2

Remote Security Risk Assessment Jobs in Naperville, IL

Strong knowledge of risk management principles and practices. * Strong knowledge of security ... Ability to facilitate and lead project and vendor risk assessments independently and provide ...

Director - Product Security

Chicago, IL ยท On-site +1

$240K - $251K/yr

Houston, TX is the ideal location for this role, but this is open to Remote opportunities for well ... Oversee a rigorous threat modeling program and lead cybersecurity risk assessments for all new and ...

US- Remote - Chicago, IL. Our ideal candidate is near Chicago, IL, where our future HQ will be ... Lead HIPAA compliance initiatives by conducting risk assessments and implementing required security ...

US- Remote - Chicago, IL. Our ideal candidate is near Chicago, IL, where our future HQ will be ... Lead HIPAA compliance initiatives by conducting risk assessments and implementing required security ...

US- Remote - Chicago, IL. Our ideal candidate is near Chicago, IL, where our future HQ will be ... Lead HIPAA compliance initiatives by conducting risk assessments and implementing required security ...

Senior Engineer, Security

Chicago, IL ยท On-site +1

$118K - $161K/yr

Conduct detailed security assessments to identify vulnerabilities and weaknesses in our ... Remote roles are currently only available within the U.S. unless otherwise specified in the ...

next page

Showing results 1-20

Remote Security Risk Assessment information

See Naperville, IL salary details

$10

$50

$69

How much do remote security risk assessment jobs pay per hour?

As of Jun 23, 2026, the average hourly pay for remote security risk assessment in Naperville, IL is $50.33, according to ZipRecruiter salary data. Most workers in this role earn between $40.82 and $60.00 per hour, depending on experience, location, and employer.

What are the key skills and qualifications needed to thrive as a Remote Security Risk Assessor, and why are they important?

To thrive as a Remote Security Risk Assessor, you need expertise in cybersecurity principles, risk analysis, and a relevant degree or certifications such as CISSP, CISM, or CRISC. Familiarity with tools like vulnerability scanners, security information and event management (SIEM) systems, and risk assessment frameworks (e.g., NIST, ISO 27001) is essential. Strong analytical thinking, communication skills, and attention to detail help in accurately identifying and communicating risks to stakeholders. These skills and qualities are vital to ensure organizations can proactively mitigate threats and maintain robust security postures in remote or distributed environments.

What is the difference between Remote Security Risk Assessment vs Cybersecurity Analyst?

AspectRemote Security Risk AssessmentCybersecurity Analyst
CredentialsCertifications like CISSP, CISA, CISMCertifications like CompTIA Security+, CISSP, CEH
Work EnvironmentRemote or on-site, focusing on risk evaluationRemote or on-site, focusing on security monitoring and incident response
Industry UsageUsed in risk management, compliance, and audit contextsUsed in security operations, threat analysis, and incident handling

Remote Security Risk Assessments and Cybersecurity Analysts both require security certifications and often work in similar environments. However, risk assessors focus on evaluating vulnerabilities and compliance, while analysts handle ongoing security monitoring and incident response. Understanding these differences helps organizations assign the right roles for their security needs.

What is a Remote Security Risk Assessment?

A Remote Security Risk Assessment is a process where security professionals evaluate an organization's security risks, vulnerabilities, and threats without being physically present on-site. This assessment is typically conducted through virtual meetings, digital questionnaires, and remote access to systems and documentation. The goal is to identify potential security gaps and recommend improvements to protect sensitive data and systems from cyber threats. Remote assessments have become increasingly popular due to their flexibility, cost-effectiveness, and ability to serve organizations regardless of location.

What are some common challenges faced by professionals in remote security risk assessment roles?

Professionals in remote security risk assessment often encounter challenges such as limited on-site visibility, reliance on digital communication, and the need to assess complex IT environments from afar. Effective collaboration with on-site staff and stakeholders is essential to gather accurate information and implement recommendations. Additionally, staying up-to-date with evolving cybersecurity threats and maintaining clear documentation are vital for success in this role.
What are popular job titles related to Remote Security Risk Assessment jobs in Naperville, IL? For Remote Security Risk Assessment jobs in Naperville, IL, the most frequently searched job titles are:
What job categories do people searching Remote Security Risk Assessment jobs in Naperville, IL look for? The top searched job categories for Remote Security Risk Assessment jobs in Naperville, IL are:
What cities near Naperville, IL are hiring for Remote Security Risk Assessment jobs? Cities near Naperville, IL with the most Remote Security Risk Assessment job openings:

GRC Specialist II

SCIGON Solutions

Chicago, IL โ€ข On-site

Other

Posted 15 days ago


Job description

Overview:
GRC Specialist II
Skills:
  • Four (4) years of Information Security experience required, with hands-on technical experience preferred.
  • Strong communication skills, including message creation and verbal presentations, with tact and diplomacy.
  • Strong knowledge of Security frameworks and technologies such as ISO 27001, NIST, SOC, SIG.
  • Prior IT Security experience in the legal industry is preferred.
  • Bachelor's degree or five (5) years of work experience in IT Security is required.
  • Technical writing experience, especially in instructional content and educational writing.
  • Strong knowledge of risk management principles and practices.
  • Strong knowledge of security administration and role-based security controls.
  • Three or more years of experience managing timelines and being self-directed is preferred.
  • Experience in managing GRC tools (administrative and/or engineering) is preferred.
  • Ability to interview, gather, and understand content from subject-matter experts.
  • Maintain accurate records and manage client security and risk requests.
  • Ability to act as the primary Security Subject Matter Expert (SME).
  • Ability to facilitate and lead project and vendor risk assessments independently and provide guidance on secure design and operation.
  • Ability to complete and assist in client security questionnaires and security assessments regarding the firm's security program and controls.
  • Demonstrated ability to create and maintain security policy, standard, guideline, and procedure documents.
  • Demonstrated ability to communicate technical topics effectively to varied audiences, including IT Subject Matter Experts, senior management, and non-technical users.
  • Strong organizational and problem-solving skills.
  • Strong project and time management skills.
  • Strong reading comprehension skills.
  • Strong analytical ability with excellent written and verbal communication skills.
  • Ability to work independently and as a team member.
  • Broad awareness of and exposure to diverse security tools and their capabilities, including commercial and open-source options.
  • Broad experience and exposure to cloud-hosted services, applications, infrastructure, including architecture, log management, monitoring, and security configuration requirements.
  • SharePoint administration is preferred for team intranet site management.
  • Provide back-end support, report creation, and application updates for GRC platforms.
  • Strong PC skills with Microsoft (Word, Excel, PowerPoint), with the ability to perform data analytics and generate succinct reports.
  • Knowledge of host and network-based anti-malware technologies.
  • Knowledge of authentication technologies and interactions between diverse authentication platforms, both on-site and remote.
  • Knowledge of client and server firewall technologies and capabilities.
  • Knowledge of security event management (SIEM), event correlation, and analysis technologies.
  • Knowledge of data encryption technologies.
  • Strong knowledge of Intrusion Detection and Intrusion Prevention technical capabilities.
  • Knowledge of web filtering and email SPAM prevention techniques.
  • Knowledge of vulnerability assessment and forensic investigation tools.
  • Knowledge of mobile device security and Mobile Device Management solutions.
  • Knowledge of Privileged Access Management technologies.
  • Certified Information Systems Security Professional (CISSP), Certified Information Security Auditor (CISA), Certified Information Security Manager (CISM), or other relevant training and certifications are preferred.
Responsibilities:
  • Lead process improvements, enhance control maturity, and communicate risk across assigned GRC service activities, incorporating ISO 27001 principles for continuous improvement.
  • Third-party Vendor Management: Respond to security assessments, questionnaires, and audits from clients and third-party business partners promptly. Document and perform assessments as needed and review contracts for security requirements.
  • Policy Management: Write technical policies, standards, and communications. Lead the creation and maintenance of security policies, standards, processes, guidelines, and support documentation.
  • Compliance Management: Lead and support processes to ensure IT systems meet cybersecurity and risk requirements. Conduct evaluations of IT programs or components for compliance with published standards, manage exceptions, and process requests for exceptions to security controls.
  • Assessment Management: Ensure appropriate treatment of risk, compliance, and assurance from both internal and external perspectives.
  • Advisory Services: Serve as a subject matter expert for Information Security, consulting with technical and non-technical management and staff.
  • Security Awareness Management: Ensure security awareness training is aligned, defined, and executed. Evaluate cyber training/education courses and methods based on instructional needs.
  • Administer the GRC technology platforms.

Skills:
NIST 800-53,ISO 27001