1

Cyber Security Risk Analyst Jobs in Arizona (NOW HIRING)

Senior Manager, Cybersecurity

Scottsdale, AZ · On-site

$107K - $145K/yr

Governance, Risk, and Compliance (GRC): Own the day-to-day GRC function, including cybersecurity ... Perform root cause analysis and drive corrective actions. Security Operations and Architecture:

Senior Manager, Cybersecurity

Scottsdale, AZ · On-site

$107K - $145K/yr

Governance, Risk, and Compliance (GRC): • Own the day-to-day GRC function, including ... analysis and drive corrective actions. Security Operations and Architecture: • Participate ...

The Risk and Vulnerability Analyst supports a 24x7 Security Operations Center (SOC) by identifying ... Bachelor's degree in Cybersecurity, Information Technology, or related field. An additional 4 years ...

The Risk and Vulnerability Analyst supports a 24x7 Security Operations Center (SOC) by identifying ... Bachelor's degree in Cybersecurity, Information Technology, or related field. An additional 4 years ...

The Risk and Vulnerability Analyst supports a 24x7 Security Operations Center (SOC) by identifying ... Bachelor's degree in Cybersecurity, Information Technology, or related field. An additional 4 years ...

Cybersecurity events System failures and outages Data loss and disclosure events Privilege misuse ... Performs Monte Carlo, scenario-based, and probabilistic analyses where applicable. Supports capital ...

The Senior Risk and Vulnerability Analyst supports a 24x7 Security Operations Center (SOC) by ... Bachelor's degree in Cybersecurity, Information Technology, or related field. An additional 4 years ...

The Senior Risk and Vulnerability Analyst supports a 24x7 Security Operations Center (SOC) by ... Bachelor's degree in Cybersecurity, Information Technology, or related field. An additional 4 years ...

The Senior Risk and Vulnerability Analyst supports a 24x7 Security Operations Center (SOC) by ... Bachelor's degree in Cybersecurity, Information Technology, or related field. An additional 4 years ...

next page

Showing results 1-20

Cyber Security Risk Analyst information

See Arizona salary details

$40.1K

$92.6K

$139.8K

How much do cyber security risk analyst jobs pay per year?

As of Aug 31, 2026, the average yearly pay for cyber security risk analyst in Arizona is $92,630.00, according to ZipRecruiter salary data. Most workers in this role earn between $74,100.00 and $107,600.00 per year, depending on experience, location, and employer.

What is a cyber security risk analyst?

A Cyber Security Risk Analyst is responsible for identifying, assessing, and mitigating cybersecurity risks within an organization. They analyze potential threats, evaluate security controls, and recommend improvements to protect sensitive data and systems. Their role often involves conducting risk assessments, ensuring compliance with industry regulations, and collaborating with IT and security teams to enhance defenses. They also monitor emerging threats and provide strategic insights to minimize vulnerabilities. Ultimately, they help organizations maintain a strong security posture against cyber threats.

What are some typical challenges faced by cyber security risk analysts on the job?

Cyber Security Risk Analysts commonly face the challenge of keeping up with constantly evolving threats and technology landscapes. They must balance the need for robust security with business objectives, often requiring nuanced decision-making and collaboration across departments. Analysts may also encounter difficulties in communicating complex technical risks to non-technical stakeholders. Successfully navigating these challenges is key to maintaining organizational security and fostering a culture of risk awareness.

What are the key skills and qualifications needed to thrive in the cyber security risk analyst position, and why are they important?

A Cyber Security Risk Analyst requires a solid understanding of information security principles, risk assessment methodologies, and a relevant degree such as computer science or cybersecurity. Familiarity with tools like risk management frameworks (NIST, ISO 27001), vulnerability scanners, and certifications such as CISSP, CISM, or CRISC is common in this role. Strong analytical thinking, attention to detail, effective communication, and problem-solving skills are vital soft skills. These competencies enable analysts to accurately identify, assess, and communicate cyber risks, protecting organizations from evolving threats.

How much does a cyber security risk analyst make?

The average salary for a cyber security risk analyst in the United States ranges from $70,000 to $120,000 annually, depending on experience, certifications, and location. Entry-level positions typically start around $60,000, while experienced analysts with certifications like CISSP or CISA can earn over $130,000. The role often requires knowledge of risk assessment tools and security frameworks.

What are the most commonly searched types of Cyber Security Risk Analyst jobs in Arizona?

The most popular types of Cyber Security Risk Analyst jobs in Arizona are:

What are popular job titles related to Cyber Security Risk Analyst jobs in Arizona?

For Cyber Security Risk Analyst jobs in Arizona, the most frequently searched job titles are:

What job categories do people searching Cyber Security Risk Analyst jobs in Arizona look for?

The top searched job categories for Cyber Security Risk Analyst jobs in Arizona are:

What cities in Arizona are hiring for Cyber Security Risk Analyst jobs?

Cities in Arizona with the most Cyber Security Risk Analyst job openings:

Infographic showing various Cyber Security Risk Analyst job openings in Arizona as of August 2026, with employment types broken down into 87% Full Time, 11% Part Time, and 2% Contract. Highlights an 92% Physical, 3% Hybrid, and 5% Remote job distribution, with an average salary of $92,630 per year, or $44.5 per hour.

Senior Manager, Cybersecurity Risk Management

American Express

Phoenix, AZ • On-site

$123K - $215K/yr

Full-time

Medical, Dental, Vision, Life, Retirement

Posted 10 days ago


American Express rating

8.6

Company rating: 8.6 out of 10

Based on 37 frontline employees who took The Breakroom Quiz

25th of 152 rated financial services


Job description


The Global Risk & Compliance (GRC) group within American Express is responsible for providing oversight and governance of risks to ensure that the company operates in a safe and sound manner within regulatory expectations. The Technical Risk Management (TRM) organization provides independent risk oversight across Cybersecurity Risk, Technology Risk, Data Risk, Resiliency Risk, and AI Risk. As cyber threats continue to evolve, effective cyber risk management is critical to protecting the company, its customers, and its assets.
This individual contributor role is part of the Cyber Risk Management team within TRM. The successful candidate will provide independent risk oversight and effective challenge across key cybersecurity domains, including Vulnerability Management, Compute Security, Cloud Security, Application Security, Network Security, and End User Computing (EUC) Security. , This position is responsible for assessing, monitoring, and reporting cybersecurity risks across the enterprise. The role partners closely with cybersecurity, technology, and business stakeholders to evaluate risk exposure, assess control effectiveness, challenge remediation strategies, and provide meaningful risk insights to senior leadership, risk committees, and regulators.
Responsibilities
Essential Job Functions:
  • Provide independent risk oversight and effective challenge for Vulnerability Management, Compute Security, Cloud Security, Application Security, Network Security, and End User Computing (EUC) Security.
  • Perform risk assessments, thematic reviews, and data-driven analyses to identify emerging cyber risks, control gaps, and trends across the cybersecurity landscape.
  • Analyze cybersecurity, vulnerability, and operational data using tools such as SQL, Python, Power BI, and Excel to develop meaningful risk insights and reporting.
  • Assess control effectiveness, remediation plans, risk acceptance decisions, and residual risk exposure across covered cybersecurity domains.
  • Develop, enhance, and monitor key risk indicators (KRIs), metrics, and executive reporting to provide meaningful visibility into cyber risk posture and trends.
  • Stay current on cyber threats, emerging technologies, industry trends, regulatory expectations, and cybersecurity frameworks.
  • Support risk governance activities, regulatory engagements, audits, committee reporting, and enterprise cybersecurity risk initiatives.
  • Partner effectively across lines of defense to ensure cybersecurity risks are identified, assessed, monitored, and managed in accordance with company policies and regulatory expectations.

Qualifications
Minimum Qualifications:
  • Bachelor's Degree in Cybersecurity, Information Systems, Computer Science, Information Technology, Engineering, or a related field.
  • 5+ years of experience in Cyber Risk Management, Information Security, Cybersecurity Governance, Technology Risk Management, Audit, or Operational Risk.
  • Experience in one or more cybersecurity domains including Vulnerability Management, Cloud Security, Application Security, Network Security, Infrastructure/Compute Security, EUC Security, or Exposure Management.
  • Strong understanding of cybersecurity risk management principles, security controls, and industry frameworks.
  • Experience identifying risks, analyzing issues, conducting assessments, and translating complex technical topics into business-focused risk insights.
  • Excellent analytical, critical thinking, problem-solving, and communication skills.
  • Ability to work independently and influence stakeholders through constructive challenges and collaboration.
  • Industry certification required: CISSP, CISM, CRISC, CCSP, CISA, or equivalent cybersecurity/risk management certification.

Preferred Qualifications:
  • Working knowledge of data analytics and visualization tools including SQL, Python, Power BI, Excel data models, and related technologies.
  • Experience executing or providing oversight of Vulnerability Management, Cloud Security, Application Security, Network Security, and Endpoint/EUC Security.
  • Knowledge of cybersecurity frameworks and standards including NIST Cybersecurity Framework (CSF), NIST 800-53, CIS Controls, ISO 27001, COBIT, MITRE ATT&CK, and FAIR.
  • Knowledge of regulatory expectations and industry guidance, including FFIEC guidance and OCC Heightened Standards.
  • Experience with Governance, Risk, and Compliance (GRC) platforms such as Archer.
  • Experience with AI tools such as ChatGPT and Copilot
  • Experience supporting senior management reporting, risk committees, regulatory examinations, or internal audit engagements.
  • Additional certifications such as GIAC, CCSK, AWS Security Specialty, Azure Security Engineer, or other cloud/security certifications.

Employment eligibility to work with American Express in the United States is required as the company will not pursue visa sponsorship for these positions.
About Us
At American Express, our culture is built on a 175-year history of innovation, shared values and Leadership Behaviors, and an unwavering commitment to back our customers, communities, and colleagues. From delivering differentiated products to providing world-class customer service, we operate with a strong risk mindset, ensuring we continue to uphold our brand promise of trust, security, and service.
As part of Team Amex, you'll experience our powerful backing with comprehensive support for your holistic well-being and many opportunities to learn new skills, develop as a leader, and grow your career. Here, your voice and ideas matter, your work makes an impact, and together, you will help us define the future of American Express.
About the Team
We back you with benefits that support your holistic well-being so you can be and deliver your best. This means caring for you and your loved ones' physical, financial, and mental health, as well as providing the flexibility you need to thrive personally and professionally:
  • Competitive base salaries
  • Bonus incentives
  • 6% Company Match on retirement savings plan
  • Free financial coaching and financial well-being support
  • Comprehensive medical, dental, vision, life insurance, and disability benefits
  • Flexible working model with hybrid, onsite or virtual arrangements depending on role and business need
  • 20+ weeks paid parental leave for all parents, regardless of gender, offered for pregnancy, adoption or surrogacy
  • Free access to global on-site wellness centers staffed with nurses and doctors (depending on location)
  • Free and confidential counseling support through our Healthy Minds program
  • Career development and training opportunities

For a full list of Team Amex benefits, visit our Colleague Benefits Site.
American Express is an equal opportunity employer and makes employment decisions without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, veteran status, disability status, age, or any other status protected by law. American Express will consider for employment all qualified applicants, including those with arrest or conviction records, in accordance with the requirements of applicable state and local laws, including the California Fair Chance Act, the Los Angeles County Fair Chance Ordinance for Employers, and the City of Los Angeles' Fair Chance Initiative for Hiring Ordinance. For positions covered by federal and/or state banking regulations, American Express will comply with such regulations as it relates to the consideration of applicants with criminal convictions.
We back our colleagues with the support they need to thrive, professionally and personally. That's why we have Amex Flex, our enterprise working model that provides greater flexibility to colleagues while ensuring we preserve the important aspects of our unique in-person culture. Depending on role and business needs, colleagues will either work onsite, in a hybrid model (combination of in-office and virtual days) or fully virtually.
US Job Seekers - Click to view the "Know Your Rights" poster. If the link does not work, you may access the poster by copying and pasting the following URL in a new browser window: https://www.eeoc.gov/poster.
The below represents the expected salary range for this job requisition. Ultimately, in determining your pay, we'll consider your location, experience, and other job-related factors.

What American Express employees say

Pay

Benefits

Hours and flexibility

Workplace

Get the full story on Breakroom