1

Cyber Security Risk Analyst Jobs in California (NOW HIRING)

Cybersecurity Assessment Lead

Coronado, CA ยท On-site

$117K - $159K/yr

Analyze testing results and provide cybersecurity risk assessments to the Government SCA and Authorizing Official. * RMF Package Development and Reporting * Oversee preparation and delivery of RMF ...

Cybersecurity Assessment Lead

Coronado, CA

$117K - $159K/yr

This position leads independent security control validation activities, ensures RMF packages are complete and compliant, and provides cybersecurity risk analysis to the Government Security Control ...

Risk Analyst

San Jose, CA ยท On-site +1

Three to seven years of professional experience in risk analysis, intelligence analysis, cybersecurity research, threat intelligence, geopolitical analysis, or a directly related research function.

Three to seven years of professional experience in risk analysis, intelligence analysis, cybersecurity research, threat intelligence, geopolitical analysis, or a directly related research function.

Cyber and IT Risk Management Job Qualifications: Skills: Continuous Monitoring, Security ... cybersecurity event monitoring, focused on incident detection, triage, and analysis with the ...

... Cybersecurity Risk Assessments (MBCRA) (e.g., MRAP-C, CTT) events and provide Mission Impact Analysis and recommendations to the program office - Understanding of the discipline and practice of ...

next page

Showing results 1-20

Cyber Security Risk Analyst information

See California salary details

$42.4K

$98.1K

$148K

How much do cyber security risk analyst jobs pay per year?

As of Jun 10, 2026, the average yearly pay for cyber security risk analyst in California is $98,098.00, according to ZipRecruiter salary data. Most workers in this role earn between $78,500.00 and $114,000.00 per year, depending on experience, location, and employer.

What are the key skills and qualifications needed to thrive in the Cyber Security Risk Analyst position, and why are they important?

A Cyber Security Risk Analyst requires a solid understanding of information security principles, risk assessment methodologies, and a relevant degree such as computer science or cybersecurity. Familiarity with tools like risk management frameworks (NIST, ISO 27001), vulnerability scanners, and certifications such as CISSP, CISM, or CRISC is common in this role. Strong analytical thinking, attention to detail, effective communication, and problem-solving skills are vital soft skills. These competencies enable analysts to accurately identify, assess, and communicate cyber risks, protecting organizations from evolving threats.

What is a Cyber Security Risk Analyst job?

A Cyber Security Risk Analyst is responsible for identifying, assessing, and mitigating cybersecurity risks within an organization. They analyze potential threats, evaluate security controls, and recommend improvements to protect sensitive data and systems. Their role often involves conducting risk assessments, ensuring compliance with industry regulations, and collaborating with IT and security teams to enhance defenses. They also monitor emerging threats and provide strategic insights to minimize vulnerabilities. Ultimately, they help organizations maintain a strong security posture against cyber threats.

What are some typical challenges faced by Cyber Security Risk Analysts on the job?

Cyber Security Risk Analysts commonly face the challenge of keeping up with constantly evolving threats and technology landscapes. They must balance the need for robust security with business objectives, often requiring nuanced decision-making and collaboration across departments. Analysts may also encounter difficulties in communicating complex technical risks to non-technical stakeholders. Successfully navigating these challenges is key to maintaining organizational security and fostering a culture of risk awareness.

What are the most commonly searched types of Cyber Security Risk Analyst jobs in California? The most popular types of Cyber Security Risk Analyst jobs in California are:
What are popular job titles related to Cyber Security Risk Analyst jobs in California? For Cyber Security Risk Analyst jobs in California, the most frequently searched job titles are:
What job categories do people searching Cyber Security Risk Analyst jobs in California look for? The top searched job categories for Cyber Security Risk Analyst jobs in California are:
What cities in California are hiring for Cyber Security Risk Analyst jobs? Cities in California with the most Cyber Security Risk Analyst job openings:
Infographic showing various Cyber Security Risk Analyst job openings in California as of June 2026, with employment types broken down into 100% Full Time. Highlights an 100% In-person job distribution, with an average salary of $98,098 per year, or $47.2 per hour.
Cybersecurity Assessment Lead

Cybersecurity Assessment Lead

Analygence

Coronado, CA โ€ข On-site

$117K - $159K/yr

Full-time

Posted 25 days ago


Job description

Description
Tharros is seeking a Cybersecurity Assessment Lead for an upcoming program supporting a US Navy customer located at NAS North Island. The Cybersecurity Assessment Lead serves as the senior assessor overseeing cybersecurity assessment activities supporting Risk Management Framework (RMF) authorization processes for customer networks and training systems.
This position leads independent security control validation activities, ensures RMF packages are complete and compliant, and provides cybersecurity risk analysis to the Government Security Control Assessor (SCA) and Authorizing Official (AO). The Assessment Lead provides technical direction and quality oversight for cybersecurity assessment personnel supporting RMF validation and continuous monitoring activities.
  • Lead cybersecurity assessment teams supporting RMF authorization activities across all performance locations.
  • Perform or oversee independent security control assessments for DoD information systems.
  • Validate implementation of required NIST 800-53 security controls.
  • Support Security Control Assessors (SCA) in evaluating residual cybersecurity risk.
  • Provide technical leadership and quality oversight for cybersecurity assessors supporting RMF validation efforts.
  • RMF Assessment Support
    • Lead RMF assessment activities in accordance with DoD and Department of the Navy cybersecurity requirements. Conduct or oversee independent verification and validation of implemented security controls, including initial authorization assessments and periodic reassessments. Analyze testing results and provide cybersecurity risk assessments to the Government SCA and Authorizing Official.
  • RMF Package Development and Reporting
    • Oversee preparation and delivery of RMF artifacts including:
    • Security Assessment Plans (SAP)
    • Security Assessment Reports (SAR)
    • Risk Assessment Reports (RAR)
    • System Security Plans (SSP)
    • Continuous Monitoring Strategies
    • Plans of Action & Milestones (POA&M)
    • Ensure cybersecurity artifacts are properly documented and maintained within the Enterprise Mission Assurance Support Service (eMASS) system.

Requirements
  • Minimum 10 years of cybersecurity experience, including significant experience supporting Risk Management Framework (RMF) assessment and authorization activities for DoD or Navy systems.
  • Active Top Secret DoD Clearance.
  • Demonstrated experience leading cybersecurity assessments or validation teams supporting DoD RMF authorization processes.
  • Experience supporting Security Control Assessors (SCA) or equivalent cybersecurity assessment authorities.
  • Demonstrated experience performing or leading security control assessments, system authorization support, and cybersecurity risk evaluations in accordance with:
    • NIST SP 800-37
    • NIST SP 800-53
    • DoD RMF
    • DoN RMF Process Guide
  • Expert knowledge of DoD RMF and the DoN RMF Process Guide.
  • Experience using eMASS for RMF package preparation and maintenance.
  • Knowledge of CNSSI 1253 and ICD 503 cybersecurity requirements.
  • Strong leadership and team management capabilities.
  • Ability to provide cybersecurity risk analysis to senior Government stakeholders.
  • Strong technical writing skills for cybersecurity assessment documentation.
  • Familiarity with Navy network architecture and training system environments.