1

Security Risk Analyst Jobs in Chicago, IL (NOW HIRING)

Risk Analyst

Deerfield, IL · On-site

$87K - $110K/yr

Perform third-party security and compliance risk assessments for new and existing vendors ... Strong analytical, critical thinking, and communication skills with the ability to evaluate complex ...

Risk Analyst

Deerfield, IL · On-site +1

$87K - $110K/yr

Perform third-party security and compliance risk assessments for new and existing vendors ... Strong analytical, critical thinking, and communication skills with the ability to evaluate complex ...

Description We are seeking a Senior AI Security Risk Assessment Consultant to help establish and operationalize our client's organization's enterprise AI Security Risk Assessment Methodology. This ...

Analyst, Risk Monitoring

Chicago, IL · On-site

$68K - $89K/yr

Wedbush Securities is one of the largest securities firms and investment banks in the nation. We ... Our Chicago office is hiring an experienced Supervisor, Risk Monitoring Analyst to join our Risk ...

next page

Showing results 1-20

Security Risk Analyst information

See Chicago, IL salary details

$10

$51

$72

How much do security risk analyst jobs pay per hour?

As of Aug 26, 2026, the average hourly pay for security risk analyst in Chicago, IL is $51.97, according to ZipRecruiter salary data. Most workers in this role earn between $42.12 and $61.97 per hour, depending on experience, location, and employer.

What does a security risk analyst do?

A Security Risk Analyst is responsible for identifying, assessing, and mitigating risks to an organization's information systems and data. They analyze security measures, conduct vulnerability assessments, and recommend strategies to protect against threats such as cyberattacks, data breaches, and unauthorized access. Their work helps ensure that a company's digital assets remain safe and compliant with industry regulations. Security Risk Analysts collaborate with IT teams and management to implement effective security policies and respond to incidents as needed.

What are the key skills and qualifications needed to thrive as a security risk analyst?

To thrive as a Security Risk Analyst, you need a strong background in risk assessment, information security principles, and analytical thinking, often supported by a degree in cybersecurity, IT, or a related field. Familiarity with risk management frameworks (such as NIST or ISO 27001), security assessment tools, and certifications like CISSP or CISM is highly valuable. Excellent communication, attention to detail, and problem-solving abilities help you translate complex risks for varied stakeholders and drive mitigation strategies. These skills and qualities are crucial for identifying vulnerabilities, minimizing threats, and maintaining organizational security and compliance.

What are some common challenges security risk analysts face when collaborating with other departments?

Security Risk Analysts often work closely with IT, compliance, and business units to assess and mitigate risks. A common challenge is bridging the gap between technical security requirements and business objectives, as not all stakeholders may have a cybersecurity background. Effective communication and education are key to ensuring that risk recommendations are understood and adopted. Additionally, prioritizing risks with limited resources and balancing security with operational needs can be complex, requiring strong collaboration and negotiation skills.

What is the difference between Security Risk Analyst vs Security Analyst?

AspectSecurity Risk AnalystSecurity Analyst
CertificationsCompTIA Security+, CISSP, CISACompTIA Security+, CISSP, CEH
Work EnvironmentRisk assessment, vulnerability analysis, policy developmentMonitoring security systems, incident response, security audits
Employer & Industry UsageFinancial, healthcare, government sectors focusing on risk mitigationIT departments across various industries focusing on security operations

While both roles focus on cybersecurity, Security Risk Analysts primarily assess and manage potential security threats and vulnerabilities, emphasizing risk mitigation strategies. Security Analysts tend to monitor security systems, respond to incidents, and ensure ongoing security measures. Both roles often require similar certifications and work environments but differ in their core responsibilities within cybersecurity teams.

What is a security risk analyst?

A security risk analyst is a professional who identifies, assesses, and mitigates security threats to an organization’s information systems. They analyze vulnerabilities, develop security strategies, and often use tools like risk assessment frameworks and security software to protect data and infrastructure.

What are popular job titles related to Security Risk Analyst jobs in Chicago, IL?

For Security Risk Analyst jobs in Chicago, IL, the most frequently searched job titles are:

What job categories do people searching Security Risk Analyst jobs in Chicago, IL look for?

The top searched job categories for Security Risk Analyst jobs in Chicago, IL are:

Infographic showing various Security Risk Analyst job openings in Chicago, IL as of August 2026, with employment types broken down into 82% Full Time, 15% Part Time, 2% Contract, and 1% Nights. Highlights an 92% Physical, 3% Hybrid, and 5% Remote job distribution, with an average salary of $108,094 per year, or $52 per hour.

Risk Analyst

Alera Group

Deerfield, IL • On-site

$87K - $110K/yr

Full-time

Medical, Dental, Vision, Life, Retirement, PTO

Posted 5 days ago


Alera Group rating

7.5

Company rating: 7.5 out of 10

Based on 31 frontline employees who took The Breakroom Quiz

225th of 312 rated insurance


Job description

OVERVIEW
Risk Analyst
Location: Deerfield, IL | Remote
Department: Corporate Services
Overview
At Alera Group, our corporate teams play a critical role in supporting the success of colleagues and clients across the country. From Human Resources and Finance to Technology, Legal, Marketing, and Operations, these professionals ensure our organization runs efficiently while enabling our teams to deliver exceptional service.
About Alera Group
Founded in 2017, Alera Group has grown to become the 14th largest broker of U.S. business. We are passionate about our clients' success in Employee Benefits, Property & Casualty Insurance, and Financial Services. With offices nationwide, our collaborative approach allows us to deliver national strength with local service.
We are always looking to connect with talented professionals who want to contribute to a collaborative, high-growth environment and help drive strategic initiatives across a national organization.
Why Join Alera Group?
  • Collaborate with purpose - Work alongside colleagues who believe the best results come from strong partnerships, shared expertise, and supporting one another.
  • Build your career - Expand your expertise through meaningful work, continuous learning, and opportunities to grow across a national organization.
  • Make an impact - Help clients navigate complex challenges while contributing to solutions that make a difference for their businesses, employees, and communities.

RESPONSIBILITIES
  • Perform third-party security and compliance risk assessments for new and existing vendors, evaluating risk exposure, control effectiveness, business impact, and remediation requirements
  • Review SOC reports, security questionnaires, audit documentation, certifications, and other evidence to identify control gaps and potential business impacts
  • Coordinate and execute user access reviews, validating access appropriateness and ensuring identified issues are remediated promptly
  • Document risks, findings, recommendations, and remediation plans while maintaining accurate records within governance, risk, and compliance platforms
  • Serve as a trusted advisor to stakeholders by asking thoughtful questions, identifying underlying business needs, assessing potential risks, and translating ambiguous requests into clear risk assessment, governance, and compliance activities
  • Partner with Information Security, Technology, Legal, Procurement, and business stakeholders to identify requirements, resolve risk and compliance issues, and drive effective risk-based decision-making
  • Support internal and external audits, regulatory examinations, and compliance activities through evidence collection and documentation management
  • Develop risk metrics, reporting, and dashboards that drive visibility, support decision-making, and measure the effectiveness of third-party risk and governance programs
  • Identify opportunities to improve risk management processes, controls, reporting, governance practices, and automation capabilities

QUALIFICATIONS
Required Qualifications
  • 5+ years of experience in cybersecurity risk, IT risk, information security, governance, risk and compliance (GRC), third-party risk, IT audit, or a related field
  • Hands-on experience performing third-party or vendor security risk assessments
  • Experience coordinating or performing user access reviews, access certifications, or identity governance activities
  • Familiarity with cybersecurity and compliance frameworks such as NIST CSF, SOC 2, CIS Controls, HIPAA, or similar standards
  • Strong analytical, critical thinking, and communication skills with the ability to evaluate complex situations, identify underlying business and risk requirements, and effectively communicate recommendations to both technical and non-technical audiences
  • Experience working with GRC, ticketing, identity governance, or third-party risk management platforms
  • Exercise sound judgment when evaluating risk scenarios, identifying gaps in information, and determining appropriate next steps, stakeholders, and remediation activities

Certifications
  • CISA, CGRC or equivalent preferred

Preferred Qualifications
  • Experience within a regulated industry such as insurance, financial services, or healthcare
  • Experience supporting SOC 2, HIPAA, NYDFS, or similar regulatory and compliance programs
  • Experience with automated identity governance, access certification, or third-party risk management solutions
  • Experience supporting internal or external security and compliance audits
  • Ability to independently research requirements, develop risk-based recommendations, and communicate findings to stakeholders
  • Demonstrated ability to gather and clarify ambiguous requirements, ask effective probing questions, and develop practical risk-based solutions in collaboration with business stakeholders

Compensation
  • Salary Range: $87,000 - $110,000 annually
  • Bonus Eligible: Yes

Benefits
Eligible colleagues enjoy a comprehensive benefits package including:
  • Medical, dental, and vision insurance
  • Life and disability coverage
  • 401(k)
  • Generous paid time off
  • Professional development and career growth opportunities

ADDITIONAL INFORMATION
Work Model:
This role is Remote
Preference for Central or Eastern Time Zone
Professional Development - Alera Group Academy
At Alera Group, growth isn't left to chance. Through Alera Group Academy, we provide structured development opportunities designed to help you expand your expertise and build a meaningful career.
You'll have access to:
  • Role-specific learning paths
  • Leadership development programs
  • Technical and compliance training
  • Industry certifications and continuing education support
  • Peer learning and knowledge-sharing communities

Whether you're deepening technical expertise or preparing for leadership, we're invested in helping you grow.
We're an equal opportunity employer. All applicants will be considered for employment without attention to race, color, religion, sex, sexual orientation, gender identity, national origin, veteran or disability status, or any other protected class.
Alera Group is committed to protecting your privacy. Please review our Privacy Policy to understand what personal information we may collect and use as part of your application process.
#LI-NO1
#LI-Remote
Location Type
Hybrid - 2 or less days in office

What Alera Group employees say

Pay

Benefits

Hours and flexibility

Workplace

Get the full story on Breakroom