1

Information Security Risk Analyst Jobs in Raleigh, NC

We are looking for an energetic, sharp, and forward-thinking Risk Analyst to join our Risk ... information, or any other protected characteristic. If you are interested in applying for ...

As a security analyst at Lucid you will be helping to protect corporate assets, including our world ... Recent experience in information system security risk management * Can thrive working in a fast ...

Position Overview: Assist in the development, implementation, and maintenance of the Model Risk ... genetic information, disability, veteran status, or other classification protected by law.

Network Security Engineer

Durham, NC · On-site

$101K - $138K/yr

... Information Security standards and practices - Internet security - LAN and or WAN routers and switches - Network security - Risk analysis - Routing protocols - BGP - OSPF - STP - IPV6 - MPLS ...

212406 Network Security Engineer

Durham, NC · On-site

$101K - $138K/yr

Information Security standards and practices * Internet security * LAN and or WAN routers and switches * Network security * Risk analysis * Routing protocols - BGP - OSPF - STP - IPV6 - MPLS

next page

Showing results 1-20

Information Security Risk Analyst information

See Raleigh, NC salary details

$31

$56

$73

How much do information security risk analyst jobs pay per hour?

As of Aug 26, 2026, the average hourly pay for information security risk analyst in Raleigh, NC is $56.82, according to ZipRecruiter salary data. Most workers in this role earn between $44.18 and $63.80 per hour, depending on experience, location, and employer.

What is an information security risk analyst?

Information Security Risk Analysts are professionals responsible for identifying, assessing, and mitigating risks to an organization's information systems and data. They analyze potential threats, vulnerabilities, and impacts to ensure that appropriate security measures are in place. These analysts often develop risk management strategies, conduct security assessments, and recommend security enhancements. Their goal is to help organizations protect sensitive information and comply with relevant regulations.

What does an information security risk analyst do?

As an information security risk analyst, your job is to help assess each potential threat and determine whether or not your current network system suffers from vulnerability to that threat. In this IT role, you may monitor network activity, help implement and manage safety protocols, and research emerging threats to help determine the best response to them. Information security risk analysts often work with many other IT personnel at the same company to manage security needs and, somewhat unusually for an IT role, may also collaborate with outside experts and volunteers to find the best way to counter a particular threat. This is an extremely collaborative position, so the ability to work well with other people, including those you may be meeting for the first time, is essential to your success.

What are the key skills and qualifications needed to thrive as an information security risk analyst, and why are they important?

To thrive as an Information Security Risk Analyst, you need a solid understanding of cybersecurity principles, risk management frameworks, and a relevant degree or certifications such as CISSP, CISM, or CRISC. Familiarity with tools like risk assessment platforms, vulnerability scanners, and security information and event management (SIEM) systems is typically required. Strong analytical thinking, communication, and attention to detail help you translate complex risks into actionable recommendations and collaborate with stakeholders. These skills are crucial for effectively identifying, assessing, and mitigating security risks to protect organizational assets and ensure compliance.

How does an information security risk analyst typically collaborate with other departments to address security risks?

Information Security Risk Analysts work closely with various departments such as IT, compliance, legal, and business units to identify and mitigate security risks. They often facilitate risk assessments, communicate findings, and recommend solutions tailored to each department's needs. Regular meetings and cross-functional projects are common, ensuring security measures align with business objectives while maintaining compliance. This collaborative approach helps foster a culture of security awareness throughout the organization.

What is the difference between Information Security Risk Analyst vs Cybersecurity Analyst?

AspectInformation Security Risk AnalystCybersecurity Analyst
CertificationsISO 27001, CISSP, CISACompTIA Security+, CEH, CISSP
Work EnvironmentRisk assessment teams, compliance departmentsSecurity operations centers, incident response teams
Employer & Industry UsageFinancial, healthcare, government sectorsTech companies, cybersecurity firms, enterprises

While both roles focus on protecting information assets, the Information Security Risk Analyst primarily assesses and manages risks related to information security policies and compliance. In contrast, the Cybersecurity Analyst actively monitors security systems, responds to threats, and handles incidents. Understanding these differences helps organizations assign the right responsibilities and professionals to safeguard their digital assets.

What are popular job titles related to Information Security Risk Analyst jobs in Raleigh, NC?

For Information Security Risk Analyst jobs in Raleigh, NC, the most frequently searched job titles are:

What job categories do people searching Information Security Risk Analyst jobs in Raleigh, NC look for?

The top searched job categories for Information Security Risk Analyst jobs in Raleigh, NC are:

Infographic showing various Information Security Risk Analyst job openings in Raleigh, NC as of August 2026, with employment types broken down into 1% As Needed, 77% Full Time, 19% Part Time, and 3% Contract. Highlights an 92% Physical, 2% Hybrid, and 6% Remote job distribution, with an average salary of $118,176 per year, or $56.8 per hour.

Manager Security Compliance and Risk Management

Raleigh, NC • On-site

LexisNexis Risk Solutions
IT Services • 1 - 5K employees

$118.30 - $219.80/hr

Other

Posted 21 days ago


Job description

## Manager Security Compliance and Risk ManagementApplylocations: Raleigh, NCtime type: Full timeposted on: Posted Todayjob requisition id: R116072**Manager, Security – Security Compliance & Risk Management****Function:**Information Security / Compliance & Risk**Location:**[Raleigh / Hybrid]**About the Role**The Manager, Security – Security Compliance & Risk Management is responsible for leading the Security Compliance and Risk Management function within the Information Security organization. This role owns the frameworks, processes, and programs that provide structured oversight of technology and security risk across the company. This manager serves as a critical bridge between the security program and the business — translating risk into actionable insight for executives, boards, auditors, regulators, and customers.This is a people manager role overseeing a team of security engineers responsible for the day-to-day operationalization of audit, compliance, control, and FedRAMP Continuous Monitoring activities. The right candidate is both a capable program builder and an engaged people leader who can develop talent, allocate work effectively, and drive consistent execution across the team.**Core Responsibilities****People Leadership*** Manage, mentor, and develop a team of security engineers* Set clear priorities, delegate work effectively, and maintain team capacity across concurrent audit, compliance, and ConMon activities* Foster a culture of quality, accountability, and continuous improvement within the team**Risk Management*** Own and operate the enterprise technology and security risk register, including risk identification, scoring, tracking, and reporting* Lead the risk exception and risk acceptance process, ensuring appropriate documentation, approvals, and periodic review* Drive identification, escalation, and resolution of cybersecurity risks and issues across the organization* Serve as a trusted advisor to business and technology stakeholders on compliance and risk matters* Provide risk-based reporting to support executive and board-level decision-making on the state of the security program**Compliance & Control Governance*** Oversee enterprise control management activities, including control design, testing, effectiveness tracking, issue management, and remediation* Map controls to applicable frameworks including NIST CSF, ISO 27001, SOC 2, and other relevant technology-sector obligations* Support and maintain cybersecurity compliance certifications and initiatives (e.g., ISO 27001, SOC 2, Cyber Essentials)* Perform regulatory horizon scanning to identify emerging compliance requirements and assess organizational impact* Coordinate and monitor recurring security and compliance assessments, including internal reviews, control self-assessments, and gap analyses* Develop and maintain metrics that measure organizational adherence to security policies, and report findings to leadership with recommendations for remediation where gaps exist**Audit & Assurance Operationalization*** Oversee the team’s end-to-end execution of audit engagements, ensuring the audit calendar, evidence collection, issue tracking, and management responses are completed accurately and on time* Serve as the primary interface for internal audit, external auditors, regulators, and customer assurance reviews, directing team members on their respective workstreams* Ensure cross-functional coordination is in place so that business and technical stakeholders are audit-ready and delivering evidence on time* Oversee the maintenance and integrity of the assurance evidence library to support efficient, repeatable, and high-quality audit response across all engagements**FedRAMP Continuous Monitoring*** Provide oversight and direction for the FedRAMP Continuous Monitoring program, ensuring all ConMon obligations are met in accordance with FedRAMP requirements* Oversee the team’s execution of recurring ConMon activities, ensuring deliverables are accurate, timely, and aligned with agency expectations* Ensure findings and remediation activities are tracked and managed to resolution within required timeframes* Serve as an escalation point for ConMon-related issues and interface with relevant stakeholders on program status and riskU.S. National Base Pay Range: $118,300 - $219,800. Geographic differentials may apply in some locations to better reflect local market rates.This job is eligible for an annual incentive bonus.**We know your well-being and happiness are key to a long and successful career. We are delighted to offer country specific benefits. Click** **here** **to access benefits specific to your location.**We are committed to providing a fair and accessible hiring process. If you have a disability or other need that requires accommodation or adjustment, please let us know by completing our Applicant Request Support Form or please contact 1-855-833-5120.**Criminals may pose as recruiters asking for money or personal information. We never request money or banking details from job applicants. Learn more about spotting and avoiding scams** **here****.**Please read our Candidate Privacy Policy.We are an equal opportunity employer: qualified applicants are considered for and treated during employment without regard to race, color, creed, religion, sex, national origin, citizenship status, disability status, protected veteran status, age, marital status, sexual orientation, gender identity, genetic information, or any other characteristic protected by law. #J-18808-Ljbffr