1

It Risk Manager Jobs in Maryland (NOW HIRING)

Understand the impact of key technology trends and workforce changes impacting our clients through ... Advanced proficiency in Microsoft Office (PowerPoint, Excel, Visio) Information for applicants with ...

IT Project Manager

Hanover, MD

$97K - $114K/yr

Ensure compliance with IT governance, security, and risk management standards * Reporting & Governance * Track KPIs, budgets, milestones, and overall project performance * Maintain documentation ...

Cyber and IT Risk Management Job Qualifications: Skills: Disaster Recovery (DR), Firewalls, Security Certifications: None Experience: 10 + years of related experience US Citizenship Required: No As ...

IT Project Manager

Rockville, MD · On-site

$100K - $118K/yr

... risk, change management, transition, and turnover plans * Ensure work remains within scope and ... Bachelor's degree in computer science, information technology, engineering, project management ...

New

Participate in and implements components of the IT Risk Management plan in accordance with standards and procedures. This includes participation in the annual execution of disaster recovery testing ...

IT Project Manager

Rockville, MD · On-site

$100K - $118K/yr

... risk, change management, transition, and turnover plans * Ensure work remains within scope and ... Bachelor's degree in computer science, information technology, engineering, project management ...

Participate in and implements components of the IT Risk Management plan in accordance with standards and procedures. This includes participation in the annual execution of disaster recovery testing ...

IT Consultant

Leonardtown, MD · On-site

$60 - $70/hr

Title: IT Consultant Location: St. Leonardtown, MD 20650 Below are the key requirements: * Provide ... Governance, Risk, and Management - The processes and practices designed to ensure that ...

... risk management, and status reporting across cross-functional teams. * Manage vendor and partner ... Minimum 8 years of federal IT program management experience, with at least 3 years managing multi ...

IT Project Manager

Rockville, MD · On-site

$100K - $118K/yr

... risk management, and status reporting across cross-functional teams. * Manage vendor and partner ... Minimum 8 years of federal IT program management experience, with at least 3 years managing multi ...

IT Project Manager

Rockville, MD · On-site

$102K - $128K/yr

... risk management, and status reporting across cross-functional teams. * Manage vendor and partner ... Minimum 8 years of federal IT program management experience, with at least 3 years managing multi ...

IT Manager

Silver Spring, MD · On-site

$97K - $120K/yr

... risk assessments and vulnerability reviews. • Manage relationships with IT vendors, telecom partners, and managed service providers. • Lead IT projects including system upgrades, new ...

Showing results 41-60

It Risk Manager information

See Maryland salary details

$50K

$108.3K

$165K

How much do it risk manager jobs pay per year?

As of Aug 10, 2026, the average yearly pay for it risk manager in Maryland is $108,270.00, according to ZipRecruiter salary data. Most workers in this role earn between $87,300.00 and $125,200.00 per year, depending on experience, location, and employer.

What are some common challenges faced by IT Risk Managers when implementing risk mitigation strategies across different departments?

IT Risk Managers often encounter challenges such as varying levels of risk awareness among departments, resistance to new controls or procedures, and balancing business objectives with security requirements. Successful risk mitigation requires clear communication, stakeholder buy-in, and tailored training to ensure all teams understand the importance of compliance. Building strong relationships and fostering a culture of shared responsibility are key to overcoming these hurdles and ensuring effective risk management across the organization.

What are the key skills and qualifications needed to thrive as an IT Risk Manager, and why are they important?

To thrive as an IT Risk Manager, you need a solid understanding of risk assessment, information security, and compliance frameworks, often backed by a bachelor's degree in information technology or related fields. Familiarity with tools such as risk management software, GRC platforms, and certifications like CISSP, CISM, or CRISC is typically required. Strong analytical thinking, communication skills, and the ability to influence stakeholders are crucial soft skills in this role. These skills ensure effective identification, mitigation, and communication of IT risks, supporting organizational resilience and compliance.

What does an IT Risk Manager do?

An IT Risk Manager is responsible for identifying, assessing, and mitigating risks that could impact an organization's information technology systems and data. They develop and implement risk management strategies, policies, and procedures to protect against cybersecurity threats, data breaches, and compliance violations. IT Risk Managers also work closely with other departments to ensure security best practices are followed and often lead risk assessments, audits, and incident response planning.

What is the difference between It Risk Manager vs Cybersecurity Analyst?

AspectIt Risk ManagerCybersecurity Analyst
CertificationsCRISC, CISSP, CISMCISSP, Security+, CEH
Work EnvironmentOversees risk management strategies across IT systemsMonitors and responds to security threats and incidents
Industry UsageUsed in organizations with complex IT infrastructuresCommon in security-focused roles across industries

The It Risk Manager focuses on identifying and managing IT risks at an organizational level, ensuring compliance and risk mitigation strategies. In contrast, a Cybersecurity Analyst primarily monitors security threats and responds to incidents. While both roles require similar certifications and work within the IT security domain, the It Risk Manager has a broader scope related to risk management policies, whereas the Cybersecurity Analyst concentrates on threat detection and response.

What are popular job titles related to It Risk Manager jobs in Maryland? For It Risk Manager jobs in Maryland, the most frequently searched job titles are:
What cities in Maryland are hiring for It Risk Manager jobs? Cities in Maryland with the most It Risk Manager job openings:
Infographic showing various It Risk Manager job openings in Maryland as of August 2026, with employment types broken down into 85% Full Time, 13% Part Time, and 2% Contract. Highlights an 86% Physical, 2% Hybrid, and 12% Remote job distribution, with an average salary of $108,270 per year, or $52.1 per hour.

Senior Information Systems Analyst

MAG Aerospace

Lexington Park, MD • On-site

Full-time

Medical, Life, Retirement, PTO

Re-posted 16 days ago


Job description

Position Summary
MAG Aerospace is seeking to identify a Senior Information Security Analyst to support operations based out of Webster Outlying Field (WOLF), MD.
This position provide security engineering and assessment work in accordance with established procedures and protocols while ensuring the demonstrable Confidentiality, Integrity and Availability (CIA) of information assets for authorized internal and external users by reviewing, validating, classifying, and responding to security events and cyber-attacks.
*This position is contingent upon receipt of government funding and hiring authorization.
At this time, a start date has not been determined.
We are seeking to identify and engage highly qualified professionals for a talent pipeline. Applicants may be contacted as program funding and hiring approvals are finalized.
Essential Duties and Responsibilities
Essential Duties and Responsibilities include the following. Other duties may be assigned.
  • The position will assist with meeting the requirements of all four domains (Security Oversight, IT Risk Assessment, Security Engineering, and Security Operations) and focus on depth upon the domain requirements of Security Operations and IT Risk Assessment.
  • Works with assistance from senior staff to define security requirements, track security specific issues/concerns, provide security solutions, identify & communicate vulnerabilities being introduced into the environment, and identify exceptions to policy.
  • Assists in the development of enterprise-wide designs as well as research, develops and recommends architectural policies and practices for current and future initiatives from definition phase through implementation with guidance from senior staff.
  • Manages internal security initiatives, with assistance from senior staff, that require little assistance from other groups. This includes writing requirements, managing the procurement process, initial installation, and configuration, and overseeing the entire project lifecycle.
  • Researches, evaluates, and stays current on emerging tools, techniques, and technologies Isolate, define, and analyze issues or conditions regarding the IT department
  • Resolve critical problems in all the US based locations
  • Establish criteria, formulate projects, assess program effectiveness, and investigate a variety of technical conditions, problems, or issues
  • Perform research, conduct studies, and adapt computer technology to meet the MAG IT department program plans to ensure the enterprise is compliant with all applicable Federal DoD Cybersecurity requirements -
  • Provide authoritative information security advice and guidance to the Director for the Information Technology Department
  • Create policies, implement controls, and provide training as necessary to ensure adherence to all applicable Federal DoD cybersecurity standards, HIPAA, and other relevant technology requirements
  • Perform risk assessment activities to include the mitigation for vulnerabilities at regular intervals
  • Maintain a record of any security violations and applicable resolutions
  • Knowledge of a variety of information technology and cybersecurity competencies related to automated support, including an understanding of sophisticated analytical concepts, principles, techniques, and practices
  • Comprehensive knowledge and demonstrated experience in managing procedures, policies, and standards such as NIST 800-171, 800-53
  • Excellent communication skills, both oral and written, to initiate and respond to technical assistance requests and present information to other employees of the organization
  • Ability to conduct studies and recommend a course of action on proposed projects or refinements; ability to lead development of overall plans, criteria, and programming for the purposes of implementing new cybersecurity policies
  • Apply and provide significant security services in support of an agency's operations through the implementation of a risk management framework, which may include establishing technical security controls, providing continuous monitoring, conducting cyclical vulnerability testing, overseeing security assessments and authorizations, and responding to network security incidents
  • Must also be self-motivated, well organized, and detail oriented to be able to take initiative and exercise judgement to ensure the cybersecurity of the company is maintained with the exponential growth of the enterprise
  • Develop and carry out information security plans and policies - Develop strategies to respond to and recover from a security breach
  • Develop or implement open source/third-party tools to assist in detection, prevention, and analysis of security threats Enterprise Risk Management & Analysis
  • Management of Globally Deployed Information Assets. Implementation & Monitoring of NIST SP 800-171 (or 800-53) Controls

Requirements
Minimum Requirements
Experience:
  • (10) years of required experience as a ISSM or Information Security Analyst.
  • Of the minimum ten (10) years of required experience, at least five (5) years of the experience must be in all phases of IA and accreditation process for Top Secret networks.
  • Additionally, at least five (5) years of experience maintaining systems accreditation documentation.

Education / Certifications:
  • MUST HAVE an Active Certified Information Systems Security Professional (CISSP) OR CompTIA Advanced Security Practitioner (CASP)
  • Master's Degree in a Technical, IT or Computer Science Discipline

Clearance:
  • Must currently have a Top Secret Security Clearance
  • US Citizenship required

Special Note
The position is contingent upon candidate's ability to meet physical and medical requirements as needed by the position; including compliance with all applicable federal, state, and local jurisdictional requirements.
Benefits and Compensation
At MAG Aerospace, we value your contributions providing our employees with a robust Total Rewards package that supports your total well-being. Full-time and part-time employees working at least 30 hours a week on a regular basis are eligible to participate in MAG's Total Rewards programs. Our offerings include health, life, disability, financial, and retirement benefits as well as paid leave, professional development, and tuition assistance. Individuals that do not meet the threshold are only eligible for select offerings not inclusive of health benefits. We encourage you to learn more about our Total Rewards Program by visiting the Resource page on our Careers site: https://www.magaero.com/benefits/. Salary at MAG Aerospace is determined by various factors including but not limited to location, the particular combination of education, knowledge, skills, competencies, and experience as well as contract-specific affordability and organizational requirements. The projected compensation range for this position is $100,000 to $140,000 (annualized USD). The estimate displayed represents the typical salary range for this position and is just one component of MAG's total compensation package for employees.