1

Cyber Risk Manager Jobs in Norfolk, VA (NOW HIRING)

... Management tools * Knowledge of Windows and Linux operating systems * Understanding of common cyber ... Risk Management, Network Security, Endpoint Security, Identity & Access Management (IAM), Firewall ...

Demonstrable experience in the field of risk management, with a knack for translating complex cybersecurity requirements to actionable work plans * Cyber supply chain risk knowledge as applicable to ...

Demonstrable experience in the field of risk management, with a knack for translating complex cybersecurity requirements to actionable work plans * Cyber supply chain risk knowledge as applicable to ...

... cyber threats, vulnerabilities, and technologies to keep the organization secure. * Conducting risk ... Manage HRT's security tool suite in including endpoint protection, vulnerability assessment, log ...

Cyber and IT Risk Management Job Qualifications: Skills: Information Assurance, Security Requirements, Vulnerability Assessments Certifications: None Experience: 10 + years of related experience US ...

Cyber and IT Risk Management Job Qualifications: Skills: Cyber Defense, Network Security Tools, Security Tools Certifications: None Experience: 3 + years of related experience US Citizenship Required:

Showing results 41-60

Cyber Risk Manager information

See Norfolk, VA salary details

$45K

$97.5K

$148.6K

How much do cyber risk manager jobs pay per year?

As of Aug 19, 2026, the average yearly pay for cyber risk manager in Norfolk, VA is $97,484.00, according to ZipRecruiter salary data. Most workers in this role earn between $78,600.00 and $112,700.00 per year, depending on experience, location, and employer.

How does a cyber risk manager collaborate with other departments to strengthen an organization's cybersecurity posture?

A Cyber Risk Manager frequently works with IT, legal, compliance, and business units to identify, assess, and mitigate cyber risks across the organization. This collaboration involves leading risk assessments, facilitating security awareness training, and ensuring that cybersecurity policies align with business objectives. Regular cross-department meetings and incident response simulations are common, fostering a shared responsibility for cyber resilience. Effective communication and relationship-building skills are essential in this role to bridge technical and non-technical teams.

What are the key skills and qualifications needed to thrive as a cyber risk manager, and why are they important?

To thrive as a Cyber Risk Manager, you need a solid background in information security, risk assessment, and compliance, often supported by a degree in cybersecurity or a related field. Familiarity with risk management frameworks (such as NIST or ISO 27001), GRC tools, and relevant certifications like CISSP or CISM is typically required. Excellent analytical thinking, communication, and leadership skills set top performers apart in this role. These skills are crucial for identifying risks, implementing effective controls, and ensuring the organization’s digital assets remain secure and compliant.

What is the difference between Cyber Risk Manager vs Cybersecurity Analyst?

AspectCyber Risk ManagerCybersecurity Analyst
CertificationsCRISC, CISSP, CISMCompTIA Security+, CISSP, CEH
Work EnvironmentRisk assessment, policy development, strategic planningMonitoring security systems, incident response, vulnerability testing
Employer & Industry UsageFinancial, healthcare, large enterprisesIT departments, security firms, corporate environments

The Cyber Risk Manager focuses on identifying, assessing, and mitigating organizational cyber risks through strategic planning and policy development. In contrast, the Cybersecurity Analyst primarily monitors security systems, responds to incidents, and tests vulnerabilities. Both roles require certifications like CISSP, but their daily tasks and focus areas differ significantly, with the manager taking a broader, strategic approach and the analyst handling operational security tasks.

How much does a cyber risk manager make?

A cyber risk manager's salary typically ranges from $90,000 to $150,000 annually, depending on experience, certifications, and industry. Senior roles or those in high-demand sectors can earn higher compensation, often supplemented with bonuses and benefits.

What does a cyber risk manager do?

A cyber risk manager assesses and mitigates cybersecurity threats to an organization’s information systems. They identify vulnerabilities, develop risk management strategies, and implement security controls, often using tools like risk assessment frameworks and security software. Certification such as CISSP or CISM can enhance their effectiveness in managing cyber risks.

What cities near Norfolk, VA are hiring for Cyber Risk Manager jobs?

Cities near Norfolk, VA with the most Cyber Risk Manager job openings:

Infographic showing various Cyber Risk Manager job openings in Norfolk, VA as of August 2026, with employment types broken down into 86% Full Time, 12% Part Time, and 2% Contract. Highlights an 84% Physical, 2% Hybrid, and 14% Remote job distribution, with an average salary of $97,484 per year, or $46.9 per hour.

IT Manager, Cyber Security Services

Hampton Roads Transit

Norfolk, VA • On-site

$108K - $146K/yr

Other

Re-posted 18 days ago


Hampton Roads Transit rating

6.0

Company rating: 6.0 out of 10

Based on 5 frontline employees who took The Breakroom Quiz

89th of 98 rated public transport


Job description

The Manager of Cyber Security Services (CSS) will be hands-on and responsible for management of HRT’s information security and compliance related activities including the following: Utilizing a risk-based approach to manage information security related aspects of HRT’s operations. Assuring compliance with information security, privacy, and industry standards and regulations. Designing, establishing, and maintaining reasonable organizational cyber security and information privacy postures. Implementing the NIST Cybersecurity Framework within the organization to improve cyber resilience. In coordination with key stakeholders, this position communicates, prepares for, and responds to geopolitical, international, and national cyber threats from an Agency perspective. This role is responsible for ensuring HRT’s systems are secure, are compliant as per established regulatory frameworks, and audited as per established cadence. Essential Job Functions: (Duties listed are not intended to be all inclusive nor to limit duties that might reasonably be assigned.) Works with CIO/CTO to define, implement and maintain corporate information and operations technology security policies, procedures, and guidelines based on industry best practices that are compliant with federal and state regulations. Maintaining awareness of new cyber threats, vulnerabilities, and technologies to keep the organization secure. Conducting risk assessments to identify potential security threats and vulnerabilities. Monitoring network activity to identify signs of intrusion or compromise. Providing technical support for computer networks, including firewalls, operating systems and applications, patch management, and data security best practices. Manage HRT’s security tool suite in including endpoint protection, vulnerability assessment, log aggregation and analysis. Training staff on information security best practices to ensure compliance with company policies. Conducting audits to ensure security protocols are being followed by staff. Providing training in information security best practices to employees. Working knowledge with industry standards such as HIPAA, ITIL, NIST, SANS, COBIT, OWASP, and ISO. Own the entire IT audit process for SOC & PCI reporting across the enterprise. Responsible for leading vulnerability audits, forensic investigations, and mitigation procedures. Responds immediately to security-related incidents, leads response team, and provides post-event analysis. Evaluate new cybersecurity threat and IT trends and develop effective security controls. Evaluate potential security breaches, coordinate response, and recommend corrective actions. Monitor compliance with security policies and procedures. Investigate security breaches and incidents. Coordinate incident response activities. Train and educate employees on security awareness. Manage security vendors and service providers. Take proactive role is procurement process from the cyber security perspective. Manage department budget, take part in annual capital expenditures planning exercises. Manage records created and received in compliance with the Hampton Roads Transit Records Management Policies and Procedures. Performs all other related duties as assigned.

What Hampton Roads Transit employees say

Pay

Hours and flexibility

Workplace

Get the full story on Breakroom