1

Cyber Security Risk Management Jobs in Philadelphia, PA

... cybersecurity analytics, compliance, and risk management needs. In this role, you will connect data, controls, and risk signals to drive deeper risk analysis, proactively identify potential issues ...

... cybersecurity analytics, compliance, and risk management needs. In this role, you will connect data, controls, and risk signals to drive deeper risk analysis, proactively identify potential issues ...

Serve as the primary cybersecurity and risk advisor to EIT, aligning security strategies with the ... Ensure security and risk management practices are embedded in business processes, digital ...

Director, Technology Risk Management

West Point, PA · On-site

$173 - $273/hr

  • Medical

  • Dental

  • Vision

  • Retirement

  • PTO

Serve as the primary cybersecurity and risk advisor to EIT, aligning security strategies with the ... Ensure security and risk management practices are embedded in business processes, digital ...

The Global GRC Senior Analyst will report directly to the Global Cybersecurity Governance, Risk and Compliance Manager. This role involves collaborating with cross-functional teams to design ...

Senior Cybersecurity Engineer

Philadelphia, PA · On-site +1

$115K - $158K/yr

Assess cybersecurity risk across software, cloud, infrastructure, vulnerability management, and privacy programs; translate findings into actionable remediation guidance. * Provide secure ...

next page

Showing results 1-20

Cyber Security Risk Management information

See Philadelphia, PA salary details

$57.5K

$134.2K

$187.7K

How much do cyber security risk management jobs pay per year?

As of Aug 13, 2026, the average yearly pay for cyber security risk management in Philadelphia, PA is $134,170.00, according to ZipRecruiter salary data. Most workers in this role earn between $112,000.00 and $151,400.00 per year, depending on experience, location, and employer.

What are the key skills and qualifications needed to thrive in cyber security risk management?

To thrive in Cyber Security Risk Management, you need a solid understanding of risk assessment methodologies, information security frameworks (such as ISO 27001 or NIST), and often a relevant degree or certification like CISSP or CISM. Familiarity with security tools, vulnerability assessment platforms, and risk management software is typically required. Strong analytical thinking, attention to detail, and effective communication are crucial soft skills for identifying threats and conveying risk to stakeholders. These skills ensure that organizations can proactively manage and mitigate cyber threats, safeguarding critical assets and maintaining compliance.

What is cyber security risk management?

Cyber security risk management is the process of identifying, assessing, and prioritizing risks to an organization's information systems and data. It involves evaluating potential threats and vulnerabilities, determining the likelihood and impact of these risks, and implementing measures to mitigate or manage them. Effective risk management helps organizations protect sensitive data, ensure regulatory compliance, and minimize the impact of cyber attacks. This process is ongoing and adapts to new threats and changes in technology.

What is the difference between Cyber Security Risk Management vs Cyber Security Analyst?

AspectCyber Security Risk ManagementCyber Security Analyst
CertificationsCompTIA Security+, CISSP, CISMCompTIA Security+, CEH, CISSP (preferred)
Work EnvironmentPolicy development, risk assessment, strategic planningMonitoring security systems, incident response, vulnerability analysis
Employer & Industry UsageOrganizations focusing on risk mitigation and complianceOrganizations implementing and maintaining security measures

Cyber Security Risk Management professionals focus on identifying, assessing, and mitigating security risks at an organizational level, often involved in policy and strategy. Cyber Security Analysts primarily monitor security systems, analyze threats, and respond to incidents. While both roles require similar certifications and work within the same industry, their core responsibilities differ: risk managers develop strategies, whereas analysts execute security measures and respond to threats.

What are some typical challenges faced in cyber security risk management, and how can they be addressed?

Professionals in Cyber Security Risk Management often encounter challenges such as staying updated with rapidly evolving threats, balancing security needs with business objectives, and ensuring compliance with various regulations. Addressing these challenges requires continuous learning, effective communication with stakeholders, and the implementation of robust risk assessment frameworks. Collaboration with IT, legal, and business teams is essential to develop practical security policies that protect assets without hindering operations.

What are popular job titles related to Cyber Security Risk Management jobs in Philadelphia, PA?

For Cyber Security Risk Management jobs in Philadelphia, PA, the most frequently searched job titles are:

What job categories do people searching Cyber Security Risk Management jobs in Philadelphia, PA look for?

The top searched job categories for Cyber Security Risk Management jobs in Philadelphia, PA are:

What cities near Philadelphia, PA are hiring for Cyber Security Risk Management jobs?

Cities near Philadelphia, PA with the most Cyber Security Risk Management job openings:

Infographic showing various Cyber Security Risk Management job openings in Philadelphia, PA as of August 2026, with employment types broken down into 1% As Needed, 76% Full Time, 18% Part Time, 1% Temporary, and 4% Contract. Highlights an 92% Physical, 3% Hybrid, and 5% Remote job distribution, with an average salary of $134,170 per year, or $64.5 per hour.

GRC Engineer

Chubb

Philadelphia, PA • On-site

Full-time

Posted 7 days ago


Chubb rating

8.2

Company rating: 8.2 out of 10

Based on 67 frontline employees who took The Breakroom Quiz

141st of 306 rated insurance


Job description

As a GRC Engineer here at Chubb, you will apply engineering, automation, and data analytics principles to strengthen governance, risk, and compliance across our cybersecurity environment. You will serve as a hands-on platform specialist for ServiceNow IRM, helping optimize and enhance the GRC ecosystem so it continues to meet Chubb's evolving cybersecurity analytics, compliance, and risk management needs. In this role, you will connect data, controls, and risk signals to drive deeper risk analysis, proactively identify potential issues before risk is realized, and support executive reporting on application security exposure and broader cybersecurity risk. You will also play a key role in managing the platform, including how data is reviewed, how workflows are executed, and how AI capabilities are leveraged within the platform to improve automation, insight generation, and operational efficiency.

In this role, you will:

  • Design and implement automated control testing workflows in partnership with the Cyber Risk & Assurance Manager, including detailed automation playbooks for compliance and control testing
  • Own and enhance ServiceNow IRM workflows, including issue and exception management, automated ticketing, and compliance tracking
  • Implement and maintain automated risk scoring and InfoSec criticality rating calculations based on methodology defined by the Cyber Risk Assessment team, while ensuring the logic remains aligned as the methodology evolves
  • Build and maintain custom workflows, connectors, and integrations within ServiceNow IRM to support expanding GRC Engineering use cases
  • Analyze control, risk, and exception data to identify trends, validate potential gaps, and surface issues that require remediation before they become realized risk
  • Support executive reporting by translating technical findings into clear, actionable insight on application security risk and broader cybersecurity exposure
  • Help optimize the GRC platform through automation, AI-enabled capabilities, and workflow improvements that strengthen Chubb's cybersecurity analytics and risk management posture
  • Partner cross-functionally to ensure the platform ecosystem continues to support Chubb's broader technical environment and evolving security requirements
Chubb is a world leader in insurance. With operations in 54 countries, Chubb provides commercial and personal property and casualty insurance, personal accident and supplemental health insurance, reinsurance, and life insurance to a diverse group of clients. The company is distinguished by its extensive product and service offerings, broad distribution capabilities, exceptional financial strength, underwriting excellence, superior claims handling expertise and local operations globally.

At Chubb, we are committed to equal employment opportunity and compliance with all laws and regulations pertaining to it. Our policy is to provide employment, training, compensation, promotion, and other conditions or opportunities of employment, without regard to race, color, religious creed, sex, gender, gender identity, gender expression, sexual orientation, marital status, national origin, ancestry, mental and physical disability, medical condition, genetic information, military and veteran status, age, and pregnancy or any other characteristic protected by law. Performance and qualifications are the only basis upon which we hire, assign, promote, compensate, develop and retain employees. Chubb prohibits all unlawful discrimination, harassment and retaliation against any individual who reports discrimination or harassment.
  • A minimum of 5 years of related cybersecurity engineering experience inclusive of GRC technology, IT automation, or security platform engineering 
  • Hands-on ServiceNow development experience, with strong preference for the IRM module; experience with other GRC modules and/or platforms is also acceptable
  • Demonstrated Python scripting experience in a production or automation environment
  • Experience supporting cyber risk, compliance, or audit functions
  • Bachelor's degree in Computer Science, Information Systems, Cybersecurity, or a related field, or equivalent practical experience
  • ServiceNow certification, such as CIS-IRM or equivalent, is a plus
  • Experience with API and integration development for platform connectors is a plus
  • Familiarity with insurance or financial services risk and compliance environments is a plus

What Chubb employees say

Pay

Benefits

Hours and flexibility

Workplace

Get the full story on Breakroom


Chubb logo

About Chubb

Sourced by ZipRecruiter

Chubb is the world's largest publicly traded property and casualty insurer. With operations in 54 countries, Chubb provides commercial and personal property and casualty insurance, personal accident and supplemental health insurance, reinsurance and life insurance to a diverse group of clients. We are a unique global organization with a culture of individuals passionately committed to our respective crafts. With underwriting at our core, each of us contributes to providing the best insurance coverage and service to our clients. Our highly collaborative, inclusive nature helps us drive better business outcomes through diversity of background, experiences, insights and values.

Industry

Insurance services

Company size

10,000+ Employees

Headquarters location

Warren, NJ, US