1

Information Security Risk Analyst Jobs in Baltimore, MD

Showing results 21-40

Information Security Risk Analyst information

See Baltimore, MD salary details

$31

$58

$75

How much do information security risk analyst jobs pay per hour?

As of Aug 10, 2026, the average hourly pay for information security risk analyst in Baltimore, MD is $58.08, according to ZipRecruiter salary data. Most workers in this role earn between $45.14 and $65.19 per hour, depending on experience, location, and employer.

What is the difference between Information Security Risk Analyst vs Cybersecurity Analyst?

AspectInformation Security Risk AnalystCybersecurity Analyst
CertificationsISO 27001, CISSP, CISACompTIA Security+, CEH, CISSP
Work EnvironmentRisk assessment teams, compliance departmentsSecurity operations centers, incident response teams
Employer & Industry UsageFinancial, healthcare, government sectorsTech companies, cybersecurity firms, enterprises

While both roles focus on protecting information assets, the Information Security Risk Analyst primarily assesses and manages risks related to information security policies and compliance. In contrast, the Cybersecurity Analyst actively monitors security systems, responds to threats, and handles incidents. Understanding these differences helps organizations assign the right responsibilities and professionals to safeguard their digital assets.

What are the key skills and qualifications needed to thrive as an information security risk analyst, and why are they important?

To thrive as an Information Security Risk Analyst, you need a solid understanding of cybersecurity principles, risk management frameworks, and a relevant degree or certifications such as CISSP, CISM, or CRISC. Familiarity with tools like risk assessment platforms, vulnerability scanners, and security information and event management (SIEM) systems is typically required. Strong analytical thinking, communication, and attention to detail help you translate complex risks into actionable recommendations and collaborate with stakeholders. These skills are crucial for effectively identifying, assessing, and mitigating security risks to protect organizational assets and ensure compliance.

What is an information security risk analyst?

Information Security Risk Analysts are professionals responsible for identifying, assessing, and mitigating risks to an organization's information systems and data. They analyze potential threats, vulnerabilities, and impacts to ensure that appropriate security measures are in place. These analysts often develop risk management strategies, conduct security assessments, and recommend security enhancements. Their goal is to help organizations protect sensitive information and comply with relevant regulations.

What does an information security risk analyst do?

As an information security risk analyst, your job is to help assess each potential threat and determine whether or not your current network system suffers from vulnerability to that threat. In this IT role, you may monitor network activity, help implement and manage safety protocols, and research emerging threats to help determine the best response to them. Information security risk analysts often work with many other IT personnel at the same company to manage security needs and, somewhat unusually for an IT role, may also collaborate with outside experts and volunteers to find the best way to counter a particular threat. This is an extremely collaborative position, so the ability to work well with other people, including those you may be meeting for the first time, is essential to your success.

How does an information security risk analyst typically collaborate with other departments to address security risks?

Information Security Risk Analysts work closely with various departments such as IT, compliance, legal, and business units to identify and mitigate security risks. They often facilitate risk assessments, communicate findings, and recommend solutions tailored to each department's needs. Regular meetings and cross-functional projects are common, ensuring security measures align with business objectives while maintaining compliance. This collaborative approach helps foster a culture of security awareness throughout the organization.
What are popular job titles related to Information Security Risk Analyst jobs in Baltimore, MD? For Information Security Risk Analyst jobs in Baltimore, MD, the most frequently searched job titles are:
What job categories do people searching Information Security Risk Analyst jobs in Baltimore, MD look for? The top searched job categories for Information Security Risk Analyst jobs in Baltimore, MD are:
What cities near Baltimore, MD are hiring for Information Security Risk Analyst jobs? Cities near Baltimore, MD with the most Information Security Risk Analyst job openings:
Infographic showing various Information Security Risk Analyst job openings in Baltimore, MD as of August 2026, with employment types broken down into 1% As Needed, 72% Full Time, 23% Part Time, 1% Temporary, and 3% Contract. Highlights an 94% Physical, 2% Hybrid, and 4% Remote job distribution, with an average salary of $120,803 per year, or $58.1 per hour.

Information System Security Engineer (ISSE)-Intermediate

Quantech Services, Inc.

Fort George G Meade, MD โ€ข On-site

Full-time

Re-posted 28 days ago


Job description

Job Title
Information System Security Engineer (ISSE)-Intermediate
Functional Title
Information Security Associate
Contract position State Location
Fort Meade, MD US (Primary)
Education
Bachelor's Level Degree
Job Type
Full-time
Job Description
Quantech Services is seeking an experienced Information System Security Engineer to join our team in Fort Meade, MD. The ideal candidate is a seasoned information security professional with proven expertise in the Intelligence Community and Department of Defense security operations and compliance.
Specifically, the Information Systems Security Engineer (ISSE)-Intermediate shall perform, or review, technical security assessments of computing environments to identify points of vulnerability, non-compliance with established Cybersecurity standards and regulations, and recommend mitigation strategies. Validate and verifies system security requirements definitions and analysis and establishes system security designs. Design. develop, implement and/or integrate Cybersecurity and security systems and systems components including those for networking, computing, and enclave environments to include those with multiple enclaves and with differing data protection/classification requirements. Build Cybersecurity into systems deployed to operational environments. Assist architects and systems developers in the identification and implementation of appropriate information security functionality to ensure uniform application of Agency security policy and enterprise solutions. Support the building of security architectures. Enforce the design and implementation of trusted relations among external systems and architectures. Assess and mitigate system security threats/risks throughout the system development life cycle. Contribute to the security planning, assessment, risk analysis, risk management, certification and awareness activities for system and networking operations. Review certification and accreditation (C&A) documentation, provide feedback on completeness and compliance of its content. Support security authorization activities in compliance with NSA/CSS Information System Certification and accreditation Process (NISCAP) and DoD Risk Management Framework (RMF), the NIST Risk Management Framework (RMF) process, and prescribed NSA/CSS business processes for security engineering.
Job Duties:
  • Participate as the primary security engineering representative on engineering teams for the design, development, implementation, evaluation, and/or integration of secure networking, computing, and enclave environments
  • Apply knowledge of Cybersecurity policy, procedures, and workforce structure to design, develop, and implement secure networking, computing, and enclave environments
  • Interact with the customer and other project team members
  • Participate as the primary security engineering representative on engineering teams for the design, development, implementation, evaluation, and/or integration of Cybersecurity architectures, systems, or system components
  • Support the Government in the enforcement of the design and implementation of trusted relationships among external systems and architectures
  • Support security planning, assessment, risk analysis, and risk management
  • Identify overall security requirements for the proper handling of Government data
  • Provide security planning, assessment, risk analysis, and risk management
  • Perform system or network designs that encompass multiple enclaves, to include those with differing data protection/classification requirements
  • Recommend system-level solutions to resolve security requirements

Please see standard Work, Physical and Mental Requirements for all Quantech roles.
Work Environment This job operates in a professional office environment. This role routinely uses standard office equipment such as computers, phones, photocopiers, scanners, filing cabinets and fax machines.
Physical Demands This is largely a sedentary role mostly sitting; however, some filing may be required . This would require the ability to move files, or boxes with file data, open filing cabinets and bend or stand as necessary, ability to lift up to 40lbs.
Mental Demands: Reading; communicate effectively (verbal and written); maintain emotional control and professionalism.
WE HIRE MILITARY
Job Requirements
Education:
  • Bachelor's degree in Computer Science, Information Assurance, Information Security System Engineering, or related discipline from an accredited college or university is required. In lieu of a Bachelor's degree, four (4) additional years of ISSE experience may be substituted.

Clearance:
  • Active TS/SCI clearance w/a FS polygraph.

Certifications:
  • DoD 8570.01-M compliance with IASAE Level II is required (CASP CE, CISSP or Associate), CSSLP)

Experience:
  • Twelve (12) years' experience as an ISSE on programs and contracts of similar scope, type, and complexity to include recent experience within the last five (5) years with Cybersecurity principles and technology, including access/control, authorization, identification and authentication, PKI, network and enterprise security architecture is required.

Security clearance required
TSSCI - Full Scope Poly
Travel