Job43 - EITS Security Risk Analyst B (Engagement) Location: 100% Remote Max Submissions: 5 Proposed ... Translate business IT risk requirements into technical control specifications. * Develop risk ...
Job43 - EITS Security Risk Analyst B (Engagement) Location: 100% Remote Max Submissions: 5 Proposed ... Translate business IT risk requirements into technical control specifications. * Develop risk ...
EITS Security Risk Analyst B (Engagement)--Remote Job
San Francisco, CA · Remote
$60 - $70/hr
Job43 EITS Security Risk Analyst B (Engagement) Location: 100% Remote Max Submissions: 5 Proposed ... Translate business IT risk requirements into technical control specifications. * Develop risk ...
Quick apply
EITS Security Risk Analyst B (Engagement)--Remote Job
San Francisco, CA · Remote
$60 - $70/hr
Job43 EITS Security Risk Analyst B (Engagement) Location: 100% Remote Max Submissions: 5 Proposed ... Translate business IT risk requirements into technical control specifications. * Develop risk ...
Operational Risk Analyst -Security Governance & Risk Issues Management Location: Merrifield VA ... Keep current with Information Security best practices and industry trends, and communicate/apply ...
Operational Risk Analyst -Security Governance & Risk Issues Management Location: Merrifield VA ... Keep current with Information Security best practices and industry trends, and communicate/apply ...
AI Security Risk Analyst
Manhattan, NY · Remote
$70 - $85/hr
Description The EITS Security Risk Analyst is part of the Enterprise Information Technology Services, Information Security and Risk Management team and will work at an enterprise level to ensure a ...
AI Security Risk Analyst
Manhattan, NY · Remote
$70 - $85/hr
Description The EITS Security Risk Analyst is part of the Enterprise Information Technology Services, Information Security and Risk Management team and will work at an enterprise level to ensure a ...
IS Security Risk Analyst III
Columbia, SC · On-site
Plan and perform compliance and risk assessment activities for information systems and related ... Independently analyze and interpret security regulations and controls to advise on security ...
IS Security Risk Analyst III
Columbia, SC · On-site
Plan and perform compliance and risk assessment activities for information systems and related ... Independently analyze and interpret security regulations and controls to advise on security ...
IS Security Risk Analyst III
Columbia, SC · On-site
Plan and perform compliance and risk assessment activities for information systems and related ... Independently analyze and interpret security regulations and controls to advise on security ...
IS Security Risk Analyst III
Columbia, SC · On-site
Plan and perform compliance and risk assessment activities for information systems and related ... Independently analyze and interpret security regulations and controls to advise on security ...
IS Security Risk Analyst III
Columbia, SC · On-site
Plan and perform compliance and risk assessment activities for information systems and related ... Independently analyze and interpret security regulations and controls to advise on security ...
IS Security Risk Analyst III
Columbia, SC · On-site
Plan and perform compliance and risk assessment activities for information systems and related ... Independently analyze and interpret security regulations and controls to advise on security ...
This senior role focuses on conducting information security risk assessments, providing guidance ... analysts, interns, and distributed university IT staff on the risk assessment process • ...
This senior role focuses on conducting information security risk assessments, providing guidance ... analysts, interns, and distributed university IT staff on the risk assessment process • ...
Security Risk Analyst - AI
New York, NY · Remote
$55 - $63/hr
Security Risk Analyst - AI Work Mode: New York, NY (Remote) Contract Duration: 06+months (FTE) Pay Rate: $55 - $63/hr. on w2 Principal Duties: * Security review background. * AI adaption knowledge ...
Quick apply
Security Risk Analyst - AI
New York, NY · Remote
$55 - $63/hr
Security Risk Analyst - AI Work Mode: New York, NY (Remote) Contract Duration: 06+months (FTE) Pay Rate: $55 - $63/hr. on w2 Principal Duties: * Security review background. * AI adaption knowledge ...
Information Security Risk and Compliance Analyst Department: Information Technology Location: Red Roof Pay Band: Professional Job Summary : The Information Security Risk & Compliance Analyst is ...
New
Information Security Risk and Compliance Analyst Department: Information Technology Location: Red Roof Pay Band: Professional Job Summary : The Information Security Risk & Compliance Analyst is ...
New
... information security program in collaboration with other key stakeholders in the Firm. Reporting to the Firm's Security Risk and Compliance Analyst, the assistant will have a range of ...
Quick apply
... information security program in collaboration with other key stakeholders in the Firm. Reporting to the Firm's Security Risk and Compliance Analyst, the assistant will have a range of ...
... information security program in collaboration with other key stakeholders in the Firm. Reporting to the Firm's Security Risk and Compliance Analyst, the assistant will have a range of ...
Quick apply
... information security program in collaboration with other key stakeholders in the Firm. Reporting to the Firm's Security Risk and Compliance Analyst, the assistant will have a range of ...
Ability to analyze complex technical environments and communicate risk in business-focused terms ... Strong knowledge of information security frameworks including NIST CSF, NIST 800‑53, ISO 27001 ...
Ability to analyze complex technical environments and communicate risk in business-focused terms ... Strong knowledge of information security frameworks including NIST CSF, NIST 800‑53, ISO 27001 ...
... information security program in collaboration with other key stakeholders in the Firm. Reporting to the Firm's Security Risk and Compliance Analyst, the assistant will have a range of ...
... information security program in collaboration with other key stakeholders in the Firm. Reporting to the Firm's Security Risk and Compliance Analyst, the assistant will have a range of ...
Senior Vendor Risk Analyst
Atlanta, GA · On-site
$100K - $130K/yr
Senior Vendor Risk Analyst Location: Hybrid - Candidates must be based in one of the following ... Maintain current knowledge of information security concepts, technologies, and practices * Apply ...
Senior Vendor Risk Analyst
Atlanta, GA · On-site
$100K - $130K/yr
Senior Vendor Risk Analyst Location: Hybrid - Candidates must be based in one of the following ... Maintain current knowledge of information security concepts, technologies, and practices * Apply ...
Provide credible challenge of risk analyses, control selection, and control design/operating effectiveness evidence for topics including Information Security and Information Technology risks, privacy ...
Provide credible challenge of risk analyses, control selection, and control design/operating effectiveness evidence for topics including Information Security and Information Technology risks, privacy ...
Bring your analytical mindset and security expertise to solve complex challenges, evaluate risk ... Develop and enhance information security policy standards, procedures and related governance ...
Bring your analytical mindset and security expertise to solve complex challenges, evaluate risk ... Develop and enhance information security policy standards, procedures and related governance ...
Provide credible challenge of risk analyses, control selection, and control design/operating effectiveness evidence for topics including Information Security and Information Technology risks, privacy ...
Provide credible challenge of risk analyses, control selection, and control design/operating effectiveness evidence for topics including Information Security and Information Technology risks, privacy ...
Ability to analyze complex technical environments and communicate risk in business-focused terms ... Strong knowledge of information security frameworks including NIST CSF, NIST 800‑53, ISO 27001 ...
Quick apply
Ability to analyze complex technical environments and communicate risk in business-focused terms ... Strong knowledge of information security frameworks including NIST CSF, NIST 800‑53, ISO 27001 ...
Information Security Risk Manager
San Jose, CA · On-site
$172K - $229K/yr
Description The Information Security Risk Manager is responsible for managing the Global ... Strong analytical, organizational and decision making skills. * Ability to quickly learn new ...
Information Security Risk Manager
San Jose, CA · On-site
$172K - $229K/yr
Description The Information Security Risk Manager is responsible for managing the Global ... Strong analytical, organizational and decision making skills. * Ability to quickly learn new ...
Information Security Risk Analyst information
See salary details
$31.97 - $35.93
6% of jobs
$35.93 - $39.88
5% of jobs
$39.88 - $43.84
8% of jobs
$45.72 is the 25th percentile. Wages below this are outliers.
$43.84 - $47.79
11% of jobs
$47.79 - $51.75
12% of jobs
The median wage is $55.46 / hr.
$51.75 - $55.70
8% of jobs
$55.70 - $59.66
7% of jobs
$59.66 - $63.61
9% of jobs
$65.41 is the 75th percentile. Wages above this are outliers.
$63.61 - $67.57
17% of jobs
$67.57 - $71.53
8% of jobs
$71.53 - $75.48
7% of jobs
$31
$58
$75
How much do information security risk analyst jobs pay per hour?
What is the difference between Information Security Risk Analyst vs Cybersecurity Analyst?
| Aspect | Information Security Risk Analyst | Cybersecurity Analyst |
|---|---|---|
| Certifications | ISO 27001, CISSP, CISA | CompTIA Security+, CEH, CISSP |
| Work Environment | Risk assessment teams, compliance departments | Security operations centers, incident response teams |
| Employer & Industry Usage | Financial, healthcare, government sectors | Tech companies, cybersecurity firms, enterprises |
While both roles focus on protecting information assets, the Information Security Risk Analyst primarily assesses and manages risks related to information security policies and compliance. In contrast, the Cybersecurity Analyst actively monitors security systems, responds to threats, and handles incidents. Understanding these differences helps organizations assign the right responsibilities and professionals to safeguard their digital assets.
What are the key skills and qualifications needed to thrive as an Information Security Risk Analyst, and why are they important?
What are Information Security Risk Analysts?
What Does an Information Security Risk Analyst Do?
As an information security risk analyst, your job is to help assess each potential threat and determine whether or not your current network system suffers from vulnerability to that threat. In this IT role, you may monitor network activity, help implement and manage safety protocols, and research emerging threats to help determine the best response to them. Information security risk analysts often work with many other IT personnel at the same company to manage security needs and, somewhat unusually for an IT role, may also collaborate with outside experts and volunteers to find the best way to counter a particular threat. This is an extremely collaborative position, so the ability to work well with other people, including those you may be meeting for the first time, is essential to your success.
How does an Information Security Risk Analyst typically collaborate with other departments to address security risks?

EITS Security Risk Analyst B (Engagement)--Remote Job
San Francisco, CA • Remote
Full-time
Posted 8 days ago
Job description
Max Submissions: 5
Proposed Start Date: ASAP
Proposed End Date: 06/30/2026
Role Overview
- Serve as a liaison between the CISO’s strategic initiatives and the IT operational teams.
- Translate business IT risk requirements into technical control specifications.
- Develop risk metrics for performance measurement and reporting.
- Coordinate enterprise-level security and risk management efforts.
- Act as a subject matter expert (SME) on information security and regulatory compliance.
Key Responsibilities🔹 Security & Risk Management
- Maintain and enforce the enterprise information security and risk management framework.
- Conduct risk analysis and develop mitigation strategies.
- Monitor and assess the enterprise threat landscape.
- Provide realistic risk reporting to the CISO and leadership teams.
- Track and document internal risk reviews, assessments, and exceptions using a GRC tool.
🔹 Governance & Compliance
- Document and maintain risk governance methodologies, policies, and procedures.
- Ensure compliance with:
- HIPAA
-
- Joint Commission
-
- DSRIP
-
- COBIT
-
- State privacy laws
- Conduct and support internal and external audits (operational, compliance, reputational, security).
- Serve as SME for EMR and PHI-related security risks.
🔹 Risk Assessments & Gap Analysis
- Perform enterprise security risk assessments and gap analyses for new technologies and products.
- Develop and manage risk remediation plans and work plans.
- Identify information asset owners for data classification initiatives.
- Support risk exception and risk acceptance documentation processes.
🔹 Technical & Cross-Functional Collaboration
- Partner with enterprise architecture teams to align business, technical, and security requirements.
- Collaborate with security engineering teams to implement security controls.
- Facilitate meetings between stakeholders and IT teams.
- Provide written and verbal reports to leadership and committees (including Operational Risk Committee).
Required Qualifications🔹 Experience
- Minimum 7 years of IT experience
- At least 5 years in IT Security Risk Management / Risk Audit / Data Privacy Investigation
- Minimum 2 years in a supervisory capacity
🔹 Healthcare Industry Expertise (Required)
- Strong understanding of:
- EMR systems
-
- PHI data privacy
-
- Healthcare regulatory environment
- Experience with HIPAA, Joint Commission, CMS regulations
🔹 GRC & Security Framework Knowledge
- Hands-on experience with GRC tools (ServiceNow, Archer, MetricStream preferred)
- Working knowledge of:
- NIST CSF
-
- HITECH
-
- ISO 27001/27002
-
- PCI DSS
-
- COBIT
🔹 Technical Skills
- Experience reviewing IT solution requirements and implementing security controls
- Strong analytical and risk assessment skills
- Ability to design compensating controls for security vulnerabilities
- Ability to assess business impact of security tools and policies
Education & Certifications
- Bachelor’s degree in Information Systems or related field
- Preferred Certifications:
- CISSP
-
- CISA
-
- CRISC
-
- Other relevant security certifications
Preferred Soft Skills
- High integrity and ability to work independently
- Strong communication and reporting skills
- Ability to work in fast-moving environments
- Experience participating in special projects
- Ability to support various locations and flexible shifts if required
About DeltaSoft
Sourced by ZipRecruiter
Industry
Software development
Company size
11 - 50 Employees
Headquarters location
Hillsborough, NJ, US
Year founded
1996