Principal Duties and Responsibilities Risk Management and Governance * Lead the development and ... Professional certifications such as CISSP, CISM, CRISC, or similar. The Company is an Equal ...
Principal Duties and Responsibilities Risk Management and Governance * Lead the development and ... Professional certifications such as CISSP, CISM, CRISC, or similar. The Company is an Equal ...
Strong understanding of the professional services model (ideally for tax services), including the ... Quality Risk Manager (QRM) network. This network is comprised of senior Tax PPMDs across the ...
Strong understanding of the professional services model (ideally for tax services), including the ... Quality Risk Manager (QRM) network. This network is comprised of senior Tax PPMDs across the ...
Principal Duties and Responsibilities Risk Management and Governance * Lead the development and ... Professional certifications such as CISSP, CISM, CRISC, or similar. The Company is an Equal ...
Principal Duties and Responsibilities Risk Management and Governance * Lead the development and ... Professional certifications such as CISSP, CISM, CRISC, or similar. The Company is an Equal ...
Advising Lead Client Service Partners, Professional Practice Directors, Regional Compliance ... Experience using third-party risk management systems or workflow tools * Ability to travel 10%, on ...
Advising Lead Client Service Partners, Professional Practice Directors, Regional Compliance ... Experience using third-party risk management systems or workflow tools * Ability to travel 10%, on ...
Advising Lead Client Service Partners, Professional Practice Directors, Regional Compliance ... Experience using third-party risk management systems or workflow tools * Ability to travel 10%, on ...
Advising Lead Client Service Partners, Professional Practice Directors, Regional Compliance ... Experience using third-party risk management systems or workflow tools * Ability to travel 10%, on ...
Advising Lead Client Service Partners, Professional Practice Directors, Regional Compliance ... Experience using third-party risk management systems or workflow tools * Ability to travel 10%, on ...
Advising Lead Client Service Partners, Professional Practice Directors, Regional Compliance ... Experience using third-party risk management systems or workflow tools * Ability to travel 10%, on ...
Risk Assessment, Risk Management, Compliance Professional, Auditing, Information Security * Risk Assessment - Candidates must be able to perform targeted risk assessments that compare the company ...
Quick apply
Risk Assessment, Risk Management, Compliance Professional, Auditing, Information Security * Risk Assessment - Candidates must be able to perform targeted risk assessments that compare the company ...
Personal Risk Specialist
Troy, MI · On-site
$93K/yr
... professionals, realtors and other professionals that serve the affluent segment of the market ... Manage employee and prospect data, including development of prospect lists from business clients ...
Personal Risk Specialist
Troy, MI · On-site
$93K/yr
... professionals, realtors and other professionals that serve the affluent segment of the market ... Manage employee and prospect data, including development of prospect lists from business clients ...
This role operates at the intersection of technology, finance, procurement, and risk, ensuring ... Strong interpersonal skills and professional demeanor * Ability to meet deadlines * Ability to ...
This role operates at the intersection of technology, finance, procurement, and risk, ensuring ... Strong interpersonal skills and professional demeanor * Ability to meet deadlines * Ability to ...
The Senior Manager, Closely Held Assets, leads complex engagements involving operating companies ... professional advisors regarding investment performance, strategy, and recommendations. * Risk ...
The Senior Manager, Closely Held Assets, leads complex engagements involving operating companies ... professional advisors regarding investment performance, strategy, and recommendations. * Risk ...
The Senior Manager, Closely Held Assets, leads complex engagements involving operating companies ... professional advisors regarding investment performance, strategy, and recommendations. * Risk ...
The Senior Manager, Closely Held Assets, leads complex engagements involving operating companies ... professional advisors regarding investment performance, strategy, and recommendations. * Risk ...
... professional service providers. * Valid driver's license required. Ideally, You'll Also Have * Experience working for a General Contractor, large construction manager, or owner. * Familiarity with ...
... professional service providers. * Valid driver's license required. Ideally, You'll Also Have * Experience working for a General Contractor, large construction manager, or owner. * Familiarity with ...
... professional service providers. Ideally, You'll Also Have * Experience working for a General Contractor, large construction manager, or owner. * Familiarity with wrap-up administration platforms and ...
... professional service providers. Ideally, You'll Also Have * Experience working for a General Contractor, large construction manager, or owner. * Familiarity with wrap-up administration platforms and ...
... professional service providers. * Valid driver's license required. Ideally, You'll Also Have * Experience working for a General Contractor, large construction manager, or owner. * Familiarity with ...
... professional service providers. * Valid driver's license required. Ideally, You'll Also Have * Experience working for a General Contractor, large construction manager, or owner. * Familiarity with ...
Segment Risk Specialist Sr
Detroit, MI · On-site +1
$57K - $113K/yr
... management. * Mentor junior team members, providing guidance on account reviews, risk analysis, and professional development. Basic Qualifications: * Bachelor's degree * Minimum of 5 years of ...
Segment Risk Specialist Sr
Detroit, MI · On-site +1
$57K - $113K/yr
... management. * Mentor junior team members, providing guidance on account reviews, risk analysis, and professional development. Basic Qualifications: * Bachelor's degree * Minimum of 5 years of ...
IACUC certification (CPIA) or equivalent professional credential strongly preferred. Experience ... Proven background in risk management, third-party due diligence, and audit program development in a ...
IACUC certification (CPIA) or equivalent professional credential strongly preferred. Experience ... Proven background in risk management, third-party due diligence, and audit program development in a ...
IACUC certification (CPIA) or equivalent professional credential strongly preferred. Experience ... Proven background in risk management, third-party due diligence, and audit program development in a ...
IACUC certification (CPIA) or equivalent professional credential strongly preferred. Experience ... Proven background in risk management, third-party due diligence, and audit program development in a ...
IACUC certification (CPIA) or equivalent professional credential strongly preferred. Experience ... Proven background in risk management, third-party due diligence, and audit program development in a ...
IACUC certification (CPIA) or equivalent professional credential strongly preferred. Experience ... Proven background in risk management, third-party due diligence, and audit program development in a ...
Clinical Risk Pt Safety Analyst
Flint, MI · On-site
Certified Professional in Patient Safety (CPPS), Certified Professional in Healthcare Risk Management (CPHRM), Certified Professional in Healthcare Quality (CPHQ) or other patient safety training ...
Clinical Risk Pt Safety Analyst
Flint, MI · On-site
Certified Professional in Patient Safety (CPPS), Certified Professional in Healthcare Risk Management (CPHRM), Certified Professional in Healthcare Quality (CPHQ) or other patient safety training ...
Clinical Risk Pt Safety Analyst
Flint, MI · On-site
Certified Professional in Patient Safety (CPPS), Certified Professional in Healthcare Risk Management (CPHRM), Certified Professional in Healthcare Quality (CPHQ) or other patient safety training ...
Clinical Risk Pt Safety Analyst
Flint, MI · On-site
Certified Professional in Patient Safety (CPPS), Certified Professional in Healthcare Risk Management (CPHRM), Certified Professional in Healthcare Quality (CPHQ) or other patient safety training ...
Professional Risk Manager information
See Michigan salary details
$44.9K - $54.3K
4% of jobs
$54.3K - $63.7K
6% of jobs
$63.7K - $73.1K
11% of jobs
$76.6K is the 25th percentile. Wages below this are outliers.
$73.1K - $82.4K
11% of jobs
The median wage is $89.9K / yr.
$82.4K - $91.8K
23% of jobs
$91.8K - $101.2K
13% of jobs
$107.4K is the 75th percentile. Wages above this are outliers.
$101.2K - $110.6K
12% of jobs
$110.6K - $120K
8% of jobs
$120K - $129.4K
6% of jobs
$129.4K - $138.8K
4% of jobs
$138.8K - $148.2K
2% of jobs
$44.9K
$97.2K
$148.2K
How much do professional risk manager jobs pay per year?
What is the difference between Professional Risk Manager vs Risk Analyst?
| Aspect | Professional Risk Manager | Risk Analyst |
|---|---|---|
| Certifications | FRM, PRM | CFA, FRM (optional) |
| Work Environment | Strategic, managerial, decision-making roles in finance, insurance, or corporate sectors | Data analysis, risk assessment, reporting in finance or banking |
| Employer & Industry Usage | Financial institutions, corporations, consulting firms | Banks, investment firms, insurance companies |
The Professional Risk Manager typically holds strategic responsibilities, focusing on risk policies and mitigation strategies, often requiring certifications like FRM or PRM. Risk Analysts primarily perform data-driven risk assessments and reporting. While both roles work within the risk management field, the Professional Risk Manager has a broader scope involving decision-making and policy development, whereas Risk Analysts focus on analyzing data to inform those decisions.
What jobs pay 10,000 a month without a degree?
What does a professional risk manager do?
What are the key skills and qualifications needed to thrive as a Professional Risk Manager, and why are they important?
What jobs pay $500,000 a year in the US?
How much does a risk manager get paid?
How does a Professional Risk Manager typically collaborate with other departments within an organization?

Key responsibilities
Lead the development and maintenance of the enterprise cybersecurity risk register and conduct risk assessments for systems, applications, projects, and business initiatives.
Develop and mature a third-party cybersecurity risk management program, including conducting security risk assessments of vendors and external partners.
Support and maintain the organization's CMMC compliance program, including control mapping, evidence collection, and audit readiness.
UFP Industries rating
7.3
Based on 86 frontline employees who took The Breakroom Quiz
334th of 521 rated manufacturers
Job description
Job Summary
The Sr. Cybersecurity Risk Analyst is responsible for leading and maturing the organization's cybersecurity risk management program. This role is accountable for identifying, assessing, and communicating cybersecurity risks across the enterprise, while driving alignment with regulatory requirements, including CMMC. The position will play a key role in building and maintaining the enterprise risk register, developing a third-party risk management program, and partnering with IT teams to establish and maintain secure standards and practices.
The ideal candidate combines strong analytical skills with practical experience in governance, risk, and compliance, and can translate technical risk into actionable business decisions.
Location: Onsite out of our Grand Rapids, MI office.
Work Authorization: Applicants must be currently authorized to work.
Principal Duties and Responsibilities
Risk Management and Governance
Lead the development and ongoing maintenance of the enterprise cybersecurity risk register, including risk identification, classification, ownership, and tracking.
Conduct and lead risk assessments for systems, applications, projects, and business initiatives.
Develop and implement risk management processes, methodologies, and reporting metrics.
Facilitate risk review sessions with business and IT stakeholders to ensure accountability and transparency.
Develop and track risk mitigation and remediation plans to closure.
Regulatory Compliance (CMMC and Related Frameworks)
Support and maintain the organization's CMMC compliance program, including control mapping, evidence collection, and audit readiness.
Partner with internal stakeholders (IT, Legal, HR, Plant Operations) to ensure alignment with CMMC and other regulatory requirements.
Assist in preparing documentation and responses for assessments, audits, and regulatory inquiries.
Monitor evolving compliance requirements and translate them into actionable internal controls.
Third-Party Risk Management
Develop and mature a third-party cybersecurity risk management program.
Conduct security risk assessments of vendors, SaaS providers, Software, and external partners.
Evaluate vendor security posture, shared responsibility models, and contractual security requirements.
Partner with procurement and legal teams to integrate security requirements into vendor onboarding and contracting processes.
Security Standards and IT Partnership
Collaborate with IT and engineering teams to develop, implement, and maintain cybersecurity standards and secure configuration baselines.
Ensure security requirements are embedded into system design, architecture, and operational processes.
Provide risk-based guidance on system hardening, segmentation, and control implementation.
Support the development of policies, standards, and procedures that are practical, enforceable, and auditable.
Reporting and Communication
Communicate risk findings, trends, and recommendations to technical and non-technical stakeholders, including leadership.
Develop reporting for executive audiences, including risk summaries, metrics, and program maturity updates.
Support audit committee and leadership reporting as needed.
Continuous Improvement
Stay current on cybersecurity threats, regulatory changes, and industry best practices.
Identify opportunities to improve risk visibility, coverage, and program efficiency.
Mentor junior analysts and contribute to the maturity of the GRC function.
Qualifications
Required
Bachelor's degree in Information Security, Computer Science, or related field (or equivalent experience).
5+ years of experience in cybersecurity risk, governance, or compliance roles.
Experience building or maintaining a cybersecurity risk register and risk management processes.
Strong understanding of security frameworks (e.g., NIST, CMMC, ISO 27001).
Experience conducting third-party/vendor risk assessments.
Strong analytical, problem-solving, and risk evaluation skills.
Ability to translate technical risks into business impact.
Strong written and verbal communication skills.
Preferred
Experience supporting CMMC assessments or similar regulatory compliance programs.
Familiarity with manufacturing or operational technology (OT) environments.
Experience developing security standards or working closely with infrastructure and engineering teams.
Professional certifications such as CISSP, CISM, CRISC, or similar.
The Company is an Equal Opportunity Employer.
What UFP Industries employees say
Pay
Benefits
Hours and flexibility
Workplace
Get the full story on Breakroom
About UFP Industries
Sourced by ZipRecruiter
Universal Forest Products, Inc., is a U.S.-based global corporation that finds reward in its roots and its hard-earned success. Founded in 1955 as a supplier of lumber to the manufactured housing industry, Universal today is a multibillion-dollar holding company with subsidiaries around the globe that serve three robust markets: retail, industrial and construction. Since 1993, Universal has been publicly traded (Nasdaq: UFPI). We re headquartered in Grand Rapids, Michigan.
Industry
Wood product manufacturing
Company size
10,000+ Employees
Headquarters location
Grand Rapids, MI, US
Year founded
1955