Remote 100% Why Us. At UT MD Anderson, the Principal Cybersecurity Analyst plays an essential role ... risk assessment methodologies, control frameworks, and risk scoring models Establish workflows ...
Remote 100% Why Us. At UT MD Anderson, the Principal Cybersecurity Analyst plays an essential role ... risk assessment methodologies, control frameworks, and risk scoring models Establish workflows ...
Principal Cybersecurity Analyst - Risk Mgmt & AI Security
Houston, TX · On-site +1
$123K/yr
Remote 100% Why Us? At UT MD Anderson, the Principal Cybersecurity Analyst plays an essential role ... assessment methodologies, control frameworks, and risk scoring models • Establish workflows ...
Principal Cybersecurity Analyst - Risk Mgmt & AI Security
Houston, TX · On-site +1
$123K/yr
Remote 100% Why Us? At UT MD Anderson, the Principal Cybersecurity Analyst plays an essential role ... assessment methodologies, control frameworks, and risk scoring models • Establish workflows ...
Remote 100% Why Us? At UT MD Anderson, the Principal Cybersecurity Analyst plays an essential role ... assessment methodologies, control frameworks, and risk scoring models • Establish workflows ...
Remote 100% Why Us? At UT MD Anderson, the Principal Cybersecurity Analyst plays an essential role ... assessment methodologies, control frameworks, and risk scoring models • Establish workflows ...
... risk assessments * Ability to work independently and effectively with local and remote OCC staff ... Experience in security risk management principles and practices. * Experience in working with ...
... risk assessments * Ability to work independently and effectively with local and remote OCC staff ... Experience in security risk management principles and practices. * Experience in working with ...
Technical Security Manager
Dallas, TX · On-site +1
Performs security risk assessments of software acquisitions, technical services, business systems and new technologies. * Owns and administers a GRC tool to track security controls and current ...
Technical Security Manager
Dallas, TX · On-site +1
Performs security risk assessments of software acquisitions, technical services, business systems and new technologies. * Owns and administers a GRC tool to track security controls and current ...
Energy Risk Engineering Consultant
Houston, TX · On-site +1
By integrating risk assessment, prevention, and recovery with the broader insurance experience, we ... This role offers a remote work arrangement but requires the candidate to reside in Houston, TX to ...
Energy Risk Engineering Consultant
Houston, TX · On-site +1
By integrating risk assessment, prevention, and recovery with the broader insurance experience, we ... This role offers a remote work arrangement but requires the candidate to reside in Houston, TX to ...
Associate Principal, Security Architecture
Dallas, TX · On-site +1
... risk assessments and design operationally-effective controls to remediate them * Ability to work independently and effectively with local and remote OCC staff, management, vendors, and consultants ...
Associate Principal, Security Architecture
Dallas, TX · On-site +1
... risk assessments and design operationally-effective controls to remediate them * Ability to work independently and effectively with local and remote OCC staff, management, vendors, and consultants ...
Risk Engineering, Construction Account Specialist
Frisco, TX · On-site +1
$92K/yr
By integrating risk assessment, prevention, and recovery with the broader insurance experience, we ... This role offers a remote or hybrid work arrangement, with the expectation of coming into an office ...
Risk Engineering, Construction Account Specialist
Frisco, TX · On-site +1
$92K/yr
By integrating risk assessment, prevention, and recovery with the broader insurance experience, we ... This role offers a remote or hybrid work arrangement, with the expectation of coming into an office ...
Risk Engineering, Construction Account Specialist
Frisco, TX · On-site +1
$92K/yr
By integrating risk assessment, prevention, and recovery with the broader insurance experience, we ... This role offers a remote or hybrid work arrangement, with the expectation of coming into an office ...
Risk Engineering, Construction Account Specialist
Frisco, TX · On-site +1
$92K/yr
By integrating risk assessment, prevention, and recovery with the broader insurance experience, we ... This role offers a remote or hybrid work arrangement, with the expectation of coming into an office ...
Security Operations Next-Gen SIEM Analyst 100% Remote, Work Location With-in the United States contr
Austin, TX · On-site +1
... risk and security operations performance Duties to Be Performed: • Assess current CrowdStrike SIEM configuration, telemetry coverage, and log ingestion • Enable and tune additional CrowdStrike ...
Security Operations Next-Gen SIEM Analyst 100% Remote, Work Location With-in the United States contr
Austin, TX · On-site +1
... risk and security operations performance Duties to Be Performed: • Assess current CrowdStrike SIEM configuration, telemetry coverage, and log ingestion • Enable and tune additional CrowdStrike ...
GRC Analyst
Dallas, TX · On-site +1
You will run the security change management review process, conduct risk and vendor assessments, maintain the enterprise risk register, and own the lifecycle of NMC's security policy library. Day-to ...
GRC Analyst
Dallas, TX · On-site +1
You will run the security change management review process, conduct risk and vendor assessments, maintain the enterprise risk register, and own the lifecycle of NMC's security policy library. Day-to ...
Quantitative Risk Analyst Senior - Enterprise Risk Management
Plano, TX · On-site +1
$114K - $218K/yr
USAA roles may offer remote or hybrid flexibility for active-duty military spouses consistent with ... Risk Reporting, Risk Identification and Assessment Processes (RIAP), and Work Effort Risk ...
Quantitative Risk Analyst Senior - Enterprise Risk Management
Plano, TX · On-site +1
$114K - $218K/yr
USAA roles may offer remote or hybrid flexibility for active-duty military spouses consistent with ... Risk Reporting, Risk Identification and Assessment Processes (RIAP), and Work Effort Risk ...
Quantitative Risk Analyst Senior - Enterprise Risk Management
San Antonio, TX · On-site +1
$114K - $218K/yr
USAA roles may offer remote or hybrid flexibility for active-duty military spouses consistent with ... Risk Reporting, Risk Identification and Assessment Processes (RIAP), and Work Effort Risk ...
Quantitative Risk Analyst Senior - Enterprise Risk Management
San Antonio, TX · On-site +1
$114K - $218K/yr
USAA roles may offer remote or hybrid flexibility for active-duty military spouses consistent with ... Risk Reporting, Risk Identification and Assessment Processes (RIAP), and Work Effort Risk ...
Senior Cybersecurity Risk Analyst - USA Remote
Dallas, TX · Remote
$130K - $160K/yr
... as Remote. In this role, you will have the opportunity to: * Execute the third-party risk ... e.g., Shared Assessments SIG, NIST SP 800-161, ISO/IEC 27036) and the underlying security and ...
Senior Cybersecurity Risk Analyst - USA Remote
Dallas, TX · Remote
$130K - $160K/yr
... as Remote. In this role, you will have the opportunity to: * Execute the third-party risk ... e.g., Shared Assessments SIG, NIST SP 800-161, ISO/IEC 27036) and the underlying security and ...
Senior Cybersecurity Risk Analyst - USA Remote
Coppell, TX · Remote
$130K - $160K/yr
... as Remote. In this role, you will have the opportunity to: * Execute the third-party risk ... e.g., Shared Assessments SIG, NIST SP 800-161, ISO/IEC 27036) and the underlying security and ...
Senior Cybersecurity Risk Analyst - USA Remote
Coppell, TX · Remote
$130K - $160K/yr
... as Remote. In this role, you will have the opportunity to: * Execute the third-party risk ... e.g., Shared Assessments SIG, NIST SP 800-161, ISO/IEC 27036) and the underlying security and ...
RISK Our Risk division develops comprehensive processes to monitor, assess, and manage the risk of ... Founded in 1869, we are a leading global investment banking, securities and investment management ...
RISK Our Risk division develops comprehensive processes to monitor, assess, and manage the risk of ... Founded in 1869, we are a leading global investment banking, securities and investment management ...
RISK Our Risk division develops comprehensive processes to monitor, assess, and manage the risk of ... Founded in 1869, we are a leading global investment banking, securities and investment management ...
RISK Our Risk division develops comprehensive processes to monitor, assess, and manage the risk of ... Founded in 1869, we are a leading global investment banking, securities and investment management ...
Chief Information Security Officer
Austin, TX · On-site +1
Own the enterprise risk management program, including third-party / vendor risk assessment for the ... Present security posture, risk trends, and program maturity to the Fortive security team and ...
Chief Information Security Officer
Austin, TX · On-site +1
Own the enterprise risk management program, including third-party / vendor risk assessment for the ... Present security posture, risk trends, and program maturity to the Fortive security team and ...
Lead AppSec Engineer
Irving, TX · On-site +1
$56.50 - $75.50/hr
Serve as asubject-matter-expertfor Application Security; actas a first point of contact for critical issues, security risk assessments and triaging CI/CD issues with Partners andstakeholders.
Lead AppSec Engineer
Irving, TX · On-site +1
$56.50 - $75.50/hr
Serve as asubject-matter-expertfor Application Security; actas a first point of contact for critical issues, security risk assessments and triaging CI/CD issues with Partners andstakeholders.
Establish and scale a federated security model where cyber risk ownership shifts from centralized ... assessment, vulnerability threat management, security incident management, cyber "hunt," and big ...
Establish and scale a federated security model where cyber risk ownership shifts from centralized ... assessment, vulnerability threat management, security incident management, cyber "hunt," and big ...
Remote Security Risk Assessment information
What are the key skills and qualifications needed to thrive as a Remote Security Risk Assessor, and why are they important?
What is the difference between Remote Security Risk Assessment vs Cybersecurity Analyst?
| Aspect | Remote Security Risk Assessment | Cybersecurity Analyst |
|---|---|---|
| Credentials | Certifications like CISSP, CISA, CISM | Certifications like CompTIA Security+, CISSP, CEH |
| Work Environment | Remote or on-site, focusing on risk evaluation | Remote or on-site, focusing on security monitoring and incident response |
| Industry Usage | Used in risk management, compliance, and audit contexts | Used in security operations, threat analysis, and incident handling |
Remote Security Risk Assessments and Cybersecurity Analysts both require security certifications and often work in similar environments. However, risk assessors focus on evaluating vulnerabilities and compliance, while analysts handle ongoing security monitoring and incident response. Understanding these differences helps organizations assign the right roles for their security needs.
What is a Remote Security Risk Assessment?
What are some common challenges faced by professionals in remote security risk assessment roles?
Other
Medical, Dental, Vision, Life, Retirement, PTO
Posted 24 days ago
MD Anderson Cancer Center rating
8.4
Based on 170 frontline employees who took The Breakroom Quiz
26th of 887 rated healthcare providers
Job description
The University of Texas MD Anderson Cancer Center is seeking a highly skilled Principal Cybersecurity Analyst to serve as a technical authority within its Cybersecurity department. The Principal Cybersecurity Analyst plays a critical role in shaping and advancing enterprise-wide governance, risk, and compliance (GRC) programs, with expanded accountability for emerging AI security and governance initiatives. This role operates at a strategic and architectural level while also ensuring operational effectiveness across cybersecurity risk management practices.
The Principal Cybersecurity Analyst contributes directly to safeguarding sensitive data, maintaining regulatory compliance, and strengthening the organization's security posture through innovative, data-driven risk management and governance strategies. The Principal Cybersecurity Analyst serves as a trusted advisor, architect, and leader within the cybersecurity function. The ideal candidate brings advanced education in information systems or cybersecurity, extensive experience leading enterprise risk management or GRC programs, and strong knowledge of frameworks such as NIST, HIPAA, and HITRUST.
Preferred candidates will also have hands-on experience assessing AI/ML risk, strong executive communication skills, and certifications such as CISSP, CISM, or PMP. Minimum $123,000 - Midpoint $154,000 - Maximum $185,000 Work Location: Remote 100% Why Us. At UT MD Anderson, the Principal Cybersecurity Analyst plays an essential role in advancing cybersecurity innovation in a mission-driven healthcare environment.
This position offers the opportunity to shape enterprise risk strategy, influence executive decision-making, and lead emerging AI governance practices, all while supporting an organization dedicated to saving lives. Employees benefit from a collaborative culture, professional development opportunities, and a strong commitment to work-life balance. Employer-paid medical coverage starting day one for employees working 30+ hours/week, plus optional group dental, vision, life, AD&D, and disability insurance.
Accruals for PTO and Extended Illness Bank, plus paid holidays, wellness, childcare, and other leave options. Tuition Assistance Program after six months of service and access to extensive wellness, fitness, and employee resource groups. Defined-benefit pension through the Teachers Retirement System, voluntary retirement plans, and employer-paid life and reduced salary protection programs.
Responsibilities Governance, Risk & Compliance (GRC) Architecture & Risk Management Program Leadership Serve as principal architect and subject matter expert for enterprise GRC and cybersecurity risk programs Define and maintain risk assessment methodologies, control frameworks, and risk scoring models Establish workflows across development, staging, and production environments Develop SOPs, roles, segregation of duties, and change management processes Lead design and execution of enterprise risk management strategies Security & Risk Platform Integration and Automation Architect and maintain integrations across Archer, Tenable, ServiceNow, Microsoft Configuration Manager (SCCM/MECM), and Medigate Design automated workflows consolidating asset, vulnerability, and risk data Enable enterprise-wide risk visibility and reporting through data-driven systems Ensure data quality, reconciliation, and interoperability across platforms and CMDB Regulatory & Compliance Framework Management Apply frameworks including NIST CSF, NIST 800-53, HIPAA, and HITRUST Conduct control mapping, gap assessments, and compliance reporting Advise stakeholders on remediation strategies and regulatory requirements Align institutional policies with regulatory and accreditation standards AI Security & Governance Establish and mature AI security and governance programs Develop AI risk assessment criteria and governance standards Align controls to NIST AI Risk Management Framework and institutional policies Evaluate AI/ML tools and vendors for data protection and compliance risks Partner with data governance, privacy, and legal teams on AI initiatives Strategic Risk Visioning, Assessment & Executive Advisory Develop multi-year roadmaps, milestones, and resource plans Lead enterprise and project-level risk assessments Translate technical findings into executive-level reporting and dashboards Advise leadership on risk posture and investment prioritization Provide technical leadership and mentorship across teams EDUCATION Required: Bachelor's Degree Computer Information Systems, Business Information Systems, Computer Science or related field. Preferred: Master's Degree Information Security, Computer Science or related field WORK EXPERIENCE Required: 7 years In information security and/or cybersecurity experience including multiple security domains, to include two years lead/supervisory experience. May substitute required education degree with additional years of equivalent experience on a one to one basis.
Preferred: At least 7-8 years of progressive cybersecurity experience, hands-on risk management (risk assessment, risk register ownership, control evaluation, or risk quantification), led or owned a security risk management program or framework implementation (e.g., NIST RMF/CSF, ISO 27005, FAIR, or equivalent), direct hands-on experience assessing the security or risk posture of AI/ML systems or GenAI deployments, ability to translate technical risk into business-level language for executive and governance audiences (e.g., briefing a CISO, risk committee, or board), experience using Archer, excellent communication skills, risk management, and cybersecurity framework is a must. LICENSES AND CERTIFICATIONS Preferred: CISSP - Cert IS Security Professional Issued by the International Information Systems Security Certification Consortium ((ISC). Preferred: CISM - Cert Info Security Manager Issued by Information Systems Audit and Control Association (ISACA)
Preferred: PMP - Project Mgt Professional Issued by the Project Management Institute (PMI). Preferred: Other applicable security industry certifications. The University of Texas MD Anderson Cancer Center offers excellent benefits, including medical, dental, paid time off, retirement, tuition benefits, educational opportunities, and individual and team recognition.
This position may be responsible for maintaining the security and integrity of critical infrastructure, as defined in Section 113.001(2) of the Texas Business and Commerce Code and therefore may require routine reviews and screening. The ability to satisfy and maintain all requirements necessary to ensure the continued security and integrity of such infrastructure is a condition of hire and continued employment. It is the policy of The University of Texas MD Anderson Cancer Center to provide equal employment opportunity without regard to race, color, religion, age, national origin, sex, gender, sexual orientation, gender identity/expression, disability, protected veteran status, genetic information, or any other basis protected by institutional policy or by federal, state, or local laws unless such distinction is required by law.http://www.mdanderson.org/about-us/legal-and-policy/legal-statements/eeo-affirmative-action.html Additional Information Requisition ID: 181706 Employment Status: Full-Time Employee Status: Regular Work Week: Days Minimum Salary: US Dollar (USD) 123,000 Midpoint Salary: US Dollar (USD) 154,000 Maximum Salary : US Dollar (USD) 185,000 FLSA: exempt and not eligible for overtime pay Fund Type: Hard Work Location: Remote (within Texas only) Pivotal Position: Yes Referral Bonus Available?: Yes Relocation Assistance Available?: Yes #LI-Remote Apply
What MD Anderson Cancer Center employees say
Pay
Benefits
Hours and flexibility
Workplace
Get the full story on Breakroom
About MD Anderson Cancer Center
Sourced by ZipRecruiter
Industry
Health care and social assistance
Company size
10,000+ Employees
Headquarters location
Houston, TX, US
Year founded
1944