1

Quantitative Cyber Risk Jobs in Raleigh, NC (NOW HIRING)

ITSO Sr. Program Manager

Durham, NC · On-site

$112K - $112K/yr

Responsibilities : • Assess the cyber risk landscape using metrics dashboards and advise on ... with quantitative and qualitative analysis supporting data‑driven decisions. Company : The ...

ITSO Sr. Program Manager

Durham, NC

$112K - $112K/yr

This role focuses on quantifying, contextualizing, and managing cyber risk across Duke University ... Proficiency with quantitative and qualitative analysis supporting datadriven decisions. Other ...

ITSO Sr. Program Manager

Durham, NC · On-site

$112K - $112K/yr

This role focuses on quantifying, contextualizing, and managing cyber risk across Duke University ... quantitative and qualitative analysis supporting data-driven decisions. Other Requirements • ...

Quantitative Cyber Risk information

See Raleigh, NC salary details

$95.3K

$165K

$252.3K

How much do quantitative cyber risk jobs pay per year?

As of Jul 21, 2026, the average yearly pay for quantitative cyber risk in Raleigh, NC is $164,990.00, according to ZipRecruiter salary data. Most workers in this role earn between $130,700.00 and $193,400.00 per year, depending on experience, location, and employer.

What are some common challenges faced by professionals in Quantitative Cyber Risk roles and how can they be addressed?

Professionals in Quantitative Cyber Risk roles often encounter challenges such as translating complex cyber threats into measurable financial terms and obtaining reliable data for risk modeling. Collaborating closely with IT security teams and business stakeholders is essential to bridge gaps in understanding and ensure risk assessments are both technically accurate and aligned with organizational goals. Staying current with evolving threat landscapes and regulatory requirements also demands continuous learning and adaptation. Leveraging industry-standard frameworks and advanced analytics tools can help address these challenges effectively.

What is quantitative cyber risk?

Quantitative cyber risk involves using mathematical models and statistical techniques to measure and predict the financial impact of cyber threats on an organization. Unlike qualitative approaches that rely on subjective judgments, quantitative methods assign numerical values to risks, helping companies understand potential losses in dollar terms. This allows organizations to make more informed decisions about cybersecurity investments, insurance, and risk mitigation strategies.

Can you make $500,000 a year in cyber security?

Quantitative cyber risk roles can potentially reach high salaries, especially for senior professionals with advanced skills in data analysis, risk assessment, and cybersecurity tools. Achieving a $500,000 annual income typically requires extensive experience, specialized certifications, leadership responsibilities, or working in high-paying industries or consulting roles.

Is cybersecurity a dying field?

Quantitative cyber risk roles are in high demand due to increasing cyber threats and the need for data-driven security strategies. The field continues to grow as organizations prioritize cybersecurity, requiring skills in risk assessment, analytics, and security tools, with certifications like CISSP and CISM enhancing job prospects.

Is SOC an entry level job?

A Security Operations Center (SOC) analyst role is often considered entry level, especially for those with foundational cybersecurity knowledge and certifications like CompTIA Security+ or Cisco CCNA. However, some SOC positions require prior experience or specialized skills, and advancement typically involves gaining experience and additional certifications such as CISSP or GIAC. Entry-level SOC roles focus on monitoring security alerts, using tools like SIEM systems, and supporting incident response efforts.

Can I make $200,000 a year in cyber security?

Quantitative cyber risk roles can offer salaries approaching or exceeding $200,000 annually, especially for senior positions or those with specialized skills in data analysis, risk modeling, and cybersecurity tools. Achieving this level often requires extensive experience, advanced certifications, and a strong understanding of financial and technical aspects of cyber risk management.

What is the difference between Quantitative Cyber Risk vs Cyber Risk Analyst?

AspectQuantitative Cyber RiskCyber Risk Analyst
Required CredentialsCertifications like CRCM, CISSP, or CISA; strong quantitative backgroundCertifications such as CISA, CRISC; focus on risk assessment skills
Work EnvironmentFinancial institutions, cybersecurity firms, large corporationsFinancial services, consulting firms, government agencies
Industry UsageFocuses on modeling and quantifying cyber risks using data analysisEvaluates and reports on cyber risks, develops mitigation strategies

While both roles involve cybersecurity, Quantitative Cyber Risk specialists focus on modeling and quantifying risks using data and mathematical methods. Cyber Risk Analysts assess, analyze, and communicate cyber threats and vulnerabilities. The former is more data-driven and modeling-oriented, whereas the latter emphasizes risk evaluation and strategic recommendations.

What are the key skills and qualifications needed to thrive as a Quantitative Cyber Risk professional, and why are they important?

To thrive as a Quantitative Cyber Risk professional, you need strong analytical skills, expertise in statistics or mathematics, and a background in cybersecurity or risk management, often supported by relevant degrees or certifications. Familiarity with risk modeling tools, programming languages like Python or R, and frameworks such as FAIR (Factor Analysis of Information Risk) is highly valued. Exceptional problem-solving, communication, and stakeholder management skills help translate complex risk data into actionable business insights. These competencies are critical for accurately assessing cyber risks, informing decision-making, and enhancing an organization's overall security posture.
What job categories do people searching Quantitative Cyber Risk jobs in Raleigh, NC look for? The top searched job categories for Quantitative Cyber Risk jobs in Raleigh, NC are:
What cities near Raleigh, NC are hiring for Quantitative Cyber Risk jobs? Cities near Raleigh, NC with the most Quantitative Cyber Risk job openings:
Infographic showing various Quantitative Cyber Risk job openings in Raleigh, NC as of June 2026, with employment types broken down into 89% Full Time, and 11% Contract. Highlights an 100% In-person job distribution, with an average salary of $164,990 per year, or $79.3 per hour.
ITSO Sr. Program Manager

ITSO Sr. Program Manager

Duke University

Durham, NC • On-site

$112K - $112K/yr

Full-time

Posted 12 days ago


Duke University rating

6.7

Company rating: 6.7 out of 10

Based on 55 frontline employees who took The Breakroom Quiz

436th of 555 rated colleges and universities


Job description

Job Summary:
Duke University’s IT Security Office (ITSO) is seeking a skilled Senior Program Manager to help shape, communicate, and advance Duke’s cybersecurity strategy. This role focuses on quantifying, contextualizing, and managing cyber risk across Duke University, partnering closely with leadership to craft and communicate standards and practices.
Responsibilities:
• Assess the cyber risk landscape using metrics dashboards and advise on enhancements to improve clarity and risk quantification.
• Advise on development of inventory, tracking, and measurement tools, including dashboards covering accounts, devices, servers, network activity, websites, and adoption of key controls such as MFA, endpoint management, patching, and automated IP blocking.
• Identify strategic priorities for ITSO initiatives based on metrics, analysis, potential impact, and risk.
• Provide briefings to the security community, highlighting trends and implications for operational and strategic decisions.
• Lead project work to align the program with actionable industry best practices.
• Manage embedded security roles to ensure alignment with program priorities.
• Develop materials articulating policies, positions, and security guidance.
• Create innovative approaches to enhance the efficiency and value of ITSO’s risk management programs—including vendor reviews.
• Coordinate response efforts on cross‑functional issues involving groups such as Privacy and Audit, the Duke Health Information Security Office, and other departmental IT groups.
• Manage a team of 3–7 direct reports, 5 indirect reports, and graduate student interns.
• Perform all aspects of staff management including hiring, performance management, professional development, recognition, and staffing alignment for services provided by the team.
Qualifications:
Required:
• Bachelor’s degree in a related field plus 3 or more years of experience in security, audit, analytics, or related areas.
• 5+ years of combined education/experience in a related field.
• Strong verbal, written, and analytical communication skills.
• Ability to collaborate across diverse teams and influence through clarity and insight.
• Ability to work independently and in team settings on complex, fast‑moving projects.
Preferred:
• Certifications such as SANS/GIAC, CISSP, CISA, CISM.
• Experience with cybersecurity, risk analytics, or security program development.
• Proficiency with quantitative and qualitative analysis supporting data‑driven decisions.
Company:
The official LinkedIn Page of Duke University Founded in 1989, the company is headquartered in Durham, USA, with a team of 10001+ employees. The company is currently Late Stage.

What Duke University employees say

Pay

Benefits

Hours and flexibility

Workplace

Get the full story on Breakroom


Duke University logo

About Duke University

Sourced by ZipRecruiter

Duke is regarded as one of America's leading research universities. Located in Durham, North Carolina, Duke is positioned in the heart of the Research Triangle, which is ranked annually as one of the best places in the country to work and live. Duke has more than 15,000 students who study and conduct research in its 10 undergraduate, graduate, and professional schools. With about 40,000 employees, Duke is the third largest private employer in North Carolina, and it now has international programs in more than 150 countries.

Industry

Colleges, universities, and professional schools and hospitals

Company size

10,000+ Employees

Headquarters location

Durham, NC, US