1

Security Risk Manager Jobs in Massachusetts (NOW HIRING)

Preferred Experience leading enterprise-wide Crisis Management, GSOC, or intelligence operations programs Knowledge of Enterprise Security Risk Management principles Experience in business continuity ...

Preferred • Experience leading enterprise-wide Crisis Management, GSOC, or intelligence operations programs • Knowledge of Enterprise Security Risk Management principles • Experience in ...

Lead Risk Manager, Payment Fraud Toronto Onsite | Full-Time | Hybrid after onboarding | Reports to ... security. Why This Role This is not a maintenance seat at a stagnant company. It is a builder seat ...

next page

Showing results 1-20

Security Risk Manager information

See Massachusetts salary details

$15

$28

$57

How much do security risk manager jobs pay per hour?

As of Aug 10, 2026, the average hourly pay for security risk manager in Massachusetts is $28.37, according to ZipRecruiter salary data. Most workers in this role earn between $19.95 and $32.02 per hour, depending on experience, location, and employer.

What is the difference between Security Risk Manager vs Security Analyst?

AspectSecurity Risk ManagerSecurity Analyst
CertificationsCRISC, CISSP, CISMCompTIA Security+, CISSP (optional)
Work EnvironmentStrategic, managerial, policy-focusedOperational, monitoring, incident response
Employer & Industry UsageOrganizations with risk management frameworksIT departments, cybersecurity teams

The Security Risk Manager focuses on identifying, assessing, and mitigating security risks at a strategic level, often managing policies and frameworks. In contrast, the Security Analyst handles day-to-day security monitoring, incident response, and vulnerability assessments. Both roles require cybersecurity certifications, but the Risk Manager's role is more strategic, while the Analyst's role is more technical and operational.

What are some common challenges a security risk manager faces when implementing new security policies within an organization?

Security Risk Managers often encounter challenges such as resistance to change from employees, balancing security needs with business operations, and ensuring compliance with industry regulations. Gaining buy-in from various stakeholders requires strong communication and education efforts, as some team members may perceive new protocols as disruptive. Additionally, Security Risk Managers must continuously assess evolving threats while adapting policies to keep the organization protected without hindering productivity.

What are the key skills and qualifications needed to thrive as a security risk manager, and why are they important?

To thrive as a Security Risk Manager, you need a solid understanding of risk assessment, security protocols, and regulatory compliance, typically supported by a degree in cybersecurity, information security, or a related field. Familiarity with risk management frameworks (like ISO 27001 or NIST), security information and event management (SIEM) systems, and certifications such as CISSP or CISM are commonly required. Strong analytical thinking, communication, and leadership skills help you effectively identify vulnerabilities and collaborate with stakeholders. These competencies are crucial for proactively managing threats, ensuring organizational resilience, and maintaining regulatory compliance.
What cities in Massachusetts are hiring for Security Risk Manager jobs? Cities in Massachusetts with the most Security Risk Manager job openings:
Infographic showing various Security Risk Manager job openings in Massachusetts as of August 2026, with employment types broken down into 1% As Needed, 87% Full Time, 11% Part Time, and 1% Contract. Highlights an 93% Physical, 3% Hybrid, and 4% Remote job distribution, with an average salary of $59,015 per year, or $28.4 per hour.

Information Security Risk and Compliance Analyst

CarGurus

Boston, MA • On-site

Full-time

Posted 6 days ago


Job description

Role overview

The information security risk and compliance analyst supports the organization's governance, risk, and compliance program by managing security risk, ensuring regulatory compliance and partnering across the business to strengthen the company's security posture. This role is responsible for third party risk management, customer security assurance activities, cyber risk management, SOX IT General Controls and security governance initiatives. The analyst works closely with security, engineering, legal, internal audit, privacy, finance, procurement and business stakeholders to build scalable processes, improve operational maturity and reduce organizational risk. 

What you'll do

  • Third Party Risk Management
  • Customer Security Assurance
  • Cyber Risk Management
  • SOX Compliance
  • Governance and Compliance

What you'll bring

  • Experience with GRC platforms such as Auditboard, SAFE, Loopio or similar tools.
  • Professional certifications such as CISSP, CISA, CRISC, Security+ or CISM.
  • Experience supporting cloud environments.
  • Familiarity with AI governance, automation or security workflow optimization.

Successful candidates will

  • Build trusted partnerships with technical and business teams.
  • Drive scalable governance and risk management processes.
  • Balance business enablement with effective risk management.
  • Improve audit readiness and compliance maturity.
  • Communicate complex security concepts clearly to both technical and non-technical stakeholders.
  • Continuously identify opportunities to improve security governance through process optimization and automation.