1

Cyber Risk Analyst Jobs in Oregon (NOW HIRING)

Analyst, Cybersecurity

Portland, OR · On-site

$88K - $132K/yr

... cyber risk reduction for the agency. Example actions include, but are not limited to, enterprise vulnerability management, third party risk management, managing reported and detected phishing emails ...

Showing results 21-40

Cyber Risk Analyst information

See Oregon salary details

$47K

$113.7K

$159.7K

How much do cyber risk analyst jobs pay per year?

As of Sep 12, 2026, the average yearly pay for cyber risk analyst in Oregon is $113,681.00, according to ZipRecruiter salary data. Most workers in this role earn between $96,700.00 and $133,700.00 per year, depending on experience, location, and employer.

How does a cyber risk analyst typically collaborate with other departments to improve an organization's security posture?

Cyber Risk Analysts work closely with various departments, such as IT, compliance, and business units, to identify and assess potential security threats. They often facilitate risk assessments, conduct training sessions to raise awareness, and help develop incident response plans. Regular communication and collaboration are essential, as analysts must ensure that security recommendations align with business goals and regulatory requirements. This cross-functional teamwork creates a more resilient security environment and helps integrate cybersecurity best practices throughout the organization.

What are the key skills and qualifications needed to thrive as a cyber risk analyst, and why are they important?

To thrive as a Cyber Risk Analyst, you need a solid understanding of information security principles, risk assessment methodologies, and often a degree in cybersecurity, computer science, or a related field. Familiarity with risk management frameworks (such as NIST or ISO 27001), vulnerability assessment tools, and security information and event management (SIEM) systems is typically required, along with certifications like CISSP or CISM. Analytical thinking, attention to detail, and strong communication skills are essential soft skills for this role. These competencies ensure accurate identification, evaluation, and mitigation of cyber risks to protect organizational assets and maintain regulatory compliance.

What is the difference between Cyber Risk Analyst vs Cyber Security Analyst?

AspectCyber Risk AnalystCyber Security Analyst
CertificationsCertified Information Systems Security Professional (CISSP), Certified Risk and Information Systems Control (CRISC)CompTIA Security+, Certified Ethical Hacker (CEH)
Work EnvironmentRisk assessment, policy development, complianceNetwork monitoring, threat detection, incident response
Employer & IndustryFinancial, healthcare, government sectors focusing on risk managementIT departments, cybersecurity firms, tech companies

While both roles focus on cybersecurity, a Cyber Risk Analyst primarily assesses and manages potential risks to an organization’s information assets, whereas a Cyber Security Analyst concentrates on defending systems from threats and responding to security incidents. The roles often overlap but differ in their core focus areas.

How much does a cyber risk analyst make?

The average salary for a cyber risk analyst typically ranges from $70,000 to $120,000 annually, depending on experience, certifications, and location. Entry-level positions may start lower, while experienced analysts with certifications like CISSP or CISA can earn higher salaries, especially in industries with high cybersecurity needs.

What does a cyber risk analyst do?

A cyber risk analyst evaluates an organization's cybersecurity threats and vulnerabilities to identify potential risks. They analyze security data, develop risk mitigation strategies, and often use tools like risk assessment frameworks and security information and event management (SIEM) systems to protect digital assets.

What job categories do people searching Cyber Risk Analyst jobs in Oregon look for?

The top searched job categories for Cyber Risk Analyst jobs in Oregon are:

What cities in Oregon are hiring for Cyber Risk Analyst jobs?

Cities in Oregon with the most Cyber Risk Analyst job openings:

Infographic showing various Cyber Risk Analyst job openings in Oregon as of August 2026, with employment types broken down into 1% As Needed, 85% Full Time, 12% Part Time, and 2% Contract. Highlights an 85% Physical, 5% Hybrid, and 10% Remote job distribution, with an average salary of $113,681 per year, or $54.7 per hour.

Analyst, Cybersecurity

Portland, OR • On-site

$88K - $132K/yr

Full-time

Posted 5 days ago


TriMet rating

9.1

Company rating: 9.1 out of 10

Based on 34 frontline employees who took The Breakroom Quiz


Job description

Description The Cybersecurity Analyst performs actions in each of the National Institute of Standards and Technology (NIST) Cybersecurity Framework (CSF) categories of Identify, Protect, Detect, Respond and Recover that contribute to overall cyber risk reduction for the agency. Example actions include, but are not limited to, enterprise vulnerability management, third party risk management, managing reported and detected phishing emails, and interfacing with TriMet's Managed Detection and Response (MDR) services. A majority of the functions performed include documented security operation aspects of Center for Internet Security (CIS) Controls that are built into the agency's Information Technology (IT) and Operational Technology (OT) implementation and ongoing operations.

Activities also include assisting IT and other Divisions in the implementation of the CIS Controls as directed. This role provides Tier 1 support for cybersecurity issues within the agency. This role requires being onsite three (3) days per week.

Ensure a commitment to safety and regulatory compliance through effective leadership, training, role modeling and implementing practices that demonstrate safety is a fundamental value and a priority in all aspects of work. Serve as a good steward of TriMet by regularly utilizing our transit system to maintain a strong and current understanding of customers' experiences and of TriMet's product and service offerings. Essential Functions Perform documented processes leveraging hardware and software tools maintained and operated by the IT Cybersecurity Team in support of Information Technology (IT) and Operational Technology (OT) security functions.

Responsible for investigating reported security events and escalating when appropriate. Perform documented Risk Management functions including on risk assessments of new vendors and ongoing Third Party Risk Management (TPRM). Review all incoming service requests for the Cybersecurity Team assign to team member based on assigned responsibilities, Assist with multiple cybersecurity related projects and initiatives.

Position Requirements A Bachelor's Degree is required. A Bachelor's Degree in Information Systems, Computer Science, or Information Security is preferred. A minimum of two (2) years total credited experience.* Six (6) months of cybersecurity experience are required

Six (6) months of exposure to National Institute of Standards and Technology (NIST), Cybersecurity Framework (CSF) and/or Center for Internet Security (CIS) Controls are preferred. Or any equivalent combination of training or experience. *The amount of credit a candidate receives for prior years of experience is based on the relevancy of that experience to the required or preferred prerequisites of the job description.

Experience is prorated based on hours worked. LRHR assigns and validates the "credited experience". Selection Criteria Type of Position / Grade / FLSA Grade 14, Exempt, Non-Union, Full-Time.

Salary Range Minimum: $88,247.00/year Maximum: $132,372.00/year Salary offers will be determined by a candidate's education, training and relevant experience. A complete work history will be required for this purpose at the time of offer; any omitted work history will not be considered after hire. Any final offer of employment will fall within the range stated above

For transparency, we choose to list the full available grade range, however, TriMet's salary administration process will ultimately determine the final salary offered. Selection Process Candidates will be selected based at a minimum on the result of: 1. Application Review (an up-to-date resume is required) 2.Panel Interview 3.Reference Check and Degree Verification Supplemental Information Make sure you describe in detail how your education, training and work experience fit with this role

You are encouraged to attach a resume, cover letter, training certificates and/or letters of recommendation with your application. You are permitted five attachments of less than 5MB each. Internal applicants: Information in your personnel file will not be used in lieu of information requested on your application.

Incomplete applications will not be considered. If you are a qualified veteran and would like to apply for veterans' preference points, you will need to reflect your status on the application and attach supporting documentation at the time of application submission. If you need accommodation under the Americans with Disabilities Act for any part of the application process, contact our Human Resources staff at 503-962-7505, or the TTY line at 7-1-1.

Note that we require a minimum of two workdays' notice prior to the need for accommodation. TriMet is an equal opportunity employer, committed to developing an organization that is reflective of and sensitive to the needs of the diverse community we serve, including veterans, the elderly, and individuals with disabilities. ADA Statement As applied to the workplace, applicants and employees must be qualified to perform the essential functions of the job with or without reasonable accommodation.

Essential functions may include required job functions performed infrequently as well as production standards related to the quality and quantity of work. If a person with a disability could meet job qualifications with a reasonable accommodation, TriMet will work with the employee to accommodate the need. If TriMet's accommodation is effective in allowing the employee to perform the essential functions of the job, it need not be the employee's preferred accommodation.


What TriMet employees say

Pay

Benefits

Hours and flexibility

Workplace

Get the full story on Breakroom