A Day in the Life Enterprise Cyber Risk Management: * Lead enterprise-wide cybersecurity risk assessments across business units and IT domains. * Own the accuracy and ongoing maintenance of the ...
A Day in the Life Enterprise Cyber Risk Management: * Lead enterprise-wide cybersecurity risk assessments across business units and IT domains. * Own the accuracy and ongoing maintenance of the ...
A Day In The Life Enterprise Cyber Risk Management: * Lead enterprise-wide cybersecurity risk assessments across business units and IT domains. * Own the accuracy and ongoing maintenance of the ...
A Day In The Life Enterprise Cyber Risk Management: * Lead enterprise-wide cybersecurity risk assessments across business units and IT domains. * Own the accuracy and ongoing maintenance of the ...
Senior Technology Risk Analyst - Iselin, NJ (Hybrid)
Iselin, NJ · Hybrid
$70K/yr
This collaboration facilitates information exchange and helps in identifying, assessing, and deploying suitable solutions to achieve both cybersecurity and technology risk management goals. KEY ...
Senior Technology Risk Analyst - Iselin, NJ (Hybrid)
Iselin, NJ · Hybrid
$70K/yr
This collaboration facilitates information exchange and helps in identifying, assessing, and deploying suitable solutions to achieve both cybersecurity and technology risk management goals. KEY ...
Senior Technology Risk Analyst - Iselin, NJ (Hybrid)
Iselin, NJ · Hybrid
$70K/yr
This collaboration facilitates information exchange and helps in identifying, assessing, and deploying suitable solutions to achieve both cybersecurity and technology risk management goals. KEY ...
Senior Technology Risk Analyst - Iselin, NJ (Hybrid)
Iselin, NJ · Hybrid
$70K/yr
This collaboration facilitates information exchange and helps in identifying, assessing, and deploying suitable solutions to achieve both cybersecurity and technology risk management goals. KEY ...
Senior Technology Risk Analyst - Iselin, NJ (Hybrid)
Iselin, NJ · On-site
$70K/yr
This collaboration facilitates information exchange and helps in identifying, assessing, and deploying suitable solutions to achieve both cybersecurity and technology risk management goals. KEY ...
Senior Technology Risk Analyst - Iselin, NJ (Hybrid)
Iselin, NJ · On-site
$70K/yr
This collaboration facilitates information exchange and helps in identifying, assessing, and deploying suitable solutions to achieve both cybersecurity and technology risk management goals. KEY ...
IT Systems Analyst - Cybersecurity, Risk & Compliance
Parsippany, NJ · On-site
$94K - $95K/yr
... in Cybersecurity, Governance Risk & Compliance (GRC), and enterprise technology consulting. This ... management, and enterprise system governance initiatives. Key Responsibilities: * Assist in ...
IT Systems Analyst - Cybersecurity, Risk & Compliance
Parsippany, NJ · On-site
$94K - $95K/yr
... in Cybersecurity, Governance Risk & Compliance (GRC), and enterprise technology consulting. This ... management, and enterprise system governance initiatives. Key Responsibilities: * Assist in ...
Experience designing or significantly improving risk management programs or frameworks. Education * Bachelor's degree in Information Technology, Cybersecurity, Business, or a related field required;
Experience designing or significantly improving risk management programs or frameworks. Education * Bachelor's degree in Information Technology, Cybersecurity, Business, or a related field required;
Compliance - Technology Operational Risk Management Lead - Vice President
Jersey City, NJ · On-site
$150 - $210/hr
Perform independent Technology, Data, & Cybersecurity risk assessments on Consumer and Community Banking Technology * Manage identified risks using the firm's Operational Risk Management Framework
New
Compliance - Technology Operational Risk Management Lead - Vice President
Jersey City, NJ · On-site
$150 - $210/hr
Perform independent Technology, Data, & Cybersecurity risk assessments on Consumer and Community Banking Technology * Manage identified risks using the firm's Operational Risk Management Framework
New
Experience designing or significantly improving risk management programs or frameworks. Education * Bachelor's degree in Information Technology, Cybersecurity, Business, or a related field required;
Experience designing or significantly improving risk management programs or frameworks. Education * Bachelor's degree in Information Technology, Cybersecurity, Business, or a related field required;
Senior Manager, Data Protection & Insider Risk - Asia
Princeton, NJ · On-site
$143.23 - $173.55/hr
The ideal candidate will have 5+ years of experience in data security and DLP, with a strong background in cyber security, risk management, and compliance.This role is pivotal in safeguarding BMS ...
Senior Manager, Data Protection & Insider Risk - Asia
Princeton, NJ · On-site
$143.23 - $173.55/hr
The ideal candidate will have 5+ years of experience in data security and DLP, with a strong background in cyber security, risk management, and compliance.This role is pivotal in safeguarding BMS ...
Senior Manager, Data Protection & Insider Risk - Asia
Princeton, NJ · Hybrid
$143K - $173K/yr
The ideal candidate will have 5+ years of experience in data security and DLP, with a strong background in cyber security, risk management, and compliance. This role is pivotal in safeguarding BMS ...
Senior Manager, Data Protection & Insider Risk - Asia
Princeton, NJ · Hybrid
$143K - $173K/yr
The ideal candidate will have 5+ years of experience in data security and DLP, with a strong background in cyber security, risk management, and compliance. This role is pivotal in safeguarding BMS ...
Senior Manager, Data Protection & Insider Risk - Asia
Princeton, NJ · On-site
$143K - $173K/yr
The ideal candidate will have 5+ years of experience in data security and DLP, with a strong background in cyber security, risk management, and compliance. This role is pivotal in safeguarding BMS ...
Senior Manager, Data Protection & Insider Risk - Asia
Princeton, NJ · On-site
$143K - $173K/yr
The ideal candidate will have 5+ years of experience in data security and DLP, with a strong background in cyber security, risk management, and compliance. This role is pivotal in safeguarding BMS ...
Manager, Cybersecurity Operations Center
$115K - $156K/yr
About the Role The Cybersecurity Operations Center Manager is responsible for overseeing the day-to ... Risk Management and Vulnerability Management: * Support proactive vulnerability management ...
Manager, Cybersecurity Operations Center
$115K - $156K/yr
About the Role The Cybersecurity Operations Center Manager is responsible for overseeing the day-to ... Risk Management and Vulnerability Management: * Support proactive vulnerability management ...
Cybersecurity Product & Service Delivery Specialist, AVP
Jersey City, NJ · Hybrid
$14.25 - $18/hr
Job Summary The Global Cybersecurity Operations Execution Specialist plays a pivotal role in ... Develop and manage key performance indicators (KPIs) and metrics that reflect risk appetite and ...
Cybersecurity Product & Service Delivery Specialist, AVP
Jersey City, NJ · Hybrid
$14.25 - $18/hr
Job Summary The Global Cybersecurity Operations Execution Specialist plays a pivotal role in ... Develop and manage key performance indicators (KPIs) and metrics that reflect risk appetite and ...
Senior Manager, Data Protection & Insider Risk - Asia Princeton - NJ - US R1602518 Posted 20 ho[...]
Princeton, NJ · On-site
$143.23 - $173.55/hr
The ideal candidate will have 5+ years of experience in data security and DLP, with a strong background in cyber security, risk management, and compliance.This role is pivotal in safeguarding BMS ...
New
Senior Manager, Data Protection & Insider Risk - Asia Princeton - NJ - US R1602518 Posted 20 ho[...]
Princeton, NJ · On-site
$143.23 - $173.55/hr
The ideal candidate will have 5+ years of experience in data security and DLP, with a strong background in cyber security, risk management, and compliance.This role is pivotal in safeguarding BMS ...
New
Manager, Cybersecurity Operations Center
Jersey City, NJ · On-site
$115K - $156K/yr
Oversee third-party Cybersecurity Operations Center (CSOC) vendor performance to ensure SLAs and ... Risk Management and Vulnerability Management: * Support proactive vulnerability management ...
Manager, Cybersecurity Operations Center
Jersey City, NJ · On-site
$115K - $156K/yr
Oversee third-party Cybersecurity Operations Center (CSOC) vendor performance to ensure SLAs and ... Risk Management and Vulnerability Management: * Support proactive vulnerability management ...
Manage the third‑party and vendor cybersecurity risk management program * Report to the Board of Directors and Audit and Risk Committee on cybersecurity posture, risk trends, and incident activity
Manage the third‑party and vendor cybersecurity risk management program * Report to the Board of Directors and Audit and Risk Committee on cybersecurity posture, risk trends, and incident activity
Manage the third-party and vendor cybersecurity risk management program * Report to the Board of Directors and Audit and Risk Committee on cybersecurity posture, risk trends, and incident activity
Manage the third-party and vendor cybersecurity risk management program * Report to the Board of Directors and Audit and Risk Committee on cybersecurity posture, risk trends, and incident activity
Manage the third-party and vendor cybersecurity risk management program * Report to the Board of Directors and Audit and Risk Committee on cybersecurity posture, risk trends, and incident activity
Manage the third-party and vendor cybersecurity risk management program * Report to the Board of Directors and Audit and Risk Committee on cybersecurity posture, risk trends, and incident activity
Cybersecurity, Privacy and Forensics - Cyber Incident Response - Manager
Florham Park, NJ · On-site
$99K - $232K/yr
Industry/Sector Not Applicable Specialism Cybersecurity & Privacy Management Level Manager ... risk management and threat mitigation - Analyzing complex systems to identify linkages and ...
Cybersecurity, Privacy and Forensics - Cyber Incident Response - Manager
Florham Park, NJ · On-site
$99K - $232K/yr
Industry/Sector Not Applicable Specialism Cybersecurity & Privacy Management Level Manager ... risk management and threat mitigation - Analyzing complex systems to identify linkages and ...
Cybersecurity Risk Management information
See New Jersey salary details
$57.9K - $69.8K
1% of jobs
$69.8K - $81.7K
4% of jobs
$81.7K - $93.6K
5% of jobs
$93.6K - $105.5K
9% of jobs
$112K is the 25th percentile. Wages below this are outliers.
$105.5K - $117.4K
11% of jobs
$117.4K - $129.3K
10% of jobs
The median wage is $133.9K / yr.
$129.3K - $141.2K
28% of jobs
$148.1K is the 75th percentile. Wages above this are outliers.
$141.2K - $153.1K
14% of jobs
$153.1K - $165K
11% of jobs
$165K - $176.9K
4% of jobs
$176.9K - $188.8K
4% of jobs
$57.9K
$135K
$188.8K
How much do cybersecurity risk management jobs pay per year?
What are some common challenges faced by professionals in cybersecurity risk management, and how can they be addressed?
What is the difference between Cybersecurity Risk Management vs Cybersecurity Analyst?
| Aspect | Cybersecurity Risk Management | Cybersecurity Analyst |
|---|---|---|
| Certifications | CRISC, CISSP, CISM | CompTIA Security+, CEH, CISSP |
| Work Environment | Risk assessment, policy development, strategic planning | Monitoring security systems, incident response, vulnerability analysis |
| Employer & Industry Usage | Financial, healthcare, government, large enterprises | IT departments, cybersecurity firms, corporate security teams |
Cybersecurity Risk Management focuses on identifying, assessing, and mitigating security risks at an organizational level, often involving policy creation and strategic planning. In contrast, a Cybersecurity Analyst primarily monitors security systems, responds to incidents, and analyzes vulnerabilities. Both roles require similar certifications but serve different functions within cybersecurity teams.
What are the key skills and qualifications needed to thrive in cybersecurity risk management, and why are they important?
What is cybersecurity risk management?

Full-time
Medical, Dental, Vision, Life, Retirement, PTO
Re-posted 29 days ago
Burlington rating
4.5
Based on 941 frontline employees who took The Breakroom Quiz
19th of 21 rated department stores
Job description
Enterprise Cyber Risk Management:
Lead enterprise-wide cybersecurity risk assessments across business units and IT domains.
Own the accuracy and ongoing maintenance of the enterprise risk register, ensuring it is consistently updated and informed by stakeholder input.
Collaborate with business and IT leaders to define and apply enterprise risk tolerance thresholds.
Translate technical risk findings into actionable, business-relevant recommendations.
Identify and escalate systemic risks that could materially impact operations or compliance.
Monitor industry trends, threat intelligence, and regulatory changes to adjust risk posture.
Deliver clear, timely risk reports and dashboards to senior leadership and governance bodies.
Implement structured risk governance processes, including review cycles and escalation protocols.
Implement automated GRC tools and data analytics to improve cybersecurity risk management efficiency and accuracy.
Develop KPIs and KRIs for the security organization and maintain tactical and strategic dashboards to monitor risk and compliance efforts.
Management & Collaboration:
Oversee GRC team operations, assigning work, setting priorities, and ensuring effective collaboration.
Partner with senior leadership and business stakeholders to align GRC efforts with enterprise goals.
Foster a high-performing, collaborative team culture through coaching, accountability, and career development.
Business Continuity and Disaster Recovery (BC/DR):
Lead collaboration with IT and business leaders to identify mission-critical applications and conduct comprehensive BIA, define RTO/RPO, and recovery procedures.
Develop dependency mappings for critical systems with application and infrastructure teams.
Oversee documentation of recovery procedures, including technical and business continuity procedures.
Lead tabletop exercises and failover/failback recovery testing with IT and business users.
Identify gaps in the BC/DR program and take ownership of remediation.
Ensure business continuity objectives are effectively aligned with IT capabilities to support organizational resilience during disruptions.
Contribute to recovery planning efforts and facilitate coordination among IT and business teams to ensure effective response during disruptions.
Vendor Risk Management:
Partner with the procurement and legal teams to integrate cybersecurity function into the overall process, mitigating supply chain risks for the company.
Manage third-party risk processes, including assessments and reviews. Continuously identify opportunities for improvement to enhance its effectiveness and efficiency
Escalate high-risk vendor issues to leadership and work with business stakeholders to develop and execute mitigation plans.
Oversee monthly reporting on security assessments of AI vendors, provide expert analysis to leadership on AI-related risks and recommend strategic actions to resolve identified issues.
Establish and manage a comprehensive set of criteria and assessment questions to support third-party risk management activities.
Managed Security Service Provider (MSSP) and Third-Party Security Incidents:
Own vendor incident response governance program and playbooks.
Ensure vendors provide formal evidence of incident containment and remediation and ensure compliance with security requirements before closing a third incident.
Consolidate third party incident and GRC-owned MSSP results into executive dashboards.
Embed incident response obligations into contracts and procurement.
Audit and Compliance:
Oversee internal/external audit readiness and evidence collection.
Ensure compliance with SOX, PCI, and privacy frameworks.
Serve as audit liaison for the GRC function.
Act as the primary contact for internal audit and take ownership of recreating risk and compliance assessment findings.
Policy Implementation:
Manage the policy lifecycle from creation through enforcement.
Ensure policies align with frameworks like NIST and PCI DSS.
Ensure the organization adheres to all relevant policies and standards.
Cybersecurity Education:
Manage company-wide security training programs.
Strategically identify education and awareness needs based on enterprise-wide cybersecurity threats and business priorities.
Establish metrics to evaluate the success of training initiatives, including trends in knowledge retention, behavior changes, and overall effectiveness of the security culture.
Oversee continuous improvement of the training curriculum, ensuring it evolves to address new threats and compliance requirements.
- 8+ years in security governance, risk, or compliance roles.
- Demonstrated success in leading cross-functional projects.
- Deep understanding of controls, audits, and frameworks.
- Maintain relevant certifications such as CISM, CISSP, or CISA.
- Communicate effectively with technical and non-technical stakeholders.
- Resolve conflicts and drive consensus across teams.
- Provided leadership and oversight for a cybersecurity team of 3+ members
- Mentor team members and model professional behavior.
- Bachelor's degree in Information Systems, Cybersecurity or related field required; Master's preferred.
- Target Pay Range: $115,000 - $167,500 annually
This position has a target starting salary range of $115,000 - $167,500 annually. Actual pay is determined by a variety of factors, including but not limited to, qualifications, education, job-related skills, relevant experience, and geographic location.
#LI-JL2
You will enjoy competitive wages, flexible hours, and an associate discount. Burlington's benefits package includes medical, dental and vision coverage including life and disability insurance. Full-time associates are also eligible for paid time off, paid holidays and a 401(k) plan.
We are a rapidly growing brand and provide a variety of training and development opportunities so our associates can grow with us. Our teams work hard and have fun together! Burlington associates make a difference in the lives of customers, colleagues, and the communities where we live and work every day. Burlington Stores, Inc. is an equal opportunity employer committed to workplace diversity
Individual pay decisions will be based on a variety of factors, such as but not limited to, qualifications, education, job-related skills, relevant experience, and geographic location.
What Burlington employees say
Pay
Benefits
Hours and flexibility
Workplace
Get the full story on Breakroom
About Burlington
Sourced by ZipRecruiter
At Burlington, we embrace the many facets of diversity that strengthen our communities where we live and work every day. If you want to grow your retail career with a caring and inclusive organization, come join the Burlington Stores team as a Customer Service Supervisor, Selling Floor Supervisor or Receiving Team Supervisor!
Industry
Retail
Company size
10,000+ Employees
Headquarters location
Burlington, NJ, US