1

Information Security Risk Analyst Jobs in Illinois

Risk Analyst

Deerfield, IL ยท On-site

$87K - $110K/yr

OVERVIEW Risk Analyst Location: Deerfield, IL | Remote Department: Corporate Services Overview At ... Partner with Information Security, Technology, Legal, Procurement, and business stakeholders to ...

Risk Analyst

Deerfield, IL ยท On-site +1

$87K - $110K/yr

OVERVIEW Risk Analyst Location: Deerfield, IL | Remote Department: Corporate Services Overview At ... Partner with Information Security, Technology, Legal, Procurement, and business stakeholders to ...

Information Security Officer

Chicago, IL ยท On-site

$99 - $145/hr

The Information Security Officer will be a member of the Business Information Security Officer ... Risk Management * Architecture * Customer and Client Focus * Executive Presence * Threat Analysis

AI Security Risk Assessor

Chicago, IL ยท Remote

$75 - $100/hr

REQUIRED QUALIFICATIONS - 7+ years of experience in Cybersecurity, Information Security, Technology Risk, or Cyber Risk Management. - Experience performing security risk assessments and control ...

next page

Showing results 1-20

Information Security Risk Analyst information

See Illinois salary details

$30

$56

$73

How much do information security risk analyst jobs pay per hour?

As of Aug 26, 2026, the average hourly pay for information security risk analyst in Illinois is $56.64, according to ZipRecruiter salary data. Most workers in this role earn between $44.04 and $63.61 per hour, depending on experience, location, and employer.

What is an information security risk analyst?

Information Security Risk Analysts are professionals responsible for identifying, assessing, and mitigating risks to an organization's information systems and data. They analyze potential threats, vulnerabilities, and impacts to ensure that appropriate security measures are in place. These analysts often develop risk management strategies, conduct security assessments, and recommend security enhancements. Their goal is to help organizations protect sensitive information and comply with relevant regulations.

What does an information security risk analyst do?

As an information security risk analyst, your job is to help assess each potential threat and determine whether or not your current network system suffers from vulnerability to that threat. In this IT role, you may monitor network activity, help implement and manage safety protocols, and research emerging threats to help determine the best response to them. Information security risk analysts often work with many other IT personnel at the same company to manage security needs and, somewhat unusually for an IT role, may also collaborate with outside experts and volunteers to find the best way to counter a particular threat. This is an extremely collaborative position, so the ability to work well with other people, including those you may be meeting for the first time, is essential to your success.

What are the key skills and qualifications needed to thrive as an information security risk analyst, and why are they important?

To thrive as an Information Security Risk Analyst, you need a solid understanding of cybersecurity principles, risk management frameworks, and a relevant degree or certifications such as CISSP, CISM, or CRISC. Familiarity with tools like risk assessment platforms, vulnerability scanners, and security information and event management (SIEM) systems is typically required. Strong analytical thinking, communication, and attention to detail help you translate complex risks into actionable recommendations and collaborate with stakeholders. These skills are crucial for effectively identifying, assessing, and mitigating security risks to protect organizational assets and ensure compliance.

How does an information security risk analyst typically collaborate with other departments to address security risks?

Information Security Risk Analysts work closely with various departments such as IT, compliance, legal, and business units to identify and mitigate security risks. They often facilitate risk assessments, communicate findings, and recommend solutions tailored to each department's needs. Regular meetings and cross-functional projects are common, ensuring security measures align with business objectives while maintaining compliance. This collaborative approach helps foster a culture of security awareness throughout the organization.

What is the difference between Information Security Risk Analyst vs Cybersecurity Analyst?

AspectInformation Security Risk AnalystCybersecurity Analyst
CertificationsISO 27001, CISSP, CISACompTIA Security+, CEH, CISSP
Work EnvironmentRisk assessment teams, compliance departmentsSecurity operations centers, incident response teams
Employer & Industry UsageFinancial, healthcare, government sectorsTech companies, cybersecurity firms, enterprises

While both roles focus on protecting information assets, the Information Security Risk Analyst primarily assesses and manages risks related to information security policies and compliance. In contrast, the Cybersecurity Analyst actively monitors security systems, responds to threats, and handles incidents. Understanding these differences helps organizations assign the right responsibilities and professionals to safeguard their digital assets.

What are popular job titles related to Information Security Risk Analyst jobs in Illinois?

For Information Security Risk Analyst jobs in Illinois, the most frequently searched job titles are:

What job categories do people searching Information Security Risk Analyst jobs in Illinois look for?

The top searched job categories for Information Security Risk Analyst jobs in Illinois are:

Infographic showing various Information Security Risk Analyst job openings in Illinois as of August 2026, with employment types broken down into 1% As Needed, 71% Full Time, 26% Part Time, and 2% Contract. Highlights an 92% Physical, 3% Hybrid, and 5% Remote job distribution, with an average salary of $117,811 per year, or $56.6 per hour.

Vice President, Information Security & Risk

Chicago, IL โ€ข On-site

$155 - $175/hr

Other

Medical, Dental, Vision, Retirement, PTO

Posted 18 days ago


Job description

Vice President, Information Security & Risk

Job Category: Vice President

Requisition Number: VICEP008455

  • Posted : August 7, 2026
  • Full-Time
Locations

Showing 1 location

4101 N Ravenswood Ave
Chicago, IL 60613, USA

Description

The Vice President (VP), Information Security & Risk is responsible for leading the execution and continuous improvement of the Thresholds information security and risk management program. The scope of the program is the protection of Thresholdsโ€™ information and technology assets as well as Thresholdsโ€™ digital data in the cloud. The VP, Information Security & Risk is accountable for fulfilling the programโ€™s protection and compliance requirements while enabling innovation, analytics, and digital transformation in a secure and compliant manner; provides strong technical leadership; and serves as a trusted advisor to the Chief Information Officer and agency leaders in addition to serving as the agencyโ€™s designated security official.

ESSENTIAL DUTIES & RESPONSIBILITIES:

Security Operations and Execution

  • Manages the day-to-day information security operations, including security posture and event monitoring, threat and vulnerability identification, policy violation, access control and attack surface monitoring, monitoring the effectiveness of email and URL filtering, and incident response activities.
  • Manages the remediation of security issues, policy violation, ineffective rules for access control, attack surface reduction, and email/URL filtering as well as the creation and maintenance of standard operating procedures for security operations.
  • Develops and maintains dashboard(s) of security operations KPIโ€™s for Information Technology (IT/ITS) management review.

Application, Cloud, Digital, Infrastructure and Platform Security

  • Supports secure implementation and operation of applications, cloud services, infrastructure, and platforms (cloud, digital, end-user, and server).
  • Partners with Information Technology Services (ITS) and digital teams to incorporate needed security controls into the design, development, and deployment of Thresholds applications, cloud services, infrastructure, and platforms.
  • Performs and/or coordinates risk reviews of application and digital systems, and their underlying configurations.

Data Security and Privacy

  • Manages the IT Risk Management Program using Thresholdsโ€™ risk management tool to record and assess identified risks, assign a risk owner, track risk treatment progress in the risk register, and provide risk management reporting to ITS leadership.
  • Leads enterprise, regulatory, service provider, and project IT risk assessments.
  • Supports internal and external audits, regulatory reviews, and customer or partner security inquiries.

Policy, Awareness & Documentation

  • Owns development and enforcement of the Information Security & Risk Management Programโ€™s policies, standards, and procedures, as well as the agencyโ€™s Acceptable Use Policies.
  • Leads or oversees security awareness and training programs for the agency and the ITS staff.
  • Maintains and improves the Incident Response Playbook.

Collaboration and Continuous Improvement

  • Serves as a trusted advisor to business units and project teams on matters related to AI security, application security, information security, network security, AI risk, IT risk, regulatory compliance, emerging threats, social engineering, data classification; promoting security as a mission enabler for Thresholds.
  • Promotes a strong, practical security/risk culture that balances protection with usability and business needs.
  • Influences decisions by clearly articulating risk, tradeoffs, and recommendations.

Program Leadership and Strategy Execution

  • Embeds security by design principles into system implementations, vendor selection, and operational processes.
  • Translates security strategy into actionable roadmaps, initiatives, and measurable outcomes.
  • Stays current on evolving AI and cyber threats, data protection practices, and regulatory requirements.

Vulnerability and Threat Management

  • Manages the Vulnerability Management Program using Thresholdsโ€™ vulnerability management tools to identify and assess vulnerabilities, assign a vulnerability treatment owner, track vulnerability treatment progress in the vulnerability register, and provide vulnerability management reporting to IT leadership.
  • Reviews threat intelligence to identify potential negative impacting issues and proactively performs remedial actions to block or avoid the threat(s).
  • Provides threat action summaries to ITS leadership.

Team Leadership and Development

  • Directly manages, mentors, and develops security staff; setting performance goals and supporting career growth.
  • Provides technical guidance and decision support to security team members and cross-functional partners.
  • Helps shape workforce planning, resource allocation, and budget inputs for security initiatives.

EDUCATION:

  • Accredited bachelorโ€™s degree in information security, Computer Science, Information Systems, or related field (or equivalent experience) required.

EXPERIENCE:

Required

  • Minimum of seven (7) Years of progressive experience in information security, cybersecurity, data protection, or IT risk management.
  • Minimum of three (3) Years of experience leading teams or major security/risk management programs.
  • Hands-on experience with security operations, incident response, risk assessments, or compliance activities.
  • Working knowledge of security and risk frameworks (e.g., NIST, ISO 27001, CIS Controls), AI security and risk management best practices, regulatory requirements (e.g., HIPAA, PCI DSS), Microsoft security and risk management tools, identity and access management, network access controls, data loss prevention, and SIEM systems.
  • Demonstrated ability to explain security risk and control matter to non-technical audiences.

Preferred

  • Experience supporting cloud environments, SaaS platforms, or digital transformation initiatives.
  • Experience in a mid-sized, non-profit and/or regulated organization.
  • Familiarity with data analytics, and reporting tools.
  • Familiarity with computer forensic techniques.
  • Demonstrated experience partnering with leaders/senior leaders and influencing outcomes.

SKILLS/CERTIFICATIONS

  • Security certifications (e.g. CISSP, CISM, Security+, CCSP)
  • Microsoft certified
  • Demonstrated and effective analytical and problem-solving skills
  • Strong analytical and problem-solving skills
  • Practical, risk-based approach to security
  • Clear interpersonal and communication skills, both written and oral
  • Policy writing
  • Scripting languages, preferably PowerShell
  • Collaboration and relationship management
  • Attention to detail and follow-through
  • High integrity and discretion
  • Demonstrated project management and people management skills
  • Strategic execution and program ownership
  • Demonstrated effective cross-functional collaboration

What Sets Thresholds Apart:

  • Competitive pay โ€“ Salary Range: $155,000.00 - 175,000.00 annually
  • Generous PTO (9 federal holidays, 8 days of sick leave, 15-22 days personal and vacation)
  • Dental insurance, vision insurance, choice of 3 medical insurance plans
  • 403(b) retirement plan with 3% employer match
  • Robust employee assistance program (EAP)

Thresholds is a mission-driven agency with a deep commitment to fostering an environment where all feel valued and respected, a place where every employee can be themselves, thrive, and support the agencyโ€™s mission. Click here to learn more.

One of the oldest and largest community mental health organizations in Illinois, we pride ourselves in being a Chicago Tribune Top Workplace and one of Chicagoโ€™s 101 Best & Brightest Companies to Work For, several years in a row.

Equal Opportunity Employer/Protected Veterans/Individuals with Disabilities
This employer is required to notify all applicants of their rights pursuant to federal employment laws.For further information, please review the Know Your Rights notice from the Department of Labor.

#J-18808-Ljbffr