Are you an experienced cybersecurity professional looking to help organizations reduce cyber risk ... Work you'll do As an Engineering Manager II on the Cyber Defense & Resilience Continuous Threat ...
Are you an experienced cybersecurity professional looking to help organizations reduce cyber risk ... Work you'll do As an Engineering Manager II on the Cyber Defense & Resilience Continuous Threat ...
Cyber Software Engineer Senior
King Of Prussia, PA · On-site
Medical
Dental
Vision
Life
Retirement
PTO
Support Risk Management Framework (RMF) activities including control implementation, assessment ... Conduct cyber risk assessment activities, including threat modeling, vulnerability analysis, and ...
Cyber Software Engineer Senior
King Of Prussia, PA · On-site
Medical
Dental
Vision
Life
Retirement
PTO
Support Risk Management Framework (RMF) activities including control implementation, assessment ... Conduct cyber risk assessment activities, including threat modeling, vulnerability analysis, and ...
Through powerful solutions and managed services that simplify complexity, we enable our clients to ... Oversee the delivery of ServiceNow-based cyber risk solutions, ensuring alignment with best ...
Through powerful solutions and managed services that simplify complexity, we enable our clients to ... Oversee the delivery of ServiceNow-based cyber risk solutions, ensuring alignment with best ...
Cyber Software Engineer Senior
King Of Prussia, PA · On-site
Medical
Dental
Vision
Life
Retirement
PTO
... Risk Management Framework (RMF) activities including control implementation, assessment, evidence collection, and ATO accreditation and sustainment. • Perform security hardening of operating ...
Cyber Software Engineer Senior
King Of Prussia, PA · On-site
Medical
Dental
Vision
Life
Retirement
PTO
... Risk Management Framework (RMF) activities including control implementation, assessment, evidence collection, and ATO accreditation and sustainment. • Perform security hardening of operating ...
Vice President, Global Cyber Exposure Management & Cyber Engineering and Architecture
Philadelphia, PA · On-site
Medical
Dental
Vision
Retirement
PTO
Mature risk-based prioritization models leveraging threat intelligence and exploitability. * Drive ... Build integrated exposure management capabilities across security and infrastructure teams.
Vice President, Global Cyber Exposure Management & Cyber Engineering and Architecture
Philadelphia, PA · On-site
Medical
Dental
Vision
Retirement
PTO
Mature risk-based prioritization models leveraging threat intelligence and exploitability. * Drive ... Build integrated exposure management capabilities across security and infrastructure teams.
Vice President, Global Cyber Exposure Management & Cyber Engineering and Architecture
Philadelphia, PA · On-site
Medical
Dental
Vision
Retirement
PTO
Mature risk-based prioritization models leveraging threat intelligence and exploitability. * Drive ... Build integrated exposure management capabilities across security and infrastructure teams.
Vice President, Global Cyber Exposure Management & Cyber Engineering and Architecture
Philadelphia, PA · On-site
Medical
Dental
Vision
Retirement
PTO
Mature risk-based prioritization models leveraging threat intelligence and exploitability. * Drive ... Build integrated exposure management capabilities across security and infrastructure teams.
Maintain executive-ready visibility into cyber risk, operational performance, and incident posture Incident Response & Crisis Management * Lead enterprise cyber incident response and coordination ...
Maintain executive-ready visibility into cyber risk, operational performance, and incident posture Incident Response & Crisis Management * Lead enterprise cyber incident response and coordination ...
Vice President, Global Cyber Exposure Management & Cyber Engineering and Architecture
Medical
Dental
Vision
Retirement
PTO
Mature risk-based prioritization models leveraging threat intelligence and exploitability. * Drive ... Build integrated exposure management capabilities across security and infrastructure teams.
Vice President, Global Cyber Exposure Management & Cyber Engineering and Architecture
Medical
Dental
Vision
Retirement
PTO
Mature risk-based prioritization models leveraging threat intelligence and exploitability. * Drive ... Build integrated exposure management capabilities across security and infrastructure teams.
Maintain executive-ready visibility into cyber risk, operational performance, and incident posture Incident Response & Crisis Management * Lead enterprise cyber incident response and coordination ...
Maintain executive-ready visibility into cyber risk, operational performance, and incident posture Incident Response & Crisis Management * Lead enterprise cyber incident response and coordination ...
... cyber risk ecosystem and understanding of the types of systems that feed into continuous controls monitoring and reporting (identity, endpoint, CMDB, vulnerability, cloud, ITSM, HR/org data)
... cyber risk ecosystem and understanding of the types of systems that feed into continuous controls monitoring and reporting (identity, endpoint, CMDB, vulnerability, cloud, ITSM, HR/org data)
Cyber Systems Security Engineer
$56 - $68.75/hr
Coordinates and addresses Supply Chain risk management concerns. Develop, evaluate and analyze design constrains, trade-offs and detailed system and security design as they pertain to the Cyber ...
Cyber Systems Security Engineer
$56 - $68.75/hr
Coordinates and addresses Supply Chain risk management concerns. Develop, evaluate and analyze design constrains, trade-offs and detailed system and security design as they pertain to the Cyber ...
Cyber Systems Security Engineer
King Of Prussia, PA · On-site
$56 - $68.75/hr
Coordinates and addresses Supply Chain risk management concerns. Develop, evaluate and analyze design constrains, trade-offs and detailed system and security design as they pertain to the Cyber ...
Cyber Systems Security Engineer
King Of Prussia, PA · On-site
$56 - $68.75/hr
Coordinates and addresses Supply Chain risk management concerns. Develop, evaluate and analyze design constrains, trade-offs and detailed system and security design as they pertain to the Cyber ...
Cyber Systems Security Engineer
King Of Prussia, PA · On-site
$56 - $68.75/hr
Coordinates and addresses Supply Chain risk management concerns. Develop, evaluate and analyze design constrains, trade-offs and detailed system and security design as they pertain to the Cyber ...
Cyber Systems Security Engineer
King Of Prussia, PA · On-site
$56 - $68.75/hr
Coordinates and addresses Supply Chain risk management concerns. Develop, evaluate and analyze design constrains, trade-offs and detailed system and security design as they pertain to the Cyber ...
Cyber Systems Security Engineer
$56 - $68.75/hr
Coordinates and addresses Supply Chain risk management concerns. Develop, evaluate and analyze design constrains, trade-offs and detailed system and security design as they pertain to the Cyber ...
Cyber Systems Security Engineer
$56 - $68.75/hr
Coordinates and addresses Supply Chain risk management concerns. Develop, evaluate and analyze design constrains, trade-offs and detailed system and security design as they pertain to the Cyber ...
Cyber Systems Security Engineer
King Of Prussia, PA · On-site
$56 - $68.75/hr
Coordinates and addresses Supply Chain risk management concerns. Develop, evaluate and analyze design constrains, trade-offs and detailed system and security design as they pertain to the Cyber ...
Cyber Systems Security Engineer
King Of Prussia, PA · On-site
$56 - $68.75/hr
Coordinates and addresses Supply Chain risk management concerns. Develop, evaluate and analyze design constrains, trade-offs and detailed system and security design as they pertain to the Cyber ...
Cyber Systems Security Engineer
King Of Prussia, PA · On-site
$56 - $68.75/hr
Coordinates and addresses Supply Chain risk management concerns. Develop, evaluate and analyze design constrains, trade-offs and detailed system and security design as they pertain to the Cyber ...
Cyber Systems Security Engineer
King Of Prussia, PA · On-site
$56 - $68.75/hr
Coordinates and addresses Supply Chain risk management concerns. Develop, evaluate and analyze design constrains, trade-offs and detailed system and security design as they pertain to the Cyber ...
Cyber Systems Security Engineer
King Of Prussia, PA · On-site
$56 - $68.75/hr
Coordinates and addresses Supply Chain risk management concerns. Develop, evaluate and analyze design constrains, trade-offs and detailed system and security design as they pertain to the Cyber ...
Cyber Systems Security Engineer
King Of Prussia, PA · On-site
$56 - $68.75/hr
Coordinates and addresses Supply Chain risk management concerns. Develop, evaluate and analyze design constrains, trade-offs and detailed system and security design as they pertain to the Cyber ...
Cyber Systems Security Engineer
King Of Prussia, PA · On-site
$56 - $68.75/hr
Coordinates and addresses Supply Chain risk management concerns. Develop, evaluate and analyze design constrains, trade-offs and detailed system and security design as they pertain to the Cyber ...
Cyber Systems Security Engineer
King Of Prussia, PA · On-site
$56 - $68.75/hr
Coordinates and addresses Supply Chain risk management concerns. Develop, evaluate and analyze design constrains, trade-offs and detailed system and security design as they pertain to the Cyber ...
Head of Cyber Defense, Cyber Security Operations Center (CSOC)
Malvern, PA · On-site
$108K - $147K/yr
As the Head of Cyber Defense within Vanguard's Cyber Security Operations Center (CSOC) , you will ... management and executive communication skills * Ability to translate technical risk into business ...
Head of Cyber Defense, Cyber Security Operations Center (CSOC)
Malvern, PA · On-site
$108K - $147K/yr
As the Head of Cyber Defense within Vanguard's Cyber Security Operations Center (CSOC) , you will ... management and executive communication skills * Ability to translate technical risk into business ...
Head of Cyber Defense, Cyber Security Operations Center (CSOC)
Malvern, PA · On-site
$108K - $147K/yr
As the Head of Cyber Defense within Vanguard's Cyber Security Operations Center (CSOC) , you will ... management and executive communication skills * Ability to translate technical risk into business ...
Head of Cyber Defense, Cyber Security Operations Center (CSOC)
Malvern, PA · On-site
$108K - $147K/yr
As the Head of Cyber Defense within Vanguard's Cyber Security Operations Center (CSOC) , you will ... management and executive communication skills * Ability to translate technical risk into business ...
Cyber Risk Manager information
See Pennsylvania salary details
$51.6K - $62.4K
4% of jobs
$62.4K - $73.2K
6% of jobs
$73.2K - $84K
11% of jobs
$88.1K is the 25th percentile. Wages below this are outliers.
$84K - $94.8K
11% of jobs
The median wage is $103.4K / yr.
$94.8K - $105.6K
23% of jobs
$105.6K - $116.4K
13% of jobs
$123.5K is the 75th percentile. Wages above this are outliers.
$116.4K - $127.2K
12% of jobs
$127.2K - $138K
8% of jobs
$138K - $148.8K
6% of jobs
$148.8K - $159.6K
4% of jobs
$159.6K - $170.4K
2% of jobs
$51.6K
$111.8K
$170.4K
How much do cyber risk manager jobs pay per year?
How does a cyber risk manager collaborate with other departments to strengthen an organization's cybersecurity posture?
What is the difference between Cyber Risk Manager vs Cybersecurity Analyst?
| Aspect | Cyber Risk Manager | Cybersecurity Analyst |
|---|---|---|
| Certifications | CRISC, CISSP, CISM | CompTIA Security+, CISSP, CEH |
| Work Environment | Risk assessment, policy development, strategic planning | Monitoring security systems, incident response, vulnerability testing |
| Employer & Industry Usage | Financial, healthcare, large enterprises | IT departments, security firms, corporate environments |
The Cyber Risk Manager focuses on identifying, assessing, and mitigating organizational cyber risks through strategic planning and policy development. In contrast, the Cybersecurity Analyst primarily monitors security systems, responds to incidents, and tests vulnerabilities. Both roles require certifications like CISSP, but their daily tasks and focus areas differ significantly, with the manager taking a broader, strategic approach and the analyst handling operational security tasks.
What are the key skills and qualifications needed to thrive as a cyber risk manager, and why are they important?

$112K - $151K/yr
Full-time
Re-posted 18 days ago
Deloitte rating
8.2
Based on 92 frontline employees who took The Breakroom Quiz
45th of 150 rated financial services
Job description
Are you an experienced cybersecurity professional looking to help organizations reduce cyber risk and improve resilience? At Deloitte & Touche LLP, you'll work with leading organizations to strengthen security, enable innovation, and reduce threat exposure. Join Deloitte's Cyber Defense & Resilience Continuous Threat Exposure Management (CTEM) team to help clients identify, assess, and reduce their attack surface. In this role, you'll lead remediation efforts, work with cross-functional stakeholders, and deliver solutions aligned to business and security priorities.
Recruiting for this role ends on 12/31/2026.
Work you'll do
As an Engineering Manager II on the Cyber Defense & Resilience Continuous Threat Exposure Management (CTEM) team, you will be responsible for...
- Managing exposure-based remediation and patching activities aligned to CTEM priorities
- Leading vulnerability and patch management operations across infrastructure, middleware, and applications
- Prioritizing remediation activities using threat intelligence, exploitability, attack paths, asset criticality, and exposure data
- Supporting exception management, incident-driven response activities, and process improvements that reduce cyber risk
- Developing client deliverables, contributing to proposals and points of view, and mentoring junior practitioners
A successful candidate would possess these skills:
- Ability to work independently and collaborate as part of a team
- Effective written and verbal communication skills
- Meticulous attention to detail and quality of work product
- Ability to build and sustain professional relationships
- Ability to lead projects or workstreams
- Ability to manage and prioritize multiple tasks in a fast-paced and dynamic environment
- Strong interpersonal skills and professional demeanor
- Ability to meet deadlines
- Ability to mentor and provide clear guidance to others
The team
Deloitte's Cyber Specialists help organizations manage cyber risk through stronger security, greater visibility, and embedded privacy practices. The Cyber Defense & Resilience team works with clients to design, implement, and operate programs that help protect critical assets, support digital transformation, and respond to evolving threats. Within this practice, the CTEM team helps clients identify exposures, prioritize remediation, and reduce risk across complex technology environments.
Qualifications
Required:
- 10+ years of experience in information technology, information security, or both
- Experience leading vulnerability management, patch management, or continuous threat exposure management remediation programs
- Experience remediating vulnerabilities across Linux, Windows, middleware, and applications using tools such as BigFix, Microsoft Endpoint Configuration Manager, Red Hat Satellite, Windows Server Update Services, Tenable, Rapid7, or Qualys
- Experience automating remediation workflows using PowerShell, Bash, Python, JavaScript Object Notation, Ansible, Terraform, or a combination of these
- Experience using Information Technology Service Management or configuration management database platforms such as ServiceNow to coordinate remediation and report exposure reduction
- Ability to travel 50%, on average, based on the work you do and the clients and industries/sectors you serve.
- Must be legally authorized to work in the United States without the need for employer sponsorship, now or at any time in the future.
Preferred:
- Bachelor's degree in Computer Science, Cybersecurity, Information Systems, Engineering, Information Technology, or a related field
- Experience in a consulting environment or with a Big 4 firm
- Experience with ServiceNow workflows, automation, or orchestration
- Experience with frameworks such as the National Institute of Standards and Technology Cybersecurity Framework, Center for Internet Security, International Organization for Standardization 27001, or Cloud Security Alliance Cloud Controls Matrix
- Experience supporting proposals, statements of work, or work orders
The wage range for this role takes into account the wide range of factors that are considered in making compensation decisions including but not limited to skill sets; experience and training; licensure and certifications; and other business and organizational needs. The disclosed range estimate has not been adjusted for the applicable geographic differential associated with the location at which the position may be filled. At Deloitte, it is not typical for an individual to be hired at or near the top of the range for their role and compensation decisions are dependent on the facts and circumstances of each case. A reasonable estimate of the current range is $134,500 to $265,100.
You may also be eligible to participate in a discretionary annual incentive program, subject to the rules governing the program, whereby an award, if any, depends on various factors, including, without limitation, individual and organizational performance.
#CyberCDR27
Qualifications:Are you an experienced cybersecurity professional looking to help organizations reduce cyber risk and improve resilience? At Deloitte & Touche LLP, you'll work with leading organizations to strengthen security, enable innovation, and reduce threat exposure. Join Deloitte's Cyber Defense & Resilience Continuous Threat Exposure Management (CTEM) team to help clients identify, assess, and reduce their attack surface. In this role, you'll lead remediation efforts, work with cross-functional stakeholders, and deliver solutions aligned to business and security priorities.
Recruiting for this role ends on 12/31/2026.
Work you'll do
As an Engineering Manager II on the Cyber Defense & Resilience Continuous Threat Exposure Management (CTEM) team, you will be responsible for...
- Managing exposure-based remediation and patching activities aligned to CTEM priorities
- Leading vulnerability and patch management operations across infrastructure, middleware, and applications
- Prioritizing remediation activities using threat intelligence, exploitability, attack paths, asset criticality, and exposure data
- Supporting exception management, incident-driven response activities, and process improvements that reduce cyber risk
- Developing client deliverables, contributing to proposals and points of view, and mentoring junior practitioners
A successful candidate would possess these skills:
- Ability to work independently and collaborate as part of a team
- Effective written and verbal communication skills
- Meticulous attention to detail and quality of work product
- Ability to build and sustain professional relationships
- Ability to lead projects or workstreams
- Ability to manage and prioritize multiple tasks in a fast-paced and dynamic environment
- Strong interpersonal skills and professional demeanor
- Ability to meet deadlines
- Ability to mentor and provide clear guidance to others
The team
Deloitte's Cyber Specialists help organizations manage cyber risk through stronger security, greater visibility, and embedded privacy practices. The Cyber Defense & Resilience team works with clients to design, implement, and operate programs that help protect critical assets, support digital transformation, and respond to evolving threats. Within this practice, the CTEM team helps clients identify exposures, prioritize remediation, and reduce risk across complex technology environments.
Qualifications
Required:
- 10+ years of experience in information technology, information security, or both
- Experience leading vulnerability management, patch management, or continuous threat exposure management remediation programs
- Experience remediating vulnerabilities across Linux, Windows, middleware, and applications using tools such as BigFix, Microsoft Endpoint Configuration Manager, Red Hat Satellite, Windows Server Update Services, Tenable, Rapid7, or Qualys
- Experience automating remediation workflows using PowerShell, Bash, Python, JavaScript Object Notation, Ansible, Terraform, or a combination of these
- Experience using Information Technology Service Management or configuration management database platforms such as ServiceNow to coordinate remediation and report exposure reduction
- Ability to travel 50%, on average, based on the work you do and the clients and industries/sectors you serve.
- Must be legally authorized to work in the United States without the need for employer sponsorship, now or at any time in the future.
Preferred:
- Bachelor's degree in Computer Science, Cybersecurity, Information Systems, Engineering, Information Technology, or a related field
- Experience in a consulting environment or with a Big 4 firm
- Experience with ServiceNow workflows, automation, or orchestration
- Experience with frameworks such as the National Institute of Standards and Technology Cybersecurity Framework, Center for Internet Security, International Organization for Standardization 27001, or Cloud Security Alliance Cloud Controls Matrix
- Experience supporting proposals, statements of work, or work orders
The wage range for this role takes into account the wide range of factors that are considered in making compensation decisions including but not limited to skill sets; experience and training; licensure and certifications; and other business and organizational needs. The disclosed range estimate has not been adjusted for the applicable geographic differential associated with the location at which the position may be filled. At Deloitte, it is not typical for an individual to be hired at or near the top of the range for their role and compensation decisions are dependent on the facts and circumstances of each case. A reasonable estimate of the current range is $134,500 to $265,100.
You may also be eligible to participate in a discretionary annual incentive program, subject to the rules governing the program, whereby an award, if any, depends on various factors, including, without limitation, individual and organizational performance.
#CyberCDR27
Education:Bachelor's DegreeEmployment Type: