Operational Risk Analyst -Security Governance & Risk Issues Management Location: Merrifield VA - Hybrid Duration: 12 months Basic Purpose This role is specifically designated as an Operational Risk ...
Operational Risk Analyst -Security Governance & Risk Issues Management Location: Merrifield VA - Hybrid Duration: 12 months Basic Purpose This role is specifically designated as an Operational Risk ...
The answer is you - an information security risk specialist who can help turn complex vulnerability ... As a Vulnerability Exception and Deferral Analyst on our Enterprise IT and Cyber Risk team, you'll ...
New
The answer is you - an information security risk specialist who can help turn complex vulnerability ... As a Vulnerability Exception and Deferral Analyst on our Enterprise IT and Cyber Risk team, you'll ...
New
Risk Analyst
Vienna, VA · On-site
Job Title: Risk Analyst Location: Vienna, VA - 3 days onsite, 2 days remote Type: Contract ... Hybrid - onsite and remote Hours: 40 hrs a week Security Clearance: Full background check, criminal ...
Risk Analyst
Vienna, VA · On-site
Job Title: Risk Analyst Location: Vienna, VA - 3 days onsite, 2 days remote Type: Contract ... Hybrid - onsite and remote Hours: 40 hrs a week Security Clearance: Full background check, criminal ...
Risk Analyst
Vienna, VA · On-site
Job Title: Risk Analyst Location: Vienna, VA - 3 days onsite, 2 days remote Type: Contract ... Hybrid - onsite and remote Hours: 40 hrs a week Security Clearance: Full background check, criminal ...
Risk Analyst
Vienna, VA · On-site
Job Title: Risk Analyst Location: Vienna, VA - 3 days onsite, 2 days remote Type: Contract ... Hybrid - onsite and remote Hours: 40 hrs a week Security Clearance: Full background check, criminal ...
The answer is you, an information security risk specialist who can help break down emerging AI risk into clear, manageable actions. As an AI Cyber Risk Analyst on our Enterprise IT and Cyber Risk ...
New
The answer is you, an information security risk specialist who can help break down emerging AI risk into clear, manageable actions. As an AI Cyber Risk Analyst on our Enterprise IT and Cyber Risk ...
New
Build your knowledge as an information security risk specialist who knows how to break down complex threats into manageable plans of action. As a Cyber-Risk Analyst on our team, you'll use your ...
Build your knowledge as an information security risk specialist who knows how to break down complex threats into manageable plans of action. As a Cyber-Risk Analyst on our team, you'll use your ...
Cyber Risk Analyst (TS/SCI)
Reston, VA · On-site
Build your knowledge as an information security risk specialist who knows how to break down complex threats into manageable plans of action. As a Cyber-Risk Analyst on our team, you'll use your ...
Cyber Risk Analyst (TS/SCI)
Reston, VA · On-site
Build your knowledge as an information security risk specialist who knows how to break down complex threats into manageable plans of action. As a Cyber-Risk Analyst on our team, you'll use your ...
Risk Business Analyst / Security Controls Analyst Location: Pensacola, FL, Winchester, VA, or Vienna, VA (Hybrid from candidate's choice of any of these worksites - 3 days/week onsite) We are seeking ...
Risk Business Analyst / Security Controls Analyst Location: Pensacola, FL, Winchester, VA, or Vienna, VA (Hybrid from candidate's choice of any of these worksites - 3 days/week onsite) We are seeking ...
Travel Security and Risk Principal (IC3) supports Oracle's Global Physical Security Crisis ... Consume Intelligence Analysis outputs and produce concise summaries for high-risk travel ...
Travel Security and Risk Principal (IC3) supports Oracle's Global Physical Security Crisis ... Consume Intelligence Analysis outputs and produce concise summaries for high-risk travel ...
The answer is you - an information security risk specialist who can help turn complex vulnerability ... As a Vulnerability Exception and Deferral Analyst on our Enterprise IT and Cyber Risk team, you'll ...
New
The answer is you - an information security risk specialist who can help turn complex vulnerability ... As a Vulnerability Exception and Deferral Analyst on our Enterprise IT and Cyber Risk team, you'll ...
New
Third-Party Risk Analyst
Mclean, VA · On-site
$45 - $47/hr
Bachelor's degree in Risk Management, Business Administration, Finance, Data Analytics, Project Management, Information Security, or related field. * 5+ years of experience in risk management or ...
Quick apply
Third-Party Risk Analyst
Mclean, VA · On-site
$45 - $47/hr
Bachelor's degree in Risk Management, Business Administration, Finance, Data Analytics, Project Management, Information Security, or related field. * 5+ years of experience in risk management or ...
The Industry and Security Analysis Group (ISAG) within JOID provides analytical, technical, and ... Responsibilities The Foreign Investment Risk Analyst will support Department of Homeland Security ...
The Industry and Security Analysis Group (ISAG) within JOID provides analytical, technical, and ... Responsibilities The Foreign Investment Risk Analyst will support Department of Homeland Security ...
The Industry and Security Analysis Group (ISAG) within JOID provides analytical, technical, and ... Responsibilities The Foreign Investment Risk Analyst will support Department of Homeland Security ...
The Industry and Security Analysis Group (ISAG) within JOID provides analytical, technical, and ... Responsibilities The Foreign Investment Risk Analyst will support Department of Homeland Security ...
Ability to analyze complex technical environments and communicate risk in business-focused terms ... Strong knowledge of information security frameworks including NIST CSF, NIST 800‑53, ISO 27001 ...
Ability to analyze complex technical environments and communicate risk in business-focused terms ... Strong knowledge of information security frameworks including NIST CSF, NIST 800‑53, ISO 27001 ...
Ability to analyze complex technical environments and communicate risk in business-focused terms ... Strong knowledge of information security frameworks including NIST CSF, NIST 800‑53, ISO 27001 ...
Quick apply
Ability to analyze complex technical environments and communicate risk in business-focused terms ... Strong knowledge of information security frameworks including NIST CSF, NIST 800‑53, ISO 27001 ...
The Industry and Security Analysis Group (ISAG) within JOID provides analytical, technical, and ... Responsibilities The Foreign Investment Risk Analyst will support Department of Homeland Security ...
The Industry and Security Analysis Group (ISAG) within JOID provides analytical, technical, and ... Responsibilities The Foreign Investment Risk Analyst will support Department of Homeland Security ...
Cybersecurity Risk Analyst
$62K - $141K/yr
As an information security risk specialist on our team, you'll work with specific enterprises to ... analysis * Experience in services for the federal government or federal advising within a ...
Cybersecurity Risk Analyst
$62K - $141K/yr
As an information security risk specialist on our team, you'll work with specific enterprises to ... analysis * Experience in services for the federal government or federal advising within a ...
Technology Risk Analyst
Richmond, VA · On-site
Within Harris Williams Compliance and Risk team, the Technology Risk Analyst will be an integral individual contributor to the IT security team, focused on key programs and initiatives that enable us ...
Technology Risk Analyst
Richmond, VA · On-site
Within Harris Williams Compliance and Risk team, the Technology Risk Analyst will be an integral individual contributor to the IT security team, focused on key programs and initiatives that enable us ...
Foreign Investment Risk Analyst
Arlington, VA · On-site +1
$90K - $139K/yr
S. national security by transactions involving foreign investment or licensing activities and ... and analysis of evolving cybersecurity and technology risk in areas within CISA equities.
Foreign Investment Risk Analyst
Arlington, VA · On-site +1
$90K - $139K/yr
S. national security by transactions involving foreign investment or licensing activities and ... and analysis of evolving cybersecurity and technology risk in areas within CISA equities.
Technical Risk Analyst
Vienna, VA · On-site
Technical Risk Analyst Position Summary We are seeking a Technical Risk Analyst to support IT security controls testing, risk assessments, and assurance activities across a complex technology ...
Technical Risk Analyst
Vienna, VA · On-site
Technical Risk Analyst Position Summary We are seeking a Technical Risk Analyst to support IT security controls testing, risk assessments, and assurance activities across a complex technology ...
Security Risk Analyst information
See Virginia salary details
$10.25 - $15.62
2% of jobs
$15.62 - $20.99
0% of jobs
$20.99 - $26.37
1% of jobs
$26.37 - $31.74
1% of jobs
$31.74 - $37.11
1% of jobs
$41.14 is the 25th percentile. Wages below this are outliers.
$37.11 - $42.49
26% of jobs
$42.49 - $47.86
11% of jobs
The median wage is $49.78 / hr.
$47.86 - $53.23
22% of jobs
$53.23 - $58.61
9% of jobs
$59.03 is the 75th percentile. Wages above this are outliers.
$58.61 - $63.98
17% of jobs
$63.98 - $69.35
9% of jobs
$10
$49
$69
How much do security risk analyst jobs pay per hour?
Can I make $200,000 a year in cyber security?
What does a Security Risk Analyst do?
What are the key skills and qualifications needed to thrive as a Security Risk Analyst, and why are they important?
What are some common challenges Security Risk Analysts face when collaborating with other departments?
Can you make $500,000 a year in cyber security?
Is SOC an entry level job?
What is the difference between Security Risk Analyst vs Security Analyst?
| Aspect | Security Risk Analyst | Security Analyst |
|---|---|---|
| Certifications | CompTIA Security+, CISSP, CISA | CompTIA Security+, CISSP, CEH |
| Work Environment | Risk assessment, vulnerability analysis, policy development | Monitoring security systems, incident response, security audits |
| Employer & Industry Usage | Financial, healthcare, government sectors focusing on risk mitigation | IT departments across various industries focusing on security operations |
While both roles focus on cybersecurity, Security Risk Analysts primarily assess and manage potential security threats and vulnerabilities, emphasizing risk mitigation strategies. Security Analysts tend to monitor security systems, respond to incidents, and ensure ongoing security measures. Both roles often require similar certifications and work environments but differ in their core responsibilities within cybersecurity teams.
What is a security risk analyst?

Operational Risk Analyst -Security Governance & Risk Issues Management
Merrifield, VA • On-site
Full-time
Posted 23 days ago
Job description
Details:
Operational Risk Analyst -Security Governance & Risk Issues Management
Location: Merrifield VA - Hybrid
Duration: 12 months
Basic Purpose
This role is specifically designated as an Operational Risk Management (ORM) role for Issue Management. The Contractor Analyst will be experienced in risk management, issue management, risk and control self-assessments (RCSA), and have an understanding of security standards, and familiarity with risk and compliance (GRC) tool operations. The Analyst will understand how the ORM framework applies to the business and be able to articulate the need for issue management. The Contractor Analyst will be responsible for supporting the daily operations of issue management and partnering with groups across security, IT and business risk teams. A successful candidate will be required to research issues, support the business in ensuring issues are captured timely, ensure issues are correctly risk assessed and remediation plans are documented and align to the underlying root cause.
Responsibilities
- Attend meetings with stakeholders within security, IT and across the credit union to assess and encourage the need for submitting issues impacting information security.
- Aid in the development of remediation plans.
- Facilitate root cause analysis
- Assess the impact and likelihood of an issue and provide justification for the ratings
- Leverage various communication channels to obtain required information.
- Work within the Logic Manager (GRC) platform
- Support metrics and reporting focused on issues and event processes.
- Aid business partners in understanding the importance of issue management.
- Keep current with Information Security best practices and industry trends, and communicate/apply these practices to policy improvements and compliance actions.
- Perform other duties as assigned
Qualifications
- Experience in the credit union/financial services industry with a focus on regulatory frameworks, information security assessments, and remediation activities
- Experience managing issues from identification to remediation
- IT Audit or first line IT or security risk experience a plus
- Desired knowledge of NCUA, FFIEC, BSA/AML, NIST (including the Cyber Security Framework and 800 Series)
- Effective planning and organizational skills
- Effective research, analytical and problem solving skills
- Strong verbal, written and interpersonal communication skills, including technical writing
- Desired Bachelor Degree in business, information systems or related field or equivalent work/military experience
- Ability to present findings and conclusions clearly and concisely
- Experience in working with all levels of staff, management, stakeholders, and third parties
- Ability to build effective relationships through rapport, trust, diplomacy, and tact
- Strong word processing and spreadsheet software skills
About NAVA Software Solutions
Sourced by ZipRecruiter
NAVA is a strategic partner for companies seeking to develop or customize software and products. Our team of experts leverages cutting-edge technology and deep industry knowledge to provide customized solutions that drive business success. Whether you're looking to improve your operations, increase efficiency, or bring a new product to market, NAVA has the expertise and resources to help you achieve your goals. Trust us to be your partner in software and product development.
Industry
It services
Company size
51 - 200 Employees
Headquarters location
Rocky Hill, CT, US