1

Cybersecurity Risk Management Jobs in Pennsylvania

$47K - $63K/yr

... risk management, hardware security, cryptography including post-quantum cryptography, and/or organizational and human factors in cybersecurity and privacy. Applicants should provide evidence of ...

Cybersecurity Practitioner KBR is seeking a Cybersecurity practitioner with experience in software development, software assurance, and risk management to evaluate and verify third-party software ...

New

Cybersecurity Infrastructure availability Cloud services Identity and Access Management Data protection Artificial Intelligence Third-Party Technology Risk Executive Risk Reporting Produces executive ...

Coordinate with the CISO regarding cybersecurity risk and the CIO regarding technology and operational resilience risks. * Ensure risk management complements rather than duplicates the ...

Cybersecurity Infrastructure availability Cloud services Identity and Access Management Data protection Artificial Intelligence Third-Party Technology Risk Develops methodologies, models, and ...

Risk Scenario Development · Leads development of enterprise technology risk scenarios across: · Cybersecurity · Infrastructure availability · Cloud services · Identity and Access Management · ...

New

Risk Scenario Development • Leads development of enterprise technology risk scenarios across: • Cybersecurity • Infrastructure availability • Cloud services • Identity and Access Management ...

New

Showing results 41-60

Cybersecurity Risk Management information

See Pennsylvania salary details

$57.1K

$133.3K

$186.4K

How much do cybersecurity risk management jobs pay per year?

As of Sep 5, 2026, the average yearly pay for cybersecurity risk management in Pennsylvania is $133,281.00, according to ZipRecruiter salary data. Most workers in this role earn between $111,300.00 and $150,400.00 per year, depending on experience, location, and employer.

What is cybersecurity risk management?

Cybersecurity risk management is the process of identifying, assessing, and prioritizing risks to an organization's digital assets and information systems. It involves implementing strategies and controls to minimize the impact of potential cyber threats, such as data breaches, malware, and unauthorized access. The goal is to balance security measures with business needs, ensuring sensitive information remains protected while maintaining operational efficiency. Effective risk management is ongoing, adapting to new threats and changes within the organization.

What are the key skills and qualifications needed to thrive in cybersecurity risk management, and why are they important?

To thrive in Cybersecurity Risk Management, you need a solid understanding of information security principles, risk assessment methodologies, compliance standards, and typically a degree in cybersecurity or a related field. Familiarity with risk management frameworks (such as NIST or ISO 27001), security tools, and professional certifications like CISSP or CRISC is highly valued. Strong analytical thinking, effective communication, and problem-solving skills help professionals translate technical risks for non-technical stakeholders and foster collaboration. These competencies are crucial to proactively identifying threats, managing vulnerabilities, and ensuring organizational resilience in a rapidly evolving digital landscape.

What are some common challenges faced by professionals in cybersecurity risk management, and how can they be addressed?

Professionals in Cybersecurity Risk Management often encounter challenges such as keeping up with rapidly evolving cyber threats, balancing security needs with business objectives, and ensuring compliance with industry regulations. Addressing these challenges requires continuous learning, effective communication with stakeholders, and close collaboration with IT, legal, and business teams. Building strong partnerships across departments and investing in ongoing training can help mitigate these obstacles and support proactive risk management.

What is the difference between Cybersecurity Risk Management vs Cybersecurity Analyst?

AspectCybersecurity Risk ManagementCybersecurity Analyst
CertificationsCRISC, CISSP, CISMCompTIA Security+, CEH, CISSP
Work EnvironmentRisk assessment, policy development, strategic planningMonitoring security systems, incident response, vulnerability analysis
Employer & Industry UsageFinancial, healthcare, government, large enterprisesIT departments, cybersecurity firms, corporate security teams

Cybersecurity Risk Management focuses on identifying, assessing, and mitigating security risks at an organizational level, often involving policy creation and strategic planning. In contrast, a Cybersecurity Analyst primarily monitors security systems, responds to incidents, and analyzes vulnerabilities. Both roles require similar certifications but serve different functions within cybersecurity teams.

What are popular job titles related to Cybersecurity Risk Management jobs in Pennsylvania?

For Cybersecurity Risk Management jobs in Pennsylvania, the most frequently searched job titles are:

What job categories do people searching Cybersecurity Risk Management jobs in Pennsylvania look for?

The top searched job categories for Cybersecurity Risk Management jobs in Pennsylvania are:

What cities in Pennsylvania are hiring for Cybersecurity Risk Management jobs?

Cities in Pennsylvania with the most Cybersecurity Risk Management job openings:

Infographic showing various Cybersecurity Risk Management job openings in Pennsylvania as of August 2026, with employment types broken down into 1% As Needed, 87% Full Time, 10% Part Time, and 2% Contract. Highlights an 82% Physical, 3% Hybrid, and 15% Remote job distribution, with an average salary of $133,281 per year, or $64.1 per hour.

Full-time

Medical, Dental, Vision, Life, Retirement

Re-posted 28 days ago


Key responsibilities

  • Assist with cyber-threat monitoring, Security Operations Center duties, and handle security service requests from Business and IT teams.

  • Participate in cybersecurity technology projects, support vulnerability management, and facilitate third-party penetration testing.

  • Guide employees on security policies, support security audits, and publish security and compliance metrics.


Carpenter Technology rating

6.8

Company rating: 6.8 out of 10

Based on 29 frontline employees who took The Breakroom Quiz


Job description

Carpenter Technology Corporation is a leading producer and distributor of premium specialty alloys, including titanium alloys, nickel and cobalt based superalloys, stainless steels, alloy steels and tool steels. Carpenter Technology's high-performance materials and advanced process solutions are an integral part of critical applications used within the aerospace, transportation, medical and energy markets, among other markets. Building on its history of innovation, Carpenter Technology's wrought and powder technology capabilities support a range of next-generation products and manufacturing techniques, including novel magnetic materials and additive manufacturing.

Cybersecurity Professional - Raleigh, NC; Reading, PA; Tanner, AL

Primary Responsibilities for the Cybersecurity Professional:

  • Assists with cyber-threat monitoring and Security Operations Center (SOC) duties.
  • Performs daily security operations duties including handling service requests from Business and IT teams. Updates standard operating procedures and as-built documentation. Routinely publish performance metrics.
  • Monitors key security intelligence feeds and escalates relevant risks.
  • Participates in cybersecurity technology projects and lifecycle management.
  • Provides security technical assistance for IT projects intended to enable or advance business initiatives.
  • Supports secure integration of Cloud and Third-party Applications.
  • Assists with recurring patch and vulnerability management tasks.
  • Facilitates third-party penetration testing (Ethical Hacking) to confirm design and operational effectiveness of security controls.
  • Guides employees with security policy (e.g., password complexity, encryption settings, etc.) and advances cybersecurity awareness campaigns (e.g., Phishing email simulations).
  • Routinely publishes Governance, Risk, and Compliance (GRC) metrics.
  • Examines design and operational effectiveness of security controls. Coordinates audit engagements led by Internal Audit, Regulator, or external audit firm.
  • Supports assessment of internal and third-party cybersecurity risk. Examine audit reports (e.g., SOC 1, SOC 2, ISO 27001, etc.). Assist with customer inquiries about Carpenter compliance related to IT and Security.

Required for the Cybersecurity Professional:

  • Bachelor of Science degree in computer science or related field preferred. Or equivalent work experience.
  • Associate's degree in computer science or related field minimum required with a combination of Cybersecurity related certifications (e.g., CISSP, CISM, GCIH, GCIA, CEH, Security+, etc.) and additional 2 years' experience.
  • Minimum 7 years of related experience with Security Operations, Network Security, Vulnerability Management, Compliance, or Audit.

Preferred for the Cybersecurity Professional:

  • Advanced understanding of information technology.
  • Advanced knowledge of multiple security domains and common security controls.
  • Expert knowledge of 2-3 security domains.
  • Familiarity with common hacking techniques (e.g., malware, phishing, etc.) and effective counter measures.
  • Adoption of security best practices and industry standards (e.g. NIST, ISO, CIS, COBIT, etc.).
  • Hands-on operation of cybersecurity infrastructure (e.g., Firewalls, Intrusion Detection, AV, PKI, Encryption, etc.) and configuration experience.
  • Security Incident Response handling.
  • Malware analysis.
  • Multi-task and manage demands of multiple projects, incidents, and tasks.
  • Meet deadlines and manage changing priorities.
  • Perform effectively both independently and in a team environment.

Carpenter Technology Company offers a competitive salary and a comprehensive benefits package including life, medical, dental, vision, flexible spending accounts, disability coverage, 401k with company contributions as well as many other options to employees.

Carpenter Technology Corporation's policy is to fully and effectively maintain a program of equal employment opportunity and nondiscrimination for all employees, to employ affirmative action for all protected classes, and to recruit and develop the best qualified persons available regardless of age, race, color, religion, sex, gender identity, sexual orientation, marital status, national origin, political affiliation or any other characteristic protected by law. The Company also will recruit, develop and provide opportunities for qualified persons with disabilities and protected veterans.


What Carpenter Technology employees say

Pay

Benefits

Hours and flexibility

Workplace

Get the full story on Breakroom