1

Security Risk Analyst Jobs in Philadelphia, PA (NOW HIRING)

next page

Showing results 1-20

Security Risk Analyst information

See Philadelphia, PA salary details

$9

$48

$66

How much do security risk analyst jobs pay per hour?

As of Aug 5, 2026, the average hourly pay for security risk analyst in Philadelphia, PA is $48.18, according to ZipRecruiter salary data. Most workers in this role earn between $39.04 and $57.45 per hour, depending on experience, location, and employer.

What does a security risk analyst do?

A Security Risk Analyst is responsible for identifying, assessing, and mitigating risks to an organization's information systems and data. They analyze security measures, conduct vulnerability assessments, and recommend strategies to protect against threats such as cyberattacks, data breaches, and unauthorized access. Their work helps ensure that a company's digital assets remain safe and compliant with industry regulations. Security Risk Analysts collaborate with IT teams and management to implement effective security policies and respond to incidents as needed.

What are the key skills and qualifications needed to thrive as a security risk analyst?

To thrive as a Security Risk Analyst, you need a strong background in risk assessment, information security principles, and analytical thinking, often supported by a degree in cybersecurity, IT, or a related field. Familiarity with risk management frameworks (such as NIST or ISO 27001), security assessment tools, and certifications like CISSP or CISM is highly valuable. Excellent communication, attention to detail, and problem-solving abilities help you translate complex risks for varied stakeholders and drive mitigation strategies. These skills and qualities are crucial for identifying vulnerabilities, minimizing threats, and maintaining organizational security and compliance.

What are some common challenges security risk analysts face when collaborating with other departments?

Security Risk Analysts often work closely with IT, compliance, and business units to assess and mitigate risks. A common challenge is bridging the gap between technical security requirements and business objectives, as not all stakeholders may have a cybersecurity background. Effective communication and education are key to ensuring that risk recommendations are understood and adopted. Additionally, prioritizing risks with limited resources and balancing security with operational needs can be complex, requiring strong collaboration and negotiation skills.

What is the difference between Security Risk Analyst vs Security Analyst?

AspectSecurity Risk AnalystSecurity Analyst
CertificationsCompTIA Security+, CISSP, CISACompTIA Security+, CISSP, CEH
Work EnvironmentRisk assessment, vulnerability analysis, policy developmentMonitoring security systems, incident response, security audits
Employer & Industry UsageFinancial, healthcare, government sectors focusing on risk mitigationIT departments across various industries focusing on security operations

While both roles focus on cybersecurity, Security Risk Analysts primarily assess and manage potential security threats and vulnerabilities, emphasizing risk mitigation strategies. Security Analysts tend to monitor security systems, respond to incidents, and ensure ongoing security measures. Both roles often require similar certifications and work environments but differ in their core responsibilities within cybersecurity teams.

What is a security risk analyst?

A security risk analyst is a professional who identifies, assesses, and mitigates security threats to an organization’s information systems. They analyze vulnerabilities, develop security strategies, and often use tools like risk assessment frameworks and security software to protect data and infrastructure.
What are popular job titles related to Security Risk Analyst jobs in Philadelphia, PA? For Security Risk Analyst jobs in Philadelphia, PA, the most frequently searched job titles are:
What job categories do people searching Security Risk Analyst jobs in Philadelphia, PA look for? The top searched job categories for Security Risk Analyst jobs in Philadelphia, PA are:
What cities near Philadelphia, PA are hiring for Security Risk Analyst jobs? Cities near Philadelphia, PA with the most Security Risk Analyst job openings:
Infographic showing various Security Risk Analyst job openings in Philadelphia, PA as of July 2026, with employment types broken down into 62% Full Time, 15% Part Time, 8% Temporary, and 15% Contract. Highlights an 77% In-person, 15% Hybrid, and 8% Remote job distribution, with an average salary of $100,206 per year, or $48.2 per hour.

Vulnerability Risk Analyst

RIT Solutions, Inc.

Malvern, PA • On-site

Full-time

Re-posted 10 days ago


Job description

Job Summary:
RIT Solutions, Inc. is a company focused on cybersecurity solutions, and they are seeking a Vulnerability Risk Analyst. The role involves preparing detailed reports on vulnerabilities, conducting independent analyses, and leading efforts in vulnerability management to ensure the security posture of the organization.
Responsibilities:
• Prepare detailed reporting on vulnerabilities and related risks, integrating risk concepts such as impact and likelihood to ensure proper prioritization. Reporting will outline security posture, vulnerability trends, and mitigation results.
• Conducts independent analysis of vulnerabilities to identify thematic issues, and impact on systems. Support risk scoring.
• Leads scrums and huddles to support the tracking of vulnerability management efforts. Maintain Kanban boards that track remediation efforts.
• Supports the documentation of process & controls gaps that contribute to vulnerability risk.
• Coordinates with Technical Security Advisors to ensure remediation plans and status are up-to-date and accurate.
• Maintaining vulnerability management procedures.
• Participates in special projects and performs other duties as assigned.
Qualifications:
Required:
• Microsoft 365 and Copilot: Robust understanding of Microsoft 365 and Copilot functionalities, including integration and customization.
• Bachelor's degree in Cybersecurity, Information Systems, Computer Science, or equivalent practical experience.
• Security certification(s) preferred (e.g., Security+, SSCP, CISSP or equivalent), especially if the role will independently assess risk treatment quality.
• Demonstrated foundation in cybersecurity principles (vulnerability lifecycle, risk concepts, remediation approaches) and the ability to apply them in an enterprise environment.
• Proven security expertise across infrastructure products and services.
• Working knowledge of vulnerability management outcomes: identifying, assessing, prioritizing, and enabling workflows that help drive vulnerabilities to closure or approved treatment.
• Experience supporting or governing vulnerability scanning/assessment programs for enterprise assets (on prem and/or cloud workloads), including compliance to remediation SLAs.
• Ability to perform a structured investigation of a suspected false positive and document the outcome and decision path.
• Ability to explain a vulnerability's impact in plain business terms and produce a concise risk treatment summary that is approver‐ready.
• Ability to support downgrade/override decisions with written rationale that is auditable and explicitly scope.
• Proficiency in creating, structuring, and analyzing datasets using automation, development frameworks, and AI‐driven tools.
• Robust writing skills to produce audit‐ready rationales and summaries (risk acceptances, downgrade rationale, false positive outcomes).
• Comfortable facilitating discussions with technical and non‐technical stakeholders to clarify facts, confirm remediation options, and drive decisions.
• Robust attention to detail for data accuracy.
• Familiarity with vulnerability and posture tooling across on‐prem and cloud contexts.
• Experience with reporting ecosystems.
Company:
Jobdiva Job Portal: https://www1.jobdiva.com/candidates/myjobs/searchjobsdone.jsp?a=xbjdnwgjodtga1y1im2g881fkkeiwd0775lbvq8yqgps8vb2q36w2vj1ga6xxork&compid=-1 Recruitment (contingency search and campus selection). Founded in 2019, the company is headquartered in Arlington, USA, with a team of 201-500 employees. The company is currently Growth Stage.