Risk Management: Ability to clearly explain security risks to non-technical stakeholders using ... Analytical Thinking: Strong analytical and problem-solving capabilities, with the ability to ...
Risk Management: Ability to clearly explain security risks to non-technical stakeholders using ... Analytical Thinking: Strong analytical and problem-solving capabilities, with the ability to ...
Risk Management: Ability to clearly explain security risks to non-technical stakeholders using ... Analytical Thinking: Strong analytical and problem-solving capabilities, with the ability to ...
Risk Management: Ability to clearly explain security risks to non-technical stakeholders using ... Analytical Thinking: Strong analytical and problem-solving capabilities, with the ability to ...
IT Security Consultant
Sacramento, CA · On-site
Must have a minimum of five (5) years of experience providing IT consulting services in information security, including security risk analysis, network penetration and testing, identification of ...
IT Security Consultant
Sacramento, CA · On-site
Must have a minimum of five (5) years of experience providing IT consulting services in information security, including security risk analysis, network penetration and testing, identification of ...
Third-Party Security Risk Specialist
Sacramento, CA · On-site
$8.6K - $11K/mo
... the Information Technology Manager I, the Third-Party Security Risk Specialist serves as a senior ... The incumbent performs complex technical and analytical work with attention to details and ...
Third-Party Security Risk Specialist
Sacramento, CA · On-site
$8.6K - $11K/mo
... the Information Technology Manager I, the Third-Party Security Risk Specialist serves as a senior ... The incumbent performs complex technical and analytical work with attention to details and ...
Senior Enterprise Risk Analyst
Lakewood, CA · On-site
$102K - $174K/yr
Job Summary The Senior Enterprise Risk Analyst plays a critical role in identifying, assessing ... information security and privacy requirements. Required Knowledge Strong understanding of banking ...
Quick apply
Senior Enterprise Risk Analyst
Lakewood, CA · On-site
$102K - $174K/yr
Job Summary The Senior Enterprise Risk Analyst plays a critical role in identifying, assessing ... information security and privacy requirements. Required Knowledge Strong understanding of banking ...
Security Risk Manager San Francisco
San Francisco, CA · On-site
$194 - $220/hr
This is a senior role for someone who goes beyond frameworks and checklists -- you will engineer ... About you * 7+ years of experience in information security with a strong focus on security risk ...
Security Risk Manager San Francisco
San Francisco, CA · On-site
$194 - $220/hr
This is a senior role for someone who goes beyond frameworks and checklists -- you will engineer ... About you * 7+ years of experience in information security with a strong focus on security risk ...
Sr. Information Security Engineer
Santa Clara, CA · On-site
$120K - $160K/yr
OMNIVISION's Information Security organization is looking for a hands-on Sr. Information Security ... cyber threat analytics * Good communications skills (oral and written) with a history of ...
Sr. Information Security Engineer
Santa Clara, CA · On-site
$120K - $160K/yr
OMNIVISION's Information Security organization is looking for a hands-on Sr. Information Security ... cyber threat analytics * Good communications skills (oral and written) with a history of ...
OMNIVISION's Information Security organization is looking for a hands-on Sr. Information Security ... cyber threat analytics * Good communications skills (oral and written) with a history of ...
Quick apply
OMNIVISION's Information Security organization is looking for a hands-on Sr. Information Security ... cyber threat analytics * Good communications skills (oral and written) with a history of ...
Sr. Information Security Engineer
Santa Clara, CA · On-site
$120K - $160K/yr
OMNIVISION's Information Security organization is looking for a hands-on Sr. Information Security ... cyber threat analytics * Good communications skills (oral and written) with a history of ...
Sr. Information Security Engineer
Santa Clara, CA · On-site
$120K - $160K/yr
OMNIVISION's Information Security organization is looking for a hands-on Sr. Information Security ... cyber threat analytics * Good communications skills (oral and written) with a history of ...
The Senior Information Security Analyst is responsible for the overall cybersecurity of assigned ... 01, Risk Management Framework (RMF) for assigned information systems, as well as maintaining ...
The Senior Information Security Analyst is responsible for the overall cybersecurity of assigned ... 01, Risk Management Framework (RMF) for assigned information systems, as well as maintaining ...
Sr. Information Security Engineer
Santa Clara, CA · On-site
$120K - $160K/yr
OMNIVISION's Information Security organization is looking for a hands-on Sr. Information Security ... cyber threat analytics * Good communications skills (oral and written) with a history of ...
Sr. Information Security Engineer
Santa Clara, CA · On-site
$120K - $160K/yr
OMNIVISION's Information Security organization is looking for a hands-on Sr. Information Security ... cyber threat analytics * Good communications skills (oral and written) with a history of ...
Sr. Information Security Engineer
Santa Clara, CA · On-site
$154K - $160K/yr
Description Job Title: Sr. Information Security Engineer Job Duties: * Design, implement, maintain ... analytics by complying with Cyber Security Standards (ISO27001, NIST CSF, CIS Benchmarks)
Sr. Information Security Engineer
Santa Clara, CA · On-site
$154K - $160K/yr
Description Job Title: Sr. Information Security Engineer Job Duties: * Design, implement, maintain ... analytics by complying with Cyber Security Standards (ISO27001, NIST CSF, CIS Benchmarks)
Sr. Information Security Engineer
Santa Clara, CA · On-site
$154K - $160K/yr
Job Title: Sr. Information Security Engineer Job Duties: * Design, implement, maintain, and support ... analytics by complying with Cyber Security Standards (ISO27001, NIST CSF, CIS Benchmarks)
Sr. Information Security Engineer
Santa Clara, CA · On-site
$154K - $160K/yr
Job Title: Sr. Information Security Engineer Job Duties: * Design, implement, maintain, and support ... analytics by complying with Cyber Security Standards (ISO27001, NIST CSF, CIS Benchmarks)
Sr. Information Security Engineer
Santa Clara, CA · On-site
$154K - $160K/yr
Job Title: Sr. Information Security Engineer Job Duties: * Design, implement, maintain, and support ... analytics by complying with Cyber Security Standards (ISO27001, NIST CSF, CIS Benchmarks)
Sr. Information Security Engineer
Santa Clara, CA · On-site
$154K - $160K/yr
Job Title: Sr. Information Security Engineer Job Duties: * Design, implement, maintain, and support ... analytics by complying with Cyber Security Standards (ISO27001, NIST CSF, CIS Benchmarks)
IT SECURITY SOLUTION ARCHITECT
Downey, CA · On-site
IT SECURITY SOLUTION ARCHITECT Downey, CA 5 months Responsibilities: 1. Serve as the Senior ... Identify security risk and proposed functional solution to address risk for Client and customers ...
IT SECURITY SOLUTION ARCHITECT
Downey, CA · On-site
IT SECURITY SOLUTION ARCHITECT Downey, CA 5 months Responsibilities: 1. Serve as the Senior ... Identify security risk and proposed functional solution to address risk for Client and customers ...
IT Systems Analyst
Burbank, CA · On-site
... risk assessments, pen tests, new security tool implementations and recommendations/findings ... senior leadership. • Administer and maintain cybersecurity training for all staff, educating ...
IT Systems Analyst
Burbank, CA · On-site
... risk assessments, pen tests, new security tool implementations and recommendations/findings ... senior leadership. • Administer and maintain cybersecurity training for all staff, educating ...
The Senior Information Security Analyst plays a hands-on role in helping protect the organization ... risk as incidents arise. Major Duties and Responsibilities: Threat Monitoring, Alert Triage ...
The Senior Information Security Analyst plays a hands-on role in helping protect the organization ... risk as incidents arise. Major Duties and Responsibilities: Threat Monitoring, Alert Triage ...
The Senior Information Security Analyst plays a hands-on role in helping protect the organization ... risk as incidents arise. Major Duties and Responsibilities: Threat Monitoring, Alert Triage ...
The Senior Information Security Analyst plays a hands-on role in helping protect the organization ... risk as incidents arise. Major Duties and Responsibilities: Threat Monitoring, Alert Triage ...
The Senior Information Security Analyst plays a hands-on role in helping protect the organization ... risk as incidents arise. Major Duties and Responsibilities: Threat Monitoring, Alert Triage ...
The Senior Information Security Analyst plays a hands-on role in helping protect the organization ... risk as incidents arise. Major Duties and Responsibilities: Threat Monitoring, Alert Triage ...
The Senior Information Security Analyst plays a hands-on role in helping protect the organization ... risk as incidents arise. Major Duties and Responsibilities: Threat Monitoring, Alert Triage ...
The Senior Information Security Analyst plays a hands-on role in helping protect the organization ... risk as incidents arise. Major Duties and Responsibilities: Threat Monitoring, Alert Triage ...
Senior Information Security Risk Analyst information
See California salary details
$31.55 - $35.46
6% of jobs
$35.46 - $39.36
5% of jobs
$39.36 - $43.26
8% of jobs
$45.12 is the 25th percentile. Wages below this are outliers.
$43.26 - $47.17
11% of jobs
$47.17 - $51.07
12% of jobs
The median wage is $54.73 / hr.
$51.07 - $54.97
8% of jobs
$54.97 - $58.88
7% of jobs
$58.88 - $62.78
9% of jobs
$64.55 is the 75th percentile. Wages above this are outliers.
$62.78 - $66.68
17% of jobs
$66.68 - $70.59
8% of jobs
$70.59 - $74.49
7% of jobs
$31
$57
$74
How much do senior information security risk analyst jobs pay per hour?
What is the difference between Senior Information Security Risk Analyst vs Information Security Analyst?
| Aspect | Senior Information Security Risk Analyst | Information Security Analyst |
|---|---|---|
| Certifications | CISSP, CISA, CRISC | CISSP, Security+, CEH |
| Work Environment | Focus on risk assessment, policy development, and strategic planning | Implementing security measures, monitoring, and incident response |
| Employer & Industry Usage | Financial, healthcare, and large enterprises with complex security needs | Variety of industries, including tech, retail, and government |
Senior Information Security Risk Analysts typically handle advanced risk assessments and strategic security planning, often requiring certifications like CISSP or CISA. Information Security Analysts focus on implementing security controls and monitoring systems. Both roles are vital in maintaining organizational security but differ in scope and seniority.
How does a senior information security risk analyst typically collaborate with other departments to manage organizational risk?
What are the key skills and qualifications needed to thrive as a senior information security risk analyst?
What does a senior information security risk analyst do?

Full-time
Medical, Retirement
Posted 12 days ago
ServiceNow rating
8.3
Based on 10 frontline employees who took The Breakroom Quiz
100th of 242 rated software companies
Job description
It all started when engineer Fred Luddy wrote code that automated a tedious task for his coworker, Phyllis. She cried tears of joy. That moment inspired Fred to build a company that could do that for everyone—freeing people from busywork so they could focus on meaningful work. Today, ServiceNow is the AI control tower for business reinvention. Our ServiceNow AI platform brings together any AI, any data, and any workflow— helping 85% of the Fortune 500® work smarter, faster, and better. We're building an AI-native culture where technology and talent are unstoppable together. And we're just getting started.
Join us to put AI to work for people.
Job DescriptionThe ServiceNow Security Organization (SSO)
The ServiceNow Security Organization (SSO) delivers world-class, innovative security solutions to reduce risk and protect the company and our customers. We enable our customers to migrate their most sensitive data and workloads to the cloud, accelerating our business so that we are the most trusted SaaS provider. We create an environment where our employees are proud to work and can make a positive impact
We are committed to fostering an environment where our employees feel empowered, take pride in their work, and have the opportunity to make a meaningful impact.
About the Team – Global Security Support Centre (GSSC)
The Global Security Support Centre (GSSC) at ServiceNow is a diverse and highly skilled team of security professionals who play a pivotal role in strengthening both our internal and external security posture. The team collaborates closely with various functions across the company and serves as a key interface with our customers on security-related matters.
Through expertise, communication, and a commitment to excellence, the GSSC team reinforces ServiceNow's reputation as a security-first organisation, consistently demonstrating our commitment to protecting our platform, our data, and our customers.
GSSC Mission Statement: To provide external & internal facing security support on behalf of the Security Organisation to improve our customers' security posture and build Customer trust.
Key Responsibilities:
- Represent security organisation in customer-facing Security Incidents, cases, Security findings, tasks, questions and calls related to Security & Privacy.
- Own, triage, investigate and respond to security matters of the ServiceNow platform, ensuring timely communication, resolution and enhanced customer experience and processes.
- Act as the primary point of contact for all security-related matters in ServiceNow, supporting both internal and external stakeholders.
- Facilitate the efficient workflow/triage of security-related incidents/cases by collaborating with customers and other internal ServiceNow teams.
- Build and maintain a high level of customer trust and confidence through exceptional service and communication.
- Manage customer outreach communications on Security & escalation handling.
- Understand and deliver excellent capability maturity models to fine-tune security processes.
- Create and enhance documentation and processes to strengthen security maturity and operational excellence.
- Develop and deliver training/enablement programs on Security, for internal and external customers on security awareness and best practices.
- Develop AI Solutions for automating repetitive activities & design new solutions leveraging AI.
- Work with Legal on security/privacy-related matters & a global team spread across different time zones, so flexibility of times is required.
- Provide support and be available as a responsible resource for the On-Call rotation (weekends, public holidays, and after hours) as rostered.
To be successful in this role, you have:
- A minimum of 3-5+ years of professional experience in information security or application security roles. Or similar experience with education.
- Required Certifications
- ServiceNow Certified System Administrator (CSA)
- Preferred Certifications (Two or more)
- Azure AI Fundamentals
- AWS Certified AI Practitioner
- Offensive Security Web Assessor (OSWA)
- GIAC Web Application Penetration Tester (GWAPT)
- GIAC Security Essentials Certification (GSEC)
- GIAC Certified Incident Handler (GCIH)
- CISSP
- CISM
Skills & Competencies/Technical Skills:
- Solid understanding of cloud computing models and major hyperscaler cloud models.
- Hands-on experience with using and understanding security tools and technologies, including: SIEM solutions, logging tools, load balancers, firewalls, WAFs, IDS/IPS, vulnerability management platforms, encryption techniques, etc.
- Basic to Intermediate-level programming knowledge in Java/JavaScript with the ability to read, interpret & understand to explain code effectively.
- Intermediate to Advanced proficiency in using web proxy tools for security testing and assessments.
- Application Security: In-depth understanding of web application vulnerabilities (e.g., OWASP Top Ten) and corresponding mitigation strategies.
- Risk Management: Ability to clearly explain security risks to non-technical stakeholders using straightforward, non-technical language.
- Compliance & Regulatory Knowledge: Good knowledge of key compliance and regulatory frameworks including: NIST, CIS, GDPR, HIPAA, PCI DSS, ISO standards, etc.
- Artificial Intelligence: Experience working with AI technologies and designing AI-based solutions.
- Analytical Thinking: Strong analytical and problem-solving capabilities, with the ability to evaluate and address complex security challenges.
Soft Skills & Communication:
- Excellent verbal and written communication skills, with the ability to convey technical information to a non-technical audience.
- Demonstrated ability to thrive in a team-oriented, collaborative environment, working in a follow-the-sun model.
- Good understanding of Security concepts and articulating Security and risk in simple terms without using jargon that makes sense to customers.
Education & Experience:
- Bachelor's degree in computer science or information security or relevant information security experience.
- Preferred: Hands-on experience with web-based vulnerability exploitation is a strong plus for success in this role.
Why Join Us?
At GSSC, we pride ourselves on fostering a culture of inclusivity, innovation, and excellence. Our team and customers are at the heart of everything we do, and we are committed to providing a supportive and engaging work environment. As an Information Security and Application Security resource in the region, you will be an integral part of our mission to deliver secure and reliable solutions to our clients.
#SecurityJobs
For positions in this location, we offer a base pay of $127,600 - $216,900, plus equity (when applicable), variable/incentive compensation and benefits. Sales positions generally offer a competitive On Target Earnings (OTE) incentive compensation structure. Please note that the base pay shown is a guideline, and individual total compensation will vary based on factors such as qualifications, skill level, competencies, and work location. We also offer health plans, including flexible spending accounts, a 401(k) Plan with company match, ESPP, matching donations, a flexible time away plan and family leave programs. Compensation is based on the geographic location in which the role is located and is subject to change based on work location.
Additional Information
Work Personas
We approach our distributed world of work with flexibility and trust. Work personas (flexible, remote, or required in office) are categories that are assigned to ServiceNow employees depending on the nature of their work and their assigned work location. Learn more here. To determine eligibility for a work persona, ServiceNow may confirm the distance between your primary residence and the closest ServiceNow office using a third-party service.
Equal Opportunity Employer
ServiceNow is an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, national origin, age, disability, gender identity, veteran status, or any other category protected by law. In addition, all qualified applicants with arrest or conviction records will be considered for employment in accordance with legal requirements.
Accommodations
We strive to create an accessible and inclusive experience for all candidates. If you require a reasonable accommodation to complete any part of the application process, or are unable to use this online application and need an alternative method to apply, please contact globaltalentss@servicenow.com for assistance.
Export Control Regulations
For positions requiring access to controlled technology subject to export control regulations, including the U.S. Export Administration Regulations (EAR), ServiceNow may be required to obtain export control approval from government authorities for certain individuals. All employment is contingent upon ServiceNow obtaining any export license or other approval that may be required by relevant export control authorities.
From Fortune. ©2026 Fortune Media IP Limited. All rights reserved. Used under license.
What ServiceNow employees say
Pay
Benefits
Hours and flexibility
Workplace
Get the full story on Breakroom
About ServiceNow
Sourced by ZipRecruiter
At ServiceNow, our technology makes the world work for everyone, and our people make it possible. We move fast because the world can't wait, and we innovate in ways no one else can for our customers and communities. By joining ServiceNow, you are part of an ambitious team of change makers who have a restless curiosity and a drive for ingenuity. We know that your best work happens when you live your best life and share your unique talents, so we do everything we can to make that possible. We dream big together, supporting each other to make our individual and collective dreams come true. The future is ours, and it starts with you. With more than 7,400+ customers, we serve approximately 80% of the Fortune 500, and we're proud to be one of FORTUNE's 100 Best Companies to Work For® and World's Most Admired Companies® 2022.
Industry
It services
Company size
5,001 - 10,000 Employees
Headquarters location
Santa Clara, CA, US
Year founded
2004