1

Cybersecurity Risk Management Jobs in Pennsylvania

Cybersecurity Program Manager

State College, PA · On-site

$108.60K - $146.70K/yr

Contribute to change management efforts, including integration of newly acquired entities Manage Risk, Compliance, and Regulatory Alignment * Monitor and interpret relevant cybersecurity laws ...

Cybersecurity Program Manager

State College, PA

$108.60K - $146.70K/yr

Contribute to change management efforts, including integration of newly acquired entities Manage Risk, Compliance, and Regulatory Alignment * Monitor and interpret relevant cybersecurity laws ...

Cybersecurity Program Manager

State College, PA

$108.60K - $146.70K/yr

Contribute to change management efforts, including integration of newly acquired entities Manage Risk, Compliance, and Regulatory Alignment * Monitor and interpret relevant cybersecurity laws ...

This role is accountable for advancing Eaton's Secure by Design strategy by embedding cybersecurity requirements, risk management, and governance across the full product lifecycle. The role partners ...

Bachelor's degree in Computer Engineering, Computer Science, Information Technology, Cyber Security, Risk Management or equivalent work experience * Ability to produce high-quality work products with ...

next page

Showing results 1-20

Cybersecurity Risk Management information

See Pennsylvania salary details

$57.1K

$133.3K

$186.4K

How much do cybersecurity risk management jobs pay per year?

As of May 28, 2026, the average yearly pay for cybersecurity risk management in Pennsylvania is $133,281.00, according to ZipRecruiter salary data. Most workers in this role earn between $111,300.00 and $150,400.00 per year, depending on experience, location, and employer.

What are the key skills and qualifications needed to thrive in Cybersecurity Risk Management, and why are they important?

To thrive in Cybersecurity Risk Management, you need a solid understanding of information security principles, risk assessment methodologies, compliance standards, and typically a degree in cybersecurity or a related field. Familiarity with risk management frameworks (such as NIST or ISO 27001), security tools, and professional certifications like CISSP or CRISC is highly valued. Strong analytical thinking, effective communication, and problem-solving skills help professionals translate technical risks for non-technical stakeholders and foster collaboration. These competencies are crucial to proactively identifying threats, managing vulnerabilities, and ensuring organizational resilience in a rapidly evolving digital landscape.

What are some common challenges faced by professionals in Cybersecurity Risk Management, and how can they be addressed?

Professionals in Cybersecurity Risk Management often encounter challenges such as keeping up with rapidly evolving cyber threats, balancing security needs with business objectives, and ensuring compliance with industry regulations. Addressing these challenges requires continuous learning, effective communication with stakeholders, and close collaboration with IT, legal, and business teams. Building strong partnerships across departments and investing in ongoing training can help mitigate these obstacles and support proactive risk management.

What is cybersecurity risk management?

Cybersecurity risk management is the process of identifying, assessing, and prioritizing risks to an organization's digital assets and information systems. It involves implementing strategies and controls to minimize the impact of potential cyber threats, such as data breaches, malware, and unauthorized access. The goal is to balance security measures with business needs, ensuring sensitive information remains protected while maintaining operational efficiency. Effective risk management is ongoing, adapting to new threats and changes within the organization.

What is the difference between Cybersecurity Risk Management vs Cybersecurity Analyst?

AspectCybersecurity Risk ManagementCybersecurity Analyst
CertificationsCRISC, CISSP, CISMCompTIA Security+, CEH, CISSP
Work EnvironmentRisk assessment, policy development, strategic planningMonitoring security systems, incident response, vulnerability analysis
Employer & Industry UsageFinancial, healthcare, government, large enterprisesIT departments, cybersecurity firms, corporate security teams

Cybersecurity Risk Management focuses on identifying, assessing, and mitigating security risks at an organizational level, often involving policy creation and strategic planning. In contrast, a Cybersecurity Analyst primarily monitors security systems, responds to incidents, and analyzes vulnerabilities. Both roles require similar certifications but serve different functions within cybersecurity teams.

What are popular job titles related to Cybersecurity Risk Management jobs in Pennsylvania? For Cybersecurity Risk Management jobs in Pennsylvania, the most frequently searched job titles are:
What job categories do people searching Cybersecurity Risk Management jobs in Pennsylvania look for? The top searched job categories for Cybersecurity Risk Management jobs in Pennsylvania are:
What cities in Pennsylvania are hiring for Cybersecurity Risk Management jobs? Cities in Pennsylvania with the most Cybersecurity Risk Management job openings:
Technical Manager - Cyber Risk Management

Technical Manager - Cyber Risk Management

Software Engineering Institute

Pittsburgh, PA • On-site

Full-time

This job post has expired today. Applications are no longer accepted.


Job description

The SEI CERT Cyber Risk and Resilience Directorate, enables organizations to achieve operational resilience by performing research in emerging areas of operational risk, producing measurement and assessment tools that help organizations better understand their current risk and resilience posture, and developing and validating models, frameworks, and tools to drive quantifiable risk reduction. Our Cyber Risk Management team focuses on designing, prototyping, transitioning risk management novel methods. We support partners in government and industry in achieving cyber-dependent missions. .
Job Description Summary
The individual in this position will work as a technical manager of the Cyber Risk Management (CRM) Team within CERT's Cyber Risk & Resilience Directorate. This candidate will be responsible for the creation, development and management of a sustained applied research and technical agenda for Risk & Resilience CRM Team consistent with and directly supporting the US Department of War's strategic challenges and emerging threats. The technical manager is responsible for developing and communicating technical vision, developing tasking, creating project work statements, developing and managing project plans, managing initiative finances and accounting, generating new work and customers, working with business development staff, executing work with high degree of customer satisfaction, and supervising staff.
The successful candidate must have proven experience conducting and leading technical efforts in support of the US Federal Government (USG) and Department of War (DOW); managing technical teams; be self-directed, have a track record of creating interdisciplinary approaches to problem solving, and demonstrate exceptionally strong presentation and writing skills. The candidate must also be able to interact with clients and staff of all levels in a highly professional and competent manner.
Minimum Qualifications and Requirements
Education/Training:
• BS in risk management, cybersecurity, information systems, economics, mathematics or a related technical field; advanced degree strongly preferred.
Other educational backgrounds of a technical nature with significant relevant experience as described may be considered.
Experience:
Total of ten (10) years of experience as an enterprise risk executive, enterprise risk manager, primary investigator engaged in risk management research or similarly technical occupation.
Experience and expert knowledge of:
• risk quantification tools and techniques
• risk management frameworks/model/standards of practice
• risk governance
Experience with and substantial knowledge of:
• network architectures, and telecommunications
• cybersecurity and operational resilience
• information security models, frameworks, and metrics
• foundational artificial intelligence concepts and techniques
• project planning and financial management
• strategic planning and product development
• USG and DoW risk tools, techniques, and methods
• USG and DoW risk management strategies, policies, and directives
Skills/Abilities:
• mastery of risk management concepts, cyber security best practices and standards, information security and risk evaluation methods, development
• excellent analytical, organizational, reasoning and problem-solving skills
• outstanding written and oral communication skills
• demonstrated ability and experience in employee performance management
• outstanding financial and resource management skills
• demonstrated ability to prepare papers and deliver presentations for technical and non-technical audiences
• demonstrated experience in developing a strategic plan and associated technical agenda
• demonstrated experience in developing products and transition (go-to-market)
• ability to interact effectively with diverse constituencies internally and externally, including senior executives and managers in government and industry
• ability to recognize and deal appropriately with confidential and sensitive information, and where appropriate, ability to obtain and hold a security clearance
• active involvement in professional societies
Preferred Qualifications:
RIMS-Certified Risk Management Professional (preferred)
Certified Enterprise Risk Manager (preferred)
Certified Information Systems Security Professional (preferred)
Certified Information Security Manager (preferred)
Certified Information Systems Auditor (preferred)
Other: You will be subject to a background investigation, and you must have the ability to obtain and maintain a Department of War security clearance.
Location
Pittsburgh, PA
Job Function
Software/Applications Development/Engineering
Position Type
Staff - Regular
Full time/Part time
Full time
Pay Basis
SalaryMore Information:
  • Please visit "Why Carnegie Mellon" to learn more about becoming part of an institution inspiring innovations that change the world.
  • Click here to view a listing of employee benefits
  • Carnegie Mellon University is an Equal Opportunity Employer/Disability/Veteran.
  • Statement of Assurance