... Cyber Trust Mark ... Produce high-quality written reports that clearly communicate technical findings, risk ratings, and ...
... Cyber Trust Mark ... Produce high-quality written reports that clearly communicate technical findings, risk ratings, and ...
$99K - $100K/yr
... risk assessments (TARAs), SBOM/SCA generation, vulnerability response coordination, triage and ... Cyber Resilience Act (CRA) sustainable compliance, and adjacent offerings with Finite State's AI ...
$99K - $100K/yr
... risk assessments (TARAs), SBOM/SCA generation, vulnerability response coordination, triage and ... Cyber Resilience Act (CRA) sustainable compliance, and adjacent offerings with Finite State's AI ...
Cybersecurity Analyst, Security and AI Governance - Overland Park, KS
Overland Park, KS · On-site
$100K - $120K/yr
... from cyber threats and misuse. This role serves as a key contributor to both cybersecurity ... Familiarity with AI governance principles and emerging AI risk management frameworks.
Cybersecurity Analyst, Security and AI Governance - Overland Park, KS
Overland Park, KS · On-site
$100K - $120K/yr
... from cyber threats and misuse. This role serves as a key contributor to both cybersecurity ... Familiarity with AI governance principles and emerging AI risk management frameworks.
Senior Agentic Identity Security Manager
Overland Park, KS · On-site
$108K - $148K/yr
We blend risk strategy, digital identity, cyber defense, application security, and managed service solutions to rethink the entire security lifecycle. Do you have the deep functional and technical ...
Senior Agentic Identity Security Manager
Overland Park, KS · On-site
$108K - $148K/yr
We blend risk strategy, digital identity, cyber defense, application security, and managed service solutions to rethink the entire security lifecycle. Do you have the deep functional and technical ...
Deputy Technical Support Team Chief
$112K - $257K/yr
... cyber operations to enable realistic, high-fidelity training. You'll guide the work we do for the ... Knowledge of Risk Management Framework security policy procedures * Knowledge of Army and Joint ...
Deputy Technical Support Team Chief
$112K - $257K/yr
... cyber operations to enable realistic, high-fidelity training. You'll guide the work we do for the ... Knowledge of Risk Management Framework security policy procedures * Knowledge of Army and Joint ...
Deputy Technical Support Team Chief
Leavenworth, KS · On-site
$112K - $257K/yr
... cyber operations to enable realistic, high-fidelity training. You'll guide the work we do for the ... Knowledge of Risk Management Framework security policy procedures * Knowledge of Army and Joint ...
Deputy Technical Support Team Chief
Leavenworth, KS · On-site
$112K - $257K/yr
... cyber operations to enable realistic, high-fidelity training. You'll guide the work we do for the ... Knowledge of Risk Management Framework security policy procedures * Knowledge of Army and Joint ...
... cyber operations to enable realistic, high-fidelity training. You'll guide the work we do for the ... Knowledge of Risk Management Framework security policy procedures * Knowledge of Army and Joint ...
... cyber operations to enable realistic, high-fidelity training. You'll guide the work we do for the ... Knowledge of Risk Management Framework security policy procedures * Knowledge of Army and Joint ...
Deputy Technical Support Team Chief
Leavenworth, KS · On-site
$112K - $257K/yr
... cyber operations to enable realistic, high-fidelity training. You'll guide the work we do for the ... Knowledge of Risk Management Framework security policy procedures * Knowledge of Army and Joint ...
Deputy Technical Support Team Chief
Leavenworth, KS · On-site
$112K - $257K/yr
... cyber operations to enable realistic, high-fidelity training. You'll guide the work we do for the ... Knowledge of Risk Management Framework security policy procedures * Knowledge of Army and Joint ...
... Cyber, and Multinational Clients. We are reimagining how we help customers to manage risk, transforming our operating model and reshaping our role responsibilities and career pathways. The goal is to ...
... Cyber, and Multinational Clients. We are reimagining how we help customers to manage risk, transforming our operating model and reshaping our role responsibilities and career pathways. The goal is to ...
... Cyber, and Multinational Clients. We are reimagining how we help customers to manage risk, transforming our operating model and reshaping our role responsibilities and career pathways. The goal is to ...
... Cyber, and Multinational Clients. We are reimagining how we help customers to manage risk, transforming our operating model and reshaping our role responsibilities and career pathways. The goal is to ...
Deputy Technical Support Team Chief with Security Clearance
Leavenworth, KS · On-site
$112K - $257K/yr
... cyber operations to enable realistic, high-fidelity training. You'll guide the work we do for the ... Knowledge of Risk Management Framework security policy procedures * Knowledge of Army and Joint ...
Deputy Technical Support Team Chief with Security Clearance
Leavenworth, KS · On-site
$112K - $257K/yr
... cyber operations to enable realistic, high-fidelity training. You'll guide the work we do for the ... Knowledge of Risk Management Framework security policy procedures * Knowledge of Army and Joint ...
Senior Underwriter, Construction
$100K - $165K/yr
In this role, the underwriter will effectively manage agent relationships and collaborate with ... Risk, and ancillary lines while ensuring adherence to our established underwriting strategy and ...
Senior Underwriter, Construction
$100K - $165K/yr
In this role, the underwriter will effectively manage agent relationships and collaborate with ... Risk, and ancillary lines while ensuring adherence to our established underwriting strategy and ...
Senior Underwriter, Construction
Overland Park, KS · On-site
$100K - $165K/yr
... Cyber, Accident & Health, and other relevant products. * Work closely with local Business Development Managers to identify opportunities for growth and production enhancement within assigned agencies.
Senior Underwriter, Construction
Overland Park, KS · On-site
$100K - $165K/yr
... Cyber, Accident & Health, and other relevant products. * Work closely with local Business Development Managers to identify opportunities for growth and production enhancement within assigned agencies.
Information Assurance Systems Administrator
Leavenworth, KS · On-site
$61K - $141K/yr
... cyber threats, mitigate vulnerabilities, and maintain system integrity in both classified and ... Risk Management Framework (RMF): Support the RMF process by ensuring all systems are built ...
Information Assurance Systems Administrator
Leavenworth, KS · On-site
$61K - $141K/yr
... cyber threats, mitigate vulnerabilities, and maintain system integrity in both classified and ... Risk Management Framework (RMF): Support the RMF process by ensuring all systems are built ...
Information Assurance Systems Administrator
$61K - $141K/yr
... cyber threats, mitigate vulnerabilities, and maintain system integrity in both classified and ... Risk Management Framework (RMF):Support the RMF process by ensuring all systems are built ...
Information Assurance Systems Administrator
$61K - $141K/yr
... cyber threats, mitigate vulnerabilities, and maintain system integrity in both classified and ... Risk Management Framework (RMF):Support the RMF process by ensuring all systems are built ...
... cyber threats, mitigate vulnerabilities, and maintain system integrity in both classified and ... Risk Management Framework (RMF): Support the RMF process by ensuring all systems are built ...
... cyber threats, mitigate vulnerabilities, and maintain system integrity in both classified and ... Risk Management Framework (RMF): Support the RMF process by ensuring all systems are built ...
Information Assurance Systems Administrator
Leavenworth, KS · On-site
$61K - $141K/yr
... cyber threats, mitigate vulnerabilities, and maintain system integrity in both classified and ... Risk Management Framework (RMF): Support the RMF process by ensuring all systems are built ...
Information Assurance Systems Administrator
Leavenworth, KS · On-site
$61K - $141K/yr
... cyber threats, mitigate vulnerabilities, and maintain system integrity in both classified and ... Risk Management Framework (RMF): Support the RMF process by ensuring all systems are built ...
Our small business insurance product suite continues to expand with Cyber, BOP, Employment ... AmTrust provides insurance protection, warranty programs and risk management expertise to small ...
Our small business insurance product suite continues to expand with Cyber, BOP, Employment ... AmTrust provides insurance protection, warranty programs and risk management expertise to small ...
Our small business insurance product suite continues to expand with Cyber, BOP, Employment ... AmTrust provides insurance protection, warranty programs and risk management expertise to small ...
Our small business insurance product suite continues to expand with Cyber, BOP, Employment ... AmTrust provides insurance protection, warranty programs and risk management expertise to small ...
Claim Examiner Associate - Overland Park Office
Overland Park, KS · On-site
$26.50/hr
Our small business insurance product suite continues to expand with Cyber, BOP, Employment ... AmTrust provides insurance protection, warranty programs and risk management expertise to small ...
Claim Examiner Associate - Overland Park Office
Overland Park, KS · On-site
$26.50/hr
Our small business insurance product suite continues to expand with Cyber, BOP, Employment ... AmTrust provides insurance protection, warranty programs and risk management expertise to small ...
Cyber Risk Manager information
See Kansas salary details
$45.9K - $55.5K
4% of jobs
$55.5K - $65.1K
6% of jobs
$65.1K - $74.8K
11% of jobs
$78.4K is the 25th percentile. Wages below this are outliers.
$74.8K - $84.4K
11% of jobs
The median wage is $92K / yr.
$84.4K - $94K
23% of jobs
$94K - $103.6K
13% of jobs
$109.9K is the 75th percentile. Wages above this are outliers.
$103.6K - $113.2K
12% of jobs
$113.2K - $122.8K
8% of jobs
$122.8K - $132.4K
6% of jobs
$132.4K - $142K
4% of jobs
$142K - $151.6K
2% of jobs
$45.9K
$99.5K
$151.6K
How much do cyber risk manager jobs pay per year?
How does a Cyber Risk Manager typically collaborate with other departments to strengthen an organization's cybersecurity posture?
What is the difference between Cyber Risk Manager vs Cybersecurity Analyst?
| Aspect | Cyber Risk Manager | Cybersecurity Analyst |
|---|---|---|
| Certifications | CRISC, CISSP, CISM | CompTIA Security+, CISSP, CEH |
| Work Environment | Risk assessment, policy development, strategic planning | Monitoring security systems, incident response, vulnerability testing |
| Employer & Industry Usage | Financial, healthcare, large enterprises | IT departments, security firms, corporate environments |
The Cyber Risk Manager focuses on identifying, assessing, and mitigating organizational cyber risks through strategic planning and policy development. In contrast, the Cybersecurity Analyst primarily monitors security systems, responds to incidents, and tests vulnerabilities. Both roles require certifications like CISSP, but their daily tasks and focus areas differ significantly, with the manager taking a broader, strategic approach and the analyst handling operational security tasks.
What are the key skills and qualifications needed to thrive as a Cyber Risk Manager, and why are they important?
Can you make $500,000 a year in cyber security?
Is CISO a high paying job?
What does a cyber risk manager do?
What is the 80 20 rule in cyber security?
Job description
Role Summary
Finite State is seeking an experienced IoT / ICS / OT and Penetration Tester to join our growing Services team. In this role you will conduct hands-on security assessments of connected devices, embedded systems, industrial control systems, and automotive platforms on behalf of our customers. You will combine deep hardware and firmware expertise with a consultative mindset to deliver clear, actionable findings that help manufacturers and operators understand and reduce risk.Â
Responsibilities
- Plan and execute penetration tests and security assessments against IoT, ICS/OT, and automotive targets, including connected consumer devices, industrial controllers, and automotive ECUs and telematics units.
- Perform hardware interaction and firmware extraction using techniques such as JTAG, SWD, UART, SPI, I2C, eMMC, and NAND flash dumping; solder and rework PCBs as needed to gain access to debug interfaces.
- Conduct firmware reverse engineering using tools such as Ghidra and Binary Ninja to identify vulnerabilities including memory corruption, authentication bypasses, hard-coded credentials, and insecure update mechanisms.
- Assess wireless protocols common in IoT and automotive environments, including Bluetooth / BLE, Zigbee, Z-Wave, Wi-Fi, Cellular (LTE/5G), CAN bus, LIN, and automotive Ethernet.
- Perform source code review, primarily in C, C++, and related embedded languages, to identify security weaknesses in firmware and embedded software.
- Conduct supply chain and software composition analysis, including SBOM review and analysis of third-party open-source components, to identify known vulnerabilities and license risks.
- Evaluate customer products and programs for compliance with relevant regulations and standards, including EN 303 645, the EU Cyber Resilience Act (CRA), EU Radio Equipment Directive (CE RED), UNECE WP.29 / ISO 21434 for automotive, and the US IoT Cyber Trust Mark.
- Produce high-quality written reports that clearly communicate technical findings, risk ratings, and remediation guidance to both technical and executive audiences.
- Leverage AI-powered security tooling and LLM-assisted workflows to accelerate analysis, triage, and reporting; maintain awareness of evolving AI capabilities relevant to embedded security research.
- Collaborate with the product, engineering, and research teams to feed pentesting findings back into the Finite State platform and improve detection capabilities.
- Support customer-facing engagements including scoping calls, technical debriefs, and remediation follow-up.
- Contribute to internal knowledge sharing, tooling development, and methodology improvement.
- Participate in industry conferences, publish research, and represent Finite State externally as opportunities arise.
Required Qualifications
- Bachelor's degree in Computer Science, Electrical Engineering, Computer Engineering, or a related field
- Â 5+ years of hands-on experience in IoT, embedded, ICS/OT, or automotive security.
- Demonstrated experience performing hardware-level security assessments: JTAG/SWD debugging, SPI/I2C/UART communication, flash memory extraction, and PCB soldering and rework.
- Proficiency with firmware reverse engineering tools, specifically Ghidra and/or Binary Ninja; ability to analyze ARM, MIPS, PPC, x86, and x64 architectures.
- Experience testing IoT and automotive wireless protocols, including BLE, Zigbee, Z-Wave, Wi-Fi, CAN bus, and cellular interfaces.
- Ability to read and review source code in C and C++ to identify memory safety issues, authentication flaws, and other security weaknesses in embedded software.
- Familiarity with SBOM concepts, formats (CycloneDX, SPDX), and the use of SBOMs in vulnerability management.
- Working knowledge of relevant regulations and standards, including at least a subset of: EU CRA, CE RED / EN 303 645, UNECE WP.29, ISO 21434, or the US IoT Cyber Trust Mark.
- Excellent written and verbal communication skills; proven ability to write clear, well-structured technical reports and present findings to diverse audiences.
- Experience with scripting and automation using Python and Bash to support tooling and workflow efficiency.
- Familiarity with AI-assisted security tooling and an interest in applying LLM-based workflows to accelerate security analysis and reporting.
- Hands-on automotive security experience: OBD-II assessment, ECU flashing and analysis, V2X protocols, or automotive HSM evaluation.
- Experience with industrial control system (ICS/SCADA) security assessments and familiarity with protocols such as Modbus, DNP3, EtherNet/IP, or OPC-UA.
- CVE or responsible disclosure history demonstrating original vulnerability research in embedded or IoT targets.
- Relevant certifications such as OSCP, GPEN, GICSP, or vendor-specific automotive security credentials.
- Familiarity with static and dynamic analysis platforms and SAST/DAST tooling in the context of firmware and embedded software.
- Experience with ML-based vulnerability detection models or AI-augmented reverse engineering pipelines.
- Experience working on small, fast-moving consulting or product security teams.
- Comfort operating in AWS or similar cloud environments used to support analysis pipelines or customer deliverables.
Why Finite State?
- Be part of building the leading platform for connected device cybersecurity
- Join a fast-moving team that values transparency, innovation and impact
- Work fully remotely with a high degree of autonomy and ownership
- Comprehensive benefits
- Investment: learning stipends to support your professional development
- Equity: share in our growth and success
- Help solve some of the most pressing cybersecurity challenges facing connected device manufacturers and the millions of people who depend on them
About Finite State
Sourced by ZipRecruiter
Industry
Network security
Company size
11 - 50 Employees
Headquarters location
Columbus, OH, US
Year founded
2017