1

Cybersecurity Risk Management Analyst Jobs in California

RISK MANAGEMENT ANALYST

Beverly Hills, CA · On-site

$38.46 - $43.27/hr

We are seeking a Risk Management Analyst to join our Global Risk Management team in Beverly Hills, CA. This is an exciting opportunity to support a range of risk management activities across ...

Risk Management Analyst

San Jose, CA · Remote

$80K - $120K/yr

Overview We are seeking a detail-oriented and analytical Risk Management Analyst to support our clients in optimizing their workers' compensation programs. This role focuses on leveraging data ...

Cybersecurity Counsel

Mountain View, CA

$130K - $177K/yr

Partner effectively with Security, Engineering, Safety, and Product teams on vulnerability management, threat analyses, and cybersecurity risk assessments. * Spearhead the evolution of Waymo ...

Risk Management Analyst

Gardena, CA · On-site

$89K - $114K/yr

... business administration, risk management, or a closely related field; AND two years of ... Analyze and recommend policy and procedural changes. Operate a computer and utilize a variety of ...

Risk Management Analyst

Gardena, CA · On-site

$89K - $114K/yr

... business administration, risk management, or a closely related field; AND two years of ... Analyze and recommend policy and procedural changes. Operate a computer and utilize a variety of ...

JOB SUMMARY - ESSENTIAL FUNCTIONS A Cybersecurity Analyst II performs a variety of cybersecurity ... Support the Risk Management Framework (RMF) Assessment and Authorization processes (Steps 0 through ...

Apply risk management concepts to mitigate vulnerabilities in system security architectures ... The Cybersecurity Analyst II will be required to analyze, propose, and implement security controls ...

Partner effectively with Security, Engineering, Safety, and Product teams on vulnerability management, threat analyses, and cybersecurity risk assessments. * Spearhead the evolution of Waymo ...

next page

Showing results 1-20

Cybersecurity Risk Management Analyst information

What are the key skills and qualifications needed to thrive as a Cybersecurity Risk Management Analyst, and why are they important?

To thrive as a Cybersecurity Risk Management Analyst, you need a solid understanding of information security principles, risk assessment methodologies, and regulatory frameworks, typically backed by a degree in cybersecurity or a related field. Familiarity with tools such as risk management software, vulnerability scanners, and certifications like CISSP, CISM, or CRISC is highly valued. Strong analytical thinking, attention to detail, and effective communication skills help in translating technical risks into actionable insights for stakeholders. These skills ensure organizations can proactively identify, assess, and mitigate cyber risks to protect sensitive information and maintain regulatory compliance.

What does a Cybersecurity Risk Management Analyst do?

A Cybersecurity Risk Management Analyst is responsible for identifying, assessing, and mitigating risks to an organization's information systems and data. They analyze security policies, conduct risk assessments, and recommend controls to minimize potential threats. Their work involves monitoring security measures, ensuring compliance with regulations, and helping develop strategies to protect the organization from cyberattacks. Ultimately, they play a crucial role in safeguarding sensitive information and supporting overall cybersecurity posture.

What are some typical challenges a Cybersecurity Risk Management Analyst faces when working with cross-functional teams?

Cybersecurity Risk Management Analysts often collaborate with IT, legal, compliance, and business units to identify and mitigate risks. A common challenge is bridging the communication gap between technical and non-technical stakeholders, ensuring that risk recommendations are understood and actionable. Additionally, balancing business objectives with security requirements can be complex, requiring strong negotiation and diplomacy skills. Analysts must also stay updated on evolving threats while tailoring solutions to each department’s unique needs.

What is the difference between Cybersecurity Risk Management Analyst vs Cybersecurity Analyst?

AspectCybersecurity Risk Management AnalystCybersecurity Analyst
CertificationsCompTIA Security+, CISSP, CISMCompTIA Security+, CEH, CISSP
Work EnvironmentFocus on risk assessment, policy development, and complianceFocus on threat detection, incident response, and system monitoring
Employer & Industry UsageUsed in organizations prioritizing risk mitigation and complianceUsed across various sectors for security operations and monitoring

While both roles involve cybersecurity, the Cybersecurity Risk Management Analyst primarily assesses and manages risks, ensuring compliance and policy adherence. In contrast, the Cybersecurity Analyst concentrates on identifying threats, monitoring security systems, and responding to incidents. Both roles are essential but focus on different aspects of cybersecurity defense.

What are popular job titles related to Cybersecurity Risk Management Analyst jobs in California? For Cybersecurity Risk Management Analyst jobs in California, the most frequently searched job titles are:
What job categories do people searching Cybersecurity Risk Management Analyst jobs in California look for? The top searched job categories for Cybersecurity Risk Management Analyst jobs in California are:
Infographic showing various Cybersecurity Risk Management Analyst job openings in California as of July 2026, with employment types broken down into 2% Locum Tenens, 85% Full Time, 8% Part Time, 1% Temporary, and 4% Contract. Highlights an 85% Physical, 6% Hybrid, and 9% Remote job distribution.

CISSP-Cyber Security Analyst

TECHOAUTH SOLUTIONS LLC

Rancho Cucamonga, CA • On-site

$65/hr

Full-time

Re-posted 23 days ago


Job description

Location: Rancho Cucamonga, California, United States (Hybrid)
Need W2 candidates.
Cybersecurity Risk Analyst
The Cybersecurity Risk Analyst is a cybersecurity program and control assessor and advisor in governance, risk, and compliance functions. This position is responsible for the assessing and advancing of IEHP’s cybersecurity posture and capability to safeguard its digital assets.
The purpose of this position is to provide highly skilled technical and cyber expertise for development and implementation of the enterprise information security program. Responsibilities require leadership and project management experience, as well as expertise to ensure effective system-wide security capability analysis; best practices and assurance testing; risk assessment; awareness and education; and development of security control portfolio.
Duties and Responsibilities

  1. Lead the system-wide cybersecurity compliance program, ensuring IT activities, processes, and procedures meet regulatory and industrial requirements.
  2. Develop and implement effective policies and practices to safeguard IEHP digital assets and prevent unauthorized access.
  3. Recommend process improvement and technical directions in matters relating to program maturity, incident investigation, threat management, and control assessment.
  4. Organize the collection of data from required security artifacts and questionnaires for industry framework and other related industrial and cybersecurity standards and mapping this to the company control portfolio.
  5. Build and maintain cybersecurity metrics for all levels of management focused on trending and tracking reports to demonstrate compliance and improve resilience.
  6. Analyze risk associated with technology stack and supply chain and work with business leaders to proactively manage exceptions.
  7. Develop program strategies to improve cyber hygiene and address awareness and training for all stakeholders.
  8. Perform security review in technology products and solutions (including security tools and systems), identify gaps in control design and operation, and develop remediation plan.
  9. Provide advice and input for IT disaster recovery, contingency, and continuity of operations plans.
  10. Define policy and standards for data protection and recovery.
  11. Perform access & privilege review for both machine and human accounts.
  12. Properly document all systems security implementation, operations, and maintenance activities and update as necessary.
  13. Provide input to risk management process activities and related documentation (e.g., system life-cycle support plans, concept of operations, operational procedures, and maintenance training materials).

Experience Requirements

  1. Five (5) years in cybersecurity with focus on governance, compliance and risk management.
  2. Bachelor’s degree in Information Systems Security or in a computer related field or similar technical field from an accredited institution required.
  3. Certified Information Systems Security Professional (CISSP) or other industrial and vendor security certifications preferred.

Knowledge

Knowledge of laws, regulations, policies, and ethics as they relate to cybersecurity and privacy.
hashim@techoauth.com