1

Cybersecurity Risk Management Jobs in Tennessee (NOW HIRING)

Implements Risk Management Framework (RMF) processes. * Develops and maintains RMF artifacts and ... Manages cybersecurity incident reporting (DFARS 252.204-7012). * Implements NIST 800-53 security ...

Cyber Manager - ServiceNow

Nashville, TN · On-site

$107.20K - $144.90K/yr

... Risk Management workstreams in partnership with architects and product owners • Managing ... Required : • Bachelor's degree in Computer Science, Cyber Security, Information Security ...

Cyber Manager - ServiceNow

Hermitage, TN · On-site

$97.30K - $131.40K/yr

... Risk Management workstreams in partnership with architects and product owners • Managing ... Required : • Bachelor's degree in Computer Science, Cyber Security, Information Security ...

Cyber Manager - ServiceNow

Memphis, TN · On-site

$108K - $146K/yr

... Risk Management workstreams in partnership with architects and product owners • Managing ... Required : • Bachelor's degree in Computer Science, Cyber Security, Information Security ...

Cyber Manager - ServiceNow

Memphis, TN · On-site +1

$107.80K - $145.70K/yr

... cybersecurity. Join our team to deliver powerful solutions to help our clients navigate the ever ... Risk Management workstreams in partnership with architects and product owners * Managing ...

Cyber Manager - ServiceNow

Hermitage, TN · On-site +1

$97.30K - $131.40K/yr

... cybersecurity. Join our team to deliver powerful solutions to help our clients navigate the ever ... Risk Management workstreams in partnership with architects and product owners * Managing ...

Cyber Manager - ServiceNow

Nashville, TN · On-site +1

$107.20K - $144.90K/yr

... cybersecurity. Join our team to deliver powerful solutions to help our clients navigate the ever ... Risk Management workstreams in partnership with architects and product owners * Managing ...

... risk management programs, rules and regulations, and cybersecurity practices; identifies opportunities for and supports process improvements; applies disciplined change management practices • May ...

... risk management programs, rules and regulations, and cybersecurity practices; identifies opportunities for and supports process improvements; applies disciplined change management practices • ...

next page

Showing results 1-20

Cybersecurity Risk Management information

See Tennessee salary details

$51.7K

$120.7K

$168.8K

How much do cybersecurity risk management jobs pay per year?

As of May 28, 2026, the average yearly pay for cybersecurity risk management in Tennessee is $120,679.00, according to ZipRecruiter salary data. Most workers in this role earn between $100,700.00 and $136,100.00 per year, depending on experience, location, and employer.

What are the key skills and qualifications needed to thrive in Cybersecurity Risk Management, and why are they important?

To thrive in Cybersecurity Risk Management, you need a solid understanding of information security principles, risk assessment methodologies, compliance standards, and typically a degree in cybersecurity or a related field. Familiarity with risk management frameworks (such as NIST or ISO 27001), security tools, and professional certifications like CISSP or CRISC is highly valued. Strong analytical thinking, effective communication, and problem-solving skills help professionals translate technical risks for non-technical stakeholders and foster collaboration. These competencies are crucial to proactively identifying threats, managing vulnerabilities, and ensuring organizational resilience in a rapidly evolving digital landscape.

What are some common challenges faced by professionals in Cybersecurity Risk Management, and how can they be addressed?

Professionals in Cybersecurity Risk Management often encounter challenges such as keeping up with rapidly evolving cyber threats, balancing security needs with business objectives, and ensuring compliance with industry regulations. Addressing these challenges requires continuous learning, effective communication with stakeholders, and close collaboration with IT, legal, and business teams. Building strong partnerships across departments and investing in ongoing training can help mitigate these obstacles and support proactive risk management.

What is cybersecurity risk management?

Cybersecurity risk management is the process of identifying, assessing, and prioritizing risks to an organization's digital assets and information systems. It involves implementing strategies and controls to minimize the impact of potential cyber threats, such as data breaches, malware, and unauthorized access. The goal is to balance security measures with business needs, ensuring sensitive information remains protected while maintaining operational efficiency. Effective risk management is ongoing, adapting to new threats and changes within the organization.

What is the difference between Cybersecurity Risk Management vs Cybersecurity Analyst?

AspectCybersecurity Risk ManagementCybersecurity Analyst
CertificationsCRISC, CISSP, CISMCompTIA Security+, CEH, CISSP
Work EnvironmentRisk assessment, policy development, strategic planningMonitoring security systems, incident response, vulnerability analysis
Employer & Industry UsageFinancial, healthcare, government, large enterprisesIT departments, cybersecurity firms, corporate security teams

Cybersecurity Risk Management focuses on identifying, assessing, and mitigating security risks at an organizational level, often involving policy creation and strategic planning. In contrast, a Cybersecurity Analyst primarily monitors security systems, responds to incidents, and analyzes vulnerabilities. Both roles require similar certifications but serve different functions within cybersecurity teams.

What are popular job titles related to Cybersecurity Risk Management jobs in Tennessee? For Cybersecurity Risk Management jobs in Tennessee, the most frequently searched job titles are:
What job categories do people searching Cybersecurity Risk Management jobs in Tennessee look for? The top searched job categories for Cybersecurity Risk Management jobs in Tennessee are:
What cities in Tennessee are hiring for Cybersecurity Risk Management jobs? Cities in Tennessee with the most Cybersecurity Risk Management job openings:

Information System Security Manager

Napakiak Ventures

Oak Ridge, TN • On-site

Other

Retirement

This job post has expired today. Applications are no longer accepted.


Job description

Information System Security Manager (ISSM)

Napakiak Environmental and Construction (NEC) is a leading provider of information technology, technology development, and environmental and construction services, specializing in Federal and Commercial projects. Our company is committed to delivering high-quality solutions that meet stringent regulatory standards and client requirements.

About the Role

We are seeking a highly experienced and mission-focused Information System Security Manager (ISSM) to lead cybersecurity efforts supporting a commercial-style manufacturing operation performing work funded through the Department of Energy. This position operates within the nuclear sector and supports advanced technology development and manufacturing technology deployment. The environment is fast-moving, engineering-driven, and focused on delivering real operational outcomes, requiring cybersecurity leadership that enables innovation while maintaining strong security and compliance. The ISSM will serve as the senior cybersecurity authority responsible for guiding the implementation, oversight, and continuous improvement of the organization's information security program. This role requires a professional who understands how to balance federal cybersecurity requirements with the realities of operational and manufacturing environments. The ideal candidate will lead efforts that ensure systems remain secure and compliant while supporting the mission of deploying advanced technologies and manufacturing capabilities. This position will work closely with engineering leadership, program managers, IT personnel, operational teams, and external stakeholders to ensure cybersecurity is integrated into system design, manufacturing technology deployment, and operational execution. The ISSM must be able to interpret federal cybersecurity requirements and guide teams in implementing those requirements in practical ways that allow work to move forward efficiently and securely. The role will oversee cybersecurity activities aligned with federal standards including NIST Special Publication 800-53, which defines security and privacy controls for federal information systems, and NIST Special Publication 800-82, which addresses cybersecurity considerations for industrial control systems and operational technology environments. Because the environment includes advanced manufacturing and operational technologies, the ISSM will guide security practices across both traditional IT systems and operational technology. The ISSM will lead Risk Management Framework activities including oversight of system authorization packages, system security plans, security control implementation, vulnerability management programs, and continuous monitoring strategies. This role will coordinate cybersecurity assessments, guide remediation efforts, and ensure documentation and reporting remain accurate and audit-ready. The ISSM will also provide strategic guidance to leadership regarding cybersecurity risk, compliance posture, and operational security improvements. This role requires a leader who approaches cybersecurity with a solution-oriented mindset and who can help teams navigate complex requirements while maintaining operational momentum. The ISSM must be comfortable working in a collaborative environment where cybersecurity is integrated into engineering, manufacturing, and technology development processes. The position is located on-site in Oak Ridge, Tennessee and supports systems performing work funded through the Department of Energy.

Minimum Requirements
  • This position requires U.S Citizenship and the ability to obtain and maintain a U.S. government security clearance. Candidates who currently hold an active clearance are strongly preferred. Individuals who are eligible and capable of obtaining a clearance will also be considered.
  • A minimum of seven to ten years of experience supporting information security, cybersecurity compliance, or information assurance programs within regulated, federal, or contractor environments.
  • Demonstrated expertise with NIST Special Publication 800-53 security and privacy controls and experience implementing or overseeing these controls within operational environments.
  • Familiarity with NIST Special Publication 800-82 and cybersecurity considerations related to industrial control systems or operational technology environments.
  • Experience leading or managing cybersecurity activities under the Risk Management Framework, including system authorization processes, security control implementation, continuous monitoring, and vulnerability management.
  • Experience overseeing system security plans, security documentation, compliance reporting, and security assessment activities.
  • Demonstrated ability to guide technical teams, engineers, system administrators, and operational leadership in implementing cybersecurity requirements within operational environments.
  • Strong leadership, communication, and documentation skills, with the ability to translate complex cybersecurity standards into practical guidance for engineering and operational teams.
Preferred Qualifications
  • Experience supporting Department of Energy programs or federally funded technology development environments.
  • Active security clearance.
  • Experience supporting cybersecurity programs within advanced manufacturing, industrial control systems, or operational technology environments.
  • Professional cybersecurity certifications such as CISSP, CISM, or similar leadership-level credentials.
  • Experience working within engineering-driven environments focused on technology development, manufacturing deployment, or mission-critical infrastructure.

This role is well suited for a cybersecurity leader who enjoys working at the intersection of innovation, manufacturing, and national security. The ISSM will play a key role in ensuring cybersecurity enables rather than limits the deployment of advanced technologies while maintaining the integrity, compliance, and protection of systems supporting critical work.

Napakiak Environmental and Construction (NEC) is an equal opportunity employer. All applicants will be considered for employment without attention to race, color, religion, sex, sexual orientation, gender identity, national origin, veteran, or disability status. All full-time employees are considered benefit eligible for company benefit programs and 401-K upon date of hire.