Minimum Qualifications and Requirements Education/Training: • BS in risk management, cybersecurity, information systems, economics, mathematics or a related technical field; advanced degree ...
Minimum Qualifications and Requirements Education/Training: • BS in risk management, cybersecurity, information systems, economics, mathematics or a related technical field; advanced degree ...
Assists with recurring patch and vulnerability management tasks. * Facilitates third-party ... Routinely publishes Governance, Risk, and Compliance (GRC) metrics. * Examines design and ...
Assists with recurring patch and vulnerability management tasks. * Facilitates third-party ... Routinely publishes Governance, Risk, and Compliance (GRC) metrics. * Examines design and ...
Assists with recurring patch and vulnerability management tasks. * Facilitates third-party ... Routinely publishes Governance, Risk, and Compliance (GRC) metrics. * Examines design and ...
Assists with recurring patch and vulnerability management tasks. * Facilitates third-party ... Routinely publishes Governance, Risk, and Compliance (GRC) metrics. * Examines design and ...
Cybersecurity Program Manager
State College, PA · On-site
$108K - $146K/yr
Contribute to change management efforts, including integration of newly acquired entities Manage Risk, Compliance, and Regulatory Alignment * Monitor and interpret relevant cybersecurity laws ...
Cybersecurity Program Manager
State College, PA · On-site
$108K - $146K/yr
Contribute to change management efforts, including integration of newly acquired entities Manage Risk, Compliance, and Regulatory Alignment * Monitor and interpret relevant cybersecurity laws ...
Cybersecurity Program Manager
State College, PA · On-site
$108K - $146K/yr
Contribute to change management efforts, including integration of newly acquired entities Manage Risk, Compliance, and Regulatory Alignment * Monitor and interpret relevant cybersecurity laws ...
Quick apply
Cybersecurity Program Manager
State College, PA · On-site
$108K - $146K/yr
Contribute to change management efforts, including integration of newly acquired entities Manage Risk, Compliance, and Regulatory Alignment * Monitor and interpret relevant cybersecurity laws ...
Cybersecurity Program Manager
$108K - $146K/yr
Contribute to change management efforts, including integration of newly acquired entities Manage Risk, Compliance, and Regulatory Alignment * Monitor and interpret relevant cybersecurity laws ...
Cybersecurity Program Manager
$108K - $146K/yr
Contribute to change management efforts, including integration of newly acquired entities Manage Risk, Compliance, and Regulatory Alignment * Monitor and interpret relevant cybersecurity laws ...
Assess, manage and optimize information technology risk across a wide range of areas, including cybersecurity, IT strategy and governance, IT regulatory and compliance requirements, and business ...
Assess, manage and optimize information technology risk across a wide range of areas, including cybersecurity, IT strategy and governance, IT regulatory and compliance requirements, and business ...
$47K - $63K/yr
... risk management, hardware security, cryptography including post-quantum cryptography, and/or organizational and human factors in cybersecurity and privacy. Applicants should provide evidence of ...
$47K - $63K/yr
... risk management, hardware security, cryptography including post-quantum cryptography, and/or organizational and human factors in cybersecurity and privacy. Applicants should provide evidence of ...
Teaching Faculty Position in Cybersecurity
University Park, PA · On-site
$46K - $63K/yr
... risk management, hardware security, cryptography including post-quantum cryptography, and/or organizational and human factors in cybersecurity and privacy. Applicants should provide evidence of ...
Teaching Faculty Position in Cybersecurity
University Park, PA · On-site
$46K - $63K/yr
... risk management, hardware security, cryptography including post-quantum cryptography, and/or organizational and human factors in cybersecurity and privacy. Applicants should provide evidence of ...
Technology Risk Advisor
Malvern, PA · On-site
... T audit, cybersecurity risk, operational risk, or a related field. * Experience assessing ... Experience with third-party risk management, AI risk, or emerging technology risk. * Relevant ...
Technology Risk Advisor
Malvern, PA · On-site
... T audit, cybersecurity risk, operational risk, or a related field. * Experience assessing ... Experience with third-party risk management, AI risk, or emerging technology risk. * Relevant ...
Technology Risk Advisor
Malvern, PA · On-site
... T audit, cybersecurity risk, operational risk, or a related field. * Experience assessing ... Experience with third-party risk management, AI risk, or emerging technology risk. * Relevant ...
Technology Risk Advisor
Malvern, PA · On-site
... T audit, cybersecurity risk, operational risk, or a related field. * Experience assessing ... Experience with third-party risk management, AI risk, or emerging technology risk. * Relevant ...
Cybersecurity Engineer
Mechanicsburg, PA · On-site
$150K - $185K/yr
Provide technical guidance on risk management, vulnerability mitigation, and cybersecurity best practices. * Track cybersecurity project milestones and coordinate activities across technical teams.
Cybersecurity Engineer
Mechanicsburg, PA · On-site
$150K - $185K/yr
Provide technical guidance on risk management, vulnerability mitigation, and cybersecurity best practices. * Track cybersecurity project milestones and coordinate activities across technical teams.
Cybersecurity Engineer
Mechanicsburg, PA · On-site
$150K - $185K/yr
Provide technical guidance on risk management, vulnerability mitigation, and cybersecurity best practices.Track cybersecurity project milestones and coordinate activities across technical teams.
Quick apply
Cybersecurity Engineer
Mechanicsburg, PA · On-site
$150K - $185K/yr
Provide technical guidance on risk management, vulnerability mitigation, and cybersecurity best practices.Track cybersecurity project milestones and coordinate activities across technical teams.
Cybersecurity Engineer
$150K - $185K/yr
Provide technical guidance on risk management, vulnerability mitigation, and cybersecurity best practices. * Track cybersecurity project milestones and coordinate activities across technical teams.
Cybersecurity Engineer
$150K - $185K/yr
Provide technical guidance on risk management, vulnerability mitigation, and cybersecurity best practices. * Track cybersecurity project milestones and coordinate activities across technical teams.
Assess, manage and optimize information technology risk across a wide range of areas, including cybersecurity, IT strategy and governance, IT regulatory and compliance requirements, and business ...
Assess, manage and optimize information technology risk across a wide range of areas, including cybersecurity, IT strategy and governance, IT regulatory and compliance requirements, and business ...
Cybersecurity Infrastructure availability Cloud services Identity and Access Management Data protection Artificial Intelligence Third-Party Technology Risk Executive Risk Reporting Produces executive ...
Cybersecurity Infrastructure availability Cloud services Identity and Access Management Data protection Artificial Intelligence Third-Party Technology Risk Executive Risk Reporting Produces executive ...
LOB Risk Lead
Pittsburgh, PA · On-site
Risk Scenario Development • Leads development of enterprise technology risk scenarios across: • Cybersecurity • Infrastructure availability • Cloud services • Identity and Access Management ...
LOB Risk Lead
Pittsburgh, PA · On-site
Risk Scenario Development • Leads development of enterprise technology risk scenarios across: • Cybersecurity • Infrastructure availability • Cloud services • Identity and Access Management ...
Cybersecurity Assessment & Authorization SME
Philadelphia, PA · On-site
$115K - $125K/yr
The Cybersecurity Assessment & Authorization SME serves as a cybersecurity Subject Matter Expert ... Briefs senior management on the progress or results of an information system undergoing the Risk ...
Quick apply
Cybersecurity Assessment & Authorization SME
Philadelphia, PA · On-site
$115K - $125K/yr
The Cybersecurity Assessment & Authorization SME serves as a cybersecurity Subject Matter Expert ... Briefs senior management on the progress or results of an information system undergoing the Risk ...
Cybersecurity Assessment & Authorization SME
New Cumberland, PA · On-site +1
$115K - $125K/yr
The Cybersecurity Assessment & Authorization SME serves as a cybersecurity Subject Matter Expert ... Briefs senior management on the progress or results of an information system undergoing the Risk ...
Cybersecurity Assessment & Authorization SME
New Cumberland, PA · On-site +1
$115K - $125K/yr
The Cybersecurity Assessment & Authorization SME serves as a cybersecurity Subject Matter Expert ... Briefs senior management on the progress or results of an information system undergoing the Risk ...
Cybersecurity Assessment & Authorization SME
Philadelphia, PA · On-site
$115K - $125K/yr
The Cybersecurity Assessment & Authorization SME serves as a cybersecurity Subject Matter Expert ... Briefs senior management on the progress or results of an information system undergoing the Risk ...
Cybersecurity Assessment & Authorization SME
Philadelphia, PA · On-site
$115K - $125K/yr
The Cybersecurity Assessment & Authorization SME serves as a cybersecurity Subject Matter Expert ... Briefs senior management on the progress or results of an information system undergoing the Risk ...
Cybersecurity Risk Management information
See Pennsylvania salary details
$57.1K - $68.9K
1% of jobs
$68.9K - $80.6K
4% of jobs
$80.6K - $92.4K
5% of jobs
$92.4K - $104.2K
9% of jobs
$110.6K is the 25th percentile. Wages below this are outliers.
$104.2K - $115.9K
11% of jobs
$115.9K - $127.7K
10% of jobs
The median wage is $132.2K / yr.
$127.7K - $139.4K
28% of jobs
$146.2K is the 75th percentile. Wages above this are outliers.
$139.4K - $151.2K
14% of jobs
$151.2K - $162.9K
11% of jobs
$162.9K - $174.7K
4% of jobs
$174.7K - $186.4K
4% of jobs
$57.1K
$133.3K
$186.4K
How much do cybersecurity risk management jobs pay per year?
What are some common challenges faced by professionals in cybersecurity risk management, and how can they be addressed?
What is the difference between Cybersecurity Risk Management vs Cybersecurity Analyst?
| Aspect | Cybersecurity Risk Management | Cybersecurity Analyst |
|---|---|---|
| Certifications | CRISC, CISSP, CISM | CompTIA Security+, CEH, CISSP |
| Work Environment | Risk assessment, policy development, strategic planning | Monitoring security systems, incident response, vulnerability analysis |
| Employer & Industry Usage | Financial, healthcare, government, large enterprises | IT departments, cybersecurity firms, corporate security teams |
Cybersecurity Risk Management focuses on identifying, assessing, and mitigating security risks at an organizational level, often involving policy creation and strategic planning. In contrast, a Cybersecurity Analyst primarily monitors security systems, responds to incidents, and analyzes vulnerabilities. Both roles require similar certifications but serve different functions within cybersecurity teams.
What are the key skills and qualifications needed to thrive in cybersecurity risk management, and why are they important?
What is cybersecurity risk management?

Full-time
Re-posted 21 days ago
Job description
Job Description Summary
The individual in this position will work as a technical manager of the Cyber Risk Management (CRM) Team within CERT's Cyber Risk & Resilience Directorate. This candidate will be responsible for the creation, development and management of a sustained applied research and technical agenda for Risk & Resilience CRM Team consistent with and directly supporting the US Department of War's strategic challenges and emerging threats. The technical manager is responsible for developing and communicating technical vision, developing tasking, creating project work statements, developing and managing project plans, managing initiative finances and accounting, generating new work and customers, working with business development staff, executing work with high degree of customer satisfaction, and supervising staff.
The successful candidate must have proven experience conducting and leading technical efforts in support of the US Federal Government (USG) and Department of War (DOW); managing technical teams; be self-directed, have a track record of creating interdisciplinary approaches to problem solving, and demonstrate exceptionally strong presentation and writing skills. The candidate must also be able to interact with clients and staff of all levels in a highly professional and competent manner.
Minimum Qualifications and Requirements
Education/Training:
• BS in risk management, cybersecurity, information systems, economics, mathematics or a related technical field; advanced degree strongly preferred.
Other educational backgrounds of a technical nature with significant relevant experience as described may be considered.
Experience:
Total of ten (10) years of experience as an enterprise risk executive, enterprise risk manager, primary investigator engaged in risk management research or similarly technical occupation.
Experience and expert knowledge of:
• risk quantification tools and techniques
• risk management frameworks/model/standards of practice
• risk governance
Experience with and substantial knowledge of:
• network architectures, and telecommunications
• cybersecurity and operational resilience
• information security models, frameworks, and metrics
• foundational artificial intelligence concepts and techniques
• project planning and financial management
• strategic planning and product development
• USG and DoW risk tools, techniques, and methods
• USG and DoW risk management strategies, policies, and directives
Skills/Abilities:
• mastery of risk management concepts, cyber security best practices and standards, information security and risk evaluation methods, development
• excellent analytical, organizational, reasoning and problem-solving skills
• outstanding written and oral communication skills
• demonstrated ability and experience in employee performance management
• outstanding financial and resource management skills
• demonstrated ability to prepare papers and deliver presentations for technical and non-technical audiences
• demonstrated experience in developing a strategic plan and associated technical agenda
• demonstrated experience in developing products and transition (go-to-market)
• ability to interact effectively with diverse constituencies internally and externally, including senior executives and managers in government and industry
• ability to recognize and deal appropriately with confidential and sensitive information, and where appropriate, ability to obtain and hold a security clearance
• active involvement in professional societies
Preferred Qualifications:
RIMS-Certified Risk Management Professional (preferred)
Certified Enterprise Risk Manager (preferred)
Certified Information Systems Security Professional (preferred)
Certified Information Security Manager (preferred)
Certified Information Systems Auditor (preferred)
Other: You will be subject to a background investigation, and you must have the ability to obtain and maintain a Department of War security clearance.
Location
Pittsburgh, PA
Job Function
Software/Applications Development/Engineering
Position Type
Staff - Regular
Full time/Part time
Full time
Pay Basis
SalaryMore Information:
- Please visit "Why Carnegie Mellon" to learn more about becoming part of an institution inspiring innovations that change the world.
- Click here to view a listing of employee benefits
- Carnegie Mellon University is an Equal Opportunity Employer/Disability/Veteran.
- Statement of Assurance
About Software Engineering Institute
Sourced by ZipRecruiter
Company size
1,001 - 5,000 Employees
Headquarters location
Pittsburgh, PA, US
Year founded
1984