Expertise in compliance management, internal or external audit, and GRC platforms is strongly ... risk, compliance, and cyber risk. * Research/write/create approximately six to eight research ...
Expertise in compliance management, internal or external audit, and GRC platforms is strongly ... risk, compliance, and cyber risk. * Research/write/create approximately six to eight research ...
Expertise in compliance management, internal or external audit, and GRC platforms is strongly ... risk, compliance, and cyber risk. * Research/write/create approximately six to eight research ...
Expertise in compliance management, internal or external audit, and GRC platforms is strongly ... risk, compliance, and cyber risk. * Research/write/create approximately six to eight research ...
Cyber Strategy, Risk & Compliance - AI Engineering for Cybersecurity - Senior Manager
$124K - $280K/yr
Industry/Sector Not Applicable Specialism Cybersecurity & Privacy Management Level Senior Manager ... The Opportunity As part of the Cyber Strategy, Risk & Compliance team, you will be at the forefront ...
Cyber Strategy, Risk & Compliance - AI Engineering for Cybersecurity - Senior Manager
$124K - $280K/yr
Industry/Sector Not Applicable Specialism Cybersecurity & Privacy Management Level Senior Manager ... The Opportunity As part of the Cyber Strategy, Risk & Compliance team, you will be at the forefront ...
Head of Cyber & Information Security Oversight (SVP)
$120K - $163K/yr
SVP, Head of Cyber & Information Security Oversight Why this role is important to us Enterprise Technology Risk Management (ETRM) is responsible for thought leadership, oversight, monitoring, and ...
Head of Cyber & Information Security Oversight (SVP)
$120K - $163K/yr
SVP, Head of Cyber & Information Security Oversight Why this role is important to us Enterprise Technology Risk Management (ETRM) is responsible for thought leadership, oversight, monitoring, and ...
Head of Cyber & Information Security Oversight (SVP)
Boston, MA · On-site
$120K - $163K/yr
SVP, Head of Cyber & Information Security Oversight Why this role is important to us Enterprise Technology Risk Management (ETRM) is responsible for thought leadership, oversight, monitoring, and ...
Head of Cyber & Information Security Oversight (SVP)
Boston, MA · On-site
$120K - $163K/yr
SVP, Head of Cyber & Information Security Oversight Why this role is important to us Enterprise Technology Risk Management (ETRM) is responsible for thought leadership, oversight, monitoring, and ...
Lead Cyber Risk Solutions Advisor
Boston, MA · On-site
$155K - $175K/yr
As a Lead Cyber Risk Advisor , you will be a vital member of the Qualys Cyber Risk Experts Service ... Foundational knowledge of vulnerability management, CVEs, CVSS, and exploitability metrics.
Lead Cyber Risk Solutions Advisor
Boston, MA · On-site
$155K - $175K/yr
As a Lead Cyber Risk Advisor , you will be a vital member of the Qualys Cyber Risk Experts Service ... Foundational knowledge of vulnerability management, CVEs, CVSS, and exploitability metrics.
Responsibilities : • Lead the transition of risk management from a cyber-centric model to an enterprise-wide framework -- expanding scope beyond cybersecurity to operational, financial, regulatory ...
Responsibilities : • Lead the transition of risk management from a cyber-centric model to an enterprise-wide framework -- expanding scope beyond cybersecurity to operational, financial, regulatory ...
Responsibilities : • Lead the transition of risk management from a cyber-centric model to an enterprise-wide framework -- expanding scope beyond cybersecurity to operational, financial, regulatory ...
Responsibilities : • Lead the transition of risk management from a cyber-centric model to an enterprise-wide framework -- expanding scope beyond cybersecurity to operational, financial, regulatory ...
Senior Risk & Compliance Analyst
Boston, MA · On-site
$130K - $170K/yr
Contribute to the continued development of cyber risk management processes, methodologies, and governance practices across the GRC program. QUALIFICATIONS: * 6+ years of experience in cybersecurity ...
Senior Risk & Compliance Analyst
Boston, MA · On-site
$130K - $170K/yr
Contribute to the continued development of cyber risk management processes, methodologies, and governance practices across the GRC program. QUALIFICATIONS: * 6+ years of experience in cybersecurity ...
Translate cyber and technology risks into business relevant impacts, enabling senior management to make informed, risk-based decisions. Cybersecurity Risk Management & Oversight * Establish and ...
Translate cyber and technology risks into business relevant impacts, enabling senior management to make informed, risk-based decisions. Cybersecurity Risk Management & Oversight * Establish and ...
Translate cyber and technology risks into business relevant impacts, enabling senior management to make informed, risk-based decisions. Cybersecurity Risk Management & Oversight * Establish and ...
Translate cyber and technology risks into business relevant impacts, enabling senior management to make informed, risk-based decisions. Cybersecurity Risk Management & Oversight * Establish and ...
Lead the transition of risk management from a cyber-centric model to an enterprise-wide framework - expanding scope beyond cybersecurity to operational, financial, regulatory, and third-party risk ...
Lead the transition of risk management from a cyber-centric model to an enterprise-wide framework - expanding scope beyond cybersecurity to operational, financial, regulatory, and third-party risk ...
Lead the transition of risk management from a cyber-centric model to an enterprise-wide framework - expanding scope beyond cybersecurity to operational, financial, regulatory, and third-party risk ...
Lead the transition of risk management from a cyber-centric model to an enterprise-wide framework - expanding scope beyond cybersecurity to operational, financial, regulatory, and third-party risk ...
Lead the transition of risk management from a cyber-centric model to an enterprise-wide framework -- expanding scope beyond cybersecurity to operational, financial, regulatory, and third-party risk ...
Quick apply
Lead the transition of risk management from a cyber-centric model to an enterprise-wide framework -- expanding scope beyond cybersecurity to operational, financial, regulatory, and third-party risk ...
... cyber strategy and governance, technology risk, IT audit, regulatory compliance, privacy, data protection, third-party risk management, cloud security, incident readiness, and managed risk services.
... cyber strategy and governance, technology risk, IT audit, regulatory compliance, privacy, data protection, third-party risk management, cloud security, incident readiness, and managed risk services.
Advisory Director Client Relationship Executive - Cyber & Risk
Boston, MA · On-site
$83K - $113K/yr
The Cyber & Risk CRE operates at the intersection of solution strategy, pursuit leadership, and executive relationship management - shaping how capabilities are packaged, positioned, and activated in ...
Advisory Director Client Relationship Executive - Cyber & Risk
Boston, MA · On-site
$83K - $113K/yr
The Cyber & Risk CRE operates at the intersection of solution strategy, pursuit leadership, and executive relationship management - shaping how capabilities are packaged, positioned, and activated in ...
The Cyber & Risk CRE operates at the intersection of solution strategy,pursuitleadership, and executive relationship management - shaping how capabilities are packaged, positioned, and activated in ...
The Cyber & Risk CRE operates at the intersection of solution strategy,pursuitleadership, and executive relationship management - shaping how capabilities are packaged, positioned, and activated in ...
The Cyber & Risk CRE operates at the intersection of solution strategy, pursuit leadership, and executive relationship management - shaping how capabilities are packaged, positioned, and activated in ...
New
The Cyber & Risk CRE operates at the intersection of solution strategy, pursuit leadership, and executive relationship management - shaping how capabilities are packaged, positioned, and activated in ...
New
Advisory Director Client Relationship Executive - Cyber & Risk
Boston, MA · On-site
$83K - $113K/yr
The Cyber & Risk CRE operates at the intersection of solution strategy,pursuitleadership, and executive relationship management - shaping how capabilities are packaged, positioned, and activated in ...
Advisory Director Client Relationship Executive - Cyber & Risk
Boston, MA · On-site
$83K - $113K/yr
The Cyber & Risk CRE operates at the intersection of solution strategy,pursuitleadership, and executive relationship management - shaping how capabilities are packaged, positioned, and activated in ...
Sr. Director, Governance, Risk & Compliance
Cambridge, MA · On-site
$229K - $310K/yr
Own the cyber risk management lifecycle, including risk identification, assessment, prioritization, treatment, and executive-level reporting. * Establish and maintain security governance frameworks ...
Sr. Director, Governance, Risk & Compliance
Cambridge, MA · On-site
$229K - $310K/yr
Own the cyber risk management lifecycle, including risk identification, assessment, prioritization, treatment, and executive-level reporting. * Establish and maintain security governance frameworks ...
Cyber Risk Management information
See Massachusetts salary details
$21.07 is the 25th percentile. Wages below this are outliers.
$15.75 - $21.67
28% of jobs
The median wage is $25.21 / hr.
$21.67 - $27.59
37% of jobs
$27.59 - $33.51
6% of jobs
$37.21 is the 75th percentile. Wages above this are outliers.
$33.51 - $39.43
6% of jobs
$39.43 - $45.35
12% of jobs
$45.35 - $51.27
0% of jobs
$51.27 - $57.18
0% of jobs
$57.18 - $63.10
8% of jobs
$63.10 - $69.02
0% of jobs
$69.02 - $74.94
0% of jobs
$74.94 - $80.86
2% of jobs
$15
$33
$80
How much do cyber risk management jobs pay per hour?
What is a Cyber Risk Management job?
A Cyber Risk Management job involves identifying, assessing, and mitigating cybersecurity risks that could impact an organization. Professionals in this field develop risk management frameworks, implement security controls, and ensure compliance with industry regulations. They work closely with IT and business teams to minimize cyber threats, such as data breaches and ransomware attacks. Their goal is to protect sensitive information and maintain business continuity.
Is SOC an entry level job?
What are the key skills and qualifications needed to thrive in the Cyber Risk Management position, and why are they important?
To thrive in Cyber Risk Management, you need a strong understanding of information security principles, risk assessment methodologies, and regulatory compliance, often supported by a degree in cybersecurity, information technology, or a related field. Familiarity with tools such as risk management software, vulnerability assessment platforms, and certifications like CISSP, CISM, or CRISC is highly valued. Excellent analytical thinking, communication, and problem-solving skills help professionals effectively advise stakeholders and coordinate incident response efforts. These skills are crucial for identifying, evaluating, and mitigating cyber risks to safeguard organizational assets and ensure business continuity.
Can you make $500,000 a year in cyber security?
Can you make $200,000 in cyber security?
What are some common challenges faced in a Cyber Risk Management role, and how are they typically addressed?
Professionals in Cyber Risk Management often encounter challenges such as keeping up with rapidly evolving cyber threats, ensuring compliance with complex regulations, and balancing security needs with business objectives. Addressing these issues requires continuous learning, leveraging up-to-date threat intelligence, and collaborating closely with IT, legal, and management teams to develop effective risk mitigation strategies. Many organizations encourage ongoing training and participation in industry events to stay current, while fostering a culture of open communication to quickly identify and address vulnerabilities. Embracing a proactive and adaptable approach ensures that cyber risks are managed effectively while supporting the organization’s goals.
What does a cyber risk manager do?

Full-time
Re-posted 15 days ago
Job description
At Forrester, we're trusted to work on trailblazing, mission critical problems that business and technology leaders face today. That's why we're always looking to empower talented individuals to perform at their best every single day. We're proud of our community of smart people and vibrant voices who come together to do what's right by our clients and each other. Our success is driven by curiosity, courage and customer obsession. The confidence and drive to be bold at work. Join us and build an extraordinary future.
About This Role:
Forrester is currently looking for a Senior Analyst to conduct research and deliver strategic advice for risk management leaders and their teams. The ideal candidate has a strong understanding of risk management roles, responsibilities, and the most important security and risk trends and their business and technology implications; deep knowledge and experience with risk management practices and methods; deep knowledge and expertise in cyber risk quantification; and deep experience in developing, maintaining, and communicating risk management artifacts including risk standards, procedures, appetite, registry, and business strategy. Expertise in compliance management, internal or external audit, and GRC platforms is strongly desired.
The successful candidate researches and uncovers the strategies, technologies, and best practices of risk management that create a resilient and opportunity-seeking business. The Senior Analyst delivers these insights and recommendations in written reports, presentations, inquiries, guidance sessions, and custom advisory for risk leaders across industries and geographies. Our research is aimed at helping enterprise clients solve business problems and improve business results by applying principles and best practices. We also advise vendors on their strategies, roadmaps, and messaging in line with our market insights and our recommendations for enterprise clients.
Job Description:
The Senior Analyst works as part of a high-performing team with a strong emphasis on collaborating with others in all aspects of the job. The Senior Analyst is expected to:
- Develop a deep understanding of what Forrester clients require to be successful as risk management leaders and professionals with a focus on how they help their organizations develop risk management capabilities that enable a resilient and opportunity-seeking business.
- Conduct primary research into risk management capabilities, practices, touchpoints, and artifacts in the context of supporting C-suite executives, business leaders, and appropriate committees.
- Help define the future of risk management, including how risk leaders and professionals can work with other key business functions and support organizational success.
- Work with different focus areas across Forrester research teams to develop a complete research portfolio on risk management, providing both input to others' research and writing reports incorporating expertise from across Forrester to provide a "big picture" view.
- Partner as appropriate with other Forrester analysts on broader risk topics: risk quantification, third-party risk, systemic risk, compliance, and cyber risk.
- Research/write/create approximately six to eight research projects per year - a mix of written reports, tools, webinars, videos, podcasts, infographics, and other intellectual property. Build visibility for their research and contribute to Forrester client communities.
- Consult with clients to apply Forrester's research in the context of their specific business environment and help solve their problems through inquiry, guidance, and advisory engagements.
- Establish an industry presence as an influential speaker and thinker; build relationships with journalists who cover the sector; and participate in vendor briefings and field press inquiries as necessary.
Job Requirements:
- Five to seven years as a research analyst, consultant, or practitioner where you have led or been involved in risk management, with a focus on cyber risk quantification, or an equal amount of time as product manager for vendors that serve the market.
- A deep intellectual curiosity about the effect of technology on the business landscape; solid business instincts and a practical understanding of what makes companies tick; and a creative view of markets, technologies, and attitudes combined with a fascination with the future.
- Superior listening, critical thinking, and writing skills as well as compelling presentation skills.
- The ability to take complex, disparate ideas and distill them into simple, provocative concepts - and be willing to take a stand on vendors and outcomes.
- The ability to travel up to 20% of the time.
Please note that the base salary range indicated here is inclusive of all applicable US geographies listed in this requisition, with the exception of New York City and Georgia. This salary range is based upon the position as described in the job listing. The offered compensation may vary within this range and is dependent upon the successful candidate's primary work location, experience, training, education, and credentials.
Base salary range: $119,000 - $193,000
Base salary range for Georgia: $106,000 - $174,000
Base salary range for New York City, NY: $136,000 - $222,000
For employees based in Washington State, the percentage listed here is an estimated bonus target as a percentage of base salary,in accordance with the Forrester Employee Bonus plan. Individual and company performance, as well as other eligibility criteria, will determine the actual incentive amount.
Bonus target: 10%
For information on benefits, please visit: https://forresterbenefits.com/
The application deadline is July 31, 2026. Please refer to the job posting on Forrester.com careers page if the deadline has been extended.
#LI-JM1
#LI-DNP#LI-DNIWe're a network of knowledge and experience leading to richer, fuller careers. Here, we're always learning. Whether you want to hone your strengths or discover new ones, Forrester is the place to go for it. It's a place where everyone is given the tools, support, and runway they need to go far. We'll be right there beside you, every step of the way.
Let's be bold, together.
Explore #ForresterLife on:
Glassdoor
FLSA Status:
ExemptHere at Forrester, we welcome people from all backgrounds and perspectives. Our aim is for all candidates to be able to fully participate in Forrester's recruitment process. If you would like to discuss a reasonable accommodation, please reach out to accommodationrequest@forrester.com.
Forrester Research, Inc. is an Equal Employment Opportunity Employer. As a federal contractor, Forrester encourages veterans and individuals with disabilities to apply for employment.
Benefits at a Glance
Benefits at a Glance - Cambridge
About Forrester
Sourced by ZipRecruiter
Industry
Scientific research and development services
Company size
1,001 - 5,000 Employees
Headquarters location
Cambridge, MA, US
Year founded
1983