The Cybersecurity Risk Oversight Professional serves as a key member of the Cybersecurity Risk ... Develop and articulate independent risk opinions supported by sound analysis, evidence, and ...
The Cybersecurity Risk Oversight Professional serves as a key member of the Cybersecurity Risk ... Develop and articulate independent risk opinions supported by sound analysis, evidence, and ...
The Cybersecurity Risk Oversight Professional serves as a key member of the Cybersecurity Risk ... Develop and articulate independent risk opinions supported by sound analysis, evidence, and ...
The Cybersecurity Risk Oversight Professional serves as a key member of the Cybersecurity Risk ... Develop and articulate independent risk opinions supported by sound analysis, evidence, and ...
Extensive data analytics experience in fraud analytics, fraud prevention, risk management, financial services, cybersecurity, or a related field, and experience translating findings into business ...
Extensive data analytics experience in fraud analytics, fraud prevention, risk management, financial services, cybersecurity, or a related field, and experience translating findings into business ...
Fraud Risk Analyst
Minneapolis, MN · On-site
The Fraud Risk Analyst develops data-driven insights and strategies that strengthen fraud ... cybersecurity, or a related field, and experience translating findings into business ...
Fraud Risk Analyst
Minneapolis, MN · On-site
The Fraud Risk Analyst develops data-driven insights and strategies that strengthen fraud ... cybersecurity, or a related field, and experience translating findings into business ...
Cybersecurity Engineer
Virginia, MN · On-site
$100 - $156/hr
... risk assessments against known vulnerabilities. * Identify and perform security analysis of ... Conduct cybersecurity related research, analysis and coordination activities insupport of DOD cyber ...
Cybersecurity Engineer
Virginia, MN · On-site
$100 - $156/hr
... risk assessments against known vulnerabilities. * Identify and perform security analysis of ... Conduct cybersecurity related research, analysis and coordination activities insupport of DOD cyber ...
If yes, consider joining Baker Tilly (BT) as an IT Audit, Cybersecurity & Risk Manager (HITRUST ... Excellent analytical, technical, and problem-solving skills, with strong attention to detail
If yes, consider joining Baker Tilly (BT) as an IT Audit, Cybersecurity & Risk Manager (HITRUST ... Excellent analytical, technical, and problem-solving skills, with strong attention to detail
Sr. Cybersecurity Validation Engineer
Wyoming, MN · On-site
$104K - $128K/yr
... risk assessment, design reviews, validation strategy improvements, and evaluation of emerging cybersecurity testing tools and methodologies. Desired Competencies: * Critical Thinking: You analyze ...
Sr. Cybersecurity Validation Engineer
Wyoming, MN · On-site
$104K - $128K/yr
... risk assessment, design reviews, validation strategy improvements, and evaluation of emerging cybersecurity testing tools and methodologies. Desired Competencies: * Critical Thinking: You analyze ...
Cybersecurity Engineer - PAM (Hybrid)
Hopkins, MN · Hybrid
$80K - $131K/yr
Additionally, you will work on process engineering, risk remediation, and mitigation of operational ... Analyze competitive strategies, cyber technologies, metrics models, and performance indicators. You ...
Cybersecurity Engineer - PAM (Hybrid)
Hopkins, MN · Hybrid
$80K - $131K/yr
Additionally, you will work on process engineering, risk remediation, and mitigation of operational ... Analyze competitive strategies, cyber technologies, metrics models, and performance indicators. You ...
Cybersecurity GRC Analyst
Edina, MN · On-site
$66K - $114K/yr
Western National is seeking a Cybersecurity GRC Analyst to join our team! The individual in this ... Performs security risk assessments of third-party vendors and service providers and tracks ...
Cybersecurity GRC Analyst
Edina, MN · On-site
$66K - $114K/yr
Western National is seeking a Cybersecurity GRC Analyst to join our team! The individual in this ... Performs security risk assessments of third-party vendors and service providers and tracks ...
Cybersecurity GRC Analyst
$66K - $114K/yr
Western National is seeking a Cybersecurity GRC Analyst to join our team! The individual in this ... Performs security risk assessments of third-party vendors and service providers and tracks ...
Cybersecurity GRC Analyst
$66K - $114K/yr
Western National is seeking a Cybersecurity GRC Analyst to join our team! The individual in this ... Performs security risk assessments of third-party vendors and service providers and tracks ...
Cybersecurity GRC Analyst
$66K - $114K/yr
Western National is seeking a Cybersecurity GRC Analyst to join our team! The individual in this ... Performs security risk assessments of third-party vendors and service providers and tracks ...
Cybersecurity GRC Analyst
$66K - $114K/yr
Western National is seeking a Cybersecurity GRC Analyst to join our team! The individual in this ... Performs security risk assessments of third-party vendors and service providers and tracks ...
Cybersecurity GRC Analyst
Minneapolis, MN · On-site
$66K - $114K/yr
Western National is seeking a Cybersecurity GRC Analyst to join our team! The individual in this ... Performs security risk assessments of third-party vendors and service providers and tracks ...
Cybersecurity GRC Analyst
Minneapolis, MN · On-site
$66K - $114K/yr
Western National is seeking a Cybersecurity GRC Analyst to join our team! The individual in this ... Performs security risk assessments of third-party vendors and service providers and tracks ...
Senior GRC Information Security Systems Analyst - Direct Hire
Minneapolis, MN · On-site
$110K - $140K/yr
Senior GRC Information Security Systems Analyst Location: Minneapolis, MN (Preferred) or one of the ... Perform project-based cybersecurity risk assessments. * Evaluate software, cloud platforms, third ...
New
Quick apply
Senior GRC Information Security Systems Analyst - Direct Hire
Minneapolis, MN · On-site
$110K - $140K/yr
Senior GRC Information Security Systems Analyst Location: Minneapolis, MN (Preferred) or one of the ... Perform project-based cybersecurity risk assessments. * Evaluate software, cloud platforms, third ...
New
The Technology, Cybersecurity, AI, Data, and Innovation Risk and Compliance Management team ... Perform detailed use case analysis and control mapping and prepare structured materials and ...
The Technology, Cybersecurity, AI, Data, and Innovation Risk and Compliance Management team ... Perform detailed use case analysis and control mapping and prepare structured materials and ...
Support third-party risk management by reviewing vendor security information, assisting with risk ... analysis tools, or other cybersecurity operations technologies. * Experience supporting security ...
Support third-party risk management by reviewing vendor security information, assisting with risk ... analysis tools, or other cybersecurity operations technologies. * Experience supporting security ...
Support third-party risk management by reviewing vendor security information, assisting with risk ... analysis tools, or other cybersecurity operations technologies. * Experience supporting security ...
New
Quick apply
Support third-party risk management by reviewing vendor security information, assisting with risk ... analysis tools, or other cybersecurity operations technologies. * Experience supporting security ...
New
Support third-party risk management by reviewing vendor security information, assisting with risk ... analysis tools, or other cybersecurity operations technologies. * Experience supporting security ...
New
Support third-party risk management by reviewing vendor security information, assisting with risk ... analysis tools, or other cybersecurity operations technologies. * Experience supporting security ...
New
Lead Cybersecurity Specialist
Minneapolis, MN · Remote
$125K - $165K/yr
The Lead Cybersecurity Specialist within the Legence IT Security organization will be responsible ... cyber analysts tasked with advancing Legence's security posture and reducing risk. This role is ...
Lead Cybersecurity Specialist
Minneapolis, MN · Remote
$125K - $165K/yr
The Lead Cybersecurity Specialist within the Legence IT Security organization will be responsible ... cyber analysts tasked with advancing Legence's security posture and reducing risk. This role is ...
Lead Cybersecurity Specialist
Minneapolis, MN · Remote
$125K - $165K/yr
The Lead Cybersecurity Specialist within the Legence IT Security organization will be responsible ... cyber analysts tasked with advancing Legence's security posture and reducing risk. This role is ...
Lead Cybersecurity Specialist
Minneapolis, MN · Remote
$125K - $165K/yr
The Lead Cybersecurity Specialist within the Legence IT Security organization will be responsible ... cyber analysts tasked with advancing Legence's security posture and reducing risk. This role is ...
Lead Cybersecurity Specialist
Minneapolis, MN · Remote
$125K - $165K/yr
The Lead Cybersecurity Specialist within the Legence IT Security organization will be responsible ... cyber analysts tasked with advancing Legence's security posture and reducing risk. This role is ...
Lead Cybersecurity Specialist
Minneapolis, MN · Remote
$125K - $165K/yr
The Lead Cybersecurity Specialist within the Legence IT Security organization will be responsible ... cyber analysts tasked with advancing Legence's security posture and reducing risk. This role is ...
Cyber Security Risk Analyst information
See Minnesota salary details
$42.1K - $51.6K
1% of jobs
$51.6K - $61.2K
6% of jobs
$61.2K - $70.7K
10% of jobs
$77.2K is the 25th percentile. Wages below this are outliers.
$70.7K - $80.2K
12% of jobs
$80.2K - $89.8K
15% of jobs
The median wage is $93.8K / yr.
$89.8K - $99.3K
15% of jobs
$99.3K - $108.8K
10% of jobs
$112.9K is the 75th percentile. Wages above this are outliers.
$108.8K - $118.3K
16% of jobs
$118.3K - $127.9K
7% of jobs
$127.9K - $137.4K
5% of jobs
$137.4K - $146.9K
3% of jobs
$42.1K
$97.4K
$146.9K
How much do cyber security risk analyst jobs pay per year?
What are the key skills and qualifications needed to thrive in the cyber security risk analyst position, and why are they important?
A Cyber Security Risk Analyst requires a solid understanding of information security principles, risk assessment methodologies, and a relevant degree such as computer science or cybersecurity. Familiarity with tools like risk management frameworks (NIST, ISO 27001), vulnerability scanners, and certifications such as CISSP, CISM, or CRISC is common in this role. Strong analytical thinking, attention to detail, effective communication, and problem-solving skills are vital soft skills. These competencies enable analysts to accurately identify, assess, and communicate cyber risks, protecting organizations from evolving threats.
What is a cyber security risk analyst?
A Cyber Security Risk Analyst is responsible for identifying, assessing, and mitigating cybersecurity risks within an organization. They analyze potential threats, evaluate security controls, and recommend improvements to protect sensitive data and systems. Their role often involves conducting risk assessments, ensuring compliance with industry regulations, and collaborating with IT and security teams to enhance defenses. They also monitor emerging threats and provide strategic insights to minimize vulnerabilities. Ultimately, they help organizations maintain a strong security posture against cyber threats.
What are some typical challenges faced by cyber security risk analysts on the job?
Cyber Security Risk Analysts commonly face the challenge of keeping up with constantly evolving threats and technology landscapes. They must balance the need for robust security with business objectives, often requiring nuanced decision-making and collaboration across departments. Analysts may also encounter difficulties in communicating complex technical risks to non-technical stakeholders. Successfully navigating these challenges is key to maintaining organizational security and fostering a culture of risk awareness.
What does a cybersecurity risk analyst do?
How much does a cyber security risk analyst make?

Full-time
Medical, Dental, Vision, Life, Retirement, PTO
This job post has expired 2 days ago. Applications are no longer accepted.
U.S. Bank rating
8.2
Based on 360 frontline employees who took The Breakroom Quiz
51st of 170 rated banks
Job description
Job Description
NOTE: This position is not eligible for current or future visa sponsorship.
The Cybersecurity Risk Oversight Professional serves as a key member of the Cybersecurity Risk Oversight team within the Second Line of Defense (2LoD). This role is accountable for providing independent oversight and credible challenge of the First Line to ensure risks are appropriately identified, assessed, managed, monitored, and reported in alignment with regulatory requirements, industry standards, and internal risk appetite.
This position is intentionally designed for a senior, autonomous professional who can manage their own program portfolio, prioritize work based on material risk, and engage effectively with Information Security Services, Technology teams, and senior leadership.
Key Responsibilities
- Provide independent oversight and credible challenge across multiple security and technology pillars, including governance, risk assessments, controls, metrics, and issue management.
- Perform risk-based assessments of first line security practices, identifying gaps, weaknesses, thematic concerns, emerging risks, and control deficiencies.
- Develop and articulate independent risk opinions supported by sound analysis, evidence, and professional judgment.
- Evaluate alignment of first line activities with applicable laws, regulations, regulatory guidance, industry standards (e.g., NIST 800-53, FFIEC, PCI, NIST CSF 2.0, etc), and internal policies.
- Monitor key risk indicators, security metrics, assessment results, and issue trends to identify systemic risks or areas requiring escalation.
- Escalate material risks, control weaknesses, or ineffective risk management practices through appropriate governance and reporting channels.
- Act as a subject matter expert on technology and information security risk, providing insights and guidance to stakeholders while maintaining 2LoD independence.
- Build and maintain strong, professional relationships with first line stakeholders while confidently challenging assumptions, conclusions, and risk positions when necessary.
- Contribute to executive-level risk reporting by clearly summarizing risk posture, trends, and areas of concern in a concise and defensible manner.
- Stay current on evolving cybersecurity threats, regulatory expectations, and industry best practices to continuously strengthen oversight effectiveness.
Basic Qualifications
- Bachelor's degree, or equivalent work experience
- Typically more than eight years of applicable experience
Preferred Skills/Experience
- Strong foundational understanding of information security domains (e.g., vulnerability management, identity and access management, application security, cloud security, security governance, incident management).
- Demonstrated ability to perform risk assessments and oversight activities with depth, critical thinking, and professional skepticism.
- Experience operating in or with a Second Line of Defense, audit, or regulatory environment is strongly preferred.
- Proven ability to work independently and autonomously, managing priorities and delivering high-quality work with limited direction.
- Strong written and verbal communication skills, including the ability to translate technical risk into clear, executive-ready insights.
- Ability to engage confidently with senior stakeholders while maintaining independence, objectivity, and professionalism.
- Relevant certifications (e.g., CISSP, CISA, CRISC, CISM) are preferred but not required.
LOCATION EXPECTATIONS: This role requires working from a U.S. Bank Location three (3) or more days per week.
NOTE: This position is not eligible for current or future visa sponsorship.
If there's anything we can do to accommodate a disability during any portion of the application or hiring process, please refer to our disability accommodations for applicants.
Benefits:
Our approach to benefits and total rewards considers our team members' whole selves and what may be needed to thrive in and outside work. That's why our benefits are designed to help you and your family boost your health, protect your financial security and give you peace of mind. Our benefits include the following:
- Healthcare (medical, dental, vision)
- Basic term and optional term life insurance
- Short-term and long-term disability
- Pregnancy disability and parental leave
- 401(k) and employer-funded retirement plan
- Paid vacation (from two to five weeks depending on salary grade and tenure)
- Up to 11 paid holiday opportunities
- Adoption assistance
- Sick and Safe Leave accruals of one hour for every 30 worked, up to 80 hours per calendar year unless otherwise provided by law
Review our full benefits available by employment status here.
U.S. Bank is an equal opportunity employer. We consider all qualified applicants without regard to race, religion, color, sex, national origin, age, sexual orientation, gender identity, disability or veteran status, and other factors protected under applicable law.
E-Verify
U.S. Bank participates in the U.S. Department of Homeland Security E-Verify program in all facilities located in the United States and certain U.S. territories. The E-Verify program is an Internet-based employment eligibility verification system operated by the U.S. Citizenship and Immigration Services. Learn more about the E-Verify program.
The salary range reflects figures based on the primary location, which is listed first. The actual range for the role may differ based on the location of the role. In addition to salary, U.S. Bank offers a comprehensive benefits package, including incentive and recognition programs, equity stock purchase 401(k) contribution and pension (all benefits are subject to eligibility requirements). Pay Range: $119,765.00 - $140,900.00
U.S. Bank will consider qualified applicants with arrest or conviction records for employment. U.S. Bank conducts background checks consistent with applicable local laws, including the Los Angeles County Fair Chance Ordinance and the California Fair Chance Act as well as the San Francisco Fair Chance Ordinance. U.S. Bank is subject to, and conducts background checks consistent with the requirements of Section 19 of the Federal Deposit Insurance Act (FDIA). In addition, certain positions may also be subject to the requirements of FINRA, NMLS registration, Reg Z, Reg G, OFAC, the NFA, the FCPA, the Bank Secrecy Act, the SAFE Act, and/or federal guidelines applicable to an agreement, such as those related to ethics, safety, or operational procedures.
Applicants must be able to comply with U.S. Bank policies and procedures including the Code of Ethics and Business Conduct and related workplace conduct and safety policies.
Posting may be closed earlier due to high volume of applicants.
What U.S. Bank employees say
Pay
Benefits
Hours and flexibility
Workplace
Get the full story on Breakroom
About U.S. Bank
Sourced by ZipRecruiter
U.S. Bank is a reputable and established financial institution that plays a significant role in the banking sector. With a history spanning over 150 years, U.S. Bank has built a strong foundation of trust and reliability. As a comprehensive bank, they offer a wide array of financial products and services to cater to the diverse needs of their customers, including individuals, businesses, and communities. Customer satisfaction is of utmost importance to U.S. Bank. They prioritize delivering exceptional service and fostering long-term relationships with their clients. Through their extensive network of branches and advanced digital banking platforms, U.S. Bank ensures convenient access to their services, empowering customers to manage their finances efficiently and securely.
Industry
Banking and credit intermediation
Company size
10,000+ Employees
Headquarters location
Minneapolis, MN, US
Year founded
1863