1

Security Risk Analyst Jobs in California (NOW HIRING)

As a Physical Security & Risk Analyst, you will help organizations enhance security, resilience, and mission assurance across critical facilities, infrastructure, and operations. In this role, you ...

New

As a Physical Security & Risk Analyst, you will help organizations enhance security, resilience, and mission assurance across critical facilities, infrastructure, and operations. In this role, you ...

New

As a Physical Security & Risk Analyst, you will help organizations enhance security, resilience, and mission assurance across critical facilities, infrastructure, and operations. In this role, you ...

Security Risk Manager

San Francisco, CA · Hybrid

$194K - $220K/yr

Our security team protects Asana's employees, users, and customers by proactively addressing ... analysis. You back up risk ratings with numbers, not just color codes. * Hands-on experience ...

Security Risk Manager

San Francisco, CA · On-site

$194 - $220/hr

Our security team protects Asana's employees, users, and customers by proactively addressing ... statistical risk analysis. You back up risk ratings with numbers, not just color codes.

Security Risk Manager

San Francisco, CA · On-site

$194K - $220K/yr

Our security team protects Asana's employees, users, and customers by proactively addressing ... analysis. You back up risk ratings with numbers, not just color codes. * Hands-on experience ...

Risk Analyst

Sacramento, CA · On-site

$6.0K - $7.5K/mo

The Risk Analyst will provide cross-functional assessments involving a wide range of risk categories, including those of a programmatic, compliance, legal, security, operational, reputation ...

The Compliance Assessor of IT Risk & Compliance Management performs Security Risk Assessments on DIRECTV's 3rd party vendors. An assesment would typically involve the following tasks: Communicating ...

Agentic Risk Analyst

San Francisco, CA · On-site

$288K - $425K/yr

About the Role As an Agentic Risk Analyst, you will shape OpenAI's operating picture for current ... By synthesizing signals from investigations, evaluations, red teaming, security reviews, product ...

Sr. Risk Analyst

Vacaville, CA · On-site

$98K - $121K/yr

... financial security. Profile: * Reviews and analyzes financial transactions for unusual or ... Senior Risk Analyst - Grade15/Exempt/$82,680.00 - $102,128.00 annually * * Reports directly to ...

next page

Showing results 1-20

Security Risk Analyst information

See California salary details

$10

$49

$69

How much do security risk analyst jobs pay per hour?

As of Aug 10, 2026, the average hourly pay for security risk analyst in California is $49.75, according to ZipRecruiter salary data. Most workers in this role earn between $40.34 and $59.33 per hour, depending on experience, location, and employer.

What does a security risk analyst do?

A Security Risk Analyst is responsible for identifying, assessing, and mitigating risks to an organization's information systems and data. They analyze security measures, conduct vulnerability assessments, and recommend strategies to protect against threats such as cyberattacks, data breaches, and unauthorized access. Their work helps ensure that a company's digital assets remain safe and compliant with industry regulations. Security Risk Analysts collaborate with IT teams and management to implement effective security policies and respond to incidents as needed.

What are the key skills and qualifications needed to thrive as a security risk analyst?

To thrive as a Security Risk Analyst, you need a strong background in risk assessment, information security principles, and analytical thinking, often supported by a degree in cybersecurity, IT, or a related field. Familiarity with risk management frameworks (such as NIST or ISO 27001), security assessment tools, and certifications like CISSP or CISM is highly valuable. Excellent communication, attention to detail, and problem-solving abilities help you translate complex risks for varied stakeholders and drive mitigation strategies. These skills and qualities are crucial for identifying vulnerabilities, minimizing threats, and maintaining organizational security and compliance.

What are some common challenges security risk analysts face when collaborating with other departments?

Security Risk Analysts often work closely with IT, compliance, and business units to assess and mitigate risks. A common challenge is bridging the gap between technical security requirements and business objectives, as not all stakeholders may have a cybersecurity background. Effective communication and education are key to ensuring that risk recommendations are understood and adopted. Additionally, prioritizing risks with limited resources and balancing security with operational needs can be complex, requiring strong collaboration and negotiation skills.

What is the difference between Security Risk Analyst vs Security Analyst?

AspectSecurity Risk AnalystSecurity Analyst
CertificationsCompTIA Security+, CISSP, CISACompTIA Security+, CISSP, CEH
Work EnvironmentRisk assessment, vulnerability analysis, policy developmentMonitoring security systems, incident response, security audits
Employer & Industry UsageFinancial, healthcare, government sectors focusing on risk mitigationIT departments across various industries focusing on security operations

While both roles focus on cybersecurity, Security Risk Analysts primarily assess and manage potential security threats and vulnerabilities, emphasizing risk mitigation strategies. Security Analysts tend to monitor security systems, respond to incidents, and ensure ongoing security measures. Both roles often require similar certifications and work environments but differ in their core responsibilities within cybersecurity teams.

What is a security risk analyst?

A security risk analyst is a professional who identifies, assesses, and mitigates security threats to an organization’s information systems. They analyze vulnerabilities, develop security strategies, and often use tools like risk assessment frameworks and security software to protect data and infrastructure.
What job categories do people searching Security Risk Analyst jobs in California look for? The top searched job categories for Security Risk Analyst jobs in California are:
Infographic showing various Security Risk Analyst job openings in California as of August 2026, with employment types broken down into 100% Full Time. Highlights an 100% In-person job distribution, with an average salary of $103,475 per year, or $49.7 per hour.

Physical Security & Risk Analyst

GFT.

Roseville, CA • On-site

$105K - $125K/yr

Full-time

Medical, Dental, Vision, Life, Retirement, PTO

Posted 3 days ago

New


Job description

GFT is seeking a Physical Security & Risk Analyst to join our Security and Safety Team in Roseville, CA! This role follows a hybrid work model, requiring regular attendance at our Mechanicsburg, PA office.

What you'll be challenged to do:As a Physical Security & Risk Analyst, you will help organizations enhance security, resilience, and mission assurance across critical facilities, infrastructure, and operations. In this role, you will combine security expertise, risk analysis, systems thinking, and project leadership to assess vulnerabilities, integrate protective solutions, and develop strategies that ensure mission continuity in an evolving threat environment.This position is ideal for professionals who enjoy solving complex challenges at the intersection of physical security, operational resilience, emergency preparedness, and integrated risk management.

In this capacity, the successful candidate will be responsible for the following: 

  • Conduct physical security assessments, threat and vulnerability analyses, and risk evaluations for facilities, infrastructure, and critical operations.
  • Support mission assurance initiatives by identifying risks that could impact organizational objectives, operational continuity, and critical functions.
  • Evaluate and integrate physical security, safety, operational, cyber-physical, and emergency preparedness considerations into comprehensive risk management strategies.
  • Perform site visits, facility walkdowns, stakeholder interviews, and field assessments to validate conditions and identify vulnerabilities.
  • Develop practical, risk-informed recommendations that improve protection, resilience, and operational effectiveness.
  • Support systems integration efforts, ensuring that security technologies, operational processes, personnel, and protective measures work together effectively to achieve mission objectives.
  • Research emerging threats and industry best practices to strengthen infrastructure protection and resilience programs.
  • Prepare technical reports, risk assessments, presentations, and client-facing deliverables.
  • Collaborate with multidisciplinary teams, clients, and stakeholders to develop integrated security and resilience solutions.
  • Assist with or lead projects, including scope development, scheduling, budgeting, resource coordination, and delivery management.
What you will bring to our firm: 
  • Bachelor's degree in Security Management, Risk Management, Emergency Management, Criminal Justice, Engineering, Homeland Security, Public Administration, Infrastructure Protection, or a related field.
  • 10+ years of experience in physical security, infrastructure protection, mission assurance, emergency management, resilience planning, risk assessment, cyber-physical security, or related disciplines.
  • Strong understanding of physical security principles, threat and vulnerability assessment methodologies, risk management frameworks, and continuity planning.
  • Experience supporting mission assurance, business continuity, operational resilience, or critical infrastructure protection programs.
  • Knowledge of integrated security systems and the ability to evaluate how people, processes, technology, and facilities work together to mitigate risk and support organizational objectives.
  • Experience conducting facility assessments, field observations, stakeholder engagement, and developing actionable risk-based recommendations.
  • Excellent written and verbal communication skills, including technical writing, presentations, and client engagement.
  • Strong organizational, analytical, and project management capabilities.
  • Proficiency with Microsoft Office, including Word, Excel, PowerPoint, and Outlook.
 What we prefer you bring: 
  • Professional certifications such as PSP, CPP, APP, CPTED, CEM, PMP, PE, or other relevant security, emergency management, resilience, or project management credentials.
  • Experience supporting critical infrastructure, utilities, government, defense, transportation, or other mission-critical environments.
  • Experience integrating security, safety, emergency management, and operational risk management programs.
  • Experience leading multidisciplinary teams and managing complex projects.
 Compensation:The salary range for this role is $105,000 - $125,000. Salary is dependent upon experience and geographic location. Featured Benefits:  Hybrid (in-person and remote) work environment. Comprehensive benefits package including wellness programs, parental leave, and pet insurance, in addition to medical, dental, vision, disability, and life insurance. Tax-deferred 401(k) savings plan. Competitive paid-time-off (PTO) accrual. Tuition reimbursement for continued education. Commitment to professional development, access to internal and external training programs, and support of active participation in professional organizations Incentive compensation for eligible positions.

At GFT, a privately held AEC firm, we innovate where transportation, water, power, and buildings converge. We call this the Infrastructure of Life. We measure our success by the strength of our relationships - that's why we're the employer of choice for 5,000+ of the industry's brightest engineers, planners, architects, inspectors, designers, and more.

Our clients choose us for our expertise and prefer us for our nimble approach, creativity, and personal touch. Backed by over a century's experience, together we're building a lasting legacy for future generations: stronger communities, a healthier planet, and better lives.GFT: Ingenuity That Shapes Lives is an Equal Opportunity Employer. All qualified candidates will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, veterans' status or other characteristics protected by law.

Unsolicited resumes from third party agencies will be considered the property GFT.

GFT does require the successful completion of a criminal background check for all advertised positions. 

Location: Roseville, CACore Business Hours: 8:00 AM - 5:00 PMEmployment Status: Full-Time

#LI-KV1

#LI-hybrid

Applicants in the County of Los Angeles- Qualified applications with arrest or conviction records will be considered for employment in accordance with the Los Angeles County Fair Chance Ordinance for Employers and the California Fair Chance Act.

Applicants in the City of San Francisco- Pursuant to the San Francisco Fair Chance Ordinance, we will consider for employment qualified applicants with arrest and conviction records.

Applicants in the State of California-Qualified applications with arrest or conviction records will be considered for employment in accordance with the California Fair Chance Act.

Employment Type: FULL_TIME