1

Cybersecurity Risk Management Jobs (NOW HIRING)

Cybersecurity Risk Lead

Auburn, ME ยท On-site

$119K - $161K/yr

The Cybersecurity Risk Leadis responsible foraligning cybersecurity capabilities, processes, and ... Risk management experience * Experience with Zero Trust, SASE/SSE, ZTNA, or cloud security ...

Cybersecurity Risk Lead

Gardiner, ME ยท On-site

$107K - $144K/yr

The Cybersecurity Risk Leadis responsible foraligning cybersecurity capabilities, processes, and ... Risk management experience * Experience with Zero Trust, SASE/SSE, ZTNA, or cloud security ...

Cybersecurity Risk Lead

Portland, ME ยท On-site

$113K - $153K/yr

The Cybersecurity Risk Leadis responsible foraligning cybersecurity capabilities, processes, and ... Risk management experience * Experience with Zero Trust, SASE/SSE, ZTNA, or cloud security ...

Cybersecurity Risk Lead

Camden, ME ยท On-site

$121K - $164K/yr

The Cybersecurity Risk Leadis responsible foraligning cybersecurity capabilities, processes, and ... Risk management experience * Experience with Zero Trust, SASE/SSE, ZTNA, or cloud security ...

Cybersecurity Risk Lead

Berlin, NH ยท On-site

$122K - $165K/yr

The Cybersecurity Risk Leadis responsible foraligning cybersecurity capabilities, processes, and ... Risk management experience * Experience with Zero Trust, SASE/SSE, ZTNA, or cloud security ...

NY ยท On-site

$100 - $140/hr

* Support day-to-day execution of the cyber security risk metrics lifecycle, including metric intake ... Partner with metric owners and managers on data submission, interpretation, evidence standards, and ...

Posted today

Cyber Security Risk Analyst Work Location: Required onsite work at the client location at Scott Air ... Management Framework (RMF) and Vulnerability Management to on-premises and Cloud networks.

Showing results 21-40

Cybersecurity Risk Management information

See salary details

$57K

$133K

$186K

How much do cybersecurity risk management jobs pay per year?

As of Sep 6, 2026, the average yearly pay for cybersecurity risk management in the United States is $132,962.00, according to ZipRecruiter salary data. Most workers in this role earn between $111,000.00 and $150,000.00 per year, depending on experience, location, and employer.

What is cybersecurity risk management?

Cybersecurity risk management is the process of identifying, assessing, and prioritizing risks to an organization's digital assets and information systems. It involves implementing strategies and controls to minimize the impact of potential cyber threats, such as data breaches, malware, and unauthorized access. The goal is to balance security measures with business needs, ensuring sensitive information remains protected while maintaining operational efficiency. Effective risk management is ongoing, adapting to new threats and changes within the organization.

What are the key skills and qualifications needed to thrive in cybersecurity risk management, and why are they important?

To thrive in Cybersecurity Risk Management, you need a solid understanding of information security principles, risk assessment methodologies, compliance standards, and typically a degree in cybersecurity or a related field. Familiarity with risk management frameworks (such as NIST or ISO 27001), security tools, and professional certifications like CISSP or CRISC is highly valued. Strong analytical thinking, effective communication, and problem-solving skills help professionals translate technical risks for non-technical stakeholders and foster collaboration. These competencies are crucial to proactively identifying threats, managing vulnerabilities, and ensuring organizational resilience in a rapidly evolving digital landscape.

What are some common challenges faced by professionals in cybersecurity risk management, and how can they be addressed?

Professionals in Cybersecurity Risk Management often encounter challenges such as keeping up with rapidly evolving cyber threats, balancing security needs with business objectives, and ensuring compliance with industry regulations. Addressing these challenges requires continuous learning, effective communication with stakeholders, and close collaboration with IT, legal, and business teams. Building strong partnerships across departments and investing in ongoing training can help mitigate these obstacles and support proactive risk management.

What is the difference between Cybersecurity Risk Management vs Cybersecurity Analyst?

AspectCybersecurity Risk ManagementCybersecurity Analyst
CertificationsCRISC, CISSP, CISMCompTIA Security+, CEH, CISSP
Work EnvironmentRisk assessment, policy development, strategic planningMonitoring security systems, incident response, vulnerability analysis
Employer & Industry UsageFinancial, healthcare, government, large enterprisesIT departments, cybersecurity firms, corporate security teams

Cybersecurity Risk Management focuses on identifying, assessing, and mitigating security risks at an organizational level, often involving policy creation and strategic planning. In contrast, a Cybersecurity Analyst primarily monitors security systems, responds to incidents, and analyzes vulnerabilities. Both roles require similar certifications but serve different functions within cybersecurity teams.

More about Cybersecurity Risk Management jobs

What cities are hiring for Cybersecurity Risk Management jobs?

Cities with the most Cybersecurity Risk Management job openings:

What states have the most Cybersecurity Risk Management jobs?

States with the most job openings for Cybersecurity Risk Management jobs include:

Infographic showing various Cybersecurity Risk Management job openings in the United States as of August 2026, with employment types broken down into 1% As Needed, 83% Full Time, 14% Part Time, and 2% Contract. Highlights an 89% Physical, 2% Hybrid, and 9% Remote job distribution, with an average salary of $132,962 per year, or $63.9 per hour.

Cybersecurity Risk & Compliance Analyst

Goodwill of South Florida

Miami, FL โ€ข On-site

Full-time

Re-posted 29 days ago


Job description

The Cybersecurity Risk and Compliance Analyst ensures that the organization's technology ecosystem is evaluated correctly, assessed, and managed to ensure compliance and minimize cybersecurity risk exposure and impacts to the business. The analyst will assist with tracking open audit findings and facilitate response generation, information gathering, testing evidence, and escalation of the prior conclusions. The analyst will collaborate with infrastructure team members, drive the adoption of security best practices, assist with creating new policies, improve existing security processes, and support adherence to the organization's security policies and procedures.
BS or MA in computer science, information security, cybersecurity or a related field.
โ€ข 3+ years of experience in an IT audit, enterprise risk management (ERM) role or cyber risk management role
โ€ข 3+ years of experience with regulatory compliance, risk management frameworks, and information security management frameworks (e.g., ISO 27000, CMMC, NIST 800-171, NIST Risk Management Framework, CARF, etc.)
โ€ข Strong background in conducting Business Impact Analysis (BIA) to evaluate the potential impact of cybersecurity risk on critical business processes and functions.
โ€ข Experience understanding and articulating business goals and objectives.
โ€ข Experience identifying and assessing risks to the organization's business.
โ€ข Experience communicating complex technical concepts to non-technical audiences.
โ€ข Experience with cybersecurity principles and practices, including risk management, security controls, and incident response.
โ€ข Experience with cybersecurity technologies and systems, such as firewalls, intrusion detection systems, and security information and event management (SIEM) systems.
โ€ข Familiarity in one or more of the following areas: Identity management, PAM, SSO and MFA
โ€ข Ability to leverage research from various sources such as government research, think tanks, academic research, and industry reports