1

Cybersecurity Risk Management Jobs in Bethlehem, PA

Manage staffing, capacity, and technical risk across multiple concurrent programs. * Escalate and ... DOORS or equivalent requirements management tools * Cybersecurity elements relevant to avionics (e ...

New

Bachelor's degree in information technology, cybersecurity, computer science, or a related field is ... management, exception handling, operational reporting, and risk tracking. * Familiarity with SOC 2 ...

Bachelor's degree in information technology, cybersecurity, computer science, or a related field is ... management, exception handling, operational reporting, and risk tracking. * Familiarity with SOC 2 ...

Bachelor's degree in information technology, cybersecurity, computer science, or a related field is ... management, exception handling, operational reporting, and risk tracking. * Familiarity with SOC 2 ...

Bachelor's degree in information technology, cybersecurity, computer science, or a related field is ... management, exception handling, operational reporting, and risk tracking. * Familiarity with SOC 2 ...

Showing results 21-40

Cybersecurity Risk Management information

See Bethlehem, PA salary details

$56.3K

$131.4K

$183.8K

How much do cybersecurity risk management jobs pay per year?

As of Aug 8, 2026, the average yearly pay for cybersecurity risk management in Bethlehem, PA is $131,377.00, according to ZipRecruiter salary data. Most workers in this role earn between $109,700.00 and $148,200.00 per year, depending on experience, location, and employer.

What are some common challenges faced by professionals in cybersecurity risk management, and how can they be addressed?

Professionals in Cybersecurity Risk Management often encounter challenges such as keeping up with rapidly evolving cyber threats, balancing security needs with business objectives, and ensuring compliance with industry regulations. Addressing these challenges requires continuous learning, effective communication with stakeholders, and close collaboration with IT, legal, and business teams. Building strong partnerships across departments and investing in ongoing training can help mitigate these obstacles and support proactive risk management.

What is the difference between Cybersecurity Risk Management vs Cybersecurity Analyst?

AspectCybersecurity Risk ManagementCybersecurity Analyst
CertificationsCRISC, CISSP, CISMCompTIA Security+, CEH, CISSP
Work EnvironmentRisk assessment, policy development, strategic planningMonitoring security systems, incident response, vulnerability analysis
Employer & Industry UsageFinancial, healthcare, government, large enterprisesIT departments, cybersecurity firms, corporate security teams

Cybersecurity Risk Management focuses on identifying, assessing, and mitigating security risks at an organizational level, often involving policy creation and strategic planning. In contrast, a Cybersecurity Analyst primarily monitors security systems, responds to incidents, and analyzes vulnerabilities. Both roles require similar certifications but serve different functions within cybersecurity teams.

What are the key skills and qualifications needed to thrive in cybersecurity risk management, and why are they important?

To thrive in Cybersecurity Risk Management, you need a solid understanding of information security principles, risk assessment methodologies, compliance standards, and typically a degree in cybersecurity or a related field. Familiarity with risk management frameworks (such as NIST or ISO 27001), security tools, and professional certifications like CISSP or CRISC is highly valued. Strong analytical thinking, effective communication, and problem-solving skills help professionals translate technical risks for non-technical stakeholders and foster collaboration. These competencies are crucial to proactively identifying threats, managing vulnerabilities, and ensuring organizational resilience in a rapidly evolving digital landscape.

What is cybersecurity risk management?

Cybersecurity risk management is the process of identifying, assessing, and prioritizing risks to an organization's digital assets and information systems. It involves implementing strategies and controls to minimize the impact of potential cyber threats, such as data breaches, malware, and unauthorized access. The goal is to balance security measures with business needs, ensuring sensitive information remains protected while maintaining operational efficiency. Effective risk management is ongoing, adapting to new threats and changes within the organization.
What are popular job titles related to Cybersecurity Risk Management jobs in Bethlehem, PA? For Cybersecurity Risk Management jobs in Bethlehem, PA, the most frequently searched job titles are:
What job categories do people searching Cybersecurity Risk Management jobs in Bethlehem, PA look for? The top searched job categories for Cybersecurity Risk Management jobs in Bethlehem, PA are:
What cities near Bethlehem, PA are hiring for Cybersecurity Risk Management jobs? Cities near Bethlehem, PA with the most Cybersecurity Risk Management job openings:

Senior IT Security Systems Analyst

PPL Corporation

Allentown, PA • On-site

$44.50 - $59.25/hr

Full-time

Re-posted yesterday


PPL rating

6.8

Company rating: 6.8 out of 10

Based on 46 frontline employees who took The Breakroom Quiz

44th of 53 rated energy and utility


Job description

Company Summary Statement
As one of the largest investor-owned utility companies in the United States, PPL Corporation (NYSE: PPL), is committed to creating long-term, sustainable value for our 3.5 million customers, our shareowners and the communities we serve. Our high-performing regulated utilities - PPL Electric Utilities, Louisville Gas and Electric, Kentucky Utilities and Rhode Island Energy - provide an outstanding experience for our customers, consistently ranking among the best utilities in the nation. PPL's companies are also addressing challenges head-on by investing in new infrastructure and technology that is creating a smarter, more reliable and resilient energy grid. We are committed to doing our part to advance a cleaner energy future and drive innovation that enables us to achieve net-zero carbon emissions by 2050 while maintaining energy reliability and affordability for the customers and communities we serve. PPL is a positive force in the cities and towns where we do business, providing support for programs and organizations that empower the success of future generations by helping to build and maintain strong, diverse communities today.
Overview
NOTE: This role is hybrid requiring 3 days a week onsite at one of our local offices in: Allentown, PA; Louisville, KY or Providence, RI. #LI-Hybrid #INDPPL
The IT Security Systems Analyst will leverage tools to perform vulnerability and threat monitoring. Investigates, responds to, and reports on network and security risks to PPL EU tools which include but are not limited to SIEM, NIDS/NIPS, and HIDS/HIPS suites. This position is required to do shift work. The Senior level performs assigned tasks under minimal guidance from supervisor. Additionally, this role is responsible for supporting firewall security operations, including interpreting, reviewing, and assessing firewall rules for security risk, ensuring alignment with cybersecurity standards, and least privilege principles.
Responsibilities
Essential Functions:
  • Performs a variety of complex assignments (may lead some projects) and analyzes and solves complex problems in the below areas.
  • Network and Cyber Threat Monitoring:
    • Conduct ongoing review of multiple systems and sources to detect network access, network intrusion, information integrity, and NERC CIP compliance risks
    • Investigate network security events, conducting root-cause analysis to identify threats for recurring incidents
    • Monitor and track incidents related to network access, network intrusion, cybersecurity, and NERC CIP regulatory compliance
  • Corrective Actions:
    • Troubleshoot, diagnose network problems, and implement corrective action within prescribed guidelines to mitigate impact to business continuity
    • Support restoration of secure network services as quickly as possible while limiting business impact
    • Report network incidents, cybersecurity incidents, and NERC CIP compliance risks
    • Assist in minor network or system configuration changes to improve system security and meet NERC CIP compliance requirements
    • Recommend and implement firewall rule tuning or configuration changes to mitigate identified risks and improve security posture
    • Assist in firewall policy remediation efforts to address audit findings, compliance gaps, or identified vulnerabilities
    • Interpret, review, and analyze firewall rules to identify security risks, misconfigurations, overly permissive access, and compliance gaps
    • Perform risk-based reviews of firewall rule requests and existing rule sets to ensure adherence to security standards and least privilege access
    • Support firewall governance processes, including intake validation, rule lifecycle management (create/modify/remove), and periodic recertification activities
    • Conduct firewall rule reviews to identify redundant, shadowed, or unused rules and recommend remediation actions
    • Assess firewall configurations against security baselines and hardening standards to reduce attack surface
    • Collaborate with network, infrastructure, and OT teams to ensure firewall changes are properly designed, tested, and implemented with minimal business risk
    • Utilize firewall management and policy analysis tools (e.g., FireMon, AlgoSec) to evaluate rule effectiveness, policy compliance, and risk exposure
    • Support incident response efforts by analyzing firewall logs and rule behavior to determine potential threat activity or unauthorized access paths
    • Develop and maintain documentation related to firewall policies, standards, and review procedures
    • Performs other duties as assigned
    • Complies with all policies and standards

Qualifications
Required Experience:
  • Bachelor's degree and 5+ years of related work experience.
  • Deep knowledge and hands-on experience with enterprise firewall platforms, including Cisco ASA and Palo Alto Networks firewalls
  • Experience administering and managing Palo Alto Panorama for centralized firewall policy management
  • Familiarity with DLP, SIEM, NIDS/NIPS, HIDS/HIPS, and endpoint protection suite
  • Experience with firewall management, including rule lifecycle management, governance processes, and access control design
  • Strong understanding of firewall hardening practices, segmentation strategies, and least privilege network design
  • Ability to interpret complex firewall rule sets and translate findings into actionable security recommendations
  • Easily adapts to changing circumstances
  • Understands business goals and strategic priorities

Preferred Qualifications:
  • NERC CIP Compliance Analysis Certification, System Operator Certification, GIAC Critical Infrastructure Protection Security Certification
  • Possesses knowledge and understanding of specific testing tools (e.g., Windows automation tool)
  • Ability to establish and maintain the appropriate programs to recover the systems in the event of a disaster or security threat
  • Presents a creative approach to problems
  • Experience supporting fast-changing business organizations

What PPL employees say

Pay

Benefits

Hours and flexibility

Workplace

Get the full story on Breakroom