1

Cybersecurity Risk Management Analyst Jobs in California

Cybersecurity Risk & Resilience Manager

Concord, CA · Hybrid

$121K - $164K/yr

Help shape and mature Cerus' cybersecurity program, including risk management practices, governance processes, policies, standards, and roadmap priorities. * Develop and maintain a practical ...

RISK MANAGEMENT ANALYST

Beverly Hills, CA · On-site

$38.46 - $43.27/hr

We are seeking a Risk Management Analyst to join our Global Risk Management team in Beverly Hills, CA. This is an exciting opportunity to support a range of risk management activities across ...

Cybersecurity Assessment Lead

Coronado, CA · On-site

$117K - $159K/yr

Strong leadership and team management capabilities. * Ability to provide cybersecurity risk analysis to senior Government stakeholders. * Strong technical writing skills for cybersecurity assessment ...

Cybersecurity Assessment Lead

Coronado, CA

$117K - $159K/yr

... supporting Risk Management Framework (RMF) authorization processes for customer networks and ... Analyze testing results and provide cybersecurity risk assessments to the Government SCA and ...

next page

Showing results 1-20

Cybersecurity Risk Management Analyst information

What are the key skills and qualifications needed to thrive as a Cybersecurity Risk Management Analyst, and why are they important?

To thrive as a Cybersecurity Risk Management Analyst, you need a solid understanding of information security principles, risk assessment methodologies, and regulatory frameworks, typically backed by a degree in cybersecurity or a related field. Familiarity with tools such as risk management software, vulnerability scanners, and certifications like CISSP, CISM, or CRISC is highly valued. Strong analytical thinking, attention to detail, and effective communication skills help in translating technical risks into actionable insights for stakeholders. These skills ensure organizations can proactively identify, assess, and mitigate cyber risks to protect sensitive information and maintain regulatory compliance.

What does a Cybersecurity Risk Management Analyst do?

A Cybersecurity Risk Management Analyst is responsible for identifying, assessing, and mitigating risks to an organization's information systems and data. They analyze security policies, conduct risk assessments, and recommend controls to minimize potential threats. Their work involves monitoring security measures, ensuring compliance with regulations, and helping develop strategies to protect the organization from cyberattacks. Ultimately, they play a crucial role in safeguarding sensitive information and supporting overall cybersecurity posture.

What are some typical challenges a Cybersecurity Risk Management Analyst faces when working with cross-functional teams?

Cybersecurity Risk Management Analysts often collaborate with IT, legal, compliance, and business units to identify and mitigate risks. A common challenge is bridging the communication gap between technical and non-technical stakeholders, ensuring that risk recommendations are understood and actionable. Additionally, balancing business objectives with security requirements can be complex, requiring strong negotiation and diplomacy skills. Analysts must also stay updated on evolving threats while tailoring solutions to each department’s unique needs.

What is the difference between Cybersecurity Risk Management Analyst vs Cybersecurity Analyst?

AspectCybersecurity Risk Management AnalystCybersecurity Analyst
CertificationsCompTIA Security+, CISSP, CISMCompTIA Security+, CEH, CISSP
Work EnvironmentFocus on risk assessment, policy development, and complianceFocus on threat detection, incident response, and system monitoring
Employer & Industry UsageUsed in organizations prioritizing risk mitigation and complianceUsed across various sectors for security operations and monitoring

While both roles involve cybersecurity, the Cybersecurity Risk Management Analyst primarily assesses and manages risks, ensuring compliance and policy adherence. In contrast, the Cybersecurity Analyst concentrates on identifying threats, monitoring security systems, and responding to incidents. Both roles are essential but focus on different aspects of cybersecurity defense.

What are popular job titles related to Cybersecurity Risk Management Analyst jobs in California? For Cybersecurity Risk Management Analyst jobs in California, the most frequently searched job titles are:
What job categories do people searching Cybersecurity Risk Management Analyst jobs in California look for? The top searched job categories for Cybersecurity Risk Management Analyst jobs in California are:
Infographic showing various Cybersecurity Risk Management Analyst job openings in California as of June 2026, with employment types broken down into 98% Full Time, and 2% Part Time. Highlights an 82% Physical, 7% Hybrid, and 11% Remote job distribution.

Cybersecurity Risk Analyst

Select Jarvis.com

Rancho Cucamonga, CA • Hybrid

Other

Posted 3 days ago


Job description

Job Title: Cybersecurity Risk Analyst
Location: Rancho Cucamonga, California (Hybrid)
LONG TERM Contract
Position Summary
The Cybersecurity Risk Analyst serves as a key contributor within Governance, Risk, and Compliance (GRC), responsible for assessing, strengthening, and advancing the organization’s cybersecurity posture. This role provides technical expertise, risk advisory, and program leadership to ensure enterprise security controls effectively safeguard digital assets.
Key Responsibilities
Lead and manage the enterprise cybersecurity compliance program, ensuring alignment with regulatory and industry standards (e.g., NIST, ISO 27001, HIPAA).
Conduct comprehensive risk assessments across systems, applications, and third-party vendors; identify gaps and recommend remediation strategies.
Evaluate and validate security controls, ensuring proper design and operational effectiveness.
Develop, implement, and maintain cybersecurity policies, standards, and procedures.
Analyze risks within the technology stack and supply chain; partner with stakeholders to manage and mitigate risks.
Build and maintain cybersecurity metrics, dashboards, and reporting for leadership visibility and decision-making.
Support incident response, threat management, and continuous improvement initiatives.
Perform access and privilege reviews for user and system accounts.
Provide input into disaster recovery, business continuity, and data protection strategies.
Conduct security reviews of tools, platforms, and enterprise solutions to identify vulnerabilities and control gaps.
Drive cybersecurity awareness and training programs across the organization.
Maintain documentation for security controls, risk assessments, and compliance activities.
Required Qualifications
Bachelor’s degree in Information Security, Computer Science, or related technical field.
Minimum of 5 years of experience in cybersecurity, with a focus on governance, risk, and compliance (GRC).
Strong knowledge of cybersecurity frameworks and standards (e.g., NIST CSF, ISO 27001, HITRUST, HIPAA).
Hands-on experience with risk assessments, control testing, and audit support.
Ability to translate technical risks into business impact for stakeholders.
Preferred Qualifications
Certifications such as CISSP, CISM, or CISA.
Experience in healthcare or regulated industries.
Familiarity with third-party/vendor risk management.
Experience building cybersecurity metrics and reporting frameworks