strong documentation, organization, and cross-functional communication skills
  • Ability to work independently while continuing to develop new skills.
Preferred
  • Certified E-Discovery Specialist (CEDS) or similar certification
  • Exposure to governance, risk, or compliance programs and CRISC certification
  • Experience supporting audits or regulatory requirements.
Reporting Line

Reports to the Governance, Risk, and Compliance Manager and partners with Legal, Risk, Integration Managers, and Infrastructure teams.

DPR Construction is a forward-thinking, self-performing general contractor specializing in technically complex and sustainable projects for the advanced technology, life sciences, healthcare, higher education and commercial markets. Founded in 1990, DPR is a great story of entrepreneurial success as a private, employee-owned company that has grown into a multi-billion-dollar family of companies with offices around the world.

Working at DPR, you'll have the chance to try new things, explore unique paths and shape your future. Here, we build opportunity together-by harnessing our talents, enabling curiosity and pursuing our collective ambition to make the best ideas happen. We are proud to be recognized as a great place to work by our talented teammates and leading news organizations like U.S. News and World Report, Forbes, Fast Company and Newsweek.

Explore our open opportunities atwww.dpr.com/careers.


What DPR Construction employees say

Pay

Benefits

Hours and flexibility

Workplace

Get the full story on Breakroom