1

Cybersecurity Risk Analyst Jobs in Colorado (NOW HIRING)

Analyze security logs and alerts to identify suspicious activity * Assist with incident response ... Perform risk assessments and recommend mitigation strategies * Coordinate pentests and tabletop ...

Analyze security logs and alerts to identify suspicious activity * Assist with incident response ... Perform risk assessments and recommend mitigation strategies * Coordinate pentests and tabletop ...

Analyze security logs and alerts to identify suspicious activity * Assist with incident response ... Perform risk assessments and recommend mitigation strategies * Coordinate pentests and tabletop ...

Job Title SENIOR CYBERSECURITY ANALYST Location Colorado Springs, CO US (Primary) Huntsville, AL US ... on system risk posture and mitigation strategies Qualifications: • Secret clearance (required ...

next page

Showing results 1-20

Cybersecurity Risk Analyst information

See Colorado salary details

$16

$42

$69

How much do cybersecurity risk analyst jobs pay per hour?

As of May 31, 2026, the average hourly pay for cybersecurity risk analyst in Colorado is $42.57, according to ZipRecruiter salary data. Most workers in this role earn between $31.35 and $51.83 per hour, depending on experience, location, and employer.

What are the key skills and qualifications needed to thrive as a Cybersecurity Risk Analyst, and why are they important?

To thrive as a Cybersecurity Risk Analyst, you need a deep understanding of information security principles, risk management frameworks, and typically hold a degree in computer science or a related field. Familiarity with tools like vulnerability scanners, SIEM systems, and certifications such as CISSP or CISM is highly valued. Strong analytical thinking, effective communication, and attention to detail help you identify risks and convey complex information to stakeholders. These skills and qualifications are vital to proactively safeguard organizational assets and ensure compliance in an evolving threat landscape.

What are some common challenges faced by Cybersecurity Risk Analysts when working with cross-functional teams?

Cybersecurity Risk Analysts often collaborate with IT, compliance, and business units to assess and mitigate risks. A common challenge is translating complex technical risks into language that non-technical stakeholders can understand and act upon. Additionally, balancing security requirements with business objectives may require negotiation and creative problem-solving. Effective communication and relationship-building skills are key to ensuring that security recommendations are adopted across the organization.

What does a Cybersecurity Risk Analyst do?

A Cybersecurity Risk Analyst is responsible for identifying, assessing, and mitigating risks related to an organization’s information systems and data. They evaluate potential threats and vulnerabilities, develop strategies to minimize risks, and ensure compliance with security policies and regulations. Their work helps protect sensitive data and maintain the integrity and confidentiality of digital assets. Analysts often collaborate with IT and business teams to implement security controls and respond to security incidents.

What is the difference between Cybersecurity Risk Analyst vs Cybersecurity Analyst?

AspectCybersecurity Risk AnalystCybersecurity Analyst
CertificationsCompTIA Security+, CISSP, CISACompTIA Security+, CEH, CISSP
Primary FocusAssessing and managing security risksMonitoring, detecting, and responding to security threats
Work EnvironmentRisk management teams, security departmentsSecurity operations centers, IT teams
Industry UsageFinance, healthcare, governmentAll industries with cybersecurity needs

While both roles involve cybersecurity, the Cybersecurity Risk Analyst primarily focuses on identifying and mitigating security risks, whereas the Cybersecurity Analyst concentrates on monitoring and responding to security incidents. Understanding these differences helps organizations assign the right roles for their security needs.

What are popular job titles related to Cybersecurity Risk Analyst jobs in Colorado? For Cybersecurity Risk Analyst jobs in Colorado, the most frequently searched job titles are:
What cities in Colorado are hiring for Cybersecurity Risk Analyst jobs? Cities in Colorado with the most Cybersecurity Risk Analyst job openings:
Infographic showing various Cybersecurity Risk Analyst job openings in Colorado as of May 2026, with employment types broken down into 1% As Needed, 90% Full Time, 6% Part Time, and 3% Contract. Highlights an 96% Physical, 2% Hybrid, and 2% Remote job distribution, with an average salary of $88,548 per year, or $42.6 per hour.
(ISSM) Senior Cybersecurity Information Systems Security Manager

(ISSM) Senior Cybersecurity Information Systems Security Manager

Logistics Management Institute

Colorado Springs, CO • On-site

$170K/yr

Other

Posted 9 days ago


Job description

Overview
LMI is seeking a Senior Cybersecurity Information Systems Security Manager (ISSM) with a minimum of a TS/SCI w/ CI Poly clearance to provide cybersecurity Risk Management Framework (RMF) Authority to Operate (ATO) support to LMI.
LMI is a new breed of digital solutions provider dedicated to accelerating government impact with innovation and speed. Investing in technology and prototypes ahead of need, LMI brings commercial-grade platforms and mission-ready AI to federal agencies at commercial speed.
Leveraging our mission-ready technology and solutions, proven expertise in federal deployment, and strategic relationships, we enhance outcomes for the government, efficiently and effectively. With a focus on agility and collaboration, LMI serves the defense, space, healthcare, and energy sectors-helping agencies navigate complexity and outpace change. Headquartered in Tysons, Virginia, LMI is committed to delivering impactful results that strengthen missions and drive lasting value.
Responsibilities
  • Serve as the primary point of contact for all cybersecurity and information assurance matters related to classified secure environments.
  • Oversee the entire RMF cycle, including initiation, categorization, selection, implementation, assessment, authorization, and continuous monitoring.
  • Maintain and update Security Plans (SSP), POA&M and other related documentation.
  • Conduct risk assessments and vulnerability assessments to identify and mitigate security risks.
  • Ensure compliance with all relevant security policies, standards, and guidelines, including NIST SP 800 series.
  • Work closely with cybersecurity personnel to document controls, support authorization, seeking any Interim Authorization to Test (IATT) and Authority to Operate (ATO) documentation and approvals and provide metrics to comply with audits.
  • Responsible for escalating issues, problems, risks, and constraints to the appropriate levels for clarification and resolution.
  • Perform unsupervised, hands-on work within environments and eMASS.
  • Manage multiple and competing customer priorities with little supervision.
  • Review security controls and configuration requirements including secure network design, database access, security testing, authentication methods, implementation of encryption, privilege management, logging, input validation, secure storage design, and secure data transfer.
  • Participate in Requests for Change (RFC), Change Management Processes.
  • Monitors and educates teammates on IAVM tracking and CISA alerts.
  • Understand all security tools within environment including SIEM, EDR and networking for classified networks
  • Conduct risk assessments, system audits, and vulnerability analysis to identify and mitigate security risks.

Qualifications
  • Minimum of a TS/SCI w/ CI Poly clearance required.
  • 5+ years Managerial experience in developing and implementing system information security standards and procedures in a DoD Cybersecurity Enterprise Environment.
  • Previous Army cybersecurity and technology experience.
  • Demonstrated experience with US Army technology, systems, and command & control policies and procedures.
  • DOD Cyber Workforce (DCWF) 8140 (722) Intermediate Information Systems Security Manager certification: CGRC/CAP or CASP+ or CCSP or SSCP or Security+ or GSEC.
  • Experience with security requirements in a federal IT environment, including FedRAMP-certified providers and FISMA requirements for acquiring and maintaining an ATO.
  • Experience with Enterprise Cross Domain Solutions.
  • Experience with DoD STIGs and SRGs.
  • Strong understanding of cybersecurity principles, standards, and best practices.
  • Excellent communication and interpersonal skills, with the ability to interact effectively with technical and non-technical stakeholders.

The salary range displayed represents the typical salary range for this position and is not a guarantee of compensation. Individual salaries are determined by various factors including, but not limited to location, internal equity, business considerations, client contract requirements, and candidate qualifications, such as education, experience, skills, and security clearances.
The target salary range for this position is up to $170,000
Applicants must meet eligibility requirements for a U.S. Government security clearance. Only US Citizens are eligible for a security clearance. For this position, LMI will only consider applicants with security clearances or applicants who are eligible for security clearances, due to the nature of the work.