1

Cybersecurity Risk Consultant Jobs (NOW HIRING)

We combine deep financial services expertise with cybersecurity, risk management, data, and ... About the Job As a Senior Consultant within Capco's Cybersecurity Practice, you will play a key ...

Consulting or Big 4 cybersecurity risk experience is highly valued. Core Skills * Cyber Risk Management * IT Risk Management * Information Security Risk Assessments * Executive Stakeholder Management

next page

Showing results 1-20

Cybersecurity Risk Consultant information

See salary details

$29

$63

$93

How much do cybersecurity risk consultant jobs pay per hour?

As of Jun 17, 2026, the average hourly pay for cybersecurity risk consultant in the United States is $63.41, according to ZipRecruiter salary data. Most workers in this role earn between $47.84 and $76.44 per hour, depending on experience, location, and employer.

What does a cyber risk consultant do?

A cybersecurity risk consultant assesses an organization's security posture by identifying vulnerabilities, analyzing potential threats, and recommending measures to mitigate risks. They often use tools like risk assessment frameworks and may hold certifications such as CISSP or CISM to evaluate and improve cybersecurity defenses.

What is the 80 20 rule in cyber security?

The 80/20 rule in cybersecurity, often called the Pareto Principle, suggests that approximately 80% of security issues are caused by 20% of vulnerabilities or threats. Cybersecurity risk consultants focus on identifying and mitigating these critical vulnerabilities to improve overall security posture efficiently.

How much do cyber security consultants get paid?

Cybersecurity risk consultants typically earn between $70,000 and $130,000 annually, depending on experience, certifications, and location. Senior consultants with specialized skills or certifications like CISSP or CISA can earn higher salaries, often exceeding $150,000. Compensation also varies based on the industry and the complexity of the security environment they manage.

Can you make $500,000 a year in cyber security?

Cybersecurity Risk Consultants and senior cybersecurity professionals with extensive experience, advanced certifications, and specialized skills can potentially earn $500,000 or more annually, especially in high-demand industries or senior leadership roles. Achieving this level often requires a combination of technical expertise, strategic responsibilities, and often working in consulting or executive positions.
What cities are hiring for Cybersecurity Risk Consultant jobs? Cities with the most Cybersecurity Risk Consultant job openings:
What states have the most Cybersecurity Risk Consultant jobs? States with the most job openings for Cybersecurity Risk Consultant jobs include:
Senior Specialist - AI Technology and Cybersecurity Risk

Senior Specialist - AI Technology and Cybersecurity Risk

M&T Bank

Buffalo, NY

Full-time

Posted 11 days ago


M&T Bank rating

7.8

Company rating: 7.8 out of 10

Based on 180 frontline employees who took The Breakroom Quiz

67th of 141 rated banks


Job description

Overview:

Leads risk analysis for Artificial Intelligence, influencing overarching risk framework and providing advanced guidance to leadership for informed decision-making aligned with organizational imperatives.

Primary Responsibilities:
  • Develop and implement strategic approaches for in-depth risk assessments for comprehensive coverage of artificial intelligence and broader technology capabilities.

  • Develop and execute sophisticated risk management framework and programs that inform alignment of practices with business objectives and regulatory requirements, including (but not limited to) developing complex process maps, leading risk controls self-assessments, and summarizing complex findings.

  • Influence the design and ongoing evolution of an artificial intelligence governance program. Identify and document AI risks and controls, and assist in the development of metrics to measure and monitor risk.

  • Assist in the assessment of artificial intelligence security risks, including lifecycle management, architecture/design, and incident response processes.

  • Drive enforcement of frameworks, providing expert guidance and continually assessing regulations and standards to achieve industry-leading technology and AI risk compliance.

  • Spearhead collaboration among cross-functional teams and senior or executive leadership to align technology and AI practices with overarching business goals and regulatory requirements; maintain productive relationships with stakeholders and third parties to ensure resiliency across Technology, Cybersecurity, and the Bank.

  • Coordinate preparation and response to regulatory engagements, including reviewing responses for accuracy, organizing documentation, and leading exam management activities (e.g., first day letter review, response tracking, document repositories).

  • Encourage innovation in risk management strategies through identification of advanced methodologies to address evolving AI and technology risks, and recommend paths for implementation to Technology and Cybersecurity Risk leadership.

  • Provide advanced mentorship to mid-level analysts, fostering professional growth and maintaining high standards across the risk team.

  • Contribute to the design and delivery of training programs to strengthen organizational understanding of technology and AI risk management and enhance critical skill development.

  • Understand and adhere to the Company's risk and regulatory standards, policies, and controls in alignment with the Company's Risk Appetite; identify and escalate risk-related issues as appropriate.

  • Promote an environment that supports belonging and reflects the M&T Bank brand.

  • Maintain M&T internal control standards, including timely implementation of audit findings and regulatory issues.

  • Complete other related duties as assigned.

Scope of Responsibilities:
  • Serve as a primary resource for AI risk governance, contributing to definition and evolution of the AI risk framework and delivering reporting to leadership and risk committees.

  • Support execution of key program initiatives, ensuring audit and regulatory readiness through disciplined documentation, evidence management, and remediation tracking.

  • Interact regularly with senior leaders across Technology, Cybersecurity, Technology & Cybersecurity Risk, and key internal partners including Risk Division, Internal Audit, Regulatory Affairs, and lines of business.

  • Effectively communicate AI and technology risk and control concepts to cross-functional stakeholders, including non-technical partners (e.g., Finance, Credit, Line of Business).

  • Work is accomplished with periodic direction; exercises judgment in selecting methods, techniques, and evaluation criteria, and operates with significant autonomy while consulting with subject matter experts as needed.

  • May present to regulators under the direction of senior Technology and Cybersecurity Risk leadership.

Supervisory/Managerial Responsibilities:
  • No supervisory responsibilities.
Education and Experience Required:
  • Bachelor's degree and a minimum of 7 years' relevant work experience, or in lieu of a degree, a combined minimum of 11 years' higher education and/or work experience
  • Demonstrated expert knowledge of Technology and/or Cybersecurity risk principles
  • Minimum of 6 years' relevant work experience in or with Technology, Cybersecurity risk, and/or emerging areas such as Artificial Intelligence risk and governance
Education and Experience Preferred:
  • Master's degree in Information Technology, Computer Science, Cybersecurity, Law, Business Administration, or related field

  • Applicable certifications aligned to function or domain such as:

    • Advanced in AI Audit (AAIA)
    • Advanced in AI Risk (AAIR)
    • Certified in Risk and Information Systems Control (CRISC)
    • Certified Information Systems Auditor (CISA)
    • Certified Information Security Manager (CISM)
    • Certified Information Systems Security Professional (CISSP)
  • Experience with Artificial Intelligence risk and governance frameworks and audit applications

  • Ability to lead critical analysis of complex problems and drive solutions

  • Excellent communication and interpersonal skills

  • Experience partnering with leadership to design solutions aligned with business needs

  • Strong ability to identify and synthesize critical information across a wide range of processes

  • Proven ability to prioritize across competing demands in a rapidly changing environment

  • Experience effectively influencing peers and senior leaders

  • Ability to train, mentor, and develop others

M&T Bank is committed to fair, competitive, and market-informed pay for our employees. The pay range for this position is $123,600.00 - $206,000.00 Annual (USD). The successful candidate's particular combination of knowledge, skills, and experience will inform their specific compensation.LocationBuffalo, New York, United States of America

What M&T Bank employees say

Pay

Benefits

Hours and flexibility

Workplace

Get the full story on Breakroom