1

Security Risk Management Jobs in Washington, DC (NOW HIRING)

Security Risk Management Specialist In depth understanding and hand on experience with NIST 800-53, 800-36 and 800-66 frameworks. Significant experience with full cycle Risk Management processes ...

Collaborates with internal stakeholders including Information Security, IT, Compliance, Finance, Business Continuity, Facilities, and Internal Audit to support risk management initiatives and ensure ...

Collaborates with internal stakeholders including Information Security, IT, Compliance, Finance, Business Continuity, Facilities, and Internal Audit to support risk management initiatives and ensure ...

Active security clearance or ability to obtain one. * Project Management Professional (PMP) certification with demonstrated risk management experience and/or PMI Risk Management Professional (PMI-RMP ...

Showing results 41-60

Security Risk Management information

See Washington, DC salary details

$11

$56

$78

How much do security risk management jobs pay per hour?

As of Sep 10, 2026, the average hourly pay for security risk management in Washington, DC is $56.88, according to ZipRecruiter salary data. Most workers in this role earn between $46.11 and $67.79 per hour, depending on experience, location, and employer.

What is security risk management?

Security Risk Management is the process of identifying, assessing, and mitigating risks to an organization's information, assets, and operations. It involves evaluating potential threats and vulnerabilities, determining their potential impact, and implementing strategies to minimize or control these risks. The goal is to protect the organization from security breaches, data loss, and other threats while ensuring compliance with legal and regulatory requirements. Security Risk Management is essential for maintaining business continuity and safeguarding reputation.

What are the key skills and qualifications needed to thrive in security risk management, and why are they important?

To excel in Security Risk Management, you need a solid understanding of risk assessment frameworks, cybersecurity principles, and compliance standards, often supported by a degree in information security or related fields. Familiarity with risk management tools, security incident response systems, and certifications such as CISSP or CISM is typically required. Strong analytical thinking, communication, and decision-making skills help professionals navigate complex threats and collaborate across departments. These competencies are crucial for effectively identifying, mitigating, and communicating risks to protect organizational assets and ensure regulatory compliance.

What are the typical challenges faced by professionals in security risk management, and how can they be addressed?

Professionals in Security Risk Management often encounter challenges such as rapidly evolving threats, balancing security with business operations, and ensuring organization-wide compliance with regulations. Staying current with the latest risk trends and fostering cross-department collaboration are key strategies for overcoming these obstacles. Additionally, clear communication of risks to non-technical stakeholders and ongoing training are essential for building a proactive security culture and effective risk mitigation.

What is the difference between Security Risk Management vs Security Analyst?

AspectSecurity Risk ManagementSecurity Analyst
CertificationsCRISC, CISSP, CISMCompTIA Security+, CISSP, CEH
Work EnvironmentStrategic, policy-focused, risk assessmentOperational, monitoring, incident response
Employer & Industry UsageOrganizations managing enterprise security risksSecurity teams, cybersecurity firms, IT departments

Security Risk Management focuses on identifying, assessing, and mitigating security risks at an organizational level, often involving policy development and strategic planning. In contrast, Security Analysts primarily monitor security systems, analyze threats, and respond to incidents. Both roles are essential but differ in scope and responsibilities within the cybersecurity field.

What do you need to be a security risk manager?

A security risk manager typically needs a bachelor's degree in security management, information technology, or a related field, along with experience in security or risk assessment. Certifications such as Certified Information Systems Security Professional (CISSP) or Certified Risk and Information Systems Control (CRISC) can enhance qualifications. Strong analytical skills, knowledge of security protocols, and familiarity with risk management tools are also important for the role.

What does security risk management do?

Security risk management involves identifying, assessing, and prioritizing potential security threats to an organization, then implementing measures to mitigate or eliminate those risks. Professionals in this field analyze vulnerabilities, develop security policies, and often use tools like risk assessment frameworks and security audits to protect assets and ensure safety.

What are popular job titles related to Security Risk Management jobs in Washington, DC?

For Security Risk Management jobs in Washington, DC, the most frequently searched job titles are:

What job categories do people searching Security Risk Management jobs in Washington, DC look for?

The top searched job categories for Security Risk Management jobs in Washington, DC are:

Infographic showing various Security Risk Management job openings in Washington, DC as of September 2026, with employment types broken down into 80% Full Time, and 20% Part Time. Highlights an 80% In-person, and 20% Remote job distribution, with an average salary of $118,305 per year, or $56.9 per hour.
Samprasoft
IT Services • 1 - 10 employees

Full-time

Posted 12 days ago


Job description

Security Risk Management Specialist

In depth understanding and hand on experience with NIST 800-53, 800-36 and 800-66 frameworks.

Significant experience with full cycle Risk Management processes, including cATO, Risk Analysis, Risk Register functional application via Service Now IRM/GRC environment.

Significant experience with Service Now ecosystem (concentrate on IRM), including cross-functional deployments, processes creation and integrations.

Nice to have: Privacy (HIPAA) and PCI Compliance experience.