1

Cybersecurity Risk Management Jobs in Nottingham, MD

Cybersecurity Risk Advisor

Baltimore, MD ยท On-site

  • Medical

  • Dental

  • Vision

  • Retirement

ASSYST is seeking a Cybersecurity Risk Advisor to support federal Cybersecurity program. The ... They will act as the subject matter expert in all areas of the Risk Management Framework (RMF) and ...

The ideal candidate will have experience in cybersecurity governance, risk management, compliance, IT audit, and security controls, along with exposure to ServiceNow and database environments. Key ...

Serve as a senior technical advisor supporting security and privacy initiatives across emerging technology, cyber risk management, Zero Trust, and cybersecurity readiness efforts * Research, evaluate ...

next page

Showing results 1-20

Cybersecurity Risk Management information

See Nottingham, MD salary details

$56.7K

$132.3K

$185.1K

How much do cybersecurity risk management jobs pay per year?

As of Aug 16, 2026, the average yearly pay for cybersecurity risk management in Nottingham, MD is $132,334.00, according to ZipRecruiter salary data. Most workers in this role earn between $110,500.00 and $149,300.00 per year, depending on experience, location, and employer.

What are some common challenges faced by professionals in cybersecurity risk management, and how can they be addressed?

Professionals in Cybersecurity Risk Management often encounter challenges such as keeping up with rapidly evolving cyber threats, balancing security needs with business objectives, and ensuring compliance with industry regulations. Addressing these challenges requires continuous learning, effective communication with stakeholders, and close collaboration with IT, legal, and business teams. Building strong partnerships across departments and investing in ongoing training can help mitigate these obstacles and support proactive risk management.

What is the difference between Cybersecurity Risk Management vs Cybersecurity Analyst?

AspectCybersecurity Risk ManagementCybersecurity Analyst
CertificationsCRISC, CISSP, CISMCompTIA Security+, CEH, CISSP
Work EnvironmentRisk assessment, policy development, strategic planningMonitoring security systems, incident response, vulnerability analysis
Employer & Industry UsageFinancial, healthcare, government, large enterprisesIT departments, cybersecurity firms, corporate security teams

Cybersecurity Risk Management focuses on identifying, assessing, and mitigating security risks at an organizational level, often involving policy creation and strategic planning. In contrast, a Cybersecurity Analyst primarily monitors security systems, responds to incidents, and analyzes vulnerabilities. Both roles require similar certifications but serve different functions within cybersecurity teams.

What are the key skills and qualifications needed to thrive in cybersecurity risk management, and why are they important?

To thrive in Cybersecurity Risk Management, you need a solid understanding of information security principles, risk assessment methodologies, compliance standards, and typically a degree in cybersecurity or a related field. Familiarity with risk management frameworks (such as NIST or ISO 27001), security tools, and professional certifications like CISSP or CRISC is highly valued. Strong analytical thinking, effective communication, and problem-solving skills help professionals translate technical risks for non-technical stakeholders and foster collaboration. These competencies are crucial to proactively identifying threats, managing vulnerabilities, and ensuring organizational resilience in a rapidly evolving digital landscape.

What is cybersecurity risk management?

Cybersecurity risk management is the process of identifying, assessing, and prioritizing risks to an organization's digital assets and information systems. It involves implementing strategies and controls to minimize the impact of potential cyber threats, such as data breaches, malware, and unauthorized access. The goal is to balance security measures with business needs, ensuring sensitive information remains protected while maintaining operational efficiency. Effective risk management is ongoing, adapting to new threats and changes within the organization.

What job categories do people searching Cybersecurity Risk Management jobs in Nottingham, MD look for?

The top searched job categories for Cybersecurity Risk Management jobs in Nottingham, MD are:

What cities near Nottingham, MD are hiring for Cybersecurity Risk Management jobs?

Cities near Nottingham, MD with the most Cybersecurity Risk Management job openings:

Infographic showing various Cybersecurity Risk Management job openings in Nottingham, MD as of August 2026, with employment types broken down into 1% As Needed, 81% Full Time, 14% Part Time, and 4% Contract. Highlights an 92% Physical, 3% Hybrid, and 5% Remote job distribution, with an average salary of $132,334 per year, or $63.6 per hour.

Cybersecurity Risk Advisor

ASSYST, Inc.

Baltimore, MD โ€ข On-site

Full-time

Medical, Dental, Vision, Retirement

Re-posted 12 hours ago


Job description

ASSYST is seeking a Cybersecurity Risk Advisor to support federal Cybersecurity program.
The Cybersecurity Risk Advisor will be responsible for evaluating, maintaining, and communicating the risk posture of each FISMA system to executive leadership and making risk-based recommendations. They will act as the subject matter expert in all areas of the Risk Management Framework (RMF) and provide guidance to stakeholders on required actions, strategies, and best practices for closure of identified weaknesses.
Responsibilities:
  • Support stakeholders in ensuring that all requirements specified by the Acceptable Risk Safeguards and the procedures and standards of the risk management framework are implemented and enforced
  • Ensure information security and privacy testing is performed throughout the SDLC as appropriate, and results are considered during the development phase of the SDLC
  • Monitor system security posture by reviewing all proposed information security and privacy artifacts to provide recommendations to the ISSO
  • Provide guidance to stakeholders on required actions, strategies, and best practices for closure of identified weaknesses
  • Serve as the authority to approve selected system configuration deviations from the required baseline
  • Coordinate with the point of contact, including ISSO, for each FISMA system or collection of Personally Identifiable Information (PII)/Protected Health Information (PHI) to identify the types of information processed, assign appropriate security categorizations to information systems, ensure legal authority for activities involving PII/PHI.
  • Determine privacy impacts and manage information security and privacy risk

Job Requirements:
  • Bachelor's degree in Computer Science, Information Technology, Cyber Security, or related field
  • Active CISSP or CISM certification
  • 10+ years of professional experience developing and implementing information security/assurance programs, policies, processes, and procedures per various security frameworks/laws/standards/directives, e.g. FISMA; OMB directives; Presidential Directives; NIST (SP-800 series; FIPS); HIPAA of 1996; Privacy Act
  • Comprehensive knowledge of the FISMA, HIPAA laws and Privacy Act of 1974
  • In-depth knowledge of the NIST SP 800 series documents, especially 800-34, 37,39 47, 53, 53A, 60, 63, 64, 137 and FIPS 140, 199, 200 and 201
  • In-depth knowledge of the 800-53 security control requirements and standard methods for implementing them
  • Practical knowledge of IT System contingency planning
  • Understanding of risk assessment and risk management concepts
  • Good understanding of continuous monitoring and continuous authorization concepts
  • Good understanding of the protection of PII and PIA concepts
  • Expert use of MS Office, especially Word, PowerPoint, and Outlook
  • Ability to obtain and maintain a Public Trust clearance.

ASSYST Benefits:
We are proud to offer a robust benefits package including medical, dental, vision, 401(k) retirement plan, disability insurance, flexible spending accounts and more in order for our employees to maintain a secure work/life balance.
ASSYST is an Equal Opportunity Employer. Qualified applicants will receive consideration for employment without regard to race, color, religion, sex, age, disability, military status, national origin or any other characteristic protected under federal, state, or applicable local law