1

Cyber Security Risk Analyst Jobs in Minnesota (NOW HIRING)

Extensive data analytics experience in fraud analytics, fraud prevention, risk management, financial services, cybersecurity, or a related field, and experience translating findings into business ...

The Fraud Risk Analyst develops data-driven insights and strategies that strengthen fraud ... cybersecurity, or a related field, and experience translating findings into business ...

Cybersecurity Engineer

Virginia, MN · On-site

$100 - $156/hr

... risk assessments against known vulnerabilities. * Identify and perform security analysis of ... Conduct cybersecurity related research, analysis and coordination activities insupport of DOD cyber ...

The Lead Cybersecurity Specialist within the Legence IT Security organization will be responsible ... cyber analysts tasked with advancing Legence's security posture and reducing risk. This role is ...

The Lead Cybersecurity Specialist within the Legence IT Security organization will be responsible ... cyber analysts tasked with advancing Legence's security posture and reducing risk. This role is ...

The Lead Cybersecurity Specialist within the Legence IT Security organization will be responsible ... cyber analysts tasked with advancing Legence's security posture and reducing risk. This role is ...

next page

Showing results 1-20

Cyber Security Risk Analyst information

See Minnesota salary details

$42.1K

$97.4K

$146.9K

How much do cyber security risk analyst jobs pay per year?

As of Aug 9, 2026, the average yearly pay for cyber security risk analyst in Minnesota is $97,353.00, according to ZipRecruiter salary data. Most workers in this role earn between $77,900.00 and $113,100.00 per year, depending on experience, location, and employer.

What are the key skills and qualifications needed to thrive in the cyber security risk analyst position, and why are they important?

A Cyber Security Risk Analyst requires a solid understanding of information security principles, risk assessment methodologies, and a relevant degree such as computer science or cybersecurity. Familiarity with tools like risk management frameworks (NIST, ISO 27001), vulnerability scanners, and certifications such as CISSP, CISM, or CRISC is common in this role. Strong analytical thinking, attention to detail, effective communication, and problem-solving skills are vital soft skills. These competencies enable analysts to accurately identify, assess, and communicate cyber risks, protecting organizations from evolving threats.

What is a cyber security risk analyst?

A Cyber Security Risk Analyst is responsible for identifying, assessing, and mitigating cybersecurity risks within an organization. They analyze potential threats, evaluate security controls, and recommend improvements to protect sensitive data and systems. Their role often involves conducting risk assessments, ensuring compliance with industry regulations, and collaborating with IT and security teams to enhance defenses. They also monitor emerging threats and provide strategic insights to minimize vulnerabilities. Ultimately, they help organizations maintain a strong security posture against cyber threats.

What are some typical challenges faced by cyber security risk analysts on the job?

Cyber Security Risk Analysts commonly face the challenge of keeping up with constantly evolving threats and technology landscapes. They must balance the need for robust security with business objectives, often requiring nuanced decision-making and collaboration across departments. Analysts may also encounter difficulties in communicating complex technical risks to non-technical stakeholders. Successfully navigating these challenges is key to maintaining organizational security and fostering a culture of risk awareness.

What does a cybersecurity risk analyst do?

A cybersecurity risk analyst evaluates an organization’s security posture by identifying vulnerabilities, assessing potential threats, and analyzing risks to information systems. They develop strategies to mitigate risks, often using tools like risk assessment frameworks and security audits, and may hold certifications such as CISSP or CISA. Their work helps organizations protect sensitive data and ensure compliance with security standards.

How much does a cyber security risk analyst make?

The average salary for a cyber security risk analyst is around $80,000 to $110,000 per year, depending on experience, certifications, and location. Entry-level positions typically start lower, while experienced analysts with certifications like CISSP or CISA can earn higher salaries. The role often requires knowledge of risk assessment tools and security frameworks.
What are the most commonly searched types of Cyber Security Risk Analyst jobs in Minnesota? The most popular types of Cyber Security Risk Analyst jobs in Minnesota are:
What cities in Minnesota are hiring for Cyber Security Risk Analyst jobs? Cities in Minnesota with the most Cyber Security Risk Analyst job openings:
Infographic showing various Cyber Security Risk Analyst job openings in Minnesota as of August 2026, with employment types broken down into 100% Full Time. Highlights an 100% In-person job distribution, with an average salary of $97,353 per year, or $46.8 per hour.

Cybersecurity Risk Oversight Professional

U.S. Bank

Minneapolis, MN • On-site

Full-time

Medical, Dental, Vision, Life, Retirement, PTO

This job post has expired 2 days ago. Applications are no longer accepted.


U.S. Bank rating

8.2

Company rating: 8.2 out of 10

Based on 360 frontline employees who took The Breakroom Quiz

51st of 170 rated banks


Job description

At U.S. Bank, we're on a journey to do our best. Helping the customers and businesses we serve to make better and smarter financial decisions and enabling the communities we support to grow and succeed. We believe it takes all of us to bring our shared ambition to life, and each person is unique in their potential. A career with U.S. Bank gives you a wide, ever-growing range of opportunities to discover what makes you thrive at every stage of your career. Try new things, learn new skills and discover what you excel at-all from Day One.
Job Description
NOTE: This position is not eligible for current or future visa sponsorship.
The Cybersecurity Risk Oversight Professional serves as a key member of the Cybersecurity Risk Oversight team within the Second Line of Defense (2LoD). This role is accountable for providing independent oversight and credible challenge of the First Line to ensure risks are appropriately identified, assessed, managed, monitored, and reported in alignment with regulatory requirements, industry standards, and internal risk appetite.
This position is intentionally designed for a senior, autonomous professional who can manage their own program portfolio, prioritize work based on material risk, and engage effectively with Information Security Services, Technology teams, and senior leadership.
Key Responsibilities
  • Provide independent oversight and credible challenge across multiple security and technology pillars, including governance, risk assessments, controls, metrics, and issue management.
  • Perform risk-based assessments of first line security practices, identifying gaps, weaknesses, thematic concerns, emerging risks, and control deficiencies.
  • Develop and articulate independent risk opinions supported by sound analysis, evidence, and professional judgment.
  • Evaluate alignment of first line activities with applicable laws, regulations, regulatory guidance, industry standards (e.g., NIST 800-53, FFIEC, PCI, NIST CSF 2.0, etc), and internal policies.
  • Monitor key risk indicators, security metrics, assessment results, and issue trends to identify systemic risks or areas requiring escalation.
  • Escalate material risks, control weaknesses, or ineffective risk management practices through appropriate governance and reporting channels.
  • Act as a subject matter expert on technology and information security risk, providing insights and guidance to stakeholders while maintaining 2LoD independence.
  • Build and maintain strong, professional relationships with first line stakeholders while confidently challenging assumptions, conclusions, and risk positions when necessary.
  • Contribute to executive-level risk reporting by clearly summarizing risk posture, trends, and areas of concern in a concise and defensible manner.
  • Stay current on evolving cybersecurity threats, regulatory expectations, and industry best practices to continuously strengthen oversight effectiveness.

Basic Qualifications
  • Bachelor's degree, or equivalent work experience
  • Typically more than eight years of applicable experience

Preferred Skills/Experience
  • Strong foundational understanding of information security domains (e.g., vulnerability management, identity and access management, application security, cloud security, security governance, incident management).
  • Demonstrated ability to perform risk assessments and oversight activities with depth, critical thinking, and professional skepticism.
  • Experience operating in or with a Second Line of Defense, audit, or regulatory environment is strongly preferred.
  • Proven ability to work independently and autonomously, managing priorities and delivering high-quality work with limited direction.
  • Strong written and verbal communication skills, including the ability to translate technical risk into clear, executive-ready insights.
  • Ability to engage confidently with senior stakeholders while maintaining independence, objectivity, and professionalism.
  • Relevant certifications (e.g., CISSP, CISA, CRISC, CISM) are preferred but not required.

LOCATION EXPECTATIONS: This role requires working from a U.S. Bank Location three (3) or more days per week.
NOTE: This position is not eligible for current or future visa sponsorship.
If there's anything we can do to accommodate a disability during any portion of the application or hiring process, please refer to our disability accommodations for applicants.
Benefits:
Our approach to benefits and total rewards considers our team members' whole selves and what may be needed to thrive in and outside work. That's why our benefits are designed to help you and your family boost your health, protect your financial security and give you peace of mind. Our benefits include the following:
  • Healthcare (medical, dental, vision)
  • Basic term and optional term life insurance
  • Short-term and long-term disability
  • Pregnancy disability and parental leave
  • 401(k) and employer-funded retirement plan
  • Paid vacation (from two to five weeks depending on salary grade and tenure)
  • Up to 11 paid holiday opportunities
  • Adoption assistance
  • Sick and Safe Leave accruals of one hour for every 30 worked, up to 80 hours per calendar year unless otherwise provided by law

Review our full benefits available by employment status here.
U.S. Bank is an equal opportunity employer. We consider all qualified applicants without regard to race, religion, color, sex, national origin, age, sexual orientation, gender identity, disability or veteran status, and other factors protected under applicable law.
E-Verify
U.S. Bank participates in the U.S. Department of Homeland Security E-Verify program in all facilities located in the United States and certain U.S. territories. The E-Verify program is an Internet-based employment eligibility verification system operated by the U.S. Citizenship and Immigration Services. Learn more about the E-Verify program.
The salary range reflects figures based on the primary location, which is listed first. The actual range for the role may differ based on the location of the role. In addition to salary, U.S. Bank offers a comprehensive benefits package, including incentive and recognition programs, equity stock purchase 401(k) contribution and pension (all benefits are subject to eligibility requirements). Pay Range: $119,765.00 - $140,900.00
U.S. Bank will consider qualified applicants with arrest or conviction records for employment. U.S. Bank conducts background checks consistent with applicable local laws, including the Los Angeles County Fair Chance Ordinance and the California Fair Chance Act as well as the San Francisco Fair Chance Ordinance. U.S. Bank is subject to, and conducts background checks consistent with the requirements of Section 19 of the Federal Deposit Insurance Act (FDIA). In addition, certain positions may also be subject to the requirements of FINRA, NMLS registration, Reg Z, Reg G, OFAC, the NFA, the FCPA, the Bank Secrecy Act, the SAFE Act, and/or federal guidelines applicable to an agreement, such as those related to ethics, safety, or operational procedures.
Applicants must be able to comply with U.S. Bank policies and procedures including the Code of Ethics and Business Conduct and related workplace conduct and safety policies.
Posting may be closed earlier due to high volume of applicants.

What U.S. Bank employees say

Pay

Benefits

Hours and flexibility

Workplace

Get the full story on Breakroom


U.S. Bank logo

About U.S. Bank

Sourced by ZipRecruiter

U.S. Bank is a reputable and established financial institution that plays a significant role in the banking sector. With a history spanning over 150 years, U.S. Bank has built a strong foundation of trust and reliability. As a comprehensive bank, they offer a wide array of financial products and services to cater to the diverse needs of their customers, including individuals, businesses, and communities. Customer satisfaction is of utmost importance to U.S. Bank. They prioritize delivering exceptional service and fostering long-term relationships with their clients. Through their extensive network of branches and advanced digital banking platforms, U.S. Bank ensures convenient access to their services, empowering customers to manage their finances efficiently and securely.

Industry

Banking and credit intermediation

Company size

10,000+ Employees

Headquarters location

Minneapolis, MN, US

Year founded

1863

Social media