1

Cybersecurity Risk Management Jobs in Syracuse, NY

GRC Vendor Risk Analyst

Syracuse, NY ยท On-site

$70 - $100/hr

Beyond retail banking, we also offer commercial banking, wealth management, investment management ... Bachelor's Degree required in Information Security, Cybersecurity, Information Technology or ...

We are looking for Cyber Security Analyst in Syracuse, NY for 6+ months contract position. Please ... Perform network vulnerability testing, risk analysis and security assessments * Manage select ...

Senior AI Engineering

Syracuse, NY ยท On-site

$150 - $275/hr

Partner with business, data, cybersecurity, risk, compliance, legal, and vendor teams to ensure ... Familiarity with model risk management, third-party/vendor risk, privacy impact assessments, and ...

Ensure compliance with medical device quality and regulatory standards, including risk management, complaint handling, CAPA support, cybersecurity, and design control processes. * Champion quality ...

Enterprise Data Architect

Syracuse, NY ยท On-site

$130 - $200/hr

Partner with data governance, cybersecurity, risk, compliance, and legal teams to ensure ... Deep expertise in enterprise data lifecycle management including data modeling, integration ...

Be Seen First

IT Systems Analyst III

Syracuse, NY ยท On-site

$55 - $70/hr

Regulatory, Compliance & Risk Management * Ensure compliance with regulatory requirements, audit controls, cybersecurity standards, and corporate governance policies. * Support internal and external ...

Site Digital IT Manager (2027 Grads)

Auburn, NY ยท On-site

$92K - $112K/yr

... management * IT Security & Risk - Awareness of cybersecurity requirements and ability to support P&G's cyber security organization to drive programs centered on protecting P&G in terms of information ...

next page

Showing results 1-20

Cybersecurity Risk Management information

See Syracuse, NY salary details

$56.3K

$131.4K

$183.8K

How much do cybersecurity risk management jobs pay per year?

As of Sep 7, 2026, the average yearly pay for cybersecurity risk management in Syracuse, NY is $131,370.00, according to ZipRecruiter salary data. Most workers in this role earn between $109,700.00 and $148,200.00 per year, depending on experience, location, and employer.

What is cybersecurity risk management?

Cybersecurity risk management is the process of identifying, assessing, and prioritizing risks to an organization's digital assets and information systems. It involves implementing strategies and controls to minimize the impact of potential cyber threats, such as data breaches, malware, and unauthorized access. The goal is to balance security measures with business needs, ensuring sensitive information remains protected while maintaining operational efficiency. Effective risk management is ongoing, adapting to new threats and changes within the organization.

What are the key skills and qualifications needed to thrive in cybersecurity risk management, and why are they important?

To thrive in Cybersecurity Risk Management, you need a solid understanding of information security principles, risk assessment methodologies, compliance standards, and typically a degree in cybersecurity or a related field. Familiarity with risk management frameworks (such as NIST or ISO 27001), security tools, and professional certifications like CISSP or CRISC is highly valued. Strong analytical thinking, effective communication, and problem-solving skills help professionals translate technical risks for non-technical stakeholders and foster collaboration. These competencies are crucial to proactively identifying threats, managing vulnerabilities, and ensuring organizational resilience in a rapidly evolving digital landscape.

What are some common challenges faced by professionals in cybersecurity risk management, and how can they be addressed?

Professionals in Cybersecurity Risk Management often encounter challenges such as keeping up with rapidly evolving cyber threats, balancing security needs with business objectives, and ensuring compliance with industry regulations. Addressing these challenges requires continuous learning, effective communication with stakeholders, and close collaboration with IT, legal, and business teams. Building strong partnerships across departments and investing in ongoing training can help mitigate these obstacles and support proactive risk management.

What is the difference between Cybersecurity Risk Management vs Cybersecurity Analyst?

AspectCybersecurity Risk ManagementCybersecurity Analyst
CertificationsCRISC, CISSP, CISMCompTIA Security+, CEH, CISSP
Work EnvironmentRisk assessment, policy development, strategic planningMonitoring security systems, incident response, vulnerability analysis
Employer & Industry UsageFinancial, healthcare, government, large enterprisesIT departments, cybersecurity firms, corporate security teams

Cybersecurity Risk Management focuses on identifying, assessing, and mitigating security risks at an organizational level, often involving policy creation and strategic planning. In contrast, a Cybersecurity Analyst primarily monitors security systems, responds to incidents, and analyzes vulnerabilities. Both roles require similar certifications but serve different functions within cybersecurity teams.

What are popular job titles related to Cybersecurity Risk Management jobs in Syracuse, NY?

For Cybersecurity Risk Management jobs in Syracuse, NY, the most frequently searched job titles are:

What job categories do people searching Cybersecurity Risk Management jobs in Syracuse, NY look for?

The top searched job categories for Cybersecurity Risk Management jobs in Syracuse, NY are:

What cities near Syracuse, NY are hiring for Cybersecurity Risk Management jobs?

Cities near Syracuse, NY with the most Cybersecurity Risk Management job openings:

Infographic showing various Cybersecurity Risk Management job openings in Syracuse, NY as of August 2026, with employment types broken down into 1% As Needed, 75% Full Time, 22% Part Time, and 2% Contract. Highlights an 82% Physical, 3% Hybrid, and 15% Remote job distribution, with an average salary of $131,370 per year, or $63.2 per hour.

GRC Vendor Risk Analyst

OneGroup

Syracuse, NY โ€ข On-site

$70 - $100/hr

Other

Medical, Dental, Vision, Retirement, PTO

Posted 5 days ago


Job description

Overview

At Community Financial System, Inc. (CFSI), we are dedicated to providing our customers with friendly, personalized, high-quality financial services and products. Our retail division, Community Bank, N.A., operates more than 200 customer facilities across Upstate New York, Northeastern Pennsylvania, Vermont and Western Massachusetts. Beyond retail banking, we also offer commercial banking, wealth management, investment management, insurance and risk management, and benefit plan administration.

Just as our employees are committed to helping our customers manage their finances, weโ€™re committed to our employees. After all, they make it happen for our customers every day.

To ensure our people can enjoy long and successful careers here at CFSI, we offer competitive compensation, great benefits, and professional development and advancement opportunities. As an equal-opportunity workplace and affirmative-action employer, we celebrate and support a diverse workplace for the benefit of all: our employees, customers and communities.

Responsibilities

Support CFSIโ€™s third-party risk management program by administering the vendor due diligence portal, responding to inquiries and completing questionnaires provided by our customers and prospects regarding our information security controls, conducting information security due diligence assessments of new and existing vendors, and partnering with Enterprise Risk Management to strengthen the overall third-party risk framework. This role also supports AI Governance activities related to third-party AI solution evaluations, ongoing monitoring of approved relationships, and governance processes involving internally developed AI and agent solutions, in alignment with guidance established by the AI Governance Committee.

Essential Duties
  • Administer and maintain the third-party due diligence portal, ensuring current content, standard responses, supporting documentation, and security artifacts remain aligned with internal policies and controls.
  • Coordinate, complete, and track information security questionnaires from customers, partners, auditors, and other authorized third parties.
  • Partner with stakeholders across various business lines to gather responses and supporting evidence.
  • Perform information security due diligence reviews of new and existing vendors through review of SOC reports, questionnaires, policies, penetration test summaries, business continuity materials, and other documentation to assess security posture, control environments, data protection practices, regulatory considerations, and overall risk.
  • Identify, document, and communicate information security risks, control gaps, due diligence findings, and remediation recommendations to support management and governance decision-making.
  • Support AI Governance activities related to third-party AI solution evaluations, ongoing monitoring of approved use cases, and governance processes involving internally developed AI and agent solutions, in alignment with guidance established by the AI Governance Committee.
  • Support enhancements to third-party risk processes, standards, reporting, workflows, templates, metrics, and ongoing monitoring activities.
  • Support identity and access management governance, review, and related coordination activities as assigned.
  • Track remediation items, follow-up actions, and review outcomes to support timely resolution.
  • Maintain organized assessment records, questionnaires, exceptions, and supporting documentation in accordance with policy and regulatory expectations.
  • Support audits, examinations, and internal reviews related to vendor management, information security due diligence, and AI Governance oversight.
  • Perform other Information Security, third-party risk, and related governance duties as assigned by management.
Ancillary Duties

As an integral member of CFSI, this position is responsible to provide assistance wherever necessary to help the Branches and the Bank in achieving their annual goals. This may include traveling to other branches in the area to provide support as needed and to ensure proper staffing and service levels.

Qualifications Education, Training & Requirements
  • Bachelorโ€™s Degree required in Information Security, Cybersecurity, Information Technology or equivalent experience considered
Skills
  • Strong analytical and communication skills. Proficient in conducting third-party information security due diligence, including reviewing SOC reports, penetration tests, and security questionnaires. Familiarity with risk assessment frameworks (e.g., NIST, SIG, CIS) and emerging AI governance guidelines. Ability to work independently and collaboratively to identify, document, and communicate security risks.
Experience
  • 4+ years of experience in Information Security; OR
  • 4+ years of experience in Risk Management or Third-Party Risk Management (TPRM) with a strong focus on Information Security and GRC; OR
  • 4+ years of experience in Information Technology with a dedicated focus on Security or GRC.
  • Experience or familiarity with emerging technology risk frameworks (such as AI Governance or the NIST AI Risk Management Framework) is highly desired.
  • Financial industry experience (e.g., familiarity with GLBA, FFIEC, or FDIC guidelines) is preferred but not required.
  • All applicants must be 18 years of age or older.
Other Job Information

Hours: 40hours per week

Compensation: Commensurate with experience plus potential for annual merit increase. In addition to your competitive salary, you will be rewarded benefits including: 11 paid holidays, paid vacation, Medical, Vision & Dental insurance, 401K with generous match, Pension, Tuition Reimbursement, Banking discounts and the list goes on!

Physical Requirements

The physical demands described here are representative of those that must be met by an employee to successfully perform the essential functions of this job. Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions. While performing the duties of this job, the employee may be required to stand, walk, sit, use hands to finger, handle, or feel, reach with hands or arms, and speak and hear. The employee may occasionally be required to lift and or move up to 25 pounds. Specific vision abilities required by this job include close vision, and the ability to focus.

Minimum

USD $28.85/Yr.

Maximum

USD $47.54/Yr.

#J-18808-Ljbffr