← Back to results

risk-assessment jobs in San Diego

$80,000 – $110,000 · Posted 3 days ago

This cybersecurity engineer role focuses on securing cloud infrastructure (AWS, Azure, GCP), containerized environments (Docker, Kubernetes), and applications through vulnerability management, risk assessment, and security architecture review. The position requires hands-on experience with SIEM, EDR, WAF configuration, and embedding security scanning (SAST, DAST, SCA) into CI/CD pipelines. The engineer will conduct threat modeling, manage IAM policies, perform penetration testing coordination, support incident response and post-incident reviews, and partner with engineering teams to balance security with delivery. The role also includes compliance support, vendor risk assessments, and serving in an on-call rotation for after-hours security incidents.

San DiegoLast seen 3 days ago
$150,000 – $175,000 · Posted 3 days ago

The Information Systems Security Manager (ISSM) will lead organizational information security strategy, frameworks, and compliance across defense and classified environments. Responsibilities include developing and maintaining security policies aligned with NIST SP 800–171, DFARS, and ISO 27001; leading CMMC and ISO 27001 certification efforts; managing CUI and classified information handling; conducting risk assessments and vulnerability analyses; overseeing incident response; and serving as the primary liaison with government agencies and customers on security compliance. The role requires 7+ years of information security management experience, with 3+ years in a leadership capacity, and deep expertise in NIST, DFARS, DISA-STIGs, ISO 27001, classified information protocols, and risk governance.

San DiegoLast seen 1 day ago
$140,000 – $180,000 · Posted 3 days ago

The Information Systems Security Manager will develop, implement, and maintain the company's information security policies and compliance programs aligned with NIST SP 800-171, DFARS, ISO 27001, and CMMC requirements. Responsibilities include overseeing Controlled Unclassified Information (CUI) and classified information protection, conducting risk assessments and vulnerability analyses, leading incident response efforts, and serving as primary liaison with government agencies on compliance matters. The role requires 7+ years of information security management experience with at least 3 years in a leadership position, and extensive knowledge of defense industry security standards and classified information handling protocols. The ISSM will collaborate with DevSecOps, IT, and engineering teams to integrate security controls across operations and maintain continuous Authority to Operate (cATO) pipelines.

San DiegoLast seen 1 day ago
Posted 3 days ago

This Staff Engineer role owns and executes BD's product security lifecycle for FDA-regulated medical device dispensing systems and their cloud platforms. Key responsibilities include defining end-to-end security architecture, conducting threat modeling and risk assessments, implementing secure SDLC practices aligned to NIST/OWASP/BSIMM, managing SBOMs and vulnerability remediation, and ensuring regulatory compliance (IEC 62304, ISO 14971, FDA cybersecurity guidance). The role requires 5+ years of cybersecurity experience with FDA Class I/II devices, hands-on expertise in embedded/cloud/application security, and the ability to balance security controls with usability while supporting FDA submissions.

San DiegoLast seen 1 day ago
$80,000 – $110,000 · Posted 4 days ago

This role is a hands-on cybersecurity engineer responsible for securing cloud infrastructure (AWS, Azure, GCP), containerized environments (Docker, Kubernetes), and applications. Key duties include vulnerability scanning and penetration testing, threat modeling, Web Application Firewall (WAF) deployment and tuning, CI/CD security integration (SAST, DAST, SCA), incident response, and compliance support. The engineer will work closely with DevOps and application teams to embed security controls, conduct code and architecture reviews, and provide risk-based guidance. Required experience includes 3–5+ years in cybersecurity or security engineering, hands-on SIEM/EDR/vulnerability management tools, cloud platforms, WAF configuration, and scripting (Python, Bash, PowerShell).

San DiegoLast seen 1 day ago
$110,000 – $165,000 · Posted 5 days ago

Own end-to-end compliance operations for a healthcare AI company, including managing compliance frameworks (SOC2 Type II, HIPAA, NIST, ISO), driving control remediation to closure, administering Google Workspace and MDM, coordinating external audits, and maintaining audit-readiness. This role requires hands-on management of a compliance platform of record, continuous monitoring of compliance tests, security policy maintenance, evidence collection, and risk tracking—operating with high rigor in a fast-scaling startup without routing issues to others.

San DiegoLast seen 4 days ago
Posted 7 days ago

This role manages a cybersecurity program for clinical medical technology (diagnostic imaging and therapeutic radiation equipment) at a healthcare organization. The manager will lead staff, oversee regulatory compliance, conduct risk assessments and incident response, ensure HIPAA and Joint Commission adherence, and collaborate with clinical teams on technology security and reliability. The position requires 3+ years of management experience, 5+ years in related healthcare technology work, and a bachelor's degree, with responsibility for budget, purchasing, and business operations.

San DiegoLast seen 4 days ago
Posted 8 days ago

Lyntris seeks a Cyber Security Engineer II to provide Risk Management Framework (RMF) Assessment and Authorization (A&A) support for Navy software solutions. The role involves designing, implementing, and monitoring cybersecurity and information assurance policies for mission-critical systems; developing system IA documentation (categorization forms, security plans, assessment plans, continuous monitoring plans, risk assessments); and guiding the software development team through security scan review, evaluation, and remediation. The engineer will work with system owners and stakeholders to manage cybersecurity requirements and continuously improve cyber posture. Requires 2–3 years of Department of Navy accreditation experience and working knowledge of NIST standards, RMF, and eMASS.

San DiegoLast seen 6 days ago
$120,190 – $155,540 · Posted 10 days ago

The HTM Cybersecurity Program Manager leads cybersecurity and clinical technology programs at a healthcare system, managing a team responsible for diagnostic imaging and therapeutic equipment maintenance, regulatory compliance, and incident response. The role requires directing staff performance, managing budgets and procurement, and ensuring HIPAA and Joint Commission compliance while mentoring technical teams. Key responsibilities include risk assessment, cybersecurity strategy implementation, audit readiness, and collaboration with clinical teams to resolve technology issues affecting patient care. The ideal candidate brings 3+ years of management experience, 5+ years in healthcare technology operations, and deep knowledge of healthcare regulatory frameworks.

San DiegoLast seen 8 days ago
$95,900 – $159,900 · Posted 10 days ago

Senior Software QA Engineer supporting Dexcom's Postmarket Investigations team to assess real-world product performance, investigate software and device issues, and drive continuous improvement. You will collaborate across R&D, Quality, Regulatory Affairs, and Clinical teams to conduct root-cause analyses, perform risk assessments (including hazard analysis, DFMEA, PFMEA), and translate postmarket insights into product enhancements. The role requires deep technical understanding of software architecture, structured problem-solving, statistical analysis, and the ability to communicate findings to both technical and non-technical stakeholders while ensuring regulatory compliance and patient safety.

San DiegoLast seen 9 days ago
$75,000 – $90,000 · Posted 11 days ago

The Quality Assurance Specialist II independently owns and operates defined Quality Management System processes, serving as a subject matter expert for batch release, NCMR/deviation/CAPA management, and asset control. The role requires judicious decision-making on routine and moderately complex quality and compliance matters, including investigating quality events, driving corrective actions, and supporting regulatory submissions and FDA inspections. The specialist works collaboratively with a QA Associate and Sr. Quality Systems Engineer, leading process improvements and providing escalation support with minimal oversight.

San DiegoLast seen 9 days ago
$110,000 – $165,000 · Posted 11 days ago

This role owns the day-to-day operation of a compliance program end to end, managing compliance frameworks (SOC2 Type II, HIPAA, NIST, ISO), continuously monitoring and remediating control failures, and administering workforce security systems (Google Workspace and MDM). The manager will coordinate external audits, maintain policies and evidence collection, track risks, and drive remediation from detection to closure without heavy delegation. The role requires hands-on experience with compliance automation platforms and direct IT administration of identity and access management systems.

San DiegoLast seen 9 days ago
$129,000 – $158,000 · Posted 12 days ago

The Global Security Senior Manager leads Cubic Corporation's crisis management, business continuity, and emergency preparedness programs while supporting executive protection for the CEO and Executive Leadership Team. The role develops and manages global crisis plans, conducts training and drills, coordinates emergency response, and oversees contract security personnel and secure transportation operations. Key responsibilities include threat analysis, risk assessments, law enforcement coordination, and providing protective services at the Balboa Campus in San Diego. The position requires strong judgment, independent decision-making authority, occasional travel, and the ability to manage multiple stakeholders across facilities, HR, legal, and health/safety functions.

San DiegoLast seen 10 days ago
$110,000 – $165,000 · Posted 12 days ago

Own end-to-end compliance operations for a healthcare AI company, including managing compliance platforms (SOC2 Type II, HIPAA, NIST, ISO), administering Google Workspace and MDM, driving remediation of failing controls to closure, and coordinating external audits. Monitor compliance tests continuously, maintain security policies and evidence collection, and work cross-functionally with engineering and leadership to keep the company audit-ready at scale. The role requires hands-on compliance platform administration (Vanta, Drata, or similar), not purely administrative ticket routing.

San DiegoLast seen 10 days ago
$109,900 – $171,800 · Posted 12 days ago

As a Product Security Engineer 3, you will monitor industry cybersecurity threats and assess their risk to Hologic's diagnostic products, perform vulnerability assessments and security testing, and collaborate with software engineers and field service teams to implement security requirements and qualify networked medical devices. You will develop and automate test procedures for OS patches and anti-virus software, troubleshoot security and network issues in computer-based products, and educate internal teams on network security topics. The role requires a Bachelor's or Master's degree in Computer Science or related field with 4–8 years of experience in computer/network security, Windows and Linux administration, and cybersecurity risk assessment, preferably with medical device or healthcare industry background.

San DiegoLast seen 10 days ago