1

Cyber Risk Management Jobs in Illinois (NOW HIRING)

Cyber Data Protection Manager

Chicago, IL · Remote

$114K - $154K/yr

If so, consider joining Deloitte & Touche LLP's growing Cyber Risk Digital Trust & Privacy practice ... Familiarity with change management, deployment and operational processes in large IT organizations

Senior Manager - Cloud Architect

Chicago, IL

$67.50 - $89.50/hr

Ability to provide clear guidance to others The team Deloitte's Cloud Cyber Risk team helps organizations pursue growth, innovation, and performance through proactive management of cyber risk. The ...

next page

Showing results 1-20

Cyber Risk Management information

See Illinois salary details

$13

$29

$71

How much do cyber risk management jobs pay per hour?

As of Jun 13, 2026, the average hourly pay for cyber risk management in Illinois is $29.40, according to ZipRecruiter salary data. Most workers in this role earn between $18.85 and $37.50 per hour, depending on experience, location, and employer.

What is a Cyber Risk Management job?

A Cyber Risk Management job involves identifying, assessing, and mitigating cybersecurity risks that could impact an organization. Professionals in this field develop risk management frameworks, implement security controls, and ensure compliance with industry regulations. They work closely with IT and business teams to minimize cyber threats, such as data breaches and ransomware attacks. Their goal is to protect sensitive information and maintain business continuity.

What are the key skills and qualifications needed to thrive in the Cyber Risk Management position, and why are they important?

To thrive in Cyber Risk Management, you need a strong understanding of information security principles, risk assessment methodologies, and regulatory compliance, often supported by a degree in cybersecurity, information technology, or a related field. Familiarity with tools such as risk management software, vulnerability assessment platforms, and certifications like CISSP, CISM, or CRISC is highly valued. Excellent analytical thinking, communication, and problem-solving skills help professionals effectively advise stakeholders and coordinate incident response efforts. These skills are crucial for identifying, evaluating, and mitigating cyber risks to safeguard organizational assets and ensure business continuity.

Can you make $500,000 a year in cyber security?

Cyber Risk Management professionals can potentially earn $500,000 or more annually, especially at senior levels or in executive roles such as Chief Information Security Officer (CISO). Achieving this salary typically requires extensive experience, advanced certifications like CISSP or CISM, and leadership responsibilities within large organizations. High salaries are often associated with specialized skills, strategic oversight, and the ability to manage complex security risks.

Is 40 too old for cyber security?

Cyber Risk Management professionals can succeed at any age, as the field values experience, problem-solving skills, and continuous learning. Many individuals transition into cybersecurity later in their careers by obtaining certifications like CISSP or CompTIA Security+ and developing relevant technical skills. Age is generally not a barrier to entering or advancing in cybersecurity roles.

What are some common challenges faced in a Cyber Risk Management role, and how are they typically addressed?

Professionals in Cyber Risk Management often encounter challenges such as keeping up with rapidly evolving cyber threats, ensuring compliance with complex regulations, and balancing security needs with business objectives. Addressing these issues requires continuous learning, leveraging up-to-date threat intelligence, and collaborating closely with IT, legal, and management teams to develop effective risk mitigation strategies. Many organizations encourage ongoing training and participation in industry events to stay current, while fostering a culture of open communication to quickly identify and address vulnerabilities. Embracing a proactive and adaptable approach ensures that cyber risks are managed effectively while supporting the organization’s goals.

Is cybersecurity still worth it in 2026?

Cyber Risk Management remains a vital role in 2026 as organizations continue to face evolving cyber threats. Professionals in this field need strong technical skills, knowledge of security frameworks, and certifications like CISSP or CISM to effectively protect digital assets and ensure compliance.

Can I make $200,000 a year in cyber security?

Cyber Risk Management professionals can potentially earn $200,000 or more annually, especially with extensive experience, advanced certifications like CISSP or CISM, and roles in high-demand industries or senior positions. Salary levels vary based on location, company size, and individual expertise, but high-level cybersecurity roles often offer compensation in this range.
What job categories do people searching Cyber Risk Management jobs in Illinois look for? The top searched job categories for Cyber Risk Management jobs in Illinois are:
Infographic showing various Cyber Risk Management job openings in Illinois as of June 2026, with employment types broken down into 61% Full Time, 35% Part Time, and 4% Contract. Highlights an 92% Physical, 3% Hybrid, and 5% Remote job distribution, with an average salary of $61,145 per year, or $29.4 per hour.
Risk Management Support Task Lead

Risk Management Support Task Lead

NexGen Data Systems Inc (NGDS)

Scott Air Force Base, IL

Other

Medical, Dental, Vision, Retirement, PTO

Posted 8 days ago


Job description

Description

NexGen Data Systems is seeking a highly experienced Risk Management Support Task Lead to direct and execute comprehensive cybersecurity engineering and risk management operations for the United States Transportation Command (USTRANSCOM). The scope of this project is to provide comprehensive lifecycle implementation and assessment support for all phases of the DoD Risk Management Program (DoDI 8510.01) and NIST SP 800-37 Risk Management Framework (RMF) across internal enclaves, service networks, and commercial cloud environments.


The Risk Management Support Task Leads functions as a top-level technical contributor and supervisor providing expert support, advanced research, and risk analysis into exceptionally complex problems and system architectures. The Task Lead is responsible for managing on-site deliverables, leading a team of specialized compliance and engineering professionals, and serving as the primary technical interface to the Cybersecurity Assessment Program to deliver highly innovative risk reduction solutions.


Roles & Responsibilities:

  • Manage complex on-site contract deliverables and coordinate directly with the Government functional lead to align team activities with combatant command priorities.
  • Lead the technical execution of the RMF lifecycle across approximately 40 enterprise systems, independently evaluating security controls, tracking categorizations, and finalizing ATO packages.
  • Reconstruct and recommend advanced cybersecurity software tools and assist in the development of tool requirements and product-specific STIGs derived from applicable DISA SRGs.
  • Provide expert Information Systems Security Engineering (ISSE) lifecycle alignment in strict accordance with NIST SP 800-160 Volume I and Volume II trust and cyber resiliency models.
  • Supervise the execution of weekly automated network vulnerability scanning (ACAS), continuous risk dashboard monitoring, and verification against DISA STIG/SRG baselines.
  • Oversee the command's Information Assurance Vulnerability Management (IAVM) program, managing the distribution of security alerts, tracking macro compliance trends, and processing complex POA&Ms.
  • Serve as the lead technical expert for Software Assurance (SwA) code diagnostics, utilizing automated application scanning tools (such as Fortify) to evaluate source code, tune configurations to eliminate false positives, and publish annual summary analysis logs.
  • Manage Security Control Assessor Representative (SCAR) workflows, performing rapid triage of all RMF-related submissions within strict 7-business-day service level thresholds.
  • Coordinate across the Joint Deployment and Distribution Enterprise (JDDE) to facilitate technical data-sharing, evaluate system reciprocity, and manage DoD Ports, Protocols, and Services Management (PPSM) registries.
  • Provide technical engineering oversight for the deployment of the Cybersecurity Readiness Framework (CRF), executing complex ETL data pipelines and analytics workloads using Databricks, Python, SQL, and Qlik.

Other Duties: Please note this job description is not designed to cover or contain a comprehensive listing of activities, duties or responsibilities that are required of the employee for this job. Duties, responsibilities and activities may change at any time with or without notice.

Requirements

Desired/Required Skills:

  • Active Department of Defense Top Secret/SCI (Tier 5 Investigation) required. 
  • Must satisfy DoD 8570.01-M / DoDM 8140.03 Information Assurance Management (IAM) Level III baseline qualification requirements (e.g., active CISSP, CISM, or GSLC) at the commencement of work.
  • Must hold a validation/penetration testing credential (e.g., CEH, GPEN, LPT, or CEPT) and a Tenable Certified NESSUS Auditor (or ACAS equivalent) certification. 
  • REQUIRED Foundational Qualification: Defense Cyber Crime Center (DC3) Cyber 101 course completion.
  • Bachelor's degree or related technical training in Computer Science, Engineering, Information Management, or a related mission-area professional discipline required.
  • A minimum of seven (7) years of progressive IT experience combined with at least five (5) years of direct, specialized Cybersecurity experience. 
  • Tool Proficiency: Proven expert experience conducting CCRI-level evaluations and hands-on proficiency with tools including VULNERATOR, eMASS, ACAS/NESSUS, and HBSS (ePO, HIPS, AV).
  • Technical Environment Savvy: Deep engineering knowledge of core computing environments across varying Operating Systems (Windows, Unix/Linux), Boundary Defenses (firewalls, routers), and Web/Database services (SQL Server, Oracle, Apache, IIS).
  • Strong conceptual thinking and communication skills, with a documented track record of authoring high-fidelity Security Risk Assessments, standard operating procedures (SOPs), and technical analysis of alternatives (AoA) whitepapers. 

About the Company:

NexGen Data Systems is an emerging technologies focused company providing expert systems and network engineering solutions to the Department of Defense. NexGen Data Systems promotes a culture of knowledge and career advancement through continued learning, keeping our team current on the latest advances in systems and networking, and enabling our team to provide the best available solutions to our clients.


Benefits:

  • Company covers 100% of premiums for the employee's medical, dental, and vision insurance and subsidizes premiums for spouse and dependents.
  • Company provides short and long term disability plans.
  • 401(k) match up to 10% of the employee's salary contributions to 401(K) plan.
  • Comprehensive training and development program.
  • 11 paid holidays and paid time off (PTO) accrual level starts at 15 days annually.

All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability or protected veteran status.


NOTE: US Citizens and those authorized to work in the US are encouraged to apply. In order to be qualified for this position, you must be able to obtain and maintain a United States Department of Defense (DoD) security clearance. We are unable to sponsor Visas at this time. NexGen Data Systems provides equal employment opportunities (EEO) to all employees and applicants for employment without regard to race, color, religion, gender, sexual orientation, national origin, age, disability, marital status, amnesty, or status as a covered veteran in accordance with applicable federal, state and local laws.