Senior Analyst, GRC
Austin, TX · On-site
Focused on technical risk management, you'll be a key partner to security, engineering, IT, and business teams to assess and manage security risks across our information asset ecosystem. This role is ...
Austin, TX · On-site
Focused on technical risk management, you'll be a key partner to security, engineering, IT, and business teams to assess and manage security risks across our information asset ecosystem. This role is ...
Austin, TX · On-site
Focused on technical risk management, you'll be a key partner to security, engineering, IT, and business teams to assess and manage security risks across our information asset ecosystem. This role is ...
Austin, TX · On-site
Focused on technical risk management, you'll be a key partner to security, engineering, IT, and business teams to assess and manage security risks across our information asset ecosystem. This role is ...
Austin, TX · On-site
Focused on technical risk management, you'll be a key partner to security, engineering, IT, and business teams to assess and manage security risks across our information asset ecosystem. This role is ...
Austin, TX · On-site
Focused on technical risk management, you'll be a key partner to security, engineering, IT, and business teams to assess and manage security risks across our information asset ecosystem. This role is ...
Austin, TX · On-site
Focused on technical risk management, you'll be a key partner to security, engineering, IT, and business teams to assess and manage security risks across our information asset ecosystem. This role is ...
Austin, TX · On-site
Focused on technical risk management, you'll be a key partner to security, engineering, IT, and business teams to assess and manage security risks across our information asset ecosystem. This role is ...
Quick apply
Austin, TX · On-site
Focused on technical risk management, you'll be a key partner to security, engineering, IT, and business teams to assess and manage security risks across our information asset ecosystem. This role is ...
Austin, TX · On-site
$95K/yr
Manage the security responsibility matrix and advise DIR clients on risk mitigation strategies. Qualifications & Requirements: * 10+ years of cybersecurity experience with a focus on GRC and ...
Quick apply
Austin, TX · On-site
$95K/yr
Manage the security responsibility matrix and advise DIR clients on risk mitigation strategies. Qualifications & Requirements: * 10+ years of cybersecurity experience with a focus on GRC and ...
Austin, TX · On-site
... high-risk vulnerabilities. Responsibilities : • Review, triage, and manage vulnerability ... Security risk and urgency, Scope and impacted systems, Remediation approach, Testing and validation ...
Austin, TX · On-site
... high-risk vulnerabilities. Responsibilities : • Review, triage, and manage vulnerability ... Security risk and urgency, Scope and impacted systems, Remediation approach, Testing and validation ...
$184K - $277K/yr
We are seeking an experienced Security Engineer to play a pivotal role in shaping the security ... proactive risk management. Our scope spans all of Apple's application and infrastructure ...
$184K - $277K/yr
We are seeking an experienced Security Engineer to play a pivotal role in shaping the security ... proactive risk management. Our scope spans all of Apple's application and infrastructure ...
$184K - $277K/yr
We are seeking an experienced Security Engineer to play a pivotal role in shaping the security ... proactive risk management. Our scope spans all of Apple's application and infrastructure ...
$184K - $277K/yr
We are seeking an experienced Security Engineer to play a pivotal role in shaping the security ... proactive risk management. Our scope spans all of Apple's application and infrastructure ...
$184K - $277K/yr
We are seeking an experienced Security Engineer to play a pivotal role in shaping the security ... proactive risk management. Our scope spans all of Apple's application and infrastructure ...
$184K - $277K/yr
We are seeking an experienced Security Engineer to play a pivotal role in shaping the security ... proactive risk management. Our scope spans all of Apple's application and infrastructure ...
... management, and third party risk issues and vulnerabilities by working with multiple stakeholder teams, including Privacy, Legal, HR, IT, etc • Engage with the Business and SMEs to ensure ...
... management, and third party risk issues and vulnerabilities by working with multiple stakeholder teams, including Privacy, Legal, HR, IT, etc • Engage with the Business and SMEs to ensure ...
Bachelor's degree or equivalent practical experience. * 4+ years of experience in AI governance, data privacy, security risk management, compliance and controls, AI product risk, model risk ...
Bachelor's degree or equivalent practical experience. * 4+ years of experience in AI governance, data privacy, security risk management, compliance and controls, AI product risk, model risk ...
Round Rock, TX · On-site
$120 - $180/hr
Cryptography Security Architect Consultant The Dell Security & Resiliency organization manages the security risk across all aspects of Dell's business. You will have an excellent opportunity to ...
Round Rock, TX · On-site
$120 - $180/hr
Cryptography Security Architect Consultant The Dell Security & Resiliency organization manages the security risk across all aspects of Dell's business. You will have an excellent opportunity to ...
This position is located at Bureau of the Fiscal Service, Security Operations Division. As an Investigative Analyst (Enterprise Fraud Risk Management Program), you will perform specialized business ...
This position is located at Bureau of the Fiscal Service, Security Operations Division. As an Investigative Analyst (Enterprise Fraud Risk Management Program), you will perform specialized business ...
Austin, TX · On-site
$141 - $180/hr
Director, Security Assurance Function/Dept: Business Technology / Security Purpose of the Job As ... GRC enforces governance, implements risk management strategies, and ensures compliance through ...
Austin, TX · On-site
$141 - $180/hr
Director, Security Assurance Function/Dept: Business Technology / Security Purpose of the Job As ... GRC enforces governance, implements risk management strategies, and ensures compliance through ...
$120K - $217K/yr
Who we are looking for We are seeking a highly technical and handson Security Guardian , Vice ... About State Street Across the globe, institutional investors rely on us to help them manage risk ...
$120K - $217K/yr
Who we are looking for We are seeking a highly technical and handson Security Guardian , Vice ... About State Street Across the globe, institutional investors rely on us to help them manage risk ...
Risk control, risk management, or safety and security-related professional designations or certifications preferred. Other Skills, Knowledge, and Requirements * This is member facing role and as a ...
Risk control, risk management, or safety and security-related professional designations or certifications preferred. Other Skills, Knowledge, and Requirements * This is member facing role and as a ...
The mission of Quality and Risk Management (QRM) is to manage the risk in our growing and ... Security, and Cyber Operate services. * Provides guidance to engagement leaders and teams on risk ...
The mission of Quality and Risk Management (QRM) is to manage the risk in our growing and ... Security, and Cyber Operate services. * Provides guidance to engagement leaders and teams on risk ...
Risk & Compliance * Identity & Access Management * Data Protection * Cyber Design * Incident Response * Security Architecture * Business Partnership Qualifications Required: * Bachelor's degree or ...
Risk & Compliance * Identity & Access Management * Data Protection * Cyber Design * Incident Response * Security Architecture * Business Partnership Qualifications Required: * Bachelor's degree or ...
Austin, TX · On-site
Security and Risk Management, Asset Security, Security Architecture and Engineering, Communications and Network Security, Identify and Access Management, Security Assessment and Testing, Security ...
Austin, TX · On-site
Security and Risk Management, Asset Security, Security Architecture and Engineering, Communications and Network Security, Identify and Access Management, Security Assessment and Testing, Security ...
... securities, investment management and wealth management services. The Firm's employees serve ... Operational risk is defined as the risk of loss or impacts resulting from inadequate or failed ...
... securities, investment management and wealth management services. The Firm's employees serve ... Operational risk is defined as the risk of loss or impacts resulting from inadequate or failed ...
$10.24 - $15.61
2% of jobs
$15.61 - $20.98
0% of jobs
$20.98 - $26.36
1% of jobs
$26.36 - $31.73
1% of jobs
$31.73 - $37.10
1% of jobs
$41.12 is the 25th percentile. Wages below this are outliers.
$37.10 - $42.47
26% of jobs
$42.47 - $47.84
11% of jobs
The median wage is $49.76 / hr.
$47.84 - $53.21
22% of jobs
$53.21 - $58.58
9% of jobs
$59 is the 75th percentile. Wages above this are outliers.
$58.58 - $63.95
17% of jobs
$63.95 - $69.32
9% of jobs
$10
$49
$69
| Aspect | Security Risk Management | Security Analyst |
|---|---|---|
| Certifications | CRISC, CISSP, CISM | CompTIA Security+, CISSP, CEH |
| Work Environment | Strategic, policy-focused, risk assessment | Operational, monitoring, incident response |
| Employer & Industry Usage | Organizations managing enterprise security risks | Security teams, cybersecurity firms, IT departments |
Security Risk Management focuses on identifying, assessing, and mitigating security risks at an organizational level, often involving policy development and strategic planning. In contrast, Security Analysts primarily monitor security systems, analyze threats, and respond to incidents. Both roles are essential but differ in scope and responsibilities within the cybersecurity field.
For Security Risk Management jobs in Austin, TX, the most frequently searched job titles are:
The top searched job categories for Security Risk Management jobs in Austin, TX are:
Cities near Austin, TX with the most Security Risk Management job openings:

Manage individual risks throughout the entire risk lifecycle, including assessment, scoring, treatment, acceptance, and closure.
Bring findings from pen tests, audits, vulnerability scans, and configuration reviews onto the risk register, grouping related issues into root-cause risks and tracking exceptions.
Evaluate risks and configuration issues across cloud and SaaS environments, translating them into clear, actionable risk statements with defensible severity.
We're looking for a highly motivated and detail-oriented Senior Cybersecurity Risk Analyst to join our Governance, Risk, and Compliance (GRC) organization. Focused on technical risk management, you'll be a key partner to security, engineering, IT, and business teams to assess and manage security risks across our information asset ecosystem.
This role is designed for a self-driven, critical thinker who views AI as a force multiplier. Our program tracks risks and exceptions: findings from pen tests, audits, and scans are grouped under the bigger risks they point to so we address the root cause, and escalated exceptions are tracked so items stay visible even when they're accepted. You won't just follow a risk manual, you'll use new technologies and tools to synthesize complex technical data, accelerate risk assessments, and provide the business with high-accuracy insights. You'll play a key role in the entire risk journey. This position reports to our Director, GRC.
WHAT YOU'LL DO:
End-to-End Risk Lifecycle Management: Manage individual risks end to end, including assessment, scoring, treatment tracking, risk acceptance, and closure. Apply qualitative methods and partner with GRC leadership to validate risk levels against appetite and set priority.
Issues/Findings-to-Risk Mapping: Bring findings from pen tests, audits, vulnerability scans, issue management, data protection, and configuration reviews onto the register. Combine related discoveries into root-cause risks with a treatment plan, and track severe accepted or untreated items as exceptions so they stay visible until the risk changes.
Risk-to-Control Mapping: Map each risk to the controls that mitigate it so that treatment plans, control gaps, and framework alignment (ISO/IEC 27001, SOC 2, NIST CSF / 800-53) all draw from the same picture. Recommend best-practice controls and treatment options where gaps exist.
Technical Risk Assessment: Evaluate risks and configuration issues across our cloud and SaaS ecosystem, including IAM, network security, vulnerability findings, and pen test results, and translate them into clear, actionable risk statements with defensible severity.
Partnerships: You'll work directly with architects, engineering, Security, IT, system owners, and business stakeholders to validate severity, agree on treatment, and keep entries current.
Data Quality Ownership: Keep the risk register complete, current, consistent, and defensible. You'll catch stale entries, unclear ownership, and scoring drift before they reach a report.
AI-Powered Operations: Use AI tooling daily to accelerate risk statement drafting, evidence summarization, scenario modeling, and reporting, and look for new opportunities to automate manual GRC work.
WHAT WE ARE LOOKING FOR:
Experience: 6+ years in security risk management, GRC, or cybersecurity, with hands-on exposure to cloud environments. Demonstrated experience managing risk above the individual finding level, including aggregating related issues into broader risks, driving systemic treatment, and measuring residual risk.
The AI Edge: Current, hands-on AI fluency. You use LLMs in your daily work, can structure prompts that produce accurate and repeatable outputs, and understand failure modes like hallucination and data privacy well enough to know when to double-check results.
Data Quality Mindset: Strong attention to data quality. You spot stale records, inconsistent scores, and unclear ownership, and you improve the process that let them happen.
Tooling Fluency: Comfortable with Jira and Google Workspace (Sheets, Docs, Slides) as daily working tools, from running workflows in Jira to building analysis and reporting artifacts in Google.
Stakeholder Partnership: A track record of working well with technical and business teams, including engineers, offensive security, IT, and system owners, and building credibility with partners you don't have authority over.
Independent Contributor: We are a lean team, so you'll work with real autonomy. Proven ability to work independently, take ownership of tasks, prioritize effectively, and raise blockers early in a fast-moving environment with evolving architectures.
Technical Knowledge: Able to read network diagrams, vulnerability reports, and pen test findings, understand attack paths, and engage confidently with Security Architects and SecOps engineers. Working knowledge of cloud infrastructure security (AWS, GCP, or Azure) and at least one security framework (ISO 27001, SOC 2, or NIST CSF / NIST 800-53). You know common security controls well enough to recommend appropriate treatments based on best practice, even though deep implementation expertise sits with the engineering teams.
Communication: Strong writing and presentation skills, with the ability to explain technical issues to non-technical audiences and walk business stakeholders through risk data in live meetings.
Preferred
Experience in high-growth SaaS or cloud-native environments
Familiarity with DevOps and CI/CD security controls
Experience with modern GRC platforms and integrating AI tooling into daily workflows
Certifications such as CRISC, CISM, CISSP, or cloud provider certifications.
Base Pay Range:
111,760.00 - 153,670.00 USD AnnualThis role may also be eligible for Equity Compensation and/or Bonus Incentive Compensation. Procore is committed to offering competitive, fair, and commensurate compensation. Actual compensation will be based on a candidate's job-related skills, experience, education or training, and location.
For Los Angeles County (unincorporated) Candidates:Procore will consider for employment all qualified applicants, including those with arrest or conviction records, in accordance with the requirements of applicable federal, state, and local laws, including the City of Los Angeles' Fair Chance Initiative for Hiring Ordinance, the Los Angeles County Fair Chance Ordinance for Employers, and the California Fair Chance Act.
A criminal history may have a direct, adverse, and negative relationship on the following job duties, potentially resulting in the withdrawal of the conditional offer of employment: 1. appropriately managing, accessing, and handling confidential information including proprietary and trade secret information, as well as accessing Procore's information technology systems and platforms; 2. interacting with and occasionally having unsupervised contact with internal/external customers, stakeholders, and/or colleagues; and 3. exercising sound judgment.
Sourced by ZipRecruiter
Software development
1,001 - 5,000 Employees
Carpinteria, CA, US
2002