1

Cyber Security Risk Analyst Jobs in Baltimore, MD

Conduct cybersecurity risk assessments and provide prioritized risk mitigation recommendations in ... Analyze candidate architectures by evaluating against defined security requirements to identify ...

ISSE, Senior

Columbia, MD · On-site

$175K - $230K/yr

Conduct cybersecurity risk assessments and provide prioritized risk mitigation recommendations in ... Analyze candidate architectures by evaluating against defined security requirements to identify ...

Showing results 21-40

Cyber Security Risk Analyst information

See Baltimore, MD salary details

$42.7K

$98.8K

$149K

How much do cyber security risk analyst jobs pay per year?

As of Aug 8, 2026, the average yearly pay for cyber security risk analyst in Baltimore, MD is $98,768.00, according to ZipRecruiter salary data. Most workers in this role earn between $79,000.00 and $114,800.00 per year, depending on experience, location, and employer.

What are the key skills and qualifications needed to thrive in the cyber security risk analyst position, and why are they important?

A Cyber Security Risk Analyst requires a solid understanding of information security principles, risk assessment methodologies, and a relevant degree such as computer science or cybersecurity. Familiarity with tools like risk management frameworks (NIST, ISO 27001), vulnerability scanners, and certifications such as CISSP, CISM, or CRISC is common in this role. Strong analytical thinking, attention to detail, effective communication, and problem-solving skills are vital soft skills. These competencies enable analysts to accurately identify, assess, and communicate cyber risks, protecting organizations from evolving threats.

What is a cyber security risk analyst?

A Cyber Security Risk Analyst is responsible for identifying, assessing, and mitigating cybersecurity risks within an organization. They analyze potential threats, evaluate security controls, and recommend improvements to protect sensitive data and systems. Their role often involves conducting risk assessments, ensuring compliance with industry regulations, and collaborating with IT and security teams to enhance defenses. They also monitor emerging threats and provide strategic insights to minimize vulnerabilities. Ultimately, they help organizations maintain a strong security posture against cyber threats.

What are some typical challenges faced by cyber security risk analysts on the job?

Cyber Security Risk Analysts commonly face the challenge of keeping up with constantly evolving threats and technology landscapes. They must balance the need for robust security with business objectives, often requiring nuanced decision-making and collaboration across departments. Analysts may also encounter difficulties in communicating complex technical risks to non-technical stakeholders. Successfully navigating these challenges is key to maintaining organizational security and fostering a culture of risk awareness.

What does a cybersecurity risk analyst do?

A cybersecurity risk analyst evaluates an organization’s security posture by identifying vulnerabilities, assessing potential threats, and analyzing risks to information systems. They develop strategies to mitigate risks, often using tools like risk assessment frameworks and security audits, and may hold certifications such as CISSP or CISA. Their work helps organizations protect sensitive data and ensure compliance with security standards.

How much does a cyber security risk analyst make?

The average salary for a cyber security risk analyst is around $80,000 to $110,000 per year, depending on experience, certifications, and location. Entry-level positions typically start lower, while experienced analysts with certifications like CISSP or CISA can earn higher salaries. The role often requires knowledge of risk assessment tools and security frameworks.
What are the most commonly searched types of Cyber Security Risk Analyst jobs in Baltimore, MD? The most popular types of Cyber Security Risk Analyst jobs in Baltimore, MD are:
What job categories do people searching Cyber Security Risk Analyst jobs in Baltimore, MD look for? The top searched job categories for Cyber Security Risk Analyst jobs in Baltimore, MD are:
What cities near Baltimore, MD are hiring for Cyber Security Risk Analyst jobs? Cities near Baltimore, MD with the most Cyber Security Risk Analyst job openings:
Infographic showing various Cyber Security Risk Analyst job openings in Baltimore, MD as of August 2026, with employment types broken down into 100% Full Time. Highlights an 100% In-person job distribution, with an average salary of $98,768 per year, or $47.5 per hour.

Cybersecurity Analyst (contingent 045)

MSSI

Aberdeen Proving Ground, MD

Full-time

Re-posted 11 days ago


Job description

This is contingent upon award. 

Job Title: Cybersecurity Analyst (contingent)

Job Summary:
Seeking an experienced Cybersecurity Analyst/Information Assurance Manager (IAM) Level III to provide cybersecurity expertise and ensure compliance with military Risk Management Framework (RMF) requirements. The ideal candidate will have extensive knowledge of cybersecurity engineering, risk management, and systems assessment within large, complex information systems.

 Key Responsibilities:

  • Provide expert guidance to ensure that systems comply with military RMF requirements as outlined in DoDI 8510.01 for DoD Information Technology (IT).
  • Support the Authority to Operate (ATO) process and maintain ATO certifications.
  • Conduct technical assessments of systems using tools like Assured Compliance Assessment Solution (ACAS), Security Content Automation Protocol (SCAP), and Security Technical Implementation Guides (STIGs).
  • Identify and analyze system vulnerabilities, developing Plans of Action & Milestones (POA&Ms) for remediation.
  • Recommend and implement effective remediation strategies to address identified security deficiencies.
  • Assess programmatic impacts associated with the implementation of common control requirements within the Risk Management Framework (RMF).
  • Provide expertise on cloud and network security, including cloud security infrastructure products and tools.
  • Utilize a variety of cybersecurity tools and technologies, including but not limited to:
    • Host Based Security System (HBSS)
    • Data Loss Prevention-Endpoint (DLPe)
    • Endpoint Security (ENS)
    • ePolicy Orchestrator (ePO)
    • Tychon
    • Threat Intelligence and analysis
    • Internet of Things (IoT) security
    • AI/ML applications
    • Windows Server Update Services (WSUS)
    • Security Information and Event Management (SIEM) tools, such as Splunk
    • Identity and Access Management (IAM) solutions
    • Intrusion Detection System (IDS) and Intrusion Prevention System (IPS) tools
    • SCAP, STIG Viewer, and Evaluate STIG tools.

 Qualifications:

  • Proficient understanding of the Risk Management Framework (RMF) and its application to complex information systems.
  • Strong analytical skills with the ability to identify and assess cybersecurity vulnerabilities and risks.
  • Excellent written and verbal communication skills for reporting findings and recommendations clearly to stakeholders.

 Education and Experience:

  • Bachelor’s degree in Cybersecurity, Information Technology, or a related field; relevant certifications are a plus.
  • Minimum of 5 years' experience in cybersecurity engineering.
  • Required certifications: DoD 8570.01-Manual (M) Baseline Certification for an Information Assurance Manager (IAM) Level III.
  • Secret security clearance is required.