1

Security Risk Analyst Jobs in Virginia (NOW HIRING)

Third-Party Risk Analyst

Mclean, VA Β· On-site

$45 - $47/hr

Bachelor's degree in Risk Management, Business Administration, Finance, Data Analytics, Project Management, Information Security, or related field. * 5+ years of experience in risk management or ...

Business Risk Analyst

Vienna, VA Β· On-site

$45 - $55/hr

Risk Business Analyst Location: Vienna, VA (Hybrid) Pay Rate: Open to Both C2C and W2 options ... Experience in audit and information security risk assessments * Knowledge of applicable federal and ...

(USA) Risk Expert III

Herndon, VA Β· On-site

$108K - $216K/yr

As a (USA) Risk Expert III, you will lead the identification, assessment, and mitigation of ... Identify and analyze network security threats, vulnerabilities, and risks to protect organizational ...

SECURITY RISK ENGINEER (SRE)

Arlington, VA Β· On-site

$75K - $150K/yr

The role requires continuous evaluation of system posture through hands-on analysis of ... Execute Security Assessments (SA), Risk Assessments (RA), and Ongoing Authorization (OA) activities ...

Plan and scope IT and Information Security control assessments, including communications, risk and ... Strong research, analytical, problem-solving, planning, and organizational skills * Strong written ...

Showing results 21-40

Security Risk Analyst information

See Virginia salary details

$10

$49

$69

How much do security risk analyst jobs pay per hour?

As of Sep 15, 2026, the average hourly pay for security risk analyst in Virginia is $49.98, according to ZipRecruiter salary data. Most workers in this role earn between $40.53 and $59.57 per hour, depending on experience, location, and employer.

What does a security risk analyst do?

A Security Risk Analyst is responsible for identifying, assessing, and mitigating risks to an organization's information systems and data. They analyze security measures, conduct vulnerability assessments, and recommend strategies to protect against threats such as cyberattacks, data breaches, and unauthorized access. Their work helps ensure that a company's digital assets remain safe and compliant with industry regulations. Security Risk Analysts collaborate with IT teams and management to implement effective security policies and respond to incidents as needed.

What are the key skills and qualifications needed to thrive as a security risk analyst?

To thrive as a Security Risk Analyst, you need a strong background in risk assessment, information security principles, and analytical thinking, often supported by a degree in cybersecurity, IT, or a related field. Familiarity with risk management frameworks (such as NIST or ISO 27001), security assessment tools, and certifications like CISSP or CISM is highly valuable. Excellent communication, attention to detail, and problem-solving abilities help you translate complex risks for varied stakeholders and drive mitigation strategies. These skills and qualities are crucial for identifying vulnerabilities, minimizing threats, and maintaining organizational security and compliance.

What are some common challenges security risk analysts face when collaborating with other departments?

Security Risk Analysts often work closely with IT, compliance, and business units to assess and mitigate risks. A common challenge is bridging the gap between technical security requirements and business objectives, as not all stakeholders may have a cybersecurity background. Effective communication and education are key to ensuring that risk recommendations are understood and adopted. Additionally, prioritizing risks with limited resources and balancing security with operational needs can be complex, requiring strong collaboration and negotiation skills.

What is the difference between Security Risk Analyst vs Security Analyst?

AspectSecurity Risk AnalystSecurity Analyst
CertificationsCompTIA Security+, CISSP, CISACompTIA Security+, CISSP, CEH
Work EnvironmentRisk assessment, vulnerability analysis, policy developmentMonitoring security systems, incident response, security audits
Employer & Industry UsageFinancial, healthcare, government sectors focusing on risk mitigationIT departments across various industries focusing on security operations

While both roles focus on cybersecurity, Security Risk Analysts primarily assess and manage potential security threats and vulnerabilities, emphasizing risk mitigation strategies. Security Analysts tend to monitor security systems, respond to incidents, and ensure ongoing security measures. Both roles often require similar certifications and work environments but differ in their core responsibilities within cybersecurity teams.

What is a security risk analyst?

A security risk analyst is a professional who identifies, assesses, and mitigates security threats to an organization’s information systems. They analyze vulnerabilities, develop security strategies, and often use tools like risk assessment frameworks and security software to protect data and infrastructure.
Infographic showing various Security Risk Analyst job openings in Virginia as of September 2026, with employment types broken down into 82% Full Time, 14% Part Time, 3% Contract, and 1% Nights. Highlights an 88% Physical, 3% Hybrid, and 9% Remote job distribution, with an average salary of $103,948 per year, or $50 per hour.

International Security & Policy Analyst

Arlington, VA β€’ On-site

Chimera Enterprises International
Business Management ConsultingΒ β€’Β 11 - 50 employees

$125K - $138K/yr

Full-time

Posted 12 days ago


Job description

Supported Client/Agency: Department of Homeland Security (DHS) / Cybersecurity and Infrastructure Security Agency (CISA)
Description
Chimera Enterprises is seeking an experienced International Security and Policy Analyst.  The ideal candidate will have substantial experience in policy analysis, international affairs, and cyber/infrastructure security risk within a Federal or international setting. The International Security & Policy Analyst will provide critical support to CISA International leadership by monitoring global trends, developing analytical summaries, and supporting bilateral and multilateral engagements. The candidate will navigate classified information to provide actionable insights to senior DHS officials, driving the strategic alignment of CISA’s international mission and priorities.
Mission
To advance CISA's role as the Nation's risk advisor by supporting international engagement, global threat monitoring, and policy development. This role directly supports the Agency’s strategic goals by facilitating critical information sharing with international partners and shaping the evolving global cyber and critical infrastructure ecosystems to mitigate security risks.
Clearance Level Required: Top Secret / SCI
JOB DESCRIPTION AND RESPONSIBILITIES:
  • Conduct comprehensive research and analysis on international and domestic policy, economic, and security developments relevant to CISA’s mission, including utilizing classified information as required.
  • Monitor global trends affecting cyber and infrastructure security, international cooperation, and foreign partner activities to proactively identify emerging issues.
  • Prepare and deliver analytical summaries, readouts, situation reports (SITREPs), and recommendations for CISA International leadership and advisors.
  • Support the development of high-level issue papers, briefing materials, talking points, and decision papers for senior DHS officials, integrating TS/SCI level intelligence.
  • Participate in and support bilateral and multilateral engagements, exchanges, exercises, and training activities from an analytic and policy perspective "Organize, participate in, and support bilateral and multilateral engagements and cooperative activities... to advance operational cooperation with international partners" 
  • Capture key findings from international engagements and assess implications for CISA’s overarching international strategy.
  • Work collaboratively with other analysts and business analysts to contribute to visual representations of complex data, creating dashboards and interactive reports that convey critical insights to decision-makers.
  • Contribute to daily, weekly, and regular reporting in a timely manner, ensuring CISA resources and engagement databases are updated accurately.
Knowledge, Skills, and Abilities:
  • Strong analytic writing and briefing skills, with a proven ability to distill complex, highly technical, or sensitive information into clear, actionable insights for senior leadership.
  • Deep understanding of interagency coordination and international engagement processes within the U.S. government.
  • Ability to handle, synthesize, and appropriately integrate classified and sensitive information (up to TS/SCI) into various intelligence and policy products.
  • Familiarity with the global cyber threat landscape, critical infrastructure risk vectors, and international security policy.
  • Exceptional collaboration and communication skills, with the ability to operate seamlessly in high-stakes bilateral and multilateral environments.
Minimum Qualifications:
  • Education: Bachelor’s Degree in International Affairs, National Security, Public Policy, Cybersecurity, or a related field (or 4 additional years of experience in lieu of a degree).
  • Experience: 4 to 8 years of relevant experience in policy analysis, international affairs, national security, or cyber/infrastructure risk, preferably supporting Federal or international organizations.
  • Clearance: Active Top Secret / SCI clearance required (or TS/SCI eligible with a demonstrated history of handling classified information).
  • Location: Primarily at the Government facility in Arlington, Virginia (NCR), with potential telework and required domestic/international travel as needed.
Chimera Enterprises International is committed to equal opportunity and affirmative action in hiring and retaining a diverse workforce, including protected veterans and individuals with disabilities.
 

Powered by JazzHR

LPkB6AT0Fz