Manage IAM technology vendors, implementation partners, and managed service providers. * Cybersecurity Governance, Risk Management & Executive Reporting * Establish and maintain the enterprise ...
Manage IAM technology vendors, implementation partners, and managed service providers. * Cybersecurity Governance, Risk Management & Executive Reporting * Establish and maintain the enterprise ...
Senior Director, Identity, Cybersecurity Governance & Risk
Linthicum, MD ยท On-site
$180 - $200/hr
Manage IAM technology vendors, implementation partners, and managed service providers. Cybersecurity Governance, Risk Management & Executive Reporting * Establish and maintain the enterprise ...
Posted today
Senior Director, Identity, Cybersecurity Governance & Risk
Linthicum, MD ยท On-site
$180 - $200/hr
Manage IAM technology vendors, implementation partners, and managed service providers. Cybersecurity Governance, Risk Management & Executive Reporting * Establish and maintain the enterprise ...
Posted today
Manage IAM technology vendors, implementation partners, and managed service providers. * Cybersecurity Governance, Risk Management & Executive Reporting * Establish and maintain the enterprise ...
Manage IAM technology vendors, implementation partners, and managed service providers. * Cybersecurity Governance, Risk Management & Executive Reporting * Establish and maintain the enterprise ...
Cybersecurity Risk Advisor
Baltimore, MD ยท On-site
ASSYST is seeking a Cybersecurity Risk Advisor to support federal Cybersecurity program. The ... They will act as the subject matter expert in all areas of the Risk Management Framework (RMF) and ...
Cybersecurity Risk Advisor
Baltimore, MD ยท On-site
ASSYST is seeking a Cybersecurity Risk Advisor to support federal Cybersecurity program. The ... They will act as the subject matter expert in all areas of the Risk Management Framework (RMF) and ...
Cybersecurity GRC Analyst
Owings Mills, MD ยท Remote
$51/hr
The ideal candidate will have experience in cybersecurity governance, risk management, compliance, IT audit, and security controls, along with exposure to ServiceNow and database environments. Key ...
Quick apply
Cybersecurity GRC Analyst
Owings Mills, MD ยท Remote
$51/hr
The ideal candidate will have experience in cybersecurity governance, risk management, compliance, IT audit, and security controls, along with exposure to ServiceNow and database environments. Key ...
Cybersecurity Governance Manager
Baltimore, MD ยท On-site
$110K - $149K/yr
Partner and coordinate with the enterprise risk management team, internal audit, and other ... Partner with cybersecurity architects, engineers, and technology operations teams to ensure ...
Cybersecurity Governance Manager
Baltimore, MD ยท On-site
$110K - $149K/yr
Partner and coordinate with the enterprise risk management team, internal audit, and other ... Partner with cybersecurity architects, engineers, and technology operations teams to ensure ...
The role involves providing cybersecurity, information assurance, and Risk Management Framework support for classified and unclassified PM PNT systems throughout the acquisition lifecycle.
The role involves providing cybersecurity, information assurance, and Risk Management Framework support for classified and unclassified PM PNT systems throughout the acquisition lifecycle.
Cybersecurity Engineer
Aberdeen Proving Ground, MD ยท On-site
$61.25 - $75.25/hr
The selected candidate will serve as the appointed ISSO for Product Manager Combat Ready and provide cybersecurity, information assurance (IA), and Risk Management Framework (RMF) support for ...
Quick apply
Cybersecurity Engineer
Aberdeen Proving Ground, MD ยท On-site
$61.25 - $75.25/hr
The selected candidate will serve as the appointed ISSO for Product Manager Combat Ready and provide cybersecurity, information assurance (IA), and Risk Management Framework (RMF) support for ...
Cyber Security Task Lead
$109K - $148K/yr
You will facilitate Government and Contractor communications, maintain compliance frameworks, oversee cybersecurity risk management, and drive strategic IT and security initiatives across project ...
Cyber Security Task Lead
$109K - $148K/yr
You will facilitate Government and Contractor communications, maintain compliance frameworks, oversee cybersecurity risk management, and drive strategic IT and security initiatives across project ...
Cybersecurity Engineer with Security Clearance
Aberdeen Proving Ground, MD ยท On-site
$61.25 - $75.25/hr
The selected candidate will serve as the appointed ISSO for Product Manager Combat Ready and provide cybersecurity, information assurance (IA), and Risk Management Framework (RMF) support for ...
Cybersecurity Engineer with Security Clearance
Aberdeen Proving Ground, MD ยท On-site
$61.25 - $75.25/hr
The selected candidate will serve as the appointed ISSO for Product Manager Combat Ready and provide cybersecurity, information assurance (IA), and Risk Management Framework (RMF) support for ...
Cyber Security Analyst - Remote / Telecommute
Baltimore, MD ยท Remote
$57 - $62/hr
Knowledge of cybersecurity risk management techniques, frameworks, best practices, and industry/regulatory requirements. * Proficiency in the cybersecurity domain. Responsibilities: * Develop and ...
Quick apply
Cyber Security Analyst - Remote / Telecommute
Baltimore, MD ยท Remote
$57 - $62/hr
Knowledge of cybersecurity risk management techniques, frameworks, best practices, and industry/regulatory requirements. * Proficiency in the cybersecurity domain. Responsibilities: * Develop and ...
Cyber Security Task Lead with Security Clearance
Linthicum Heights, MD ยท On-site
$108K - $147K/yr
You will facilitate Government and Contractor communications, maintain compliance frameworks, oversee cybersecurity risk management, and drive strategic IT and security initiatives across project ...
Cyber Security Task Lead with Security Clearance
Linthicum Heights, MD ยท On-site
$108K - $147K/yr
You will facilitate Government and Contractor communications, maintain compliance frameworks, oversee cybersecurity risk management, and drive strategic IT and security initiatives across project ...
Cyber Security Task Lead
Linthicum, MD ยท On-site
$129 - $215/hr
You will facilitate Government and Contractor communications, maintain compliance frameworks, oversee cybersecurity risk management, and drive strategic IT and security initiatives across project ...
Cyber Security Task Lead
Linthicum, MD ยท On-site
$129 - $215/hr
You will facilitate Government and Contractor communications, maintain compliance frameworks, oversee cybersecurity risk management, and drive strategic IT and security initiatives across project ...
Cyber Security Task Lead
Linthicum Heights, MD ยท On-site
$128K - $214K/yr
You will facilitate Government and Contractor communications, maintain compliance frameworks, oversee cybersecurity risk management, and drive strategic IT and security initiatives across project ...
Cyber Security Task Lead
Linthicum Heights, MD ยท On-site
$128K - $214K/yr
You will facilitate Government and Contractor communications, maintain compliance frameworks, oversee cybersecurity risk management, and drive strategic IT and security initiatives across project ...
Cyber Security Task Lead
Linthicum, MD ยท On-site
$128K - $214K/yr
You will facilitate Government and Contractor communications, maintain compliance frameworks, oversee cybersecurity risk management, and drive strategic IT and security initiatives across project ...
Cyber Security Task Lead
Linthicum, MD ยท On-site
$128K - $214K/yr
You will facilitate Government and Contractor communications, maintain compliance frameworks, oversee cybersecurity risk management, and drive strategic IT and security initiatives across project ...
Cybersecurity Architect - Cyber Supply Chain Risk Management (C-SCRM)
Fort George G Meade, MD ยท On-site
$205K - $235K/yr
AnaVation is seeking a highly experienced Cybersecurity Architect - Cyber Supply Chain Risk Management (C-SCRM) to provide senior-level technical, analytical, and advisory support to the U.S. Army ...
Cybersecurity Architect - Cyber Supply Chain Risk Management (C-SCRM)
Fort George G Meade, MD ยท On-site
$205K - $235K/yr
AnaVation is seeking a highly experienced Cybersecurity Architect - Cyber Supply Chain Risk Management (C-SCRM) to provide senior-level technical, analytical, and advisory support to the U.S. Army ...
Cybersecurity Architect - Cyber Supply Chain Risk Management (C-SCRM)
Fort George G Meade, MD ยท On-site
$205K - $235K/yr
AnaVation is seeking a highly experienced Cybersecurity Architect - Cyber Supply Chain Risk Management (C-SCRM) to provide senior-level technical, analytical, and advisory support to the U.S. Army ...
Quick apply
Cybersecurity Architect - Cyber Supply Chain Risk Management (C-SCRM)
Fort George G Meade, MD ยท On-site
$205K - $235K/yr
AnaVation is seeking a highly experienced Cybersecurity Architect - Cyber Supply Chain Risk Management (C-SCRM) to provide senior-level technical, analytical, and advisory support to the U.S. Army ...
AnaVation is seeking a highly experienced Cybersecurity Architect - Cyber Supply Chain Risk Management (C-SCRM) to provide senior-level technical, analytical, and advisory support to the U.S. Army ...
AnaVation is seeking a highly experienced Cybersecurity Architect - Cyber Supply Chain Risk Management (C-SCRM) to provide senior-level technical, analytical, and advisory support to the U.S. Army ...
Cybersecurity Architect - Cyber Supply Chain Risk Management (C-SCRM)
Fort George G Meade, MD ยท On-site
$205 - $235/hr
AnaVation is seeking a highly experienced Cybersecurity Architect - CyberSupply Chain Risk Management (C-SCRM) to provide senior-level technical, analytical, and advisory support to the U.S. Army ...
Cybersecurity Architect - Cyber Supply Chain Risk Management (C-SCRM)
Fort George G Meade, MD ยท On-site
$205 - $235/hr
AnaVation is seeking a highly experienced Cybersecurity Architect - CyberSupply Chain Risk Management (C-SCRM) to provide senior-level technical, analytical, and advisory support to the U.S. Army ...
Cybersecurity Risk & Authorization Engineer - DAOR 3 with Security Clearance
Fort George G Meade, MD ยท On-site
The DAOR supports enterprise Cybersecurity and risk management activities by identifying security requirements, evaluating and validating security controls, and ensuring systems meet federal ...
Cybersecurity Risk & Authorization Engineer - DAOR 3 with Security Clearance
Fort George G Meade, MD ยท On-site
The DAOR supports enterprise Cybersecurity and risk management activities by identifying security requirements, evaluating and validating security controls, and ensuring systems meet federal ...
Cybersecurity Risk Management information
See Nottingham, MD salary details
$56.7K - $68.4K
1% of jobs
$68.4K - $80.1K
4% of jobs
$80.1K - $91.7K
5% of jobs
$91.7K - $103.4K
9% of jobs
$109.8K is the 25th percentile. Wages below this are outliers.
$103.4K - $115.1K
11% of jobs
$115.1K - $126.8K
10% of jobs
The median wage is $131.3K / yr.
$126.8K - $138.4K
28% of jobs
$145.2K is the 75th percentile. Wages above this are outliers.
$138.4K - $150.1K
14% of jobs
$150.1K - $161.8K
11% of jobs
$161.8K - $173.5K
4% of jobs
$173.5K - $185.1K
4% of jobs
$56.7K
$132.3K
$185.1K
How much do cybersecurity risk management jobs pay per year?
What is cybersecurity risk management?
What are the key skills and qualifications needed to thrive in cybersecurity risk management, and why are they important?
What are some common challenges faced by professionals in cybersecurity risk management, and how can they be addressed?
What is the difference between Cybersecurity Risk Management vs Cybersecurity Analyst?
| Aspect | Cybersecurity Risk Management | Cybersecurity Analyst |
|---|---|---|
| Certifications | CRISC, CISSP, CISM | CompTIA Security+, CEH, CISSP |
| Work Environment | Risk assessment, policy development, strategic planning | Monitoring security systems, incident response, vulnerability analysis |
| Employer & Industry Usage | Financial, healthcare, government, large enterprises | IT departments, cybersecurity firms, corporate security teams |
Cybersecurity Risk Management focuses on identifying, assessing, and mitigating security risks at an organizational level, often involving policy creation and strategic planning. In contrast, a Cybersecurity Analyst primarily monitors security systems, responds to incidents, and analyzes vulnerabilities. Both roles require similar certifications but serve different functions within cybersecurity teams.
What job categories do people searching Cybersecurity Risk Management jobs in Nottingham, MD look for?
The top searched job categories for Cybersecurity Risk Management jobs in Nottingham, MD are:
What cities near Nottingham, MD are hiring for Cybersecurity Risk Management jobs?
Cities near Nottingham, MD with the most Cybersecurity Risk Management job openings:

Full-time
Posted 4 days ago
Job description
Are you a current Associate? To be considered, you must submit your application through the internal Career Portal (Jobs Hub). Click here to access.
Time Type:
Full timeRemote Type:
Job Family Group:
Information TechnologyJob Description Summary:
The Senior Director Identity, Cybersecurity Governance & Risk is a senior cybersecurity leader responsible for enterprise Identity and Access Management (IAM), cybersecurity governance, cyber risk management, third-party risk management, compliance, and security performance measurement.This role owns strategy, implementation, operations, and continuous improvement of IAM capabilities while establishing the governance, policies, controls, risk processes, and metrics required to manage cybersecurity risk effectively across the enterprise.
The position partners closely with the IT Vendor Management Function, Enterprise Architecture, Audit, Legal, Compliance, Human Resources, Operations, IT functions, and business leadership. The successful candidate will combine strategic leadership, security program management, technical credibility, operational discipline, and the ability to communicate cybersecurity risk in clear business terms.
Job Description:
Job Responsibilities:
- Identity and Access Management (IAM)
- Define and execute a multi-year IAM strategy, roadmap, architecture, operating model, and governance framework that aligns with business priorities, improved operational efficiencies, and technology transformation initiatives.
- Oversee implementation and ongoing operations of IAM capabilities including IGA, IVIP, SSO, MFA, PAM, access provisioning, recertification, and identity lifecycle management.
- Establish enterprise standards for authentication, authorization, least privilege, role-based access, privileged access, and joiner/mover/leaver processes.
- Drive automation and modernization of access administration to improve security, user experience, and operational efficiency.
- Oversee IAM imitative performance, service levels, application onboarding, policy exceptions, and remediation of excessive, dormant, orphaned, or inappropriate access.
- Manage IAM technology vendors, implementation partners, and managed service providers.
- Cybersecurity Governance, Risk Management & Executive Reporting
- Establish and maintain the enterprise cybersecurity governance and risk management framework.
- Develop and maintain cybersecurity policies, standards, control requirements, exception processes, and accountability models.
- Partner with Enterprise Risk Management and executive leadership to align cybersecurity risk with enterprise risk appetite and tolerance.
- Maintain the cybersecurity risk register and ensure risks have clear owners, supported remediation plans, and appropriate executive visibility.
- Lead cybersecurity risk assessments across applications, infrastructure, cloud services, business processes, and major technology initiatives.
- Translate technical risk into business impact, including financial, operational, regulatory, reputational, and business partner considerations.
- Establish processes for risk treatment, residual risk assessment, formal risk acceptance, and escalation.
- Establish a cybersecurity measurement framework focused on risk reduction, control effectiveness, operational performance, and program maturity.
- Define KPIs, KRIs, service metrics, thresholds, and escalation criteria.
- Develop executive dashboards and Board reporting on cybersecurity risks, trends, program performance, and priorities.
- Use trend analysis and leading indicators to identify deteriorating performance or emerging risks.
- Benchmark cybersecurity maturity and performance against industry standards and peer organizations.
- Third-Party Cybersecurity Risk Management
- Lead the cybersecurity component of the organization's third-party risk management program.
- Establish risk-based due diligence and assessment requirements based on vendor criticality, platform tiering, data classifications, connectivity, and business impact.
- Oversee cybersecurity reviews during vendor selection, contracting, onboarding, periodic reassessment, renewal, and termination.
- Partner with IT Vendor Management and Legal to establish appropriate cybersecurity contractual requirements.
- Ensure significant vendor risks have documented remediation plans, compensating controls, or formally approved risk acceptance.
- Provide enhanced oversight of critical and high-risk vendors and report significant third-party risks to leadership.
- Cybersecurity Compliance & Controls
- Establish and maintain a cybersecurity control framework supporting the organizational culture and strategic direction, that aligns with applicable standards and regulatory requirements, including frameworks such as NIST CSF, NIST 800-53, ISO 27001/27002, ISO 31000, ISO 27090, CMMC, CIS Controls, SOC 2, and PCI DSS where applicable.
- Translate cybersecurity standards and regulatory requirements into practical enterprise policies, controls, and evidence requirements.
- Oversee cybersecurity control assessments, maturity evaluations, audit support, and remediation activities.
- Partner with Audit, Compliance, Legal, and external assessors during audits, and security reviews.
- Monitor evolving cybersecurity standards and requirements and assess their impact on the organization.
- Strategy, Leadership & Program Execution
- Develop multi-year strategies and annual operating plans across IAM, governance, risk, compliance, and third-party risk management functions.
- Translate cybersecurity strategy into prioritized programs, investments, roadmaps, and measurable outcomes.
- Build business cases for cybersecurity investments and communicate expected risk-reduction and business benefits.
- Serve as a trusted cybersecurity advisor to the CISO, CIO, executive leadership, and business stakeholders.
- Represent cybersecurity in major enterprise technology and business transformation initiatives.
- Other duties, as assigned by the jobholder's supervisor, may also be required
Minimum Qualifications:
- Bachelor's degree in Cybersecurity, Information Technology, Computer Science, Risk Management, or related discipline, or equivalent professional experience.
- 10+ years of progressive experience in cybersecurity, information security, technology risk, and related disciplines.
- Significant leadership experience directing enterprise cybersecurity programs in a complex organization.
- Demonstrated experience developing and executing enterprise cybersecurity strategies, platform implementations, and transformation programs.
- Strong knowledge of identity governance, authentication, privileged access, access lifecycle management, and modern identity architectures.
- Demonstrated expertise in cybersecurity governance, risk management, third-party risk, compliance, and control frameworks.
- Experience with standards such as NIST CSF, NIST 800-53, ISO 27001/27002, CIS Controls, CMMC, SOC 2, or comparable frameworks.
- Experience supporting audits, compliance assessments, and executive risk reporting.
- Demonstrated ability to develop meaningful cybersecurity KPIs, KRIs, dashboards, and performance reporting.
- Strong executive communication and stakeholder-management skills.
- Experience managing cybersecurity budgets, vendors, consulting partners, and large-scale cross-functional initiatives.
- Two or more professional certifications such as CISSP, CISM, CISA, or CGEIT.
- Strong analytical and problem-solving skills, with the ability to diagnose and resolve complex issues across highly distributed environments.
- Excellent prioritization, organizational, and decision-making skills
- Strategic thinking, conceptual problem-solving, and adaptability
Physical Requirements:
- While performing the duties of this job, the employee is required to remain in a stationary position at times; communicate, and operate a computer and telephone.
Competencies:
- People management responsibility for pay reviews, performance management, training, and resource planning.
- Requires conceptual thinking to understand complex issues and their implications, where sufficient information may not be available.
This job description is only a summary of the typical functions of this position, not an exhaustive or comprehensive list of all possible job responsibilities, tasks and duties. Responsibilities, tasks, and duties of individual jobholders may vary from the above description.
Compensation Range: $180, 000 to $200,000
Corporate Bonus: 30%
--
Breakthru Beverage Group is an equal opportunity employer. We evaluate qualified applicants without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, veteran status, genetic information and other legally protected characteristics. The EEO is the Law poster is available here. If you need a reasonable accommodation because of a disability for any part of the employment process, please call (708) 298-3536 and let us know the nature of your request and your contact information.
About Breakthru
Sourced by ZipRecruiter
Industry
Software development
Company size
11 - 50 Employees
Headquarters location
New York, NY, US
Year founded
2019