Threat Modeling & Risk Assessment * Lead threat modeling exercises for software, embedded systems, hardware platforms, and supporting infrastructure * Conduct cybersecurity risk assessments for ...
Threat Modeling & Risk Assessment * Lead threat modeling exercises for software, embedded systems, hardware platforms, and supporting infrastructure * Conduct cybersecurity risk assessments for ...
Sr. Cybersecurity GRC Manager
$119K - $161K/yr
... cybersecurity policies, regulatory requirements, and risk mitigation strategies ... What You Will Do 1. Develop and executive internal security risk assessments, threat modeling, and ...
Sr. Cybersecurity GRC Manager
$119K - $161K/yr
... cybersecurity policies, regulatory requirements, and risk mitigation strategies ... What You Will Do 1. Develop and executive internal security risk assessments, threat modeling, and ...
Sr. Cybersecurity GRC Manager
Irvine, CA · On-site
$132K - $204K/yr
... cybersecurity policies, regulatory requirements, and risk mitigation strategies ... What You Will Do 1. Develop and executive internal security risk assessments, threat modeling, and ...
Sr. Cybersecurity GRC Manager
Irvine, CA · On-site
$132K - $204K/yr
... cybersecurity policies, regulatory requirements, and risk mitigation strategies ... What You Will Do 1. Develop and executive internal security risk assessments, threat modeling, and ...
Sr. Cybersecurity GRC Manager
Irvine, CA · On-site
$119K - $161K/yr
... cybersecurity policies, regulatory requirements, and risk mitigation strategies ... What You Will Do 1. Develop and executive internal security risk assessments, threat modeling, and ...
Sr. Cybersecurity GRC Manager
Irvine, CA · On-site
$119K - $161K/yr
... cybersecurity policies, regulatory requirements, and risk mitigation strategies ... What You Will Do 1. Develop and executive internal security risk assessments, threat modeling, and ...
Consulting with Big 4 * Security Risk management / Cybersecurity risk management experience for 5+ years Responsibilities: Risk Management * Identify, assess, monitor, and report risks with minimal ...
Consulting with Big 4 * Security Risk management / Cybersecurity risk management experience for 5+ years Responsibilities: Risk Management * Identify, assess, monitor, and report risks with minimal ...
Security Risk Manager
San Francisco, CA · On-site
Consulting with Big 4 * Security Risk management / Cybersecurity risk management experience for 5+ years Responsibilities: Risk Management * Identify, assess, monitor, and report risks with minimal ...
Security Risk Manager
San Francisco, CA · On-site
Consulting with Big 4 * Security Risk management / Cybersecurity risk management experience for 5+ years Responsibilities: Risk Management * Identify, assess, monitor, and report risks with minimal ...
Sr. Cybersecurity GRC Manager
$119K - $161K/yr
What You Will Do 1. Develop and executive internal security risk assessments, threat modeling, and ... cybersecurity risk management framework aligned with business objectives and regulatory ...
Sr. Cybersecurity GRC Manager
$119K - $161K/yr
What You Will Do 1. Develop and executive internal security risk assessments, threat modeling, and ... cybersecurity risk management framework aligned with business objectives and regulatory ...
Some of the job responsibilities include but are not limited to: - Perform systems engineering activities in the areas of cybersecurity, Risk Management Framework (RMF) Assessment & Authorization (A ...
Some of the job responsibilities include but are not limited to: - Perform systems engineering activities in the areas of cybersecurity, Risk Management Framework (RMF) Assessment & Authorization (A ...
Cybersecurity, Purple Team Manager
Rosemead, CA · On-site
$182K - $274K/yr
As a Cybersecurity, Purple Team Manager , your work will help power our planet, reduce carbon ... Risk Assessment (PRA) or Background Investigation. Once hired, the candidate must complete ...
Cybersecurity, Purple Team Manager
Rosemead, CA · On-site
$182K - $274K/yr
As a Cybersecurity, Purple Team Manager , your work will help power our planet, reduce carbon ... Risk Assessment (PRA) or Background Investigation. Once hired, the candidate must complete ...
Perform systems engineering activities in the areas of cybersecurity, Risk Management Framework (RMF) Assessment & Authorization (A&A) in accordance with DoDI 8510.01 * Perform cryptographic System ...
Perform systems engineering activities in the areas of cybersecurity, Risk Management Framework (RMF) Assessment & Authorization (A&A) in accordance with DoDI 8510.01 * Perform cryptographic System ...
Cyber Security Engineer
El Segundo, CA · On-site
Perform systems engineering activities in the areas of cybersecurity, Risk Management Framework (RMF) Assessment & Authorization (A&A) in accordance with DoDI 8510.01 * Perform cryptographic System ...
Cyber Security Engineer
El Segundo, CA · On-site
Perform systems engineering activities in the areas of cybersecurity, Risk Management Framework (RMF) Assessment & Authorization (A&A) in accordance with DoDI 8510.01 * Perform cryptographic System ...
Cyber Security Engineer
El Segundo, CA · On-site
Some of the job responsibilities include but are not limited to: - Perform systems engineering activities in the areas of cybersecurity, Risk Management Framework (RMF) Assessment & Authorization (A ...
Cyber Security Engineer
El Segundo, CA · On-site
Some of the job responsibilities include but are not limited to: - Perform systems engineering activities in the areas of cybersecurity, Risk Management Framework (RMF) Assessment & Authorization (A ...
Senior Software Engineer
Irvine, CA · On-site
$131K - $173K/yr
Cybersecurity risk assessment * Legacy Android (5) * Operating System level work * Regulated industry required Position Summary : We are looking for a Senior Software Engineer with deep experience in ...
Quick apply
Senior Software Engineer
Irvine, CA · On-site
$131K - $173K/yr
Cybersecurity risk assessment * Legacy Android (5) * Operating System level work * Regulated industry required Position Summary : We are looking for a Senior Software Engineer with deep experience in ...
Cybersecurity Program Manager - United States
Santa Monica, CA · On-site
$124K - $168K/yr
... risk assessment program. • Work closely with the global Cybersecurity Engineering and Assurance team to implement security standards across the organization. • Interface and partner with cross ...
Cybersecurity Program Manager - United States
Santa Monica, CA · On-site
$124K - $168K/yr
... risk assessment program. • Work closely with the global Cybersecurity Engineering and Assurance team to implement security standards across the organization. • Interface and partner with cross ...
Perform systems engineering activities in the areas of cybersecurity, Risk Management Framework (RMF) Assessment & Authorization (A&A) in accordance with DoDI 8510.01 * Perform cryptographic System ...
Perform systems engineering activities in the areas of cybersecurity, Risk Management Framework (RMF) Assessment & Authorization (A&A) in accordance with DoDI 8510.01 * Perform cryptographic System ...
Cyber Security Engineer with Security Clearance
$110K - $150K/yr
Some of the job responsibilities include but are not limited to: - Perform systems engineering activities in the areas of cybersecurity, Risk Management Framework (RMF) Assessment & Authorization (A ...
Cyber Security Engineer with Security Clearance
$110K - $150K/yr
Some of the job responsibilities include but are not limited to: - Perform systems engineering activities in the areas of cybersecurity, Risk Management Framework (RMF) Assessment & Authorization (A ...
Cybersecurity Senior Manager
Rosemead, CA · On-site
$206K - $309K/yr
As a Cybersecurity Senior Manager , your work will help power our planet, reduce carbon emissions ... Risk Assessment (PRA) or Background Investigation. Once hired, the candidate must complete ...
Cybersecurity Senior Manager
Rosemead, CA · On-site
$206K - $309K/yr
As a Cybersecurity Senior Manager , your work will help power our planet, reduce carbon emissions ... Risk Assessment (PRA) or Background Investigation. Once hired, the candidate must complete ...
Lead or support cybersecurity risk assessments, IT internal audits, and regulatory readiness efforts (e.g., HIPAA, GDPR, CMMC, etc). * Evaluate and test IT controls, application controls, security ...
Lead or support cybersecurity risk assessments, IT internal audits, and regulatory readiness efforts (e.g., HIPAA, GDPR, CMMC, etc). * Evaluate and test IT controls, application controls, security ...
Lead or support cybersecurity risk assessments, IT internal audits, and regulatory readiness efforts (e.g., HIPAA, GDPR, CMMC, etc). * Evaluate and test IT controls, application controls, security ...
Lead or support cybersecurity risk assessments, IT internal audits, and regulatory readiness efforts (e.g., HIPAA, GDPR, CMMC, etc). * Evaluate and test IT controls, application controls, security ...
Cyber Security
$113K - $152K/yr
Thanks & Regards Qualifications Cyber security experience with vulnerability and risk assessment Additional Information All your information will be kept confidential according to EEO guidelines.
Cyber Security
$113K - $152K/yr
Thanks & Regards Qualifications Cyber security experience with vulnerability and risk assessment Additional Information All your information will be kept confidential according to EEO guidelines.
Cyber Security Risk Assessment information
See California salary details
$56.3K - $67.8K
1% of jobs
$67.8K - $79.4K
4% of jobs
$79.4K - $91K
5% of jobs
$91K - $102.5K
9% of jobs
$108.9K is the 25th percentile. Wages below this are outliers.
$102.5K - $114.1K
11% of jobs
$114.1K - $125.7K
10% of jobs
The median wage is $130.1K / yr.
$125.7K - $137.3K
28% of jobs
$143.9K is the 75th percentile. Wages above this are outliers.
$137.3K - $148.8K
14% of jobs
$148.8K - $160.4K
11% of jobs
$160.4K - $172K
4% of jobs
$172K - $183.6K
4% of jobs
$56.3K
$131.2K
$183.6K
How much do cyber security risk assessment jobs pay per year?
Can you make $500,000 a year in cyber security?
What are the key skills and qualifications needed to thrive in Cyber Security Risk Assessment, and why are they important?
What is the role of risk assessment in cyber security?
What is the difference between Cyber Security Risk Assessment vs Cyber Security Analyst?
| Aspect | Cyber Security Risk Assessment | Cyber Security Analyst |
|---|---|---|
| Primary Focus | Identifying and evaluating security risks and vulnerabilities | Monitoring, analyzing, and responding to security threats |
| Certifications | CompTIA Security+, CISSP, CISA | CompTIA Security+, CISSP, CEH |
| Work Environment | Risk assessment teams, consulting firms, security departments | Security operations centers, IT departments, incident response teams |
While both roles require similar certifications and work within cybersecurity, a Cyber Security Risk Assessment focuses on evaluating potential vulnerabilities and risks to an organization’s assets. In contrast, a Cyber Security Analyst actively monitors and responds to security threats, ensuring ongoing protection. Understanding these differences helps organizations assign the right responsibilities to each role.
Is SOC analyst a high paying job?
What are some common challenges faced by professionals conducting cyber security risk assessments?
What is a cyber security risk assessment?
What is the 80 20 rule in cyber security?
- Night Shift Cyber Security Analyst Intern
- Cyber Security Engineering
- Cyber Security Analytics
- Cyber Security Contractors
- Overnight Cyber Security Purple Team
- Cyber Security Analyst Contract
- Federal Government Cyber Security
- Visa Sponsorship Available Cyber Security Manager
- Cyber Power
- Volunteer Cyber Security Analyst
Full-time
Medical, Dental, Vision, Life, Retirement, PTO
Posted 19 days ago
Job description
CHAOS Industries was founded in 2022 and has raised a total of $1 billion in funding from leading investors, including 8VC, Accel, and Valor Equity Partners. The company is headquartered in Los Angeles, with offices in Washington, D.C., San Francisco, San Diego, Seattle, and London. For more information, please visit www.chaosinc.com.
Role Overview:
We are seeking a Cybersecurity Engineer focused on Product Security to help design, assess, and secure our next-generation sensor platforms and supporting software ecosystems. This role will work closely with Software Engineering, Embedded Systems, Hardware Engineering, Infrastructure, and Program teams to ensure security is integrated throughout the product lifecycle - from architecture and development through deployment and operational support.
The ideal candidate has experience securing complex software and hardware systems within defense, aerospace, or other highly regulated environments. This individual will lead software security architecture efforts, perform threat modeling and risk assessments, support compliance initiatives, and help establish secure engineering standards across the organization.
This is a highly collaborative and hands-on role with direct impact on the security and resiliency of mission-critical technologies deployed in operational environments.
Responsibilities:
- Product Security Engineering
- Design and implement secure software and hardware system architectures for mission-critical platforms and supporting infrastructure
- Partner with engineering teams to integrate security requirements throughout the software development lifecycle (SDLC)
- Conduct architecture reviews and identify security risks across software, embedded, cloud, and hardware systems
- Develop secure design standards, engineering guidance, and product security best practices
- Support secure development initiatives including code review, dependency management, secrets management, and vulnerability remediation
- Threat Modeling & Risk Assessment
- Lead threat modeling exercises for software, embedded systems, hardware platforms, and supporting infrastructure
- Conduct cybersecurity risk assessments for products, systems, and operational environments
- Identify attack surfaces, trust boundaries, and potential exploitation paths
- Work with engineering teams to prioritize and remediate identified security risks
- Develop mitigation strategies for cybersecurity threats impacting deployed systems and sensitive technologies
- Compliance & Security Authorization
- Support cybersecurity compliance initiatives and product authorization efforts including:
- RMF (Risk Management Framework)
- ATO (Authority to Operate)
- Export control and regulated data handling requirements
- Assist with development of system security documentation, security controls, SSPs, and assessment artifacts
- Support internal and external security audits, assessments, and accreditation activities
- Collaborate with government, customer, and program stakeholders on security requirements and authorization activities
- Security Testing & Validation
- Assist with security testing activities including vulnerability assessments, penetration testing coordination, and validation of remediation efforts
- Support secure configuration and hardening efforts across software, operating systems, and embedded environments
- Review software and system telemetry to identify potential security weaknesses or anomalous behavior
- Collaborate with Security Operations and Infrastructure teams to improve enterprise and product security visibility
- Cross-Functional Collaboration
- Work closely with Software, Embedded, Hardware, DevOps, and Infrastructure teams to balance security, performance, and operational requirements
- Contribute to the development of scalable product security processes and governance
- Support customer and internal security reviews related to deployed technologies and operational environments
- Mentor engineering teams on secure development and security-by-design principles
Minimum Requirements:
- 5+ years of experience in cybersecurity engineering, product security, application security, or related engineering roles
- Experience with software security design and secure system architecture principles
- Hands-on experience conducting threat modeling and cybersecurity risk assessments
- Knowledge of secure software development lifecycle (SSDLC) practices and application security concepts
- Familiarity with cybersecurity frameworks and compliance standards including:
- RMF
- NIST 800-53
- NIST 800-171
- CMMC
- DFARS
- Experience supporting security authorization activities such as ATO processes and security documentation development, and eMASS
- Understanding of cloud, endpoint, network, and identity security concepts
- Strong analytical, troubleshooting, and technical communication skills
- Ability to operate effectively in a fast-paced startup environment
- Must be a U.S. Citizen eligible for government facilities and sensitive information
- Ability to obtain additional security clearances as required by contract
Preferred Requirements:
- Active Security Clearance
- Experience supporting defense, aerospace, government contracting, or regulated technology environments
- Experience securing embedded systems, sensor platforms, or edge computing technologies
- Familiarity with export control requirements including ITAR and EAR
- Experience with secure DevSecOps pipelines and automation practices
- Experience with Microsoft GCC High environments and regulated cloud architectures
- Firmware development experience
- BIOS/UEFI security or development experience
- Hardware security design experience
- Trusted Platform Module (TPM), secure boot, cryptographic hardware, or supply chain security knowledge
- Experience with scripting or automation using Python, PowerShell, or Bash
- Security certifications such as CISSP, CSSLP, GSEC, Security+, or equivalent
Why CHAOS?
- Health Benefits: Medical, dental, and vision benefits 100% paid for by the company
- Additional benefits: 401k (+ 50% company match up to 6% of pay), FSA, HSA, life insurance, and more
- Our Perks: Free daily lunch, 'No meeting Fridays', unlimited PTO, casual dress code
- Compensation Components: Competitive base salaries, generous pre-IPO stock option grants, relocation assistance, and (coming soon!) annual bonuses
- Team Growth: 250 employees and counting across 5 global offices
Salary Range: $110,000 - $190,000
The stated compensation range reflects only the targeted base compensation range and excludes additional earnings such as bonus, equity, and benefits. If your compensation requirements fall outside of the range, we still encourage you to apply. The salary range for this role is an estimate based on a range of compensation factors, inclusive of base salary only. Actual salary offer may vary based on (but not limited to) work experience, education and/or training, critical skills, and/or business considerations.
Recruiting Agencies: CHAOS Industries does not accept unsolicited resumes or outreach. Unsolicited submissions will not be reviewed or compensated.
#LI-onsite