1

Cyber Security Risk Management Jobs in Alabama (NOW HIRING)

Senior Information Systems Security Engineer

Huntsville, AL ยท On-site

$99.20K - $134.60K/yr

The Senior ISSE SME will support cybersecurity, risk management, and security authorization activities for law enforcement and national security organizations. This role will provide technical ...

Utilizes eMASS to manage Risk Management Framework implementation for DoD Information systems * Ensures timely A&A submissions for DoD information systems * Uses cybersecurity knowledge to assess the ...

The Mid-Level DoW Cybersecurity Engineer is responsible for supporting the implementation ... Support the Risk Management Framework (RMF) process for system accreditation and continuous ...

Implements Risk Management Framework (RMF) processes. * Develops and maintains RMF artifacts and ... Manages cybersecurity incident reporting (DFARS 252.204-7012). * Implements NIST 800-53 security ...

Classified Cyber Security

Huntsville, AL

$109.40K - $147.80K/yr

Lockheed Martin is a cybersecurity pioneer, partner, innovator and builder. Our amazing employees ... Risk Management Framework (RMF) to include Continuous Monitoring, Plan of Action and Milestones ...

The Mid-Level DoW Cybersecurity Engineer is responsible for supporting the implementation ... Support the Risk Management Framework (RMF) process for system accreditation and continuous ...

next page

Showing results 1-20

Cyber Security Risk Management information

See Alabama salary details

$51.7K

$120.5K

$168.6K

How much do cyber security risk management jobs pay per year?

As of May 29, 2026, the average yearly pay for cyber security risk management in Alabama is $120,515.00, according to ZipRecruiter salary data. Most workers in this role earn between $100,600.00 and $136,000.00 per year, depending on experience, location, and employer.

What are the key skills and qualifications needed to thrive as a Cyber Security Risk Management professional, and why are they important?

To thrive in Cyber Security Risk Management, you need a solid understanding of risk assessment methodologies, information security frameworks (such as ISO 27001 or NIST), and often a relevant degree or certification like CISSP or CISM. Familiarity with security tools, vulnerability assessment platforms, and risk management software is typically required. Strong analytical thinking, attention to detail, and effective communication are crucial soft skills for identifying threats and conveying risk to stakeholders. These skills ensure that organizations can proactively manage and mitigate cyber threats, safeguarding critical assets and maintaining compliance.

What are some typical challenges faced by professionals in Cyber Security Risk Management, and how can they be addressed?

Professionals in Cyber Security Risk Management often encounter challenges such as staying updated with rapidly evolving threats, balancing security needs with business objectives, and ensuring compliance with various regulations. Addressing these challenges requires continuous learning, effective communication with stakeholders, and the implementation of robust risk assessment frameworks. Collaboration with IT, legal, and business teams is essential to develop practical security policies that protect assets without hindering operations.

What is cyber security risk management?

Cyber security risk management is the process of identifying, assessing, and prioritizing risks to an organization's information systems and data. It involves evaluating potential threats and vulnerabilities, determining the likelihood and impact of these risks, and implementing measures to mitigate or manage them. Effective risk management helps organizations protect sensitive data, ensure regulatory compliance, and minimize the impact of cyber attacks. This process is ongoing and adapts to new threats and changes in technology.

Can you make $500,000 a year in cyber security?

Cyber security risk management professionals can potentially earn $500,000 or more annually, especially at senior levels, in leadership roles, or with specialized skills such as threat intelligence or security architecture. Achieving this income typically requires extensive experience, advanced certifications like CISSP or CISM, and working in high-demand industries or organizations with complex security needs.

What is the difference between Cyber Security Risk Management vs Cyber Security Analyst?

AspectCyber Security Risk ManagementCyber Security Analyst
CertificationsCompTIA Security+, CISSP, CISMCompTIA Security+, CEH, CISSP (preferred)
Work EnvironmentPolicy development, risk assessment, strategic planningMonitoring security systems, incident response, vulnerability analysis
Employer & Industry UsageOrganizations focusing on risk mitigation and complianceOrganizations implementing and maintaining security measures

Cyber Security Risk Management professionals focus on identifying, assessing, and mitigating security risks at an organizational level, often involved in policy and strategy. Cyber Security Analysts primarily monitor security systems, analyze threats, and respond to incidents. While both roles require similar certifications and work within the same industry, their core responsibilities differ: risk managers develop strategies, whereas analysts execute security measures and respond to threats.

What are popular job titles related to Cyber Security Risk Management jobs in Alabama? For Cyber Security Risk Management jobs in Alabama, the most frequently searched job titles are:
What job categories do people searching Cyber Security Risk Management jobs in Alabama look for? The top searched job categories for Cyber Security Risk Management jobs in Alabama are:
Infographic showing various Cyber Security Risk Management job openings in Alabama as of May 2026, with employment types broken down into 61% Full Time, 31% Part Time, and 8% Contract. Highlights an 50% Physical, 25% Hybrid, and 25% Remote job distribution, with an average salary of $120,515 per year, or $57.9 per hour.
ISSM/Cybersecurity Engineer

ISSM/Cybersecurity Engineer

Strata-G Solutions

Huntsville, AL โ€ข On-site

$54.50 - $67/hr

Full-time

Posted 10 days ago


Job description

This is a full-time, onsite position located in Huntsville, AL.
At Strata-G, we know it takes talented and dedicated people to deliver solutions for a greater cause, and we consider our employees to be our greatest asset. We are a growing, dynamic organization offering diverse challenges to innovative professionals.
We're looking for a seasoned Cybersecurity Engineer / ISSM to lead and execute the full cybersecurity program for a complex Army weapon system. This is a high-impact role supporting mission-critical hardware and software across development, integration, testing, fielding, and long-term sustainment.
You'll serve as the contractor's primary cybersecurity authority, partnering directly with Government stakeholders, engineering teams, and program leadership to drive RMF execution, achieve and maintain ATO, and ensure lifecycle cybersecurity compliance.
What You'll Do
You'll own the cybersecurity program end-to-end, ensuring the system meets DoD, Army, CNSS, NIST, DISA, and export control requirements. From early system design through operational fielding, you'll embed cybersecurity into every engineering phase-hardware, firmware, software, testing, training, and sustainment.
You'll lead all RMF Assess & Authorize (A&A) activities, producing and maintaining Government-ready artifacts including the System Security Plan (SSP), POA&Ms, COOP/DRP documentation, and baseline inventories. You'll guide the program through CT&E, IATT, and ATO/ATC approvals, while providing continuous monitoring and risk management support throughout the lifecycle.
As the program's ISSM, you'll act as the primary cybersecurity liaison to the Program Office, Authorizing Official, SCA/SCA-V teams, DISA, DCSA, and engineering IPTs. You'll assess system changes, manage vulnerabilities, apply DISA STIGs, and ensure the system is audit-ready and Government-review-ready at all times.
What You Bring
You have deep expertise in DoD RMF, cybersecurity engineering, and A&A documentation, with hands-on experience applying NIST, CNSS, FIPS, and DISA requirements to complex systems. You're comfortable navigating ambiguity, interpreting overlapping guidance, and applying the most stringent requirements when needed.
You've supported CT&E, vulnerability remediation, and continuous risk management, and you understand how cybersecurity decisions impact mission performance, interoperability, and fielded systems. You communicate confidently with both engineers and Government customers-and you're trusted as the cybersecurity voice in the room.
Required Experience
  • Bachelor's degree in Cybersecurity, Computer Science, Engineering, Information Assurance, or related field (or equivalent experience)
  • 5+ years supporting DoD cybersecurity engineering, ISSM/ISSO, or RMF programs
  • Strong working knowledge of RMF, A&A artifacts, and DoD cybersecurity controls
  • Experience applying NIST SP 800-53, 800-37, 800-30, 800-39, 800-160, CNSSI 1253, and DISA STIGs
  • Background supporting CT&E, vulnerability mitigation, and lifecycle cybersecurity
  • Ability to obtain and maintain a DoD Secret clearance (or higher)

Preferred Experience
  • DoD 8140 / 8570 certifications (CISSP, CISM, CASP+, CCISO, IAM/IAT/IASAE)
  • Army cybersecurity experience (AR 25-1, AR 25-2, AR 380-5)
  • Experience with weapon systems, tactical or embedded systems
  • Prior ISSM, ISSE, or senior ISSO experience on ATO/ATC acquisition programs
  • Experience developing complex cybersecurity CDRLs for DoD contracts