1

Cybersecurity Risk Management Jobs in Bloomington, IN

Emphasizes a systematic approach to security assessment and connects cybersecurity to business risk management, compliance requirements, and ethical computing practices. * Curriculum Awareness ...

Ensure that Cybersecurity documentation is developed, maintained, and updated as required ... In alignment with the Risk Management Framework (RMF), implement security controls, document ...

Ensure that Cybersecurity documentation is developed, maintained, and updated as required ... In alignment with the Risk Management Framework (RMF), implement security controls, document ...

Showing results 21-40

Cybersecurity Risk Management information

See Bloomington, IN salary details

$49.7K

$116K

$162.3K

How much do cybersecurity risk management jobs pay per year?

As of Sep 14, 2026, the average yearly pay for cybersecurity risk management in Bloomington, IN is $115,999.00, according to ZipRecruiter salary data. Most workers in this role earn between $96,800.00 and $130,900.00 per year, depending on experience, location, and employer.

What is cybersecurity risk management?

Cybersecurity risk management is the process of identifying, assessing, and prioritizing risks to an organization's digital assets and information systems. It involves implementing strategies and controls to minimize the impact of potential cyber threats, such as data breaches, malware, and unauthorized access. The goal is to balance security measures with business needs, ensuring sensitive information remains protected while maintaining operational efficiency. Effective risk management is ongoing, adapting to new threats and changes within the organization.

What are the key skills and qualifications needed to thrive in cybersecurity risk management, and why are they important?

To thrive in Cybersecurity Risk Management, you need a solid understanding of information security principles, risk assessment methodologies, compliance standards, and typically a degree in cybersecurity or a related field. Familiarity with risk management frameworks (such as NIST or ISO 27001), security tools, and professional certifications like CISSP or CRISC is highly valued. Strong analytical thinking, effective communication, and problem-solving skills help professionals translate technical risks for non-technical stakeholders and foster collaboration. These competencies are crucial to proactively identifying threats, managing vulnerabilities, and ensuring organizational resilience in a rapidly evolving digital landscape.

What are some common challenges faced by professionals in cybersecurity risk management, and how can they be addressed?

Professionals in Cybersecurity Risk Management often encounter challenges such as keeping up with rapidly evolving cyber threats, balancing security needs with business objectives, and ensuring compliance with industry regulations. Addressing these challenges requires continuous learning, effective communication with stakeholders, and close collaboration with IT, legal, and business teams. Building strong partnerships across departments and investing in ongoing training can help mitigate these obstacles and support proactive risk management.

What is the difference between Cybersecurity Risk Management vs Cybersecurity Analyst?

AspectCybersecurity Risk ManagementCybersecurity Analyst
CertificationsCRISC, CISSP, CISMCompTIA Security+, CEH, CISSP
Work EnvironmentRisk assessment, policy development, strategic planningMonitoring security systems, incident response, vulnerability analysis
Employer & Industry UsageFinancial, healthcare, government, large enterprisesIT departments, cybersecurity firms, corporate security teams

Cybersecurity Risk Management focuses on identifying, assessing, and mitigating security risks at an organizational level, often involving policy creation and strategic planning. In contrast, a Cybersecurity Analyst primarily monitors security systems, responds to incidents, and analyzes vulnerabilities. Both roles require similar certifications but serve different functions within cybersecurity teams.

What job categories do people searching Cybersecurity Risk Management jobs in Bloomington, IN look for?

The top searched job categories for Cybersecurity Risk Management jobs in Bloomington, IN are:

What cities near Bloomington, IN are hiring for Cybersecurity Risk Management jobs?

Cities near Bloomington, IN with the most Cybersecurity Risk Management job openings:

Infographic showing various Cybersecurity Risk Management job openings in Bloomington, IN as of August 2026, with employment types broken down into 1% As Needed, 80% Full Time, 17% Part Time, and 2% Contract. Highlights an 82% Physical, 3% Hybrid, and 15% Remote job distribution, with an average salary of $115,999 per year, or $55.8 per hour.

Cybersecurity Defense Analyst - Senior

Columbus, IN • On-site

Cummins Inc.
Transportation Equipment Manufacturing • 10K+ employees

$93K - $120K/yr

Full-time

Re-posted 23 days ago


Key responsibilities

  • Support and execute adversary emulation, purple team, and security validation activities across enterprise environments.

  • Operate and maintain Breach and Attack Simulation (BAS) and adversary emulation platforms to validate defensive controls and identify detection gaps.

  • Document findings, attack paths, detection gaps, and remediation recommendations in a clear and actionable manner.


Cummins rating

8.2

Company rating: 8.2 out of 10

Based on 271 frontline employees who took The Breakroom Quiz


Job description

We are looking for a talented Cybersecurity Defense Analyst- Senior to join our team specializing in Systems/Information Technology for our Corporate organization in Columbus, IN. 

In this role, you will make an impact in the following ways:

  • Protect Cummins' technology environment by applying cybersecurity policies, data privacy principles, and security best practices to reduce organizational risk.
  • Lead cybersecurity risk assessments and identify potential vulnerabilities, ensuring effective mitigation strategies are developed and implemented.
  • Serve as a trusted advisor to business and technology stakeholders by providing expert guidance on secure technology solutions and risk-informed decision-making.
  • Apply industry-leading frameworks and standards such as NIST, ISO, ITIL, and COBIT to strengthen security controls and support regulatory compliance.
  • Partner with cross-functional teams to evaluate new and changing technology solutions, ensuring cybersecurity requirements are integrated from the start.
  • Coach, mentor, and develop less experienced team members, helping build cybersecurity capabilities and fostering a culture of continuous learning.
  • Build and maintain strong business relationships that enable collaboration, strengthen stakeholder trust, and deliver measurable business value.
  • Drive proactive cybersecurity improvements by balancing business objectives with security requirements, helping the organization remain resilient against evolving threats.
Cummins is an equal opportunity employer. Our policy is to provide equal employment opportunities to all qualified persons without regard to race, sex, color, disability, national origin, age, religion, union affiliation, sexual orientation, veteran status, citizenship, gender identity, or other status protected by law.

Job Description / Responsibilities
Support and execute adversary emulation, purple team, and security validation activities across enterprise environments.
Operate and maintain Breach and Attack Simulation (BAS) and adversary emulation platforms to validate defensive controls and identify detection gaps.
Conduct security testing of cloud, hybrid, and on-premises environments to identify exploitable weaknesses and security control deficiencies.
Partner with Threat Intelligence and Threat Hunting teams to emulate relevant attacker behaviors, techniques, and procedures.
Assist in developing repeatable attack scenarios aligned to MITRE ATT&CK techniques and organizational threat priorities.
Validate detection and response capabilities by coordinating with defensive security teams during purple team exercises.
Help automate offensive testing workflows, validation processes, and operational reporting through scripting and tooling enhancements.
Document findings, attack paths, detection gaps, and remediation recommendations in a clear and actionable manner.
Contribute to the continuous improvement of proactive security validation capabilities, processes, and operational maturity.
Support offensive cyber operations initiatives including targeted assessments, adversary simulation activities, and security research efforts.
Support the engineering and development of remedial workflows for findings generated by adversarial and offensive activities
Requirements / Qualifications
Experience in cybersecurity operations, cloud security, security engineering, offensive security, or related technical security disciplines.
OCSP or equivalent certification holder or the willingness to obtain such a certification. 
Familiarity with cloud platforms such as AWS, Azure, OCI and associated security concepts.
Understanding of common attacker tactics, techniques, and procedures (TTPs) and frameworks such as MITRE ATT&CK.
Exposure to scripting or automation using languages such as Python, PowerShell, or Bash.
Familiarity with security validation, BAS, detection engineering, purple teaming, penetration testing, or adversary emulation concepts is preferred.
Strong analytical, troubleshooting, and collaboration skills with the ability to work across offensive and defensive security functions.
 

To be successful in this role you will need the following:

  • Action oriented - Taking on new opportunities and tough challenges with a sense of urgency, high energy, and enthusiasm.
     
  • Balances stakeholders - Anticipating and balancing the needs of multiple stakeholders.
     
  • Business insight - Applying knowledge of business and the marketplace to advance the organization's goals.
     
  • Ensures accountability - Holding self and others accountable to meet commitments.
     
  • Manages complexity - Making sense of complex, high quantity, and sometimes contradictory information to effectively solve problems.
     
  • Organizational savvy - Maneuvering comfortably through complex policy, process, and people-related organizational dynamics.
     
  • Persuades - Using compelling arguments to gain the support and commitment of others.
     
  • Resourcefulness - Securing and deploying resources effectively and efficiently.
     
  • Tech savvy - Anticipating and adopting innovations in business-building digital and technology applications.
     
  • Training Delivery - Instructs learners in a manner that engages and adjusts to individual and group needs resulting in knowledge, skills and abilities that can be applied on the job.
     
  • Cybersecurity Risk Management - Identifies and assesses the potential impact of Cybersecurity risks against established Cybersecurity industry frameworks, regulations and organizational policies to develop and implement risk mitigation strategies in alignment with business objectives.
     
  • Regulatory Risk Compliance Management - Evaluates the design and effectiveness of controls against established industry frameworks and regulations to assess adherence with legal/regulatory requirements. 
     
  • Values differences - Recognizing the value that different perspectives and cultures bring to an organization. 

Education, Licenses, Certifications: 

  • College, university, or equivalent degree in Cybersecurity, Computer Science, or Information Technology, or related subject, or relevant equivalent experience required. 
  • This position may require licensing for compliance with export controls or sanctions regulations. 

Experience: 

  • Intermediate level of relevant work experience required. 
  • 3-5 years of experience

What Cummins employees say

Pay

Benefits

Hours and flexibility

Workplace

Get the full story on Breakroom


Cummins logo

About Cummins

Sourced by ZipRecruiter

Cummins Inc., headquartered in Columbus, IN, US, is a global power leader that designs, manufactures, and distributes numerous power products and systems. With its genesis from as early as 1919, the company readily serves diverse industries such as transportation, industrial, generator drive, or marine applications, among others. At the heart of Cummins' operations, its key product lineup encompasses diesel & natural gas engines, generator sets, engine components, and filtration, emission solutions, and electrical power generation systems. Cummins deeply embodies core values of integrity, respect for diversity, teamwork, performance excellence, and social responsibility - all of which dynamically fuel their mission 'Making people's lives better by powering a more prosperous world'.

Industry

Transportation equipment manufacturing

Company size

10,000+ Employees

Headquarters location

Columbus, IN, US

Year founded

1919