1

Cyber Security Risk Analyst Jobs in Pennsylvania

Cybersecurity Engineer

Mechanicsburg, PA · On-site

$150K - $185K/yr

The role requires deep expertise in cybersecurity engineering, security compliance automation, cloud security, vulnerability analysis, risk assessment, and governance, risk, and compliance (GRC ...

Cybersecurity Senior GRC Analyst

Denver, PA

$96K - $123K/yr

Job Summary The Governance Risk & Compliance (GRC) Cybersecurity Senior Analyst plays a critical role in ensuring that UGI Utilities Inc. operates within its regulatory, legal, and compliance ...

Cybersecurity Engineer

Mechanicsburg, PA · On-site

$150K - $185K/yr

The role requires deep expertise in cybersecurity engineering, security compliance automation, cloud security, vulnerability analysis, risk assessment, and governance, risk, and compliance (GRC ...

Cybersecurity Engineer

Mechanicsburg, PA · On-site

$150K - $185K/yr

The role requires deep expertise in cybersecurity engineering, security compliance automation, cloud security, vulnerability analysis, risk assessment, and governance, risk, and compliance (GRC ...

Cybersecurity Senior GRC Analyst

Denver, PA · On-site

$96K - $123K/yr

Job Summary The Governance Risk & Compliance (GRC) Cybersecurity Senior Analyst plays a critical role in ensuring that UGI Utilities Inc. operates within its regulatory, legal, and compliance ...

Cybersecurity Engineer

Mechanicsburg, PA · On-site

$150K - $185K/yr

The role requires deep expertise in cybersecurity engineering, security compliance automation, cloud security, vulnerability analysis, risk assessment, and governance, risk, and compliance (GRC ...

Cybersecurity events System failures and outages Data loss and disclosure events Privilege misuse ... Performs Monte Carlo, scenario-based, and probabilistic analyses where applicable. Supports capital ...

This position balances security risk management with business enablement and drives continuous ... analysis and corrective action implementation. Identity, Access & Data Protection * Lead the ...

New

System Cybersecurity Architect

Pittsburgh, PA · Hybrid

$235K/yr

Experience performing vulnerability assessments and cybersecurity risk assessments. * Knowledge of ... Analytical thinking and problem-solving skills to identify and mitigate cybersecurity risks.

System Cybersecurity Architect

Pittsburgh, PA · Hybrid

$225K/yr

Experience performing vulnerability assessments and cybersecurity risk assessments. * Knowledge of ... Analytical thinking and problem-solving skills to identify and mitigate cybersecurity risks.

next page

Showing results 1-20

Cyber Security Risk Analyst information

See Pennsylvania salary details

$43.1K

$99.6K

$150.4K

How much do cyber security risk analyst jobs pay per year?

As of Aug 20, 2026, the average yearly pay for cyber security risk analyst in Pennsylvania is $99,639.00, according to ZipRecruiter salary data. Most workers in this role earn between $79,700.00 and $115,800.00 per year, depending on experience, location, and employer.

What is a cyber security risk analyst?

A Cyber Security Risk Analyst is responsible for identifying, assessing, and mitigating cybersecurity risks within an organization. They analyze potential threats, evaluate security controls, and recommend improvements to protect sensitive data and systems. Their role often involves conducting risk assessments, ensuring compliance with industry regulations, and collaborating with IT and security teams to enhance defenses. They also monitor emerging threats and provide strategic insights to minimize vulnerabilities. Ultimately, they help organizations maintain a strong security posture against cyber threats.

What are some typical challenges faced by cyber security risk analysts on the job?

Cyber Security Risk Analysts commonly face the challenge of keeping up with constantly evolving threats and technology landscapes. They must balance the need for robust security with business objectives, often requiring nuanced decision-making and collaboration across departments. Analysts may also encounter difficulties in communicating complex technical risks to non-technical stakeholders. Successfully navigating these challenges is key to maintaining organizational security and fostering a culture of risk awareness.

What are the key skills and qualifications needed to thrive in the cyber security risk analyst position, and why are they important?

A Cyber Security Risk Analyst requires a solid understanding of information security principles, risk assessment methodologies, and a relevant degree such as computer science or cybersecurity. Familiarity with tools like risk management frameworks (NIST, ISO 27001), vulnerability scanners, and certifications such as CISSP, CISM, or CRISC is common in this role. Strong analytical thinking, attention to detail, effective communication, and problem-solving skills are vital soft skills. These competencies enable analysts to accurately identify, assess, and communicate cyber risks, protecting organizations from evolving threats.

How much does a cyber security risk analyst make?

The average salary for a cyber security risk analyst in the United States ranges from $70,000 to $120,000 annually, depending on experience, certifications, and location. Entry-level positions typically start around $60,000, while experienced analysts with certifications like CISSP or CISA can earn over $130,000. The role often requires knowledge of risk assessment tools and security frameworks.

What are the most commonly searched types of Cyber Security Risk Analyst jobs in Pennsylvania?

The most popular types of Cyber Security Risk Analyst jobs in Pennsylvania are:

What are popular job titles related to Cyber Security Risk Analyst jobs in Pennsylvania?

For Cyber Security Risk Analyst jobs in Pennsylvania, the most frequently searched job titles are:

What job categories do people searching Cyber Security Risk Analyst jobs in Pennsylvania look for?

The top searched job categories for Cyber Security Risk Analyst jobs in Pennsylvania are:

What cities in Pennsylvania are hiring for Cyber Security Risk Analyst jobs?

Cities in Pennsylvania with the most Cyber Security Risk Analyst job openings:

Infographic showing various Cyber Security Risk Analyst job openings in Pennsylvania as of August 2026, with employment types broken down into 81% Full Time, 17% Part Time, and 2% Contract. Highlights an 92% Physical, 3% Hybrid, and 5% Remote job distribution, with an average salary of $99,639 per year, or $47.9 per hour.

Vulnerability Risk Analyst

RIT Solutions, Inc.

Malvern, PA • On-site

Full-time

Re-posted 25 days ago


Job description

Job Summary:
RIT Solutions, Inc. is a company focused on cybersecurity solutions, and they are seeking a Vulnerability Risk Analyst. The role involves preparing detailed reports on vulnerabilities, conducting independent analyses, and leading efforts in vulnerability management to ensure the security posture of the organization.
Responsibilities:
• Prepare detailed reporting on vulnerabilities and related risks, integrating risk concepts such as impact and likelihood to ensure proper prioritization. Reporting will outline security posture, vulnerability trends, and mitigation results.
• Conducts independent analysis of vulnerabilities to identify thematic issues, and impact on systems. Support risk scoring.
• Leads scrums and huddles to support the tracking of vulnerability management efforts. Maintain Kanban boards that track remediation efforts.
• Supports the documentation of process & controls gaps that contribute to vulnerability risk.
• Coordinates with Technical Security Advisors to ensure remediation plans and status are up-to-date and accurate.
• Maintaining vulnerability management procedures.
• Participates in special projects and performs other duties as assigned.
Qualifications:
Required:
• Microsoft 365 and Copilot: Robust understanding of Microsoft 365 and Copilot functionalities, including integration and customization.
• Bachelor's degree in Cybersecurity, Information Systems, Computer Science, or equivalent practical experience.
• Security certification(s) preferred (e.g., Security+, SSCP, CISSP or equivalent), especially if the role will independently assess risk treatment quality.
• Demonstrated foundation in cybersecurity principles (vulnerability lifecycle, risk concepts, remediation approaches) and the ability to apply them in an enterprise environment.
• Proven security expertise across infrastructure products and services.
• Working knowledge of vulnerability management outcomes: identifying, assessing, prioritizing, and enabling workflows that help drive vulnerabilities to closure or approved treatment.
• Experience supporting or governing vulnerability scanning/assessment programs for enterprise assets (on prem and/or cloud workloads), including compliance to remediation SLAs.
• Ability to perform a structured investigation of a suspected false positive and document the outcome and decision path.
• Ability to explain a vulnerability's impact in plain business terms and produce a concise risk treatment summary that is approver‐ready.
• Ability to support downgrade/override decisions with written rationale that is auditable and explicitly scope.
• Proficiency in creating, structuring, and analyzing datasets using automation, development frameworks, and AI‐driven tools.
• Robust writing skills to produce audit‐ready rationales and summaries (risk acceptances, downgrade rationale, false positive outcomes).
• Comfortable facilitating discussions with technical and non‐technical stakeholders to clarify facts, confirm remediation options, and drive decisions.
• Robust attention to detail for data accuracy.
• Familiarity with vulnerability and posture tooling across on‐prem and cloud contexts.
• Experience with reporting ecosystems.
Company:
Jobdiva Job Portal: https://www1.jobdiva.com/candidates/myjobs/searchjobsdone.jsp?a=xbjdnwgjodtga1y1im2g881fkkeiwd0775lbvq8yqgps8vb2q36w2vj1ga6xxork&compid=-1 Recruitment (contingency search and campus selection). Founded in 2019, the company is headquartered in Arlington, USA, with a team of 201-500 employees. The company is currently Growth Stage.