Assess, manage and optimize information technology risk across a wide range of areas, including cybersecurity, IT strategy and governance, IT regulatory and compliance requirements, and business ...
Assess, manage and optimize information technology risk across a wide range of areas, including cybersecurity, IT strategy and governance, IT regulatory and compliance requirements, and business ...
Assess, manage and optimize information technology risk across a wide range of areas, including cybersecurity, IT strategy and governance, IT regulatory and compliance requirements, and business ...
Assess, manage and optimize information technology risk across a wide range of areas, including cybersecurity, IT strategy and governance, IT regulatory and compliance requirements, and business ...
Work closely with client executives and management teams to understand their businesses and assist ... risk across a wide range of areas, including cybersecurity, IT strategy and governance, IT ...
Work closely with client executives and management teams to understand their businesses and assist ... risk across a wide range of areas, including cybersecurity, IT strategy and governance, IT ...
Sr. Director, Governance, Risk & Compliance United States + 1 more Information Technology Poste[...]
Cambridge, MA · On-site
$229.50 - $310.50/hr
Establish and maintain security governance frameworks, policies, standards, and exception management processes.* Provide cybersecurity governance and risk oversight for GxP-regulated systems ...
Sr. Director, Governance, Risk & Compliance United States + 1 more Information Technology Poste[...]
Cambridge, MA · On-site
$229.50 - $310.50/hr
Establish and maintain security governance frameworks, policies, standards, and exception management processes.* Provide cybersecurity governance and risk oversight for GxP-regulated systems ...
Risk & Compliance Project Manager
Boston, MA · On-site
$99K - $125K/yr
Identify opportunities to apply AI-enabled solutions to compliance, cybersecurity, risk management, and project management processes while ensuring alignment with organizational policies, security ...
Risk & Compliance Project Manager
Boston, MA · On-site
$99K - $125K/yr
Identify opportunities to apply AI-enabled solutions to compliance, cybersecurity, risk management, and project management processes while ensuring alignment with organizational policies, security ...
Experience designing or significantly improving risk management programs or frameworks. Education * Bachelor's degree in Information Technology, Cybersecurity, Business, or a related field required;
Experience designing or significantly improving risk management programs or frameworks. Education * Bachelor's degree in Information Technology, Cybersecurity, Business, or a related field required;
Experience designing or significantly improving risk management programs or frameworks. Education * Bachelor's degree in Information Technology, Cybersecurity, Business, or a related field required;
Experience designing or significantly improving risk management programs or frameworks. Education * Bachelor's degree in Information Technology, Cybersecurity, Business, or a related field required;
Enterprise Risk Management, Vice President
Boston, MA · On-site
$110 - $207.50/hr
Enterprise Risk Management provides independent risk oversight over State Street's business ... The Non-Financial Risks include Technology, Cyber Security, Data Management, Transaction Processing ...
Enterprise Risk Management, Vice President
Boston, MA · On-site
$110 - $207.50/hr
Enterprise Risk Management provides independent risk oversight over State Street's business ... The Non-Financial Risks include Technology, Cyber Security, Data Management, Transaction Processing ...
The Non-Financial Risks include Technology, Cyber Security, Data Management, Transaction Processing ... Build a risk-based strategy for coverage of Non-Financial Risk * Provide insights on the evolving ...
The Non-Financial Risks include Technology, Cyber Security, Data Management, Transaction Processing ... Build a risk-based strategy for coverage of Non-Financial Risk * Provide insights on the evolving ...
... and logistics, cybersecurity, and compliance etc. * Support developing and executing risk ... Co-lead management and development of risk alerts based on severity of risks and act with sense of ...
... and logistics, cybersecurity, and compliance etc. * Support developing and executing risk ... Co-lead management and development of risk alerts based on severity of risks and act with sense of ...
... and logistics, cybersecurity, and compliance etc. * Support developing and executing risk ... Co-lead management and development of risk alerts based on severity of risks and act with sense of ...
... and logistics, cybersecurity, and compliance etc. * Support developing and executing risk ... Co-lead management and development of risk alerts based on severity of risks and act with sense of ...
The Non-Financial Risks include Technology, Cyber Security, Data Management, Transaction Processing ... Build a risk-based strategy for coverage of Non-Financial Risk * Provide insights on the evolving ...
The Non-Financial Risks include Technology, Cyber Security, Data Management, Transaction Processing ... Build a risk-based strategy for coverage of Non-Financial Risk * Provide insights on the evolving ...
... and logistics, cybersecurity, and compliance etc. * Support developing and executing risk ... Co-lead management and development of risk alerts based on severity of risks and act with sense of ...
... and logistics, cybersecurity, and compliance etc. * Support developing and executing risk ... Co-lead management and development of risk alerts based on severity of risks and act with sense of ...
... and logistics, cybersecurity, and compliance etc. * Support developing and executing risk ... Co-lead management and development of risk alerts based on severity of risks and act with sense of ...
... and logistics, cybersecurity, and compliance etc. * Support developing and executing risk ... Co-lead management and development of risk alerts based on severity of risks and act with sense of ...
BCG delivers solutions through leading-edge management consulting along with technology and design ... cybersecurity, information security, GRC, audit, compliance, risk management, or technology ...
BCG delivers solutions through leading-edge management consulting along with technology and design ... cybersecurity, information security, GRC, audit, compliance, risk management, or technology ...
Sr. Cyber Security Analyst
Boston, MA · Hybrid
$108K - $140K/yr
Bachelor's degree in Information Security, Computer Science, or a related field. * 5+ years of experience in cybersecurity, risk management, or related roles. * Strong knowledge of security ...
Sr. Cyber Security Analyst
Boston, MA · Hybrid
$108K - $140K/yr
Bachelor's degree in Information Security, Computer Science, or a related field. * 5+ years of experience in cybersecurity, risk management, or related roles. * Strong knowledge of security ...
Sr. Cyber Security Analyst
Waltham, MA · Hybrid
$107K - $139K/yr
Bachelor's degree in Information Security, Computer Science, or a related field. * 5+ years of experience in cybersecurity, risk management, or related roles. * Strong knowledge of security ...
Sr. Cyber Security Analyst
Waltham, MA · Hybrid
$107K - $139K/yr
Bachelor's degree in Information Security, Computer Science, or a related field. * 5+ years of experience in cybersecurity, risk management, or related roles. * Strong knowledge of security ...
Sr. Cyber Security Analyst
Waltham, MA · On-site
$107K - $139K/yr
Bachelor's degree in Information Security, Computer Science, or a related field. * 5+ years of experience in cybersecurity, risk management, or related roles. * Strong knowledge of security ...
Sr. Cyber Security Analyst
Waltham, MA · On-site
$107K - $139K/yr
Bachelor's degree in Information Security, Computer Science, or a related field. * 5+ years of experience in cybersecurity, risk management, or related roles. * Strong knowledge of security ...
Industry/Sector Not Applicable Specialism Cybersecurity & Privacy Management Level Senior Associate & Summary The Opportunity As a Security Risk & Engineering - Tech and Cyber Risk & Compliance ...
Industry/Sector Not Applicable Specialism Cybersecurity & Privacy Management Level Senior Associate & Summary The Opportunity As a Security Risk & Engineering - Tech and Cyber Risk & Compliance ...
Risk Management Framework (RMF) Subject Matter Expert (SME)
Hanscom Air Force Base, MA · Remote
$149K - $167K/yr
Overview Abacus Technology is seeking a Risk Management Framework (RMF) Subject Matter Expert (SME ... Ensure continuous compliance with DoD, Air Force, NSA, and NIST cybersecurity policies and ...
Risk Management Framework (RMF) Subject Matter Expert (SME)
Hanscom Air Force Base, MA · Remote
$149K - $167K/yr
Overview Abacus Technology is seeking a Risk Management Framework (RMF) Subject Matter Expert (SME ... Ensure continuous compliance with DoD, Air Force, NSA, and NIST cybersecurity policies and ...
Cybersecurity Risk Management information
See Boston, MA salary details
$61.9K - $74.7K
1% of jobs
$74.7K - $87.4K
4% of jobs
$87.4K - $100.1K
5% of jobs
$100.1K - $112.9K
9% of jobs
$119.9K is the 25th percentile. Wages below this are outliers.
$112.9K - $125.6K
11% of jobs
$125.6K - $138.4K
10% of jobs
The median wage is $143.3K / yr.
$138.4K - $151.1K
28% of jobs
$158.5K is the 75th percentile. Wages above this are outliers.
$151.1K - $163.8K
14% of jobs
$163.8K - $176.6K
11% of jobs
$176.6K - $189.3K
4% of jobs
$189.3K - $202.1K
4% of jobs
$61.9K
$144.4K
$202.1K
How much do cybersecurity risk management jobs pay per year?
What are some common challenges faced by professionals in cybersecurity risk management, and how can they be addressed?
What is the difference between Cybersecurity Risk Management vs Cybersecurity Analyst?
| Aspect | Cybersecurity Risk Management | Cybersecurity Analyst |
|---|---|---|
| Certifications | CRISC, CISSP, CISM | CompTIA Security+, CEH, CISSP |
| Work Environment | Risk assessment, policy development, strategic planning | Monitoring security systems, incident response, vulnerability analysis |
| Employer & Industry Usage | Financial, healthcare, government, large enterprises | IT departments, cybersecurity firms, corporate security teams |
Cybersecurity Risk Management focuses on identifying, assessing, and mitigating security risks at an organizational level, often involving policy creation and strategic planning. In contrast, a Cybersecurity Analyst primarily monitors security systems, responds to incidents, and analyzes vulnerabilities. Both roles require similar certifications but serve different functions within cybersecurity teams.
What are the key skills and qualifications needed to thrive in cybersecurity risk management, and why are they important?
What is cybersecurity risk management?

Full-time
Posted 14 days ago
Baker Tilly rating
8.7
Based on 33 frontline employees who took The Breakroom Quiz
4th of 22 rated bookkeepers and accountants
Job description
Baker Tilly is a leading advisory, tax and assurance firm, providing clients with a genuine coast-to-coast and global advantage in major regions of the U.S. and in many of the world's leading financial centers - New York, London, San Francisco, Los Angeles, Chicago and Boston. Baker Tilly Advisory Group, LP and Baker Tilly US, LLP (Baker Tilly) provide professional services through an alternative practice structure in accordance with the AICPA Code of Professional Conduct and applicable laws, regulations and professional standards. Baker Tilly US, LLP is a licensed independent CPA firm that provides attest services to its clients. Baker Tilly Advisory Group, LP and its subsidiary entities provide tax and business advisory services to their clients. Baker Tilly Advisory Group, LP and its subsidiary entities are not licensed CPA firms.
Baker Tilly Advisory Group, LP and Baker Tilly US, LLP, trading as Baker Tilly, are independent members of Baker Tilly International, a worldwide network of independent accounting and business advisory firms in 141 territories, with 43,000 professionals and a combined worldwide revenue of $5.2 billion. Visit bakertilly.com or join the conversation on LinkedIn, Facebook and Instagram.
Please discuss the work location status with your Baker Tilly talent acquisition professional to understand the requirements for an opportunity you are exploring.
Baker Tilly is an equal opportunity/affirmative action employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, disability or protected veteran status, gender identity, sexual orientation, or any other legally protected basis, in accordance with applicable federal, state or local law.
Any unsolicited resumes submitted through our website or to Baker Tilly Advisory Group, LP, employee e-mail accounts are considered property of Baker Tilly Advisory Group, LP, and are not subject to payment of agency fees. In order to be an authorized recruitment agency ("search firm") for Baker Tilly Advisory Group, LP, there must be a formal written agreement in place and the agency must be invited, by Baker Tilly's Talent Attraction team, to submit candidates for review via our applicant tracking system.
Job Description:
Responsibilities
Are you interested in joining one of the fastest growing consulting and accounting firms in the country?
Would you like the ability to join a highly dynamic team focused on providing exceptional client service in the area of informational technology risk advisory?
If yes, consider joining Baker Tilly (BT) as an IT Audit, Cybersecurity & Risk Senior Consultant! Our Risk Advisory practice provides a full spectrum of services to help our clients assess their risks, develop strategies to compete in an ever-changing business environment, and achieve their goals and objectives. All of this is accomplished through deep industry knowledge of risk, governance, internal audit, compliance, IT, and cybersecurity best practices.
As one of the fastest growing firms in the nation, BT has the ability to offer you upward career trajectory, flexibility in how and where you get your work done and meaningful relationships with clients, teammates and leadership who truly care about you and your development.
You will enjoy this role if:
- You want to continue to expand your work experiences and hone your skills as an IT risk professional in the areas of compliance, cybersecurity, and internal controls
- You crave the opportunity to be part of a fast growing, entrepreneurial risk consulting practice where your hard work and creativity will be rewarded
- You do your best work when you are part of a talented, down-to-earth team that thrives in collaboration and truly enjoys working together
- You feel valued when you are provided the resources and support to continually sharpen your technical skills and build your career now, for tomorrow
What you will do:
- Work closely with client executives and management teams to understand their businesses and assist in identifying and managing financial and operational risks within their business systems to ensure technology risks are managed:
- Develop in-depth knowledge of clients' businesses and industries by having direct client interaction while working on multiple aspects of an engagement
- Think independently and strategically about your clients' business, systems and risks providing recommendations for business and process improvements based upon knowledge gained relative to the client's operations, processes and business objectives
- Provide strategic business assurance to clients by assisting in the implementation of new processes and controls that address key risks
- Assess, manage and optimize information technology risk across a wide range of areas, including cybersecurity, IT strategy and governance, IT regulatory and compliance requirements, and business continuity
- Review clients' processes and controls against industry frameworks, identifying gaps in design and execution, and communicating issues and recommendations to clients
- Assist in the development of audit programs and the execution of internal audits and IT control assessments in the areas of:
- IT strategy and governance
- IT operations, business continuity and disaster recovery
- Cybersecurity
- Third party risk
- ITGC and application controls
- SOC reporting
- Regulatory and compliance requirements
- Assist in drafting comprehensive executive summaries and final reports for delivery to the client, documenting and reviewing engagement work papers in accordance with industry-accepted internal audit methodologies
- Act as a valued business advisor, build relationships and communicate effectively with the client to provide superior client service
- Facilitate professional and effective presentations to internal and external audiences
- Continue to develop your knowledge and experience working with a variety of technology environments, platforms, applications and tools/utilities
- Demonstrate the desire to continually grow, learn and develop skills and knowledge through external and internal education, training and cross-training opportunities to maximize personal contribution to the organizational goals and ongoing career development
- Utilize your entrepreneurial skills to network and build strong relationships internally and externally with clients
- Support the growth and development of team members through the Baker Tilly Care and Teach philosophy, helping associates meet their professional goals
- Enjoy friendships, social activities and team outings that encourage a work-life balance
Qualifications
- Bachelor's degree in management/computer information systems, computer science, accounting information systems, computer engineering, industrial engineering, or related program
- CISA, CISSP, CISM, CIA, or CPA certifications preferred
- 3+ year(s) experience with IT audit or cybersecurity
- Experience as a client serving professional for a consulting firm desired
- Excellent analytical, technical and problem solving skills, with strong attention to detail
- Exceptional verbal and written communication, collaboration, and time management skills
"The compensation range for this role is $110,870 to $166,340. Actual compensation is influenced by a variety of factors including but not limited to skills, experience, qualifications, and geographic location."
#LI-LF2
#LI-hybrid
What Baker Tilly employees say
Pay
Benefits
Hours and flexibility
Workplace
Get the full story on Breakroom
About Baker Tilly
Sourced by ZipRecruiter
Industry
Business management consulting
Company size
5,001 - 10,000 Employees
Headquarters location
Chicago, IL, US
Year founded
1994