Are you interested in improving the cyber and organizational risk profiles of leading companies? Do ... management). Ability to travel 0-25%, on average, based on client and project needs. Limited ...
Are you interested in improving the cyber and organizational risk profiles of leading companies? Do ... management). Ability to travel 0-25%, on average, based on client and project needs. Limited ...
Risk Manager - Insurance
Frankfort, KY · On-site
$110K - $145K/yr
Risk Manager - Insurance Fully Remote: applicants in Eastern or Central Time Zone Supporting ... Conduct comprehensive risk evaluations across property, casualty, liability, professional, cyber ...
New
Risk Manager - Insurance
Frankfort, KY · On-site
$110K - $145K/yr
Risk Manager - Insurance Fully Remote: applicants in Eastern or Central Time Zone Supporting ... Conduct comprehensive risk evaluations across property, casualty, liability, professional, cyber ...
New
Cyber Data Protection Manager
Louisville, KY · Remote
$106.70K - $144.10K/yr
If so, consider joining Deloitte & Touche LLP's growing Cyber Risk Digital Trust & Privacy practice ... Manage and lead the proposal development process * Contribute to Deloitte's thought leadership in ...
Cyber Data Protection Manager
Louisville, KY · Remote
$106.70K - $144.10K/yr
If so, consider joining Deloitte & Touche LLP's growing Cyber Risk Digital Trust & Privacy practice ... Manage and lead the proposal development process * Contribute to Deloitte's thought leadership in ...
Cyber Data Protection/PKI Manager
Louisville, KY · Hybrid
$106.70K - $144.10K/yr
Through powerful solutions and managed services that simplify complexity, we enable our clients to ... Includes design of the cyber organization, governance, and risk assessments. Qualifications ...
Cyber Data Protection/PKI Manager
Louisville, KY · Hybrid
$106.70K - $144.10K/yr
Through powerful solutions and managed services that simplify complexity, we enable our clients to ... Includes design of the cyber organization, governance, and risk assessments. Qualifications ...
Cyber Data Protection/Sharepoint Senior Consultant Are you passionate about helping leading ... lifecycle management, and collaboration risk reduction * Experience gathering requirements ...
Cyber Data Protection/Sharepoint Senior Consultant Are you passionate about helping leading ... lifecycle management, and collaboration risk reduction * Experience gathering requirements ...
Through solutions and managed services that simplify complexity, we help clients operate with resilience, grow with confidence, and proactively manage cyber, risk, and technology programs. Recruiting ...
Through solutions and managed services that simplify complexity, we help clients operate with resilience, grow with confidence, and proactively manage cyber, risk, and technology programs. Recruiting ...
Cyber Manager - ServiceNow
Louisville, KY · On-site +1
$106.70K - $144.10K/yr
Cyber Manager - ServiceNow Our Deloitte Cyber team understands the unique challenges and ... It includes design of the cyber organization, governance, and risk assessments. Qualifications ...
Cyber Manager - ServiceNow
Louisville, KY · On-site +1
$106.70K - $144.10K/yr
Cyber Manager - ServiceNow Our Deloitte Cyber team understands the unique challenges and ... It includes design of the cyber organization, governance, and risk assessments. Qualifications ...
Manager - Cyber Resilience
Frankfort, KY · On-site
$83.43K - $222.48K/yr
Defines or develops risk management policies and procedures to support the implementation of cyber resiliency processes and controls across the enterprise * Oversees preparation and submission of ...
Manager - Cyber Resilience
Frankfort, KY · On-site
$83.43K - $222.48K/yr
Defines or develops risk management policies and procedures to support the implementation of cyber resiliency processes and controls across the enterprise * Oversees preparation and submission of ...
R&I Cybersecurity & AI Risk Senior Manager
Louisville, KY · On-site
$91K - $321.50K/yr
The Opportunity As part of the Cyber, Privacy, Data & AI Risk team you will provide specialist assistance across cybersecurity, privacy, data, and AI risk. As a Senior Manager you will support the ...
R&I Cybersecurity & AI Risk Senior Manager
Louisville, KY · On-site
$91K - $321.50K/yr
The Opportunity As part of the Cyber, Privacy, Data & AI Risk team you will provide specialist assistance across cybersecurity, privacy, data, and AI risk. As a Senior Manager you will support the ...
Through powerful solutions and managed services that simplify complexity, we enable our clients to ... Includes design of the cyber organization, governance, and risk assessments. Qualifications ...
Through powerful solutions and managed services that simplify complexity, we enable our clients to ... Includes design of the cyber organization, governance, and risk assessments. Qualifications ...
Cyber Manager - ServiceNow
Louisville, KY · On-site
$106.50K - $143.90K/yr
As a Cyber Manager - ServiceNow, you will lead the delivery of multi-workstream ServiceNow programs ... Risk Management workstreams in partnership with architects and product owners • Managing ...
Cyber Manager - ServiceNow
Louisville, KY · On-site
$106.50K - $143.90K/yr
As a Cyber Manager - ServiceNow, you will lead the delivery of multi-workstream ServiceNow programs ... Risk Management workstreams in partnership with architects and product owners • Managing ...
Partner with Procurement, Legal, Finance, Cyber, Risk, and Service Area owners to ensure vendor ... Contract Management Pro * Performance Analytics (PA) * Strategic Portfolio Management (SPM ...
Partner with Procurement, Legal, Finance, Cyber, Risk, and Service Area owners to ensure vendor ... Contract Management Pro * Performance Analytics (PA) * Strategic Portfolio Management (SPM ...
Partner with Procurement, Legal, Finance, Cyber, Risk, and Service Area owners to ensure vendor ... Ability to manage and prioritize multiple tasks in a fast-paced and dynamic environment * Strong ...
Partner with Procurement, Legal, Finance, Cyber, Risk, and Service Area owners to ensure vendor ... Ability to manage and prioritize multiple tasks in a fast-paced and dynamic environment * Strong ...
Manager, Cyber Operations
Frankfort, KY · On-site
$96.40K - $130.30K/yr
The Manager, Information Security & Risk (Purple Team) leads the organization's adversarial testing ... Ensure Purple Team activities support regulatory, audit, cyber insurance, and customer assurance ...
Manager, Cyber Operations
Frankfort, KY · On-site
$96.40K - $130.30K/yr
The Manager, Information Security & Risk (Purple Team) leads the organization's adversarial testing ... Ensure Purple Team activities support regulatory, audit, cyber insurance, and customer assurance ...
The team Our Cyber Strategy & Transformation offering develops and transforms cyber programs in ... risk management, engineering (mechanical, electrical, industrial) or other business/technology ...
The team Our Cyber Strategy & Transformation offering develops and transforms cyber programs in ... risk management, engineering (mechanical, electrical, industrial) or other business/technology ...
Demonstrate advanced understanding of business processes, internal control risk management, IT ... Our Deloitte Cyber team understands the unique challenges and opportunities businesses face in ...
Demonstrate advanced understanding of business processes, internal control risk management, IT ... Our Deloitte Cyber team understands the unique challenges and opportunities businesses face in ...
AI governance, data privacy, security risk management, compliance and controls, AI product risk ... Prior experience in cyber or enterprise security contexts (data security, identity, audit logging ...
AI governance, data privacy, security risk management, compliance and controls, AI product risk ... Prior experience in cyber or enterprise security contexts (data security, identity, audit logging ...
Cyber Full-Stack Technical Architect/Manager
Louisville, KY · On-site
$63.75 - $76.75/hr
Contribute to project planning, estimation, capacity planning, and risk management across delivery ... Deloitte's Cyber Engineering is a new team that is spearheading the buildout of Cybersecurity ...
Cyber Full-Stack Technical Architect/Manager
Louisville, KY · On-site
$63.75 - $76.75/hr
Contribute to project planning, estimation, capacity planning, and risk management across delivery ... Deloitte's Cyber Engineering is a new team that is spearheading the buildout of Cybersecurity ...
Cyber Digital Identity and Access Management SailPoint Sr Consultant Our Deloitte Cyber team ... Demonstrate advanced understanding of business processes, internal control risk management, IT ...
Cyber Digital Identity and Access Management SailPoint Sr Consultant Our Deloitte Cyber team ... Demonstrate advanced understanding of business processes, internal control risk management, IT ...
Associate Director, Technology M&A
Louisville, KY · On-site +1
... cyber/risk coordination, and process maturity efforts. This role partners closely with senior ... Manage external contracts, statements of work, commercial terms, and delivery partner performance ...
Associate Director, Technology M&A
Louisville, KY · On-site +1
... cyber/risk coordination, and process maturity efforts. This role partners closely with senior ... Manage external contracts, statements of work, commercial terms, and delivery partner performance ...
Cyber Risk Manager information
See Kentucky salary details
$44.7K - $54.1K
4% of jobs
$54.1K - $63.4K
6% of jobs
$63.4K - $72.8K
11% of jobs
$76.3K is the 25th percentile. Wages below this are outliers.
$72.8K - $82.2K
11% of jobs
The median wage is $89.6K / yr.
$82.2K - $91.5K
23% of jobs
$91.5K - $100.9K
13% of jobs
$107K is the 75th percentile. Wages above this are outliers.
$100.9K - $110.2K
12% of jobs
$110.2K - $119.6K
8% of jobs
$119.6K - $128.9K
6% of jobs
$128.9K - $138.3K
4% of jobs
$138.3K - $147.6K
2% of jobs
$44.7K
$96.9K
$147.6K
How much do cyber risk manager jobs pay per year?
What are the key skills and qualifications needed to thrive as a Cyber Risk Manager, and why are they important?
How does a Cyber Risk Manager typically collaborate with other departments to strengthen an organization's cybersecurity posture?
What does a Cyber Risk Manager do?
What is the difference between Cyber Risk Manager vs Cybersecurity Analyst?
| Aspect | Cyber Risk Manager | Cybersecurity Analyst |
|---|---|---|
| Certifications | CRISC, CISSP, CISM | CompTIA Security+, CISSP, CEH |
| Work Environment | Risk assessment, policy development, strategic planning | Monitoring security systems, incident response, vulnerability testing |
| Employer & Industry Usage | Financial, healthcare, large enterprises | IT departments, security firms, corporate environments |
The Cyber Risk Manager focuses on identifying, assessing, and mitigating organizational cyber risks through strategic planning and policy development. In contrast, the Cybersecurity Analyst primarily monitors security systems, responds to incidents, and tests vulnerabilities. Both roles require certifications like CISSP, but their daily tasks and focus areas differ significantly, with the manager taking a broader, strategic approach and the analyst handling operational security tasks.
Deloitte rating
8.1
Based on 86 frontline employees who took The Breakroom Quiz
60th of 138 rated financial services
Job description
Are you interested in improving the cyber and organizational risk profiles of leading companies? Do you want to build the data foundations that power the next generation of AI-enabled cyber defense?
If yes, then Deloitte's Cyber team could be the place for you.
We are looking for a hands-on Data Engineer to build and operate the governed data foundations powering cyber risk, compliance evidence, and agentic AI-enabled cyber workflows. You will design production-grade pipelines and services that support risk reporting, continuous controls monitoring, and AI-assisted security operations-built with strong governance, lineage, privacy-by-design, and audit-ready evidence.
This role is ideal for engineers who can bridge modern data engineering and software development with Governance, Risk, and Compliance (GRC) expectations in regulated enterprise environments.
Recruiting for this role ends on 6/5/2026.
Work You'll Do
As a Senior Consultant, you will design, build, and run trusted data and AI foundations that enable cyber risk and compliance outcomes, including:
Building scalable batch and stream processing pipelines that ingest security telemetry, control evidence, and compliance artifacts into governed data stores (lakehouse/warehouse).
Designing data models for risk and controls domains (KRIs, issues/defects, risk acceptance, control testing outcomes, audit evidence, policy exceptions) and enabling self-service analytics and dashboards.
Implementing data quality checks, lineage, metadata, and access controls to support auditability, regulatory defensibility, and repeatable evidence generation.
Developing AI-enabled capabilities that accelerate GRC and cyber operations-such as evidence summarization, control testing assist, policy Q&A, investigation copilots, ticket triage, and exception reasoning-using agentic patterns including tool/function calling, workflow orchestration, and Retrieval-Augmented Generation (RAG).
Engineering secure integrations between data platforms, GRC workflows, and enterprise systems (APIs, event patterns, connectors), with observability and runbooks for production support.
Partnering with Cyber, Risk, Compliance, Privacy, and Legal stakeholders to translate requirements into implementable controls and developer-ready guardrails.
Technologies You'll Work With
Languages & Frameworks: Python, SQL, Java/Go/JavaScript; LangChain/LangGraph, CrewAI, AutoGen, Semantic Kernel
Data & AI Platforms: Vector databases (Pinecone, Weaviate, Elastic), Knowledge Graphs, RAG pipelines, LLMOps/MLOps tooling
Cloud & Infrastructure: AWS, Azure, or GCP; Kubernetes, Docker, Terraform/IaC, GitOps CI/CD
GRC & Security: ServiceNow GRC, Archer, OneTrust, BigID; SIEM/SOAR data, vulnerability data, identity logs
The Team
You will join a cyber engineering team focused on enabling resilient, secure, and compliant operations through modern data platforms and AI-enabled automation. The team builds repeatable assets-reference architectures, accelerators, and governance patterns-to help clients modernize and scale cyber and GRC programs.
Qualifications
Required
Bachelor's degree or equivalent practical experience.
4+ years of hands-on experience in data engineering and software development (Python and SQL required).
Demonstrated experience building production data pipelines and data models (batch and/or streaming) with strong engineering discipline (CI/CD, testing, monitoring, incident response).
Demonstrated experience implementing governance controls in data and AI systems: data classification, PII handling, least-privilege access, encryption/secrets, retention, audit logging, and lineage/metadata.
Experience supporting GRC workflows and evidence needs (risk reporting, audit data requests, controls monitoring/testing, compliance metrics, or GRC tooling integrations).
Practical experience building agentic or LLM-enabled applications in enterprise settings (RAG, vector/hybrid retrieval, tool/function calling, evaluation/monitoring, prompt-injection defenses, and secure access patterns).
Experience with one or more major cloud platforms and modern deployment patterns (containers, IaC, secured APIs, secrets management).
Ability to travel 0-25%, on average, based on client and project needs.
Limited immigration sponsorship may be available.
Preferred
Previous consulting or Big 4 experience.
Hands-on experience with Java, Go, or JavaScript a plus.
Experience integrating with governance and privacy platforms (e.g., ServiceNow GRC, OneTrust) and building evidence pipelines that map to control objectives.
Experience with security telemetry pipelines (SIEM/SOAR data, vulnerability data, identity logs, cloud security posture findings).
Experience operationalizing LLMOps/MLOps capabilities (evaluation, monitoring, versioning, governance workflows).
Security certifications (Security+, CISM, CISA, CISSP, cloud certifications) or equivalent experience building secure systems.
Experience working with cross-functional stakeholders and translating control requirements into implementable engineering tasks.
You may also be eligible to participate in a discretionary annual incentive program, subject to the rules governing the program, whereby an award, if any, depends on various factors, including, without limitation, individual and organizational performance.
#CyberDTP27
Information for applicants with a need for accommodation: https://www2.deloitte.com/us/en/pages/careers/articles/join-deloitte-assistance-for-disabled-applicants.html
Qualifications:Are you interested in improving the cyber and organizational risk profiles of leading companies? Do you want to build the data foundations that power the next generation of AI-enabled cyber defense?
If yes, then Deloitte's Cyber team could be the place for you.
We are looking for a hands-on Data Engineer to build and operate the governed data foundations powering cyber risk, compliance evidence, and agentic AI-enabled cyber workflows. You will design production-grade pipelines and services that support risk reporting, continuous controls monitoring, and AI-assisted security operations-built with strong governance, lineage, privacy-by-design, and audit-ready evidence.
This role is ideal for engineers who can bridge modern data engineering and software development with Governance, Risk, and Compliance (GRC) expectations in regulated enterprise environments.
Recruiting for this role ends on 6/5/2026.
Work You'll Do
As a Senior Consultant, you will design, build, and run trusted data and AI foundations that enable cyber risk and compliance outcomes, including:
Building scalable batch and stream processing pipelines that ingest security telemetry, control evidence, and compliance artifacts into governed data stores (lakehouse/warehouse).
Designing data models for risk and controls domains (KRIs, issues/defects, risk acceptance, control testing outcomes, audit evidence, policy exceptions) and enabling self-service analytics and dashboards.
Implementing data quality checks, lineage, metadata, and access controls to support auditability, regulatory defensibility, and repeatable evidence generation.
Developing AI-enabled capabilities that accelerate GRC and cyber operations-such as evidence summarization, control testing assist, policy Q&A, investigation copilots, ticket triage, and exception reasoning-using agentic patterns including tool/function calling, workflow orchestration, and Retrieval-Augmented Generation (RAG).
Engineering secure integrations between data platforms, GRC workflows, and enterprise systems (APIs, event patterns, connectors), with observability and runbooks for production support.
Partnering with Cyber, Risk, Compliance, Privacy, and Legal stakeholders to translate requirements into implementable controls and developer-ready guardrails.
Technologies You'll Work With
Languages & Frameworks: Python, SQL, Java/Go/JavaScript; LangChain/LangGraph, CrewAI, AutoGen, Semantic Kernel
Data & AI Platforms: Vector databases (Pinecone, Weaviate, Elastic), Knowledge Graphs, RAG pipelines, LLMOps/MLOps tooling
Cloud & Infrastructure: AWS, Azure, or GCP; Kubernetes, Docker, Terraform/IaC, GitOps CI/CD
GRC & Security: ServiceNow GRC, Archer, OneTrust, BigID; SIEM/SOAR data, vulnerability data, identity logs
The Team
You will join a cyber engineering team focused on enabling resilient, secure, and compliant operations through modern data platforms and AI-enabled automation. The team builds repeatable assets-reference architectures, accelerators, and governance patterns-to help clients modernize and scale cyber and GRC programs.
Qualifications
Required
Bachelor's degree or equivalent practical experience.
4+ years of hands-on experience in data engineering and software development (Python and SQL required).
Demonstrated experience building production data pipelines and data models (batch and/or streaming) with strong engineering discipline (CI/CD, testing, monitoring, incident response).
Demonstrated experience implementing governance controls in data and AI systems: data classification, PII handling, least-privilege access, encryption/secrets, retention, audit logging, and lineage/metadata.
Experience supporting GRC workflows and evidence needs (risk reporting, audit data requests, controls monitoring/testing, compliance metrics, or GRC tooling integrations).
Practical experience building agentic or LLM-enabled applications in enterprise settings (RAG, vector/hybrid retrieval, tool/function calling, evaluation/monitoring, prompt-injection defenses, and secure access patterns).
Experience with one or more major cloud platforms and modern deployment patterns (containers, IaC, secured APIs, secrets management).
Ability to travel 0-25%, on average, based on client and project needs.
Limited immigration sponsorship may be available.
Preferred
Previous consulting or Big 4 experience.
Hands-on experience with Java, Go, or JavaScript a plus.
Experience integrating with governance and privacy platforms (e.g., ServiceNow GRC, OneTrust) and building evidence pipelines that map to control objectives.
Experience with security telemetry pipelines (SIEM/SOAR data, vulnerability data, identity logs, cloud security posture findings).
Experience operationalizing LLMOps/MLOps capabilities (evaluation, monitoring, versioning, governance workflows).
Security certifications (Security+, CISM, CISA, CISSP, cloud certifications) or equivalent experience building secure systems.
Experience working with cross-functional stakeholders and translating control requirements into implementable engineering tasks.
You may also be eligible to participate in a discretionary annual incentive program, subject to the rules governing the program, whereby an award, if any, depends on various factors, including, without limitation, individual and organizational performance.
#CyberDTP27
Information for applicants with a need for accommodation: https://www2.deloitte.com/us/en/pages/careers/articles/join-deloitte-assistance-for-disabled-applicants.html
Education:Bachelor's DegreeEmployment Type: