1

Security Risk Analyst Jobs in Massachusetts (NOW HIRING)

As the 3rd largest security services provider, our 175k+ team members in 36 countries combine and ... The vSOC fuses intelligence analysis with our operations to generate proactive risk mitigation. The ...

Senior Investment Risk Analyst

Boston, MA · On-site

$103K - $121K/yr

Senior Investment Risk Analyst San Antonio, TX or Boston, MA About Victory Capital: Victory Capital ... Examples include (but not limited to): MBA, CFA, advanced coding designations, or security licenses.

Senior Investment Risk Analyst

Boston, MA · On-site

$103.47 - $121.74/hr

The Investment Risk Analyst will be a vital member of the Centralized Risk Team, responsible for ... Examples include (but not limited to): MBA, CFA, advanced coding designations, or security licenses.

The Manager, Security Governance & Risk leads Emburse's security governance, risk, and compliance ... The ideal candidate pairs credible GRC depth with genuine analytical rigor: someone who can turn ...

The Manager, Security Governance & Risk leads Emburse's security governance, risk, and compliance ... The ideal candidate pairs credible GRC depth with genuine analytical rigor: someone who can turn ...

Risk Operations Analyst The mission of the Global Risk Services (GRS) Virtual Global Security Operations Center (vSOC) is to provide a centralized monitoring center to coordinate our client ...

Risk Intelligence Analyst The mission of the Virtual Global Security Operations Center (vSOC) is to provide a centralized monitoring center to coordinate our client's response to crisis, emergencies ...

next page

Showing results 1-20

Security Risk Analyst information

See Massachusetts salary details

$11

$55

$76

How much do security risk analyst jobs pay per hour?

As of Aug 26, 2026, the average hourly pay for security risk analyst in Massachusetts is $55.05, according to ZipRecruiter salary data. Most workers in this role earn between $44.62 and $65.62 per hour, depending on experience, location, and employer.

What does a security risk analyst do?

A Security Risk Analyst is responsible for identifying, assessing, and mitigating risks to an organization's information systems and data. They analyze security measures, conduct vulnerability assessments, and recommend strategies to protect against threats such as cyberattacks, data breaches, and unauthorized access. Their work helps ensure that a company's digital assets remain safe and compliant with industry regulations. Security Risk Analysts collaborate with IT teams and management to implement effective security policies and respond to incidents as needed.

What are the key skills and qualifications needed to thrive as a security risk analyst?

To thrive as a Security Risk Analyst, you need a strong background in risk assessment, information security principles, and analytical thinking, often supported by a degree in cybersecurity, IT, or a related field. Familiarity with risk management frameworks (such as NIST or ISO 27001), security assessment tools, and certifications like CISSP or CISM is highly valuable. Excellent communication, attention to detail, and problem-solving abilities help you translate complex risks for varied stakeholders and drive mitigation strategies. These skills and qualities are crucial for identifying vulnerabilities, minimizing threats, and maintaining organizational security and compliance.

What are some common challenges security risk analysts face when collaborating with other departments?

Security Risk Analysts often work closely with IT, compliance, and business units to assess and mitigate risks. A common challenge is bridging the gap between technical security requirements and business objectives, as not all stakeholders may have a cybersecurity background. Effective communication and education are key to ensuring that risk recommendations are understood and adopted. Additionally, prioritizing risks with limited resources and balancing security with operational needs can be complex, requiring strong collaboration and negotiation skills.

What is the difference between Security Risk Analyst vs Security Analyst?

AspectSecurity Risk AnalystSecurity Analyst
CertificationsCompTIA Security+, CISSP, CISACompTIA Security+, CISSP, CEH
Work EnvironmentRisk assessment, vulnerability analysis, policy developmentMonitoring security systems, incident response, security audits
Employer & Industry UsageFinancial, healthcare, government sectors focusing on risk mitigationIT departments across various industries focusing on security operations

While both roles focus on cybersecurity, Security Risk Analysts primarily assess and manage potential security threats and vulnerabilities, emphasizing risk mitigation strategies. Security Analysts tend to monitor security systems, respond to incidents, and ensure ongoing security measures. Both roles often require similar certifications and work environments but differ in their core responsibilities within cybersecurity teams.

What is a security risk analyst?

A security risk analyst is a professional who identifies, assesses, and mitigates security threats to an organization’s information systems. They analyze vulnerabilities, develop security strategies, and often use tools like risk assessment frameworks and security software to protect data and infrastructure.

What job categories do people searching Security Risk Analyst jobs in Massachusetts look for?

The top searched job categories for Security Risk Analyst jobs in Massachusetts are:

Infographic showing various Security Risk Analyst job openings in Massachusetts as of August 2026, with employment types broken down into 82% Full Time, 13% Part Time, 1% Temporary, 3% Contract, and 1% Nights. Highlights an 92% Physical, 3% Hybrid, and 5% Remote job distribution, with an average salary of $114,507 per year, or $55.1 per hour.

Information Security Risk and Compliance Analyst

CarGurus

Boston, MA • On-site

Full-time

Posted 22 days ago


Job description

Role overview

The information security risk and compliance analyst supports the organization's governance, risk, and compliance program by managing security risk, ensuring regulatory compliance and partnering across the business to strengthen the company's security posture. This role is responsible for third party risk management, customer security assurance activities, cyber risk management, SOX IT General Controls and security governance initiatives. The analyst works closely with security, engineering, legal, internal audit, privacy, finance, procurement and business stakeholders to build scalable processes, improve operational maturity and reduce organizational risk. 

What you'll do

  • Third Party Risk Management
  • Customer Security Assurance
  • Cyber Risk Management
  • SOX Compliance
  • Governance and Compliance

What you'll bring

  • Experience with GRC platforms such as Auditboard, SAFE, Loopio or similar tools.
  • Professional certifications such as CISSP, CISA, CRISC, Security+ or CISM.
  • Experience supporting cloud environments.
  • Familiarity with AI governance, automation or security workflow optimization.

Successful candidates will

  • Build trusted partnerships with technical and business teams.
  • Drive scalable governance and risk management processes.
  • Balance business enablement with effective risk management.
  • Improve audit readiness and compliance maturity.
  • Communicate complex security concepts clearly to both technical and non-technical stakeholders.
  • Continuously identify opportunities to improve security governance through process optimization and automation.Â