1

Security Risk Analyst Jobs in Denver, CO (NOW HIRING)

You will work closely with engineering, security, legal, compliance, and operations teams to help ... risk prioritization analyses for leadership. * Maintain and update the enterprise risk register ...

This role partners closely with engineers, analysts, business stakeholders, Legal, Information Security, IT, and auditors to build practical guardrails, evaluate AI risk, support compliance, and ...

This role partners closely with engineers, analysts, business stakeholders, Legal, Information Security, IT, and auditors to build practical guardrails, evaluate AI risk, support compliance, and ...

next page

Showing results 1-20

Security Risk Analyst information

See Denver, CO salary details

$10

$51

$71

How much do security risk analyst jobs pay per hour?

As of Aug 27, 2026, the average hourly pay for security risk analyst in Denver, CO is $51.88, according to ZipRecruiter salary data. Most workers in this role earn between $42.07 and $61.88 per hour, depending on experience, location, and employer.

What does a security risk analyst do?

A Security Risk Analyst is responsible for identifying, assessing, and mitigating risks to an organization's information systems and data. They analyze security measures, conduct vulnerability assessments, and recommend strategies to protect against threats such as cyberattacks, data breaches, and unauthorized access. Their work helps ensure that a company's digital assets remain safe and compliant with industry regulations. Security Risk Analysts collaborate with IT teams and management to implement effective security policies and respond to incidents as needed.

What are the key skills and qualifications needed to thrive as a security risk analyst?

To thrive as a Security Risk Analyst, you need a strong background in risk assessment, information security principles, and analytical thinking, often supported by a degree in cybersecurity, IT, or a related field. Familiarity with risk management frameworks (such as NIST or ISO 27001), security assessment tools, and certifications like CISSP or CISM is highly valuable. Excellent communication, attention to detail, and problem-solving abilities help you translate complex risks for varied stakeholders and drive mitigation strategies. These skills and qualities are crucial for identifying vulnerabilities, minimizing threats, and maintaining organizational security and compliance.

What are some common challenges security risk analysts face when collaborating with other departments?

Security Risk Analysts often work closely with IT, compliance, and business units to assess and mitigate risks. A common challenge is bridging the gap between technical security requirements and business objectives, as not all stakeholders may have a cybersecurity background. Effective communication and education are key to ensuring that risk recommendations are understood and adopted. Additionally, prioritizing risks with limited resources and balancing security with operational needs can be complex, requiring strong collaboration and negotiation skills.

What is the difference between Security Risk Analyst vs Security Analyst?

AspectSecurity Risk AnalystSecurity Analyst
CertificationsCompTIA Security+, CISSP, CISACompTIA Security+, CISSP, CEH
Work EnvironmentRisk assessment, vulnerability analysis, policy developmentMonitoring security systems, incident response, security audits
Employer & Industry UsageFinancial, healthcare, government sectors focusing on risk mitigationIT departments across various industries focusing on security operations

While both roles focus on cybersecurity, Security Risk Analysts primarily assess and manage potential security threats and vulnerabilities, emphasizing risk mitigation strategies. Security Analysts tend to monitor security systems, respond to incidents, and ensure ongoing security measures. Both roles often require similar certifications and work environments but differ in their core responsibilities within cybersecurity teams.

What is a security risk analyst?

A security risk analyst is a professional who identifies, assesses, and mitigates security threats to an organization’s information systems. They analyze vulnerabilities, develop security strategies, and often use tools like risk assessment frameworks and security software to protect data and infrastructure.

What job categories do people searching Security Risk Analyst jobs in Denver, CO look for?

The top searched job categories for Security Risk Analyst jobs in Denver, CO are:

Infographic showing various Security Risk Analyst job openings in Denver, CO as of August 2026, with employment types broken down into 83% Full Time, 13% Part Time, and 4% Contract. Highlights an 92% Physical, 3% Hybrid, and 5% Remote job distribution, with an average salary of $107,918 per year, or $51.9 per hour.

Information Security Risk and Compliance Analyst

Denver, CO • Hybrid

$65K - $75K/yr

Full-time

Medical, Dental, Vision, Life, Retirement, PTO

Re-posted 2 days ago


Job description

Description

At Sunflower Bank, N.A., we're experiencing great growth. Since our founding in 1892, we've been committed to serving our communities and supporting the team members who make it all possible. As a full-service financial institution, we offer a full range of relationship-focused services to meet personal, business, and wealth-management financial objectives. Creating Possibility is not just our mission, it's what we do every day for clients and associates. Learn more about Sunflower Bank, N.A. at sunflowerbank.com.


Sunflower Bank, N.A. is looking for an energetic, highly motivated individual to fill the position of a full-time Information Security Risk and Compliance Analyst at our Denver, CO location.


The salary range for this position is $65,000 to $75,000 depending on knowledge, skills, abilities, experience, and location.
 

Hybrid options available.


Description:


Provides day to day tactical support to the enterprise's second line Information Security Risk & Compliance function by executing defined control oversight and risk support activities. The Information Security Risk and Compliance Analyst performs recurring and ad hoc assessments such as user access reviews, vendor due diligence and monitoring, and other control validation tasks to support effective oversight of controls owned by first line business and technology teams. This role focuses on accuracy, consistency, and documentation quality while building foundational risk, control, and regulatory knowledge.


Responsibilities:

  • Perform assigned second line control oversight activities, including user access reviews, vendor due diligence, vendor monitoring, and other recurring risk reviews.
  • Collect, review, and validate control evidence and supporting artifacts to assess completeness, accuracy, and alignment with defined requirements.
  • Document review results clearly and consistently using standardized templates, tools, and procedures.
  • Identify, document, and escalate exceptions, discrepancies, and potential control gaps to senior team members for evaluation.
  • Support third party risk management activities, including intake, ongoing monitoring, and follow up with internal stakeholders.
  • Maintain accurate and up to date information within risk, vendor, and control tracking systems.
  • Assist with audit and regulatory readiness by organizing evidence and responding to information requests.
  • Execute routine monitoring activities according to established schedules and governance expectations.
  • Perform additional risk and compliance support tasks as assigned to support departmental priorities.
  • Support the maintenance of governance documentation and continuous improvement of department processes.
  • Perform the job in accordance with applicable industry laws and regulations as well as the policies and procedures established by the company.
  • Responsible for upholding Fair and Responsible Banking practices and Code of Ethics and Conduct guidelines.
  • Understand and participate in the Bank's Community Reinvestment Act program.
  • Perform other duties as assigned.

Education / Experience

  • Bachelor's degree in business, Risk Management, Information Systems, Security Management (or equivalent combination of education and experience).
  • Financial services experience preferred.
  • Pursuit of one or more of the following certifications: Certified Information Security Manager (CISM), Certified Information Security Systems Professional (CISSP), Certified Risk and Information Systems Controls (CRISC), Certified Information Security Auditor (CISA).
  • Working knowledge of NIST Cybersecurity (CSF) and NIST Privacy Frameworks.
  • Cross-functional influence without direct authority.
  • Strong written documentation and executive communications.
  • Analytical mindset with practical, operational execution.


Working Conditions:


The physical demands of this position require the ability to perform essential job functions with or without reasonable accommodation. Employees may spend extended periods sitting or standing, using hands to operate computers or other equipment, and reaching for work-related tasks. Regular walking may be required, along with occasional bending, stooping, kneeling, or climbing. The role may involve lifting or moving items weighing up to 10 pounds. Vision requirements include close and distance vision, color and peripheral vision, depth perception, and the ability to adjust focus.


Sunflower Bank Benefits


People choose to "bank" with us, but for those we serve, we're more than a bank. We strive to be the financial backbone of their lives, and we know that starts with our team.

Our supportive culture empowers team members to grow and seize new opportunities. Like our namesake, the sunflower, we are:

  • Rooted in Strength
  • Propelled by Growth
  • Individuals in a Great Whole
  • Creating Possibility
  • Community Focused

Associates enjoy outstanding benefits, including:

  • 401(k) Plan with 6% Match
  • Health/Dental/Vision Insurance
  • Company-paid Life Insurance
  • Tuition Reimbursement
  • Fitness Reimbursement
  • Paid Time Off
  • Volunteer Leave
  • Paid Holidays
  • Plus many more associate perks & incentives!

If you qualify, apply online at www.sunflowerbank.com/careers.


You've never worked anyplace like Sunflower Bank!


EOE/AA: Minorities/Females/Disabled/Vets


Sunflower Bank, N.A. is an equal opportunity employer, and all qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, protected veteran status, status as a qualified individual with a disability, sexual orientation, gender identity, or any other characteristic protected by law.


Open until filled; early application encouraged. This vacancy announcement may be used to fill similar positions within 90 days.


If you are a California resident, you may be entitled to certain rights regarding your personal information, which is information that identifies, relates to, or could reasonably be linked with a particular California resident or household. Additional information about our data collection practices and location-specific notices is available on our privacy policy.