1

Information Security Risk Analyst Jobs in Maryland

Developing an agency Information Security Risk Management Strategy in accordance with the latest released versions of NIST Special Publications (SPs) such as SP 800-37, Risk Management Framework for ...

Developing an agency Information Security Risk Management Strategy in accordance with the latest released versions of NIST Special Publications (SPs) such as SP 800-37, Risk Management Framework for ...

Developing an agency Information Security Risk Management Strategy in accordance with the latest released versions of NIST Special Publications (SPs) such as SP 800-37, Risk Management Framework for ...

next page

Showing results 1-20

Information Security Risk Analyst information

See Maryland salary details

$31

$56

$73

How much do information security risk analyst jobs pay per hour?

As of Jul 29, 2026, the average hourly pay for information security risk analyst in Maryland is $56.73, according to ZipRecruiter salary data. Most workers in this role earn between $44.09 and $63.70 per hour, depending on experience, location, and employer.

What is the difference between Information Security Risk Analyst vs Cybersecurity Analyst?

AspectInformation Security Risk AnalystCybersecurity Analyst
CertificationsISO 27001, CISSP, CISACompTIA Security+, CEH, CISSP
Work EnvironmentRisk assessment teams, compliance departmentsSecurity operations centers, incident response teams
Employer & Industry UsageFinancial, healthcare, government sectorsTech companies, cybersecurity firms, enterprises

While both roles focus on protecting information assets, the Information Security Risk Analyst primarily assesses and manages risks related to information security policies and compliance. In contrast, the Cybersecurity Analyst actively monitors security systems, responds to threats, and handles incidents. Understanding these differences helps organizations assign the right responsibilities and professionals to safeguard their digital assets.

What are the key skills and qualifications needed to thrive as an Information Security Risk Analyst, and why are they important?

To thrive as an Information Security Risk Analyst, you need a solid understanding of cybersecurity principles, risk management frameworks, and a relevant degree or certifications such as CISSP, CISM, or CRISC. Familiarity with tools like risk assessment platforms, vulnerability scanners, and security information and event management (SIEM) systems is typically required. Strong analytical thinking, communication, and attention to detail help you translate complex risks into actionable recommendations and collaborate with stakeholders. These skills are crucial for effectively identifying, assessing, and mitigating security risks to protect organizational assets and ensure compliance.

What are Information Security Risk Analysts?

Information Security Risk Analysts are professionals responsible for identifying, assessing, and mitigating risks to an organization's information systems and data. They analyze potential threats, vulnerabilities, and impacts to ensure that appropriate security measures are in place. These analysts often develop risk management strategies, conduct security assessments, and recommend security enhancements. Their goal is to help organizations protect sensitive information and comply with relevant regulations.

What Does an Information Security Risk Analyst Do?

As an information security risk analyst, your job is to help assess each potential threat and determine whether or not your current network system suffers from vulnerability to that threat. In this IT role, you may monitor network activity, help implement and manage safety protocols, and research emerging threats to help determine the best response to them. Information security risk analysts often work with many other IT personnel at the same company to manage security needs and, somewhat unusually for an IT role, may also collaborate with outside experts and volunteers to find the best way to counter a particular threat. This is an extremely collaborative position, so the ability to work well with other people, including those you may be meeting for the first time, is essential to your success.

How does an Information Security Risk Analyst typically collaborate with other departments to address security risks?

Information Security Risk Analysts work closely with various departments such as IT, compliance, legal, and business units to identify and mitigate security risks. They often facilitate risk assessments, communicate findings, and recommend solutions tailored to each department's needs. Regular meetings and cross-functional projects are common, ensuring security measures align with business objectives while maintaining compliance. This collaborative approach helps foster a culture of security awareness throughout the organization.
What are the most commonly searched types of Information Security Risk Analyst jobs in Maryland? The most popular types of Information Security Risk Analyst jobs in Maryland are:
What are popular job titles related to Information Security Risk Analyst jobs in Maryland? For Information Security Risk Analyst jobs in Maryland, the most frequently searched job titles are:
What job categories do people searching Information Security Risk Analyst jobs in Maryland look for? The top searched job categories for Information Security Risk Analyst jobs in Maryland are:
What cities in Maryland are hiring for Information Security Risk Analyst jobs? Cities in Maryland with the most Information Security Risk Analyst job openings:
What are popular job titles related to Information Security Risk Analyst jobs in MD? For Information Security Risk Analyst jobs in MD, the most frequently searched job titles are:
Infographic showing various Information Security Risk Analyst job openings in Maryland as of July 2026, with employment types broken down into 100% Full Time. Highlights an 100% In-person job distribution, with an average salary of $117,995 per year, or $56.7 per hour.

Information Security Governance, Risk & Compliance (GRC) Analyst

Cyquent, Inc.

Rockville, MD • On-site

Other

This job post has expired today. Applications are no longer accepted.


Job description

Job Title:  Information Security Governance, Risk & Compliance (GRC) Analyst

Location:  Rockville, MD (Hybrid/Onsite)

Job Type:  Contract / Full Time

Client: Direct Client

Certificates are mandatory to Submit.

 

Required Qualifications

  • Bachelor''s degree in Cybersecurity, Information Systems, Information Technology, Computer Science, Business Information Systems, or a related field.
  • Minimum 3+ year of experience in Information Security, Cybersecurity, Governance, Risk & Compliance (GRC), Risk Management, IT Audit, Compliance, or Information Technology.
  • entry level candidates with relevant internships are encouraged to apply.

Required Skills

  • ServiceNow (IRM preferred)
  • Governance, Risk & Compliance (GRC)
  • Information Security
  • Risk Management
  • Information Security Policy Exceptions
  • Enterprise Risk Register
  • Risk Analysis & Risk Assessment
  • Cybersecurity Principles
  • NIST Cybersecurity Framework (CSF)
  • Microsoft Office 365
  • Technical Documentation
  • Customer Service
  • Excellent Written & Verbal Communication

Responsibilities

  • Administer Information Security Policy Exception requests.
  • Perform risk assessments and document findings.
  • Maintain the Enterprise Risk Register using ServiceNow IRM.
  • Track risk mitigation activities, approvals, and documentation.
  • Generate reports, dashboards, and risk metrics.
  • Collaborate with IT teams, business stakeholders, and Information Security leadership.

Preferred Certifications

  • CompTIA Security+
  • CISM Fundamentals (CISM-F)
  • NIST Cybersecurity Framework (NCSF) Practitioner
  • ISACA IT Risk Fundamentals
  • ISACA Cybersecurity Audit Certificate
  • HIPAA Security/Compliance Certification

Cyquent logo

About Cyquent

Sourced by ZipRecruiter

Cyquent is a Technology Enabler, providing end-to-end IT Solutions and Services. Founded in 2001, we have spent the last two decades curating our processes and expertise. Our focus on providing solutions and not just technology has been the prime distinguishing factor in the success of our clients, and therefore, in our success as well. At Cyquent, we recognize that change is the only constant. We understand that staying on top of emerging technology trends is essential for driving innovation and helping our clients accomplish their business goals.

Company size

51 - 200 Employees

Headquarters location

Rockville, MD, US

Year founded

2001

Social media