1

Cyber Risk Analyst Jobs in California (NOW HIRING)

Claims Counsel

Pleasanton, CA · On-site

$165K/yr

Championing adaptive insurance, Cowbell follows policyholders' cyber risk exposures as they evolve ... Perform tasks such as coverage analysis and letter writing; investigation; incident response ...

... risk, and technology programs. Recruiting for this role ends on 12/31/2026. Work you'll do As a ... Analyzing processes, controls, and tools to identify opportunities for ServiceNow configuration and ...

... risk, and technology programs. Recruiting for this role ends on 12/31/2026. Work you'll do As a ... Analyzing processes, controls, and tools to identify opportunities for ServiceNow configuration and ...

... risk, and technology programs. Recruiting for this role ends on 12/31/2026. Work you'll do As a ... Analyzing processes, controls, and tools to identify opportunities for ServiceNow configuration and ...

... risk, and technology programs. Recruiting for this role ends on 12/31/2026. Work you'll do As a ... Analyzing processes, controls, and tools to identify opportunities for ServiceNow configuration and ...

... risk, and technology programs. Recruiting for this role ends on 12/31/2026. Work you'll do As a ... Analyzing processes, controls, and tools to identify opportunities for ServiceNow configuration and ...

... risk, and technology programs. Recruiting for this role ends on 12/31/2026. Work you'll do As a ... Analyzing processes, controls, and tools to identify opportunities for ServiceNow configuration and ...

Showing results 41-60

Cyber Risk Analyst information

See California salary details

$43.9K

$106.1K

$149K

How much do cyber risk analyst jobs pay per year?

As of Aug 23, 2026, the average yearly pay for cyber risk analyst in California is $106,114.00, according to ZipRecruiter salary data. Most workers in this role earn between $90,300.00 and $124,800.00 per year, depending on experience, location, and employer.

How does a cyber risk analyst typically collaborate with other departments to improve an organization's security posture?

Cyber Risk Analysts work closely with various departments, such as IT, compliance, and business units, to identify and assess potential security threats. They often facilitate risk assessments, conduct training sessions to raise awareness, and help develop incident response plans. Regular communication and collaboration are essential, as analysts must ensure that security recommendations align with business goals and regulatory requirements. This cross-functional teamwork creates a more resilient security environment and helps integrate cybersecurity best practices throughout the organization.

What are the key skills and qualifications needed to thrive as a cyber risk analyst, and why are they important?

To thrive as a Cyber Risk Analyst, you need a solid understanding of information security principles, risk assessment methodologies, and often a degree in cybersecurity, computer science, or a related field. Familiarity with risk management frameworks (such as NIST or ISO 27001), vulnerability assessment tools, and security information and event management (SIEM) systems is typically required, along with certifications like CISSP or CISM. Analytical thinking, attention to detail, and strong communication skills are essential soft skills for this role. These competencies ensure accurate identification, evaluation, and mitigation of cyber risks to protect organizational assets and maintain regulatory compliance.

What is the difference between Cyber Risk Analyst vs Cyber Security Analyst?

AspectCyber Risk AnalystCyber Security Analyst
CertificationsCertified Information Systems Security Professional (CISSP), Certified Risk and Information Systems Control (CRISC)CompTIA Security+, Certified Ethical Hacker (CEH)
Work EnvironmentRisk assessment, policy development, complianceNetwork monitoring, threat detection, incident response
Employer & IndustryFinancial, healthcare, government sectors focusing on risk managementIT departments, cybersecurity firms, tech companies

While both roles focus on cybersecurity, a Cyber Risk Analyst primarily assesses and manages potential risks to an organization’s information assets, whereas a Cyber Security Analyst concentrates on defending systems from threats and responding to security incidents. The roles often overlap but differ in their core focus areas.

How much does a cyber risk analyst make?

The average salary for a cyber risk analyst typically ranges from $70,000 to $120,000 annually, depending on experience, certifications, and location. Entry-level positions may start lower, while experienced analysts with certifications like CISSP or CISA can earn higher salaries, especially in industries with high cybersecurity needs.

What does a cyber risk analyst do?

A cyber risk analyst evaluates an organization's cybersecurity threats and vulnerabilities to identify potential risks. They analyze security data, develop risk mitigation strategies, and often use tools like risk assessment frameworks and security information and event management (SIEM) systems to protect digital assets.

What job categories do people searching Cyber Risk Analyst jobs in California look for?

The top searched job categories for Cyber Risk Analyst jobs in California are:

Infographic showing various Cyber Risk Analyst job openings in California as of August 2026, with employment types broken down into 100% Full Time. Highlights an 100% In-person job distribution, with an average salary of $106,114 per year, or $51 per hour.

Engineer III - Cybersecurity Risk Analyst

Inland Empire Health Plan

Rancho Cucamonga, CA • On-site

$135K - $179K/yr

Full-time

Medical, Dental, Vision, Life, Retirement

Posted 24 days ago


Inland Empire Health Plan rating

6.8

Company rating: 6.8 out of 10

Based on 5 frontline employees who took The Breakroom Quiz

268th of 311 rated insurance


Job description

Overview
What you can expect!
Find joy in serving others with IEHP! We welcome you to join us in "healing and inspiring the human spirit" and to pivot from a "job" opportunity to an authentic experience!
The Cybersecurity Risk Analyst is a cybersecurity program and control assessor and advisor in governance, risk, and compliance functions. This position is responsible for the assessing and advancing of IEHP's cybersecurity posture and capability to safeguard its digital assets.
The purpose of this position is to provide highly skilled technical and cyber expertise for development and implementation of the enterprise information security program. Responsibilities require leadership and project management experience, as well as expertise to ensure effective system-wide security capability analysis; best practices and assurance testing; risk assessment; awareness and education; and development of security control portfolio.
Commitment to Quality: The IEHP Team is committed to incorporate IEHP's Quality Program goals including, but not limited to, HEDIS, CAHPS, and NCQA Accreditation.
Additional Benefits
Perks
IEHP is not only committed to healing and inspiring the human spirit of our Members, but we also aim to match our team members with the same energy by providing prime benefits and more.
  • Competitive salary
  • State of the art fitness center on-site
  • Medical Insurance with Dental and Vision
  • Life, short-term, and long-term disability options
  • Career advancement opportunities and professional development
  • Wellness programs that promote a healthy work-life balance
  • Flexible Spending Account - Health Care/Childcare
  • CalPERS retirement
  • 457(b) option with a contribution match
  • Paid life insurance for employees
  • Pet care insurance

Key Responsibilities
  1. Lead the system-wide cybersecurity compliance program, ensuring IT activities, processes, and procedures meet regulatory and industrial requirements.
  2. Develop and implement effective policies and practices to safeguard IEHP digital assets and prevent unauthorized access.
  3. Recommend process improvement and technical directions in matters relating to program maturity, incident investigation, threat management, and control assessment.
  4. Organize the collection of data from required security artifacts and questionnaires for industry framework and other related industrial and cybersecurity standards and mapping this to the company control portfolio.
  5. Build and maintain cybersecurity metrics for all levels of management focused on trending and tracking reports to demonstrate compliance and improve resilience.
  6. Analyze risk associated with technology stack and supply chain and work with business leaders to proactively manage exceptions.
  7. Develop program strategies to improve cyber hygiene and address awareness and training for all stakeholders.
  8. Perform security review in technology products and solutions (including security tools and systems), identify gaps in control design and operation, and develop remediation plan.
  9. Provide advice and input for IT disaster recovery, contingency, and continuity of operations plans.
  10. Define policy and standards for data protection and recovery.
  11. Perform access & privilege review for both machine and human accounts.
  12. Properly document all systems security implementation, operations, and maintenance activities and update as necessary.
  13. Provide input to risk management process activities and related documentation (e.g., system life-cycle support plans, concept of operations, operational procedures, and maintenance training materials).

Qualifications
Education & Requirements
  • Five (5) years in cybersecurity with focus on governance, compliance and risk management
  • Bachelor's degree in Information Systems Security or in a computer related field or similar technical field from an accredited institution required
  • Certified Information Systems Security Professional (CISSP) or other industrial and vendor security certifications preferred

Key Qualifications
  • Knowledge of laws, regulations, policies, and ethics as they relate to cybersecurity and privacy
  • Skilled in Cybersecurity, privacy principles and organizational requirements
  • Ability to apply cybersecurity and privacy principles to IEHP business and technical requirements (relevant to confidentiality, integrity, availability, authentication, non-repudiation)

Start your journey towards a thriving future with IEHP and apply TODAY!
Work Model Location
This position is on a hybrid work schedule. (Mon & Fri - remote, Tues - Thurs onsite in Rancho Cucamonga, CA.)
Pay Range
USD $135,200.00 - USD $179,129.60 /Yr.

What Inland Empire Health Plan employees say

Pay

Hours and flexibility

Workplace

Get the full story on Breakroom