US Bank is seeking an Information Security Third-Party Risk Analyst to join our Information Security organization, supporting third-party risk management and vendor security oversight. This role is ...
US Bank is seeking an Information Security Third-Party Risk Analyst to join our Information Security organization, supporting third-party risk management and vendor security oversight. This role is ...
Information Security Risk Auditor
Houston, TX · On-site
$72K - $130K/yr
The Associate Information Security Risk Auditor (Compliance Management Lifecycle) is an early ... Strong attention to detail, analytical skills, and the ability to communicate findings clearly are ...
Information Security Risk Auditor
Houston, TX · On-site
$72K - $130K/yr
The Associate Information Security Risk Auditor (Compliance Management Lifecycle) is an early ... Strong attention to detail, analytical skills, and the ability to communicate findings clearly are ...
Information Security Risk Auditor
Houston, TX · Remote
$72K - $130K/yr
The Associate Information Security Risk Auditor (Compliance Management Lifecycle) is an early ... Strong attention to detail, analytical skills, and the ability to communicate findings clearly are ...
Information Security Risk Auditor
Houston, TX · Remote
$72K - $130K/yr
The Associate Information Security Risk Auditor (Compliance Management Lifecycle) is an early ... Strong attention to detail, analytical skills, and the ability to communicate findings clearly are ...
A great opportunity to join our team as a Security Risk Analyst. The successful candidate will work as part of our Houston-based Alert:24 Crisis Support team within WTW's Crisis Management division.
A great opportunity to join our team as a Security Risk Analyst. The successful candidate will work as part of our Houston-based Alert:24 Crisis Support team within WTW's Crisis Management division.
Alert24 Security Risk Analyst
Houston, TX · On-site
A great opportunity to join our team as a Security Risk Analyst. The successful candidate will work as part of our Houston-based Alert:24 Crisis Support team within WTW's Crisis Management division.
Alert24 Security Risk Analyst
Houston, TX · On-site
A great opportunity to join our team as a Security Risk Analyst. The successful candidate will work as part of our Houston-based Alert:24 Crisis Support team within WTW's Crisis Management division.
The Information Security Risk Oversight Professional serves as a key member of the Cybersecurity ... Develop and articulate independent risk opinions supported by sound analysis, evidence, and ...
The Information Security Risk Oversight Professional serves as a key member of the Cybersecurity ... Develop and articulate independent risk opinions supported by sound analysis, evidence, and ...
Responsibilities of the VP, Information Security Risk Officer: Strategic Leadership and Technology Vision • Lead the IT Steering Committee, conducting quarterly meetings and serving as a voting ...
Responsibilities of the VP, Information Security Risk Officer: Strategic Leadership and Technology Vision • Lead the IT Steering Committee, conducting quarterly meetings and serving as a voting ...
Position Summary AgTrust is seeking an Information Security & Technology Risk Analyst to help strengthen the organization's cybersecurity and technology risk oversight. This role oversees the ...
Quick apply
Position Summary AgTrust is seeking an Information Security & Technology Risk Analyst to help strengthen the organization's cybersecurity and technology risk oversight. This role oversees the ...
Position Summary AgTrust is seeking an Information Security & Technology Risk Analyst to help strengthen the organization's cybersecurity and technology risk oversight. This role oversees the ...
Position Summary AgTrust is seeking an Information Security & Technology Risk Analyst to help strengthen the organization's cybersecurity and technology risk oversight. This role oversees the ...
Position Summary AgTrust is seeking an Information Security & Technology Risk Analyst to help strengthen the organization's cybersecurity and technology risk oversight. This role oversees the ...
Position Summary AgTrust is seeking an Information Security & Technology Risk Analyst to help strengthen the organization's cybersecurity and technology risk oversight. This role oversees the ...
IT Security & Risk Analyst V
Houston, TX · On-site
... (IT) and Operational Technology (OT/ICS) environments. This role partners closely with ... risk assessments, threat modeling, security testing, and analysis of existing systems and new ...
IT Security & Risk Analyst V
Houston, TX · On-site
... (IT) and Operational Technology (OT/ICS) environments. This role partners closely with ... risk assessments, threat modeling, security testing, and analysis of existing systems and new ...
Information Security Risk Specialist
San Antonio, TX · On-site
$61K - $141K/yr
Information Security Risk Specialist The Opportunity: Cyber threats are everywhere, and the constantly evolving nature of these threats can make understanding them seem overwhelming to the global ...
Information Security Risk Specialist
San Antonio, TX · On-site
$61K - $141K/yr
Information Security Risk Specialist The Opportunity: Cyber threats are everywhere, and the constantly evolving nature of these threats can make understanding them seem overwhelming to the global ...
Information Security Risk Specialist
$61K - $141K/yr
Information Security Risk Specialist The Opportunity: Cyber threats are everywhere, and the constantly evolving nature of these threats can make understanding them seem overwhelming to the global ...
Information Security Risk Specialist
$61K - $141K/yr
Information Security Risk Specialist The Opportunity: Cyber threats are everywhere, and the constantly evolving nature of these threats can make understanding them seem overwhelming to the global ...
Information Security Risk Specialist
San Antonio, TX · On-site
$61K - $141K/yr
Share Information Security Risk Specialist The Opportunity: Cyber threats are everywhere, and the constantly evolving nature of these threats can make understanding them seem overwhelming to the ...
Information Security Risk Specialist
San Antonio, TX · On-site
$61K - $141K/yr
Share Information Security Risk Specialist The Opportunity: Cyber threats are everywhere, and the constantly evolving nature of these threats can make understanding them seem overwhelming to the ...
... information technology, risk management, data analysis, or project management experience Minimum knowledge, skills and abilities for the position * Planning, organizational and project management ...
... information technology, risk management, data analysis, or project management experience Minimum knowledge, skills and abilities for the position * Planning, organizational and project management ...
... information technology, risk management, data analysis, or project management experience Minimum knowledge, skills and abilities for the position * Planning, organizational and project management ...
... information technology, risk management, data analysis, or project management experience Minimum knowledge, skills and abilities for the position * Planning, organizational and project management ...
... risk analysis in a regulated environment or related IT audit background Knowledge of security, regulations and control frameworks, such as ISO 27001 & ISO 27002, CobiT, COSO, SOX and ITIL Experience ...
... risk analysis in a regulated environment or related IT audit background Knowledge of security, regulations and control frameworks, such as ISO 27001 & ISO 27002, CobiT, COSO, SOX and ITIL Experience ...
Reviews contracts and completes contract checklist to prevent potential disputes, financial risk, and Information Security Risk. * Ensures appropriate New Vendor Analysis and or vendor Due Diligence ...
New
Reviews contracts and completes contract checklist to prevent potential disputes, financial risk, and Information Security Risk. * Ensures appropriate New Vendor Analysis and or vendor Due Diligence ...
New
... in IT or information security risk management, compliance, audit, or GRC with a strong ... Strong analytical, organizational, and problem solving skills * Experience maintaining risk ...
... in IT or information security risk management, compliance, audit, or GRC with a strong ... Strong analytical, organizational, and problem solving skills * Experience maintaining risk ...
... IT risk and Governance, Risk and Compliance (GRC) processes. * Participate in security project ... Strong analytical, organizational, and problem solving skills * Experience maintaining risk ...
... IT risk and Governance, Risk and Compliance (GRC) processes. * Participate in security project ... Strong analytical, organizational, and problem solving skills * Experience maintaining risk ...
Information Security Risk Analyst information
See Texas salary details
$29.79 - $33.47
6% of jobs
$33.47 - $37.16
5% of jobs
$37.16 - $40.84
8% of jobs
$42.59 is the 25th percentile. Wages below this are outliers.
$40.84 - $44.53
11% of jobs
$44.53 - $48.21
12% of jobs
The median wage is $51.67 / hr.
$48.21 - $51.90
8% of jobs
$51.90 - $55.58
7% of jobs
$55.58 - $59.27
9% of jobs
$60.94 is the 75th percentile. Wages above this are outliers.
$59.27 - $62.95
17% of jobs
$62.95 - $66.64
8% of jobs
$66.64 - $70.32
7% of jobs
$29
$54
$70
How much do information security risk analyst jobs pay per hour?
What is the difference between Information Security Risk Analyst vs Cybersecurity Analyst?
| Aspect | Information Security Risk Analyst | Cybersecurity Analyst |
|---|---|---|
| Certifications | ISO 27001, CISSP, CISA | CompTIA Security+, CEH, CISSP |
| Work Environment | Risk assessment teams, compliance departments | Security operations centers, incident response teams |
| Employer & Industry Usage | Financial, healthcare, government sectors | Tech companies, cybersecurity firms, enterprises |
While both roles focus on protecting information assets, the Information Security Risk Analyst primarily assesses and manages risks related to information security policies and compliance. In contrast, the Cybersecurity Analyst actively monitors security systems, responds to threats, and handles incidents. Understanding these differences helps organizations assign the right responsibilities and professionals to safeguard their digital assets.
What are the key skills and qualifications needed to thrive as an Information Security Risk Analyst, and why are they important?
What are Information Security Risk Analysts?
What Does an Information Security Risk Analyst Do?
As an information security risk analyst, your job is to help assess each potential threat and determine whether or not your current network system suffers from vulnerability to that threat. In this IT role, you may monitor network activity, help implement and manage safety protocols, and research emerging threats to help determine the best response to them. Information security risk analysts often work with many other IT personnel at the same company to manage security needs and, somewhat unusually for an IT role, may also collaborate with outside experts and volunteers to find the best way to counter a particular threat. This is an extremely collaborative position, so the ability to work well with other people, including those you may be meeting for the first time, is essential to your success.
How does an Information Security Risk Analyst typically collaborate with other departments to address security risks?
- Security Risk Compliance
- Remote Workday Security Analyst
- Weekend Vulnerability Analyst
- Freelance Cyber Security Purple Team
- Nist Cybersecurity Framework
- Cyber Security Analyst Contract
- Information Security
- Night Shift Vulnerability Management Analyst
- Experienced Information Security Manager
- Risk Management Framework

Full-time
Medical, Dental, Vision, Life, Retirement, PTO
Posted 12 days ago
U.S. Bank rating
8.2
Based on 345 frontline employees who took The Breakroom Quiz
38th of 141 rated banks
Job description
At U.S. Bank, we're on a journey to do our best. Helping the customers and businesses we serve to make better and smarter financial decisions and enabling the communities we support to grow and succeed. We believe it takes all of us to bring our shared ambition to life, and each person is unique in their potential. A career with U.S. Bank gives you a wide, ever-growing range of opportunities to discover what makes you thrive at every stage of your career. Try new things, learn new skills and discover what you excel at-all from Day One.
Job DescriptionLocation expectations:
This role requires working from a U.S. Bank location three (3) or more days per week.
US Bank is seeking an Information Security Third-Party Risk Analyst to join our Information Security organization, supporting third-party risk management and vendor security oversight. This role is responsible for evaluating and managing information security risk across external vendors, ensuring appropriate controls are in place, and driving remediation of identified risks.
This person will perform hands-on third-party security risk assessments, analyze vendor controls and security posture, and partner with internal stakeholders and external vendors to reduce risk exposure. They will play a key role in identifying control gaps, tracking remediation, supporting contract security reviews, and contributing to ongoing risk monitoring, reporting, and audit activities.
Responsibilities:- Perform information security risk assessments on third-party vendors (new and existing)
- Review and analyze vendor security questionnaires, control responses, and supporting documentation
- Identify security gaps, control deficiencies, and non-compliance issues
- Document and track risk findings and remediation efforts through resolution
- Evaluate vendor remediation plans and compensating controls
- Partner with business stakeholders and third parties to explain risks and recommend mitigation strategies
- Support contract review and redlining with a focus on information security requirements
- Conduct continuous monitoring of vendor security posture
- Review and assess third-party security incidents and perform post-event analysis
- Contribute to monthly and quarterly reporting, metrics, and trend analysis
- Support audit activities, control testing, and quality assurance efforts
- Collaborate across information security, risk, and compliance teams
- 5+ years of experience in information security
- 5+ years of experience in third-party risk management, vendor risk, or risk analysis
- Hands-on experience conducting third-party/vendor information security risk assessments
- Strong understanding of information security controls and risk concepts
- Experience identifying control gaps and evaluating remediation actions
- Experience with contract review or redlining related to security requirements
- Ability to clearly communicate risk to both technical and non-technical stakeholders
- Familiarity with security frameworks (e.g., NIST 800-53)
- Experience reviewing SOC 2 Type II reports
- Experience with continuous monitoring tools (e.g., BitSight, Archer)
- Exposure to third-party security incident response and post-event analysis
- Broader technical cybersecurity background
- Exposure to emerging risks (e.g., AI, new technologies)
If there's anything we can do to accommodate a disability during any portion of the application or hiring process, please refer to ourdisability accommodations for applicants.
Benefits:
Our approach to benefits and total rewards considers our team members' whole selves and what may be needed to thrive in and outside work. That's why our benefits are designed to help you and your family boost your health, protect your financial security and give you peace of mind. Our benefits include the following:
Healthcare (medical, dental, vision)
Basic term and optional term life insurance
Short-term and long-term disability
Pregnancy disability and parental leave
401(k) and employer-funded retirement plan
Paid vacation (from two to five weeks depending on salary grade and tenure)
Up to 11 paid holiday opportunities
Adoption assistance
Sick and Safe Leave accruals of one hour for every 30 worked, up to 80 hours per calendar year unless otherwise provided by law
Review our full benefits available by employment status here.
U.S. Bank is an equal opportunity employer. We consider all qualified applicants without regard to race, religion, color, sex, national origin, age, sexual orientation, gender identity, disability or veteran status, and other factors protected under applicable law.
E-Verify
U.S. Bank participates in the U.S. Department of Homeland Security E-Verify program in all facilities located in the United States and certain U.S. territories. The E-Verify program is an Internet-based employment eligibility verification system operated by the U.S. Citizenship and Immigration Services. Learn more about theE-Verify program.
The salary range reflects figures based on the primary location, which is listed first. The actual range for the role may differ based on the location of the role. In addition to salary, U.S. Bank offers a comprehensive benefits package, including incentive and recognition programs, equity stock purchase 401(k) contribution and pension (all benefits are subject to eligibility requirements). Pay Range: $98,175.00 - $115,500.00U.S. Bank will consider qualified applicants with arrest or conviction records for employment. U.S. Bank conducts background checks consistent with applicable local laws, including the Los Angeles County Fair Chance Ordinance and the California Fair Chance Act as well as the San Francisco Fair Chance Ordinance. U.S. Bank is subject to, and conducts background checks consistent with the requirements of Section 19 of the Federal Deposit Insurance Act (FDIA). In addition, certain positions may also be subject to the requirements of FINRA, NMLS registration, Reg Z, Reg G, OFAC, the NFA, the FCPA, the Bank Secrecy Act, the SAFE Act, and/or federal guidelines applicable to an agreement, such as those related to ethics, safety, or operational procedures.
Applicants must be able to comply with U.S. Bank policies and procedures including the Code of Ethics and Business Conduct and related workplace conduct and safety policies.
Posting may be closed earlier due to high volume of applicants.
What U.S. Bank employees say
Pay
Benefits
Hours and flexibility
Workplace
Get the full story on Breakroom
About U.S. Bank
Sourced by ZipRecruiter
U.S. Bank is a reputable and established financial institution that plays a significant role in the banking sector. With a history spanning over 150 years, U.S. Bank has built a strong foundation of trust and reliability. As a comprehensive bank, they offer a wide array of financial products and services to cater to the diverse needs of their customers, including individuals, businesses, and communities. Customer satisfaction is of utmost importance to U.S. Bank. They prioritize delivering exceptional service and fostering long-term relationships with their clients. Through their extensive network of branches and advanced digital banking platforms, U.S. Bank ensures convenient access to their services, empowering customers to manage their finances efficiently and securely.
Industry
Banking and credit intermediation
Company size
10,000+ Employees
Headquarters location
Minneapolis, MN, US
Year founded
1863