1

Security Risk Manager Jobs in Kentucky (NOW HIRING)

$41.75 - $55.75/hr

Quote from Hiring Manager: The IT Governance/Risk/Compliance Analyst position offers a dynamic ... Ensure data security and privacy compliance by providing guidance on appropriate access controls ...

Security Architect

Louisville, KY · On-site

$62.25 - $80.50/hr

We are currently seeking a Security Architect to shape and advance the firm's enterprise security architecture, lead the implementation of modern security frameworks and risk management initiatives ...

Security Architect

Lexington, KY · On-site

$56.75 - $73.50/hr

We are currently seeking a Security Architect to shape and advance the firm's enterprise security architecture, lead the implementation of modern security frameworks and risk management initiatives ...

KY · On-site

You will support the planning and execution of SA core competencies, manage case documentation and intelligence reporting, and monitor security, risk, and operational controls to protect personnel ...

Showing results 21-40

Security Risk Manager information

See Kentucky salary details

$12

$22

$45

How much do security risk manager jobs pay per hour?

As of Aug 10, 2026, the average hourly pay for security risk manager in Kentucky is $22.56, according to ZipRecruiter salary data. Most workers in this role earn between $15.87 and $25.48 per hour, depending on experience, location, and employer.

What is the difference between Security Risk Manager vs Security Analyst?

AspectSecurity Risk ManagerSecurity Analyst
CertificationsCRISC, CISSP, CISMCompTIA Security+, CISSP (optional)
Work EnvironmentStrategic, managerial, policy-focusedOperational, monitoring, incident response
Employer & Industry UsageOrganizations with risk management frameworksIT departments, cybersecurity teams

The Security Risk Manager focuses on identifying, assessing, and mitigating security risks at a strategic level, often managing policies and frameworks. In contrast, the Security Analyst handles day-to-day security monitoring, incident response, and vulnerability assessments. Both roles require cybersecurity certifications, but the Risk Manager's role is more strategic, while the Analyst's role is more technical and operational.

What are some common challenges a security risk manager faces when implementing new security policies within an organization?

Security Risk Managers often encounter challenges such as resistance to change from employees, balancing security needs with business operations, and ensuring compliance with industry regulations. Gaining buy-in from various stakeholders requires strong communication and education efforts, as some team members may perceive new protocols as disruptive. Additionally, Security Risk Managers must continuously assess evolving threats while adapting policies to keep the organization protected without hindering productivity.

What are the key skills and qualifications needed to thrive as a security risk manager, and why are they important?

To thrive as a Security Risk Manager, you need a solid understanding of risk assessment, security protocols, and regulatory compliance, typically supported by a degree in cybersecurity, information security, or a related field. Familiarity with risk management frameworks (like ISO 27001 or NIST), security information and event management (SIEM) systems, and certifications such as CISSP or CISM are commonly required. Strong analytical thinking, communication, and leadership skills help you effectively identify vulnerabilities and collaborate with stakeholders. These competencies are crucial for proactively managing threats, ensuring organizational resilience, and maintaining regulatory compliance.
What cities in Kentucky are hiring for Security Risk Manager jobs? Cities in Kentucky with the most Security Risk Manager job openings:
Infographic showing various Security Risk Manager job openings in Kentucky as of August 2026, with employment types broken down into 1% As Needed, 83% Full Time, 15% Part Time, and 1% Contract. Highlights an 93% Physical, 2% Hybrid, and 5% Remote job distribution, with an average salary of $46,932 per year, or $22.6 per hour.

IT Security Specialist (Pre-Incident Consulting & Incident Response Lead)

Mirazon

Louisville, KY • On-site

Full-time

Medical, Dental, Vision, Life, Retirement, PTO

Re-posted 23 days ago


Job description

Mirazon is a scaling, people-centered IT company that believes strong security starts long before an incident occurs, and that calm, capable leadership matters most when it does. We're looking for aSecurity Specialistwho thrives at the intersection of strategy and execution: someone who enjoys strengthening security postures proactively and who can step confidently into high-pressure situations to guide clients through complex cybersecurity events.


Mission of the Position

This role is designed for an experienced individual contributor with deep technical expertise, sound judgment, and executive presence. You value preparation, documentation, and disciplined processes, and you're equally comfortable designing preventative controls as you are leading incident response efforts in real time. You bring clarity to chaos, translate technical risk into business impact, and act as a trusted advisor to clients when the stakes are highest.


Key Criteria/Requirements

  • 5+ years in cybersecurity or infrastructure security roles
  • 3+ years leading security incidents
  • Strong experience with:
    • Firewalls (FortiGate, Cisco, SonicWall, Palo Alto, etc.)
    • Endpoint detection and response (EDR/XDR)
    • Microsoft 365 security stack
    • Identity and access management
    • Backup and disaster recovery systems
  • Experience with ransomware containment and recovery
  • Deep understanding of networking and Active Directory environments
  • Strong written and verbal communication skills
  • Ability to lead under pressure


Preferred Certifications

  • CISSP
  • CISM
  • CEH
  • GIAC (GCIA, GCIH, etc.)
  • Security+
  • Microsoft Security certifications
  • Vendor firewall certifications


Key Accountabilities

1. Pre-Incident Security Consulting (Strategic & Preventative)

  • Conduct comprehensive security risk assessments and gap analyses
  • Lead cybersecurity maturity assessments aligned to NIST, CIS, or industry frameworks
  • Perform vulnerability assessments and coordinate remediation planning
  • Design and review:
    • Network security architecture
    • Firewall and segmentation strategies
    • Endpoint security strategies
    • MFA and identity security implementation
  • Develop incident response plans and business continuity playbooks
  • Conduct tabletop exercises with client executive teams
  • Provide executive-level reporting with risk prioritization and budget guidance
  • Assist sales/engineering with scoping security engagements and SOW development


2. Incident Response Leadership

  • Serve as Incident Response Lead during cybersecurity events
  • Direct containment, eradication, and recovery efforts
  • Coordinate with:
    • Internal engineering teams
    • Client leadership
    • Insurance carriers
    • Legal counsel
    • Forensics vendors
  • Perform initial triage and determine scope of compromise
  • Oversee forensic evidence preservation
  • Guide ransomware response and recovery strategy
  • Lead root-cause analysis and post-incident reporting
  • Develop corrective action plans


3. Client & Executive Communication

  • Act as trusted advisor to C-suite and ownership groups
  • Translate technical findings into business risk language
  • Present findings and remediation plans in board-level settings
  • Provide calm, decisive leadership during crisis situations
  • Maintain strict confidentiality and professionalism


4. Documentation & Process Development

  • Maintain standardized security assessment templates
  • Develop and refine internal IR procedures
  • Create security standards and best practices
  • Ensure all engagements are properly documented in PSA systems
  • Contribute to continuous improvement of security offerings


Insurance Benefits

Eligibility begins the first day of full-time employment (date of hire).

  • Life Insurance
  • Short-term Disability
  • Long-term Disability
  • Cafeteria Plan - Premium, Medical, & Child Care Reimbursement
  • Health Insurance
  • Dental Plan
  • Vision Plan

Other Benefits

  • 401K Matching
  • Referral Bonuses
  • Tuition Reimbursement
  • Performance Incentives
  • Time Off- benefitsaccrueon a pro-rated basis each pay period over a 12-month period with the following maximums:
    • Vacation Time -10 daysper calendar year
    • Sick Leave- 5 days per calendar year
  • Paid Company Holidays (7)
  • Paid Floating Holidays (2)
  • Volunteer 1
  • Cell Phone & Internet Reimbursement