1

Customer Security Assurance Analyst Jobs (NOW HIRING)

This role focuses on independent technical assurance, attacker-informed analysis, security ... Customer, Regulatory & Executive Security Assurance * Support customer-facing technical security ...

This role focuses on independent technical assurance, attacker-informed analysis, security ... Customer, Regulatory & Executive Security Assurance * Support customer-facing technical security ...

Solicit or sell securities * Represent Initio Sphere in a regulated or fiduciary capacity All work is strictly limited to analytical, assurance, diligence, and support functions , in compliance with ...

... security missions worldwide. Overview: SOSi is seeking a highly qualified Quality Assurance Analyst to join our team on site in Fort Belvoir, VA , in support of our government customers. The Quality ...

... security missions worldwide. Overview: SOSi is seeking a highly qualified Quality Assurance Analyst to join our team on site in Fort Belvoir, VA , in support of our government customers. The Quality ...

... security missions worldwide. Overview: SOSi is seeking a highly qualified Quality Assurance Analyst to join our team on site in Fort Belvoir, VA , in support of our government customers. The Quality ...

Showing results 21-40

Customer Security Assurance Analyst information

See salary details

$29.5K

$84.3K

$136.5K

How much do customer security assurance analyst jobs pay per year?

As of Sep 15, 2026, the average yearly pay for customer security assurance analyst in the United States is $84,280.00, according to ZipRecruiter salary data. Most workers in this role earn between $34,000.00 and $105,000.00 per year, depending on experience, location, and employer.

What does a customer security assurance analyst do?

A Customer Security Assurance Analyst is responsible for ensuring that an organization's security practices meet the expectations and requirements of its customers. They typically respond to customer security questionnaires, conduct risk assessments, and facilitate audits or compliance reviews. Their role involves communicating with clients about security policies, addressing concerns, and ensuring transparency regarding the company's data protection measures. This helps build trust with customers and demonstrates the organization’s commitment to cybersecurity. They may also work with internal teams to remediate any identified gaps or risks.

How does a customer security assurance analyst typically collaborate with clients and internal teams to address security concerns?

Customer Security Assurance Analysts regularly serve as the key point of contact between clients and internal security or technical teams. They work closely with customers to understand their security requirements, respond to security questionnaires, and provide detailed information about the organization's security controls and practices. Internally, they coordinate with IT, compliance, and legal teams to gather accurate data and ensure that client concerns are addressed promptly. This collaborative approach helps build client trust and ensures transparency regarding the company's security posture.

What are the key skills and qualifications needed to thrive as a customer security assurance analyst, and why are they important?

To thrive as a Customer Security Assurance Analyst, you need a solid understanding of information security principles, risk assessment, and compliance frameworks, often supported by a degree in cybersecurity or a related field. Familiarity with tools such as GRC platforms, vulnerability management systems, and certifications like CISSP or CISA is typically required. Strong communication, analytical thinking, and attention to detail are crucial soft skills for explaining complex security concepts to clients and managing assurance processes. These skills and qualities ensure effective risk mitigation, regulatory compliance, and the building of trust with customers.

What is the difference between Customer Security Assurance Analyst vs Security Analyst?

AspectCustomer Security Assurance AnalystSecurity Analyst
CertificationsCompTIA Security+, CISSP (preferred)CompTIA Security+, CISSP (preferred)
Work EnvironmentCustomer-facing, compliance-focusedIT security teams, technical environment
Industry UsageFinance, healthcare, tech companiesAll industries, including finance, government, tech
Primary FocusEnsuring customer data security and complianceProtecting organizational IT infrastructure

The Customer Security Assurance Analyst primarily focuses on ensuring customer data security and compliance, often working directly with clients. In contrast, the Security Analyst concentrates on safeguarding the company's internal IT systems. Both roles require similar certifications and work in security-focused environments, but their main responsibilities and interactions differ.

What cities are hiring for Customer Security Assurance Analyst jobs?

Cities with the most Customer Security Assurance Analyst job openings:

What are popular job titles related to Customer Security Assurance Analyst jobs?

For Customer Security Assurance Analyst jobs, the most frequently searched job titles are:

Infographic showing various Customer Security Assurance Analyst job openings in the United States as of September 2026, with employment types broken down into 100% Full Time. Highlights an 100% In-person job distribution, with an average salary of $84,280 per year, or $40.5 per hour.

Senior Cybersecurity Risk & Governance Analyst

Oxford, MS • On-site

mTrade
Finance and Insurance • 51 - 200 employees

Full-time

Re-posted 2 days ago


Job description

mTrade is seeking a highly motivated Senior Cybersecurity Risk & Governance Analyst to support and enhance our Information Security Governance, Risk, and Compliance (GRC) program. This role is responsible for helping identify, assess, monitor, and communicate cyber and technology risks across the organization while supporting third-party risk management, customer due diligence activities, audit coordination, and security governance initiatives.

This position reports into the Information Security organization and works closely with the Chief Information Security Officer (CISO), Technology, Compliance, Legal, Internal Audit, and business stakeholders. The successful candidate will contribute to strengthening the organization's cybersecurity posture, operational resilience, regulatory compliance, and customer trust programs.

This role offers significant exposure to cybersecurity governance, risk management, cloud security, third-party risk, customer assurance activities, executive reporting, and industry-standard security frameworks. It provides a growth path into senior cybersecurity governance, risk, compliance, and security leadership roles.

Key Responsibilities

Cybersecurity Governance & Risk Management:

  • Maintain and enhance the organization's cybersecurity governance, risk, and compliance program.
  • Conduct cyber and technology risk assessments for systems, business processes, cloud services, and strategic initiatives.
  • Maintain the enterprise risk register, ensuring risks, owners, mitigation plans, and status updates remain current.
  • Track key risk indicators (KRIs), emerging cyber threats, and remediation activities.
  • Assist technology and business teams with risk identification, treatment planning, and control implementation.
  • Support development and maintenance of information security policies, standards, procedures, and governance documentation.
  • Assist with cybersecurity risk reporting for executive leadership and governance committees.

Third-Party Risk Management:

  • Conduct vendor cybersecurity assessments and due diligence reviews for new and existing third-party relationships.
  • Evaluate vendor security documentation, including SOC reports, penetration test summaries, security assessments, audit reports, and compliance certifications.
  • Assess risks associated with cloud-hosted services, SaaS platforms, and strategic technology providers.
  • Track remediation activities resulting from third-party assessments and risk reviews.
  • Partner with Procurement, Legal, Compliance, Technology, and business stakeholders throughout the vendor lifecycle.
  • Maintain accurate third-party risk records and reporting within the organization's GRC platform.

Customer Security Assurance & Due Diligence:

  • Coordinate responses to customer security questionnaires, risk assessments, and due diligence requests.
  • Support customer audits and security review meetings.
  • Collaborate with Information Security, Technology, Privacy, Legal, Compliance, and business teams to gather accurate responses.
  • Maintain a centralized repository of approved security, compliance, risk, and privacy responses.
  • Support development and maintenance of customer assurance materials, including SOC reports, policy summaries, security overviews, and compliance documentation.
  • Identify opportunities to improve response quality, consistency, and efficiency through automation and AI-enabled tools.

Audit, Compliance & Control Assurance:

  • Support internal and external audits, including SOC examinations and customer audits.
  • Coordinate evidence collection, documentation, and stakeholder responses.
  • Assist with remediation tracking and validation of audit findings.
  • Monitor compliance with internal policies, regulatory requirements, and security frameworks.
  • Support control testing, assessment activities, and continuous improvement initiatives.

Metrics, Reporting & Governance:

  • Develop cybersecurity metrics, dashboards, and executive reporting materials.
  • Prepare risk summaries and presentations for management and governance committees.
  • Analyze risk trends and provide actionable recommendations to leadership.
  • Identify opportunities to enhance governance processes through data analytics, workflow automation, and AI-enabled technologies.
  • Support ongoing maturation of the cybersecurity program.

Required Qualifications

  • Bachelor's degree in Cybersecurity, Information Systems, Information Security, Risk Management, Business, Finance, Accounting, or a related field.
  • 5+ years of experience in cybersecurity risk management, IT risk, governance, compliance, internal audit, third-party risk management, operational risk, or related disciplines.
  • Experience working within financial services, fintech, banking, regulated technology, healthcare, insurance, or another regulated industry.
  • Experience conducting risk assessments and maintaining risk registers.
  • Experience responding to customer security questionnaires, due diligence requests, and audit inquiries.
  • Experience reviewing SOC 1 and SOC 2 reports, security assessments, and vendor due diligence materials.
  • Experience supporting SOC examinations, regulatory assessments, customer audits, or customer security reviews.
  • Demonstrated experience applying at least one recognized cybersecurity, risk, or control framework, such as NIST CSF, NIST 800-53, ISO 27001, CIS Controls, SOC 2, FFIEC, or PCI DSS.
  • Working familiarity with Microsoft Azure, Microsoft 365, cloud governance, and cloud security concepts.
  • Strong understanding of cybersecurity risk management concepts, governance practices, and internal controls.
  • Excellent written and verbal communication skills, including the ability to communicate effectively with senior leadership, auditors, regulators, customers, and technical teams.
  • Strong analytical, organizational, and problem-solving skills.
  • Ability to manage multiple priorities and work independently in a fast-paced environment.

Preferred Qualifications

  • Experience with GRC platforms such as ServiceNow GRC, Archer, LogicGate, AuditBoard, ProcessUnity, or similar solutions.
  • Experience leveraging AI-enabled technologies, workflow automation, Microsoft Copilot, Microsoft Power Platform, Microsoft Purview, or analytics platforms to improve security and risk processes.
  • One or more relevant professional certifications, such as CRISC, CISA, CISM, CISSP, CIA, or CRCM.
  • Experience supporting process improvement, risk reporting automation, or executive-level cybersecurity metrics and dashboards.

mTrade logo

About mTrade

Sourced by ZipRecruiter

Industry

Finance and insurance

Company size

51 - 200 Employees

Headquarters location

Oxford, MS, US

Year founded

2016