1

Information Security Risk Analyst Jobs in Illinois

The Catastrophe Risk Analyst analyzes data, models risk and provides strategic recommendations to ... For additional information on Ryan Specialty Total Rewards, visit our website We provide ...

Senior IT Risk Analyst

Rosemont, IL · Hybrid

$98K - $110K/yr

Position Overview The Senior IT Risk Analyst (Audit concentration) role supports IT Risk Leadership in maintaining a strong, healthy audit culture across IT globally. This role applies industry best ...

The Catastrophe Risk Analyst analyzes data, models risk and provides strategic recommendations to ... For additional information on Ryan Specialty Total Rewards, visit our website We provide ...

Senior IT Risk Analyst

Rosemont, IL · On-site

$98K - $110K/yr

Position Overview The Senior IT Risk Analyst (Audit concentration) role supports IT Risk Leadership in maintaining a strong, healthy audit culture across IT globally. This role applies industry best ...

As a Senior Privacy & AI Risk Analyst, you will be expected to spearhead privacy initiatives and ... In coordination with Information Security Team, assist in Vendor Risk Assessments relating to ...

Showing results 41-60

Information Security Risk Analyst information

See Illinois salary details

$30

$56

$73

How much do information security risk analyst jobs pay per hour?

As of Aug 9, 2026, the average hourly pay for information security risk analyst in Illinois is $56.64, according to ZipRecruiter salary data. Most workers in this role earn between $44.04 and $63.61 per hour, depending on experience, location, and employer.

What is the difference between Information Security Risk Analyst vs Cybersecurity Analyst?

AspectInformation Security Risk AnalystCybersecurity Analyst
CertificationsISO 27001, CISSP, CISACompTIA Security+, CEH, CISSP
Work EnvironmentRisk assessment teams, compliance departmentsSecurity operations centers, incident response teams
Employer & Industry UsageFinancial, healthcare, government sectorsTech companies, cybersecurity firms, enterprises

While both roles focus on protecting information assets, the Information Security Risk Analyst primarily assesses and manages risks related to information security policies and compliance. In contrast, the Cybersecurity Analyst actively monitors security systems, responds to threats, and handles incidents. Understanding these differences helps organizations assign the right responsibilities and professionals to safeguard their digital assets.

What are the key skills and qualifications needed to thrive as an information security risk analyst, and why are they important?

To thrive as an Information Security Risk Analyst, you need a solid understanding of cybersecurity principles, risk management frameworks, and a relevant degree or certifications such as CISSP, CISM, or CRISC. Familiarity with tools like risk assessment platforms, vulnerability scanners, and security information and event management (SIEM) systems is typically required. Strong analytical thinking, communication, and attention to detail help you translate complex risks into actionable recommendations and collaborate with stakeholders. These skills are crucial for effectively identifying, assessing, and mitigating security risks to protect organizational assets and ensure compliance.

What is an information security risk analyst?

Information Security Risk Analysts are professionals responsible for identifying, assessing, and mitigating risks to an organization's information systems and data. They analyze potential threats, vulnerabilities, and impacts to ensure that appropriate security measures are in place. These analysts often develop risk management strategies, conduct security assessments, and recommend security enhancements. Their goal is to help organizations protect sensitive information and comply with relevant regulations.

What does an information security risk analyst do?

As an information security risk analyst, your job is to help assess each potential threat and determine whether or not your current network system suffers from vulnerability to that threat. In this IT role, you may monitor network activity, help implement and manage safety protocols, and research emerging threats to help determine the best response to them. Information security risk analysts often work with many other IT personnel at the same company to manage security needs and, somewhat unusually for an IT role, may also collaborate with outside experts and volunteers to find the best way to counter a particular threat. This is an extremely collaborative position, so the ability to work well with other people, including those you may be meeting for the first time, is essential to your success.

How does an information security risk analyst typically collaborate with other departments to address security risks?

Information Security Risk Analysts work closely with various departments such as IT, compliance, legal, and business units to identify and mitigate security risks. They often facilitate risk assessments, communicate findings, and recommend solutions tailored to each department's needs. Regular meetings and cross-functional projects are common, ensuring security measures align with business objectives while maintaining compliance. This collaborative approach helps foster a culture of security awareness throughout the organization.
What are the most commonly searched types of Information Security Risk Analyst jobs in Illinois? The most popular types of Information Security Risk Analyst jobs in Illinois are:
What job categories do people searching Information Security Risk Analyst jobs in Illinois look for? The top searched job categories for Information Security Risk Analyst jobs in Illinois are:
What are popular job titles related to Information Security Risk Analyst jobs in IL? For Information Security Risk Analyst jobs in IL, the most frequently searched job titles are:
Infographic showing various Information Security Risk Analyst job openings in Illinois as of August 2026, with employment types broken down into 1% As Needed, 79% Full Time, 18% Part Time, and 2% Contract. Highlights an 94% Physical, 2% Hybrid, and 4% Remote job distribution, with an average salary of $117,811 per year, or $56.6 per hour.

Information System Security Engineer (Pipeline)

Electrosoft

Belleville, IL • On-site

Full-time

Re-posted 3 days ago


Job description

Job Summary:
Electrosoft Services, Inc. is an award-winning company that provides comprehensive technology-based solutions and services to federal customers. The Security Engineer - Risk & Vulnerability Management is responsible for proactively identifying, assessing, and mitigating security risks associated with the organization's servers, software applications, and cloud infrastructure.
Responsibilities:
• Plan, execute, and document comprehensive security risk assessments of servers (on-premise and cloud), software applications (web and desktop), and infrastructure components.
• Analyze business impact, threat landscape, and vulnerability data to determine overall risk posture.
• Develop and maintain a risk register, tracking identified risks, mitigation plans, and remediation progress.
• Contribute to the development and maintenance of the organization's risk management framework.
• Perform regular vulnerability scanning using tools such as Nessus, Qualys, Rapid7 InsightVM, or similar.
• Analyze scan results, identify false positives, and prioritize vulnerabilities for remediation.
• Collaborate with system administrators, developers, and other IT teams to ensure timely patching and remediation of vulnerabilities.
• Track and report on vulnerability remediation progress.
• Maintain and improve vulnerability scanning infrastructure.
• Develop and implement automation scripts to streamline vulnerability management processes.
• Evaluate and recommend new security tools and technologies to enhance risk assessment and vulnerability management capabilities.
• Develop and deliver security awareness training to IT staff and other stakeholders on risk assessment and vulnerability management best practices.
• Ensure compliance with relevant security standards and regulations (e.g., PCI DSS, HIPAA, GDPR).
• Prepare reports on risk assessment findings, vulnerability remediation progress, and overall security posture.
• Research and write white papers, blog posts, or articles on emerging cyber threats, security trends, and best practices.
• Develop actionable recommendations for customers to improve their security posture based on the latest threat intelligence and industry trends.
• Present findings and recommendations to customers and internal stakeholders.
Qualifications:
Required:
• Bachelor's degree in Computer Science, Information Security, or a related field.
• 5+ years of experience in information security, with a strong focus on risk assessment and vulnerability management.
• In-depth understanding of vulnerability management frameworks (e.g., NIST 800-53, OWASP).
• Experience with vulnerability scanning tools (e.g., Nessus, Qualys, Rapid7 InsightVM, OpenVAS) and penetration testing tools (e.g., Metasploit, Burp Suite).
• Strong knowledge of common operating systems (Windows, Linux), networking protocols, and web application security.
• Experience with scripting languages (e.g., Python, PowerShell) for automation.
• Excellent analytical, problem-solving, and communication skills.
Preferred:
• Relevant 8140 security certifications (e.g., CISSP, CISA, CISM, OSCP, CEH)
• Experience with cloud security (AWS, Azure, GCP)
Company:
Electrosoft delivers technology-based solutions and services with a focus on cybersecurity. Founded in 2001, the company is headquartered in Reston, USA, with a team of 51-200 employees. The company is currently Growth Stage.