1

Cybersecurity Risk Management Jobs in Nottingham, MD

Sr Cybersecurity ISSE with Security Clearance

Hanover, MD ยท On-site

$104K - $142K/yr

Senior Cybersecurity Information Systems Security Engineer (ISSE) Razor is looking for a Senior ... Lead or support security planning, assessments, risk analysis, risk management, and authorization ...

* Work as a Journeyman Cybersecurity Engineer supporting a multinational capability connecting ... Perform vulnerability assessments and support Risk Management Framework decisions using ESS ...

New

ISSE, Senior

Columbia, MD ยท On-site

$175K - $230K/yr

Expertise in the Risk Management Framework (RMF) and conducting cybersecurity risk assessments. * Expertise in network technology and systems security engineering. Experience in identifying ...

ISSE, SME

Columbia, MD ยท On-site

Expertise in the Risk Management Framework (RMF) and conducting cybersecurity risk assessments. * Expertise in network technology and systems security engineering. Experience in identifying ...

Showing results 41-60

Cybersecurity Risk Management information

See Nottingham, MD salary details

$56.7K

$132.3K

$185.1K

How much do cybersecurity risk management jobs pay per year?

As of Sep 6, 2026, the average yearly pay for cybersecurity risk management in Nottingham, MD is $132,334.00, according to ZipRecruiter salary data. Most workers in this role earn between $110,500.00 and $149,300.00 per year, depending on experience, location, and employer.

What is cybersecurity risk management?

Cybersecurity risk management is the process of identifying, assessing, and prioritizing risks to an organization's digital assets and information systems. It involves implementing strategies and controls to minimize the impact of potential cyber threats, such as data breaches, malware, and unauthorized access. The goal is to balance security measures with business needs, ensuring sensitive information remains protected while maintaining operational efficiency. Effective risk management is ongoing, adapting to new threats and changes within the organization.

What are the key skills and qualifications needed to thrive in cybersecurity risk management, and why are they important?

To thrive in Cybersecurity Risk Management, you need a solid understanding of information security principles, risk assessment methodologies, compliance standards, and typically a degree in cybersecurity or a related field. Familiarity with risk management frameworks (such as NIST or ISO 27001), security tools, and professional certifications like CISSP or CRISC is highly valued. Strong analytical thinking, effective communication, and problem-solving skills help professionals translate technical risks for non-technical stakeholders and foster collaboration. These competencies are crucial to proactively identifying threats, managing vulnerabilities, and ensuring organizational resilience in a rapidly evolving digital landscape.

What are some common challenges faced by professionals in cybersecurity risk management, and how can they be addressed?

Professionals in Cybersecurity Risk Management often encounter challenges such as keeping up with rapidly evolving cyber threats, balancing security needs with business objectives, and ensuring compliance with industry regulations. Addressing these challenges requires continuous learning, effective communication with stakeholders, and close collaboration with IT, legal, and business teams. Building strong partnerships across departments and investing in ongoing training can help mitigate these obstacles and support proactive risk management.

What is the difference between Cybersecurity Risk Management vs Cybersecurity Analyst?

AspectCybersecurity Risk ManagementCybersecurity Analyst
CertificationsCRISC, CISSP, CISMCompTIA Security+, CEH, CISSP
Work EnvironmentRisk assessment, policy development, strategic planningMonitoring security systems, incident response, vulnerability analysis
Employer & Industry UsageFinancial, healthcare, government, large enterprisesIT departments, cybersecurity firms, corporate security teams

Cybersecurity Risk Management focuses on identifying, assessing, and mitigating security risks at an organizational level, often involving policy creation and strategic planning. In contrast, a Cybersecurity Analyst primarily monitors security systems, responds to incidents, and analyzes vulnerabilities. Both roles require similar certifications but serve different functions within cybersecurity teams.

What job categories do people searching Cybersecurity Risk Management jobs in Nottingham, MD look for?

The top searched job categories for Cybersecurity Risk Management jobs in Nottingham, MD are:

What cities near Nottingham, MD are hiring for Cybersecurity Risk Management jobs?

Cities near Nottingham, MD with the most Cybersecurity Risk Management job openings:

Infographic showing various Cybersecurity Risk Management job openings in Nottingham, MD as of August 2026, with employment types broken down into 1% As Needed, 83% Full Time, 13% Part Time, and 3% Contract. Highlights an 82% Physical, 3% Hybrid, and 15% Remote job distribution, with an average salary of $132,334 per year, or $63.6 per hour.

Director of Enterprise Security Design

Dexian DISYS

Columbia, MD โ€ข On-site

Other

Posted 13 days ago


Key responsibilities

  • Define and execute the organization's enterprise security architecture strategy, including developing and maintaining the security architecture roadmap and standards.

  • Serve as a strategic advisor to executive leadership by presenting security strategies, risks, and mitigation plans, and participating in governance and review boards.

  • Lead security risk assessments, evaluate cybersecurity risks for technology initiatives, and oversee vulnerability management and incident response activities.


Job description


MUST BE LOCAL TO WASHINGTON, D.C. AREA


Job Description


Director, Enterprise Security Architecture & Design



Position Summary


The Director, Enterprise Security Architecture & Design is responsible for defining and executing the organization's enterprise security architecture strategy, ensuring security principles are embedded across business and technology initiatives. This leader acts as a trusted advisor to executive stakeholders, driving security-by-design practices, establishing architecture standards, and leading cross-functional efforts to identify, assess, and mitigate cybersecurity risk.


This role maintains a forward-looking perspective on emerging threats, evolving technologies, regulatory requirements, and business objectives to strengthen organizational security posture, resilience, and operational effectiveness.


Key Responsibilities


Security Strategy & Architecture



  • Develop and maintain the enterprise security architecture roadmap aligned to business and technology objectives.

  • Establish and promote security-by-design principles across infrastructure, applications, cloud platforms, and data environments.

  • Define enterprise security standards, reference architectures, and engineering guardrails.

  • Translate business requirements into scalable security capabilities and controls.

  • Influence enterprise technology decisions to ensure security considerations are integrated into architectural planning and implementation.

  • Lead long-term cybersecurity maturity and transformation initiatives.


Executive Leadership & Governance



  • Serve as a strategic advisor to executive leadership on cybersecurity risk, security investments, and technology initiatives.

  • Present security strategies, key risks, mitigation plans, and investment recommendations to senior stakeholders.

  • Participate in governance committees, architecture review boards, and risk management forums.

  • Provide leadership for enterprise-wide security transformation efforts.

  • Drive prioritization of remediation activities based on organizational risk and business impact.


Risk Management & Security Operations



  • Lead security risk assessments for technology initiatives, change requests, and strategic programs.

  • Evaluate cybersecurity risks associated with major technology implementations, digital transformation initiatives, and business changes.

  • Establish and oversee risk-based vulnerability management practices.

  • Partner with engineering and operational teams to remediate identified vulnerabilities and security weaknesses.

  • Conduct threat and risk assessments to identify emerging concerns and control gaps.


Security Monitoring & Incident Response



  • Support and optimize enterprise security technologies, including SIEM, endpoint protection, identity security, network security, vulnerability management, and detection platforms.

  • Analyze outputs from security monitoring and assessment tools and coordinate remediation activities.

  • Lead or support incident investigations, root cause analyses, and corrective action planning.

  • Develop and maintain incident response strategies and playbooks.

  • Monitor emerging threats and recommend appropriate security enhancements.


Metrics & Reporting



  • Develop security KPIs, operational metrics, and executive dashboards.

  • Establish meaningful reporting mechanisms to measure program effectiveness, risk reduction, and cybersecurity maturity.

  • Communicate security performance and risk posture to business and technology leadership.


Required Qualifications


Experience



  • 10+ years of progressive cybersecurity experience.

  • 5+ years leading security architecture, security engineering, or enterprise cybersecurity programs.

  • Experience securing complex environments spanning on-premises, cloud, and SaaS platforms.

  • Experience developing enterprise security strategies, roadmaps, and governance frameworks.

  • Proven ability to influence executive stakeholders and communicate risk-based recommendations.

  • Experience leading cross-functional initiatives within matrixed organizations.

  • Experience managing penetration testing and vulnerability remediation programs.

  • Experience supporting regulatory, compliance, or security frameworks such as NIST, ISO 27001, SOC 2, PCI-DSS, HIPAA, or comparable standards.


Preferred Experience



  • Zero Trust architecture design and implementation.

  • Microsoft security ecosystem, including Defender, Sentinel, Entra ID, and Purview.

  • Cloud security experience in Azure and/or AWS.

  • Enterprise threat modeling and risk assessment methodologies.

  • Leadership during significant cybersecurity incidents.

  • Large-scale technology transformation initiatives.

  • Security architecture within highly regulated industries.

  • Familiarity with AI governance, security, and risk considerations.


Certifications


Required



  • CISSP

  • Azure Security Engineer (AZ-500)

  • GIAC Certified Incident Handler (GCIH)


Preferred



  • CCSP

  • SABSA

  • TOGAF

  • AWS Security Specialty

  • Additional GIAC certifications


Education



  • Bachelor's Degree required.

  • Master's Degree preferred.


Dexian stands at the forefront of Talent + Technology solutions with a presence spanning more than 70 locations worldwide and a team exceeding 10,000 professionals. As one of the largest technology and professional staffing companies and one of the largest minority-owned staffing companies in the United States, Dexian combines over 30 years of industry expertise with cutting-edge technologies to deliver comprehensive global services and support.
Dexian connects the right talent and the right technology with the right organizations to deliver trajectory-changing results that help everyone achieve their ambitions and goals. To learn more, please visit .
Dexian is an Equal Opportunity Employer that recruits and hires qualified candidates without regard to race, religion, sex, sexual orientation, gender identity, age, national origin, ancestry, citizenship, disability, or veteran status.