1

Cybersecurity Risk Management Jobs in Raleigh, NC

ITSO Sr. Program Manager

Durham, NC · On-site

$112K - $112K/yr

  • Medical

  • Retirement

... cybersecurity strategy. This role focuses on quantifying, contextualizing, and managing cyber risk ... across Duke University. You will partner closely with leadership, including the CISO and other ...

ITSO Sr. Program Manager

Durham, NC

$112K - $112K/yr

  • Medical

  • Retirement

... program management are encouraged to apply. Minimum Requirements Bachelor's degree in a related ... Experience with cybersecurity, risk analytics, or security program development. Proficiency with ...

Principal Engineer, Product Cybersecurity

Raleigh, NC · On-site

$120K - $165K/yr

  • Medical

  • Dental

  • Life

  • Retirement

  • PTO

... Risk Management, Compliance, Clinical, Human Factors, Regulatory, Marketing, Service). * Ensure ... Experience with cybersecurity related software such as Blackduck, Coverity, etc. * Experience ...

R&I Managed Services Deals Desk Senior Manager

Raleigh, NC · On-site

$91K - $321K/yr

  • Medical

  • Dental

  • Vision

  • Retirement

  • PTO

Accounting, Business Administration/Management, Computer Science/Information Systems, Cybersecurity, Finance, Risk Management/Insurance - Demonstrating advanced skills in Enterprise Risk Management ...

Showing results 41-60

Cybersecurity Risk Management information

See Raleigh, NC salary details

$55.4K

$129.2K

$180.8K

How much do cybersecurity risk management jobs pay per year?

As of Aug 16, 2026, the average yearly pay for cybersecurity risk management in Raleigh, NC is $129,243.00, according to ZipRecruiter salary data. Most workers in this role earn between $107,900.00 and $145,800.00 per year, depending on experience, location, and employer.

What are some common challenges faced by professionals in cybersecurity risk management, and how can they be addressed?

Professionals in Cybersecurity Risk Management often encounter challenges such as keeping up with rapidly evolving cyber threats, balancing security needs with business objectives, and ensuring compliance with industry regulations. Addressing these challenges requires continuous learning, effective communication with stakeholders, and close collaboration with IT, legal, and business teams. Building strong partnerships across departments and investing in ongoing training can help mitigate these obstacles and support proactive risk management.

What is the difference between Cybersecurity Risk Management vs Cybersecurity Analyst?

AspectCybersecurity Risk ManagementCybersecurity Analyst
CertificationsCRISC, CISSP, CISMCompTIA Security+, CEH, CISSP
Work EnvironmentRisk assessment, policy development, strategic planningMonitoring security systems, incident response, vulnerability analysis
Employer & Industry UsageFinancial, healthcare, government, large enterprisesIT departments, cybersecurity firms, corporate security teams

Cybersecurity Risk Management focuses on identifying, assessing, and mitigating security risks at an organizational level, often involving policy creation and strategic planning. In contrast, a Cybersecurity Analyst primarily monitors security systems, responds to incidents, and analyzes vulnerabilities. Both roles require similar certifications but serve different functions within cybersecurity teams.

What are the key skills and qualifications needed to thrive in cybersecurity risk management, and why are they important?

To thrive in Cybersecurity Risk Management, you need a solid understanding of information security principles, risk assessment methodologies, compliance standards, and typically a degree in cybersecurity or a related field. Familiarity with risk management frameworks (such as NIST or ISO 27001), security tools, and professional certifications like CISSP or CRISC is highly valued. Strong analytical thinking, effective communication, and problem-solving skills help professionals translate technical risks for non-technical stakeholders and foster collaboration. These competencies are crucial to proactively identifying threats, managing vulnerabilities, and ensuring organizational resilience in a rapidly evolving digital landscape.

What is cybersecurity risk management?

Cybersecurity risk management is the process of identifying, assessing, and prioritizing risks to an organization's digital assets and information systems. It involves implementing strategies and controls to minimize the impact of potential cyber threats, such as data breaches, malware, and unauthorized access. The goal is to balance security measures with business needs, ensuring sensitive information remains protected while maintaining operational efficiency. Effective risk management is ongoing, adapting to new threats and changes within the organization.

What are popular job titles related to Cybersecurity Risk Management jobs in Raleigh, NC?

For Cybersecurity Risk Management jobs in Raleigh, NC, the most frequently searched job titles are:

What job categories do people searching Cybersecurity Risk Management jobs in Raleigh, NC look for?

The top searched job categories for Cybersecurity Risk Management jobs in Raleigh, NC are:

What cities near Raleigh, NC are hiring for Cybersecurity Risk Management jobs?

Cities near Raleigh, NC with the most Cybersecurity Risk Management job openings:

Infographic showing various Cybersecurity Risk Management job openings in Raleigh, NC as of August 2026, with employment types broken down into 1% As Needed, 79% Full Time, 17% Part Time, and 3% Contract. Highlights an 92% Physical, 3% Hybrid, and 5% Remote job distribution, with an average salary of $129,243 per year, or $62.1 per hour.

ITSO Sr. Program Manager

Duke University

Durham, NC • On-site

$112K - $112K/yr

Full-time

Medical, Retirement

Re-posted 8 days ago


Duke University rating

6.7

Company rating: 6.7 out of 10

Based on 55 frontline employees who took The Breakroom Quiz

486th of 618 rated colleges and universities


Job description

Be You
Duke University's IT Security Office (ITSO) is seeking a skilled Senior Program Manager to help shape, communicate, and advance Duke's cybersecurity strategy. This role focuses on quantifying, contextualizing, and managing cyber risk across Duke University. You will partner closely with leadership, including the CISO and other Security Office leaders, to craft and communicate standards, practices, and program direction.
This position is ideal for someone who thrives in a fast-paced, analytical environment and enjoys translating complex information into clear guidance for diverse audiences. While prior security experience is helpful, candidates with strong backgrounds in analytics, risk, or strategic program management are encouraged to apply.
Minimum Requirements
• Bachelor's degree in a related field plus 3 or more years of experience in security, audit, analytics, or related areas.
OR
• 5+ years of combined education/experience in a related field.
Preferred Qualifications
• Certifications such as SANS/GIAC, CISSP, CISA, CISM.
• Experience with cybersecurity, risk analytics, or security program development.
• Proficiency with quantitative and qualitative analysis supporting data-driven decisions.
Other Requirements
• Strong verbal, written, and analytical communication skills.
• Ability to collaborate across diverse teams and influence through clarity and insight.
• Ability to work independently and in team settings on complex, fast-moving projects.
Be Bold
As Senior Program Manager, you will help drive the strategic maturity of Duke's information security program guided by the CI Security Critical Controls. This means providing insight into cyber risk trends, enabling data-driven decision-making, and ensuring the security program evolves with the regulatory landscape, including NIST SP 800-171.
• Assess the cyber risk landscape using metrics dashboards and advise on enhancements to improve clarity and risk quantification.
• Advise on development of inventory, tracking, and measurement tools, including dashboards covering accounts, devices, servers, network activity, websites, and adoption of key controls such as MFA, endpoint management, patching, and automated IP blocking.
• Identify strategic priorities for ITSO initiatives based on metrics, analysis, potential impact, and risk.
• Provide briefings to the security community, highlighting trends and implications for operational and strategic decisions.
• Lead project work to align the program with actionable industry best practices.
• Manage embedded security roles to ensure alignment with program priorities.
• Develop materials articulating policies, positions, and security guidance.
• Create innovative approaches to enhance the efficiency and value of ITSO's risk management programs-including vendor reviews.
• Coordinate response efforts on cross-functional issues involving groups such as Privacy and Audit, the Duke Health Information Security Office, and other departmental IT groups.
Supervisory Responsibilities
• Manage a team of 3-7 direct reports, 5 indirect reports, and graduate student interns.
• Perform all aspects of staff management including hiring, performance management, professional development, recognition, and staffing alignment for services provided by the team.
Choose Duke
Join an innovative, mission-driven security organization supporting a world-class research university. At Duke, your work will directly enhance the resilience of the institution while contributing to a collaborative and intellectually rich environment.
Why Duke?
• Reputation: Duke is a global leader in research, education, and cybersecurity, offering an environment committed to excellence.
• Professional Growth: Opportunities to shape strategy, influence outcomes, and work with cutting-edge technologies.
• Work-Life Balance: A supportive culture that values flexibility and well-being.
• Benefits: A competitive benefits package including health insurance, retirement plans, and additional perks.
Duke is an Equal Opportunity Employer committed to providing employment opportunity without regard to an individual's age, color, disability, gender, gender expression, gender identity, genetic information, national origin, race, religion, sex (including pregnancy and pregnancy related conditions), sexual orientation or military status.
Duke aspires to create a community built on collaboration, innovation, creativity, and belonging. Our collective success depends on the robust exchange of ideas-an exchange that is best when the rich diversity of our perspectives, backgrounds, and experiences flourishes. To achieve this exchange, it is essential that all members of the community feel secure and welcome, that the contributions of all individuals are respected, and that all voices are heard. All members of our community have a responsibility to uphold these values.
Essential Physical Job Functions:
Certain jobs at Duke University and Duke University Health System may include essential job functions that require specific physical and/or mental abilities. Additional information and provision for requests for reasonable accommodation will be provided by each hiring department.

What Duke University employees say

Pay

Benefits

Hours and flexibility

Workplace

Get the full story on Breakroom


Duke University logo

About Duke University

Sourced by ZipRecruiter

Duke is regarded as one of America's leading research universities. Located in Durham, North Carolina, Duke is positioned in the heart of the Research Triangle, which is ranked annually as one of the best places in the country to work and live. Duke has more than 15,000 students who study and conduct research in its 10 undergraduate, graduate, and professional schools. With about 40,000 employees, Duke is the third largest private employer in North Carolina, and it now has international programs in more than 150 countries.

Industry

Colleges, universities, and professional schools and hospitals

Company size

10,000+ Employees

Headquarters location

Durham, NC, US