1

Internship Cyber Security Risk Analyst Jobs in Iowa

GRC Risk Analyst

Des Moines, IA · On-site +1

$70 - $80/hr

Knowledge of information security and cybersecurity risk concepts. * Experience working in regulated industries like insurance, financial services, or banking. Compensation & Benefits A pay rate ...

Deep knowledge of network security, cryptography, threat analysis, vulnerability assessment ... Emphasizes a systematic approach to security assessment and connects cybersecurity to business risk ...

Deep knowledge of network security, cryptography, threat analysis, vulnerability assessment ... Emphasizes a systematic approach to security assessment and connects cybersecurity to business risk ...

... cybersecurity risks through the evaluation of common and technical controls, effective risk ... Analyze phishing emails * Assist in physical security reporting and tasks as needed * Assist in ...

next page

Showing results 1-20

Internship Cyber Security Risk Analyst information

What are the key skills and qualifications needed to thrive as an Internship Cyber Security Risk Analyst, and why are they important?

To thrive as an Internship Cyber Security Risk Analyst, you need foundational knowledge in information security principles, risk assessment, and familiarity with security frameworks, often supported by coursework in cybersecurity or related fields. Experience with tools such as vulnerability scanners, SIEM platforms, and basic certifications like CompTIA Security+ are highly valued. Strong analytical thinking, attention to detail, and effective communication skills help interns interpret findings and collaborate with teams. These capabilities are crucial for identifying vulnerabilities, supporting risk mitigation, and ensuring the security posture of an organization.

What is the difference between Internship Cyber Security Risk Analyst vs Cyber Security Risk Analyst?

AspectInternship Cyber Security Risk AnalystCyber Security Risk Analyst
QualificationsEnrolled in or recent graduate of relevant degree programs; some certifications beneficialTypically requires professional certifications (e.g., CISSP, CISA) and experience
Work EnvironmentInternship setting, learning-focused, supervisedFull-time, professional role with independent responsibilities
ResponsibilitiesAssisting with risk assessments, supporting security projects, learning proceduresConducting risk analysis, developing mitigation strategies, managing security protocols

The Internship Cyber Security Risk Analyst role is an entry-level, learning position designed for students or recent graduates gaining industry experience. In contrast, a Cyber Security Risk Analyst is a full-time professional responsible for managing and analyzing security risks independently. The internship offers foundational exposure, while the full analyst role requires more advanced skills and certifications.

What types of projects or tasks can an intern expect to work on as a Cyber Security Risk Analyst?

As an intern in Cyber Security Risk Analysis, you can expect to assist with identifying and assessing potential security risks within an organization’s IT infrastructure. Common tasks may include helping to review security policies, conduct vulnerability assessments, and analyze security incidents under the guidance of senior analysts. You may also collaborate with IT and compliance teams to document findings and recommend mitigation strategies. This role offers the chance to gain hands-on experience with industry-standard tools and exposure to real-world risk management processes, providing a strong foundation for a future career in cybersecurity.

What does an Internship Cyber Security Risk Analyst do?

An Internship Cyber Security Risk Analyst supports the cybersecurity team by identifying, assessing, and helping to mitigate potential security risks within an organization’s information systems. Interns in this role often assist with evaluating security measures, conducting vulnerability assessments, and reviewing compliance with security policies. They may also help develop risk reports and collaborate with other teams to implement best security practices. This position is ideal for those looking to gain hands-on experience in the field of cybersecurity risk management.
What are the most commonly searched types of Cyber Security Risk Analyst jobs in Iowa? The most popular types of Cyber Security Risk Analyst jobs in Iowa are:
What are popular job titles related to Internship Cyber Security Risk Analyst jobs in Iowa? For Internship Cyber Security Risk Analyst jobs in Iowa, the most frequently searched job titles are:
What job categories do people searching Internship Cyber Security Risk Analyst jobs in Iowa look for? The top searched job categories for Internship Cyber Security Risk Analyst jobs in Iowa are:
What cities in Iowa are hiring for Internship Cyber Security Risk Analyst jobs? Cities in Iowa with the most Internship Cyber Security Risk Analyst job openings:
Sr Governance, Risk & Compliance (GRC) Analyst

Sr Governance, Risk & Compliance (GRC) Analyst

Athene

West Des Moines, IA • On-site

Full-time

This job post has expired today. Applications are no longer accepted.


Athene rating

7.1

Company rating: 7.1 out of 10

Based on 11 frontline employees who took The Breakroom Quiz


Job description

Job Summary:
Athene is a company driven to do more for its customers and financial professionals. They are seeking a Sr. Governance, Risk & Compliance (GRC) Analyst to enhance enterprise technology risk management, cybersecurity governance, and regulatory compliance while collaborating with various teams to assess risks and improve governance practices.
Responsibilities:
• Conduct technology and cybersecurity risk assessments to identify risks, control gaps, and opportunities for program enhancement.
• Manage and maintain the enterprise technology risk register, including risk tracking, reporting, and remediation oversight.
• Partner with technology and cybersecurity teams to strengthen controls, policies, standards, and governance processes aligned to industry frameworks (e.g., NIST) and regulatory requirements (e.g., BMA, NYDFS, SOX).
• Evaluate IT governance and compliance processes to support ongoing program maturity and operational effectiveness.
• Develop and enhance cybersecurity metrics, KPIs, and executive reporting to support governance and risk-informed decision making.
• Provide risk advisory support to technology and business stakeholders on governance, control, and compliance considerations.
• Help shape Athene’s governance approach for AI and emerging technologies by partnering across technology, legal, compliance, and risk functions.
• Assess AI and emerging technology use cases for risk, control effectiveness, regulatory alignment, and operational readiness.
• Contribute to the development and operationalization of AI governance standards, controls, and risk management practices.
• Monitor adherence to AI governance requirements, including documentation, control evidence, and risk management procedures.
• Support internal and external audit inquiries related to AI usage, data governance, and technology risk oversight.
• Perform technology and cybersecurity due diligence assessments for key vendors and third parties, including review of SOC 1 and SOC 2 reports.
• Monitor third-party risk ratings and coordinate remediation or follow-up activities related to identified concerns.
• Partner with business and technology teams to evaluate vendor risk exposure and strengthen third-party governance practices.
• Respond to client, partner, and vendor security assessments and questionnaires, clearly communicating Athene’s security controls and governance practices.
• Serve as a key liaison for technology risk, audit, and regulatory activities, helping streamline evidence collection, remediation tracking, and control maturity efforts.
• Partner with Internal Audit, External Audit, and Technology teams to support technology audits and SOX IT control testing.
• Track and manage remediation activities related to audit findings, risk assessments, and compliance initiatives.
• Monitor evolving cybersecurity and technology regulations and support readiness efforts across the organization.
• Partner with cybersecurity teams to track vulnerability remediation efforts and support enterprise risk reduction initiatives.
• Coordinate and facilitate cyber incident response exercises, disaster recovery activities, and tabletop simulations.
• Support the enterprise security awareness program, including annual training initiatives and phishing simulation activities.
• Develop governance, risk, and compliance educational materials to increase awareness and strengthen risk culture across the organization.
• Maintain and enhance Athene’s GRC platform and supporting workflows as the program evolves.
• Identify opportunities to improve processes, reporting, automation, and control visibility across governance and compliance activities.
• Collaborate with technology leadership, cybersecurity teams, and risk management stakeholders to develop and track remediation action plans and strategic initiatives.
Qualifications:
Required:
• Bachelor’s degree in Accounting, Management Information Systems, Computer Science, Cybersecurity, or related field (or equivalent experience) and 5+ years of experience in IT risk management, cybersecurity governance, IT audit, GRC, compliance, consulting, or professional services environments.
• Strong understanding of IT risk frameworks, governance practices, and internal control methodologies, including SOX IT controls.
• Experience assessing technology and cybersecurity risks, evaluating control effectiveness, and supporting remediation efforts.
• Ability to communicate effectively with both technical and non-technical stakeholders across all levels of the organization.
• Strong analytical, problem-solving, and organizational skills with the ability to manage multiple priorities independently.
• Experience working in a regulated industry or financial services environment.
Preferred:
• Professional certifications such as CRISC, CISA, CISSP, or similar.
• Experience supporting AI governance, emerging technology risk, or cybersecurity compliance initiatives.
• Experience with ServiceNow IRM/GRC or similar governance and risk management platforms.
• Familiarity with regulatory frameworks and standards such as NIST, NYDFS, BMA, ISO 27001, or COBIT.
Company:
Athene Holding is a life insurance company that provides retirement savings products for individuals and institutions. Founded in 2009, the company is headquartered in West Des Moines, USA, with a team of 1001-5000 employees. The company is currently Late Stage.

What Athene employees say

Pay

Hours and flexibility

Workplace

Get the full story on Breakroom