1

Cyber Security Risk Analyst Jobs in Kentucky (NOW HIRING)

Data Analytics & Continuous Auditing * Leadership & Talent Development Experience: * 12+ years of IT audit, cybersecurity, or technology risk experience * 8+ years in a leadership or management role

Data Analytics & Continuous Auditing * Leadership & Talent Development Experience: * 12+ years of IT audit, cybersecurity, or technology risk experience * 8+ years in a leadership or management role

Supports company's risk management program by assessing potential risks associated with third ... Bachelor's degree required in computer science, information systems, cybersecurity, business ...

Supports company's risk management program by assessing potential risks associated with third ... Bachelor's degree required in computer science, information systems, cybersecurity, business ...

Apply professional IT audit concepts, cybersecurity frameworks (e.g., NIST CSF), and established technologies while using standard audit techniques such as control testing, data analysis, and risk ...

New

next page

Showing results 1-20

Cyber Security Risk Analyst information

See Kentucky salary details

$37.3K

$86.3K

$130.3K

How much do cyber security risk analyst jobs pay per year?

As of Jun 12, 2026, the average yearly pay for cyber security risk analyst in Kentucky is $86,332.00, according to ZipRecruiter salary data. Most workers in this role earn between $69,000.00 and $100,300.00 per year, depending on experience, location, and employer.

Is 40 too old for cyber security?

Cyber Security Risk Analysts can be successful at any age, as the field values skills, experience, and continuous learning. Many professionals transition into cybersecurity later in their careers, often obtaining certifications like CISSP or CompTIA Security+ to enhance their qualifications. Age is generally not a barrier if you have relevant skills and stay current with industry developments.

Is SOC an entry level job?

A Security Operations Center (SOC) analyst role is typically considered an entry-level or early-career position in cybersecurity, often requiring foundational knowledge of security tools, monitoring, and incident response. However, some SOC roles may require prior experience or certifications like CompTIA Security+ or Cisco CCNA, depending on the organization's complexity. Advancement usually involves gaining experience and additional certifications in cybersecurity.

What are the key skills and qualifications needed to thrive in the Cyber Security Risk Analyst position, and why are they important?

A Cyber Security Risk Analyst requires a solid understanding of information security principles, risk assessment methodologies, and a relevant degree such as computer science or cybersecurity. Familiarity with tools like risk management frameworks (NIST, ISO 27001), vulnerability scanners, and certifications such as CISSP, CISM, or CRISC is common in this role. Strong analytical thinking, attention to detail, effective communication, and problem-solving skills are vital soft skills. These competencies enable analysts to accurately identify, assess, and communicate cyber risks, protecting organizations from evolving threats.

What is a Cyber Security Risk Analyst job?

A Cyber Security Risk Analyst is responsible for identifying, assessing, and mitigating cybersecurity risks within an organization. They analyze potential threats, evaluate security controls, and recommend improvements to protect sensitive data and systems. Their role often involves conducting risk assessments, ensuring compliance with industry regulations, and collaborating with IT and security teams to enhance defenses. They also monitor emerging threats and provide strategic insights to minimize vulnerabilities. Ultimately, they help organizations maintain a strong security posture against cyber threats.

What are some typical challenges faced by Cyber Security Risk Analysts on the job?

Cyber Security Risk Analysts commonly face the challenge of keeping up with constantly evolving threats and technology landscapes. They must balance the need for robust security with business objectives, often requiring nuanced decision-making and collaboration across departments. Analysts may also encounter difficulties in communicating complex technical risks to non-technical stakeholders. Successfully navigating these challenges is key to maintaining organizational security and fostering a culture of risk awareness.

What does a cybersecurity risk analyst do?

A cybersecurity risk analyst evaluates an organization’s security posture by identifying vulnerabilities, assessing potential threats, and recommending measures to mitigate risks. They often use tools like risk assessment frameworks and require knowledge of security protocols, compliance standards, and threat intelligence. Their work helps organizations protect sensitive data and maintain secure systems.

Can you make $500,000 a year in cyber security?

Cyber Security Risk Analysts typically earn between $70,000 and $130,000 annually, depending on experience, certifications, and location. Reaching a $500,000 salary generally requires senior roles such as Chief Information Security Officer (CISO) or executive positions, which involve broader responsibilities and leadership skills. High salaries in cybersecurity are often associated with extensive experience, advanced certifications, and strategic management roles.
What are popular job titles related to Cyber Security Risk Analyst jobs in Kentucky? For Cyber Security Risk Analyst jobs in Kentucky, the most frequently searched job titles are:
What job categories do people searching Cyber Security Risk Analyst jobs in Kentucky look for? The top searched job categories for Cyber Security Risk Analyst jobs in Kentucky are:
Director, IT Audit

Director, IT Audit

Daikin

Louisville, KY • On-site

Full-time

Posted 6 days ago


Daikin rating

7.5

Company rating: 7.5 out of 10

Based on 121 frontline employees who took The Breakroom Quiz

218th of 417 rated machine equipment manufacturers


Job description

The Director, IT Audit leads the enterprise IT audit strategy and execution across Daikin Americas, providing independent, risk-based assurance over technology governance, cybersecurity, digital transformation, data governance, and automated business processes. This role evaluates the design and effectiveness of technology controls supporting critical systems, infrastructure, and emerging technologies while ensuring alignment with leading governance and security frameworks including COSO, NIST Cybersecurity Framework, ISO 27001, COBIT, and JSOX requirements.

The Director will play a key leadership role in advancing a modern, technology-enabled Internal Audit function, leveraging data analytics, automation, and continuous auditing techniques to provide proactive insights and strengthen risk management across the enterprise.

Position Responsibilities may include:

  • Develop and maintain a risk-based IT audit strategy and multi-year technology audit roadmap aligned with enterprise risks and digital transformation initiatives
  • Lead development and execution of the annual IT audit plan
  • Integrate IT risk insights into the broader enterprise audit plan and risk assessment process
  • Provide independent assurance over the organization’s cybersecurity programs
  • Provide independent oversight of critical enterprise systems, applications and technology initiatives
  • Evaluate governance frameworks and internal controls supporting the responsible use of AI technologies
  • Support the enterprise JSOX program through oversight of ITGC and application controls testing
  • Modernize the IT audit approach with advanced data analytics, automation, and AI-enabled tools
  • Build trusted relationships across the organization including IT leadership, Information Security, Enterprise Risk Management, Legal & Compliance, Finance and external auditors
  • Manage relationships with external co-sourcing partnerships

Nature & Scope:

  • Develops and implements strategic plans and objectives for the department/sub-function in an effective and innovative fashion
  • Understands the business and can put together comprehensive department solutions
  • Works with other leaders to establish strategic plans and works towards achieving them
  • Provides leadership and direction to managers in their respective division/department
  • Sees to department staffing needs (e.g. interviewing, hiring, new hire and ongoing training, annual evaluations, etc.)
  • Participates in budget development and monitoring of expenses
  • Level of signing authority established by company policy/guidelines

Knowledge & Skills:

  • Strong interpersonal and presentation skills, including the ability to communicate effectively with others at all levels inside and outside the company
  • Ability to work independently with minimal supervision
  • Expert Excel, Access, Word, Outlook and PowerPoint Skills
  • Analytic Skills: Ability to think objectively and interpret meaningful themes from quantitative and qualitative data
  • Problem Solving & Decision Quality: Able to use rigorous logic and methods to solve problems with effective solutions
  • Relationship Management: Able to build constructive and effective relationships with a broad and diverse group of business partners
  • Leadership and performance management skills
  • Strong verbal and written communications skills
  • Excellent organizational and time management skills
  • Possess strong interpersonal skills to deal effectively with a wide variety of people assertively and confidently

Competencies:

  • Risk-Based IT Audit Leadership
  • Cybersecurity & Technology Risk Expertise
  • ERP (SAP) & Automated Controls Knowledge
  • Digital Transformation & Program Assurance
  • Cloud & Infrastructure Risk Management
  • Executive Communication & Influence
  • Strategic Business Partnership
  • Audit Judgment & Critical Thinking
  • Data Analytics & Continuous Auditing
  • Leadership & Talent Development

Experience:

  • 12+ years of IT audit, cybersecurity, or technology risk experience
  • 8+ years in a leadership or management role
  • Experience in public company environments with SOX / JSOX
  • Experience auditing ERP environments (SAP preferred)
  • Experience with cloud technologies (AWS, Azure, or Google Cloud)
  • Experience assessing cybersecurity programs
  • Experience working with external audit firms and regulators

Education/Certification:

  • Bachelor’s degree in Information Systems, Computer Science, Accounting, or related field
  • One or more of the following required:
  • CISA – Certified Information Systems Auditor
  • CISSP – Certified Information Systems Security Professional
  • CIA – Certified Internal Auditor
  • CISM – Certified Information Security Manager
  • CRISC – Certified in Risk and Information Systems Control

People Management Yes

Physical Requirements / Work Environment Must be able to perform essential responsibilities with or without reasonable accommodations

Reports To: Vice President, Internal Audit

The Company provides equal employment opportunity to all employees and applicants regardless of a person’s race, color, religion (including religious dress or grooming practices), creed, national origin (including language use restrictions), citizenship, uniform service member or veteran status, ancestry, disability, physical or mental disability (including HIV/AIDS), medical condition (including cancer and genetic characteristics), genetic information, request for protected leave, marital status, sex, pregnancy, age (over 40), sexual orientation, gender, gender identity or expression, political affiliation, or any other characteristic protected by law. The Company will comply with all federal and state regulations and statutes about individuals with disabilities.


What Daikin employees say

Pay

Benefits

Hours and flexibility

Workplace

Get the full story on Breakroom