2

Remote Risk Analyst Jobs in Tennessee (NOW HIRING)

For candidates not in those locations, we would consider fully remote work for a highly qualified ... data analysis * Working knowledge of the federal, state, and local regulations / ordinances ...

For candidates not in those locations, we would consider fully remote work for a highly qualified ... data analysis * Working knowledge of the federal, state, and local regulations / ordinances ...

Remote/Virtual (Using your own personal laptop/computer) Program Overview: * Unpaid Educational ... Learn the basics of underwriting, risk analysis, and pricing strategies. * Virtual Training ...

New

Remote/Virtual (Using your own personal laptop/computer) Program Overview: * Unpaid Educational ... Learn the basics of underwriting, risk analysis, and pricing strategies. * Virtual Training ...

New

Remote/Virtual (Using your own personal laptop/computer) Program Overview: * Unpaid Educational ... Learn the basics of underwriting, risk analysis, and pricing strategies. * Virtual Training ...

New

Remote/Virtual (Using your own personal laptop/computer) Program Overview: * Unpaid Educational ... Learn the basics of underwriting, risk analysis, and pricing strategies. * Virtual Training ...

New

Remote/Virtual (Using your own personal laptop/computer) Program Overview: * Unpaid Educational ... Learn the basics of underwriting, risk analysis, and pricing strategies. * Virtual Training ...

New

Remote/Virtual (Using your own personal laptop/computer) Program Overview: * Unpaid Educational ... Learn the basics of underwriting, risk analysis, and pricing strategies. * Virtual Training ...

New

next page

Showing results 1-20

Remote Risk Analyst information

What are the typical daily responsibilities of a Remote Risk Analyst?

As a Remote Risk Analyst, your typical day involves analyzing data to identify potential risks, preparing risk reports, and providing recommendations to management. You will use digital tools to monitor trends, evaluate risk models, and ensure policies and procedures are being followed. Collaboration with other departments—such as compliance, finance, and operations—is common and often occurs via virtual meetings and shared documents. While the role is independent, frequent communication and teamwork are essential to stay aligned with organizational goals and respond quickly to emerging risks.

Are risk analysts well paid?

Risk analysts typically earn competitive salaries that vary based on experience, education, and industry. According to industry data, the median annual salary for risk analysts ranges from $60,000 to $90,000, with higher earnings possible for those with advanced certifications or specialized skills in data analysis and risk management tools. Many risk analysts also receive benefits such as bonuses and professional development opportunities.

What jobs in the US pay 300,000 a year?

Remote Risk Analysts in high-level financial or consulting firms can earn salaries approaching or exceeding $300,000 annually, especially with extensive experience, certifications like CFA or FRM, and advanced analytical skills. Senior roles in investment banking, executive positions, and specialized roles in technology or healthcare may also reach this compensation level.

Can a risk analyst work remotely?

Yes, many risk analysts work remotely, especially in roles that involve data analysis, reporting, and using risk management software. Remote work arrangements depend on the employer's policies and the specific responsibilities of the position, but remote risk analysis has become increasingly common in the industry.

What are the key skills and qualifications needed to thrive in the Remote Risk Analyst position, and why are they important?

To thrive as a Remote Risk Analyst, you need strong analytical skills, attention to detail, and a degree in finance, economics, or a related field. Familiarity with risk assessment tools, data analysis software (such as Excel, SQL, or SAS), and relevant certifications like FRM or CFA are highly beneficial. Proven abilities in communication, problem-solving, and self-motivation are critical for effective remote collaboration and independent work. These skills help identify, analyze, and report on risks, allowing organizations to make informed decisions and maintain compliance in a virtual environment.

Are risk analysts in demand?

Risk analysts are in high demand across various industries such as finance, insurance, and healthcare due to increasing regulatory requirements and the need for risk management strategies. The role often requires strong analytical skills and familiarity with data analysis tools, and employment prospects are expected to grow steadily in the coming years.

What is a Remote Risk Analyst job?

A Remote Risk Analyst is responsible for identifying, analyzing, and mitigating financial, operational, or security risks for a company while working remotely. They assess data, monitor trends, and develop strategies to minimize potential threats. This role often involves working with risk management software, conducting audits, and ensuring compliance with industry regulations. Remote Risk Analysts collaborate with teams virtually using digital communication and reporting tools. They are commonly employed in industries such as finance, insurance, cybersecurity, and consulting.

What are the most commonly searched types of Risk Analyst jobs in Tennessee? The most popular types of Risk Analyst jobs in Tennessee are:
What are popular job titles related to Remote Risk Analyst jobs in Tennessee? For Remote Risk Analyst jobs in Tennessee, the most frequently searched job titles are:
What cities in Tennessee are hiring for Remote Risk Analyst jobs? Cities in Tennessee with the most Remote Risk Analyst job openings:
Infographic showing various Remote Risk Analyst job openings in Tennessee as of July 2026, with employment types broken down into 85% Full Time, and 15% Contract. Highlights an 100% Remote job distribution.

Sr. Information Security Governance, Risk and Compliance Analyst

BlueCross BlueShield of Tennessee

Chattanooga, TN • Remote

Full-time

Posted 16 days ago


Job description

We are hiring a Sr. Information Security Governance, Risk, and Compliance (GRC) Analyst at BlueCross BlueShield of Tennessee!
In this role, you will help strengthen and mature BCBST's information security governance program by leading risk management, compliance, and assurance initiatives across the enterprise. You will serve as a key contributor in developing and maintaining Systems Security Plans (SSPs), beginning with enterprise-level security plans and extending into application-specific security documentation. You'll partner with technology and business stakeholders to support audit readiness efforts, manage security controls, assess risk, and ensure alignment with industry frameworks and regulatory requirements. This role plays an important part in protecting organizational assets while helping BCBST maintain a strong security and compliance posture.
To be successful in this role, in addition to the core job requirements, you'll bring strong cybersecurity knowledge, exceptional technical writing skills, and experience translating complex security requirements into clear, actionable documentation. You will be a strong candidate for this role if you have experience developing Systems Security Plans (SSPs), supporting audit and compliance activities, working with security frameworks and control management programs, and collaborating across technical teams to manage risk. Professional certifications such as CISA, CISM, or CISSP are highly preferred and will help distinguish top candidates.
Note:
  • This is a remote, work-from-home position, but the final round of interviews will take place on-site in our Chattanooga, TN office.
  • Candidates must be able to work Eastern Time Zone business hours.
  • Participation in an on-call rotation is required for approximately two weeks every 30 weeks.
  • Sponsorship is not available for this role.

Job Responsibilities

  • Lead SOC 2 Audit Support - Coordinate audit activities including evidence collection, control validation, and auditor engagement.
  • Manage and Validate Control Frameworks - Maintain control documentation, mappings, and narratives while partnering with control owners to ensure effectiveness and alignment with Trust Services Criteria and NIST frameworks.
  • Track Audit & Remediation Activities - Oversee audit findings, remediation efforts, and timely closure of issues.
  • Develop & Maintain NIST SSPs - Create and update System Security Plans (SSPs), including control implementations, inheritance, and system boundaries.
  • Drive Security Awareness Programs - Design and manage training initiatives, including phishing simulations and targeted campaigns.
  • Manage Policies & Governance Documentation - Oversee the full lifecycle of security policies, standards, and procedures to ensure compliance and audit readiness.
  • Conduct Enterprise & Third-Party Risk Management - Perform risk assessments, maintain risk registers, execute vendor risk assessments, and monitor remediation.
  • Oversee Vulnerability Management - Track vulnerability remediation against SLAs and collaborate with teams to mitigate risks.
  • Support Customer Security Assurance - Respond to RFPs and security questionnaires, ensuring accurate, compliant, and consistent security representations.
  • Leadership - Leads by example, actively supporting initiatives across all GRC areas while fostering a culture of collaboration and shared accountability.

Job Qualifications
Education

  • Bachelor's degree in a relevant field or an equivalent of four years of experience is required.

Experience

  • 5 years - Professional experience in Information Security or related IT roles with security-related responsibilities, including at least 2 years focused on Governance, Risk, and Compliance (GRC) functions.
  • Experience leveraging AI-enabled tools to automate and enhance GRC processes, improving efficiency, consistency, and scalability of governance, risk, and compliance activities preferred.

Skills/Certifications

  • Preferred, one or more of the following certifications required: CISSP, CRISC, CISA, or CISM.
  • Ability to assess and document organizational risks, including identifying impacts and recommending mitigation strategies.
  • Ability to interpret and apply regulatory requirements and industry frameworks (e.g., NIST, SOC 2, HIPAA) to organizational controls.
  • Ability to analyze security, compliance, and risk metrics to identify trends and drive continuous improvement.
  • Ability to communicate complex risk and compliance concepts clearly to both technical and non-technical stakeholders.
  • Ability to collaborate effectively across cross-functional teams to integrate governance, risk, and compliance practices into business processes.
  • Exceptional time management skills.
  • Excellent oral and written communication skills.
  • Strong interpersonal skills and ability to cultivate relationships with internal and external stakeholders, promoting diversity of people, perspectives and ideas.
  • Ability to work with all levels of staff and management.

N/A

Number of Openings Available

1

Worker Type:

Employee

Company:

BCBST BlueCross BlueShield of Tennessee, Inc.

Applying for this job indicates your acknowledgement and understanding of the following statements:

BCBST will recruit, hire, train and promote individuals in all job classifications without regard to race, religion, color, age, sex, national origin, citizenship, pregnancy, veteran status, sexual orientation, physical or mental disability, gender identity, or any other characteristic protected by applicable law.

Further information regarding BCBST's EEO Policies/Notices may be found by reviewing the following page:

BCBST's EEO Policies/Notices

BlueCross BlueShield of Tennessee is not accepting unsolicited assistance from search firms for this employment opportunity. All resumes submitted by search firms to any employee at BlueCross BlueShield of Tennessee via-email, the Internet or any other method without a valid, written Direct Placement Agreement in place for this position from BlueCross BlueShield of Tennessee HR/Talent Acquisition will not be considered. No fee will be paid in the event the applicant is hired by BlueCross BlueShield of Tennessee as a result of the referral or through other means.