1

Security Risk Analyst Jobs in California (NOW HIRING)

As our new Third Party Risk Analyst , you will play a critical role in protecting Anaplan by ... Directly contribute to the security and resilience of Anaplan by developing and implementing a ...

As our new Third Party Risk Analyst , you will play a critical role in protecting Anaplan by ... Directly contribute to the security and resilience of Anaplan by developing and implementing a ...

Improve decision-making using security insights, data analytics, and modeling to validate the organization's risk landscape. Manage Adobe's Security Management framework, integrate industry-leading ...

... Security, Platform Infrastructure Engineering, and more - provide support and guidance at the ... The Role We're seeking a Senior Credit Risk Analyst to join our Enterprise Risk Management team.

Improve decision-making using security insights, data analytics, and modeling to validate the organization's risk landscape. Manage Adobe's Security Management framework, integrate industry-leading ...

Third Party Risk Analyst

San Francisco, CA · On-site

$97K - $132K/yr

As our new Third Party Risk Analyst , you will play a critical role in protecting Anaplan by ... Directly contribute to the security and resilience of Anaplan by developing and implementing a ...

Information Security Technical Analyst (SGRC) Location: Remote (West Coast - PST) Duration: 12 ... This individual will help reduce risk exposure by assessing vulnerabilities, guiding remediation ...

Information Security Technical Analyst (SGRC) Location: Remote (West Coast - PST) Duration: 12 ... This individual will help reduce risk exposure by assessing vulnerabilities, guiding remediation ...

next page

Showing results 1-20

Security Risk Analyst information

See California salary details

$10

$49

$69

How much do security risk analyst jobs pay per hour?

As of Jun 7, 2026, the average hourly pay for security risk analyst in California is $49.75, according to ZipRecruiter salary data. Most workers in this role earn between $40.34 and $59.33 per hour, depending on experience, location, and employer.

What does a Security Risk Analyst do?

A Security Risk Analyst is responsible for identifying, assessing, and mitigating risks to an organization's information systems and data. They analyze security measures, conduct vulnerability assessments, and recommend strategies to protect against threats such as cyberattacks, data breaches, and unauthorized access. Their work helps ensure that a company's digital assets remain safe and compliant with industry regulations. Security Risk Analysts collaborate with IT teams and management to implement effective security policies and respond to incidents as needed.

What are the key skills and qualifications needed to thrive as a Security Risk Analyst, and why are they important?

To thrive as a Security Risk Analyst, you need a strong background in risk assessment, information security principles, and analytical thinking, often supported by a degree in cybersecurity, IT, or a related field. Familiarity with risk management frameworks (such as NIST or ISO 27001), security assessment tools, and certifications like CISSP or CISM is highly valuable. Excellent communication, attention to detail, and problem-solving abilities help you translate complex risks for varied stakeholders and drive mitigation strategies. These skills and qualities are crucial for identifying vulnerabilities, minimizing threats, and maintaining organizational security and compliance.

What are some common challenges Security Risk Analysts face when collaborating with other departments?

Security Risk Analysts often work closely with IT, compliance, and business units to assess and mitigate risks. A common challenge is bridging the gap between technical security requirements and business objectives, as not all stakeholders may have a cybersecurity background. Effective communication and education are key to ensuring that risk recommendations are understood and adopted. Additionally, prioritizing risks with limited resources and balancing security with operational needs can be complex, requiring strong collaboration and negotiation skills.

What is the difference between Security Risk Analyst vs Security Analyst?

AspectSecurity Risk AnalystSecurity Analyst
CertificationsCompTIA Security+, CISSP, CISACompTIA Security+, CISSP, CEH
Work EnvironmentRisk assessment, vulnerability analysis, policy developmentMonitoring security systems, incident response, security audits
Employer & Industry UsageFinancial, healthcare, government sectors focusing on risk mitigationIT departments across various industries focusing on security operations

While both roles focus on cybersecurity, Security Risk Analysts primarily assess and manage potential security threats and vulnerabilities, emphasizing risk mitigation strategies. Security Analysts tend to monitor security systems, respond to incidents, and ensure ongoing security measures. Both roles often require similar certifications and work environments but differ in their core responsibilities within cybersecurity teams.

What job categories do people searching Security Risk Analyst jobs in California look for? The top searched job categories for Security Risk Analyst jobs in California are:
Third Party Risk Analyst

Third Party Risk Analyst

Anaplan

San Francisco, CA

Other

Posted 13 days ago


Job description

As our new Third Party Risk Analyst, you will play a critical role in protecting Anaplan by managing the risks associated with our third-party suppliers and reporting to our legal team. You will be responsible for the full lifecycle of third-party risk management, including identifying, assessing, mitigating, and monitoring risks to ensure our programs and business operations remain secure and resilient. This role requires a blend of analytical rigor, strong communication skills, and the ability to collaborate across various teams.

Your Impact

  • Strengthen Resilience: Directly contribute to the security and resilience of Anaplan by developing and implementing a robust third-party risk management framework.
  • Drive Compliance: Ensure that all third-party relationships adhere to company policies and are compliant with regulatory guidelines and industry best practices.
  • Enable the Business: Partner with business units to support risk-aware decision-making, enabling them to work effectively with suppliers while safeguarding the company.
  • Enhance Visibility: Create and manage reporting that provides leadership with clear insights into third-party risk posture, trends, and key performance indicators (KPIs).

Risk Assessment & Due Diligence

  • Conduct comprehensive risk assessments of new and existing vendors, focusing on financial health, operational resilience, corporate, human capital, anti-corruption, ESG, and regulatory compliance.
  • Perform thorough due diligence reviews, including the evaluation of risk questionnaires, documentation reviews, and standard supplier investigations.
  • Ensure all new third-party due diligence and supporting documents are properly captured in the appropriate systems.

Monitoring, Reporting & Remediation

  • Continuously monitor supplier performance, financial health, geopolitical exposure, and regulatory changes.
  • Develop and manage corrective action plans and control documentation for identified risks; monitor and evaluate vendor remediation efforts to ensure timely resolution.
  • Prepare and deliver risk reports and dashboards for leadership and governance committees, tracking risk ratings, policy exceptions, and other KPIs.

Collaboration & Process Improvement

  • Collaborate with business units, legal, information security, and other risk subject matter experts to address and mitigate identified risks.
  • Support internal, customer, and third-party audits related to supplier risk and compliance.
  • Create and implement systemic solutions for supplier tracking and compliance, and stay current on industry trends and emerging risks impacting third-party relationships.

Your Qualifications

  • A Bachelor's Degree in Business, Finance, or a related field.
  • A minimum of two years of experience in Third-Party Risk Management, Information Security, Compliance, or a related role.
  • Strong analytical skills with the ability to identify and resolve complex issues.
  • Excellent communication and interpersonal skills, with the ability to work effectively with cross-functional teams.
  • A professional and ethical manner with a commitment to accuracy and thoroughness.

Anaplan logo

About Anaplan

Sourced by ZipRecruiter

Here at Anaplan, we have reinvented how companies see, plan, and run their businesses. Our platform allows our customers to uncover new insights, connect their strategy to their plans, and work in ways they had not previously thought possible. We're growing fast, constantly innovating, and couldn't be prouder to help our customers move forward with confidence in a sophisticated and changing world. We are looking for forward-thinking people who put customer experience at the forefront of every decision. Individuals who thrive on challenges and are ready to grasp the opportunity of a lifetime. Because we fundamentally believe every colleague brings outstanding value to our whole. We are a workplace where each person feels seen, heard, and valued, and can contribute their unique talent to our collective effort. We believe that for ourselves and for our customers.

Industry

Technology, communication and media

Company size

1,001 - 5,000 Employees

Headquarters location

San Francisco, CA, US

Year founded

2006