Sets and executes the enterprise information security strategy for DLA Piper, aligning cyber risk management with firm strategy, client obligations, professional responsibility requirements ...
Sets and executes the enterprise information security strategy for DLA Piper, aligning cyber risk management with firm strategy, client obligations, professional responsibility requirements ...
Senior Manager - ServiceNow
Louisville, KY · On-site
Lead and mentor global teams to ensure high-quality delivery of ServiceNow cyber risk management services. The team Our Cyber Strategy & Transformation offering develops and transforms cyber programs ...
Senior Manager - ServiceNow
Louisville, KY · On-site
Lead and mentor global teams to ensure high-quality delivery of ServiceNow cyber risk management services. The team Our Cyber Strategy & Transformation offering develops and transforms cyber programs ...
The role champions cyber risk management, SOX/ITGC alignment, and incident response while partnering with senior leadership and the Board to protect revenue, customer trust, and operations. You will ...
The role champions cyber risk management, SOX/ITGC alignment, and incident response while partnering with senior leadership and the Board to protect revenue, customer trust, and operations. You will ...
Global Head of Cyber Security (Northern)
Eastern, KY · On-site
$81K - $110K/yr
The role owns the cyber security governance framework, maturity roadmap and enterprise cyber risk management required to safeguard operations, meet regulatory expectations and support business growth.
Global Head of Cyber Security (Northern)
Eastern, KY · On-site
$81K - $110K/yr
The role owns the cyber security governance framework, maturity roadmap and enterprise cyber risk management required to safeguard operations, meet regulatory expectations and support business growth.
$81K - $110K/yr
The role owns the cyber security governance framework, maturity roadmap and enterprise cyber risk management required to safeguard operations, meet regulatory expectations and support business growth.
$81K - $110K/yr
The role owns the cyber security governance framework, maturity roadmap and enterprise cyber risk management required to safeguard operations, meet regulatory expectations and support business growth.
We are the only company in the world with the expertise and resources to deliver global, end-to-end cyber risk management, supporting organizations through every step of their journey toward cyber ...
We are the only company in the world with the expertise and resources to deliver global, end-to-end cyber risk management, supporting organizations through every step of their journey toward cyber ...
Champion and build the Cyber GRC function, from vision through execution--including the creation ... Lead the third-party vendor risk management program, embedding cybersecurity into every aspect of ...
Champion and build the Cyber GRC function, from vision through execution--including the creation ... Lead the third-party vendor risk management program, embedding cybersecurity into every aspect of ...
Operational Risk Management: help protect the firm from non-financial risks such as process failures, technology and cyber risk, fraud, conduct issues, and third-party risk. As an intern, you'll sit ...
Operational Risk Management: help protect the firm from non-financial risks such as process failures, technology and cyber risk, fraud, conduct issues, and third-party risk. As an intern, you'll sit ...
$175K - $200K/yr
... management * Strong knowledge of credit risk, compliance/BSA, and ALM/IRR; familiarity with operational and cyber risk * Experience with NCUA exams, credit union audits, and Board reporting
$175K - $200K/yr
... management * Strong knowledge of credit risk, compliance/BSA, and ALM/IRR; familiarity with operational and cyber risk * Experience with NCUA exams, credit union audits, and Board reporting
Cybersecurity Strategy & Policy Analyst - Data Science / Cyber Metrics FocusClearance TS/SCI Shift ... Experience in cybersecurity analytics, risk management, or enterprise governance. * Experience with ...
Cybersecurity Strategy & Policy Analyst - Data Science / Cyber Metrics FocusClearance TS/SCI Shift ... Experience in cybersecurity analytics, risk management, or enterprise governance. * Experience with ...
Advanced Cyber Threat Response & Forensics Lead/Manager
Louisville, KY · On-site
$106K - $144K/yr
Our Cyber Risk practice helps organizations with the management of information and technology risks by delivering end-to-end solutions using proven methodologies and tools in a consistent manner. Our ...
Advanced Cyber Threat Response & Forensics Lead/Manager
Louisville, KY · On-site
$106K - $144K/yr
Our Cyber Risk practice helps organizations with the management of information and technology risks by delivering end-to-end solutions using proven methodologies and tools in a consistent manner. Our ...
... management. * Experience supporting governance, risk, and compliance workflows, including risk reporting, audit data requests, controls monitoring, controls testing, compliance metrics, governance ...
... management. * Experience supporting governance, risk, and compliance workflows, including risk reporting, audit data requests, controls monitoring, controls testing, compliance metrics, governance ...
Manage the Company's property and casualty insurance programs, including general liability, workers' compensation, automobile liability, umbrella/excess liability, builder's risk, cyber liability ...
Manage the Company's property and casualty insurance programs, including general liability, workers' compensation, automobile liability, umbrella/excess liability, builder's risk, cyber liability ...
$150 - $200/hr
Senior Manager, Cyber Tech, Trust and Mitigation 10117 Princess Palm Ave, Tampa, FL 33610, USA ... Own the risk management framework, ensuring risk assessments, control testing, and remediation are ...
$150 - $200/hr
Senior Manager, Cyber Tech, Trust and Mitigation 10117 Princess Palm Ave, Tampa, FL 33610, USA ... Own the risk management framework, ensuring risk assessments, control testing, and remediation are ...
Ensure cyber findings are reflected in deal documents and protections, including representations ... Risk Management and Compliance Establish the risk-acceptance and exception framework for inherited ...
Ensure cyber findings are reflected in deal documents and protections, including representations ... Risk Management and Compliance Establish the risk-acceptance and exception framework for inherited ...
$70K - $92K/yr
The role sits within Coalition's Security team, working across threat intelligence, cyber risk management, and defensive security controls. This role connects security analysis to business and ...
$70K - $92K/yr
The role sits within Coalition's Security team, working across threat intelligence, cyber risk management, and defensive security controls. This role connects security analysis to business and ...
... liability, and cyber liability insurance products and structures. * Possess excellent ... Bachelor's Degree required, additional education in Risk Management and Insurance Preferred.
... liability, and cyber liability insurance products and structures. * Possess excellent ... Bachelor's Degree required, additional education in Risk Management and Insurance Preferred.
Our Cyber Risk team partners with organizations around the world to deliver intelligence-driven security solutions that enable informed decision-making and proactive risk management. We are seeking ...
Our Cyber Risk team partners with organizations around the world to deliver intelligence-driven security solutions that enable informed decision-making and proactive risk management. We are seeking ...
Prepare monthly, quarterly, and ad-hoc cyber risk reporting inputs for governance committees, ORM, senior management, and Board-level audiences. * Support review of executive and Board-level ...
Prepare monthly, quarterly, and ad-hoc cyber risk reporting inputs for governance committees, ORM, senior management, and Board-level audiences. * Support review of executive and Board-level ...
$83K - $95K/yr
... cyber risk, data risk, fraud risk, and physical security risk management. At CIBC we enable the work environment most optimal for you to thrive in your role. You'll have the flexibility to manage ...
$83K - $95K/yr
... cyber risk, data risk, fraud risk, and physical security risk management. At CIBC we enable the work environment most optimal for you to thrive in your role. You'll have the flexibility to manage ...
Cyber Risk Management information
See Kentucky salary details
$16.75 is the 25th percentile. Wages below this are outliers.
$12.53 - $17.23
28% of jobs
The median wage is $20.05 / hr.
$17.23 - $21.94
37% of jobs
$21.94 - $26.65
6% of jobs
$29.59 is the 75th percentile. Wages above this are outliers.
$26.65 - $31.36
6% of jobs
$31.36 - $36.06
12% of jobs
$36.06 - $40.77
0% of jobs
$40.77 - $45.48
0% of jobs
$45.48 - $50.18
8% of jobs
$50.18 - $54.89
0% of jobs
$54.89 - $59.60
0% of jobs
$59.60 - $64.30
2% of jobs
$12
$26
$64
How much do cyber risk management jobs pay per hour?
What is cyber risk management?
A Cyber Risk Management job involves identifying, assessing, and mitigating cybersecurity risks that could impact an organization. Professionals in this field develop risk management frameworks, implement security controls, and ensure compliance with industry regulations. They work closely with IT and business teams to minimize cyber threats, such as data breaches and ransomware attacks. Their goal is to protect sensitive information and maintain business continuity.
What are some common challenges faced in a cyber risk management role, and how are they typically addressed?
Professionals in Cyber Risk Management often encounter challenges such as keeping up with rapidly evolving cyber threats, ensuring compliance with complex regulations, and balancing security needs with business objectives. Addressing these issues requires continuous learning, leveraging up-to-date threat intelligence, and collaborating closely with IT, legal, and management teams to develop effective risk mitigation strategies. Many organizations encourage ongoing training and participation in industry events to stay current, while fostering a culture of open communication to quickly identify and address vulnerabilities. Embracing a proactive and adaptable approach ensures that cyber risks are managed effectively while supporting the organization’s goals.
What are the key skills and qualifications needed to thrive in cyber risk management, and why are they important?
To thrive in Cyber Risk Management, you need a strong understanding of information security principles, risk assessment methodologies, and regulatory compliance, often supported by a degree in cybersecurity, information technology, or a related field. Familiarity with tools such as risk management software, vulnerability assessment platforms, and certifications like CISSP, CISM, or CRISC is highly valued. Excellent analytical thinking, communication, and problem-solving skills help professionals effectively advise stakeholders and coordinate incident response efforts. These skills are crucial for identifying, evaluating, and mitigating cyber risks to safeguard organizational assets and ensure business continuity.
How much does a cyber risk management professional make?
What does a cyber risk management do?
What are popular job titles related to Cyber Risk Management jobs in Kentucky?
For Cyber Risk Management jobs in Kentucky, the most frequently searched job titles are:
What job categories do people searching Cyber Risk Management jobs in Kentucky look for?
The top searched job categories for Cyber Risk Management jobs in Kentucky are:

Chief Information Security Officer
On-site
Other
Medical, Dental, Vision, Retirement
Posted 11 days ago
Key responsibilities
Leads the development and implementation of the firm's information security strategy, including security governance, risk management, incident response, and data protection.
Serves as the senior incident response leader, managing security events, investigation, containment, and coordination with relevant stakeholders.
Provides objective cyber risk advice to firm leadership and oversees enterprise cyber risk identification, assessment, and reporting.
Job description
The Chief Information Security Officer (CISO), working in collaboration with and in support of the firm’s strategic initiatives, is a senior executive responsible for protecting DLA Piper’s clients, people, data, reputation, and global business operations by leading a mature, business-aligned information security and cyber risk program. This role sets the strategic direction for the firm’s Information Security Management System, security governance, risk management, incident response, third-party security, data protection, and security awareness programs.
Operating as a trusted advisor to firm leadership, the Office of General Counsel, Information Technology, Information Governance, Risk Management, practice leadership, and global counterparts, the CISO ensures the confidentiality, integrity, and availability of client and firm information while enabling innovation, responsible AI adoption, operational resilience, and exceptional client service. The CISO works closely with, but independently from, the Information Technology function to provide objective risk oversight, policy leadership, executive reporting, and continuous improvement of the firm’s security posture.
LocationThis position can sit in our Atlanta, Baltimore, Boston, Miami, New York, Northern Virginia, Philadelphia, Raleigh, Short Hills, Washington D.C., or Wilmington office. Candidates must reside within a reasonable commuting distance of their assigned office and be available for periodic travel.
Responsibilities- Sets and executes the enterprise information security strategy for DLA Piper, aligning cyber risk management with firm strategy, client obligations, professional responsibility requirements, regulatory expectations, and operational resilience objectives.
- Sets and executes the enterprise information security strategy for DLA Piper, aligning cyber risk management with firm strategy, client obligations, professional responsibility requirements, regulatory expectations, and operational resilience objectives.
- Leads the firm’s Information Security Management System and security governance framework, including policy development, risk assessment, control monitoring, executive reporting, audit readiness, certification support, and continuous improvement.
- Serves as the senior incident response leader for information security events, ensuring prompt triage, containment, investigation, evidence preservation, root‑cause analysis, remediation, lessons learned, and appropriate coordination with the Office of General Counsel, firm leadership, insurers, regulators, law enforcement, vendors, and affected clients when required.
- Partners with executive leadership, Information Technology, AI Innovation, AI Governance, Information Governance, Risk Management, Privacy, Procurement, Finance, Human Resources, practice leaders, and global counterparts to embed security‑by‑design into firm operations, technology investments, client service delivery, and major transformation initiatives.
- Provides objective cyber risk advice to firm leadership and governance bodies, translating complex technical risk into clear business, legal, reputational, operational, and client‑impact terms that enable timely and informed decision‑making.
- Oversees enterprise cyber risk identification, assessment, treatment, acceptance, and reporting, including vulnerabilities, threat intelligence, identity and access risk, cloud and infrastructure security, application security, data loss prevention, endpoint protection, email security, ransomware preparedness, and business continuity dependencies.
- Leads security oversight of client and firm confidential information, including data classification, access controls, encryption, retention, secure disposal, cross‑border data considerations, ethical walls, client outside counsel guidelines, and matter‑specific security obligations.
- Directs third‑party and supplier security risk management in partnership with Procurement, Information Technology, Information Governance, and business owners, ensuring vendors that access firm or client data are assessed, monitored, and held to appropriate security, privacy, contractual, and operational standards.
- Guides security review and risk oversight for emerging technologies, cloud services, legal technology, artificial intelligence, automation, analytics, and internally developed tools, ensuring innovation is deployed responsibly and in compliance with firm policies, client requirements, and applicable legal and ethical obligations.
- Builds, develops, and leads a high‑performing information security organization with the expertise, credibility, accountability, and service orientation required to support a complex, global, partner‑led professional services environment.
- Defines and manages the Information Security team’s operating model, including functional roles, accountability structures, governance routines, service levels, intake and prioritization processes, escalation protocols, on‑call expectations, and coordination with Information Technology, Risk, Information Governance, Privacy, Procurement, Human Resources, and practice leadership.
- Recruits, develops, coaches, and retains a high‑caliber Information Security team with the technical depth, risk judgment, executive presence, discretion, and client‑service mindset required to operate effectively in a global law firm environment.
- Sets clear goals and performance expectations for the Information Security team, regularly assesses performance against strategic objectives and operational metrics, addresses performance gaps, recognizes strong contributions, and ensures the team has the training, tools, resources, and authority needed to execute effectively.
- Provides strategic, operational, and people leadership to the Information Security function, including direct and indirect leadership of security professionals, managers, analysts, advisors, vendors, and cross‑functional contributors.
- Defines the team’s vision, operating model, service standards, decision rights, escalation paths, and priorities to ensure the function delivers consistent, timely, risk‑based, and business‑aligned support across the firm. Builds a culture of accountability, confidentiality, trust, excellence, service orientation, continuous improvement, inclusion, and business partnership.
- Responsible for onboarding, coaching, performance management, succession planning, professional development, retention, resource allocation, budget input, vendor oversight, and effective delegation across the security program.
- Deep technical engineering expertise in technology infrastructure, Cloud, zero‑trust architecture and cyber defense. Proven ability to leverage frameworks like NIST to build and operate a comprehensive defense in depth capability. Proven ability in change management, building trust with partners and transforming organizations. Experience in a global law firm, professional services firm, financial services institution, technology company, or similarly complex environment strongly preferred. Demonstrated success leading cybersecurity strategy, enterprise risk governance, incident response, regulatory and client‑facing security matters, third‑party risk, audit/certification programs, security awareness, and high performing teams. Experience advising senior executives, boards, managing partners, or equivalent governance bodies required.
- Executive‑level knowledge of cybersecurity strategy, governance, risk, compliance, privacy, data protection, incident response, threat intelligence, vulnerability management, identity and access management, cloud and network security, application security, endpoint protection, email security, encryption, logging and monitoring, disaster recovery, business continuity, third‑party risk, DevSecOps, modernized secure development practices including AI SDLC, and secure technology adoption. Strong understanding of professional responsibility, client confidentiality, data classification, privilege‑sensitive work, outside counsel guidelines, ethical walls, cross‑border data considerations, and the security expectations of sophisticated global clients.
- Demonstrated ability to translate technical risk into business and legal impact, influence senior stakeholders, lead through ambiguity, make sound risk‑based decisions, and communicate with clarity, credibility, discretion, and urgency. Familiarity with ISO/IEC 27001, NIST, CIS Controls, data privacy laws, cyber insurance considerations, AI governance, and emerging legal sector cybersecurity risks strongly preferred. A leader who thrives on learning and is up to date with the fast‑evolving technology landscape, especially the changing threats with the advancement of AI. Ability to not only understand security tools/needs, how these are changing but also go back to first principles in solving the underlying problems through innovation.
- Demonstrate executive presence, credibility, sound judgment, and professional maturity in all interactions, particularly when advising firm leadership, senior partners, governance bodies, clients, regulators, vendors, and other high‑impact stakeholders on sensitive, complex, or time‑critical information security matters. Communicate with clarity, confidence, discretion, and appropriate urgency, translating complex technical, legal, operational, and risk issues into concise business terms that enable informed decisions by senior leaders and non‑technical audiences. Influence senior leaders and stakeholders through trusted relationships, fact‑based analysis, persuasive recommendations, and a firm‑first approach that balances client expectations, legal and regulatory obligations, operational realities, risk appetite, and strategic business priorities.
- Build alignment across a complex, matrixed, partner‑led environment by listening effectively, anticipating concerns, managing competing perspectives, escalating appropriately, and helping leaders reach timely, defensible, and consistently supported decisions. Prepare and deliver executive‑level briefings, written updates, risk narratives, Executive Committee materials, client‑facing responses, and incident communications that are accurate, audience‑appropriate, concise, and aligned with firm standards and confidentiality obligations. Lead difficult or sensitive conversations with diplomacy, composure, courage, and empathy, including situations involving cyber incidents, policy exceptions, risk acceptance, resource tradeoffs, control gaps, or competing leadership priorities.
- Bachelor’s Degree in Information Security, Cybersecurity, Information Technology, Computer Science, Engineering, Business, Risk Management, Law, or a related field; equivalent senior leadership experience may be considered, where appropriate.
- Master’s Degree in MBA, M.S. in Cybersecurity/Information Security, J.D., or other relevant advanced degree preferred.
- Relevant professional certifications are strongly preferred, such as CISSP, CISM, CISA, CRISC, CCISO, GIAC, ISO/IEC 27001 Lead Implementer or Lead Auditor, or comparable credentials. Demonstrated ongoing professional development in cybersecurity, privacy, risk governance, incident response, cloud security, AI governance, and legal/professional services risk is expected.
- 15+ years’ progressive information security, cybersecurity, technology risk, privacy, compliance, or enterprise risk leadership experience, including significant executive‑level responsibility for a complex, highly regulated, client‑facing organization.
- Communicate effectively, both verbally and in writing, with clients, lawyers, business professionals, and external audiences.
- Produce high‑quality work and respond to correspondence in an efficient, timely, and professional manner.
- Meet deadlines, manage competing priorities, and commit to meeting high standards.
- Comply with firm policies and procedures.
- Maintain confidences as required in a law firm environment.
Sedentary work: This is primarily sedentary work, requiring occasional exertion of up to 10 pounds of force to lift, carry, push, pull, or move objects. The role involves sitting for extended periods, with occasional walking and standing, and occasional travel, both domestic and international.
Work EnvironmentThe individual selected for this position may have the opportunity for a hybrid work arrangement combining remote and in‑office work. The specific arrangement will be determined at the time of hiring and may be modified at the firm’s discretion.
DisclaimerThe purpose of this job description is to provide a concise statement of the work elements and to organize and present the information in a standardized way. It is not intended to describe all the elements of the work that may be performed by every individual in this classification, nor should it serve as the sole criteria for personnel decisions and actions. The job duties, requirements, and expectations for this position may be modified at the Firm’s discretion at any time. This job description does not change the at‑will nature of employment.
AccommodationReasonable accommodations may be made upon request to enable individuals with disabilities to perform the essential functions of this position or participate in the selection process. For accommodation requests, please contact careers@us.dlapiper.com.
Benefits- medical/dental/vision insurance, and 401(k)
The firm’s expected hiring range for this position is $550,000 - $650,000 per year depending on the candidate’s geographic market location.
RelocationApplicants who are not based in the jurisdiction in which this position is posted and who apply for this role are doing so voluntarily and are not eligible for relocation assistance. Any relocation benefits, if any, are provided only where a relocation is required at the firm’s direction and in accordance with applicable policy and law.
Equal OpportunityDLA Piper is an equal opportunity employer.
All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or status as a protected veteran.
Job DetailsJob applicant poster viewing center.
Company CultureWe are committed to excellence in how we serve our clients and develop our people.
About Associated Builders And Contrs
Sourced by ZipRecruiter
Industry
Education
Company size
11 - 50 Employees
Headquarters location
Tampa, FL, US
Year founded
1950