1

Cybersecurity Risk Management Jobs (NOW HIRING)

As an Cybersecurity Risk Engineer on our Cyber GRC team, you will apply engineering, automation ... You will also play a key role in managing the platform, including how data is reviewed, how ...

As an Cybersecurity Risk Engineer on our Cyber GRC team, you will apply engineering, automation ... You will also play a key role in managing the platform, including how data is reviewed, how ...

Cyber Security Risk Analyst

Belleville, IL · On-site

$115K - $125K/yr

... Cyber Security Risk Analyst Work Location: Required onsite work at the client location at Scott ... Management Framework (RMF) and Vulnerability Management to on-premises and Cloud networks.

Showing results 41-60

Cybersecurity Risk Management information

See salary details

$57K

$133K

$186K

How much do cybersecurity risk management jobs pay per year?

As of Aug 12, 2026, the average yearly pay for cybersecurity risk management in the United States is $132,962.00, according to ZipRecruiter salary data. Most workers in this role earn between $111,000.00 and $150,000.00 per year, depending on experience, location, and employer.

What are some common challenges faced by professionals in cybersecurity risk management, and how can they be addressed?

Professionals in Cybersecurity Risk Management often encounter challenges such as keeping up with rapidly evolving cyber threats, balancing security needs with business objectives, and ensuring compliance with industry regulations. Addressing these challenges requires continuous learning, effective communication with stakeholders, and close collaboration with IT, legal, and business teams. Building strong partnerships across departments and investing in ongoing training can help mitigate these obstacles and support proactive risk management.

What is the difference between Cybersecurity Risk Management vs Cybersecurity Analyst?

AspectCybersecurity Risk ManagementCybersecurity Analyst
CertificationsCRISC, CISSP, CISMCompTIA Security+, CEH, CISSP
Work EnvironmentRisk assessment, policy development, strategic planningMonitoring security systems, incident response, vulnerability analysis
Employer & Industry UsageFinancial, healthcare, government, large enterprisesIT departments, cybersecurity firms, corporate security teams

Cybersecurity Risk Management focuses on identifying, assessing, and mitigating security risks at an organizational level, often involving policy creation and strategic planning. In contrast, a Cybersecurity Analyst primarily monitors security systems, responds to incidents, and analyzes vulnerabilities. Both roles require similar certifications but serve different functions within cybersecurity teams.

What are the key skills and qualifications needed to thrive in cybersecurity risk management, and why are they important?

To thrive in Cybersecurity Risk Management, you need a solid understanding of information security principles, risk assessment methodologies, compliance standards, and typically a degree in cybersecurity or a related field. Familiarity with risk management frameworks (such as NIST or ISO 27001), security tools, and professional certifications like CISSP or CRISC is highly valued. Strong analytical thinking, effective communication, and problem-solving skills help professionals translate technical risks for non-technical stakeholders and foster collaboration. These competencies are crucial to proactively identifying threats, managing vulnerabilities, and ensuring organizational resilience in a rapidly evolving digital landscape.

What is cybersecurity risk management?

Cybersecurity risk management is the process of identifying, assessing, and prioritizing risks to an organization's digital assets and information systems. It involves implementing strategies and controls to minimize the impact of potential cyber threats, such as data breaches, malware, and unauthorized access. The goal is to balance security measures with business needs, ensuring sensitive information remains protected while maintaining operational efficiency. Effective risk management is ongoing, adapting to new threats and changes within the organization.
More about Cybersecurity Risk Management jobs
What cities are hiring for Cybersecurity Risk Management jobs? Cities with the most Cybersecurity Risk Management job openings:
What states have the most Cybersecurity Risk Management jobs? States with the most job openings for Cybersecurity Risk Management jobs include:
Infographic showing various Cybersecurity Risk Management job openings in the United States as of August 2026, with employment types broken down into 1% As Needed, 82% Full Time, 14% Part Time, and 3% Contract. Highlights an 92% Physical, 3% Hybrid, and 5% Remote job distribution, with an average salary of $132,962 per year, or $63.9 per hour.

Cyber Security Risk Analyst

Electrosoft

Belleville, IL

Full-time

Re-posted 14 days ago


Job description

Cyber Security Risk Analyst
 
Work Location:
Required onsite work at the client location at Scott Air Force Base, Illinois with situational telework only
 
Job description
Electrosoft Inc. is seeking a Cyber Security Risk Analyst (CSRA) who can help support the creation and visualization of metrics to support decisions and reduce threats across the Enterprise. The ideal candidate will provide expertise with the implementation of "Metrics that Matter" to assist the client in meeting the requirements to address Risk Management Framework (RMF) and Vulnerability Management to on-premises and Cloud networks.  Additionally, they will assist in integrating systems and data while securing the environment against evolving Cybersecurity threats and modernizing to achieve mission success. 
 
Duties & Responsibilities:
The CSRA will assist in design of innovative solutions and services to support our team and customer in improving our collection and visualization of metrics to support Vulnerability Management (VM), Risk Management Framework (RMF) and to address various Cyber Security Service Provider Inspection requirements to improve the overall risk assessment, better understand performance, improve situational awareness and facilitate the enhanced cyber security posture.  Ultimately providing for potential interoperability between current systems and ensuring timely decision making based on near real-time data availability through data analytics and product development.   Additionally, the CSRA shall utilize skills in DoD computing, networking/transmission, cybersecurity policy, and data analytics to:
  • Develop meaningful and actionable metrics, to include Key Performance Indicators (KPI) and Key Risk Indicators (KRI), as directed by the Government
  • Integrate metrics with cyber readiness framework
  • Analyze and define data requirements and specifications
  • Develop data model(s), integrations, and analytics to enhance cyber readiness assessment and to enable decision support
  • Conduct queries to analyze data sets
  • Conduct trend analysis to identify systemic security issues by analyzing vulnerability and configuration data
  • Analyze future eMASS changes, to include the altering or addition of new data elements and advise product stakeholders, propose solutions, and initiate preventative or corrective action as determined by the stakeholders.
  • Monitor health of daily ingests, advise stakeholders when ingest operations are degraded, and propose corrective actions during periods of ingest degradation or failure.
  • Perform Extract, Transform, and Load (ETL) Operations
  • Accomplish data ingestion, processing, distribution, and visualization
  • Develop and maintain analytics code repository (Python and SQL) and data visualization programs (Qlik)
  • Deploy analytics workloads using Databricks
Basic Qualifications:
  • At least 5 years of experience in cybersecurity, information technology, Software Development or related field.
  • Know Python, SQL, basic HTML/CSS
  • Familiarity with DoD Vulnerability Management (VM) and Risk Management Framework (RMF)
  • Knowledge of business intelligence visualization tools 
  • Excellent communication, collaboration, and problem-solving skills.
  • Ability to work independently and as part of a team.
  • Data analytics is preferred in Advana or Qlik, however a general familiarity with R or Python analytics (ex; spark, pandas)
  • Minimum of a Bachelor of Science (or higher) in one of the following: computer engineering, computer science, IT, cyber security, or a related field.
  • Relevant years of experience may be used in substitution for situations where the candidate does not have a Bachelor's degree in the required field.
  • Must have 8140 compliant certification (e.g. GCFA, GCIA, CySA+, GICSP, CFR )
  • Minimum of an active Secret Clearance.