1

Cyber Risk Engineer Jobs in Chicago, IL (NOW HIRING)

Cyber Data Protection Manager

Chicago, IL · On-site

$114K - $154K/yr

If so, consider joining Deloitte & Touche LLP's growing Cyber Risk Digital Trust & Privacy practice ... Bachelor's degree in Cybersecurity, Information Security, Engineering, Computer Science ...

As a Senior Principal Risk Specialist, Cyber Engagements, you'll play a pivotal role in strengthening the industry's defenses against evolving cyber threats. You'll design and lead immersive tabletop ...

Cyber Vulnerability Test Engineer - (UCAP) - TS/SCI Clearance Required -Located at Lackland AFB ... Must be adept at problem solving, identifying risk, and communicating results and recommendations ...

... Cyber Risk needs specifically helping them navigate the journey on securing their Microsoft 365 (M365) platform. This will include: * Function as onshore engineer/consultant for the following ...

As a Manager in AI Security Engineering, you will play a critical role in securing the development ... The team leads a strategic cyber risk program that adapts to a rapidly changing threat landscape ...

Cyber Threat Analyst

Chicago, IL · On-site

$69K - $108K/yr

Risk/Compliance * Full-Time * Requisition #: CYBER002016 Description Protect Alliant and its ... Map operational intelligence to MITRE ATT&CK tactics and techniques to inform detection engineering ...

Cloud Engineer

Chicago, IL · On-site

$60 - $68/hr

Cloud PKI Engineer Location: Denver, CO / Chicago, IL / Charlotte, NC Work Arrangement: Onsite, 5 ... cyber?risk * Protect boundaries and secure sensitive data; collaborate with peer teams and foster ...

Showing results 21-40

Cyber Risk Engineer information

See Chicago, IL salary details

$30.4K

$125.8K

$203.5K

How much do cyber risk engineer jobs pay per year?

As of Sep 10, 2026, the average yearly pay for cyber risk engineer in Chicago, IL is $125,789.00, according to ZipRecruiter salary data. Most workers in this role earn between $103,500.00 and $154,000.00 per year, depending on experience, location, and employer.

What is the difference between Cyber Risk Engineer vs Cyber Security Analyst?

AspectCyber Risk EngineerCyber Security Analyst
CertificationsCRISC, CISSP, CISACompTIA Security+, CISSP, CEH
Work EnvironmentRisk assessment, vulnerability analysis, security strategy developmentMonitoring, incident response, security monitoring
Employer & Industry UsageFinancial, healthcare, large enterprises focusing on risk mitigationIT departments, security firms, government agencies

While both roles focus on cybersecurity, a Cyber Risk Engineer primarily assesses and manages organizational risks related to cyber threats, developing strategies to mitigate them. In contrast, a Cyber Security Analyst monitors security systems, responds to incidents, and ensures ongoing protection. Both roles often require similar certifications and work in related environments, but their core responsibilities differ in scope and focus.

Infographic showing various Cyber Risk Engineer job openings in Chicago, IL as of July 2026, with employment types broken down into 1% As Needed, 87% Full Time, 10% Part Time, and 2% Contract. Highlights an 88% Physical, 4% Hybrid, and 8% Remote job distribution, with an average salary of $125,789 per year, or $60.5 per hour.

Cyber Manager - ASM Vulnerability Management - Patching

Chicago, IL • On-site

Deloitte
Finance and Insurance • 10K+ employees

$114K - $154K/yr

Full-time

Re-posted 17 days ago


Deloitte rating

8.2

Company rating: 8.2 out of 10

Based on 93 frontline employees who took The Breakroom Quiz


Job description

Are you an experienced cybersecurity professional looking to help organizations reduce cyber risk and improve resilience? At Deloitte & Touche LLP, you'll work with leading organizations to strengthen security, enable innovation, and reduce threat exposure. Join Deloitte's Cyber Defense & Resilience Continuous Threat Exposure Management (CTEM) team to help clients identify, assess, and reduce their attack surface. In this role, you'll lead remediation efforts, work with cross-functional stakeholders, and deliver solutions aligned to business and security priorities.

Recruiting for this role ends on 12/31/2026.

Work you'll do

As an Engineering Manager II on the Cyber Defense & Resilience Continuous Threat Exposure Management (CTEM) team, you will be responsible for...

  • Managing exposure-based remediation and patching activities aligned to CTEM priorities
  • Leading vulnerability and patch management operations across infrastructure, middleware, and applications
  • Prioritizing remediation activities using threat intelligence, exploitability, attack paths, asset criticality, and exposure data
  • Supporting exception management, incident-driven response activities, and process improvements that reduce cyber risk
  • Developing client deliverables, contributing to proposals and points of view, and mentoring junior practitioners

A successful candidate would possess these skills:

  • Ability to work independently and collaborate as part of a team
  • Effective written and verbal communication skills
  • Meticulous attention to detail and quality of work product
  • Ability to build and sustain professional relationships
  • Ability to lead projects or workstreams
  • Ability to manage and prioritize multiple tasks in a fast-paced and dynamic environment
  • Strong interpersonal skills and professional demeanor
  • Ability to meet deadlines
  • Ability to mentor and provide clear guidance to others

The team

Deloitte's Cyber Specialists help organizations manage cyber risk through stronger security, greater visibility, and embedded privacy practices. The Cyber Defense & Resilience team works with clients to design, implement, and operate programs that help protect critical assets, support digital transformation, and respond to evolving threats. Within this practice, the CTEM team helps clients identify exposures, prioritize remediation, and reduce risk across complex technology environments.

Qualifications

Required:

  • 10+ years of experience in information technology, information security, or both
  • Experience leading vulnerability management, patch management, or continuous threat exposure management remediation programs
  • Experience remediating vulnerabilities across Linux, Windows, middleware, and applications using tools such as BigFix, Microsoft Endpoint Configuration Manager, Red Hat Satellite, Windows Server Update Services, Tenable, Rapid7, or Qualys
  • Experience automating remediation workflows using PowerShell, Bash, Python, JavaScript Object Notation, Ansible, Terraform, or a combination of these
  • Experience using Information Technology Service Management or configuration management database platforms such as ServiceNow to coordinate remediation and report exposure reduction
  • Ability to travel 50%, on average, based on the work you do and the clients and industries/sectors you serve.
  • Must be legally authorized to work in the United States without the need for employer sponsorship, now or at any time in the future.

Preferred:

  • Bachelor's degree in Computer Science, Cybersecurity, Information Systems, Engineering, Information Technology, or a related field
  • Experience in a consulting environment or with a Big 4 firm
  • Experience with ServiceNow workflows, automation, or orchestration
  • Experience with frameworks such as the National Institute of Standards and Technology Cybersecurity Framework, Center for Internet Security, International Organization for Standardization 27001, or Cloud Security Alliance Cloud Controls Matrix
  • Experience supporting proposals, statements of work, or work orders

The wage range for this role takes into account the wide range of factors that are considered in making compensation decisions including but not limited to skill sets; experience and training; licensure and certifications; and other business and organizational needs. The disclosed range estimate has not been adjusted for the applicable geographic differential associated with the location at which the position may be filled. At Deloitte, it is not typical for an individual to be hired at or near the top of the range for their role and compensation decisions are dependent on the facts and circumstances of each case. A reasonable estimate of the current range is $134,500 to $265,100.

You may also be eligible to participate in a discretionary annual incentive program, subject to the rules governing the program, whereby an award, if any, depends on various factors, including, without limitation, individual and organizational performance.

#CyberCDR27

Qualifications:

Are you an experienced cybersecurity professional looking to help organizations reduce cyber risk and improve resilience? At Deloitte & Touche LLP, you'll work with leading organizations to strengthen security, enable innovation, and reduce threat exposure. Join Deloitte's Cyber Defense & Resilience Continuous Threat Exposure Management (CTEM) team to help clients identify, assess, and reduce their attack surface. In this role, you'll lead remediation efforts, work with cross-functional stakeholders, and deliver solutions aligned to business and security priorities.

Recruiting for this role ends on 12/31/2026.

Work you'll do

As an Engineering Manager II on the Cyber Defense & Resilience Continuous Threat Exposure Management (CTEM) team, you will be responsible for...

  • Managing exposure-based remediation and patching activities aligned to CTEM priorities
  • Leading vulnerability and patch management operations across infrastructure, middleware, and applications
  • Prioritizing remediation activities using threat intelligence, exploitability, attack paths, asset criticality, and exposure data
  • Supporting exception management, incident-driven response activities, and process improvements that reduce cyber risk
  • Developing client deliverables, contributing to proposals and points of view, and mentoring junior practitioners

A successful candidate would possess these skills:

  • Ability to work independently and collaborate as part of a team
  • Effective written and verbal communication skills
  • Meticulous attention to detail and quality of work product
  • Ability to build and sustain professional relationships
  • Ability to lead projects or workstreams
  • Ability to manage and prioritize multiple tasks in a fast-paced and dynamic environment
  • Strong interpersonal skills and professional demeanor
  • Ability to meet deadlines
  • Ability to mentor and provide clear guidance to others

The team

Deloitte's Cyber Specialists help organizations manage cyber risk through stronger security, greater visibility, and embedded privacy practices. The Cyber Defense & Resilience team works with clients to design, implement, and operate programs that help protect critical assets, support digital transformation, and respond to evolving threats. Within this practice, the CTEM team helps clients identify exposures, prioritize remediation, and reduce risk across complex technology environments.

Qualifications

Required:

  • 10+ years of experience in information technology, information security, or both
  • Experience leading vulnerability management, patch management, or continuous threat exposure management remediation programs
  • Experience remediating vulnerabilities across Linux, Windows, middleware, and applications using tools such as BigFix, Microsoft Endpoint Configuration Manager, Red Hat Satellite, Windows Server Update Services, Tenable, Rapid7, or Qualys
  • Experience automating remediation workflows using PowerShell, Bash, Python, JavaScript Object Notation, Ansible, Terraform, or a combination of these
  • Experience using Information Technology Service Management or configuration management database platforms such as ServiceNow to coordinate remediation and report exposure reduction
  • Ability to travel 50%, on average, based on the work you do and the clients and industries/sectors you serve.
  • Must be legally authorized to work in the United States without the need for employer sponsorship, now or at any time in the future.

Preferred:

  • Bachelor's degree in Computer Science, Cybersecurity, Information Systems, Engineering, Information Technology, or a related field
  • Experience in a consulting environment or with a Big 4 firm
  • Experience with ServiceNow workflows, automation, or orchestration
  • Experience with frameworks such as the National Institute of Standards and Technology Cybersecurity Framework, Center for Internet Security, International Organization for Standardization 27001, or Cloud Security Alliance Cloud Controls Matrix
  • Experience supporting proposals, statements of work, or work orders

The wage range for this role takes into account the wide range of factors that are considered in making compensation decisions including but not limited to skill sets; experience and training; licensure and certifications; and other business and organizational needs. The disclosed range estimate has not been adjusted for the applicable geographic differential associated with the location at which the position may be filled. At Deloitte, it is not typical for an individual to be hired at or near the top of the range for their role and compensation decisions are dependent on the facts and circumstances of each case. A reasonable estimate of the current range is $134,500 to $265,100.

You may also be eligible to participate in a discretionary annual incentive program, subject to the rules governing the program, whereby an award, if any, depends on various factors, including, without limitation, individual and organizational performance.

#CyberCDR27

Education:Bachelor's DegreeEmployment Type:

What Deloitte employees say

Pay

Benefits

Hours and flexibility

Workplace

Get the full story on Breakroom