Cybersecurity Career Center

Explore Cybersecurity Careers by the Work, Not Just the Title

51 cybersecurity roles across 10 categories: responsibilities, salaries, certifications, and career paths.

Job titles alone do not describe cybersecurity work. The Career Center is built on the CyberSN Taxonomy, which defines each role through its tasks and responsibilities, so you can find where your experience fits, what adjacent roles look like, and where a path can lead.

51

Functional Roles

Each defined by tasks and responsibilities

10

Capability Categories

From Defense and Offense to GRC and Research

NICE

Framework Aligned

Extends the NIST NICE Framework

Browse by Category

Ten Categories, One Shared Language

Every role belongs to one of ten capability categories in the CyberSN Taxonomy. Start with the kind of work that interests you.

Defense

15 roles

Protecting systems, data, and identities through the day-to-day work of securing enterprise environments.

GRC

5 roles

Governing cyber risk, regulatory compliance, and privacy obligations across the organization.

Manage

6 roles

Leading security teams and owning strategy, budgets, and outcomes at every level of the organization.

Offense

3 roles

Testing defenses by finding and exploiting weaknesses before real adversaries can.

Response

4 roles

Investigating and containing security incidents and understanding how attacks unfolded.

Plan

5 roles

Designing security programs, architectures, and the projects that deliver them.

Product Security

4 roles

Building security into software and products from design through release.

Research

3 roles

Advancing security knowledge through cryptography, data science, and vulnerability research.

Educate

3 roles

Teaching, training, and documenting cybersecurity knowledge for teams and the wider field.

Sales

3 roles

Connecting organizations with security products, services, and coverage that fit their needs.

Role Directory

Find Your Role

Search by title or alternate title, or filter by category and career stage. Every role page covers responsibilities, salary, common certifications, and adjacent career paths.

Defense

15 roles

Protecting systems, data, and identities through the day-to-day work of securing enterprise environments.

DefenseMid career

AI Security Engineer

An AI Security Engineer protects AI and machine learning systems, securing models, training data, and the AI supply chain while evaluating those systems for weaknesses such as prompt injection and data poisoning.

View role
DefenseMid career

Cloud Security Engineer

A Cloud Security Engineer builds, maintains, and improves the protection, detection, and alerting that keep cloud infrastructure, platforms, applications, and networks secure.

View role
DefenseMid career

Cyber Insider Threat Analyst

A Cyber Insider Threat Analyst collects and assesses potential security threats originating from within an organization, whether from employees, business partners, or third-party vendors, and turns that analysis into findings and recommendations leaders can act on.

View role
DefenseEarly career

Cyber IT Support Specialist

A Cyber IT Support Specialist handles the security side of IT support, resolving access, account, and endpoint issues, helping employees use security tools correctly, and escalating genuine security events to the security operations team.

View role
DefenseMid career

Cyber Threat Intelligence Analyst

A Cyber Threat Intelligence Analyst researches, collects, and analyzes information about cyber threats, then turns it into intelligence the organization uses to anticipate attacks and counter adversaries.

View role
DefenseEarly career

Cybersecurity Administrator

A Cybersecurity Administrator manages the day-to-day security of an organization's systems, networks, applications, and devices, working as part of a team to keep business and customer data protected against cyber threats.

View role
DefenseEarly career

Cybersecurity Specialist

A Cybersecurity Specialist maintains the security of an organization's networks and data, strengthening defensive infrastructure and staying current on emerging threats.

View role
DefenseMid career

Data Loss Prevention Engineer

A Data Loss Prevention Engineer administers the systems that keep sensitive data from leaving an organization, operating DLP platforms across endpoints, networks, and cloud services and responding to the alerts they generate.

View role
DefenseMid career

Data Security Engineer

A Data Security Engineer designs, implements, and monitors the controls that protect an organization's data, applying techniques like encryption, hashing, and tokenization while serving as the resident expert on data protection compliance.

View role
DefenseMid career

Identity & Access Management Engineer

Identity & Access Management Engineers control who can access an organization's systems and data, designing and operating the identity, authentication, and authorization services that keep access consistent, auditable, and compliant.

View role
DefenseSenior

PKI Professional

PKI Professionals architect, design, and develop the certificate and key management systems an organization relies on to prove identity, encrypt communications, and prevent fraud.

View role
DefenseEarly career

Security Analyst

A Security Analyst monitors networks, systems, and data storage for cybersecurity threats, investigates and responds to alerts, and strengthens an organization's protection and detection capabilities.

View role
DefenseMid career

Security Engineer

A Security Engineer builds, maintains, and improves the protection, detection, and alerting that keep an organization's infrastructure, services, applications, and networks secure.

View role
DefenseEarly career

SOC Analyst

A SOC Analyst staffs an organization's security operations center, triaging alerts from the monitoring queue, escalating confirmed incidents through the tier structure, and keeping detection coverage running across shifts.

View role
DefenseMid career

Vulnerability / Threat Management Analyst

A Vulnerability / Threat Management Analyst identifies weaknesses and cyber threats across an organization's networks and software, then drives the corrective measures that strengthen security within those systems.

View role

GRC

5 roles

Governing cyber risk, regulatory compliance, and privacy obligations across the organization.

Manage

6 roles

Leading security teams and owning strategy, budgets, and outcomes at every level of the organization.

ManageLeadership

C-Suite

The C-suite is an organization's executive leadership team; the "C" stands for chief, as in CEO, CIO, and CTO. Each executive serves as the expert in their domain, driving organizational strategy and departmental direction.

View role
ManageLeadership

Chief Information Security Officer (CISO)

A Chief Information Security Officer (CISO) is the executive who owns an organization's information security program: setting security policy, managing security teams, and directing resources against the risks that matter most.

View role
ManageLeadership

Chief Security Officer (CSO)

A Chief Security Officer (CSO) leads an organization's operational security and risk management across both cyber and physical domains, protecting company assets, systems, intellectual property, and the safety of employees and customers.

View role
ManageLeadership

Cybersecurity Director

A Cybersecurity Director is a senior leader accountable for an organization's overall cybersecurity: supervising security design and implementation, incident response, budgets, and regulatory compliance while managing security personnel and shaping strategy.

View role
ManageSenior

Cybersecurity Lead

A Cybersecurity Lead heads a security team or department, overseeing service delivery, managing relationships, and keeping the team's work aligned with organizational goals.

View role
ManageLeadership

Cybersecurity Manager

A Cybersecurity Manager runs the security operations of a department, supervising analysts and administrators, owning budgets and policies, and overseeing threat detection and cyber defense so that business data, financial assets, and customer information stay protected.

View role

Offense

3 roles

Testing defenses by finding and exploiting weaknesses before real adversaries can.

Response

4 roles

Investigating and containing security incidents and understanding how attacks unfolded.

Plan

5 roles

Designing security programs, architectures, and the projects that deliver them.

Product Security

4 roles

Building security into software and products from design through release.

Research

3 roles

Advancing security knowledge through cryptography, data science, and vulnerability research.

Educate

3 roles

Teaching, training, and documenting cybersecurity knowledge for teams and the wider field.

Sales

3 roles

Connecting organizations with security products, services, and coverage that fit their needs.

Browse by Career Stage

Meet Your Career Where It Is

Whether you are entering the field, changing roles, or moving into leadership, career pathways follow responsibilities: the experience you already have translates into adjacent work.

Early career

Roles that build a hands-on security foundation, often reachable from general IT experience.

Mid career

Roles for professionals with established security experience who are deepening a specialty.

Senior

Deep specializations where design judgment and accumulated experience carry the work.

Leadership

Roles accountable for teams, programs, budgets, and security outcomes.

Why Tasks and Responsibilities

The Same Language Employers Use

The taxonomy behind these role pages is the same one organizations use to understand their own security workforce: which tasks and responsibilities are covered, which capabilities their teams hold, and how people, capabilities, strategy, and outcomes connect.

For professionals, that shared language means your profile and experience describe the work you actually do. For organizations, it means visibility into how responsibilities are distributed across the workforce ecosystem. Learn how the same foundation powers Workforce Intelligence.

1
People
Who does the work
2
Capabilities
What the work requires
3
Strategy
What the organization needs
4
Outcomes
What gets delivered
Your Next Step

Put your experience in front of the right roles

Build a profile on the same taxonomy employers use to describe their openings, and search positions matched to the work you actually do.

Building a security team? Explore CyberSN Talent Solutions

© 2026 CyberSN · All rights reservedworkforce intelligence · est. 2014