1

Cyber Risk Management Jobs (NOW HIRING)

Position Overview The Director, Cyber Risk leads Asurion's cyber and technology risk management discipline and is accountable for a consistent, outcome-driven program the business can rely on for ...

Position Overview The Director, Cyber Risk leads Asurion's cyber and technology risk management discipline and is accountable for a consistent, outcome-driven program the business can rely on for ...

Risk management, specifically cyber risk. At least some experience in a cyber role. Soft skills: Good communication skills - written and verbal, ability to work with all different levels. In this ...

next page

Showing results 1-20

Cyber Risk Management information

See salary details

$14

$30

$74

How much do cyber risk management jobs pay per hour?

As of Jul 23, 2026, the average hourly pay for cyber risk management in the United States is $30.34, according to ZipRecruiter salary data. Most workers in this role earn between $19.47 and $38.70 per hour, depending on experience, location, and employer.

What is a Cyber Risk Management job?

A Cyber Risk Management job involves identifying, assessing, and mitigating cybersecurity risks that could impact an organization. Professionals in this field develop risk management frameworks, implement security controls, and ensure compliance with industry regulations. They work closely with IT and business teams to minimize cyber threats, such as data breaches and ransomware attacks. Their goal is to protect sensitive information and maintain business continuity.

Is SOC an entry level job?

A Security Operations Center (SOC) analyst role can be entry-level, especially for positions focused on monitoring security alerts and basic incident response. However, more advanced SOC roles typically require prior experience, certifications like CompTIA Security+ or CISSP, and knowledge of security tools such as SIEM systems. Entry-level positions often serve as a starting point for careers in cybersecurity and risk management.

What are the key skills and qualifications needed to thrive in the Cyber Risk Management position, and why are they important?

To thrive in Cyber Risk Management, you need a strong understanding of information security principles, risk assessment methodologies, and regulatory compliance, often supported by a degree in cybersecurity, information technology, or a related field. Familiarity with tools such as risk management software, vulnerability assessment platforms, and certifications like CISSP, CISM, or CRISC is highly valued. Excellent analytical thinking, communication, and problem-solving skills help professionals effectively advise stakeholders and coordinate incident response efforts. These skills are crucial for identifying, evaluating, and mitigating cyber risks to safeguard organizational assets and ensure business continuity.

Can you make $500,000 a year in cyber security?

Cyber Risk Management professionals can potentially earn $500,000 or more annually, especially at senior levels or in executive roles such as Chief Information Security Officer (CISO). Achieving this salary typically requires extensive experience, advanced certifications like CISSP or CISM, and leadership responsibilities in large organizations or high-demand industries. Salary varies based on location, company size, and individual expertise.

Can you make $200,000 in cyber security?

Cyber Risk Management professionals can potentially earn $200,000 or more annually, especially with extensive experience, advanced certifications like CISSP or CISM, and working in high-demand industries or senior roles. Salary varies based on location, company size, and individual expertise, with senior positions often offering higher compensation.

What are some common challenges faced in a Cyber Risk Management role, and how are they typically addressed?

Professionals in Cyber Risk Management often encounter challenges such as keeping up with rapidly evolving cyber threats, ensuring compliance with complex regulations, and balancing security needs with business objectives. Addressing these issues requires continuous learning, leveraging up-to-date threat intelligence, and collaborating closely with IT, legal, and management teams to develop effective risk mitigation strategies. Many organizations encourage ongoing training and participation in industry events to stay current, while fostering a culture of open communication to quickly identify and address vulnerabilities. Embracing a proactive and adaptable approach ensures that cyber risks are managed effectively while supporting the organization’s goals.

What does a cyber risk manager do?

A cyber risk manager assesses and mitigates cybersecurity threats to an organization by identifying vulnerabilities, developing risk management strategies, and implementing security controls. They often use tools like risk assessment frameworks and require knowledge of cybersecurity principles, compliance standards, and risk analysis techniques. Their role helps protect sensitive data and ensure business continuity.
More about Cyber Risk Management jobs
What cities are hiring for Cyber Risk Management jobs? Cities with the most Cyber Risk Management job openings:
What states have the most Cyber Risk Management jobs? States with the most job openings for Cyber Risk Management jobs include:
Infographic showing various Cyber Risk Management job openings in the United States as of July 2026, with employment types broken down into 4% Locum Tenens, 91% Full Time, 3% Part Time, and 2% Contract. Highlights an 89% Physical, 4% Hybrid, and 7% Remote job distribution, with an average salary of $63,100 per year, or $30.3 per hour.

Principal, GRC Cyber Risk Management

001 The Northern Trust Company

Tempe, AZ • On-site

$108K - $185K/yr

Full-time

Medical, Dental, Vision, Life, Retirement, PTO

This job post has expired today. Applications are no longer accepted.


Job description

About Northern Trust As a global leader in innovative wealth management, asset servicing, asset management and banking services, Northern Trust (Nasdaq: NTRS) is proud to guide the world's most successful individuals, families, corporations and institutions. Since 1889, we have aligned our efforts with our three guiding Principles That Endure: Service, Expertise, and Integrity. Together, they reflect the three cornerstones of business conduct which we strive to instill in our employees, whom we call partners, and to provide to our clients and the communities we serve worldwide. With more than 135 years of financial experience and over 24,000 partners, we serve the world's most sophisticated clients using leading technology and exceptional service. Role / Department This role sits within Northern Trust's Cybersecurity Governance, Risk and Compliance (GRC) organization, an integral part of the strategic evolution of cyber risk management capabilities across the enterprise. The Cyber Risk Principal will partner with peers to drive the modernization of cyber risk identification, intelligence integration, assessment methodologies, and executive risk reporting. The role requires a forward‐looking team player who understands how cybersecurity, cyber threat intelligence, data analytics, automation, and artificial intelligence are reshaping enterprise risk management within global financial institutions. The ideal candidate combines strong cyber risk management expertise with the ability to leverage data‐driven insights, threat intelligence, emerging technologies, and AI‐enabled capabilities to improve risk visibility, prioritization, and decision‐making. Responsibilities Lead the identification, assessment, prioritization, and reporting of cyber risks across the enterprise. Drive the evolution of cyber risk management toward data‐driven decision making by integrating cyber threat intelligence, attack surface insights, vulnerability trends, and control effectiveness metrics into enterprise cyber risk reporting. Conduct cyber risk assessments, thematic reviews, and cyber maturity assessments aligned to industry frameworks and regulatory expectations. Develop forward‐looking cyber risk reporting that provides actionable insights to executive leadership, risk committees, and regulators. Partner with cyber domain experts (e.g., security operations, architecture) to improve risk reduction outcomes. Enhance cyber risk intelligence capabilities through analytics, automation, and AI‐enabled processes. Drive continuous improvement in cyber risk methodologies, governance processes, and reporting capabilities. Translate highly technical cyber risks into clear business impact narratives and strategic recommendations. Evaluate emerging threats, including AI capabilities, to determine enterprise cyber risk implications. Contribute to the development of risk metrics, KRIs, KCIs, maturity indicators, and predictive cyber risk analytics. Collaborate across Lines of Defense to strengthen enterprise cyber resilience and operational risk visibility. Qualifications Bachelor's degree in Information Security, Computer Science, or a related field; Master's degree preferred. Minimum of 10 years of experience in cybersecurity, with a focus on risk management. Extensive knowledge of cyber risk management frameworks and methodologies including NIST CSF, FAIR, MITRE ATT&CK, CRI, ISO 27001, and related industry practice. Strong understanding of modern cyber threat landscapes, attack methodologies, adversary behaviors, and emerging technology risks. Experience leveraging AI, analytics, automation, or data engineering capabilities to improve cyber risk management processes. Understanding of cyber intelligence concepts including threat actor analysis, attack trends, external intelligence sources, and operational risk correlation. Demonstrated ability to design and mature cyber risk reporting capabilities for executive leadership and regulators. Exceptional communication and presentation skills, capable of translating technical risk into business terms. Excellent analytical, problem‐solving, and decision‐making skills. Relevant certifications such as CISSP, CISM, CRISC or similar. Compensation and Benefits Salary Range: $108,965 - 185,155 USD. Salary range is a good faith estimate of base pay. Northern Trust provides a comprehensive benefits package including retirement benefits (401k and pension), health and welfare benefits (medical, dental, vision, spending accounts and disability), paid time off, parental and caregiver leave, life & accident insurance, and other voluntary and well‐being benefits. Northern Trust also provides a discretionary bonus program that may include an equity component. Work Authorization Applicants must be authorized to work in the U.S. without the need for employment‐based visa sponsorship now or in the future. Northern Trust will not sponsor applicants for U.S. work visa status for this opportunity (no sponsorship is available for H‐1B, L‐1, TN, O‐1, E‐3, H‐1B1, F‐1, J‐1, OPT, CPT or any other employment‐based visa). Working with Us As a Northern Trust partner, you will be part of a flexible and collaborative work culture, which has a strong history of financial strength and stability. Movement within the organization is encouraged, senior leaders are accessible, and you can take pride in working for a company committed to an inclusive workplace and assisting the communities we serve. Philanthropy is deeply rooted in Northern Trust's history and is an essential element of our culture. Employees around the world give their time and talent to work for the greater good of their communities. Reasonable Accommodation Northern Trust is committed to working with and providing adjustments to individuals with health conditions and disabilities. If you need a reasonable accommodation for any part of the employment process, please email our HR Service Center at MyHRHelp@ntrs.com, or alternatively you can discuss your individual requirements with the recruiter you are working with. Equal Employment Opportunity (EEO) Statements APAC/INDIA EEO STATEMENT It is the policy and practice of Northern Trust to provide equal employment opportunities to all employees and applicants. Northern Trust does not discriminate on the basis of race, colour, religion or belief, nationality, ethnic or national origin, sex, marital status, sexual orientation, disability or age. All employment decisions will be made in a non‐discriminatory manner in accordance with our obligations under the law and codes of practice. This includes human resources' decisions relating to recruitment, terms and conditions of employment, transfers, promotions and access to learning and development. Canada EEO STATEMENT Northern Trust is an Equal Opportunity Employer. Hiring and other employment decisions at Northern Trust are made without regard to race, colour, religion, sex, ancestry, national origin, ethnic origin, age, disability, citizenship, veteran status, sexual orientation, record of offences, marital status, family status, or any other characteristic protected by federal, provincial, or local law, regulation, or ordinance. EMEA EEO STATEMENT It is the policy and practice of Northern Trust to provide equal employment opportunities to all employees and applicants. Northern Trust does not discriminate on the basis of race, colour, religion or belief, nationality, ethnic or national origin, sex, marital status, sexual orientation, disability or age. All employment decisions will be made in a non‐discriminatory manner in accordance with our obligations under the law and codes of practice. This includes human resources' decisions relating to recruitment, terms and conditions of employment, transfers, promotions and access to learning and development. USA EEO STATEMENT It is the policy of The Northern Trust Company to afford equal opportunity in all phases of employment without regard to an individual's age, race, color, religion, creed, gender, national origin, citizenship status, marital status, pregnancy, sexual orientation, gender identity, gender expression, genetic tests and information, physical or mental disability, protected veteran status or any other legally protected status. EEO Know Your Rights (U.S.) EEO Know Your Rights (U.S.) #J-18808-Ljbffr