1

Cyber Security Risk Analyst Jobs in Baltimore, MD

This role is responsible for conducting risk assessments, enhancing security practices, evaluating ... Cybersecurity GRC Analyst * Information Security Analyst (Governance/Risk) * IT Risk Analyst

... Risk Analyst, Cyber Defense Analyst, Network Security Analyst, IT Security Specialist, Security Consultant, Cybersecurity Specialist, Malware Analyst, Security Architect, ect. DEGREE (Level Desired ...

General information Job Posting Title Cybersecurity Analyst Date Tuesday, August 4, 2026 City ... risk and vulnerability management activities vital to safeguarding critical systems and data in ...

next page

Showing results 1-20

Cyber Security Risk Analyst information

See Baltimore, MD salary details

$42.7K

$98.8K

$149K

How much do cyber security risk analyst jobs pay per year?

As of Aug 15, 2026, the average yearly pay for cyber security risk analyst in Baltimore, MD is $98,768.00, according to ZipRecruiter salary data. Most workers in this role earn between $79,000.00 and $114,800.00 per year, depending on experience, location, and employer.

What are the key skills and qualifications needed to thrive in the cyber security risk analyst position, and why are they important?

A Cyber Security Risk Analyst requires a solid understanding of information security principles, risk assessment methodologies, and a relevant degree such as computer science or cybersecurity. Familiarity with tools like risk management frameworks (NIST, ISO 27001), vulnerability scanners, and certifications such as CISSP, CISM, or CRISC is common in this role. Strong analytical thinking, attention to detail, effective communication, and problem-solving skills are vital soft skills. These competencies enable analysts to accurately identify, assess, and communicate cyber risks, protecting organizations from evolving threats.

What is a cyber security risk analyst?

A Cyber Security Risk Analyst is responsible for identifying, assessing, and mitigating cybersecurity risks within an organization. They analyze potential threats, evaluate security controls, and recommend improvements to protect sensitive data and systems. Their role often involves conducting risk assessments, ensuring compliance with industry regulations, and collaborating with IT and security teams to enhance defenses. They also monitor emerging threats and provide strategic insights to minimize vulnerabilities. Ultimately, they help organizations maintain a strong security posture against cyber threats.

What are some typical challenges faced by cyber security risk analysts on the job?

Cyber Security Risk Analysts commonly face the challenge of keeping up with constantly evolving threats and technology landscapes. They must balance the need for robust security with business objectives, often requiring nuanced decision-making and collaboration across departments. Analysts may also encounter difficulties in communicating complex technical risks to non-technical stakeholders. Successfully navigating these challenges is key to maintaining organizational security and fostering a culture of risk awareness.

What does a cybersecurity risk analyst do?

A cybersecurity risk analyst evaluates an organization’s security posture by identifying vulnerabilities, assessing potential threats, and analyzing risks to information systems. They develop strategies to mitigate risks, often using tools like risk assessment frameworks and security audits, and may hold certifications such as CISSP or CISA. Their work helps organizations protect sensitive data and ensure compliance with security standards.

How much does a cyber security risk analyst make?

The average salary for a cyber security risk analyst is around $80,000 to $110,000 per year, depending on experience, certifications, and location. Entry-level positions typically start lower, while experienced analysts with certifications like CISSP or CISA can earn higher salaries. The role often requires knowledge of risk assessment tools and security frameworks.

What are the most commonly searched types of Cyber Security Risk Analyst jobs in Baltimore, MD?

The most popular types of Cyber Security Risk Analyst jobs in Baltimore, MD are:

What job categories do people searching Cyber Security Risk Analyst jobs in Baltimore, MD look for?

The top searched job categories for Cyber Security Risk Analyst jobs in Baltimore, MD are:

What cities near Baltimore, MD are hiring for Cyber Security Risk Analyst jobs?

Cities near Baltimore, MD with the most Cyber Security Risk Analyst job openings:

Infographic showing various Cyber Security Risk Analyst job openings in Baltimore, MD as of August 2026, with employment types broken down into 100% Full Time. Highlights an 100% In-person job distribution, with an average salary of $98,768 per year, or $47.5 per hour.

Cybersecurity GRC Analyst

System One Holdings, LLC

Owings Mills, MD • On-site

$51.35/hr

Full-time

PTO

Posted 5 days ago


Job description

Cybersecurity GRC Analyst (Remote)
Location: 100% Remote
Rate: $51/hour (No PTO)
Overview
We are seeking a Cybersecurity GRC Analyst to support enterprise-wide cybersecurity risk management, governance, and compliance initiatives. This role is responsible for conducting risk assessments, enhancing security practices, evaluating controls, and helping protect organizational data from unauthorized access, disclosure, or misuse.
The ideal candidate will have experience in cybersecurity governance, risk management, compliance, IT audit, and security controls, along with exposure to ServiceNow and database environments.
Key Responsibilities
  • Conduct cybersecurity risk assessments and control evaluations.
  • Develop and enhance organization-wide security policies, standards, and best practices.
  • Research emerging threats, vulnerabilities, and security trends, providing recommendations to leadership.
  • Support governance, risk, and compliance (GRC) initiatives and regulatory requirements.
  • Assess, plan, and implement layered security measures to strengthen the organization's security posture.
  • Partner with IT, Audit, Compliance, and business teams to address security risks and improve controls.
  • Maintain security-related documentation, reporting, and compliance evidence.
  • Utilize ServiceNow and other tools to support risk and compliance processes.

Required Qualifications
  • Bachelor's degree in Computer Science, Information Technology, Cybersecurity, or a related field.
    • Additional relevant experience may be considered in lieu of a degree.
  • 3+ years of experience in cybersecurity, with a focus on:
    • Cybersecurity GRC
    • IT Risk Management
    • Information Security Compliance
    • Security Governance
    • IT Audit and Controls
  • Experience with ServiceNow, databases, risk assessments, and Microsoft Office applications.
  • Strong understanding of cybersecurity frameworks, risk management methodologies, and industry best practices.
  • Excellent communication skills with the ability to work effectively with technical and non-technical stakeholders.
  • Ability to manage multiple priorities in a fast-paced environment.

Preferred Certifications
  • CISSP (Certified Information Systems Security Professional)
  • CEH (Certified Ethical Hacker)
  • CTIA (Certified Threat Intelligence Analyst)
  • CAP (Certification and Accreditation Professional)
  • EnCase Certified Examiner

Ideal Backgrounds
  • Cybersecurity GRC Analyst
  • Information Security Analyst (Governance/Risk)
  • IT Risk Analyst
  • Information Security Compliance Analyst
  • IT Auditor with cybersecurity experience
  • Security Governance Analyst

Nice-to-Have Backgrounds
  • Internal Auditor focused on IT controls
  • IAM Governance Analyst
  • Third-Party Risk Analyst
  • Security Consultant performing risk and control assessments
Ref: #851-Rockville-S1