The Information Security Risk Oversight Professional serves as a key member of the Cybersecurity Risk Oversight team within the Second Line of Defense (2LoD). This role is accountable for providing ...
The Information Security Risk Oversight Professional serves as a key member of the Cybersecurity Risk Oversight team within the Second Line of Defense (2LoD). This role is accountable for providing ...
Information Security Risk And Compliance Analyst Sunflower Bank, N.A is looking for an energetic, highly motivated individual to fill the position of a full-time Information Security Risk and ...
New
Information Security Risk And Compliance Analyst Sunflower Bank, N.A is looking for an energetic, highly motivated individual to fill the position of a full-time Information Security Risk and ...
New
They are seeking an energetic Information Security Risk and Compliance Analyst to provide tactical support to the enterprise's Information Security Risk & Compliance function, focusing on control ...
They are seeking an energetic Information Security Risk and Compliance Analyst to provide tactical support to the enterprise's Information Security Risk & Compliance function, focusing on control ...
The Information Security Risk and Compliance Analyst performs recurring and ad hoc assessments such as user access reviews, vendor due diligence and monitoring, and other control validation tasks to ...
The Information Security Risk and Compliance Analyst performs recurring and ad hoc assessments such as user access reviews, vendor due diligence and monitoring, and other control validation tasks to ...
The Information Security Risk and Compliance Analyst performs recurring and ad hoc assessments such as user access reviews, vendor due diligence and monitoring, and other control validation tasks to ...
The Information Security Risk and Compliance Analyst performs recurring and ad hoc assessments such as user access reviews, vendor due diligence and monitoring, and other control validation tasks to ...
The Information Security Risk and Compliance Analyst performs recurring and ad hoc assessments such as user access reviews, vendor due diligence and monitoring, and other control validation tasks to ...
Quick apply
The Information Security Risk and Compliance Analyst performs recurring and ad hoc assessments such as user access reviews, vendor due diligence and monitoring, and other control validation tasks to ...
Wells Fargo is a Senior Lead Cloud & AI Risk Information Security Analyst. This person will report to the Head of Cloud & AI Security Governance, Risk & Controls. This role will be responsible for ...
Wells Fargo is a Senior Lead Cloud & AI Risk Information Security Analyst. This person will report to the Head of Cloud & AI Security Governance, Risk & Controls. This role will be responsible for ...
Director, Governance, Risk, & Compliance
Richardson, TX · On-site
$133K - $247K/yr
Job Summary This position is responsible for leading the execution of Information Security governance, risk, and compliance programs; developing and maintaining the compliance framework; supporting ...
Director, Governance, Risk, & Compliance
Richardson, TX · On-site
$133K - $247K/yr
Job Summary This position is responsible for leading the execution of Information Security governance, risk, and compliance programs; developing and maintaining the compliance framework; supporting ...
Director, Governance, Risk, & Compliance
Richardson, TX · On-site
$133K - $247K/yr
Job Summary This position is responsible for leading the execution of Information Security governance, risk, and compliance programs; developing and maintaining the compliance framework; supporting ...
Director, Governance, Risk, & Compliance
Richardson, TX · On-site
$133K - $247K/yr
Job Summary This position is responsible for leading the execution of Information Security governance, risk, and compliance programs; developing and maintaining the compliance framework; supporting ...
Position Summary Working as part of the Information Security Team, the GRC Analyst - Enterprise & Third Party Risk will support and lead internal risk assessments, exception reviews, and third-party ...
Position Summary Working as part of the Information Security Team, the GRC Analyst - Enterprise & Third Party Risk will support and lead internal risk assessments, exception reviews, and third-party ...
Position Summary Working as part of the Information Security Team, the GRC Analyst - Enterprise & Third Party Risk will support and lead internal risk assessments, exception reviews, and third-party ...
Position Summary Working as part of the Information Security Team, the GRC Analyst - Enterprise & Third Party Risk will support and lead internal risk assessments, exception reviews, and third-party ...
Performs vendor security risk assessments using established processes and advises on opportunities to reduce security risk in alignment with risk appetite. * Identifies security capability metrics ...
Performs vendor security risk assessments using established processes and advises on opportunities to reduce security risk in alignment with risk appetite. * Identifies security capability metrics ...
Information Security Analyst 3
Denton, TX · On-site
Performs vendor security risk assessments using established processes and advises on opportunities to reduce security risk in alignment with risk appetite. * Identifies security capability metrics ...
Information Security Analyst 3
Denton, TX · On-site
Performs vendor security risk assessments using established processes and advises on opportunities to reduce security risk in alignment with risk appetite. * Identifies security capability metrics ...
Application Security Vulnerability Risk Lead
Dallas, TX · On-site
$141K - $211K/yr
As a Technology Risk: Vulnerability Management & Application Security Domain Lead, you will be responsible for overseeing the end-to-end Technology Risk Management Lifecycle within the Vulnerability ...
Application Security Vulnerability Risk Lead
Dallas, TX · On-site
$141K - $211K/yr
As a Technology Risk: Vulnerability Management & Application Security Domain Lead, you will be responsible for overseeing the end-to-end Technology Risk Management Lifecycle within the Vulnerability ...
Application Security Vulnerability Risk Lead
Dallas, TX · On-site
$141K - $211K/yr
As a Technology Risk: Vulnerability Management & Application Security Domain Lead, you will be responsible for overseeing the end-to-end Technology Risk Management Lifecycle within the Vulnerability ...
Application Security Vulnerability Risk Lead
Dallas, TX · On-site
$141K - $211K/yr
As a Technology Risk: Vulnerability Management & Application Security Domain Lead, you will be responsible for overseeing the end-to-end Technology Risk Management Lifecycle within the Vulnerability ...
Lead and execute information security risk assessments for projects and systems. * Partner with IT and business teams to integrate security controls into key initiatives. * Monitor vulnerabilities ...
Quick apply
Lead and execute information security risk assessments for projects and systems. * Partner with IT and business teams to integrate security controls into key initiatives. * Monitor vulnerabilities ...
Years Required/ Preferred Experience * 6 Years Required, Proven track record of leading advanced risk management initiatives by designing and deploying integrated security platforms and analytics ...
Quick apply
Years Required/ Preferred Experience * 6 Years Required, Proven track record of leading advanced risk management initiatives by designing and deploying integrated security platforms and analytics ...
Info Security Analyst
Irving, TX · On-site
$85K - $100K/yr
Security Risk & Incident Support • Partner with engineering, infrastructure, and application teams to identify and mitigate security risks. • Conduct root cause analysis (RCA) for security ...
Info Security Analyst
Irving, TX · On-site
$85K - $100K/yr
Security Risk & Incident Support • Partner with engineering, infrastructure, and application teams to identify and mitigate security risks. • Conduct root cause analysis (RCA) for security ...
Security Leadership & Program Oversight * Provide strategic leadership for all GMS security ... Risk Assessment & Operational Support * Monitor national and international events to identify ...
Security Leadership & Program Oversight * Provide strategic leadership for all GMS security ... Risk Assessment & Operational Support * Monitor national and international events to identify ...
GMS Business Security Leader
Southlake, TX · On-site +1
Risk Assessment & Operational Support * Monitor national and international events to identify ... Conduct security audits and inspections; support integration of security practices in newly ...
GMS Business Security Leader
Southlake, TX · On-site +1
Risk Assessment & Operational Support * Monitor national and international events to identify ... Conduct security audits and inspections; support integration of security practices in newly ...
Security Risk information
See Dallas, TX salary details
$10.23 - $15.59
2% of jobs
$15.59 - $20.95
0% of jobs
$20.95 - $26.31
1% of jobs
$26.31 - $31.67
1% of jobs
$31.67 - $37.03
1% of jobs
$41.05 is the 25th percentile. Wages below this are outliers.
$37.03 - $42.39
26% of jobs
$42.39 - $47.75
11% of jobs
The median wage is $49.67 / hr.
$47.75 - $53.11
22% of jobs
$53.11 - $58.48
9% of jobs
$58.90 is the 75th percentile. Wages above this are outliers.
$58.48 - $63.84
17% of jobs
$63.84 - $69.20
9% of jobs
$10
$49
$69
How much do security risk jobs pay per hour?
What is the difference between Security Risk vs Security Analyst?
| Aspect | Security Risk | Security Analyst |
|---|---|---|
| Required Credentials | Knowledge of security principles, risk assessment skills | Certifications like CompTIA Security+, CISSP, or CISA |
| Work Environment | Identifying potential threats, assessing vulnerabilities | Monitoring security systems, analyzing security data |
| Employer & Industry Usage | Used across industries to identify threats | Commonly employed in cybersecurity teams |
| Search & Comparison Intent | Understanding risk factors and mitigation | Analyzing security incidents and improving defenses |
Security Risk involves identifying and assessing potential threats to an organization, focusing on risk management strategies. Security Analysts, on the other hand, monitor and analyze security systems to detect and respond to threats. While both roles require security knowledge and certifications, Security Risk professionals focus on risk assessment, whereas Security Analysts are more involved in operational security monitoring.
What are security risk professionals?
Can you make $500,000 a year in cyber security?
Is SOC 1 entry level?
What is the highest paying security job?
What are some common challenges faced by Security Risk professionals, and how can they overcome them?
What are the key skills and qualifications needed to thrive as a Security Risk Analyst, and why are they important?
Is security risk management a good career?

Full-time
Medical, Dental, Vision, Life, Retirement, PTO
Posted 14 days ago
U.S. Bank rating
8.2
Based on 351 frontline employees who took The Breakroom Quiz
39th of 142 rated banks
Job description
At U.S. Bank, we're on a journey to do our best. Helping the customers and businesses we serve to make better and smarter financial decisions and enabling the communities we support to grow and succeed. We believe it takes all of us to bring our shared ambition to life, and each person is unique in their potential. A career with U.S. Bank gives you a wide, ever-growing range of opportunities to discover what makes you thrive at every stage of your career. Try new things, learn new skills and discover what you excel at-all from Day One.
Job DescriptionThe Information Security Risk Oversight Professional serves as a key member of the Cybersecurity Risk Oversight team within the Second Line of Defense (2LoD). This role is accountable for providing independent oversight and credible challenge of the First Line Information Security program to ensure risks are appropriately identified, assessed, managed, monitored, and reported in alignment with regulatory requirements, industry standards, and internal risk appetite.
This position is intentionally designed for a senior, autonomous professional who can manage their own oversight portfolio, prioritize work based on material risk, and engage effectively with Information Security Services, Technology teams, and senior leadership.
Key Responsibilities
Provide independent oversight and credible challenge of the Information Security program across multiple security pillars, including governance, risk assessments, controls, metrics, and issue management.
Perform riskbased assessments of first line security practices, identifying gaps, weaknesses, thematic concerns, emerging risks, and control deficiencies.
Develop and articulate independent risk opinions supported by sound analysis, evidence, and professional judgment.
Evaluate alignment of first line activities with applicable laws, regulations, regulatory guidance, industry standards (e.g., NIST 800-53, FFIEC, PCI, NIST CSF 2.0, etc), and internal policies.
Monitor key risk indicators, security metrics, assessment results, and issue trends to identify systemic risks or areas requiring escalation.
Escalate material risks, control weaknesses, or ineffective risk management practices through appropriate governance and reporting channels.
Act as a subject matter expert on information security risk, providing insights and guidance to stakeholders while maintaining 2LoD independence.
Build and maintain strong, professional relationships with first line stakeholders while confidently challenging assumptions, conclusions, and risk positions when necessary.
Contribute to executivelevel risk reporting by clearly summarizing risk posture, trends, and areas of concern in a concise and defensible manner.
Stay current on evolving cybersecurity threats, regulatory expectations, and industry best practices to continuously strengthen oversight effectiveness.
Basic Qualifications
Bachelor's degree, or equivalent work experience
Typically more than eight years of applicable experience
Preferred Skills/Experience
Strong foundational understanding of information security domains (e.g., vulnerability management, identity and access management, application security, cloud security, security governance, incident management).
Demonstrated ability to perform risk assessments and oversight activities with depth, critical thinking, and professional skepticism.
Experience operating in or with a Second Line of Defense, audit, or regulatory environment is strongly preferred.
Proven ability to work independently and autonomously, managing priorities and delivering highquality work with limited direction.
Strong written and verbal communication skills, including the ability to translate technical risk into clear, executiveready insights.
Ability to engage confidently with senior stakeholders while maintaining independence, objectivity, and professionalism.
Relevant certifications (e.g., CISSP, CISA, CRISC, CISM) are preferred but not required.
This role requires working from a U.S. Bank location three (3) or more days per week.
If there's anything we can do to accommodate a disability during any portion of the application or hiring process, please refer to ourdisability accommodations for applicants.
Benefits:
Our approach to benefits and total rewards considers our team members' whole selves and what may be needed to thrive in and outside work. That's why our benefits are designed to help you and your family boost your health, protect your financial security and give you peace of mind. Our benefits include the following:
Healthcare (medical, dental, vision)
Basic term and optional term life insurance
Short-term and long-term disability
Pregnancy disability and parental leave
401(k) and employer-funded retirement plan
Paid vacation (from two to five weeks depending on salary grade and tenure)
Up to 11 paid holiday opportunities
Adoption assistance
Sick and Safe Leave accruals of one hour for every 30 worked, up to 80 hours per calendar year unless otherwise provided by law
Review our full benefits available by employment status here.
U.S. Bank is an equal opportunity employer. We consider all qualified applicants without regard to race, religion, color, sex, national origin, age, sexual orientation, gender identity, disability or veteran status, and other factors protected under applicable law.
E-Verify
U.S. Bank participates in the U.S. Department of Homeland Security E-Verify program in all facilities located in the United States and certain U.S. territories. The E-Verify program is an Internet-based employment eligibility verification system operated by the U.S. Citizenship and Immigration Services. Learn more about theE-Verify program.
The salary range reflects figures based on the primary location, which is listed first. The actual range for the role may differ based on the location of the role. In addition to salary, U.S. Bank offers a comprehensive benefits package, including incentive and recognition programs, equity stock purchase 401(k) contribution and pension (all benefits are subject to eligibility requirements). Pay Range: $119,765.00 - $140,900.00U.S. Bank will consider qualified applicants with arrest or conviction records for employment. U.S. Bank conducts background checks consistent with applicable local laws, including the Los Angeles County Fair Chance Ordinance and the California Fair Chance Act as well as the San Francisco Fair Chance Ordinance. U.S. Bank is subject to, and conducts background checks consistent with the requirements of Section 19 of the Federal Deposit Insurance Act (FDIA). In addition, certain positions may also be subject to the requirements of FINRA, NMLS registration, Reg Z, Reg G, OFAC, the NFA, the FCPA, the Bank Secrecy Act, the SAFE Act, and/or federal guidelines applicable to an agreement, such as those related to ethics, safety, or operational procedures.
Applicants must be able to comply with U.S. Bank policies and procedures including the Code of Ethics and Business Conduct and related workplace conduct and safety policies.
Posting may be closed earlier due to high volume of applicants.
What U.S. Bank employees say
Pay
Benefits
Hours and flexibility
Workplace
Get the full story on Breakroom
About U.S. Bank
Sourced by ZipRecruiter
U.S. Bank is a reputable and established financial institution that plays a significant role in the banking sector. With a history spanning over 150 years, U.S. Bank has built a strong foundation of trust and reliability. As a comprehensive bank, they offer a wide array of financial products and services to cater to the diverse needs of their customers, including individuals, businesses, and communities. Customer satisfaction is of utmost importance to U.S. Bank. They prioritize delivering exceptional service and fostering long-term relationships with their clients. Through their extensive network of branches and advanced digital banking platforms, U.S. Bank ensures convenient access to their services, empowering customers to manage their finances efficiently and securely.
Industry
Banking and credit intermediation
Company size
10,000+ Employees
Headquarters location
Minneapolis, MN, US
Year founded
1863