1

Cybersecurity Risk Analyst Jobs in Minnesota (NOW HIRING)

The Lead Cybersecurity Specialist within the Legence IT Security organization will be responsible ... cyber analysts tasked with advancing Legence's security posture and reducing risk. This role is ...

... risk to an acceptable level. Implement specific cybersecurity countermeasures for systems and/or applications. Characterize and analyze network traffic to identify anomalous activity and potential ...

Cybersecurity Engineer

Minneapolis, MN · On-site

$100K - $120K/yr

... risk to an acceptable level. Implement specific cybersecurity countermeasures for systems and/or applications. Characterize and analyze network traffic to identify anomalous activity and potential ...

... risk to an acceptable level. Implement specific cybersecurity countermeasures for systems and/or applications. Characterize and analyze network traffic to identify anomalous activity and potential ...

Cybersecurity Engineer

Minneapolis, MN · On-site

$100K - $120K/yr

... risk to an acceptable level. • Implement specific cybersecurity countermeasures for systems and/or applications. • Characterize and analyze network traffic to identify anomalous activity and ...

... analyzing, and responding to cybersecurity threats across enterprise environments. This role will ... risk through automation and AI-assisted security operations. What You Will Do at Graco Security ...

Governance, Compliance & Risk Management * Own IT security governance and compliance, managing ... Strong core competencies in detail orientation and execution, communication, analytical thinking ...

Deep knowledge of network security, cryptography, threat analysis, vulnerability assessment ... Emphasizes a systematic approach to security assessment and connects cybersecurity to business risk ...

Deep knowledge of network security, cryptography, threat analysis, vulnerability assessment ... Emphasizes a systematic approach to security assessment and connects cybersecurity to business risk ...

Governance, Compliance & Risk Management * Own IT security governance and compliance, managing ... Strong core competencies in detail orientation and execution, communication, analytical thinking ...

Deep knowledge of network security, cryptography, threat analysis, vulnerability assessment ... Emphasizes a systematic approach to security assessment and connects cybersecurity to business risk ...

next page

Showing results 1-20

Cybersecurity Risk Analyst information

See Minnesota salary details

$15

$39

$64

How much do cybersecurity risk analyst jobs pay per hour?

As of May 30, 2026, the average hourly pay for cybersecurity risk analyst in Minnesota is $39.65, according to ZipRecruiter salary data. Most workers in this role earn between $29.18 and $48.27 per hour, depending on experience, location, and employer.

What are the key skills and qualifications needed to thrive as a Cybersecurity Risk Analyst, and why are they important?

To thrive as a Cybersecurity Risk Analyst, you need a deep understanding of information security principles, risk management frameworks, and typically hold a degree in computer science or a related field. Familiarity with tools like vulnerability scanners, SIEM systems, and certifications such as CISSP or CISM is highly valued. Strong analytical thinking, effective communication, and attention to detail help you identify risks and convey complex information to stakeholders. These skills and qualifications are vital to proactively safeguard organizational assets and ensure compliance in an evolving threat landscape.

What are some common challenges faced by Cybersecurity Risk Analysts when working with cross-functional teams?

Cybersecurity Risk Analysts often collaborate with IT, compliance, and business units to assess and mitigate risks. A common challenge is translating complex technical risks into language that non-technical stakeholders can understand and act upon. Additionally, balancing security requirements with business objectives may require negotiation and creative problem-solving. Effective communication and relationship-building skills are key to ensuring that security recommendations are adopted across the organization.

What does a Cybersecurity Risk Analyst do?

A Cybersecurity Risk Analyst is responsible for identifying, assessing, and mitigating risks related to an organization’s information systems and data. They evaluate potential threats and vulnerabilities, develop strategies to minimize risks, and ensure compliance with security policies and regulations. Their work helps protect sensitive data and maintain the integrity and confidentiality of digital assets. Analysts often collaborate with IT and business teams to implement security controls and respond to security incidents.

What is the difference between Cybersecurity Risk Analyst vs Cybersecurity Analyst?

AspectCybersecurity Risk AnalystCybersecurity Analyst
CertificationsCompTIA Security+, CISSP, CISACompTIA Security+, CEH, CISSP
Primary FocusAssessing and managing security risksMonitoring, detecting, and responding to security threats
Work EnvironmentRisk management teams, security departmentsSecurity operations centers, IT teams
Industry UsageFinance, healthcare, governmentAll industries with cybersecurity needs

While both roles involve cybersecurity, the Cybersecurity Risk Analyst primarily focuses on identifying and mitigating security risks, whereas the Cybersecurity Analyst concentrates on monitoring and responding to security incidents. Understanding these differences helps organizations assign the right roles for their security needs.

What are popular job titles related to Cybersecurity Risk Analyst jobs in Minnesota? For Cybersecurity Risk Analyst jobs in Minnesota, the most frequently searched job titles are:
What job categories do people searching Cybersecurity Risk Analyst jobs in Minnesota look for? The top searched job categories for Cybersecurity Risk Analyst jobs in Minnesota are:
Infographic showing various Cybersecurity Risk Analyst job openings in Minnesota as of May 2026, with employment types broken down into 1% As Needed, 91% Full Time, 5% Part Time, 1% Temporary, and 2% Contract. Highlights an 96% Physical, 3% Hybrid, and 1% Remote job distribution, with an average salary of $82,476 per year, or $39.7 per hour.
Cybersecurity Subject Matter Expert Lead (59834)

Cybersecurity Subject Matter Expert Lead (59834)

BMA

Virginia, MN • Remote

Full-time

Medical, Dental, Vision, Retirement

Posted 29 days ago


Job description

BMA is seeking a Cybersecurity Subject Matter Expert – Lead to support the DLA JETS Cybersecurity Policy and Oversight Support Services (CPOSS) program. This is a fully remote position and contingent on contract award. Job Summary BMA is seeking a Cybersecurity Subject Matter Expert (CS SME) – Lead to support our DLA Cybersecurity Policy and Oversight Support Services (CPOSS) contract.

The CS SME – Lead provides senior‐level technical leadership and advisory support to the CPOSS program supporting DLA's J6/J611 Cybersecurity Directorate. The SME serves as the principal cybersecurity authority for complex technical and governance challenges related to the enterprise Risk Management Framework (RMF) program, cybersecurity policy development, continuous monitoring, and control validation activities across the DLA enterprise. Working under consultative direction, the SME independently evaluates exceptionally complex cybersecurity issues, develops innovative solutions, and provides authoritative technical guidance to government leadership, Security Control Assessors (SCAs), Authorizing Officials (AOs), and enterprise cybersecurity stakeholders.

The role also contributes to the development of enterprise cybersecurity methodologies, advanced assessment techniques, and improved cybersecurity governance practices aligned with DoD cybersecurity policy and DLA strategic initiatives. Responsibilities Key Responsibilities Enterprise Cybersecurity Technical Leadership: Serves as the senior technical advisor to the DLA cybersecurity assessment and oversight program, providing expert interpretation of cybersecurity policies, standards, and technical requirements. Provides authoritative guidance on complex cybersecurity issues involving enterprise systems, networks, applications, enclaves, and emerging technologies.

Analyzes highly complex cybersecurity challenges and recommends innovative solutions that balance mission requirements, operational risks, and regulatory compliance. RMF and Cybersecurity Assessment Expertise: Provides subject matter expertise on implementation and governance of the DoDI 8510.01 Risk Management Framework for DoD IT across DLA information systems. Advises government stakeholders on security control validation, risk assessments, and authorization readiness determinations.

Provides technical review of security control assessments, continuous monitoring activities, and RMF authorization packages submitted through eMASS. Supports development of enterprise‐level recommendations regarding residual risk acceptance and cybersecurity posture improvements. Cybersecurity Tools, Standards, and Architecture Support: Evaluates cybersecurity tools and technologies to support enterprise security assessment, monitoring, and compliance activities.

Recommends cybersecurity software solutions and assists in defining functional and technical requirements for tool selection. Supports development of product‐specific Security Technical Implementation Guides (STIGs) based on Defense Information Systems Agency Security Requirements Guides (SRGs). Provides technical leadership in evaluating network security architectures, vulnerability assessment methodologies, and cybersecurity implementation strategies.

Enterprise Cybersecurity Policy and Methodology Development: Contributes to the development of new cybersecurity principles, methodologies, and governance practices that improve the DLA enterprise cybersecurity program. Provides expert guidance in the development and refinement of enterprise cybersecurity policies, directives, and standard operating procedures supporting the CPOSS program. Supports the development of advanced cybersecurity concepts and technical approaches that strengthen enterprise security posture and compliance with DoD cybersecurity regulations.

Strategic Analysis and Innovation: Conducts research and analysis of emerging cybersecurity threats, technologies, and best practices relevant to the DLA mission environment. Develops innovative approaches for improving cybersecurity assessment processes, continuous monitoring practices, and enterprise risk management strategies. Identifies opportunities to enhance cybersecurity oversight capabilities through improved tools, automation, analytics, and governance frameworks.

Senior‐Level Advisory and Communication Support: Provides expert written and oral briefings to senior government leadership regarding cybersecurity risks, program status, and recommended solutions. Prepares technical reports, white papers, and presentations addressing enterprise cybersecurity challenges. Clearance Requirements There is a Secret Security clearance requirement for this position.

Required Skills & Certifications Current DoD 8670.01/8140 IAM Level III certification that includes one or more of the following: ISACA CISM, ISC2 Certified Information Systems Security Professional (CISSP), GIAC/SANS GIAS Security Leadership Certification (GSLC), or EC-Council Certified Chief Information Security Officer (CCISO). 7+ years of Information Technology experience. 5+ years of Information Assurance / Cybersecurity experience.

Demonstrated expertise in cybersecurity assessment methodologies, risk analysis, and enterprise cybersecurity governance. Strong analytical and problem‐solving skills with the ability to resolve complex cybersecurity challenges. In‐depth knowledge of DoD cybersecurity regulations and guidance, including RMF implementation.

Strong familiarity with Defense Information Systems Agency STIGs and Security Requirements Guides (SRGs). Demonstrated ability to develop and evaluate cybersecurity technologies, architectures, and security solutions. Exceptional technical leadership and independent decision‐making ability.

Ability to translate complex cybersecurity issues into clear, actionable guidance for senior leadership. Strong written and oral communication skills capable of supporting executive‐level briefings. Proven ability to innovate and develop new cybersecurity concepts, processes, and technical solutions.

Demonstrated ability to work independently toward long‐range cybersecurity program objectives. Desired Skills & Certifications Experience supporting DoD or DLA program offices. Experience supporting DoD DLA environments.

Experience leading enterprise‐level cyber modernization initiatives. Familiarity with DLA‐specific cybersecurity governance frameworks. Current Project Management Professional (PMP) certification.

Current Risk Management Professional certification such as one or more of the following: PMP‐RMP, ISACA Certified in Risk and Information Systems Control (CRISC), ISACA Certified Information Systems Auditor (CISA), ISACA Certified Information Security Manager (CISM), ISC2 Certified in Governance, Risk and Compliance (CGRC), or Risk and Insurance Management Society (RIMS) Certified Risk Management Professional (RIMS‐CRMP). Other Duties Able to travel within a week's notice. This job description is not designed to cover or contain a comprehensive listing of activities, duties, or responsibilities that are required of the employee for this job.

Duties, responsibilities, and activities may change at any time with or without notice. Overview BMA is an employee‐owned small business headquartered in Huntsville, AL that provides superior customer service by empowering all levels of our staff to make timely decisions to produce high‐quality results. BMA fosters an environment of passion, precision, and dedication in order to fulfill our commitments to our partners, government, and country.

Benefits We believe that our employees well‐being is paramount to our success so our benefits package has been crafted with that in mind. We offer multiple healthcare coverage options to include low deductible, high deductible, and plans eligible for our Health Savings Account (HSA) option. Along with medical coverage, employees have dental, vision, accident & illness, short‐ and long‐term disability all available to them.

BMA proudly maintains a 401(k) plan with an industry leading 6% match that can include profit sharing based on company performance. Lastly, being an employee‐owned company means that BMA offers a 100% Employee Stock Ownership Plan (ESOP), providing eligible employees the opportunity to earn stock in BMA, subject to plan eligibility and vesting requirements. AAP & EEO Statement Beshenich Muir & Associates, LLC (BMA) is an Equal opportunity/Affirmative Action Employer.

All qualified applicants will receive consideration for employment without regards to race, color, religion, religious creed, gender, sexual orientation, gender identity, gender expression, transgender, pregnancy, marital status, national origin, ancestry, citizenship status, age, disability, protected Veteran Status, genetics or any other characteristics protected by applicable Federal, State, or Local Law. #J-18808-Ljbffr