... Risk Management Framework (RMF) packages to support cybersecurity authorization and compliance ... CompTIA Cybersecurity Analyst (CySA+) * Systems Security Certified Practitioner (SSCP) * GIAC ...
... Risk Management Framework (RMF) packages to support cybersecurity authorization and compliance ... CompTIA Cybersecurity Analyst (CySA+) * Systems Security Certified Practitioner (SSCP) * GIAC ...
... Risk Management Framework (RMF) packages to support cybersecurity authorization and compliance ... CompTIA Cybersecurity Analyst (CySA+) * Systems Security Certified Practitioner (SSCP) * GIAC ...
... Risk Management Framework (RMF) packages to support cybersecurity authorization and compliance ... CompTIA Cybersecurity Analyst (CySA+) * Systems Security Certified Practitioner (SSCP) * GIAC ...
Cybersecurity Policy Analyst
Columbus, OH · On-site
... Risk Management Framework (RMF) packages to support cybersecurity authorization and compliance ... CompTIA Cybersecurity Analyst (CySA+) * Systems Security Certified Practitioner (SSCP) * GIAC ...
Cybersecurity Policy Analyst
Columbus, OH · On-site
... Risk Management Framework (RMF) packages to support cybersecurity authorization and compliance ... CompTIA Cybersecurity Analyst (CySA+) * Systems Security Certified Practitioner (SSCP) * GIAC ...
Support includes assessing and continuously monitoring cybersecurity risk ensuring that legacy and ... Experience validating, evaluating and analyzing finding results and developer adjudications using ...
Support includes assessing and continuously monitoring cybersecurity risk ensuring that legacy and ... Experience validating, evaluating and analyzing finding results and developer adjudications using ...
... Risk Management Framework (RMF) packages to support cybersecurity authorization and compliance ... CompTIA Cybersecurity Analyst (CySA+) * Systems Security Certified Practitioner (SSCP) * GIAC ...
Quick apply
... Risk Management Framework (RMF) packages to support cybersecurity authorization and compliance ... CompTIA Cybersecurity Analyst (CySA+) * Systems Security Certified Practitioner (SSCP) * GIAC ...
Support includes assessing and continuously monitoring cybersecurity risk ensuring that legacy and ... Experience validating, evaluating and analyzing finding results and developer adjudications using ...
Support includes assessing and continuously monitoring cybersecurity risk ensuring that legacy and ... Experience validating, evaluating and analyzing finding results and developer adjudications using ...
Cybersecurity Engineer, Senior (ISSM)
Dayton, OH · On-site
$55.75 - $68.25/hr
Support includes assessing and continuously monitoring cybersecurity risk ensuring that legacy and ... Experience validating, evaluating and analyzing finding results and developer adjudications using ...
Cybersecurity Engineer, Senior (ISSM)
Dayton, OH · On-site
$55.75 - $68.25/hr
Support includes assessing and continuously monitoring cybersecurity risk ensuring that legacy and ... Experience validating, evaluating and analyzing finding results and developer adjudications using ...
Support includes assessing and continuously monitoring cybersecurity risk ensuring that legacy and ... Experience validating, evaluating and analyzing finding results and developer adjudications using ...
Support includes assessing and continuously monitoring cybersecurity risk ensuring that legacy and ... Experience validating, evaluating and analyzing finding results and developer adjudications using ...
Support includes assessing and continuously monitoring cybersecurity risk ensuring that legacy and ... Experience validating, evaluating and analyzing finding results and developer adjudications using ...
Support includes assessing and continuously monitoring cybersecurity risk ensuring that legacy and ... Experience validating, evaluating and analyzing finding results and developer adjudications using ...
... Security, Risk Assessment and Mitigation methodologies, and Counter Threat Operations ... Qualifications Cyber Security Analyst/Implementation Specialist - need someone that has broad ...
... Security, Risk Assessment and Mitigation methodologies, and Counter Threat Operations ... Qualifications Cyber Security Analyst/Implementation Specialist - need someone that has broad ...
The Information Security Risk Oversight Professional serves as a key member of the Cybersecurity ... Develop and articulate independent risk opinions supported by sound analysis, evidence, and ...
The Information Security Risk Oversight Professional serves as a key member of the Cybersecurity ... Develop and articulate independent risk opinions supported by sound analysis, evidence, and ...
The Information Security Risk Oversight Professional serves as a key member of the Cybersecurity ... Develop and articulate independent risk opinions supported by sound analysis, evidence, and ...
The Information Security Risk Oversight Professional serves as a key member of the Cybersecurity ... Develop and articulate independent risk opinions supported by sound analysis, evidence, and ...
Cyber Security Engineer
Dublin, OH · On-site
Job Title: Cyber Security Engineer We are seeking a skilled Cyber Security Engineer to join our ... Perform vulnerability assessments, penetration testing, and risk analysis on systems and ...
Cyber Security Engineer
Dublin, OH · On-site
Job Title: Cyber Security Engineer We are seeking a skilled Cyber Security Engineer to join our ... Perform vulnerability assessments, penetration testing, and risk analysis on systems and ...
Demonstrated experience leveraging or governing AI/ML, automation, or advanced analytics within cybersecurity, risk, or compliance domains preferred. * Strong understanding of data architectures ...
Demonstrated experience leveraging or governing AI/ML, automation, or advanced analytics within cybersecurity, risk, or compliance domains preferred. * Strong understanding of data architectures ...
Apply expert-level knowledge of the Risk Management Framework (RMF), including NIST SP 800-53 ... Review and analyze system logs and alerts generated by the SIEM to detect potential threats and ...
Apply expert-level knowledge of the Risk Management Framework (RMF), including NIST SP 800-53 ... Review and analyze system logs and alerts generated by the SIEM to detect potential threats and ...
Embedded Product Cybersecurity Engineer - Embedded Software
Evendale, OH · On-site
$120K - $158K/yr
Conduct comprehensive cybersecurity risk assessments on embedded products with varying levels of safety-criticality. * Analyze hardware and software architectures for cybersecurity risks and ...
Embedded Product Cybersecurity Engineer - Embedded Software
Evendale, OH · On-site
$120K - $158K/yr
Conduct comprehensive cybersecurity risk assessments on embedded products with varying levels of safety-criticality. * Analyze hardware and software architectures for cybersecurity risks and ...
Cybersecurity SME
Dayton, OH · On-site
$90K - $140K/yr
... Chain Risk Management, Acquisition Security, Cyber Resiliency, and Information Protection ... RMF analysis. * Assist in evaluating the technical implementation of the security design to ...
Cybersecurity SME
Dayton, OH · On-site
$90K - $140K/yr
... Chain Risk Management, Acquisition Security, Cyber Resiliency, and Information Protection ... RMF analysis. * Assist in evaluating the technical implementation of the security design to ...
Embedded Product Cybersecurity Engineer - Embedded Software
Evendale, OH · On-site
$126K - $166K/yr
Conduct comprehensive cybersecurity risk assessments on embedded products with varying levels of safety-criticality. * Analyze hardware and software architectures for cybersecurity risks and ...
Embedded Product Cybersecurity Engineer - Embedded Software
Evendale, OH · On-site
$126K - $166K/yr
Conduct comprehensive cybersecurity risk assessments on embedded products with varying levels of safety-criticality. * Analyze hardware and software architectures for cybersecurity risks and ...
Provide credible challenge of risk analyses, control selection, and control design/operating ... Bachelor's degree in computer science, cybersecurity, data science, or related field (or equivalent ...
Provide credible challenge of risk analyses, control selection, and control design/operating ... Bachelor's degree in computer science, cybersecurity, data science, or related field (or equivalent ...
Provide credible challenge of risk analyses, control selection, and control design/operating ... Bachelor's degree in computer science, cybersecurity, data science, or related field (or equivalent ...
Provide credible challenge of risk analyses, control selection, and control design/operating ... Bachelor's degree in computer science, cybersecurity, data science, or related field (or equivalent ...
Cyber Security Risk Analyst information
See Ohio salary details
$40.9K - $50.1K
1% of jobs
$50.1K - $59.4K
6% of jobs
$59.4K - $68.6K
10% of jobs
$74.9K is the 25th percentile. Wages below this are outliers.
$68.6K - $77.9K
12% of jobs
$77.9K - $87.1K
15% of jobs
The median wage is $91.1K / yr.
$87.1K - $96.4K
15% of jobs
$96.4K - $105.6K
10% of jobs
$109.6K is the 75th percentile. Wages above this are outliers.
$105.6K - $114.9K
16% of jobs
$114.9K - $124.1K
7% of jobs
$124.1K - $133.4K
5% of jobs
$133.4K - $142.6K
3% of jobs
$40.9K
$94.5K
$142.6K
How much do cyber security risk analyst jobs pay per year?
What are the key skills and qualifications needed to thrive in the Cyber Security Risk Analyst position, and why are they important?
A Cyber Security Risk Analyst requires a solid understanding of information security principles, risk assessment methodologies, and a relevant degree such as computer science or cybersecurity. Familiarity with tools like risk management frameworks (NIST, ISO 27001), vulnerability scanners, and certifications such as CISSP, CISM, or CRISC is common in this role. Strong analytical thinking, attention to detail, effective communication, and problem-solving skills are vital soft skills. These competencies enable analysts to accurately identify, assess, and communicate cyber risks, protecting organizations from evolving threats.
What is a Cyber Security Risk Analyst job?
A Cyber Security Risk Analyst is responsible for identifying, assessing, and mitigating cybersecurity risks within an organization. They analyze potential threats, evaluate security controls, and recommend improvements to protect sensitive data and systems. Their role often involves conducting risk assessments, ensuring compliance with industry regulations, and collaborating with IT and security teams to enhance defenses. They also monitor emerging threats and provide strategic insights to minimize vulnerabilities. Ultimately, they help organizations maintain a strong security posture against cyber threats.
What are some typical challenges faced by Cyber Security Risk Analysts on the job?
Cyber Security Risk Analysts commonly face the challenge of keeping up with constantly evolving threats and technology landscapes. They must balance the need for robust security with business objectives, often requiring nuanced decision-making and collaboration across departments. Analysts may also encounter difficulties in communicating complex technical risks to non-technical stakeholders. Successfully navigating these challenges is key to maintaining organizational security and fostering a culture of risk awareness.
Other
Posted 27 days ago
Job description
AGE Solutions is looking for a Cybersecurity Policy Analyst to leads the review, consolidation, and development of cybersecurity policies in alignment with government standards. Ensures that these policies strike a balance between security imperatives and operational efficiency. Regularly briefs senior management on the evolution, updates, and progress of cybersecurity initiatives, fostering an informed and proactive leadership approach.
Responsibilities Include:
- Develop, refine, and integrate cybersecurity policies and governance frameworks in accordance with government requirements while supporting organizational security objectives and operational effectiveness.
- Maintain, update, and improve Cyber Security Service Provider (CSSP) processes, policies, and procedures with an emphasis on enterprise-level incident response operations supporting the government work environment.
- Conduct ongoing assessments and revisions of the government's Cyber Security Standard Operating Procedures (SOPs) and Tactics, Techniques, and Procedures (TTPs) to ensure alignment with evolving operational requirements, cybersecurity standards, and organizational objectives.
- Monitor, assess, and validate compliance within the government's cybersecurity directives, standards, and regulatory requirements to support secure and compliant enterprise operations.
- Support government adherence to Cyber Defense directives through the coordination, tracking, and validation of recurring and long-term cybersecurity compliance requirements and implementation efforts.
- Coordinate the distribution and communication of critical cybersecurity and compliance-related information to support organizational reporting, validation efforts, and regulatory requirements.
- Support preparation activities for Cyber Security Service Provider (CSSP) evaluations, audits, and performance assessments while assisting with compliance validation against established cybersecurity metrics and standards.
- Compile, analyze, and report on Cyber Security Service Provider (CSSP) artifacts, inspection data, and performance metrics to support cybersecurity assessments, compliance initiatives, and organizational reporting requirements.
- Support the coordination, planning, and execution of cybersecurity exercises, including tabletop and operational readiness activities, for government programs, systems, and enterprise applications to strengthen incident response and security preparedness capabilities.
- Develop post-exercise reports and documentation, including after-action reviews and lessons learned, to support continuous improvement of cybersecurity readiness, response procedures, and operational effectiveness.
- Provide support to government programs and enterprise applications in the development, coordination, and maintenance of Risk Management Framework (RMF) packages to support cybersecurity authorization and compliance requirements.
- Assist government personnel with preparation activities for Cyber Security Service Provider (CSSP) evaluations, cybersecurity inspections, and compliance audits to support operational readiness and regulatory adherence.
- Coordinate the collection, organization, and compilation of cybersecurity data and supporting documentation for Cyber Security Service Provider (CSSP) metrics, assessments, and reporting requirements.
- Prepare, maintain, and update cybersecurity training materials to support the implementation and transition of incident response and analysis procedures for government system administrators, information assurance personnel, and incident response teams.
- Conduct and facilitate cybersecurity training sessions in both classroom and virtual environments, including delivery through video teleconference platforms to support distributed personnel and operational requirements.
- Provide executive-level briefings to senior leadership on cybersecurity policy updates, implementation progress, compliance status, and emerging security requirements impacting organizational operations.
- Provide technical guidance and subject matter expertise in the development, maintenance, evaluation, and review of cybersecurity policies in accordance with government standards and requirements.
- Maintain comprehensive knowledge of government cybersecurity principles, policies, procedures, and implementation frameworks to support secure operations while balancing organizational and mission-critical operational requirements.
Required Skills, Qualifications, and Experience:
- Experience:
- Minimum of seven (7) years of relevant cybersecurity policy experience.
- Security Clearance:
- DoD Top Secret Clearance with SCI eligibility and IT-I access.
- Certifications:
- DoD 8570 IAT Level II Certification or higher (one of the following):
- CompTIA Security+ CE
- CompTIA Cybersecurity Analyst (CySA+)
- Systems Security Certified Practitioner (SSCP)
- GIAC Security Essentials Certification (GSEC)
- Cisco Certified Network Associate (CCNA)
- Global Industrial Cyber Security Professional (GICSP).
- Computing Environment Certification - DoD 8570 CSSP (one of the following):
- Certified Ethical Hacker (CEH)
- CompTIA Cybersecurity Analyst (CySA+)
- GIAC Certified Incident Handler (GCIH)
- Certified Information Systems Auditor (CISA)
- GIAC Systems and Network Auditor (GSNA)
- Certified SCADA Security Architect (SCYBER)
- GIAC Certified Forensic Analyst (GCFA)
- CyberSec First Responder (CFR).
- DoD 8570 IAT Level II Certification or higher (one of the following):
The projected salary range for this position is $90,000+ annually. Final compensation will be determined based on factors including years of relevant experience, active security clearance level, certifications, technical skillset, contract requirements, and overall qualifications.