1

Cybersecurity Risk Analyst Jobs (NOW HIRING)

Cyber Security Risk Analyst

Belleville, IL · On-site

$115K - $125K/yr

If we've described you and your dream workplace, please apply and share in the many benefits and opportunities we offer. Cyber Security Risk Analyst Work Location: Required onsite work at the client ...

Cybersecurity Risk Analyst

Mclean, VA · On-site

$100K - $150K/yr

Cybersecurity Risk Analyst Salary Range: $100,000 - $150,000 Clearance: TS/SCI + CI Poly Location: 50 miles of McLean, Virginia Position is contingent upon contract award Ops Tech Alliance is seeking ...

We are seeking an experienced IT Risk Analyst to support cybersecurity risk management, risk assessment, governance, and mitigation initiatives within a large public organization. Required Skills * 5 ...

New

We are seeking an experienced IT Risk Analyst to support cybersecurity risk management, risk assessment, governance, and mitigation initiatives within a large public organization. Required Skills * 5 ...

New

We are seeking an experienced IT Risk Analyst to support cybersecurity risk management, risk assessment, governance, and mitigation initiatives within a large public organization. Required Skills * 5 ...

New

We are seeking an experienced IT Risk Analyst to support cybersecurity risk management, risk assessment, governance, and mitigation initiatives within a large public organization. Required Skills * 5 ...

New

next page

Showing results 1-20

Cybersecurity Risk Analyst information

See salary details

$15

$40

$65

How much do cybersecurity risk analyst jobs pay per hour?

As of Aug 22, 2026, the average hourly pay for cybersecurity risk analyst in the United States is $40.49, according to ZipRecruiter salary data. Most workers in this role earn between $29.81 and $49.28 per hour, depending on experience, location, and employer.

What does a cybersecurity risk analyst do?

A Cybersecurity Risk Analyst is responsible for identifying, assessing, and mitigating risks related to an organization’s information systems and data. They evaluate potential threats and vulnerabilities, develop strategies to minimize risks, and ensure compliance with security policies and regulations. Their work helps protect sensitive data and maintain the integrity and confidentiality of digital assets. Analysts often collaborate with IT and business teams to implement security controls and respond to security incidents.

What are the key skills and qualifications needed to thrive as a cybersecurity risk analyst, and why are they important?

To thrive as a Cybersecurity Risk Analyst, you need a deep understanding of information security principles, risk management frameworks, and typically hold a degree in computer science or a related field. Familiarity with tools like vulnerability scanners, SIEM systems, and certifications such as CISSP or CISM is highly valued. Strong analytical thinking, effective communication, and attention to detail help you identify risks and convey complex information to stakeholders. These skills and qualifications are vital to proactively safeguard organizational assets and ensure compliance in an evolving threat landscape.

What are some common challenges faced by cybersecurity risk analysts when working with cross-functional teams?

Cybersecurity Risk Analysts often collaborate with IT, compliance, and business units to assess and mitigate risks. A common challenge is translating complex technical risks into language that non-technical stakeholders can understand and act upon. Additionally, balancing security requirements with business objectives may require negotiation and creative problem-solving. Effective communication and relationship-building skills are key to ensuring that security recommendations are adopted across the organization.

What is the difference between Cybersecurity Risk Analyst vs Cybersecurity Analyst?

AspectCybersecurity Risk AnalystCybersecurity Analyst
CertificationsCompTIA Security+, CISSP, CISACompTIA Security+, CEH, CISSP
Primary FocusAssessing and managing security risksMonitoring, detecting, and responding to security threats
Work EnvironmentRisk management teams, security departmentsSecurity operations centers, IT teams
Industry UsageFinance, healthcare, governmentAll industries with cybersecurity needs

While both roles involve cybersecurity, the Cybersecurity Risk Analyst primarily focuses on identifying and mitigating security risks, whereas the Cybersecurity Analyst concentrates on monitoring and responding to security incidents. Understanding these differences helps organizations assign the right roles for their security needs.

How much do cybersecurity risk analysts make?

Cybersecurity risk analysts typically earn a median annual salary of around $85,000 to $110,000, depending on experience, certifications, and location. Entry-level positions may start lower, while experienced analysts with certifications like CISSP or CISA can earn higher salaries, especially in high-demand industries.
More about Cybersecurity Risk Analyst jobs

What cities are hiring for Cybersecurity Risk Analyst jobs?

Cities with the most Cybersecurity Risk Analyst job openings:

What states have the most Cybersecurity Risk Analyst jobs?

States with the most job openings for Cybersecurity Risk Analyst jobs include:

Infographic showing various Cybersecurity Risk Analyst job openings in the United States as of August 2026, with employment types broken down into 1% As Needed, 88% Full Time, 8% Part Time, and 3% Contract. Highlights an 87% Physical, 5% Hybrid, and 8% Remote job distribution, with an average salary of $84,210 per year, or $40.5 per hour.

Cyber Security Risk Analyst

Electrosoft

Belleville, IL

Full-time

Re-posted 23 days ago


Job description

Cyber Security Risk Analyst
 
Work Location:
Required onsite work at the client location at Scott Air Force Base, Illinois with situational telework only
 
Job description
Electrosoft Inc. is seeking a Cyber Security Risk Analyst (CSRA) who can help support the creation and visualization of metrics to support decisions and reduce threats across the Enterprise. The ideal candidate will provide expertise with the implementation of "Metrics that Matter" to assist the client in meeting the requirements to address Risk Management Framework (RMF) and Vulnerability Management to on-premises and Cloud networks.  Additionally, they will assist in integrating systems and data while securing the environment against evolving Cybersecurity threats and modernizing to achieve mission success. 
 
Duties & Responsibilities:
The CSRA will assist in design of innovative solutions and services to support our team and customer in improving our collection and visualization of metrics to support Vulnerability Management (VM), Risk Management Framework (RMF) and to address various Cyber Security Service Provider Inspection requirements to improve the overall risk assessment, better understand performance, improve situational awareness and facilitate the enhanced cyber security posture.  Ultimately providing for potential interoperability between current systems and ensuring timely decision making based on near real-time data availability through data analytics and product development.   Additionally, the CSRA shall utilize skills in DoD computing, networking/transmission, cybersecurity policy, and data analytics to:
  • Develop meaningful and actionable metrics, to include Key Performance Indicators (KPI) and Key Risk Indicators (KRI), as directed by the Government
  • Integrate metrics with cyber readiness framework
  • Analyze and define data requirements and specifications
  • Develop data model(s), integrations, and analytics to enhance cyber readiness assessment and to enable decision support
  • Conduct queries to analyze data sets
  • Conduct trend analysis to identify systemic security issues by analyzing vulnerability and configuration data
  • Analyze future eMASS changes, to include the altering or addition of new data elements and advise product stakeholders, propose solutions, and initiate preventative or corrective action as determined by the stakeholders.
  • Monitor health of daily ingests, advise stakeholders when ingest operations are degraded, and propose corrective actions during periods of ingest degradation or failure.
  • Perform Extract, Transform, and Load (ETL) Operations
  • Accomplish data ingestion, processing, distribution, and visualization
  • Develop and maintain analytics code repository (Python and SQL) and data visualization programs (Qlik)
  • Deploy analytics workloads using Databricks
Basic Qualifications:
  • At least 5 years of experience in cybersecurity, information technology, Software Development or related field.
  • Know Python, SQL, basic HTML/CSS
  • Familiarity with DoD Vulnerability Management (VM) and Risk Management Framework (RMF)
  • Knowledge of business intelligence visualization tools 
  • Excellent communication, collaboration, and problem-solving skills.
  • Ability to work independently and as part of a team.
  • Data analytics is preferred in Advana or Qlik, however a general familiarity with R or Python analytics (ex; spark, pandas)
  • Minimum of a Bachelor of Science (or higher) in one of the following: computer engineering, computer science, IT, cyber security, or a related field.
  • Relevant years of experience may be used in substitution for situations where the candidate does not have a Bachelor's degree in the required field.
  • Must have 8140 compliant certification (e.g. GCFA, GCIA, CySA+, GICSP, CFR )
  • Minimum of an active Secret Clearance.