1

Cyber Security Risk Assessment Jobs in New York (NOW HIRING)

Director of Cybersecurity - GRC

Newark, NJ · On-site

$116K - $156K/yr

Implementing the risk assessment framework, which identifies critical cybersecurity and privacy impacting business process and/or systems. * Maintaining the global Cybersecurity and IT risk registers ...

next page

Showing results 1-20

Cyber Security Risk Assessment information

See New York salary details

$62.4K

$145.5K

$203.5K

How much do cyber security risk assessment jobs pay per year?

As of Aug 31, 2026, the average yearly pay for cyber security risk assessment in New York is $145,465.00, according to ZipRecruiter salary data. Most workers in this role earn between $121,400.00 and $164,100.00 per year, depending on experience, location, and employer.

What is a cyber security risk assessment?

A cyber security risk assessment is a process used to identify, evaluate, and prioritize potential threats and vulnerabilities that could negatively impact an organization's information systems. By analyzing assets, threats, vulnerabilities, and impacts, organizations can determine the likelihood and consequences of cyber incidents. The goal is to implement appropriate measures to reduce risks to acceptable levels, ensuring data protection and regulatory compliance. Regular risk assessments help organizations stay ahead of evolving cyber threats and make informed security decisions.

What are some common challenges faced by professionals conducting cyber security risk assessments?

Professionals in cyber security risk assessment often face challenges such as keeping up with rapidly evolving threats, effectively communicating technical risks to non-technical stakeholders, and ensuring comprehensive coverage across complex IT environments. Balancing thoroughness with tight deadlines can also be demanding, as assessments must be both detailed and timely. Collaborating with various departments to gather accurate information and maintain up-to-date asset inventories is crucial for effective risk analysis and mitigation.

What are the key skills and qualifications needed to thrive in cyber security risk assessment, and why are they important?

To excel in Cyber Security Risk Assessment, you need a solid understanding of information security principles, risk management frameworks, and often a degree in cybersecurity, IT, or related fields. Familiarity with tools like vulnerability scanners, SIEM systems, and certifications such as CISSP or CISM are commonly required. Analytical thinking, attention to detail, and strong communication skills help professionals effectively assess risks and convey findings to stakeholders. These skills are crucial for identifying vulnerabilities, prioritizing threats, and ensuring the organization’s data and systems are adequately protected.

What is the difference between Cyber Security Risk Assessment vs Cyber Security Analyst?

AspectCyber Security Risk AssessmentCyber Security Analyst
Primary FocusIdentifying and evaluating security risks and vulnerabilitiesMonitoring, analyzing, and responding to security threats
CertificationsCompTIA Security+, CISSP, CISACompTIA Security+, CISSP, CEH
Work EnvironmentRisk assessment teams, consulting firms, security departmentsSecurity operations centers, IT departments, incident response teams

While both roles require similar certifications and work within cybersecurity, a Cyber Security Risk Assessment focuses on evaluating potential vulnerabilities and risks to an organization’s assets. In contrast, a Cyber Security Analyst actively monitors and responds to security threats, ensuring ongoing protection. Understanding these differences helps organizations assign the right responsibilities to each role.

What are risk assessments in cybersecurity?

In cybersecurity, a risk assessment is a process that a Cyber Security Risk Assessment professional uses to identify, evaluate, and prioritize potential security threats and vulnerabilities within an organization's information systems. It involves analyzing assets, threats, and existing controls to determine the level of risk, helping organizations implement appropriate security measures and comply with standards like ISO 27001 or NIST. Regular risk assessments are essential for maintaining a strong security posture and managing evolving cyber threats.

What are popular job titles related to Cyber Security Risk Assessment jobs in New York?

For Cyber Security Risk Assessment jobs in New York, the most frequently searched job titles are:

What job categories do people searching Cyber Security Risk Assessment jobs in New York look for?

The top searched job categories for Cyber Security Risk Assessment jobs in New York are:

What cities in New York are hiring for Cyber Security Risk Assessment jobs?

Cities in New York with the most Cyber Security Risk Assessment job openings:

Infographic showing various Cyber Security Risk Assessment job openings in New York as of August 2026, with employment types broken down into 88% Full Time, 10% Part Time, and 2% Contract. Highlights an 91% Physical, 2% Hybrid, and 7% Remote job distribution, with an average salary of $145,465 per year, or $69.9 per hour.

Cyber Security Risk Analyst [2027 EDGE Program]

The Depository Trust Clearing

Jersey City, NJ • Hybrid

Full-time

Medical, Retirement, PTO

Posted 5 days ago


Job description

Make an impact at DTCC

Cyber Security Risk Office (CSSRO)
As an Analyst within DTCC's Cyber Security Risk Office (CSRO), you will help support the firm's cyber security risk management objectives by contributing to activities that strengthen cyber governance, oversight, and risk management practices across the organization. Operating as a Second Line of Defense function, CSRO provides independent oversight, risk guidance, and credible challenge to help ensure cyber security risks are effectively identified, assessed, governed, and managed.

In this role, you will collaborate with technology, security, risk, and business stakeholders across the enterprise to support initiatives that enhance cyber resilience, promote sound risk management practices, and strengthen the overall security posture of the organization. Your work will contribute to maintaining stakeholder confidence and supporting DTCC's mission as critical infrastructure for the global financial markets.

At DTCC, we help power the global financial markets by providing critical infrastructure that supports the safe and efficient processing of securities transactions. In this role, you will learn how your business area contributes to that broader mission while building practical skills through meaningful work, coaching, and structured development.

About the EDGE Program

EDGE is DTCC's 18-month early-career development program for recent graduates. The program combines hands-on business experience, structured learning, mentorship, networking, and regular feedback to help analysts build technical, functional, and leadership capabilities.

What you will gain
  • A structured onboarding experience, including Welcome Week and program orientation.

  • Hands-on experience through meaningful work aligned to business priorities.

  • Exposure across the team through projects, shadowing, and stretch assignments.

  • Monthly learning sessions, business education, professional development, and opportunities to hear from leaders and subject matter experts.

  • Regular feedback, including a 90-day feedback and assessment milestone, manager coaching, and program check-ins.

  • Mentorship, networking, and opportunities to build relationships across DTCC.

Areas of opportunity

Analysts in this role may gain exposure to a broad range of cyber security and technology risk disciplines, including cyber governance, risk assessment, control frameworks, security standards, compliance monitoring, control evaluation, risk reporting, and oversight processes. The role provides opportunities to learn how cyber security requirements and controls are implemented across enterprise technologies, while developing an understanding of how technology, security, risk management, and regulatory expectations intersect within a complex financial services environment.

What you will do

Role Responsibilities

  • Support cyber security risk management, governance, and oversight activities that help strengthen DTCC's security posture and risk management capabilities.

  • Analyze information, evidence, metrics, and documentation to support risk assessments, control evaluations, governance processes, and management reporting.

  • Partner with technology, security, risk, and business stakeholders to identify, assess, monitor, and communicate cyber security risks and remediation activities.

  • Research emerging technologies, cyber threats, industry practices, and evolving risks and provide insights that support informed decision-making.

  • Contribute to reporting, presentations, process improvement initiatives, and cross-functional projects that enhance cyber security programs, governance, and operational effectiveness.

What will help you succeedRequired
  • Pursuing a bachelor's degree in Cyber Security, Information Technology, Risk Management, Business, or any other related field.

  • Expected graduation date: May 2027

  • Minimum GPA: 3.2

  • Authorization to work permanently in the United States without current or future sponsorship.

Preferred
  • Internship, project, research, student organization, volunteer, or leadership experience related to the role.

  • Interest in financial services and how business, technology, operations, risk, and regulation connect.

What makes you successful
  • Curiosity and a willingness to learn in a complex industry.

  • Strong analytical thinking, problem-solving, and attention to detail.

  • Clear written and verbal communication.

  • Collaboration, accountability, adaptability, and follow-through.

  • Ability to ask thoughtful questions, use feedback, and connect your work to team goals.

Benefits and work model
  • Competitive compensation, including base pay and annual incentive opportunities, where applicable.

  • Comprehensive health, wellness, retirement, and paid time off benefits based on location and eligibility.

  • Hybrid work model: 3 days in office and 2 days remote, based on team schedule.

The salary range is indicative for roles at the same level within DTCC across all US locations. Actual salary is determined based on the role, location, individual experience, skills, and other considerations. We are an equal opportunity employer and value diversity at our company. We do not discriminate on the basis of race, religion, color, national origin, sex, gender, gender expression, sexual orientation, age, marital status, veteran status, or disability status. We will ensure that individuals with disabilities are provided reasonable accommodation to participate in the job application or interview process, to perform essential job functions, and to receive other benefits and privileges of employment. Please contact us to request accommodation.