... cybersecurity risk management practices. The Principal Cybersecurity Analyst contributes directly ... Employment Status: Full-Time * Employee Status: Regular * Work Week: Days * Minimum Salary: US ...
... cybersecurity risk management practices. The Principal Cybersecurity Analyst contributes directly ... Employment Status: Full-Time * Employee Status: Regular * Work Week: Days * Minimum Salary: US ...
Principal Cybersecurity Analyst - Risk Mgmt & AI Security
Houston, TX · On-site +1
$123K/yr
... cybersecurity risk management practices. The Principal Cybersecurity Analyst contributes directly ... Employment Status: Full-Time * Employee Status: Regular * Work Week: Days * Minimum Salary: US ...
Principal Cybersecurity Analyst - Risk Mgmt & AI Security
Houston, TX · On-site +1
$123K/yr
... cybersecurity risk management practices. The Principal Cybersecurity Analyst contributes directly ... Employment Status: Full-Time * Employee Status: Regular * Work Week: Days * Minimum Salary: US ...
The Principal Cybersecurity Analyst plays a critical role in shaping and advancing enterprise-wide governance, risk, and compliance (GRC) programs, with expanded accountability for emerging AI ...
The Principal Cybersecurity Analyst plays a critical role in shaping and advancing enterprise-wide governance, risk, and compliance (GRC) programs, with expanded accountability for emerging AI ...
Risk Analyst
Houston, TX · On-site
Risk Analyst Department ... Legal/Risk Employment Type: Full Time Location: Houston, TX Reporting To: Jessica Ortega ...
Risk Analyst
Houston, TX · On-site
Risk Analyst Department ... Legal/Risk Employment Type: Full Time Location: Houston, TX Reporting To: Jessica Ortega ...
Cybersecurity Governance Analyst
Houston, TX · On-site
$43 - $46/hr
Cybersecurity Governance Analyst Job Type: Contract (t his role is a 12-month assignment) Job ... This role will assist with AI security standards, risk assessments, vendor reviews, compliance ...
Quick apply
Cybersecurity Governance Analyst
Houston, TX · On-site
$43 - $46/hr
Cybersecurity Governance Analyst Job Type: Contract (t his role is a 12-month assignment) Job ... This role will assist with AI security standards, risk assessments, vendor reviews, compliance ...
Program Manager, Cybersecurity Supply Chain Risk Management
Houston, TX · On-site
$136K/yr
... Coordinate risk analysis and compensating control strategies where patching or upgrading is ... full-time nuclear industry cyber security experience may be considered in lieu of a degree. • ...
Program Manager, Cybersecurity Supply Chain Risk Management
Houston, TX · On-site
$136K/yr
... Coordinate risk analysis and compensating control strategies where patching or upgrading is ... full-time nuclear industry cyber security experience may be considered in lieu of a degree. • ...
Market Risk Analyst
Houston, TX · On-site
Aramco Trading Americas Market Risk Analyst (1935) Market Risk Staff - Houston, TX. - Full Time SUMMARY The Market Risk Analyst primary role is to support trading by monitoring daily trading activity ...
Market Risk Analyst
Houston, TX · On-site
Aramco Trading Americas Market Risk Analyst (1935) Market Risk Staff - Houston, TX. - Full Time SUMMARY The Market Risk Analyst primary role is to support trading by monitoring daily trading activity ...
Execute risk and threat analyst activities that include track, measure, validate, and report on ... Familiarity with standards such as ISO 27001/27002 or the NIST Cybersecurity Framework is desirable.
New
Execute risk and threat analyst activities that include track, measure, validate, and report on ... Familiarity with standards such as ISO 27001/27002 or the NIST Cybersecurity Framework is desirable.
New
Sr. Security Risk Analyst
Houston, TX · On-site
Execute risk and threat analyst activities that include track, measure, validate, and report on ... Familiarity with standards such as ISO 27001/27002 or the NIST Cybersecurity Framework is desirable.
Sr. Security Risk Analyst
Houston, TX · On-site
Execute risk and threat analyst activities that include track, measure, validate, and report on ... Familiarity with standards such as ISO 27001/27002 or the NIST Cybersecurity Framework is desirable.
... Coordinate risk analysis and compensating control strategies where patching or upgrading is ... full-time nuclear industry cyber security experience may be considered in lieu of a degree. • ...
... Coordinate risk analysis and compensating control strategies where patching or upgrading is ... full-time nuclear industry cyber security experience may be considered in lieu of a degree. • ...
The Cybersecurity Threats & Risk Analyst will work within the IT Security & Compliance organization to identify, analyze, and help mitigate cybersecurity risks and threats affecting the organization ...
The Cybersecurity Threats & Risk Analyst will work within the IT Security & Compliance organization to identify, analyze, and help mitigate cybersecurity risks and threats affecting the organization ...
Market Risk Analyst
Houston, TX · On-site
$125K - $152K/yr
Build your own market risk capabilities through ongoing learning, leveraging new tools, analytics ... Benefits for certain eligible, full-time employees include: * Annual Variable Cash Incentive ...
Market Risk Analyst
Houston, TX · On-site
$125K - $152K/yr
Build your own market risk capabilities through ongoing learning, leveraging new tools, analytics ... Benefits for certain eligible, full-time employees include: * Annual Variable Cash Incentive ...
Cybersecurity Program Manager
The Woodlands, TX · On-site
$99K - $134K/yr
Oversee cybersecurity controls and risk management practices across cloud platforms, including ... Strong analytical and problem-solving skills, with the ability to assess risks and implement ...
Cybersecurity Program Manager
The Woodlands, TX · On-site
$99K - $134K/yr
Oversee cybersecurity controls and risk management practices across cloud platforms, including ... Strong analytical and problem-solving skills, with the ability to assess risks and implement ...
Permanent Time Type: Full time Position: Senior Risk Analyst - Gas & Power Position Purpose & Summary: The Senior Risk Analyst - Gas & Power owns daytoday market risk monitoring for our gas and power ...
Permanent Time Type: Full time Position: Senior Risk Analyst - Gas & Power Position Purpose & Summary: The Senior Risk Analyst - Gas & Power owns daytoday market risk monitoring for our gas and power ...
Permanent Time Type: Full time Position: Senior Risk Analyst - Gas & Power Position Purpose & Summary: The Senior Risk Analyst - Gas & Power owns day-to-day market risk monitoring for our gas and ...
Permanent Time Type: Full time Position: Senior Risk Analyst - Gas & Power Position Purpose & Summary: The Senior Risk Analyst - Gas & Power owns day-to-day market risk monitoring for our gas and ...
Digital Risk Advisory & Cybersecurity Associate Attorney
Houston, TX · On-site
$245K - $345K/yr
Excellent legal research, writing, analytical, and communication skills. * Strong project ... Risk management * Familiarity with privacy and cybersecurity laws such as: * CCPA * GDPR * GLBA
Quick apply
Digital Risk Advisory & Cybersecurity Associate Attorney
Houston, TX · On-site
$245K - $345K/yr
Excellent legal research, writing, analytical, and communication skills. * Strong project ... Risk management * Familiarity with privacy and cybersecurity laws such as: * CCPA * GDPR * GLBA
Analyst, Risk
Houston, TX · On-site
Middle Office Employment Type: Full Time Location: US TX Houston - Corporate Office Description About Us: The Caturus platform founded by Kimmeridge - an alternative asset manager focused on the ...
Analyst, Risk
Houston, TX · On-site
Middle Office Employment Type: Full Time Location: US TX Houston - Corporate Office Description About Us: The Caturus platform founded by Kimmeridge - an alternative asset manager focused on the ...
Sr. Cybersecurity Analyst
$110K - $115K/yr
Title: Sr. Cyber Security Analyst Location: Katy, TX- 100% onsite Duration: Direct Hire Work ... Perform advanced threat analysis and risk modeling * Implement and manage enterprise security ...
Quick apply
Sr. Cybersecurity Analyst
$110K - $115K/yr
Title: Sr. Cyber Security Analyst Location: Katy, TX- 100% onsite Duration: Direct Hire Work ... Perform advanced threat analysis and risk modeling * Implement and manage enterprise security ...
Information Security Risk Mgmt Anlst
Houston, TX · On-site +1
Job Summary The Risk Management Analyst is responsible for identifying, assessing, and managing cybersecurity risks across the organization's IT and OT environments. The analyst leads CITGO efforts ...
New
Information Security Risk Mgmt Anlst
Houston, TX · On-site +1
Job Summary The Risk Management Analyst is responsible for identifying, assessing, and managing cybersecurity risks across the organization's IT and OT environments. The analyst leads CITGO efforts ...
New
*This is a contingent opportunity Risk Management Framework Analyst K2 Group is seeking a Risk ... Requirements * 10-12 Cybersecurity experience with documented experience as an ISSO, ISSM, or SCA.
*This is a contingent opportunity Risk Management Framework Analyst K2 Group is seeking a Risk ... Requirements * 10-12 Cybersecurity experience with documented experience as an ISSO, ISSM, or SCA.
Full Time Cyber Security Risk Analyst information
See Houston, TX salary details
$41.1K - $50.4K
1% of jobs
$50.4K - $59.6K
6% of jobs
$59.6K - $68.9K
10% of jobs
$75.3K is the 25th percentile. Wages below this are outliers.
$68.9K - $78.2K
12% of jobs
$78.2K - $87.5K
15% of jobs
The median wage is $91.5K / yr.
$87.5K - $96.8K
15% of jobs
$96.8K - $106.1K
10% of jobs
$110.1K is the 75th percentile. Wages above this are outliers.
$106.1K - $115.4K
16% of jobs
$115.4K - $124.7K
7% of jobs
$124.7K - $134K
5% of jobs
$134K - $143.2K
3% of jobs
$41.1K
$94.9K
$143.2K
How much do full time cyber security risk analyst jobs pay per year?
What is the difference between Full Time Cyber Security Risk Analyst vs Cyber Security Analyst?
| Aspect | Full Time Cyber Security Risk Analyst | Cyber Security Analyst |
|---|---|---|
| Certifications | CompTIA Security+, CISSP, CISA | CompTIA Security+, CEH, CISSP (preferred) |
| Work Environment | Risk assessment teams, security compliance, policy development | Security monitoring, incident response, vulnerability assessment |
| Employer & Industry Usage | Financial, healthcare, government sectors focusing on risk management | IT firms, tech companies, cybersecurity service providers |
Full Time Cyber Security Risk Analysts focus on identifying, assessing, and mitigating security risks within organizations, often working on compliance and policy. Cyber Security Analysts primarily monitor security systems, respond to incidents, and perform vulnerability assessments. While both roles require similar certifications and work in cybersecurity, their core responsibilities differ: risk analysis versus security monitoring.

Full-time
Medical, Dental, Vision, Life, Retirement, PTO
Re-posted yesterday
MD Anderson Cancer Center rating
8.4
Based on 170 frontline employees who took The Breakroom Quiz
24th of 887 rated healthcare providers
Job description
The Principal Cybersecurity Analyst contributes directly to safeguarding sensitive data, maintaining regulatory compliance, and strengthening the organization's security posture through innovative, data-driven risk management and governance strategies. The Principal Cybersecurity Analyst serves as a trusted advisor, architect, and leader within the cybersecurity function.
The ideal candidate brings advanced education in information systems or cybersecurity, extensive experience leading enterprise risk management or GRC programs, and strong knowledge of frameworks such as NIST, HIPAA, and HITRUST. Preferred candidates will also have hands-on experience assessing AI/ML risk, strong executive communication skills, and certifications such as CISSP, CISM, or PMP.
Minimum $123,000 - Midpoint $154,000 - Maximum $185,000
Work Location: Remote 100%
Why Us?
At UT MD Anderson, the Principal Cybersecurity Analyst plays an essential role in advancing cybersecurity innovation in a mission-driven healthcare environment. This position offers the opportunity to shape enterprise risk strategy, influence executive decision-making, and lead emerging AI governance practices, all while supporting an organization dedicated to saving lives. Employees benefit from a collaborative culture, professional development opportunities, and a strong commitment to work-life balance.
• Employer-paid medical coverage starting day one for employees working 30+ hours/week, plus optional group dental, vision, life, AD&D, and disability insurance.
• Accruals for PTO and Extended Illness Bank, plus paid holidays, wellness, childcare, and other leave options.
• Tuition Assistance Program after six months of service and access to extensive wellness, fitness, and employee resource groups.
• Defined-benefit pension through the Teachers Retirement System, voluntary retirement plans, and employer-paid life and reduced salary protection programs.
Responsibilities
Governance, Risk & Compliance (GRC) Architecture & Risk Management Program Leadership
• Serve as principal architect and subject matter expert for enterprise GRC and cybersecurity risk programs
• Define and maintain risk assessment methodologies, control frameworks, and risk scoring models
• Establish workflows across development, staging, and production environments
• Develop SOPs, roles, segregation of duties, and change management processes
• Lead design and execution of enterprise risk management strategies
Security & Risk Platform Integration and Automation
• Architect and maintain integrations across Archer, Tenable, ServiceNow, Microsoft Configuration Manager (SCCM/MECM), and Medigate
• Design automated workflows consolidating asset, vulnerability, and risk data
• Enable enterprise-wide risk visibility and reporting through data-driven systems
• Ensure data quality, reconciliation, and interoperability across platforms and CMDB
Regulatory & Compliance Framework Management
• Apply frameworks including NIST CSF, NIST 800-53, HIPAA, and HITRUST
• Conduct control mapping, gap assessments, and compliance reporting
• Advise stakeholders on remediation strategies and regulatory requirements
• Align institutional policies with regulatory and accreditation standards
AI Security & Governance
• Establish and mature AI security and governance programs
• Develop AI risk assessment criteria and governance standards
• Align controls to NIST AI Risk Management Framework and institutional policies
• Evaluate AI/ML tools and vendors for data protection and compliance risks
• Partner with data governance, privacy, and legal teams on AI initiatives
Strategic Risk Visioning, Assessment & Executive Advisory
• Develop multi-year roadmaps, milestones, and resource plans
• Lead enterprise and project-level risk assessments
• Translate technical findings into executive-level reporting and dashboards
• Advise leadership on risk posture and investment prioritization
• Provide technical leadership and mentorship across teams
EDUCATION
- Required: Bachelor's Degree Computer Information Systems, Business Information Systems, Computer Science or related field.
- Preferred: Master's Degree Information Security, Computer Science or related field
WORK EXPERIENCE
- Required: 7 years In information security and/or cybersecurity experience including multiple security domains, to include two years lead/supervisory experience.
- May substitute required education degree with additional years of equivalent experience on a one to one basis.
- Preferred: At least 7-8 years of progressive cybersecurity experience, hands-on risk management (risk assessment, risk register ownership, control evaluation, or risk quantification), led or owned a security risk management program or framework implementation (e.g., NIST RMF/CSF, ISO 27005, FAIR, or equivalent), direct hands-on experience assessing the security or risk posture of AI/ML systems or GenAI deployments, ability to translate technical risk into business-level language for executive and governance audiences (e.g., briefing a CISO, risk committee, or board), experience using Archer, excellent communication skills, risk management, and cybersecurity framework is a must.
LICENSES AND CERTIFICATIONS
- Preferred: CISSP - Cert IS Security Professional Issued by the International Information Systems Security Certification Consortium ((ISC).
- Preferred: CISM - Cert Info Security Manager Issued by Information Systems Audit and Control Association (ISACA).
- Preferred: PMP - Project Mgt Professional Issued by the Project Management Institute (PMI).
- Preferred: Other applicable security industry certifications.
The University of Texas MD Anderson Cancer Center offers excellent benefits, including medical, dental, paid time off, retirement, tuition benefits, educational opportunities, and individual and team recognition.
This position may be responsible for maintaining the security and integrity of critical infrastructure, as defined in Section 113.001(2) of the Texas Business and Commerce Code and therefore may require routine reviews and screening. The ability to satisfy and maintain all requirements necessary to ensure the continued security and integrity of such infrastructure is a condition of hire and continued employment.
It is the policy of The University of Texas MD Anderson Cancer Center to provide equal employment opportunity without regard to race, color, religion, age, national origin, sex, gender, sexual orientation, gender identity/expression, disability, protected veteran status, genetic information, or any other basis protected by institutional policy or by federal, state, or local laws unless such distinction is required by law.http://www.mdanderson.org/about-us/legal-and-policy/legal-statements/eeo-affirmative-action.html
Additional Information
- Requisition ID: 181706
- Employment Status: Full-Time
- Employee Status: Regular
- Work Week: Days
- Minimum Salary: US Dollar (USD) 123,000
- Midpoint Salary: US Dollar (USD) 154,000
- Maximum Salary : US Dollar (USD) 185,000
- FLSA: exempt and not eligible for overtime pay
- Fund Type: Hard
- Work Location: Remote (within Texas only)
- Pivotal Position: Yes
- Referral Bonus Available?: Yes
- Relocation Assistance Available?: Yes
#LI-Remote
What MD Anderson Cancer Center employees say
Pay
Benefits
Hours and flexibility
Workplace
Get the full story on Breakroom
About MD Anderson Cancer Center
Sourced by ZipRecruiter
Industry
Health care and social assistance
Company size
10,000+ Employees
Headquarters location
Houston, TX, US
Year founded
1944