1

Security Risk Management Jobs in Illinois (NOW HIRING)

Director, Security

Chicago, IL · On-site

$149K - $206K/yr

Develop and implement an enterprise security risk management (ESRM) framework aligned with business priorities, including ongoing assessment of threats, vulnerabilities, and geopolitical risks.

Risk Management Manager

Chicago, IL · On-site

$70K - $102K/yr

... security and actively participates in risk-related activities in this area. Provides assistance with claims investigation, management and litigation. Facilitates reporting of safety data/events.

Risk Management Manager

Chicago, IL · On-site

$70K - $102K/yr

... security and actively participates in risk-related activities in this area. Provides assistance with claims investigation, management and litigation. Facilitates reporting of safety data/events.

Sr. Staff, Cybersecurity Risk

Chicago, IL · On-site

$160K - $238K/yr

Lead complex, high-impact security governance and risk management initiatives, leveraging a deep understanding of business trends and security challenges to develop innovative risk mitigation ...

The Information Security Officer will be a member of the Business Information Security Officer ... CSBB/GBM) * 1-2 years of risk management experience or direct participation in risk management ...

Lead complex, high-impact security governance and risk management initiatives, leveraging a deep understanding of business trends and security challenges to develop innovative risk mitigation ...

New

Lead complex, high-impact security governance and risk management initiatives, leveraging a deep understanding of business trends and security challenges to develop innovative risk mitigation ...

New

Manage security risk across logical and physical security domains accountable for security risk management across logical and physical security domains * Assess security risk and communicate ...

Showing results 21-40

Security Risk Management information

See Illinois salary details

$10

$48

$67

How much do security risk management jobs pay per hour?

As of Sep 12, 2026, the average hourly pay for security risk management in Illinois is $48.85, according to ZipRecruiter salary data. Most workers in this role earn between $39.62 and $58.22 per hour, depending on experience, location, and employer.

What is security risk management?

Security Risk Management is the process of identifying, assessing, and mitigating risks to an organization's information, assets, and operations. It involves evaluating potential threats and vulnerabilities, determining their potential impact, and implementing strategies to minimize or control these risks. The goal is to protect the organization from security breaches, data loss, and other threats while ensuring compliance with legal and regulatory requirements. Security Risk Management is essential for maintaining business continuity and safeguarding reputation.

What are the key skills and qualifications needed to thrive in security risk management, and why are they important?

To excel in Security Risk Management, you need a solid understanding of risk assessment frameworks, cybersecurity principles, and compliance standards, often supported by a degree in information security or related fields. Familiarity with risk management tools, security incident response systems, and certifications such as CISSP or CISM is typically required. Strong analytical thinking, communication, and decision-making skills help professionals navigate complex threats and collaborate across departments. These competencies are crucial for effectively identifying, mitigating, and communicating risks to protect organizational assets and ensure regulatory compliance.

What are the typical challenges faced by professionals in security risk management, and how can they be addressed?

Professionals in Security Risk Management often encounter challenges such as rapidly evolving threats, balancing security with business operations, and ensuring organization-wide compliance with regulations. Staying current with the latest risk trends and fostering cross-department collaboration are key strategies for overcoming these obstacles. Additionally, clear communication of risks to non-technical stakeholders and ongoing training are essential for building a proactive security culture and effective risk mitigation.

What is the difference between Security Risk Management vs Security Analyst?

AspectSecurity Risk ManagementSecurity Analyst
CertificationsCRISC, CISSP, CISMCompTIA Security+, CISSP, CEH
Work EnvironmentStrategic, policy-focused, risk assessmentOperational, monitoring, incident response
Employer & Industry UsageOrganizations managing enterprise security risksSecurity teams, cybersecurity firms, IT departments

Security Risk Management focuses on identifying, assessing, and mitigating security risks at an organizational level, often involving policy development and strategic planning. In contrast, Security Analysts primarily monitor security systems, analyze threats, and respond to incidents. Both roles are essential but differ in scope and responsibilities within the cybersecurity field.

What do you need to be a security risk manager?

A security risk manager typically needs a bachelor's degree in security management, information technology, or a related field, along with experience in security or risk assessment. Certifications such as Certified Information Systems Security Professional (CISSP) or Certified Risk and Information Systems Control (CRISC) can enhance qualifications. Strong analytical skills, knowledge of security protocols, and familiarity with risk management tools are also important for the role.

What does security risk management do?

Security risk management involves identifying, assessing, and prioritizing potential security threats to an organization, then implementing measures to mitigate or eliminate those risks. Professionals in this field analyze vulnerabilities, develop security policies, and often use tools like risk assessment frameworks and security audits to protect assets and ensure safety.

What are popular job titles related to Security Risk Management jobs in Illinois?

For Security Risk Management jobs in Illinois, the most frequently searched job titles are:

What job categories do people searching Security Risk Management jobs in Illinois look for?

The top searched job categories for Security Risk Management jobs in Illinois are:

What cities in Illinois are hiring for Security Risk Management jobs?

Cities in Illinois with the most Security Risk Management job openings:

Infographic showing various Security Risk Management job openings in Illinois as of August 2026, with employment types broken down into 1% As Needed, 79% Full Time, 18% Part Time, and 2% Contract. Highlights an 82% Physical, 3% Hybrid, and 15% Remote job distribution, with an average salary of $101,600 per year, or $48.8 per hour.

Risk Management Support Task Lead

Scott Air Force Base, IL • On-site

NexGen Data Systems, Inc.
IT Services • 11 - 50 employees

Other

Medical, Dental, Vision, Retirement, PTO

Posted 2 days ago

New


Job description

NexGen Data Systems is seeking a highly experienced Risk Management Support Task Lead to direct and execute comprehensive cybersecurity engineering and risk management operations for the United States Transportation Command (USTRANSCOM). The scope of this project is to provide comprehensive lifecycle implementation and assessment support for all phases of the DoD Risk Management Program (DoDI 8510.01) and NIST SP 800-37 Risk Management Framework (RMF) across internal enclaves, service networks, and commercial cloud environments.

The Risk Management Support Task Leads functions as a top-level technical contributor and supervisor providing expert support, advanced research, and risk analysis into exceptionally complex problems and system architectures. The Task Lead is responsible for managing on-site deliverables, leading a team of specialized compliance and engineering professionals, and serving as the primary technical interface to the Cybersecurity Assessment Program to deliver highly innovative risk reduction solutions.

 

Roles & Responsibilities:
  • Manage complex on-site contract deliverables and coordinate directly with the Government functional lead to align team activities with combatant command priorities.
  • Lead the technical execution of the RMF lifecycle across approximately 40 enterprise systems, independently evaluating security controls, tracking categorizations, and finalizing ATO packages.
  • Reconstruct and recommend advanced cybersecurity software tools and assist in the development of tool requirements and product-specific STIGs derived from applicable DISA SRGs.
  • Provide expert Information Systems Security Engineering (ISSE) lifecycle alignment in strict accordance with NIST SP 800-160 Volume I and Volume II trust and cyber resiliency models.
  • Supervise the execution of weekly automated network vulnerability scanning (ACAS), continuous risk dashboard monitoring, and verification against DISA STIG/SRG baselines.
  • Oversee the command’s Information Assurance Vulnerability Management (IAVM) program, managing the distribution of security alerts, tracking macro compliance trends, and processing complex POA&Ms.
  • Serve as the lead technical expert for Software Assurance (SwA) code diagnostics, utilizing automated application scanning tools (such as Fortify) to evaluate source code, tune configurations to eliminate false positives, and publish annual summary analysis logs.
  • Manage Security Control Assessor Representative (SCAR) workflows, performing rapid triage of all RMF-related submissions within strict 7-business-day service level thresholds.
  • Coordinate across the Joint Deployment and Distribution Enterprise (JDDE) to facilitate technical data-sharing, evaluate system reciprocity, and manage DoD Ports, Protocols, and Services Management (PPSM) registries.
  • Provide technical engineering oversight for the deployment of the Cybersecurity Readiness Framework (CRF), executing complex ETL data pipelines and analytics workloads using Databricks, Python, SQL, and Qlik.

 

Other Duties: Please note this job description is not designed to cover or contain a comprehensive listing of activities, duties or responsibilities that are required of the employee for this job. Duties, responsibilities and activities may change at any time with or without notice.

Desired/Required Skills:
  • Active Department of Defense Top Secret/SCI (Tier 5 Investigation) required.
  • Travel on-site to Scott Airforce Base required one week per quarter. 
  • Must satisfy DoD 8570.01-M / DoDM 8140.03 Information Assurance Management (IAM) Level III baseline qualification requirements (e.g., active CISSP, CISM, or GSLC) at the commencement of work.
  • Must hold a validation/penetration testing credential (e.g., CEH, GPEN, LPT, or CEPT) and a Tenable Certified NESSUS Auditor (or ACAS equivalent) certification.
  • REQUIRED Foundational Qualification: Defense Cyber Crime Center (DC3) Cyber 101 course completion.
  • Bachelor''s degree or related technical training in Computer Science, Engineering, Information Management, or a related mission-area professional discipline required.
  • A minimum of seven (7) years of progressive IT experience combined with at least five (5) years of direct, specialized Cybersecurity experience.
  • Tool Proficiency: Proven expert experience conducting CCRI-level evaluations and hands-on proficiency with tools including VULNERATOR, eMASS, ACAS/NESSUS, and HBSS (ePO, HIPS, AV).
  • Technical Environment Savvy: Deep engineering knowledge of core computing environments across varying Operating Systems (Windows, Unix/Linux), Boundary Defenses (firewalls, routers), and Web/Database services (SQL Server, Oracle, Apache, IIS).
  • Strong conceptual thinking and communication skills, with a documented track record of authoring high-fidelity Security Risk Assessments, standard operating procedures (SOPs), and technical analysis of alternatives (AoA) whitepapers.  

 

About the Company:

NexGen Data Systems is an emerging technologies focused company providing expert systems and network engineering solutions to the Department of Defense. NexGen Data Systems promotes a culture of knowledge and career advancement through continued learning, keeping our team current on the latest advances in systems and networking, and enabling our team to provide the best available solutions to our clients.

Benefits:
  • Company covers 100% of premiums for the employee’s medical, dental, and vision insurance and subsidizes premiums for spouse and dependents.
  • Company provides short and long term disability plans.
  • 401(k) match up to 10% of the employee’s salary contributions to 401(K) plan.
  • Comprehensive training and development program.
  • 11 paid holidays and paid time off (PTO) accrual level starts at 15 days annually.

All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability or protected veteran status.

NOTE: s and those authorized to work in the US are encouraged to apply. In order to be qualified for this position, you must be able to obtain and maintain a United States Department of Defense (DoD) security clearance. We are unable to sponsor Visas at this time. NexGen Data Systems provides equal employment opportunities (EEO) to all employees and applicants for employment without regard to race, color, religion, gender, sexual orientation, national origin, age, disability, marital status, amnesty, or status as a covered veteran in accordance with applicable federal, state and local laws.