Source Job

US

  • Lead enterprise and division risk assessments to identify strategic, operational, compliance, technology, and cybersecurity risks.
  • Maintain the enterprise risk register, develop KRIs/KPIs, and produce executive-level risk reports and dashboards.
  • Evaluate policies and controls to address weaknesses, drive corrective actions, and improve ERM processes.

Cyber Security Risk Management CISSP

20 jobs similar to Cyber & Risk Management Lead

Jobs ranked by similarity.

US

  • Develop and execute enterprise cybersecurity strategy and multi-year security roadmap.
  • Lead cybersecurity risk management, security operations, and incident response programs.
  • Ensure compliance with HIPAA, HITRUST, NIST, and other regulatory frameworks.

Mom's Meals provides home-delivered meal solutions for individuals with health needs. The company values its team members and offers a generous benefits package.

US

  • Design and implement an end-to-end Enterprise Cybersecurity Risk Register.
  • Lead governance lifecycle, establish risk ownership, and drive cross-functional stakeholder alignment.
  • Deliver audit-ready documentation and ensure post-contract sustainability through structured knowledge transfer.

ASSYST is a technology consulting firm that provides staffing and solutions. The company seeks to place experienced professionals in client engagements, though size and culture are not specified.

$154,000–$207,000/yr
US 3w PTO

  • Lead security risk assessments across engineering, IT, operations, and business functions.
  • Maintain a risk register and provide leadership with a clear view of the company's risk posture.
  • Partner with teams to drive remediation of risks and map controls to compliance frameworks like NIST 800-171.

Muon Space is an end-to-end Space Systems Provider that designs, builds, and operates LEO satellite constellations delivering mission-critical data. Founded in 2021, the company operates a state-of-the-art facility in Silicon Valley and is committed to fostering a diverse and dynamic workforce.

  • Identify, capture, and maintain project risks, issues, and opportunities in the risk register.
  • Facilitate risk workshops with project teams, contractors, and SMEs to gather inputs and validate assumptions.
  • Perform qualitative assessments and contribute data for quantitative cost/schedule risk analysis.

Accenture Infrastructure & Capital Projects helps develop and deliver factories, grids, transit systems, and public infrastructure, blending real-world experience with digital innovation and AI. They are part of Accenture, a global professional services company with a large and diverse workforce, known for its inclusive culture and commitment to innovation.

$200,000–$245,000/yr
US

  • Own the overall security posture, including policy, standards, and risk framework.
  • Manage ISO 27001, SOC 2, FedRAMP, and CMMC compliance programs.
  • Lead incident response, vulnerability management, and customer security assurance.

RapidFort is a cybersecurity company that helps organizations secure and optimize their software supply chain and containerized environments. As a fast-growing startup, we foster a culture of ownership and direct communication, where every team member contributes to our mission of securing cloud-native applications for regulated industries.

$77,000–$107,000/yr
US

  • Conduct cybersecurity risk assessments and compliance reviews to identify gaps and remediation needs.
  • Support internal and external audits against Federal requirements and organizational policies.
  • Develop and maintain cybersecurity policies, procedures, and compliance documentation.

PingWind is a Service-Disabled Veteran-Owned Small Business that delivers cybersecurity, IT infrastructure, supply chain management, and professional services to the federal government. As a small business with offices in Northern Virginia and Huntsville, AL, PingWind fosters a dynamic team environment focused on supporting large government clients.

$208,500–$235,750/yr
US

  • Lead enterprise-scale security operations, including 24/7 SOC oversight, real-time detection, and automation.
  • Direct incident response, forensics, and risk-reduction programs across cloud and hybrid infrastructure.
  • Architect SIEM, SOAR, and AI/ML platforms; build and mentor high-performing cybersecurity teams.

U.S. FinTech operates the world's largest mortgage securitization platform, supporting the Uniform Mortgage-Backed Security of Fannie Mae and Freddie Mac. The company fosters a culture of innovation and flexibility, serving 70% of mortgage-backed securities in the market.

US

  • Monitor, investigate, and respond to cybersecurity alerts, incidents, vulnerabilities, and threats across enterprise, endpoint, cloud, network, and application environments.
  • Support compliance with NIST SP 800-171, CMMC, and applicable federal/DoD cybersecurity requirements, including protection of CUI and FCI.
  • Conduct cybersecurity risk assessments, vulnerability assessments, and security reviews; prioritize findings and coordinate remediation efforts.

Tlingit Haida Tribal Business Corporation (THTBC) delivers mission-critical services to federal clients globally, including logistics, IT, cybersecurity, and facilities operations. For over 35 years, the company has been committed to generating economic opportunity for the Tlingit & Haida Tribes of Alaska, fostering a purpose-driven culture.

$151,000–$189,000/yr
US Unlimited PTO

  • Lead and mature enterprise and technology risk management, including AI governance for machine learning and generative AI.
  • Translate regulatory and control expectations into actionable policies, risk frameworks, and processes.
  • Collaborate with technology, security, privacy, compliance, and business teams to strengthen the control environment.

The company is a growing technology organization operating in the financial-services sector. It fosters a diverse and inclusive workplace and supports professional development and continuous learning.

$160,000–$180,000/yr
US

  • Lead and mature cybersecurity compliance programs including SOC 2 Type 2 and ISO 27001 readiness.
  • Drive cloud and application security across AWS and Azure, integrating secure SDLC and DevSecOps practices.
  • Manage corporate IT operations, identity and access, and build the cybersecurity team as the organization grows.

Genea is a leader in property technology, providing cloud-based physical security, submeter billing, and on-demand HVAC solutions to over 1 million users across 39 countries. It has been recognized as a Top Workplace from 2021-2025 with a 4.3 Glassdoor rating, fostering a team-oriented and transparent culture.

$149,469–$184,000/yr
US

  • Develop and implement cybersecurity strategies and architectures aligned with organizational objectives and regulatory requirements.
  • Lead RMF activities for large distributed systems to obtain and maintain Authority to Operate.
  • Collaborate with government stakeholders and cross-functional teams to integrate security across systems and networks.

The company specializes in cybersecurity architecture and Zero Trust solutions for U.S. Department of Defense clients. It offers a fully remote work environment with a focus on work-life balance and professional development opportunities.

US

  • Lead the design and execution of cybersecurity architecture and engineering to ensure compliance with internal and external policies.
  • Partner with business leaders to identify risks, develop solutions, and embed security into enterprise strategy.
  • Oversee deployment, integration, and optimization of security tools while driving cloud-native security improvements.

U.S. Financial Technology builds and operates the world's largest mortgage securitization platform, supporting the Uniform Mortgage-Backed Security of Fannie Mae and Freddie Mac. It handles 70% of mortgage-backed securities and fosters a collaborative, remote-first culture.

US Unlimited PTO

  • Lead day-to-day Cyber Fusion Center operations including security analysis, incident response, and escalations.
  • Drive operational excellence, SLA attainment, and continuous improvement initiatives for service quality.
  • Serve as a visible customer-facing leader, building confidence and representing Avertium's capabilities.

Avertium is a cyber fusion and MXDR leader delivering comprehensive security and compliance services to mid-market and enterprise customers. The company employs a workforce focused on innovation and growth, fostering a culture of continuous improvement and customer trust.

US 3w PTO

  • Serve as the assigned security officer (vCISO) for a portfolio of client engagements, leading recurring meetings and providing strategic security guidance.
  • Lead CMMC Level 1 and 2 readiness engagements, including NIST SP 800-171 assessments, SSP development, and POA&M management.
  • Deliver compliance engagements across frameworks such as HIPAA, SOC 2, PCI DSS, ISO 27001, and more, while conducting risk assessments and coordinating remediation.

Intelligent Technical Solutions is a managed IT and cybersecurity services provider delivering compliance and security practice management to client organizations. The company employs a team of security professionals and fosters a culture of continuous improvement and knowledge sharing.

US

  • Lead and oversee cybersecurity assessment and authorization activities for a major federal program.
  • Serve as the primary interface with government leadership and stakeholders.
  • Manage task order execution, staffing, schedules, and contractual performance.

This company supports federal cybersecurity programs and manages contracts for government clients. It offers a remote work environment and emphasizes employee empowerment and accountability.

Global

  • Develop and improve cybersecurity governance frameworks, strategies, and roadmaps.
  • Manage policy approvals, exceptions, and maintain documentation for audits.
  • Provide governance reporting and insights to senior management.

MENA Consultant is a regional consulting firm based in the Middle East, providing talent and consulting solutions. The size and culture are not detailed in the posting.

$86,896–$130,000/yr
United States

  • Provide overall program and contract management leadership for cybersecurity architecture and engineering activities.
  • Serve as primary interface with government stakeholders and translate requirements into actionable work plans.
  • Manage program schedules, risks, deliverables, and ensure alignment with Federal security standards.

9th Way Insignia is a service-disabled, veteran-owned small business bringing transformative technology to government customers. We specialize in cybersecurity, cloud modernization, and artificial intelligence.

UK Ireland

  • Lead complex incident response investigations end-to-end with minimal supervision.
  • Perform alert triage, phishing investigations, endpoint forensics, and data exfiltration analysis.
  • Mentor junior analysts and drive improvements to security processes.

Version 1 is a technology and transformation solutions provider trusted by global brands. With over 3,300 employees and €350m revenue, it has been recognized as a Great Place to Work for over a decade.

$139,200–$189,000/yr
North America Unlimited PTO

  • Own risk identification, analysis, and prioritization across third-party risk and security risk assessments using established frameworks.
  • Translate technical vulnerabilities and risk findings into clear, quantified risk statements for non-security stakeholders and leadership.
  • Drive remediation of findings and risk exceptions to closure, partnering with Engineering, IT, Product, and Legal.

GitLab is an intelligent orchestration platform for DevSecOps, helping organizations increase developer productivity and improve security. With over 50 million users, GitLab is trusted by more than 50% of the Fortune 100 and fosters a high-performance culture driven by values and continuous knowledge exchange.