Mid-Level

Information Security Manager

Owning the information security program at a company or business unit, you lead the team and discipline that protects systems, data, and people — vulnerability management, identity, incident response, vendor risk, and policy. Often paged at 3 a.m.

Career Level
Junior
Mid
Senior
Director
VP
Executive
Work Personality
C
E
I
R
S
A
Conventionalorganizing, detail-oriented
Enterprisingleading, persuading
Based on Holland Code framework
Job markets for Information Security Managers
Employment concentration · ~377 areas
Based on employment in related occupations
Mapped SOC categories:
BLS Occupational Employment Statistics
What it's like

What it's like to be a Information Security Manager

A typical week often involves threat reviews, vendor security calls, control monitoring, and incident triage — phishing tickets, SIEM anomalies, the quarterly tabletop, and the inevitable executive question about ransomware exposure. You're often translating risk into language a board can act on while running an operational team in the trenches. Mean time to detect, time to remediate, and audit posture are the visible measures.

What's harder than people expect is the asymmetry of being responsible for what you can't fully see — your surface includes endpoints, cloud, identity, application, vendor, and human, each with its own blind spots. Employer variance is wide: regulated industries have program maturity and budget; mid-market shops may have you wearing nearly every security hat.

People who tend to thrive here are paranoid in a constructive way and calm during the actual incident. CISSP, CISM, or sector-specific credentials anchor seniority. The trade-off is the inevitability of incidents — you're visible mostly when something goes wrong, and even doing everything right doesn't guarantee a quiet year.

Working ConditionsHigh
SupportAbove avg
AchievementAbove avg
RecognitionAbove avg
IndependenceAbove avg
RelationshipsModerate
O*NET Work Values survey
✦ Editorial — written by Truest from industry research and career patterns
Career Paths

Where this role sits in the broader career landscape — and where it can take you.

$239K$179K$119K$60K$0KLower paying387 metro areas, sorted by salary level
All experience levels1
This level's estimated range
INDUSTRIES PAYING ABOVE AVERAGE
1 BLS OEWS May 2024 covers all Information Security Managers (SOC 11-3021.00), not just this title · BEA RPP 2023
* Top salaries exceed this figure. BLS caps reported wages at ~$240K to protect individual privacy in high-earning roles.
Exploring the Information Security Manager career path? Truest helps you figure out if it's the right fit — and plan your path forward.
Explore career tools
✦ Editorial — career progression and interview guidance based on industry patterns
The Broader Landscape

Roles like this one sit within a broader occupational category. The numbers below reflect that full landscape — helpful for context, but your specific experience will depend on level, specialty, and where you work.

$104K–$208K
Salary Range
10th – 90th percentile
646K
U.S. Employment
+15.2%
10yr Growth
56K
Annual Openings

How this category is changing

$74K$71K$68K$65K$62K201920202021202220232024$62K$74K
BLS OEWS May 2024 · BLS Employment Projections 2024–2034

Skills & Requirements

Critical ThinkingReading ComprehensionActive ListeningMonitoringJudgment and Decision MakingSpeakingWritingComplex Problem SolvingCoordinationSystems Analysis
O*NET OnLine · Bureau of Labor Statistics
11-3021.00

Navigate your career with clarity

Truest gives you tools to understand your strengths, explore roles that fit, and plan your next move.

Explore Truest career tools
Federal data: BLS Occupational Employment & Wage Statistics (May 2024) · BLS Employment Projections · O*NET OnLine
Truest editorial: Fit check, role profile, things that vary, advancement analysis, lateral moves, interview questions.