1

Cyber Risk Engineer Jobs (NOW HIRING)

Guide executives in strengthening cyber governance, third-party risk management, incident response ... Bachelor's degree in information security, Computer Science, Business, Engineering, or related ...

Lead a team performing cyber physical system modeling, cyber risk analysis, dynamic cyber defense ... Provide engineering leadership and management including technical direction, scheduling ...

Engineer and optimize cyber metrics frameworks , KPIs, and performance dashboards for leadership ... Familiarity with MITRE ATT&CK, CVSS scoring, and cyber-risk frameworks. * Experience with machine ...

Engineer and optimize cyber metrics frameworks , KPIs, and performance dashboards for leadership ... Familiarity with MITRE ATT&CK, CVSS scoring, and cyber-risk frameworks. * Experience with machine ...

Overview The Cyber Risk Management Specialist (CRMS) will specialize in in-depth knowledge of the ... Integrate security into DevOps effectively at every stage of the software development life cycle ...

Overview The Cyber Risk Management Specialist (CRMS) will specialize in in-depth knowledge of the ... Integrate security into DevOps effectively at every stage of the software development life cycle ...

Overview The Cyber Risk Management Specialist (CRMS) will specialize in in-depth knowledge of the ... Integrate security into DevOps effectively at every stage of the software development life cycle ...

The Cyber Risk Management Specialist (CRMS) will specialize in in-depth knowledge of the program ... Integrate security into DevOps effectively at every stage of the software development life cycle ...

Cyber Vulnerability & Forensic Engineer Location: Denver, CO Hybrid (3/2) On-Site From Day 1 ... Track progress of cyber risk and ensure criticalissues are closed. * Experience with scanning ...

New

Guide executives in strengthening cyber governance, third-party risk management, incident response ... Bachelor's degree in information security, Computer Science, Business, Engineering, or related ...

Guide executives in strengthening cyber governance, third-party risk management, incident response ... Bachelor's degree in information security, Computer Science, Business, Engineering, or related ...

Showing results 41-60

Cyber Risk Engineer information

See salary details

$29.5K

$122.1K

$197.5K

How much do cyber risk engineer jobs pay per year?

As of Sep 9, 2026, the average yearly pay for cyber risk engineer in the United States is $122,108.00, according to ZipRecruiter salary data. Most workers in this role earn between $100,500.00 and $149,500.00 per year, depending on experience, location, and employer.

What is the difference between Cyber Risk Engineer vs Cyber Security Analyst?

AspectCyber Risk EngineerCyber Security Analyst
CertificationsCRISC, CISSP, CISACompTIA Security+, CISSP, CEH
Work EnvironmentRisk assessment, vulnerability analysis, security strategy developmentMonitoring, incident response, security monitoring
Employer & Industry UsageFinancial, healthcare, large enterprises focusing on risk mitigationIT departments, security firms, government agencies

While both roles focus on cybersecurity, a Cyber Risk Engineer primarily assesses and manages organizational risks related to cyber threats, developing strategies to mitigate them. In contrast, a Cyber Security Analyst monitors security systems, responds to incidents, and ensures ongoing protection. Both roles often require similar certifications and work in related environments, but their core responsibilities differ in scope and focus.

What cities are hiring for Cyber Risk Engineer jobs?

Cities with the most Cyber Risk Engineer job openings:

Who are the top companies hiring for Cyber Risk Engineer jobs?

The top employers for Cyber Risk Engineer jobs are:

What states have the most Cyber Risk Engineer jobs?

States with the most job openings for Cyber Risk Engineer jobs include:

What are popular job titles related to Cyber Risk Engineer jobs?

For Cyber Risk Engineer jobs, the most frequently searched job titles are:

Infographic showing various Cyber Risk Engineer job openings in the United States as of July 2026, with employment types broken down into 1% As Needed, 88% Full Time, 9% Part Time, and 2% Contract. Highlights an 88% Physical, 4% Hybrid, and 8% Remote job distribution, with an average salary of $122,108 per year, or $58.7 per hour.

Managing Director, Cyber Risk

New York, NY • On-site

Kroll
Business Management Consulting • 5 - 10K employees

Full-time

This job post has expired 1 day ago. Applications are no longer accepted.


Kroll rating

7.4

Company rating: 7.4 out of 10

Based on 7 frontline employees who took The Breakroom Quiz


Job description


We are seeking a Managing Director to lead and expand our Cybersecurity Advisory practice serving the Private Equity (PE) sector. This executive will be responsible for driving growth, developing trusted relationships with PE sponsors and portfolio company executives, and delivering strategic cybersecurity advisory services that enhance investment outcomes and enterprise value.
The Managing Director will work directly with private equity firms, operating partners, deal teams, boards, and portfolio company leadership to assess cyber risk, identify value creation opportunities, support transactions, and build resilient cybersecurity programs. This role combines business development, client leadership, thought leadership, and practice management responsibilities.
The ideal candidate brings deep expertise in cybersecurity strategy and risk management, a strong network within the private equity ecosystem, and a proven track record of leading high-performing consulting teams and generating significant annual revenue.
Key Responsibilities
Business Development & Client Leadership
  • Develop and execute the firm's Private Equity Cybersecurity Advisory growth strategy.
  • Build and maintain C-suite and executive-level relationships with private equity sponsors, operating partners, investment professionals, and portfolio company leadership teams.
  • Originate, qualify, and close new advisory engagements across the PE lifecycle.
  • Serve as the executive sponsor for strategic client relationships and key accounts.
  • Achieve individual and practice revenue, profitability, and growth objectives.
  • Identify opportunities to cross-sell broader risk, technology, operational, and value creation advisory services.

Transaction Advisory
  • Lead cybersecurity diligence engagements for buy-side and sell-side transactions.
  • Advise investors on cyber risks that may impact valuation, deal structure, integration strategy, or post-close investments.
  • Assess cybersecurity maturity, regulatory exposure, technology risks, and operational resilience of prospective acquisition targets.
  • Deliver actionable recommendations that enable informed investment decisions and accelerated value creation.

Portfolio Value Creation
  • Partner with PE sponsors and portfolio company executives to develop cyber transformation and risk reduction roadmaps.
  • Design and oversee cybersecurity improvement programs that support growth, scalability, and exit readiness.
  • Guide executives in strengthening cyber governance, third-party risk management, incident response, cloud security, identity management, and regulatory compliance.
  • Advise boards and management teams on cybersecurity strategy and enterprise risk.

Practice Leadership
  • Build, lead, and mentor a team of cybersecurity consultants and engagement leaders.
  • Establish methodologies, service offerings, intellectual property, and delivery standards.
  • Drive recruitment, talent development, and succession planning initiatives.
  • Contribute to overall firm strategy and participate as a senior member of the leadership team.

Thought Leadership
  • Represent the firm in industry conferences, private equity events, and executive forums.
  • Publish insights on cybersecurity trends, transaction-related cyber risks, and emerging threats affecting PE-backed organizations.
  • Develop market-facing content that strengthens the firm's brand and market presence.

Qualifications
  • Bachelor's degree in information security, Computer Science, Business, Engineering, or related field.
  • 15+ years of progressive experience in cybersecurity consulting, advisory services, risk management, or related fields.
  • 7+ years serving private equity firms, investment organizations, or PE-backed portfolio companies.
  • Established network within private equity firms, operating partner communities, investment bankers, and PE-backed portfolio companies.
  • Experience at a leading consulting firm, cybersecurity advisory practice, Big Four firm, or specialized PE advisory organization.
  • Demonstrated success generating and managing a significant consulting revenue portfolio.
  • Deep understanding of cybersecurity strategy, risk management, governance, cloud security, resilience, and regulatory compliance.
  • Experience leading cybersecurity due diligence and post-acquisition value creation initiatives.
  • Strong executive presence with the ability to influence boards, investors, and C-suite stakeholders.
  • Industry certifications such as CISSP, CISM, CRISC, CISA, or equivalent.
  • Proven experience leading large consulting teams and complex client engagements.

What Kroll employees say

Pay

Hours and flexibility

Workplace

Get the full story on Breakroom