1

Cybersecurity Risk Management Jobs in Kentucky (NOW HIRING)

VP Enterprise AI Enablement

Eastwood, KY · On-site

$275K - $315K/yr

Establish enterprise standards for responsible AI, data usage, security, privacy, and risk management in partnership with Legal, Cybersecurity, IT Architecture, HR, and Compliance. Own AI investment ...

Cyber Data Protection Manager

Louisville, KY · Remote

$106.70K - $144.10K/yr

If so, consider joining Deloitte & Touche LLP's growing Cyber Risk Digital Trust & Privacy practice ... Bachelor's degree in Cybersecurity, Information Security, Engineering, Computer Science ...

Cyber Data Protection Manager

Louisville, KY · Remote

$106.70K - $144.10K/yr

If so, consider joining Deloitte & Touche LLP's growing Cyber Risk Digital Trust & Privacy practice ... Bachelor's degree in Cybersecurity, Information Security, Engineering, Computer Science ...

IT Manager

Bowling Green, KY · On-site

$93.10K - $114.20K/yr

Risk management and training * Design and manage network capacity to support high-bandwidth video ... Implement cybersecurity standards and access controls * Establish monitoring, alerting, and ...

Supports company's risk management program by assessing potential risks associated with third ... Bachelor's degree required in computer science, information systems, cybersecurity, business ...

Supports company's risk management program by assessing potential risks associated with third ... Bachelor's degree required in computer science, information systems, cybersecurity, business ...

IT Manager

Bowling Green, KY · On-site

$93.10K - $114.20K/yr

Risk management and training * Design and manage network capacity to support high-bandwidth video ... Implement cybersecurity standards and access controls * Establish monitoring, alerting, and ...

next page

Showing results 1-20

Cybersecurity Risk Management information

See Kentucky salary details

$49.5K

$115.5K

$161.5K

How much do cybersecurity risk management jobs pay per year?

As of May 30, 2026, the average yearly pay for cybersecurity risk management in Kentucky is $115,481.00, according to ZipRecruiter salary data. Most workers in this role earn between $96,400.00 and $130,300.00 per year, depending on experience, location, and employer.

What are the key skills and qualifications needed to thrive in Cybersecurity Risk Management, and why are they important?

To thrive in Cybersecurity Risk Management, you need a solid understanding of information security principles, risk assessment methodologies, compliance standards, and typically a degree in cybersecurity or a related field. Familiarity with risk management frameworks (such as NIST or ISO 27001), security tools, and professional certifications like CISSP or CRISC is highly valued. Strong analytical thinking, effective communication, and problem-solving skills help professionals translate technical risks for non-technical stakeholders and foster collaboration. These competencies are crucial to proactively identifying threats, managing vulnerabilities, and ensuring organizational resilience in a rapidly evolving digital landscape.

What are some common challenges faced by professionals in Cybersecurity Risk Management, and how can they be addressed?

Professionals in Cybersecurity Risk Management often encounter challenges such as keeping up with rapidly evolving cyber threats, balancing security needs with business objectives, and ensuring compliance with industry regulations. Addressing these challenges requires continuous learning, effective communication with stakeholders, and close collaboration with IT, legal, and business teams. Building strong partnerships across departments and investing in ongoing training can help mitigate these obstacles and support proactive risk management.

What is cybersecurity risk management?

Cybersecurity risk management is the process of identifying, assessing, and prioritizing risks to an organization's digital assets and information systems. It involves implementing strategies and controls to minimize the impact of potential cyber threats, such as data breaches, malware, and unauthorized access. The goal is to balance security measures with business needs, ensuring sensitive information remains protected while maintaining operational efficiency. Effective risk management is ongoing, adapting to new threats and changes within the organization.

What is the difference between Cybersecurity Risk Management vs Cybersecurity Analyst?

AspectCybersecurity Risk ManagementCybersecurity Analyst
CertificationsCRISC, CISSP, CISMCompTIA Security+, CEH, CISSP
Work EnvironmentRisk assessment, policy development, strategic planningMonitoring security systems, incident response, vulnerability analysis
Employer & Industry UsageFinancial, healthcare, government, large enterprisesIT departments, cybersecurity firms, corporate security teams

Cybersecurity Risk Management focuses on identifying, assessing, and mitigating security risks at an organizational level, often involving policy creation and strategic planning. In contrast, a Cybersecurity Analyst primarily monitors security systems, responds to incidents, and analyzes vulnerabilities. Both roles require similar certifications but serve different functions within cybersecurity teams.

What are popular job titles related to Cybersecurity Risk Management jobs in Kentucky? For Cybersecurity Risk Management jobs in Kentucky, the most frequently searched job titles are:
What job categories do people searching Cybersecurity Risk Management jobs in Kentucky look for? The top searched job categories for Cybersecurity Risk Management jobs in Kentucky are:

Principal Product Security Engineer

Johnson & Johnson

Covington, KY • On-site, Remote

Full-time

Medical, Dental, Vision, Life, Retirement, PTO

Posted 20 days ago


Johnson & Johnson rating

8.1

Company rating: 8.1 out of 10

Based on 99 frontline employees who took The Breakroom Quiz

32nd of 70 rated pharmaceutical


Job description

At Johnson & Johnson, we believe health is everything. Our strength in healthcare innovation empowers us to build a world where complex diseases are prevented, treated, and cured, where treatments are smarter and less invasive, and solutions are personal. Through our expertise in Innovative Medicine and MedTech, we are uniquely positioned to innovate across the full spectrum of healthcare solutions today to deliver the breakthroughs of tomorrow, and profoundly impact health for humanity. Learn more at https://www.jnj.com

Job Function:

Technology Enterprise Strategy & Security

Job Sub Function:

Solution Architecture

Job Category:

Scientific/Technology

All Job Posting Locations:

Albuquerque, New Mexico, United States of America, Albuquerque, New Mexico, United States of America, Alexandria, Virginia, United States, Atlanta, Georgia, United States, Austin, Texas, United States, Baltimore, Maryland, United States, Billings, Montana, United States, Birmingham, Alabama, United States, Bismarck, North Dakota, United States, Bloomington, Illinois, United States, Boise, Idaho, United States, Boulder, Colorado, United States, Bridgeport, Connecticut, United States, Burlington, Vermont, United States, Charleston, South Carolina, United States, Charleston, West Virginia, United States, Charlotte, North Carolina, United States, Chattanooga, Tennessee, United States, Cleveland, Ohio, United States, Concord, New Hampshire, United States, Danvers, Massachusetts, United States of America, Detroit, Michigan, United States, Dover, Delaware, United States, Flagstaff, Arizona, United States, Indianapolis, Indiana, United States {+ 23 more}

Job Description:

We are searching for the best talent for a Principal Product Security Engineer to be located in Danvers, MA or Raritan, NJ. Remote work options may be considered on a case-by-case basis and if approved by the Company.

Are you passionate about security and interested in joining a community of collaborative colleagues working in a Patient First! culture? If that’s you, we have an immediate opportunity for a Principal Product Security Engineer to join the newly formed Product Security team to help ensure security is implemented by design for this top-performing medical device company. This is an exciting opportunity to impact development initiatives that will shape future product development and industry standards. You will own the Product Security process that includes both pre-market and post-market processes engineering teams leverage throughout the product development lifecycle. If you are eager to leverage your security risk and compliance skills to make a difference and directly impact patient lives, this could be perfect for you.

Primary Duties and Responsibilities

  • Being at the office in Danvers MA for a minimum of 3 days per week (for candidates within commutable distance to site).
  • Partner with engineering teams (cloud, console, pump, etc.) to drive successful adherence to Abiomed’s product security policies, processes, program objectives.
  • Create, update, and improve product security processes.
  • Act as a SME on cyber security matters and provide guidance to development teams.
  • Advocate for proactive inclusion of cyber security input into all phases of the product life cycle, process improvements, CAPAs, strategic product road map planning.
  • Deliver documentation for pre-market product development activities including security plans, architecture diagrams, data flow diagrams, threat models, security requirements, Design for Security, SBOM, and risk management documentation.
  • Drive and monitor and post-market vulnerability management activities, with adherence to strict timelines.
  • Support compliance certification activities, such as SOC2, FedRAMP, ISO 27001, etc.
  • Identify, research, evaluate, and integrate new compliance requirements, industry standards, and best practices into the product security programs.
  • Maintain relationships with Abiomed’s Information Sharing and Analysis Organizations.
  • Guide teams to make decisions that balance business needs with medical device security objectives.
  • Work across organizational boundaries and exhibit empathy with customers, both internal and external.
  • Perform other related duties and responsibilities, as assigned.

Qualifications

Required:

  • Bachelor’s degree
  • 5+ years industry experience in Information Security.
  • Working knowledge of regulatory standards and compliance frameworks (e.g., NIST Cybersecurity Framework, ISO27001, SOC2, HIPAA, GDPR).
  • Experience with security risk management techniques.
  • Demonstrated organizational skills, attention to detail, the ability to handle multiple assignments simultaneously in a timely manner and be able to meet assigned deadlines.
  • Committed to working with a sense of urgency and embracing new challenges.
  • Strong communication and interpersonal skills.

Preferred:

  • Experience working in a regulated environment, FDA-regulated

Johnson & Johnson is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, age, national origin, disability, protected veteran status or other characteristics protected by federal, state or local law. We actively seek qualified candidates who are protected veterans and individuals with disabilities as defined under VEVRAA and Section 503 of the Rehabilitation Act.

Johnson and Johnson is committed to providing an interview process that is inclusive of our applicants’ needs. If you are an individual with a disability and would like to request an accommodation, please email the Employee Health Support Center (ra-employeehealthsup@its.jnj.com) or contact AskGS to be directed to your accommodation resource.

#JNJTech

#LIHybrid

#LIRemote

The anticipated base pay range for this position is :

$100,000 - $172,500.

Additional Description for Pay Transparency:

The Company maintains highly competitive, performance-based compensation programs. Under current guidelines, this position is eligible for an annual performance bonus in accordance with the terms of the applicable plan. The annual performance bonus is a cash bonus intended to provide an incentive to achieve annual targeted results by rewarding for individual and the corporation’s performance over a calendar/performance year. Bonuses are awarded at the Company’s discretion on an individual basis. Employees and/or eligible dependents may be eligible to participate in the following Company sponsored employee benefit programs: medical, dental, vision, life insurance, short- and long-term disability, business accident insurance, and group legal insurance. Employees may be eligible to participate in the Company’s consolidated retirement plan (pension) and savings plan (401(k)). Employees are eligible for the following time off benefits: Vacation – up to 120 hours per calendar year Sick time - up to 40 hours per calendar year; for employees who reside in the State of Washington – up to 56 hours per calendar year Holiday pay, including Floating Holidays – up to 13 days per calendar year of Work, Personal and Family Time - up to 40 hours per calendar year Additional information can be found through the link below. http://www.careers.jnj.com/employee-benefits The compensation and benefits information set forth in this posting applies to candidates hired in the United States. Candidates hired outside the United States will be eligible for compensation and benefits in accordance with their local market.


What Johnson & Johnson employees say

Pay

Benefits

Hours and flexibility

Workplace

Get the full story on Breakroom