1

Cyber Risk Manager Jobs (NOW HIRING)

Key Responsibilities Cyber Risk Management * Conduct cybersecurity risk assessments and technology reviews for new and existing technology initiatives. * Evaluate cybersecurity risks throughout the ...

Key Responsibilities Cyber Risk Management * Conduct cybersecurity risk assessments and technology reviews for new and existing technology initiatives. * Evaluate cybersecurity risks throughout the ...

We are seeking a Cyber Risk Analyst (SME-level). This role involves conducting on-site and remote ... Create and manage task plans, assessment schedules, and execution strategies to ensure effective ...

We are seeking a Cyber Risk Analyst (SME-level). This role involves conducting on-site and remote ... Create and manage task plans, assessment schedules, and execution strategies to ensure effective ...

Manager, Cyber Risk & Analysis

Richmond, VA · On-site

$109K - $148K/yr

Manager, Cyber Risk & Analysis At Capital One, we're rethinking the way the world approaches banking by experimenting and innovating how we serve our 65 million customers. We are looking for ...

They will help shape Cyber Command's approach to risk management, build new risk frameworks and processes, and assess and monitor NYC agencies' cybersecurity risks. Responsibilities will include ...

Manage cyber risk-related program activities, and ensure effective collaboration within the team, as well as technology, business, and other shareholder groups. * Maintain the cyber-risk register ...

Manager, Cyber Risk & Analysis

Mclean, VA · On-site

$112K - $151K/yr

Manager, Cyber Risk & Analysis At Capital One, we're rethinking the way the world approaches banking by experimenting and innovating how we serve our 65 million customers. We are looking for ...

$109 - $185/hr

The ideal candidate combines strong cyber risk management expertise with the ability to leverage data-driven insights, threat intelligence, emerging technologies, and AI-enabled capabilities to ...

New

Cyber Risk Analyst

Brooklyn, NY · On-site

$90K - $100K/yr

They will help shape Cyber Command's approach to risk management, build new risk frameworks and processes, and assess and monitor NYC agencies' cybersecurity risks. Responsibilities will include ...

Cyber Risk Analyst

Brooklyn, NY · On-site

$90K - $100K/yr

They will help shape Cyber Command's approach to risk management, build new risk frameworks and processes, and assess and monitor NYC agencies' cybersecurity risks. Responsibilities will include ...

Showing results 41-60

Cyber Risk Manager information

See salary details

$51.5K

$111.6K

$170K

How much do cyber risk manager jobs pay per year?

As of Aug 24, 2026, the average yearly pay for cyber risk manager in the United States is $111,556.00, according to ZipRecruiter salary data. Most workers in this role earn between $90,000.00 and $129,000.00 per year, depending on experience, location, and employer.

How does a cyber risk manager collaborate with other departments to strengthen an organization's cybersecurity posture?

A Cyber Risk Manager frequently works with IT, legal, compliance, and business units to identify, assess, and mitigate cyber risks across the organization. This collaboration involves leading risk assessments, facilitating security awareness training, and ensuring that cybersecurity policies align with business objectives. Regular cross-department meetings and incident response simulations are common, fostering a shared responsibility for cyber resilience. Effective communication and relationship-building skills are essential in this role to bridge technical and non-technical teams.

What are the key skills and qualifications needed to thrive as a cyber risk manager, and why are they important?

To thrive as a Cyber Risk Manager, you need a solid background in information security, risk assessment, and compliance, often supported by a degree in cybersecurity or a related field. Familiarity with risk management frameworks (such as NIST or ISO 27001), GRC tools, and relevant certifications like CISSP or CISM is typically required. Excellent analytical thinking, communication, and leadership skills set top performers apart in this role. These skills are crucial for identifying risks, implementing effective controls, and ensuring the organization’s digital assets remain secure and compliant.

What is the difference between Cyber Risk Manager vs Cybersecurity Analyst?

AspectCyber Risk ManagerCybersecurity Analyst
CertificationsCRISC, CISSP, CISMCompTIA Security+, CISSP, CEH
Work EnvironmentRisk assessment, policy development, strategic planningMonitoring security systems, incident response, vulnerability testing
Employer & Industry UsageFinancial, healthcare, large enterprisesIT departments, security firms, corporate environments

The Cyber Risk Manager focuses on identifying, assessing, and mitigating organizational cyber risks through strategic planning and policy development. In contrast, the Cybersecurity Analyst primarily monitors security systems, responds to incidents, and tests vulnerabilities. Both roles require certifications like CISSP, but their daily tasks and focus areas differ significantly, with the manager taking a broader, strategic approach and the analyst handling operational security tasks.

How much does a cyber risk manager make?

A cyber risk manager's salary typically ranges from $90,000 to $150,000 annually, depending on experience, certifications, and industry. Senior roles or those in high-demand sectors can earn higher compensation, often supplemented with bonuses and benefits.

What does a cyber risk manager do?

A cyber risk manager assesses and mitigates cybersecurity threats to an organization’s information systems. They identify vulnerabilities, develop risk management strategies, and implement security controls, often using tools like risk assessment frameworks and security software. Certification such as CISSP or CISM can enhance their effectiveness in managing cyber risks.
More about Cyber Risk Manager jobs

What cities are hiring for Cyber Risk Manager jobs?

Cities with the most Cyber Risk Manager job openings:

What states have the most Cyber Risk Manager jobs?

States with the most job openings for Cyber Risk Manager jobs include:

Infographic showing various Cyber Risk Manager job openings in the United States as of August 2026, with employment types broken down into 88% Full Time, 11% Part Time, and 1% Contract. Highlights an 81% Physical, 2% Hybrid, and 17% Remote job distribution, with an average salary of $111,556 per year, or $53.6 per hour.

GRC Lead / Cyber Risk Manager

CyberLinx Solutions LLC

Washington, DC

$125K - $169K/yr

Full-time

Re-posted 14 days ago


Job description

CyberLinx Solutions LLC is seeking a forward thinking Cybersecurity GRC Lead / Cyber Risk Manager responsible for leading the organization’s cybersecurity governance, risk, and compliance (GRC) program. This role oversees enterprise risk assessments, regulatory compliance, policy development, and security control implementation aligned to industry frameworks such as NIST CSF and NIST RMF.

The ideal candidate will serve as a strategic advisor to leadership, ensuring cybersecurity risks are identified, assessed, and managed in alignment with business objectives and regulatory requirements.

Key Responsibilities:

Governance & Program Leadership

  • Lead and manage the enterprise GRC program, including policies, standards, and procedures
  • Serve as the primary advisor on cybersecurity risk and compliance matters
  • Align cybersecurity strategy with business objectives and regulatory requirements
  • Provide executive-level reporting on risk posture, compliance status, and remediation efforts

Risk Management:

  • Conduct enterprise and system-level cybersecurity risk assessments
  • Develop and maintain risk registers aligned to NIST SP 800-53 and NIST SP 800-171
  • Define risk tolerance, scoring methodologies, and mitigation strategies
  • Perform gap assessments and maturity evaluations using NIST CSF

Compliance & Audit

  • Ensure compliance with federal, state, and industry regulations for NIST RMF, and FISMA as applicable.
  • Lead audit readiness efforts and coordinate internal/external audits
  • Develop Plans of Action & Milestones (POA&M) and track remediation activities
  • Maintain documentation supporting Authority to Operate (ATO) processes

Security Controls & Frameworks

  • Oversee implementation and validation of security controls
  • Map controls across frameworks (NIST CSF, NIST 800-53, ISO 27001)
  • Collaborate with technical teams to ensure control effectiveness

Third-Party Risk Management

  • Evaluate vendor and third-party cybersecurity risks
  • Conduct security assessments and due diligence reviews
  • Ensure contractual security and compliance requirements are met

Required Qualifications:

  • Bachelor’s degree in Cybersecurity, Information Technology, Risk Management, or related field
  • 8+ years of experience in cybersecurity, with at least 3–5 years in GRC or risk management leadership roles
  • Strong knowledge of:
    • NIST Cybersecurity Framework (CSF)
    • NIST Risk Management Framework (RMF)
    • NIST SP 800-53 / 800-171
  • Experience supporting audits, compliance programs, and regulatory frameworks
  • Proven ability to lead cross-functional teams and communicate with executive leadership