1

Cyber Security Risk Management Jobs (NOW HIRING)

Cybersecurity Risk & Resilience Manager

Concord, CA · On-site

$121.80K - $164.60K/yr

Help shape and mature Cerus' cybersecurity program, including risk management practices, governance processes, policies, standards, and roadmap priorities. * Develop and maintain a practical ...

These teams collaborate to identify, manage and respond to threats, all while driving innovation ... The Cybersecurity Risk Analyst is responsible for executing a portion of the GM Financial (GMF ...

These teams collaborate to identify, manage and respond to threats, all while driving innovation ... Cybersecurity Governance, Risk Management, Legal Regulations, IT or Security Audit, IT or Security ...

next page

Showing results 1-20

Cyber Security Risk Management information

See salary details

$57K

$133K

$186K

How much do cyber security risk management jobs pay per year?

As of May 30, 2026, the average yearly pay for cyber security risk management in the United States is $132,962.00, according to ZipRecruiter salary data. Most workers in this role earn between $111,000.00 and $150,000.00 per year, depending on experience, location, and employer.

What are the key skills and qualifications needed to thrive as a Cyber Security Risk Management professional, and why are they important?

To thrive in Cyber Security Risk Management, you need a solid understanding of risk assessment methodologies, information security frameworks (such as ISO 27001 or NIST), and often a relevant degree or certification like CISSP or CISM. Familiarity with security tools, vulnerability assessment platforms, and risk management software is typically required. Strong analytical thinking, attention to detail, and effective communication are crucial soft skills for identifying threats and conveying risk to stakeholders. These skills ensure that organizations can proactively manage and mitigate cyber threats, safeguarding critical assets and maintaining compliance.

What are some typical challenges faced by professionals in Cyber Security Risk Management, and how can they be addressed?

Professionals in Cyber Security Risk Management often encounter challenges such as staying updated with rapidly evolving threats, balancing security needs with business objectives, and ensuring compliance with various regulations. Addressing these challenges requires continuous learning, effective communication with stakeholders, and the implementation of robust risk assessment frameworks. Collaboration with IT, legal, and business teams is essential to develop practical security policies that protect assets without hindering operations.

What is cyber security risk management?

Cyber security risk management is the process of identifying, assessing, and prioritizing risks to an organization's information systems and data. It involves evaluating potential threats and vulnerabilities, determining the likelihood and impact of these risks, and implementing measures to mitigate or manage them. Effective risk management helps organizations protect sensitive data, ensure regulatory compliance, and minimize the impact of cyber attacks. This process is ongoing and adapts to new threats and changes in technology.

Can you make $500,000 a year in cyber security?

Cyber security risk management professionals can potentially earn $500,000 or more annually, especially at senior levels, in leadership roles, or with specialized skills such as threat intelligence or security architecture. Achieving this income typically requires extensive experience, advanced certifications like CISSP or CISM, and working in high-demand industries or organizations with complex security needs.

What is the difference between Cyber Security Risk Management vs Cyber Security Analyst?

AspectCyber Security Risk ManagementCyber Security Analyst
CertificationsCompTIA Security+, CISSP, CISMCompTIA Security+, CEH, CISSP (preferred)
Work EnvironmentPolicy development, risk assessment, strategic planningMonitoring security systems, incident response, vulnerability analysis
Employer & Industry UsageOrganizations focusing on risk mitigation and complianceOrganizations implementing and maintaining security measures

Cyber Security Risk Management professionals focus on identifying, assessing, and mitigating security risks at an organizational level, often involved in policy and strategy. Cyber Security Analysts primarily monitor security systems, analyze threats, and respond to incidents. While both roles require similar certifications and work within the same industry, their core responsibilities differ: risk managers develop strategies, whereas analysts execute security measures and respond to threats.

More about Cyber Security Risk Management jobs
What cities are hiring for Cyber Security Risk Management jobs? Cities with the most Cyber Security Risk Management job openings:
What states have the most Cyber Security Risk Management jobs? States with the most job openings for Cyber Security Risk Management jobs include:
Infographic showing various Cyber Security Risk Management job openings in the United States as of May 2026, with employment types broken down into 59% Full Time, 35% Part Time, and 6% Contract. Highlights an 67% Physical, and 33% Hybrid job distribution, with an average salary of $132,962 per year, or $63.9 per hour.
Cybersecurity Risk and Data Protection Manager

Cybersecurity Risk and Data Protection Manager

Coca-Cola Consolidated, Inc.

Charlotte, NC • On-site

$105.70K - $142.80K/yr

Full-time

Medical, Retirement

Posted 8 days ago


Coca-Cola Consolidated rating

7.2

Company rating: 7.2 out of 10

Based on 95 frontline employees who took The Breakroom Quiz

167th of 378 rated food and drinks producers


Job description

Requisition ID: 251843
Locations: Charlotte
Click here to experience a Day in the Life of our Teammates!
Uncap Your Potential at America's Largest Coca-Cola Bottler - Pour Your Passion into Purpose!
We're more than beverages-we're building meaningful careers and vibrant communities. Join our team where your talent meets purpose, and every teammate directly shapes our success.
  • Career Growth: Clear pathways to advance and develop your career
  • Competitive Benefits: 401(k) match + health coverage + employee stock purchase plan
  • Purpose-Driven: Create meaningful impact in the communities you serve
  • Professional Development: Dedicated training + personalized mentorship

Join us - your refreshing new chapter starts here!
Job Overview
The Manager, Cybersecurity Risk Management - Data Protection is responsible for leading the identification, assessment, and management of cybersecurity risks that could impact the confidentiality, integrity, and availability of the company's data and critical business operations. This role serves as a key driver of the organization's cybersecurity risk management program, ensuring risks are understood, prioritized, and addressed in alignment with business objectives and risk tolerance.
This position partners closely with IT, Legal, Compliance, Internal Audit, and business leaders to translate cybersecurity and data protection risks into clear business impact, support informed decision-making, and strengthen governance and assurance across the enterprise. The Manager is accountable for maintaining risk assessments, supporting regulatory and audit requirements, overseeing control effectiveness related to data protection, and driving continuous improvement of cybersecurity risk practices across corporate and operational environments.
Rather than acting as a hands-on technical operator, this role functions as a manager of risk and process, providing oversight, coordination, and guidance to ensure cybersecurity risks-particularly those related to sensitive data, third parties, and manufacturing and distribution operations-are effectively managed and communicated.
Duties & Responsibilities
  • Lead the cybersecurity risk management program for data protection by identifying, assessing, prioritizing, and documenting risks that could impact sensitive data, business operations, and regulatory obligations.
  • Develop and maintain enterprise cybersecurity risk artifacts, including risk assessments, risk registers, and risk treatment plans, ensuring alignment with organizational risk tolerance and business objectives.
  • Partner cross functionally with IT, Legal, Compliance, Internal Audit, and business stakeholders to ensure cybersecurity and data protection risks are understood, owned, and appropriately managed.
  • Support governance, audit, and assurance activities by overseeing control documentation, evidence collection, and remediation tracking related to cybersecurity and data protection risks.
  • Translate cybersecurity risk into business impact through clear, executive level reporting, dashboards, and presentations to enable informed decision making by leadership.
  • Drive continuous improvement of cybersecurity risk practices, including alignment with industry frameworks (e.g., NIST CSF) and evolving regulatory, operational, and threat landscapes.
  • Provide guidance and oversight to ensure consistent application of risk management processes across corporate, operational, and third party environments.

Knowledge, Skills, & Abilities
  • Strong risk assessment and analytical skills, with the ability to identify, prioritize, and document cybersecurity and data protection risks.
  • Demonstrated problem solving and critical thinking skills to evaluate complex risk scenarios and recommend practical, risk based solutions.
  • Ability to translate technical cybersecurity risks into business impact, enabling informed decision making by leadership and stakeholders.
  • Experience with strategy development and program execution, including defining objectives, tracking progress, and driving continuous improvement.
  • Effective time management and organizational skills, with the ability to manage multiple priorities and deadlines concurrently.
  • Strong written and verbal communication skills, including the ability to prepare executive level reporting and facilitate cross functional discussions.
  • Proven ability to work cross functionally with IT, Legal, Compliance, Audit, and business teams to align on risk treatment and accountability.
  • Experience supporting or leading governance, risk, and compliance (GRC) activities, including risk registers, control documentation, and audit support.
  • Ability to influence without direct authority, drive consensus, and remove barriers to risk remediation.
  • Familiarity with data protection, third party risk, and operational risk considerations in large or distributed enterprise environments.
  • Experience in cybersecurity risk management, governance, or compliance within a medium to large enterprise environment.
  • Demonstrated ability to assess, document, and communicate cybersecurity and data protection risks in business terms.
  • Working knowledge of cybersecurity and risk management frameworks (e.g., NIST CSF, NIST RMF).

Minimum Qualifications
  • Bachelor's degree (4 years)
  • Knowledge acquired through 5 to up to 7 years of work experience

Preferred Qualifications
Bachelor's degree (B.S.) in Cybersecurity, Information Security, Information Technology, Computer Science, Information Systems, Risk Management, or a closely related field.
Experience supporting data protection, third party risk, or compliance initiatives in manufacturing, distribution, or operational environments.
Familiarity with regulatory, audit, and assurance activities (e.g., SOX, PCI, internal audit support).
Experience maintaining cybersecurity risk assessments, risk registers, control documentation, and executive level risk reporting.
One or more professional certifications preferred: CRISC, CISM, CISA, CISSP.
Work Environment
Office environment. 4 days in office, 1 day remote
#LI-AF1
Equal Opportunity Employer - All qualified applicants will be considered for employment without regard to disability, protected veteran status, or any other characteristic protected by applicable law.

What Coca-Cola Consolidated employees say

Pay

Benefits

Hours and flexibility

Workplace

Get the full story on Breakroom


Coca-Cola Consolidated logo

About Coca-Cola Consolidated

Sourced by ZipRecruiter

Coca-Cola Consolidated, based in Charlotte, NC, US, is a preeminent company in the beverage industry. The company is the largest independent bottler for The Coca-Cola Company in the United States. The company’s product portfolio includes prominent beverages such as Coca-Cola, Diet Coke, Sprite, and a variety of other beverages produced by The Coca-Cola Company. Founded in in 1980 after multiple expansions and mergers, the company has since gained a steadfast reputation in the industry as a leading bottler and distributor. Coca-Cola Consolidated's core values are committed to excellence, committed to service, committed to a higher calling, and committed to each other. Their mission is to share in the refreshment, fun, and fellowship of happiness found in The Coca-Cola Company’s beverages. Their notable achievements include not only market expansion but also their history of giving back to the communities where they operate, signifying their dedication to corporate social responsibility.

Industry

Food and drink manufacturing

Company size

10,000+ Employees

Headquarters location

Charlotte, NC, US