1

Security Risk Manager Jobs in Kentucky (NOW HIRING)

We are currently seeking a Security Architect to shape and advance the firm's enterprise security architecture, lead the implementation of modern security frameworks and risk management initiatives ...

Director, Global Intelligence & Security Risk Salary: $85-$95K Position Summary Tarian is seeking an experienced GSOC Manager to lead its Global Security Operations Center (GSOC) in Louisville ...

Director, Global Intelligence & Security Risk Salary: $85-$95K Position Summary Tarian is seeking an experienced GSOC Manager to lead its Global Security Operations Center (GSOC) in Louisville ...

Director, Global Intelligence & Security Risk Salary: $85-$95K Position Summary Tarian is seeking an experienced GSOC Manager to lead its Global Security Operations Center (GSOC) in Louisville ...

The vCSO will be responsible for developing security strategies, advising leadership on risk management, ensuring compliance with relevant standards, and helping protect the organization's systems ...

Request emergency personnel for high-risk situations * Successfully use the provided software to ... Make regular trips around the property and scan the pre-determined points as directed by management.

Request emergency personnel for high-risk situations * Successfully use the provided software to ... Make regular trips around the property and scan the pre-determined points as directed by management.

Standing up delivery governance and operating rhythms; driving backlog, sprint, and release planning across Integrated Risk Management, Security Operations, Information Technology Operations ...

next page

Showing results 1-20

Security Risk Manager information

See Kentucky salary details

$12

$22

$45

How much do security risk manager jobs pay per hour?

As of Jul 21, 2026, the average hourly pay for security risk manager in Kentucky is $22.56, according to ZipRecruiter salary data. Most workers in this role earn between $15.87 and $25.48 per hour, depending on experience, location, and employer.

How much does a risk manager get paid?

A Security Risk Manager's average salary in the United States ranges from $80,000 to $130,000 annually, depending on experience, certifications, and industry. Senior roles or those with specialized skills can earn higher salaries, often exceeding $150,000. Compensation may also include bonuses and benefits related to security and risk management tools.

What is the difference between Security Risk Manager vs Security Analyst?

AspectSecurity Risk ManagerSecurity Analyst
CertificationsCRISC, CISSP, CISMCompTIA Security+, CISSP (optional)
Work EnvironmentStrategic, managerial, policy-focusedOperational, monitoring, incident response
Employer & Industry UsageOrganizations with risk management frameworksIT departments, cybersecurity teams

The Security Risk Manager focuses on identifying, assessing, and mitigating security risks at a strategic level, often managing policies and frameworks. In contrast, the Security Analyst handles day-to-day security monitoring, incident response, and vulnerability assessments. Both roles require cybersecurity certifications, but the Risk Manager's role is more strategic, while the Analyst's role is more technical and operational.

What are some common challenges Security Risk Managers face when implementing new security policies within an organization?

Security Risk Managers often encounter challenges such as resistance to change from employees, balancing security needs with business operations, and ensuring compliance with industry regulations. Gaining buy-in from various stakeholders requires strong communication and education efforts, as some team members may perceive new protocols as disruptive. Additionally, Security Risk Managers must continuously assess evolving threats while adapting policies to keep the organization protected without hindering productivity.

What are the key skills and qualifications needed to thrive as a Security Risk Manager, and why are they important?

To thrive as a Security Risk Manager, you need a solid understanding of risk assessment, security protocols, and regulatory compliance, typically supported by a degree in cybersecurity, information security, or a related field. Familiarity with risk management frameworks (like ISO 27001 or NIST), security information and event management (SIEM) systems, and certifications such as CISSP or CISM are commonly required. Strong analytical thinking, communication, and leadership skills help you effectively identify vulnerabilities and collaborate with stakeholders. These competencies are crucial for proactively managing threats, ensuring organizational resilience, and maintaining regulatory compliance.

What is the highest salary for a risk manager?

The highest salary for a Security Risk Manager can exceed $150,000 annually, especially for those with extensive experience, advanced certifications like CISSP or CISM, and leadership roles in large organizations. Salaries vary based on industry, location, and the complexity of security environments managed.

What does a security risk manager do?

A security risk manager assesses and identifies potential security threats to an organization’s information systems and physical assets. They develop strategies, implement policies, and oversee security measures to mitigate risks, often using tools like risk assessment frameworks and security audits. Strong analytical skills and relevant certifications such as CISSP or CISM are typically required.

Can I make $200,000 a year in cyber security?

Security Risk Managers with extensive experience, advanced certifications, and specialized skills can potentially earn $200,000 or more annually, especially in high-demand industries or senior roles. Salary levels depend on factors such as location, company size, and individual expertise, with senior positions often offering higher compensation.
What cities in Kentucky are hiring for Security Risk Manager jobs? Cities in Kentucky with the most Security Risk Manager job openings:
Infographic showing various Security Risk Manager job openings in Kentucky as of July 2026, with employment types broken down into 84% Full Time, 14% Part Time, and 2% Contract. Highlights an 93% Physical, 3% Hybrid, and 4% Remote job distribution, with an average salary of $46,932 per year, or $22.6 per hour.

Security Architect

FBT Gibbons LLP

Lexington, KY • On-site

Full-time

Medical, Dental, Vision, Life, Retirement, PTO

Posted 20 days ago


Job description

FBT Gibbons LLP is a national law firm focused on serving companies operating and investing in the middle market. With nearly 1,500 employees across 26 offices, we support clients ranging from large multinationals to mid-sized businesses and growth-oriented startups across the United States. Our teams collaborate across departments and geographies to deliver excellent service to our clients, colleagues, and the communities we serve.

At FBT Gibbons, diversity enriches our vibrant culture and empowers our teams to achieve more together. We welcome talented professionals who bring valuable skills, a collaborative mindset, and a shared commitment to helping our firm and clients thrive. Here, you’ll make meaningful contributions, collaborate with exceptional colleagues, and build a career that grows with your skills and ambitions.

We are currently seeking a Security Architect to shape and advance the firm's enterprise security architecture, lead the implementation of modern security frameworks and risk management initiatives, and partner across the organization to protect systems, data, and infrastructure while fostering a strong culture of security and compliance.

The ideal candidate is a collaborative and forward-thinking cybersecurity professional with strong technical expertise, exceptional problem-solving skills, and a passion for protecting systems, data, and emerging technologies.

This position can be based in Cincinnati, OH; Columbus, OH; Indianapolis, IN; Lexington, KY; or Louisville, KY.

Key Responsibilities:

  • Design, implement and maintain secure authentication and authorization architecture across firm systems and applications.
  • Align cloud, network and technology infrastructure with zero trust security principles and industry best practices.
  • Provide security guidance and best practices for cloud infrastructure, existing technology platforms, and new IT solutions.
  • Manage the preparation, execution, and remediation of security assessments, risk reviews, and compliance activities.
  • Develop, track and report on security metrics, key performance indicators (KPIs) and overall program effectiveness.
  • Support the Security and Compliance Specialist with client-required compliance reviews by preparing and validating approved security artifacts and documentation.
  • Assist with vendor security assessments by evaluating compliance gaps, developing remediation plans, and supporting implementation of required security controls.
  • Review and monitor firm systems to ensure compliance with established security baselines, policies and standards.
  • Manage, optimize and evaluate existing security tools and technologies while recommending and implementing solutions to strengthen the firm’s security posture.
  • Develop, maintain, and monitor standardized security processes to ensure consistent application of controls across the firm.
  • Ensure security requirements are incorporated into end-user access management, equipment provisioning, and technology lifecycle processes.
  • Execute security, privacy, and risk-related audit activities while ensuring appropriate documentation and follow-up.
  • Conduct security reviews of proposed software, vendors, applications, and technology projects to identify risks and recommend mitigation strategies.
  • Monitor and enhance data protection practices, including network storage security, encryption standards, removable media controls, and remote access safeguards.
  • Troubleshoot and resolve network security, access, and system integrity issues.
  • Monitor emerging cybersecurity threats and vulnerabilities using industry resources, including government and law enforcement advisories, and communicate relevant risks to stakeholders.
  • Partner with cross-functional teams to identify security improvements, operational efficiencies, and opportunities to strengthen technology controls.
  • Recommend and lead security enhancements based on industry best practices related to threat management, vulnerability prevention, compliance, and monitoring.
  • Conduct security incident investigations, document findings, coordinate remediation activities, and implement preventative measures.
  • Analyze security incidents to identify root causes and provide recommendations to management to reduce the likelihood of future occurrences.

Job Requirements:

  • Bachelor’s degree in information technology, cybersecurity, computer science, or a related discipline required.
  • Minimum of five years of progressive experience in information security, cybersecurity, network administration, or a related field; experience within the legal industry preferred.
  • Working knowledge of Microsoft Conditional Access, identity and access management (IAM), and security controls within Microsoft environments.
  • Strong understanding of network architecture, security principles, and troubleshooting methodologies.
  • Experience designing, implementing, and managing technology and security projects involving internal teams and external vendors or contractors.
  • Demonstrated ability to manage confidential and sensitive information with professionalism, discretion, and sound judgment.
  • Strong interpersonal skills with the ability to build collaborative relationships across teams and with business stakeholders.
  • Proven ability to establish goals, prioritize competing tasks, and coordinate efforts across multiple teams and stakeholders.
  • High attention to detail with strong planning, project management and organizational skills.
  • Passion for emerging technologies and a commitment to continuous learning and professional development within the cybersecurity field.
  • Ability to independently research, evaluate, and implement new technologies while serving as a subject matter expert in assigned areas of responsibility.
  • Excellent written and verbal communication skills, with the ability to clearly explain technical concepts, security risks, and solutions to both technical and non-technical audiences.
  • Strong documentation skills with the ability to create clear, accurate, and comprehensive technical documentation, processes, and procedures.
  • Ability to support ongoing security monitoring and assist with the investigation, response, and resolution of critical security or technology issues outside of standard business hours.

FBT Gibbons is fully committed to equality of opportunity in all aspects of employment. It is the policy of FBT Gibbons to provide equal employment opportunity to all employees and applicants without regard to race, color, religion, national or ethnic origin, military status, veteran status, age, gender, gender identity or expression, sexual orientation, genetic information, physical or mental disability or any other protected status.

FBT Gibbons offers a competitive salary and a comprehensive benefits package, including health care coverage (medical, dental, and vision), life insurance, short- and long-term disability, paid parental leave, employee wellbeing and EAP programs, paid time off, and a 401(k) retirement plan with employer matching and profit-sharing. Benefit offerings and eligibility vary by location and are subject to applicable plan terms and legal requirements.

In compliance with federal law, all persons hired will be required to verify identity and eligibility to work in the United States and to complete the required employment eligibility verification form upon hire.

Applicants must be authorized to work in the United States without current or future employer sponsorship. FBT Gibbons does not provide visa sponsorship for this position.



#LI-remote