1

Security Risk Jobs in Maryland (NOW HIRING)

Program Security Manager

Annapolis, MD · On-site

$127K - $155K/yr

Serve as the primary security, risk, and mission assurance advisor for sensitive programs and operational activities * Assess threats, vulnerabilities, and operational risks related to personnel ...

Showing results 21-40

Security Risk information

What is the difference between Security Risk vs Security Analyst?

AspectSecurity RiskSecurity Analyst
Required CredentialsKnowledge of security principles, risk assessment skillsCertifications like CompTIA Security+, CISSP, or CISA
Work EnvironmentIdentifying potential threats, assessing vulnerabilitiesMonitoring security systems, analyzing security data
Employer & Industry UsageUsed across industries to identify threatsCommonly employed in cybersecurity teams
Search & Comparison IntentUnderstanding risk factors and mitigationAnalyzing security incidents and improving defenses

Security Risk involves identifying and assessing potential threats to an organization, focusing on risk management strategies. Security Analysts, on the other hand, monitor and analyze security systems to detect and respond to threats. While both roles require security knowledge and certifications, Security Risk professionals focus on risk assessment, whereas Security Analysts are more involved in operational security monitoring.

What are security risk professionals?

Security risk professionals are experts who identify, assess, and mitigate potential threats to an organization's physical and digital assets. Their responsibilities include conducting risk assessments, developing security policies, and ensuring compliance with regulations. They work to minimize vulnerabilities that could lead to data breaches, theft, or other security incidents. These professionals may also train staff on security best practices and respond to security incidents as they arise.

Can you make $500,000 a year in cyber security?

Security risk professionals, such as senior cybersecurity analysts or managers, can potentially earn $500,000 annually with extensive experience, advanced certifications, and leadership roles in large organizations or consulting firms. High salaries are often associated with specialized skills, such as penetration testing or security architecture, and may require working in high-demand environments or taking on executive responsibilities.

Is 40 too old for cyber security?

Security risk professionals can enter the field at any age, as experience, problem-solving skills, and certifications like CISSP or CompTIA Security+ are often valued over age. Many individuals successfully transition into cybersecurity later in their careers, and continuous learning is essential regardless of age.

What is the highest paying security job?

The highest paying security jobs are often executive-level roles such as Chief Security Officer (CSO) or Security Director, with salaries exceeding $150,000 annually. These positions typically require extensive experience, leadership skills, and knowledge of risk management, cybersecurity, and compliance.

What are some common challenges faced by Security Risk professionals, and how can they overcome them?

Security Risk professionals often face challenges such as staying updated with rapidly evolving threats, balancing security needs with business objectives, and gaining buy-in from stakeholders for risk mitigation strategies. To overcome these, it’s essential to engage in continuous learning, build strong cross-functional relationships, and communicate the value of security initiatives in business terms. Developing robust reporting and assessment processes can also help identify risks early and ensure effective collaboration across departments.

What are the key skills and qualifications needed to thrive as a Security Risk Analyst, and why are they important?

To thrive as a Security Risk Analyst, you need a strong understanding of information security principles, risk assessment methodologies, and relevant regulations, typically supported by a degree in cybersecurity or a related field. Familiarity with risk management frameworks (such as NIST or ISO 27001), vulnerability assessment tools, and certifications like CISSP or CISM are highly valued. Analytical thinking, attention to detail, and effective communication skills help convey risk findings and collaborate with diverse stakeholders. These competencies are crucial for identifying threats, minimizing vulnerabilities, and ensuring organizational resilience against security risks.

Is security risk management a good career?

Security risk management is a growing field that involves identifying, assessing, and mitigating security threats to organizations. It requires strong analytical skills, knowledge of security protocols, and often certifications like CISSP or CISM. The profession offers opportunities in various industries, with a focus on protecting assets and information, and typically involves a mix of office work and on-site assessments.
What are popular job titles related to Security Risk jobs in Maryland? For Security Risk jobs in Maryland, the most frequently searched job titles are:
Infographic showing various Security Risk job openings in Maryland as of July 2026, with employment types broken down into 1% As Needed, 84% Full Time, 13% Part Time, and 2% Contract. Highlights an 87% Physical, 5% Hybrid, and 8% Remote job distribution.
Lead Security, Risk, and Compliance Specialist

Lead Security, Risk, and Compliance Specialist

United Therapeutics

Silver Spring, MD

$162K/yr

Full-time

Medical, Dental, Vision, Retirement, PTO

Posted 24 days ago


Job description

California, US residentsclick here.

The job details are as follows:

Who We Are

We are the first publicly-traded biotech or pharmaceutical company to take the form of a public benefit corporation. Our public benefit purpose is to provide a brighter future for patients through the development of novel pharmaceutical therapies; and technologies that expand the availability of transplantable organs.

United Therapeutics (Nasdaq: UTHR) seeks to travel down the corridors of indifference to develop treatments for rare, deadly diseases. We were founded in 1996 by a family seeking a cure for their daughter's pulmonary arterial hypertension (PAH). Today, we have six FDA-approved therapies that treat PAH, pulmonary hypertension associated with interstitial lung disease (PH-ILD) and neuroblastoma, a rare pediatric cancer. Our near-term pipeline seeks to develop additional therapies for PAH and pulmonary fibrosis (PF).

The cure for end-stage life-threatening diseases like PAH, PH-ILD, PF, and many others is an organ transplant, but only a small percentage of donated organs are available to address the vast need. For this reason, we are working to create manufactured organs to address the shortage of kidneys, hearts, lungs, and livers available for transplant. We believe an unlimited supply of tolerable, transplantable organs will eliminate the transplant waiting list and cure end-stage organ diseases for which transplant is not currently an option.
Who you are

This role partners with senior management to safeguard intellectual property, protect critical manufacturing systems, ensure compliance with FDA regulations, and strengthen the cyber defense posture. The Lead Security, Risk and Compliance Specialist leads cross functional security initiatives and assists with representing the cybersecurity function with internal and external stakeholders.

  • Support senior management in developing and executing the global cybersecurity strategy aligned to business, compliance, and manufacturing priorities
  • Serve as the operational lead for enterprise security governance, risk management, and compliance programs across multiple regions and regulatory environments
  • Drive adoption of security frameworks such as NIST CSF, NIST AI RMF, 21 CFR Part 11 and other industry specific requirements in alignment with organizational culture and risk appetite
  • Partner with senior management to oversee outsourced MDR Security Operations Center (SOC), threat intelligence, incident response, investigations, security architecture and maintain cybersecurity regulatory/legal requirements
  • Oversee development of advanced defense capabilities including zero trust architecture, identity security, and endpoint/OT protection
  • Ensure successful delivery of security programs such as Identity and Access Management, Vulnerability Management and Cloud Security
  • Partner with senior management to manage delivery of the IT Risk Management program. Direct IT risk assessments, manage IT risk register, supplier security evaluations, penetration testing and assist with audits across operations
  • Partner with Legal, Privacy, Compliance, Information Technology, other key stake holders to ensure adherence to IT security and regulatory requirements
  • Ensure AI risks are incorporated into the IT risk management program and are managed in accordance with the organization's risk appetite and culture
  • Collaborate with OT and other key business leaders to embed security into product design, avionics systems, and industrial control systems
  • Operationalize security programs for manufacturing, research and development, IoT and other life sciences technologies
  • Ensure secure integration of IT/OT systems, ensure required availability and protection of proprietary intellectual property
  • Mentor and develop technical teams
  • All other duties as required

Minimum Requirements

  • Bachelor's Degree in cybersecurity, computer science, or related field
  • 8+ years of progressive experience in cybersecurity, including leadership roles in biotechnology/pharmaceutical organizations
  • CISSP Certified Information Systems Security Professional
  • Progressive experience in cybersecurity, including leadership roles in biotechnology/pharmaceutical organizations
  • Experience securing OT/ICS environments and manufacturing systems
  • Proven ability to lead teams, manage crises, and influence senior leaders and executives
  • Ability to operate effectively in a high throughput, demanding, environment
  • Familiarity with GxP (GMP, GCP, GLP) regulated systems and environments
  • Ability to translate cybersecurity risk into business and scientific impact
  • Experience supporting lab environments, OT/ICS, or manufacturing systems
  • Strong background in program management, governance, and risk management
  • Ability to manage cross-functional initiatives across IT, R&D, and Quality
  • Build strong partnerships with all other business units
  • Strong cross-functional coordination, the ability to communicate and escalate risk effectively, and the capacity to influence outcomes without direct authority.

Preferred Qualifications

  • CISM - Certified Information Security Manager
  • Strong knowledge of NIST, COSO, and other relevant frameworks

At United Therapeutics, our mission and vision are one. We use our enthusiasm, creativity, and persistence to innovate for the unmet medical needs of our patients and to benefit our other stakeholders. We are bold and unconventional. We have fun, we do good.

Eligible employees may participate in the Company's comprehensive benefits suite of programs, including medical / dental / vision / prescription coverage, employee wellness resources, savings plans (401k and ESPP), paid time off & paid parental leave benefits, disability benefits, and more. For additional information on Company benefits, please visit https://www.unither.com/careers/benefits-and-amenities

United Therapeutics Corporation is an Equal Opportunity Employer, including veterans and individuals with disabilities.