1

Security Risk Manager Jobs in Arizona (NOW HIRING)

Risk and Vulnerability Analyst

Chandler, AZ · On-site

$80K - $128K/yr

Minimum of 2 years of experience in security operations, vulnerability management, or risk analysis. * Hands-on experience with industry vulnerability scanning tools, cloud compliance platforms, ISVM ...

Security Leadership & Risk Management * Develop and execute the overall security strategy for Sloan Park and the Nike Performance Center, ensuring alignment with organizational objectives and ...

New

next page

Showing results 1-20

Security Risk Manager information

See Arizona salary details

$12

$24

$48

How much do security risk manager jobs pay per hour?

As of Aug 10, 2026, the average hourly pay for security risk manager in Arizona is $24.21, according to ZipRecruiter salary data. Most workers in this role earn between $17.02 and $27.31 per hour, depending on experience, location, and employer.

What is the difference between Security Risk Manager vs Security Analyst?

AspectSecurity Risk ManagerSecurity Analyst
CertificationsCRISC, CISSP, CISMCompTIA Security+, CISSP (optional)
Work EnvironmentStrategic, managerial, policy-focusedOperational, monitoring, incident response
Employer & Industry UsageOrganizations with risk management frameworksIT departments, cybersecurity teams

The Security Risk Manager focuses on identifying, assessing, and mitigating security risks at a strategic level, often managing policies and frameworks. In contrast, the Security Analyst handles day-to-day security monitoring, incident response, and vulnerability assessments. Both roles require cybersecurity certifications, but the Risk Manager's role is more strategic, while the Analyst's role is more technical and operational.

What are some common challenges a security risk manager faces when implementing new security policies within an organization?

Security Risk Managers often encounter challenges such as resistance to change from employees, balancing security needs with business operations, and ensuring compliance with industry regulations. Gaining buy-in from various stakeholders requires strong communication and education efforts, as some team members may perceive new protocols as disruptive. Additionally, Security Risk Managers must continuously assess evolving threats while adapting policies to keep the organization protected without hindering productivity.

What are the key skills and qualifications needed to thrive as a security risk manager, and why are they important?

To thrive as a Security Risk Manager, you need a solid understanding of risk assessment, security protocols, and regulatory compliance, typically supported by a degree in cybersecurity, information security, or a related field. Familiarity with risk management frameworks (like ISO 27001 or NIST), security information and event management (SIEM) systems, and certifications such as CISSP or CISM are commonly required. Strong analytical thinking, communication, and leadership skills help you effectively identify vulnerabilities and collaborate with stakeholders. These competencies are crucial for proactively managing threats, ensuring organizational resilience, and maintaining regulatory compliance.
What cities in Arizona are hiring for Security Risk Manager jobs? Cities in Arizona with the most Security Risk Manager job openings:
Infographic showing various Security Risk Manager job openings in Arizona as of August 2026, with employment types broken down into 1% As Needed, 87% Full Time, 11% Part Time, and 1% Contract. Highlights an 93% Physical, 3% Hybrid, and 4% Remote job distribution, with an average salary of $50,356 per year, or $24.2 per hour.

Full-time

Posted 24 days ago


Job description

Sr. IT Risk Manager

The Sr. IT Risk Manager will play a key role in the ongoing technology transformation journey of the Bank. This position will be responsible for overall assurance of the compliance of enterprise platforms with established security, risk and governance requirements of the Bank. Streamlining existing processes and maximizing automation is a major responsibility for this role, and it includes developing and operationalization programmatic guardrails in collaboration with owners and architects of established and emerging enterprise platforms.

In this role you will interact directly with a cross-functional team of multiple stakeholders across the bank including leadership teams of enterprise Cloud, API and DevSecOps platforms as well as overall enterprise platform governance leadership.

Once here you will:

  • Assess existing control frameworks and implementations within enterprise platforms against the security, risk and compliance requirements of the bank
  • Design Controls framework and Controls library for Cloud, API and DevSecOps platforms meeting Industry standards and best practices
  • Provide subject matter expertise to strength controls design and implementation effectiveness
  • Communicate platform control gaps and remediation plan to internal and external stakeholders
  • Implement processes for continuous compliance of enterprise technology platforms against control framework across people, process and technology
  • Partner with technical leadership and architects of enterprise platforms to continuously improve and maximize automation of the controls within the framework
  • Partner with product managers of enterprise platforms to ensure control gap remediation are incorporated into platform delivery roadmaps and prioritized
  • Engage with teams leveraging the platforms to ensure understanding of the risk mitigation provided by controls within the framework and what additionally is required by adopting teams
  • Develop metrics and reporting to provide visibility to leadership and stakeholders on maturity of adoption of the controls framework across enterprise platforms
  • Manage stakeholders and their expectations
  • Effectively communicate ideas and information with peers, management, and customers
  • Serve as a Change Agent and contribute to a culture of continuous compliance
  • Liaison with 1st, 2nd and 3rd Risk LOD
  • Liaison with Modern Platform owners and Application owners to ensure compliance

What you'll bring:

  • 10+ years of overall industry experience, specifically around cybersecurity, IT risk management, IT audit or compliance
  • 4+ years working experience with cloud platforms (AWS) and DevOps
  • Passion for achieving excellence in delivery, solving complex problems, and taking ownership
  • Expertise in IT operations and security control domains (including application security, change management, disaster recovery, data center operations, information security and networking)
  • Knowledge of, and experience with, financial services regulatory frameworks such as PCI, SOX, FFIEC, CIS20, GDPR, GLBA, CCPA
  • At least one of the following security certifications: CISSP, CISM, PCI-QSA certifications, or Certified ISO27001 Lead Implementer
  • Experience with enterprise IT management frameworks (e.g. COBIT, ITIL)
  • Excellent technical, analytical, problem solving, multitasking, and time management skills with consistent attention to detail
  • Ability to effectively learn, communicate and use new processes, concepts, tools, and methodology to support the needs of the business
  • Strong interpersonal skills, with the ability to work across functional lines and at many levels
  • Excellent presentation (written and verbal) communication skills. Ability to effectively communicate technical issues and solutions to all levels of business

Ability to effectively share technical information and train and mentor less experienced or knowledgeable team members