1

Security Risk Analyst Jobs in Michigan (NOW HIRING)

System Analyst

Lansing, MI · On-site

$50 - $63/hr

Analyze, document, and validate security processes, system requirements, and interagency ... Conduct security risk assessments and recommend mitigation strategies. * Assist with development ...

Conduct security risk assessments and recommend mitigation strategies. * Assist with development ... Analyze scan results, prioritize risks, and support mitigation planning. Minimum Qualifications

Conduct security risk assessments and recommend mitigation strategies. * Assist with development ... Analyze scan results, prioritize risks, and support mitigation planning. Minimum Qualifications

Conduct security risk assessments and recommend mitigation strategies. * Assist with development ... Analyze scan results, prioritize risks, and support mitigation planning. Minimum Qualifications

This position provides technical information security risk management and compliance services and ... analyst). Level III (in addition to Level II Accountabilities) Performs as the Subject Matter ...

New

Primary responsibilities include applications security, risk assessment, validation of security pen ... analyses on new and changed application development initiatives towards design, review, and ...

Support cybersecurity compliance activities, risk assessments, and related security requirements ... and analytical skills Preferred SkillsExperience with Java, JavaScript, Python, Spring Security ...

Security Analyst

Lansing, MI · On-site

$45 - $55/hr

Security Analyst Public Sector Client Location: Lansing, MI - Hybrid on site Monday and Tuesday ... Experience working with security control assessments, evidence collection, risk assessments, and ...

Showing results 41-60

Security Risk Analyst information

See Michigan salary details

$9

$43

$60

How much do security risk analyst jobs pay per hour?

As of Sep 12, 2026, the average hourly pay for security risk analyst in Michigan is $43.94, according to ZipRecruiter salary data. Most workers in this role earn between $35.62 and $52.36 per hour, depending on experience, location, and employer.

What does a security risk analyst do?

A Security Risk Analyst is responsible for identifying, assessing, and mitigating risks to an organization's information systems and data. They analyze security measures, conduct vulnerability assessments, and recommend strategies to protect against threats such as cyberattacks, data breaches, and unauthorized access. Their work helps ensure that a company's digital assets remain safe and compliant with industry regulations. Security Risk Analysts collaborate with IT teams and management to implement effective security policies and respond to incidents as needed.

What are the key skills and qualifications needed to thrive as a security risk analyst?

To thrive as a Security Risk Analyst, you need a strong background in risk assessment, information security principles, and analytical thinking, often supported by a degree in cybersecurity, IT, or a related field. Familiarity with risk management frameworks (such as NIST or ISO 27001), security assessment tools, and certifications like CISSP or CISM is highly valuable. Excellent communication, attention to detail, and problem-solving abilities help you translate complex risks for varied stakeholders and drive mitigation strategies. These skills and qualities are crucial for identifying vulnerabilities, minimizing threats, and maintaining organizational security and compliance.

What are some common challenges security risk analysts face when collaborating with other departments?

Security Risk Analysts often work closely with IT, compliance, and business units to assess and mitigate risks. A common challenge is bridging the gap between technical security requirements and business objectives, as not all stakeholders may have a cybersecurity background. Effective communication and education are key to ensuring that risk recommendations are understood and adopted. Additionally, prioritizing risks with limited resources and balancing security with operational needs can be complex, requiring strong collaboration and negotiation skills.

What is the difference between Security Risk Analyst vs Security Analyst?

AspectSecurity Risk AnalystSecurity Analyst
CertificationsCompTIA Security+, CISSP, CISACompTIA Security+, CISSP, CEH
Work EnvironmentRisk assessment, vulnerability analysis, policy developmentMonitoring security systems, incident response, security audits
Employer & Industry UsageFinancial, healthcare, government sectors focusing on risk mitigationIT departments across various industries focusing on security operations

While both roles focus on cybersecurity, Security Risk Analysts primarily assess and manage potential security threats and vulnerabilities, emphasizing risk mitigation strategies. Security Analysts tend to monitor security systems, respond to incidents, and ensure ongoing security measures. Both roles often require similar certifications and work environments but differ in their core responsibilities within cybersecurity teams.

What is a security risk analyst?

A security risk analyst is a professional who identifies, assesses, and mitigates security threats to an organization’s information systems. They analyze vulnerabilities, develop security strategies, and often use tools like risk assessment frameworks and security software to protect data and infrastructure.

What job categories do people searching Security Risk Analyst jobs in Michigan look for?

The top searched job categories for Security Risk Analyst jobs in Michigan are:

Infographic showing various Security Risk Analyst job openings in Michigan as of September 2026, with employment types broken down into 83% Full Time, 13% Part Time, 3% Contract, and 1% Nights. Highlights an 89% Physical, 3% Hybrid, and 8% Remote job distribution, with an average salary of $91,385 per year, or $43.9 per hour.

System Analyst

Lansing, MI • On-site

$50 - $63/hr

Full-time

Medical, Dental, Vision, Retirement

Posted 28 days ago


Job description

The Security & Compliance Analyst supports the integrity, security, and compliance of systems and processes used in administering retirement benefits for public sector employees. This role ensures that technology solutions, operational practices, and policy implementations adhere to state regulations, security standards, and organizational governance requirements. The analyst will collaborate with cross-departmental teams to strengthen security controls, improve business processes, and ensure consistent delivery of secure and reliable services to stakeholders and citizens.

Job Duties
  • Analyze, document, and validate security processes, system requirements, and interagency interactions supporting retirement benefits administration.
  • Collaborate with program offices, technical teams, and subject matter experts to define and refine security and compliance requirements for system enhancements, policy updates, and new state initiatives.
  • Create and maintain clear, audit-ready documentation, including security requirements, user stories, workflows, and use cases aligned with public sector standards and oversight expectations.
  • Support solution design and participate in testing phases (e.g., UAT) to verify that security controls and compliance requirements are properly implemented.
  • Recommend improvements that strengthen security posture, improve process efficiency, and support program accountability and service quality.
  • Monitor project deliverables, timelines, and milestones to ensure alignment with organizational security objectives, state compliance mandates, and governance frameworks.
  • Assist in developing training materials and delivering security and compliance education to program staff and stakeholders.
  • Conduct gap analyses and assess impacts of legislative, regulatory, or policy changes on business operations and system security.
  • Perform data analysis and generate reports to support compliance monitoring, performance evaluation, risk tracking, and data-driven decision-making across the organization.
Leadership & Collaboration Responsibilities
  • Provide guidance and informal leadership to cross-functional teams by promoting best practices in security, compliance, and risk management.
  • Lead discussions with program offices, technology partners, and stakeholders to ensure alignment on security objectives, policy interpretations, and compliance expectations.
  • Serve as a mentor to analysts by offering support in interpreting security frameworks, documenting requirements, and navigating governance processes.
  • Champion a culture of security awareness and continuous improvement by fostering collaboration, communicating risks clearly, and influencing adoption of secure and compliant operational behaviors.
  • Take ownership of key security and compliance initiatives, driving progress, managing expectations, and ensuring deliverables meet organizational standards and regulatory requirements.
  • Provide leadership during security incidents, compliance issues, and audit activities by coordinating responses, ensuring timely communication, and supporting decision-making with clear, accurate analysis.
Security & Compliance Support
  • Perform tasks in support of internal and external security and standards reviews.
  • Conduct security risk assessments and recommend mitigation strategies.
  • Assist with development and maintenance of security documentation, including System Security Plans, Assessment Reports, and Authorization packages.
  • Support security audits by gathering documentation and demonstrating control effectiveness.
Disaster Recovery & Business Continuity Planning
  • Collaborate with business units to develop and maintain Business Continuity Plans (BCPs).
  • Conduct business impact assessments and ensure DRP/BCP strategies align with operational needs.
  • Participate in tabletop exercises and simulations to test and validate plans, documenting and addressing gaps.
  • Ensure DRP/BCP efforts comply with State of Michigan policies, NIST, FISMA, and other applicable standards.
Vulnerability Management
  • Coordinate and schedule system, application, and network vulnerability scans in collaboration with infrastructure and security teams.
  • Analyze scan results, prioritize risks, and support mitigation planning



Requirements
7 years:
  • Professional experience in security, compliance, risk management, or a closely related discipline within a government agency, public retirement system, or regulated financial environment.
5+ years:
  • Experience working knowledge of security and compliance frameworks relevant to public sector environments, such as NIST CSF, NIST 800-53, and state IT security standards.
  • Proficiency in tools used to support security documentation, compliance tracking, and workflow management (e.g., Azure DevOps, GRC platforms). 
Demonstrated experience developing, documenting, and evaluating security controls, compliance requirements, and governance processes.
Experience supporting security or compliance assessments, audit activities, policy reviews, and control validations.
Experience participating in system or process changes with a focus on ensuring data protection, access controls, regulatory adherence, and secure implementation.
Knowledge of Agile SDLC practices with an emphasis on integrating security and compliance into requirements, testing, and release processes.
Ability to assess common vulnerabilities such as XSS, CSRF, SQL Injection, and authentication weaknesses.
Contribute to development, documentation, and testing of Disaster Recovery Plans (DRPs) for critical
systems.
Assist in defining recovery time objectives (RTOs) and recovery point objectives (RPOs)


Desired Skills
  • Bachelor’s degree in information security, cybersecurity, information systems, public administration, or a related field; or equivalent experience.
  • Experience supporting security and compliance needs within public pension or retirement administration programs.
  • Working knowledge of security capabilities and data protection requirements within pension administration platforms or enterprise benefits systems.
  • Experience using SQL or analytics tools (Power BI, advanced Excel) to support compliance monitoring, security metrics, reporting, and data validation.
  • Professional security or compliance certifications such as CGRC, CAP, Security+, CISA, or similar.
  • Knowledge of state and federal regulations governing data security, privacy, and compliance within public sector retirement systems (IRS, SSA, state statutes, audit standards).
  • Familiarity with Java or the .NET framework.
  • High-level understanding of how web applications function

Minimum Education
  • None

Location
  • Local candidates strongly preferred (within 75-miles of Lansing, MI). Candidates outside of this range may be considered, however, if selected MUST relocate on their own (no assistance from the State) within 2-weeks of their start. There are no exceptions for this, if a candidate is selected and cannot relocate, their assignment will be ended.
  • Position is a hybrid schedule with NO REMOTE ONLY OPTION. Will need to be onsite from day 1, two days a week. (Tuesday/Wednesday)
  • Working hours Monday-Friday, approximately 8:00 a.m. to 5:00 p.m.   
Additional Requirements
  • Must be authorized to work in the United States; We are unable to offer sponsorships at this time
  • Must undergo a background check and drug screening for employment.

Employment Terms
  • This is a W2 position
  • 40 hrs per week
  • HYBRID schedule - NO REMOTE ONLY OPTION. Will need to be onsite from day 1, two days a week. (Tuesday/Wednesday)

About Zenfreed

At Zenfreed, we are more than an IT company. We bridge the gap between people wanting to do the work they were meant to do and organizations needing the right talent.

We are dedicated to building a diverse, inclusive and authentic workplace, so if you’re excited about this role but your past experience doesn’t align perfectly with every qualification in the job description, we encourage you to apply anyway. You may be just the right candidate for this or other roles.



Benefits
We understand a comprehensive benefits package is crucial to employment satisfaction. We offer medical, dental and vision coverage options for all employees.