1

Cyber Security Risk Analyst Jobs in Philadelphia, PA

The Global GRC Senior Analyst will report directly to the Global Cybersecurity Governance, Risk and Compliance Manager. This role involves collaborating with cross-functional teams to design ...

Cybersecurity Analyst II Category: Cyber Security Main location: United States, Pennsylvania ... Exposure to Risk Management Framework (RMF) Step 3-6 activities, including POA&M management and ...

Cyber Security Senior Risk Advisor

Philadelphia, PA · On-site

$100K - $130K/yr

Workwith clients both internally and externally to help them understand cybersecurity risks and how ... Driveinnovation as a differentiator by leveraging of digital technologies anddata analytics * Multi ...

next page

Showing results 1-20

Cyber Security Risk Analyst information

See Philadelphia, PA salary details

$43.4K

$100.3K

$151.4K

How much do cyber security risk analyst jobs pay per year?

As of Jul 31, 2026, the average yearly pay for cyber security risk analyst in Philadelphia, PA is $100,303.00, according to ZipRecruiter salary data. Most workers in this role earn between $80,200.00 and $116,500.00 per year, depending on experience, location, and employer.

What are the key skills and qualifications needed to thrive in the Cyber Security Risk Analyst position, and why are they important?

A Cyber Security Risk Analyst requires a solid understanding of information security principles, risk assessment methodologies, and a relevant degree such as computer science or cybersecurity. Familiarity with tools like risk management frameworks (NIST, ISO 27001), vulnerability scanners, and certifications such as CISSP, CISM, or CRISC is common in this role. Strong analytical thinking, attention to detail, effective communication, and problem-solving skills are vital soft skills. These competencies enable analysts to accurately identify, assess, and communicate cyber risks, protecting organizations from evolving threats.

Can you make $200,000 in cyber security?

Cyber Security Risk Analysts with extensive experience, advanced certifications, and specialized skills can potentially earn $200,000 or more annually, especially in high-demand industries or senior roles. Achieving this salary often requires a combination of technical expertise, certifications like CISSP or CISA, and a strong understanding of risk management and security frameworks.

What does a cyber security risk analyst do?

A cyber security risk analyst evaluates an organization’s security posture by identifying vulnerabilities, assessing potential threats, and recommending measures to mitigate risks. They analyze security data, develop risk management strategies, and often use tools like vulnerability scanners and risk assessment frameworks to protect information systems.

What is a Cyber Security Risk Analyst job?

A Cyber Security Risk Analyst is responsible for identifying, assessing, and mitigating cybersecurity risks within an organization. They analyze potential threats, evaluate security controls, and recommend improvements to protect sensitive data and systems. Their role often involves conducting risk assessments, ensuring compliance with industry regulations, and collaborating with IT and security teams to enhance defenses. They also monitor emerging threats and provide strategic insights to minimize vulnerabilities. Ultimately, they help organizations maintain a strong security posture against cyber threats.

What are some typical challenges faced by Cyber Security Risk Analysts on the job?

Cyber Security Risk Analysts commonly face the challenge of keeping up with constantly evolving threats and technology landscapes. They must balance the need for robust security with business objectives, often requiring nuanced decision-making and collaboration across departments. Analysts may also encounter difficulties in communicating complex technical risks to non-technical stakeholders. Successfully navigating these challenges is key to maintaining organizational security and fostering a culture of risk awareness.

How much does a cybersecurity risk analyst make?

A cybersecurity risk analyst's average salary in the United States ranges from $70,000 to $120,000 annually, depending on experience, certifications, and location. Entry-level positions typically start around $60,000, while experienced analysts with certifications like CISSP or CISA can earn over $130,000. The role often requires knowledge of risk assessment tools and security frameworks.

Can you make $500,000 a year in cyber security?

Cyber Security Risk Analysts typically earn between $70,000 and $130,000 annually, depending on experience, certifications, and location. Reaching a $500,000 salary usually requires senior roles such as Chief Information Security Officer (CISO) or executive positions, which involve strategic leadership and extensive industry experience. High salaries in cybersecurity are often associated with leadership, specialized skills, and working in high-demand sectors or organizations.
What are the most commonly searched types of Cyber Security Risk Analyst jobs in Philadelphia, PA? The most popular types of Cyber Security Risk Analyst jobs in Philadelphia, PA are:
What are popular job titles related to Cyber Security Risk Analyst jobs in Philadelphia, PA? For Cyber Security Risk Analyst jobs in Philadelphia, PA, the most frequently searched job titles are:
What job categories do people searching Cyber Security Risk Analyst jobs in Philadelphia, PA look for? The top searched job categories for Cyber Security Risk Analyst jobs in Philadelphia, PA are:
What cities near Philadelphia, PA are hiring for Cyber Security Risk Analyst jobs? Cities near Philadelphia, PA with the most Cyber Security Risk Analyst job openings:
Infographic showing various Cyber Security Risk Analyst job openings in Philadelphia, PA as of July 2026, with employment types broken down into 100% Full Time. Highlights an 100% In-person job distribution, with an average salary of $100,303 per year, or $48.2 per hour.

Senior First Line Risk Specialist - Enterprise Data

M&T Bank

Wilmington, DE • Hybrid

Full-time

Re-posted 4 days ago


M&T Bank rating

7.8

Company rating: 7.8 out of 10

Based on 185 frontline employees who took The Breakroom Quiz

88th of 170 rated banks


Job description

This role is four days onsite at our Wilmington, DE location, with the flexibility to work from home one day per week

Overview:

Leads risk analysis for complex initiatives within the Enterprise Data division, serving as the primary First-Line risk representative for this space. This role influences the overarching risk framework, drives datacentric risk governance, and provides advanced guidance to leadership to support informed decisionmaking aligned with organizational imperatives. The individual must bring strong experience in process mapping, audit practices, data governance, and the DCAM framework, with the ability to independently evaluate data processes, identify control gaps, and recommend corrective actions.

Primary Responsibilities:
  • Develop and implement strategic approaches for indepth risk assessments across Enterprise Data, ensuring comprehensive coverage of all datarelated capabilities, processes, and governance functions.

  • Create, maintain, and analyze detailed process maps to identify points of failure, operational inefficiencies, control gaps, and potential risks; translate findings into actionable remediation plans and new or enhanced controls.

  • Apply auditdriven methodologies to evaluate Enterprise Data processes, ensuring alignment with regulatory expectations, internal standards, and industry best practices.

  • Leverage the DCAM framework to assess data management maturity, identify capability gaps, and guide the Enterprise Data organization toward stronger governance and compliance.

  • Develop and execute sophisticated risk management frameworks and programs that align Enterprise Data practices with business objectives and regulatory requirements, including leading risk and control selfassessments and summarizing complex findings for leadership.

  • Drive enforcement of risk and governance frameworks, providing expert guidance and continually assessing regulations, standards, and emerging risks to achieve industryleading compliance across data operations.

  • Act proactively as the firstline risk owner, independently identifying emerging risks, control weaknesses, and areas requiring improvement across Enterprise Data-without waiting for issues to be escalated or discovered by second or thirdline functions.

  • Spearhead collaboration among crossfunctional teams and senior/executive leadership, ensuring Enterprise Data practices align with broader business goals, regulatory requirements, and enterprise risk expectations.

  • Coordinate preparation and response to regulatory engagements, including reviewing responses for accuracy, organizing documentation, and leading exam management activities (e.g., firstday letters, followup requests).

  • Encourage innovation in risk management strategies by identifying advanced methodologies to address evolving datarelated risks and recommending implementation paths to Technology and Enterprise Data leadership.

  • Provide advanced mentorship to midlevel analysts, fostering professional growth and ensuring a high standard of risk analysis and data governance expertise across the team.

  • Contribute to the design and delivery of training programs to strengthen organizational knowledge of data risk management, data governance, and associated regulatory expectations.

  • Understand and adhere to the Company's risk and regulatory standards, policies, and controls in accordance with the Company's Risk Appetite. Identify riskrelated issues requiring escalation.

  • Promote an environment that supports belonging and reflects the M&T Bank brand.

  • Maintain internal control standards, including timely remediation of audit points and regulatory issues.

  • Complete other related duties as assigned.

Scope of Responsibilities:
  • This role primarily interacts with senior people leaders within the Technology and Cybersecurity teams, senior people leaders of Technology and Cybersecurity Risk, and internal partners such as the Risk Division, Internal Audit, and Regulatory Affairs.

  • Work is accomplished with periodic direction. The position exercises judgement in selecting methods, techniques, and evaluation criteria in obtaining results. It exerts significant latitude in determining objective of assignment and takes calculated risks with consultation from expert.

  • This role may present to Regulators under direction of senior Technology and Cybersecurity Risk leaders.

Education and Experience Required:
  • Bachelor's degree and a minimum of 7 years' relevant work experience, or in lieu of a degree, a combined minimum of 11 years' higher education and/or work experience

  • Demonstrated expert knowledge of Technology and/or Cybersecurity risk principles

  • Minimum of 6 years' relevant work experience in or with the specific Technology, Cybersecurity risk area and/or business unit

Education and Experience Preferred:
  • Master's degree in Information Technology, Computer Science, Cybersecurity, Law, Business Administration, or related field

  • Applicable certification align to function or domain such as Certified in Risk and Information Systems Control (CRISC), Certified Information Systems Auditor (CISA), Certified Information Security Manager (CISM), Certified Information Systems Security Professional (CISSP)

  • Ability to lead critical analysis of work and problem solve

  • Excellent communication and interpersonal skills

  • Experience partnering with leadership to design solutions aligned with business needs

  • Excellent ability to strategically seek critical information, and apply across a broad array of processes

  • Prior experience prioritizing across competing priorities and quickly changing landscape, and execute outcomes aligned with priorities

  • Experience effectively influencing peers and leaders

  • Ability to train and mentor peers

#LI-JB3#Hybrid

M&T Bank is committed to fair, competitive, and market-informed pay for our employees. The pay range for this position is $136,000.00 - $226,600.00 (USD). The successful candidate's particular combination of knowledge, skills, and experience will inform their specific compensation.LocationWilmington, Delaware, United States of America

What M&T Bank employees say

Pay

Benefits

Hours and flexibility

Workplace

Get the full story on Breakroom