Work you'll do Deloitte's Cyber QRM team is seeking a Quality & Risk Manager who will be responsible for supporting Cyber quality and risk management activities across the Cyber Offering Portfolio ...
Work you'll do Deloitte's Cyber QRM team is seeking a Quality & Risk Manager who will be responsible for supporting Cyber quality and risk management activities across the Cyber Offering Portfolio ...
Our Cyber Risk practice helps organizations with the management of information and technology risks by delivering end-to-end solutions using proven methodologies and tools in a consistent manner. Our ...
Our Cyber Risk practice helps organizations with the management of information and technology risks by delivering end-to-end solutions using proven methodologies and tools in a consistent manner. Our ...
Customer Success Manager
Saint Louis, MO · Remote
$85K - $100K/yr
We build the Cyber Risk Posture Management (CRPM) platform that security teams actually love. By integrating security ratings, threat intel, and agentic AI, we empower organisations to stay ahead of ...
Quick apply
Customer Success Manager
Saint Louis, MO · Remote
$85K - $100K/yr
We build the Cyber Risk Posture Management (CRPM) platform that security teams actually love. By integrating security ratings, threat intel, and agentic AI, we empower organisations to stay ahead of ...
Manager, Healthcare Technology & Cyber Security
Saint Louis, MO · On-site
$103K - $140K/yr
Cybersecurity & Cyber Risk Management * Major Technology Projects and Enterprise Applications * Identity & Access Management (IAM) * Cloud Management of Architecture & Security (AWS, Azure, GCP)
Manager, Healthcare Technology & Cyber Security
Saint Louis, MO · On-site
$103K - $140K/yr
Cybersecurity & Cyber Risk Management * Major Technology Projects and Enterprise Applications * Identity & Access Management (IAM) * Cloud Management of Architecture & Security (AWS, Azure, GCP)
Familiarity with industry standards and regulatory requirements around cyber risk management (e.g., ISO 27001, IEC 62443, NIST CSF) * Limited sponsorship opportunities may be available Additional ...
Familiarity with industry standards and regulatory requirements around cyber risk management (e.g., ISO 27001, IEC 62443, NIST CSF) * Limited sponsorship opportunities may be available Additional ...
Consultant - Cloud Architect
$63.75 - $84.50/hr
This role offers the opportunity to contribute to cyber engagements, work directly with clients, and help organizations manage cyber risk while enabling innovation. Recruiting for this role ends on ...
Consultant - Cloud Architect
$63.75 - $84.50/hr
This role offers the opportunity to contribute to cyber engagements, work directly with clients, and help organizations manage cyber risk while enabling innovation. Recruiting for this role ends on ...
Our Cyber Risk practice helps organizations with the management of information and technology risks by delivering end-to-end solutions using proven methodologies and tools in a consistent manner. Our ...
Our Cyber Risk practice helps organizations with the management of information and technology risks by delivering end-to-end solutions using proven methodologies and tools in a consistent manner. Our ...
Business continuity management * Familiarity with industry standards and regulatory requirements around cyber risk management (e.g., ISO 27001, IEC 62443, NIST CSF) * Limited sponsorship ...
Business continuity management * Familiarity with industry standards and regulatory requirements around cyber risk management (e.g., ISO 27001, IEC 62443, NIST CSF) * Limited sponsorship ...
Description OCH Technologies is seeking a Risk Management Task Lead to support a government program ... cyber alerts, and best practice information to appropriate audiences (e.g., standard/privileged ...
Description OCH Technologies is seeking a Risk Management Task Lead to support a government program ... cyber alerts, and best practice information to appropriate audiences (e.g., standard/privileged ...
Risk & Compliance * Identity & Access Management * Data Protection * Cyber Design * Threat Detection * Incident Response * Security Architecture * Business Partnership Qualifications Required:
Risk & Compliance * Identity & Access Management * Data Protection * Cyber Design * Threat Detection * Incident Response * Security Architecture * Business Partnership Qualifications Required:
Risk Management Task Lead
Belleville, IL · On-site
OCH Technologies is seeking a Risk Management Task Lead to support a government program at Scott ... cyber alerts, and best practice information to appropriate audiences (e.g., standard/privileged ...
Quick apply
Risk Management Task Lead
Belleville, IL · On-site
OCH Technologies is seeking a Risk Management Task Lead to support a government program at Scott ... cyber alerts, and best practice information to appropriate audiences (e.g., standard/privileged ...
Risk Management Task Lead
Belleville, IL · On-site
OCH Technologies is seeking a Risk Management Task Lead to support a government program at Scott ... cyber alerts, and best practice information to appropriate audiences (e.g., standard/privileged ...
Risk Management Task Lead
Belleville, IL · On-site
OCH Technologies is seeking a Risk Management Task Lead to support a government program at Scott ... cyber alerts, and best practice information to appropriate audiences (e.g., standard/privileged ...
... cyber risk programs * 4+ years of experience managing teams and delivering workstreams in a client service environment * 3+ years of experience serving in a leadership capacity over the ...
... cyber risk programs * 4+ years of experience managing teams and delivering workstreams in a client service environment * 3+ years of experience serving in a leadership capacity over the ...
Own the third-party risk framework and partner across Procurement, Finance, Legal, Cyber, Risk, and Technology to strengthen vendor governance, manage risk, and inform long-term investment decisions.
Own the third-party risk framework and partner across Procurement, Finance, Legal, Cyber, Risk, and Technology to strengthen vendor governance, manage risk, and inform long-term investment decisions.
Information Security Risk Specialist, Senior
Scott Air Force Base, IL · On-site
$99K - $225K/yr
... cyber risk analysis. Join us. The world can't wait. You Have: * 3+ years of experience implementing information assurance processes or policies, or software supply chain management * Experience ...
Information Security Risk Specialist, Senior
Scott Air Force Base, IL · On-site
$99K - $225K/yr
... cyber risk analysis. Join us. The world can't wait. You Have: * 3+ years of experience implementing information assurance processes or policies, or software supply chain management * Experience ...
Risk Specialist
Saint Louis, MO · On-site
$100K - $130K/yr
This role is responsible for supporting key risk pillars: Vulnerability Management and Risk ... cyber risks. * Assist in developing threat intelligence and exposure management processes to ...
Risk Specialist
Saint Louis, MO · On-site
$100K - $130K/yr
This role is responsible for supporting key risk pillars: Vulnerability Management and Risk ... cyber risks. * Assist in developing threat intelligence and exposure management processes to ...
Security Specialist (GRC & Awareness)
Saint Louis, MO · On-site
$140K - $160K/yr
Manage and execute phishing simulation programs, including campaign design, delivery, analysis, and ... Demonstrate the effectiveness of training programs in reducing human-driven cyber risk. Cross ...
Security Specialist (GRC & Awareness)
Saint Louis, MO · On-site
$140K - $160K/yr
Manage and execute phishing simulation programs, including campaign design, delivery, analysis, and ... Demonstrate the effectiveness of training programs in reducing human-driven cyber risk. Cross ...
Security Specialist (GRC & Awareness)
Saint Louis, MO · Hybrid
$140K - $160K/yr
Manage and execute phishing simulation programs, including campaign design, delivery, analysis, and ... Demonstrate the effectiveness of training programs in reducing humandriven cyber risk.
Security Specialist (GRC & Awareness)
Saint Louis, MO · Hybrid
$140K - $160K/yr
Manage and execute phishing simulation programs, including campaign design, delivery, analysis, and ... Demonstrate the effectiveness of training programs in reducing humandriven cyber risk.
The Risk Management Support Task Leads functions as a top-level technical contributor and ... Defense Cyber Crime Center (DC3) Cyber 101 course completion. • Bachelor's degree or related ...
The Risk Management Support Task Leads functions as a top-level technical contributor and ... Defense Cyber Crime Center (DC3) Cyber 101 course completion. • Bachelor's degree or related ...
Information Security Risk Specialist
Scott Air Force Base, IL · On-site
$99K - $225K/yr
... cyber risk analysis. Join us. The world can't wait. You Have: * 3+ years of experience implementing information assurance processes or policies, or software supply chain management * Experience ...
Information Security Risk Specialist
Scott Air Force Base, IL · On-site
$99K - $225K/yr
... cyber risk analysis. Join us. The world can't wait. You Have: * 3+ years of experience implementing information assurance processes or policies, or software supply chain management * Experience ...
Cyber Risk Manager information
See Belleville, IL salary details
$50K - $60.5K
4% of jobs
$60.5K - $70.9K
6% of jobs
$70.9K - $81.4K
11% of jobs
$85.3K is the 25th percentile. Wages below this are outliers.
$81.4K - $91.9K
11% of jobs
The median wage is $100.2K / yr.
$91.9K - $102.3K
23% of jobs
$102.3K - $112.8K
13% of jobs
$119.7K is the 75th percentile. Wages above this are outliers.
$112.8K - $123.3K
12% of jobs
$123.3K - $133.7K
8% of jobs
$133.7K - $144.2K
6% of jobs
$144.2K - $154.7K
4% of jobs
$154.7K - $165.1K
2% of jobs
$50K
$108.4K
$165.1K
How much do cyber risk manager jobs pay per year?
How does a Cyber Risk Manager typically collaborate with other departments to strengthen an organization's cybersecurity posture?
What is the difference between Cyber Risk Manager vs Cybersecurity Analyst?
| Aspect | Cyber Risk Manager | Cybersecurity Analyst |
|---|---|---|
| Certifications | CRISC, CISSP, CISM | CompTIA Security+, CISSP, CEH |
| Work Environment | Risk assessment, policy development, strategic planning | Monitoring security systems, incident response, vulnerability testing |
| Employer & Industry Usage | Financial, healthcare, large enterprises | IT departments, security firms, corporate environments |
The Cyber Risk Manager focuses on identifying, assessing, and mitigating organizational cyber risks through strategic planning and policy development. In contrast, the Cybersecurity Analyst primarily monitors security systems, responds to incidents, and tests vulnerabilities. Both roles require certifications like CISSP, but their daily tasks and focus areas differ significantly, with the manager taking a broader, strategic approach and the analyst handling operational security tasks.
What are the key skills and qualifications needed to thrive as a Cyber Risk Manager, and why are they important?
Can you make $200,000 in cyber security?
Can you make $500,000 a year in cyber security?
What does a cyber risk manager do?
Is a CISO a stressful job?
- Full Time Rsm Cyber Security
- Salaried Tenable
- Seasonal Cloud Cyber Security
- Non Exempt Navy Cyber Security
- Full Time Aviation Cyber Security
- Manager At&T Cyber Security
- Private Sector Cyber Security Entry Level
- Night Shift Cyber Security Side
- Remote Merchant Risk Analyst
- Entry Level Mastercard Cyber Security

Other
Posted 3 days ago
Deloitte rating
8.1
Based on 91 frontline employees who took The Breakroom Quiz
58th of 150 rated financial services
Job description
The Team: The mission of Quality and Risk Management (QRM) is to manage the risk in our growing and increasingly complex business to improve financial performance and protect the firm's assets and reputation.
Work you'll do
Deloitte's Cyber QRM team is seeking a Quality & Risk Manager who will be responsible for supporting Cyber quality and risk management activities across the Cyber Offering Portfolio and Market Offerings. Candidates must have extensive experience in delivering and/or contracting for consulting services and related agreements.
Recruiting for this role ends on 08/14/2026.
Key job responsibilities include:
Guidance and Support to Senior Business Leaders within the Firm
- Serves as liaison between firm leadership and the Office of General Counsel and others (National Risk, National Office of Independence, etc.).
- Is responsible for advising practice leadership on potential quality and risk management issues within the Cyber Offering Portfolio that includes Cyber Strategy & Transformation, Cyber Defense & Resilience, Digital Trust & Privacy, Enterprise Security, and Cyber Operate services.
- Provides guidance to engagement leaders and teams on risk mitigation strategies, contract formation, contract terms, and contract management for Cyber services.
- Facilitates internal compliance with contract terms, risk management policies and procedures, and management directives for Cyber services.
- Comfortable in facilitating risk management training to business leaders / business teams when called upon to do so for Cyber services.
Proposals for Cyber Services
- Performs proposal reviews for Cyber opportunities.
- Consults with firm Partners, Principals, Managing Directors, and engagement teams on Requests for Proposals (RFPs), Teaming Agreements, and Non-Disclosure Agreements.
- Conducts Risk Consultations as needed.
- Helps interpret contract requirements and obligations and provides guidance to engagement teams.
- Facilitates early coordination with Office of General Counsel on RFPs where applicable.
Contract Negotiation for Cyber Services
- Involved in the negotiation of professional services contracts with a primary focus on reducing and mitigating delivery and contractual risks associated with the services being provided.
- Facilitates the coordination of Office of General Counsel, the business, and clients (where applicable) on contract negotiations.
- Professional services contracts include Master Services Agreements, Managed Services Agreements, Subscription License Agreements, Statements of Work, Engagement Letters, Change Orders, Subcontractor Agreements, Teaming Agreements, Non-Disclosure Agreements, independence consultations, and other similar or related agreements.
Contract Management for Cyber Services
- Reviews services contracts (in particular Statements of Work, Engagement Letters, and Change Orders) and provides revisions oriented to mitigating and containing risk aligned with Deloitte policies and procedures and management guidance.
- Available to consult and help interpret requirements of the contract as aligned to the Cyber services as well as associated Master Services Agreements and Managed Services Agreements, where applicable.
- Analyzes and assesses potential impacts associated with contract delivery risks aligned to the Cyber services.
- Where applicable, assists business leadership with contract template development and review to help expedite future risk reviews.
- Provides guidance to reduce in flight project risks, adjusts contract requirements to accommodate changing project circumstances, and manages stakeholder expectations to contractual obligations and agreed upon performance standards.
A successful candidate will possess these skills:
- Significant experience in negotiating various consulting agreements as identified above.
- Significant experience in advising business teams on developing agreements and contracts
- Significant experience evaluating and assessing Cyber engagements across the Cyber Market Offerings
- Experience in negotiating and managing vendor contracts (buy-side) for third-party software providers, including reseller agreements
- Understanding of the different types of sensitive data (PII, PHI, etc.), the associated risk profile of handling each type of data, and the appropriate risk mitigation strategies to be employed
- Ability to evaluate risks associated with large professional service engagements
- Experience advising engagement teams on risk matters
- Experience in Request for Proposal analysis, including contract terms and conditions
- Experience and ability to work directly with senior level individuals (internally and externally)
- Strong oral and written communication skills
- Ability to work autonomously and handle a fast paced, multi-task environment
- Experience structuring and negotiating license agreements for a software business
Qualifications
Required:
- Experience: 15+ years of Client Service delivery, direct contract negotiation, and/or relevant management experience
- Education: BBA/BA/BS in related field
- Must be legally authorized to work in the United States without the need for employer sponsorship, now or at any time in the future.
Preferred:
- Education: Master's Degree is desirable
The wage range for this roletakes into accountthe wide range of factors that are considered in making compensation decisions including but not limited to skill sets; experience and training; licensure and certifications; and other business and organizational needs. The disclosed range estimate has not been adjusted for the applicable geographic differential associated with the location at which the position may be filled. At Deloitte, it is not typical for an individual to be hired at or near the top of the range for their role and compensation decisions are dependent on the facts and circumstances of each case. A reasonable estimate of the current range is $155,600-306,800.
You may also be eligible toparticipatein a discretionary annual incentive program, subject to the rules governing the program, whereby an award, if any, depends onvarious factors, including, without limitation, individual and organizational performance.
Qualifications:The Team: The mission of Quality and Risk Management (QRM) is to manage the risk in our growing and increasingly complex business to improve financial performance and protect the firm's assets and reputation.
Work you'll do
Deloitte's Cyber QRM team is seeking a Quality & Risk Manager who will be responsible for supporting Cyber quality and risk management activities across the Cyber Offering Portfolio and Market Offerings. Candidates must have extensive experience in delivering and/or contracting for consulting services and related agreements.
Recruiting for this role ends on 08/14/2026.
Key job responsibilities include:
Guidance and Support to Senior Business Leaders within the Firm
- Serves as liaison between firm leadership and the Office of General Counsel and others (National Risk, National Office of Independence, etc.).
- Is responsible for advising practice leadership on potential quality and risk management issues within the Cyber Offering Portfolio that includes Cyber Strategy & Transformation, Cyber Defense & Resilience, Digital Trust & Privacy, Enterprise Security, and Cyber Operate services.
- Provides guidance to engagement leaders and teams on risk mitigation strategies, contract formation, contract terms, and contract management for Cyber services.
- Facilitates internal compliance with contract terms, risk management policies and procedures, and management directives for Cyber services.
- Comfortable in facilitating risk management training to business leaders / business teams when called upon to do so for Cyber services.
Proposals for Cyber Services
- Performs proposal reviews for Cyber opportunities.
- Consults with firm Partners, Principals, Managing Directors, and engagement teams on Requests for Proposals (RFPs), Teaming Agreements, and Non-Disclosure Agreements.
- Conducts Risk Consultations as needed.
- Helps interpret contract requirements and obligations and provides guidance to engagement teams.
- Facilitates early coordination with Office of General Counsel on RFPs where applicable.
Contract Negotiation for Cyber Services
- Involved in the negotiation of professional services contracts with a primary focus on reducing and mitigating delivery and contractual risks associated with the services being provided.
- Facilitates the coordination of Office of General Counsel, the business, and clients (where applicable) on contract negotiations.
- Professional services contracts include Master Services Agreements, Managed Services Agreements, Subscription License Agreements, Statements of Work, Engagement Letters, Change Orders, Subcontractor Agreements, Teaming Agreements, Non-Disclosure Agreements, independence consultations, and other similar or related agreements.
Contract Management for Cyber Services
- Reviews services contracts (in particular Statements of Work, Engagement Letters, and Change Orders) and provides revisions oriented to mitigating and containing risk aligned with Deloitte policies and procedures and management guidance.
- Available to consult and help interpret requirements of the contract as aligned to the Cyber services as well as associated Master Services Agreements and Managed Services Agreements, where applicable.
- Analyzes and assesses potential impacts associated with contract delivery risks aligned to the Cyber services.
- Where applicable, assists business leadership with contract template development and review to help expedite future risk reviews.
- Provides guidance to reduce in flight project risks, adjusts contract requirements to accommodate changing project circumstances, and manages stakeholder expectations to contractual obligations and agreed upon performance standards.
A successful candidate will possess these skills:
- Significant experience in negotiating various consulting agreements as identified above.
- Significant experience in advising business teams on developing agreements and contracts
- Significant experience evaluating and assessing Cyber engagements across the Cyber Market Offerings
- Experience in negotiating and managing vendor contracts (buy-side) for third-party software providers, including reseller agreements
- Understanding of the different types of sensitive data (PII, PHI, etc.), the associated risk profile of handling each type of data, and the appropriate risk mitigation strategies to be employed
- Ability to evaluate risks associated with large professional service engagements
- Experience advising engagement teams on risk matters
- Experience in Request for Proposal analysis, including contract terms and conditions
- Experience and ability to work directly with senior level individuals (internally and externally)
- Strong oral and written communication skills
- Ability to work autonomously and handle a fast paced, multi-task environment
- Experience structuring and negotiating license agreements for a software business
Qualifications
Required:
- Experience: 15+ years of Client Service delivery, direct contract negotiation, and/or relevant management experience
- Education: BBA/BA/BS in related field
- Must be legally authorized to work in the United States without the need for employer sponsorship, now or at any time in the future.
Preferred:
- Education: Master's Degree is desirable
The wage range for this roletakes into accountthe wide range of factors that are considered in making compensation decisions including but not limited to skill sets; experience and training; licensure and certifications; and other business and organizational needs. The disclosed range estimate has not been adjusted for the applicable geographic differential associated with the location at which the position may be filled. At Deloitte, it is not typical for an individual to be hired at or near the top of the range for their role and compensation decisions are dependent on the facts and circumstances of each case. A reasonable estimate of the current range is $155,600-306,800.
You may also be eligible toparticipatein a discretionary annual incentive program, subject to the rules governing the program, whereby an award, if any, depends onvarious factors, including, without limitation, individual and organizational performance.
Education:Bachelor's DegreeEmployment Type: