1

Security Risk Analyst Jobs in Columbus, OH (NOW HIRING)

Job Title Cyber Risk Analyst About your role: As a Cyber Risk Analyst, you will support ... Monitor agent performance, accuracy, explainability, and security to support effective and ...

Prior work experience of risk management disciplines, security policies and standards, technology ... Current or previous experience with risk assessment methodologies and conducting risk analysis in a ...

Prior work experience of risk management disciplines, security policies and standards, technology ... Current or previous experience with risk assessment methodologies and conducting risk analysis in a ...

Job Title Senior IT Security Analyst (Cybersecurity Governance, Risk & Compliance - GRC) Work Schedule / Location * Location: Columbus, Ohio * Work Schedule: Onsite 5 days per week * Duration: 08/31 ...

... monitoring and analyzing data, identifying security, risk or compliance issues and/or events ... Review risk assessment questionnaires, perform information security control reviews and complete ...

Current or previous experience with risk assessment methodologies and conducting risk analysis in a ... Knowledge of security and control frameworks, such as ISO 27002, NIST, CobiT, COSO and ITIL

... risk identification, analysis, tracking, monitoring, documenting exceptions, and communicating ... Security Policy Development and Management * Assist with documenting security policies, standards ...

next page

Showing results 1-20

Security Risk Analyst information

See Columbus, OH salary details

$9

$48

$67

How much do security risk analyst jobs pay per hour?

As of Aug 9, 2026, the average hourly pay for security risk analyst in Columbus, OH is $48.69, according to ZipRecruiter salary data. Most workers in this role earn between $39.47 and $58.03 per hour, depending on experience, location, and employer.

What does a security risk analyst do?

A Security Risk Analyst is responsible for identifying, assessing, and mitigating risks to an organization's information systems and data. They analyze security measures, conduct vulnerability assessments, and recommend strategies to protect against threats such as cyberattacks, data breaches, and unauthorized access. Their work helps ensure that a company's digital assets remain safe and compliant with industry regulations. Security Risk Analysts collaborate with IT teams and management to implement effective security policies and respond to incidents as needed.

What are the key skills and qualifications needed to thrive as a security risk analyst?

To thrive as a Security Risk Analyst, you need a strong background in risk assessment, information security principles, and analytical thinking, often supported by a degree in cybersecurity, IT, or a related field. Familiarity with risk management frameworks (such as NIST or ISO 27001), security assessment tools, and certifications like CISSP or CISM is highly valuable. Excellent communication, attention to detail, and problem-solving abilities help you translate complex risks for varied stakeholders and drive mitigation strategies. These skills and qualities are crucial for identifying vulnerabilities, minimizing threats, and maintaining organizational security and compliance.

What are some common challenges security risk analysts face when collaborating with other departments?

Security Risk Analysts often work closely with IT, compliance, and business units to assess and mitigate risks. A common challenge is bridging the gap between technical security requirements and business objectives, as not all stakeholders may have a cybersecurity background. Effective communication and education are key to ensuring that risk recommendations are understood and adopted. Additionally, prioritizing risks with limited resources and balancing security with operational needs can be complex, requiring strong collaboration and negotiation skills.

What is the difference between Security Risk Analyst vs Security Analyst?

AspectSecurity Risk AnalystSecurity Analyst
CertificationsCompTIA Security+, CISSP, CISACompTIA Security+, CISSP, CEH
Work EnvironmentRisk assessment, vulnerability analysis, policy developmentMonitoring security systems, incident response, security audits
Employer & Industry UsageFinancial, healthcare, government sectors focusing on risk mitigationIT departments across various industries focusing on security operations

While both roles focus on cybersecurity, Security Risk Analysts primarily assess and manage potential security threats and vulnerabilities, emphasizing risk mitigation strategies. Security Analysts tend to monitor security systems, respond to incidents, and ensure ongoing security measures. Both roles often require similar certifications and work environments but differ in their core responsibilities within cybersecurity teams.

What is a security risk analyst?

A security risk analyst is a professional who identifies, assesses, and mitigates security threats to an organization’s information systems. They analyze vulnerabilities, develop security strategies, and often use tools like risk assessment frameworks and security software to protect data and infrastructure.
What job categories do people searching Security Risk Analyst jobs in Columbus, OH look for? The top searched job categories for Security Risk Analyst jobs in Columbus, OH are:
Infographic showing various Security Risk Analyst job openings in Columbus, OH as of August 2026, with employment types broken down into 81% Full Time, and 19% Contract. Highlights an 78% In-person, 5% Hybrid, and 17% Remote job distribution, with an average salary of $101,272 per year, or $48.7 per hour.

Cybersecurity Risk Analyst (REMOTE)

Armavel, LLC

Columbus, OH • Remote

$90K - $100K/yr

Full-time

Medical, Dental, Vision, Life, Retirement, PTO

Re-posted 6 hours ago


Job description

The experienced Risk Analyst role executes the VA Enterprise Risk Analysis process using a custom ERA tool to identify key cyber security risk factors in network connected medical devices and Special Purpose Systems (e.g., building automation systems, physical security systems, operational technology). These risk factors are summarized, evaluated, and reported using quantitative and qualitative scores to provide a VA authorizing official with awareness of the residual cyber risk prior to connecting these devices to the VA network. The Risk Analyst must acquire, review and leverage system documentation and data gathered through questionnaires and interviews with customers in the field and vendor/manufacturer representatives to accurately document critical security posture elements in a common reporting format. These elements include hardware/software inventory, communications profile, system interconnections, data types and stores, and the presence or lack of security controls, settings and mechanisms for a given device type. The Risk Analyst performs annual reviews to support effective continuous monitoring and to ensure documented residual risks are current, accurate, and complete. The analyst works within a Risk Management team and is expected to collaborate with Federal and contractor team mates to achieve best outcomes for the ERA process.

What Makes You Great

  • Experience with Cybersecurity, risk management, or risk assessment for complex systems
  • Experience with NIST SP 800-53 and NIST SP 800-30
  • Experience with documenting and depicting network topology and network protocols
  • Ability to engage directly with clients, and third parties to facilitate enterprise risk analysis
  • Ability to obtain and maintain a Public Trust or Suitability/Fitness determination based on client requirements
  • Bachelor’s degree in Computer Science, Mathematics, Engineering or technical discipline and 10 years of relevant work experience or 18 years of relevant work experience in lieu of degree

Nice If You Have

  • Experience with cybersecurity analysis of medical technology or Internet of Things (IoT)
  • Experience with Governance, Risk, and Compliance (GRC)
  • Experience with Assessment and Authorization (A&A) and eMASS
  • Experience with Excel and Visio
  • CompTIA Security+ or Certified Risk Management Professional (CRISC) or Certified in Risk and Information Systems Control (CRISC)
  • Experience working in the Federal space
  • Excellent communication skills
  • Attention to detail and ability to critically
  • Willingness to learn and strong ability to research
  • Strong organizational skills
  • You must be a US citizen and have the ability to obtain and maintain a government clearance.

Why this position is rewarding

  • Fully remote workforce – work from anywhere in the US!
  • You’ll get lots of work done, and work with a team that likes to hustle.
  • You get to play a big part in important technologies being brought to an entirely new audience and get to work with some cool technology companies.
  • Your work will benefit veterans.

Company Description

Armavel is a fast-growing IT consulting firm that has built a culture founded on a values-first philosophy. We are passionate about delivering results that are timely and world class via an environment that has all the ingredients for our people to thrive. With this in mind, we seek out candidates that demonstrate the following characteristics: honesty, humility, hustle, empathy, resilience, and positivity. These attributes are vital to our company’s growth and are our first priority in our hiring decisions.