THE OPPORTUNITY The VP, Lead Security Risk Analyst leads enterprise-wide Information Security risk engagement across corporate initiatives, embedding security-by-design principles into business and ...
THE OPPORTUNITY The VP, Lead Security Risk Analyst leads enterprise-wide Information Security risk engagement across corporate initiatives, embedding security-by-design principles into business and ...
Information Security Risk Analyst
San Francisco, CA · On-site
$153K/yr
We are seeking an experienced Information Security Risk Analyst to help identify, assess, and reduce cybersecurity risk across cloud and on-prem environments. In this role, you will partner closely ...
Information Security Risk Analyst
San Francisco, CA · On-site
$153K/yr
We are seeking an experienced Information Security Risk Analyst to help identify, assess, and reduce cybersecurity risk across cloud and on-prem environments. In this role, you will partner closely ...
THE OPPORTUNITY The VP, Lead Security Risk Analyst leads enterprise-wide Information Security risk engagement across corporate initiatives, embedding security-by-design principles into business and ...
THE OPPORTUNITY The VP, Lead Security Risk Analyst leads enterprise-wide Information Security risk engagement across corporate initiatives, embedding security-by-design principles into business and ...
THE OPPORTUNITY The VP, Lead Security Risk Analyst leads enterprise-wide Information Security risk engagement across corporate initiatives, embedding security-by-design principles into business and ...
THE OPPORTUNITY The VP, Lead Security Risk Analyst leads enterprise-wide Information Security risk engagement across corporate initiatives, embedding security-by-design principles into business and ...
EITS Security Risk Analyst B (Engagement)--Remote Job
San Francisco, CA · On-site
$60 - $70/hr
Job43 - EITS Security Risk Analyst B (Engagement) Location: 100% Remote Max Submissions: 5 Proposed Start Date: ASAP Proposed End Date: 06/30/2026 Role Overview * Serve as a liaison between the CISO ...
Quick apply
EITS Security Risk Analyst B (Engagement)--Remote Job
San Francisco, CA · On-site
$60 - $70/hr
Job43 - EITS Security Risk Analyst B (Engagement) Location: 100% Remote Max Submissions: 5 Proposed Start Date: ASAP Proposed End Date: 06/30/2026 Role Overview * Serve as a liaison between the CISO ...
GRC Risk Analyst III
Los Angeles, CA · On-site
Position Summary SHEIN Global Security & Risk Management is a global security organization that ... The GRC Risk Analyst, a thought leader residing within our security organization, is responsible ...
GRC Risk Analyst III
Los Angeles, CA · On-site
Position Summary SHEIN Global Security & Risk Management is a global security organization that ... The GRC Risk Analyst, a thought leader residing within our security organization, is responsible ...
Position Summary SHEIN Global Security & Risk Management is a global security organization that ... The GRC Risk Analyst, a thought leader residing within our security organization, is responsible ...
Position Summary SHEIN Global Security & Risk Management is a global security organization that ... The GRC Risk Analyst, a thought leader residing within our security organization, is responsible ...
Security Risk Manager
San Francisco, CA · Hybrid
$194K - $220K/yr
Our security team protects Asana's employees, users, and customers by proactively addressing ... analysis. You back up risk ratings with numbers, not just color codes. * Hands-on experience ...
Security Risk Manager
San Francisco, CA · Hybrid
$194K - $220K/yr
Our security team protects Asana's employees, users, and customers by proactively addressing ... analysis. You back up risk ratings with numbers, not just color codes. * Hands-on experience ...
Security Risk Manager
San Francisco, CA · On-site
$194K - $220K/yr
Our security team protects Asana's employees, users, and customers by proactively addressing ... analysis. You back up risk ratings with numbers, not just color codes. * Hands-on experience ...
Security Risk Manager
San Francisco, CA · On-site
$194K - $220K/yr
Our security team protects Asana's employees, users, and customers by proactively addressing ... analysis. You back up risk ratings with numbers, not just color codes. * Hands-on experience ...
Support GRC capabilities, such as enterprise security risk management, compliance and audit ... Apply LLMs/NLP to analyze policies, audit findings, and regulatory requirements. * Extract insights ...
Quick apply
Support GRC capabilities, such as enterprise security risk management, compliance and audit ... Apply LLMs/NLP to analyze policies, audit findings, and regulatory requirements. * Extract insights ...
Insider Risk Analyst
Hawthorne, CA · On-site
They are seeking an Insider Risk Analyst to protect their advanced technologies by conducting ... OR 4+ years professional experience in internal investigations, information security ...
Insider Risk Analyst
Hawthorne, CA · On-site
They are seeking an Insider Risk Analyst to protect their advanced technologies by conducting ... OR 4+ years professional experience in internal investigations, information security ...
Familiarity with vulnerability management, threat intelligence analysis, and security architecture design in support of risk and compliance objectives. * Understanding of encryption technologies and ...
Quick apply
Familiarity with vulnerability management, threat intelligence analysis, and security architecture design in support of risk and compliance objectives. * Understanding of encryption technologies and ...
IT Risk Analyst
San Diego, CA · On-site
$79K - $102K/yr
Position Summary The position of IT Risk Analyst is responsible for participating in IT compliance ... Information security and/or risk certification(s) desirable. * Track record of producing quality ...
Quick apply
IT Risk Analyst
San Diego, CA · On-site
$79K - $102K/yr
Position Summary The position of IT Risk Analyst is responsible for participating in IT compliance ... Information security and/or risk certification(s) desirable. * Track record of producing quality ...
This is a UC San Diego Internal Recruitment open to UCSD and UCSD Health System Staff Only DESCRIPTION The Senior IT Security Risk and Compliance Analyst performs advanced information security risk ...
New
This is a UC San Diego Internal Recruitment open to UCSD and UCSD Health System Staff Only DESCRIPTION The Senior IT Security Risk and Compliance Analyst performs advanced information security risk ...
New
This is a UC San Diego Internal Recruitment open to UCSD and UCSD Health System Staff Only DESCRIPTION The Senior IT Security Risk and Compliance Analyst performs advanced information security risk ...
New
This is a UC San Diego Internal Recruitment open to UCSD and UCSD Health System Staff Only DESCRIPTION The Senior IT Security Risk and Compliance Analyst performs advanced information security risk ...
New
Sr. IT Security Risk & Compliance Analyst - Remote - 140476
San Diego, CA · On-site +1
$130K - $170K/yr
Days, 8 hrs/day, Monday-Friday #140476 Sr. IT Security Risk & Compliance Analyst - Remote Filing Deadline: Thu 7/23/2026 Apply Now UC San Diego values and welcomes people from all backgrounds. If you ...
New
Sr. IT Security Risk & Compliance Analyst - Remote - 140476
San Diego, CA · On-site +1
$130K - $170K/yr
Days, 8 hrs/day, Monday-Friday #140476 Sr. IT Security Risk & Compliance Analyst - Remote Filing Deadline: Thu 7/23/2026 Apply Now UC San Diego values and welcomes people from all backgrounds. If you ...
New
The Compliance Assessor of IT Risk & Compliance Management performs Security Risk Assessments on DIRECTV's 3rd party vendors. An assesment would typically involve the following tasks: Communicating ...
The Compliance Assessor of IT Risk & Compliance Management performs Security Risk Assessments on DIRECTV's 3rd party vendors. An assesment would typically involve the following tasks: Communicating ...
Fraud & Risk Data Analyst Fintech & Data Insights *** Direct End Client ***
Mountain View, CA · On-site
Domain expertise in Security, Risk & Fraud in Fintech space (consumer Lending, Fraud & Risk Policy ... Analyze large-scale transactional and behavioral data to detect trends, anomalies, and fraud ...
Fraud & Risk Data Analyst Fintech & Data Insights *** Direct End Client ***
Mountain View, CA · On-site
Domain expertise in Security, Risk & Fraud in Fintech space (consumer Lending, Fraud & Risk Policy ... Analyze large-scale transactional and behavioral data to detect trends, anomalies, and fraud ...
Agentic Risk Analyst
San Francisco, CA · On-site
$288K - $425K/yr
About the Role As an Agentic Risk Analyst, you will shape OpenAI's operating picture for current ... By synthesizing signals from investigations, evaluations, red teaming, security reviews, product ...
Agentic Risk Analyst
San Francisco, CA · On-site
$288K - $425K/yr
About the Role As an Agentic Risk Analyst, you will shape OpenAI's operating picture for current ... By synthesizing signals from investigations, evaluations, red teaming, security reviews, product ...
Sr. Risk Analyst
Vacaville, CA · On-site
$98K - $121K/yr
... financial security. Profile: * Reviews and analyzes financial transactions for unusual or ... Senior Risk Analyst - Grade15/Exempt/$82,680.00 - $102,128.00 annually * * Reports directly to ...
Sr. Risk Analyst
Vacaville, CA · On-site
$98K - $121K/yr
... financial security. Profile: * Reviews and analyzes financial transactions for unusual or ... Senior Risk Analyst - Grade15/Exempt/$82,680.00 - $102,128.00 annually * * Reports directly to ...
Security Risk Analyst information
See California salary details
$10.20 - $15.55
2% of jobs
$15.55 - $20.90
0% of jobs
$20.90 - $26.25
1% of jobs
$26.25 - $31.60
1% of jobs
$31.60 - $36.94
1% of jobs
$40.96 is the 25th percentile. Wages below this are outliers.
$36.94 - $42.29
26% of jobs
$42.29 - $47.64
11% of jobs
The median wage is $49.55 / hr.
$47.64 - $52.99
22% of jobs
$52.99 - $58.34
9% of jobs
$58.76 is the 75th percentile. Wages above this are outliers.
$58.34 - $63.69
17% of jobs
$63.69 - $69.04
9% of jobs
$10
$49
$69
How much do security risk analyst jobs pay per hour?
Can I make $200,000 a year in cyber security?
What does a Security Risk Analyst do?
What are the key skills and qualifications needed to thrive as a Security Risk Analyst, and why are they important?
What are some common challenges Security Risk Analysts face when collaborating with other departments?
Can you make $500,000 a year in cyber security?
Is SOC an entry-level job?
What is the difference between Security Risk Analyst vs Security Analyst?
| Aspect | Security Risk Analyst | Security Analyst |
|---|---|---|
| Certifications | CompTIA Security+, CISSP, CISA | CompTIA Security+, CISSP, CEH |
| Work Environment | Risk assessment, vulnerability analysis, policy development | Monitoring security systems, incident response, security audits |
| Employer & Industry Usage | Financial, healthcare, government sectors focusing on risk mitigation | IT departments across various industries focusing on security operations |
While both roles focus on cybersecurity, Security Risk Analysts primarily assess and manage potential security threats and vulnerabilities, emphasizing risk mitigation strategies. Security Analysts tend to monitor security systems, respond to incidents, and ensure ongoing security measures. Both roles often require similar certifications and work environments but differ in their core responsibilities within cybersecurity teams.
What is a security risk analyst?

Full-time
Medical, Dental, Vision, Life, Retirement, PTO
Re-posted 17 days ago
Banc Of California rating
7.9
Based on 5 frontline employees who took The Breakroom Quiz
68th of 149 rated banks
Job description
Banc of California, Inc. (NYSE: BANC) is a bank holding company with over $34 billion in assets and the parent company of Banc of California. Banc of California is one of the nation's premier relationship-based business banks, providing banking and treasury management services to small, middle market, and venture backed businesses. As the largest independent bank headquartered in California, the bank offers a broad range of loan and deposit products and services through a network of full-service branches and regional offices, as well as through digital and nationwide capabilities. The bank also provides full-service payment processing solutions to its clients and serves the Community Association Management industry nationwide through its technology forward platform, SmartStreet™. Banc of California is committed to supporting its local communities through the Banc of California Charitable Foundation and by partnering with organizations that promote financial literacy, job training, small business support, affordable housing, and more.
At Banc of California, our success is powered by our people and a shared commitment to delivering meaningful results. We foster an environment where entrepreneurial thinking is encouraged, and accountability and operational excellence are expected. Our team members are empowered to take ownership, make informed decisions, and make a meaningful impact as the bank continues to grow and evolve. We are dedicated to supporting your growth and wellbeing through comprehensive benefits, robust development opportunities, and inclusive programs that enable you to perform at your best. Together we win!
THE OPPORTUNITY
The VP, Lead Security Risk Analyst leads enterprise-wide Information Security risk engagement across corporate initiatives, embedding security-by-design principles into business and technology decisions. This role drives the development and execution of the Information Security risk and GRC programs, conducting complex, high-impact risk assessments across enterprise architecture, cloud, AI/ML, and third-party environments. Serving as a senior advisor, the position partners with leadership, architects, and engineering teams to translate regulatory and security requirements into actionable architectural controls and secure design standards. The VP, Lead Security Risk Analyst also drives cross-functional remediation efforts to ensure risks are effectively managed in alignment with the organization's risk appetite. Performs all duties in accordance with the Company's policies and procedures, all U.S. state and federal laws and regulations, wherein the Company operates.
HOW YOU'LL MAKE A DIFFERENCE
- Lead enterprise Information Security engagement across all enterprise-wide corporate projects, championing security by design principles, influencing security decisions without direct authority and driving alignment across multiple business and technology domains.
- Contribute to the development, management, and ongoing improvement of the Information Security risk program, compliance initiatives, and overall security risk posture.
- Partner with senior management to design and implement maturity strategies and operations into the Information Security GRC team.
- Maintain Information Security risk register, report monthly to appropriately address key risk areas.
- Support policies and procedures maintenance aligned with in-scope security frameworks, regulations, and internal standards to manage identified risk effectively.
- Conduct regular risk assessments to identify potential threats and vulnerabilities across the organization analyzing their impact and likelihood of occurrence.
- Generate reports on risk assessments, compliance status, and control effectiveness to communicate findings to stakeholders at various levels within the organization.
- Lead and deliver enterprise and domain risk assessments (at least annually, or event driven) using consistent methodology that complies with regulatory requirements
- Conduct and lead the bank's most complex and high-impact risk assessments, including those involving enterprise architecture, modernization initiatives, AI/ML platforms, cloud deployments, or third-party integrations.
- Drive cross-functional remediation initiatives, ensuring timely resolution of identified issues and alignment with enterprise risk appetite.
- Act as the primary GRC representative and senior advisor in enterprise security architecture projects, ensuring that security, compliance, and risk considerations are embedded in design decisions for cloud, infrastructure, and applications.
- Lead architecture-focused risk assessments for new technologies, major system integrations, cloud migrations, and high-impact projects to identify systemic risks and required compensating controls.
- Translate security policies, standards, regulatory requirements and control frameworks into detailed architectural requirements, control patterns, and secure design standards consumable by engineering and application teams.
- Advise solution architects, engineers, and product teams on secure design patterns, identity and access architecture, encryption frameworks, data protection requirements, and logging/monitoring standards.
- Evaluate the security implications of modernization initiatives, and system migrations ensuring risks are documented and mitigated through appropriate design.
- Define architecture-aligned security requirements and control baselines that engineering and architecture teams use to build secure-by-design systems.
- Partner with detection engineering and cloud teams to ensure logging, auditability, and monitoring capabilities are embedded in the technology stack.
- Lead complex and technical vendor security reviews, including onboarding assessments, and high-risk assessments involving cloud platforms, data integrations, and critical infrastructure providers.
- Follow all established policies and procedures.
- Perform other duties and projects as assigned.
WHAT YOU'LL BRING
- Bachelor's degree in information systems, engineering, business, risk management, or related field; and related certifications (e.g., CISSP ISSAP, SABSA, CCSP, GCAD, CRISC, CISSP).
- 7-9+ years of experience in GRC, cybersecurity, risk management or related fields, and most importantly cloud/security architecture, particularly in highly regulated industries such as financial, or professional services.
- Demonstrated history of influencing architectural decisions and driving enterprise-level security program improvements.
- High technical knowledge across Cybersecurity domains, including Security Operations, Incident
- Response, Security Engineering, Cloud Security, Artificial Intelligence (AI), Data Security, Configuration
- Management, Log Generation, Security Risk Assessments/testing methodologies, Secure Software Development Lifecycle, evaluating the adequacy and efficiency of internal controls.
- Advanced knowledge of cloud architecture, application security, identity governance, encryption, secure design patterns, network architecture, and telemetry design.
- Experience translating requirements into architectural controls and technical standards.
- Expert knowledge of GRC frameworks and regulations (e.g., PCI-DSS, GDPR, CCPA, GLBA, NIST, ISO 27001).
- Strong knowledge in OWASP, CIS and/or other security standards and secure configuration baselines.
- Excellent analytical skills with the ability to assess complex risks and develop effective mitigation security strategies.
- Comfortable solving ambiguous, enterprise-scale problems.
- Proven ability to lead multi-team initiatives and drive results in a fast-paced environment.
- Excellent communication and interpersonal skills, with the ability to influence senior engineers, architects, and business leaders
- High School diploma or equivalent required
HOW WE'LL SUPPORT YOU
- Financial Security: You will be eligible to participate in the company's 401k plan which includes a company match and immediate vesting.
- Health & Well-Being: We offer comprehensive insurance options including medical, dental, vision, AD&D, supplemental life, long-term disability, pre-tax Health Savings Account with employer contributions, and pre-tax Flexible Spending Account (FSA).
- Building & Supporting Your Family: Banc of California partners with providers that offer adoption, surrogacy, and fertility assistance as well as paid parental leave and family support solutions including care options for your family.
- Paid Time Away: Eligible team members receive paid vacation days, holidays, and volunteer time off.
- Career Growth Opportunities: To support career growth of our team members, we offer tuition reimbursement, an annual mentorship program, leadership development resources, access to LinkedIn Learning, and more.
SALARY RANGE
The base salary ultimately offered is determined through a review of education, industry experience, training, knowledge, skills, abilities of the applicant in alignment with market data and other factors.
Banc of California is an equal opportunity employer committed to creating a diverse workforce. All qualified applicants will receive consideration for employment without regard to their actual or perceived race (including traits associated with race, such as hair texture, hair type or protective hairstyles), religion or religious creed (including religious dress and grooming practices), color, sex (including pregnancy, childbirth, breastfeeding and related medical conditions), sexual orientation, gender, gender identity, gender expression, gender transitioning, citizenship status, national origin, ancestry, age, marital status, military or veteran status, medical condition, genetic information, or disability (mental or physical), requests for accommodation and any additional protected categories set forth in applicable federal, state or local laws. If you require reasonable accommodation as part of the application process, please contact Talent Acquisition.
Equal Opportunity Employer
This employer is required to notify all applicants of their rights pursuant to federal employment laws.
For further information, please review the Know Your Rights notice from the Department of Labor.
What Banc Of California employees say
Pay
Benefits
Hours and flexibility
Workplace
Get the full story on Breakroom
About Banc of California
Sourced by ZipRecruiter
Industry
Commercial banking
Company size
501 - 1,000 Employees
Headquarters location
Santa Ana, CA, US
Year founded
1941