Summary Statement The Senior IT Security Risk Analyst is responsible for leading the organization's cybersecurity governance, risk, and compliance initiatives. This role drives the design ...
Summary Statement The Senior IT Security Risk Analyst is responsible for leading the organization's cybersecurity governance, risk, and compliance initiatives. This role drives the design ...
Summary Statement The Senior IT Security Risk Analyst is responsible for leading the organization's cybersecurity governance, risk, and compliance initiatives. This role drives the design ...
Summary Statement The Senior IT Security Risk Analyst is responsible for leading the organization's cybersecurity governance, risk, and compliance initiatives. This role drives the design ...
Summary Statement The Senior IT Security Risk Analyst is responsible for leading the organization's cybersecurity governance, risk, and compliance initiatives. This role drives the design ...
Summary Statement The Senior IT Security Risk Analyst is responsible for leading the organization's cybersecurity governance, risk, and compliance initiatives. This role drives the design ...
GRC Analyst
Southfield, MI ยท On-site
About the Role As a member of the Information Security team, the IS GRC - Risk & Compliance Senior Analyst will support the firm's Governance, Risk, and Compliance (GRC) program by managing security ...
Quick apply
GRC Analyst
Southfield, MI ยท On-site
About the Role As a member of the Information Security team, the IS GRC - Risk & Compliance Senior Analyst will support the firm's Governance, Risk, and Compliance (GRC) program by managing security ...
IT Securtity Risk Specialist
Southfield, MI ยท On-site
... of Information Security and the relationship between threat, vulnerability and information - Good understanding of risk-based decision-making (i.e. risk analysis, mitigation, resolution, acceptance ...
IT Securtity Risk Specialist
Southfield, MI ยท On-site
... of Information Security and the relationship between threat, vulnerability and information - Good understanding of risk-based decision-making (i.e. risk analysis, mitigation, resolution, acceptance ...
Translate technical findings into business risk language that enables informed decisions by senior ... Information Security Risk Management * Responsible for assigning, managing, and actively overseeing ...
Translate technical findings into business risk language that enables informed decisions by senior ... Information Security Risk Management * Responsible for assigning, managing, and actively overseeing ...
Translate technical findings into business risk language that enables informed decisions by senior ... Information Security Risk Management * Responsible for assigning, managing, and actively overseeing ...
Translate technical findings into business risk language that enables informed decisions by senior ... Information Security Risk Management * Responsible for assigning, managing, and actively overseeing ...
Translate technical findings into business risk language that enables informed decisions by senior ... Information Security Risk Management * Responsible for assigning, managing, and actively overseeing ...
Translate technical findings into business risk language that enables informed decisions by senior ... Information Security Risk Management * Responsible for assigning, managing, and actively overseeing ...
Information Security Governance,Risk & Compliance (GRC) * Supports and contributes to third-party ... Design, develop, and monitor robust data analysis and reporting systems, along with communication ...
Information Security Governance,Risk & Compliance (GRC) * Supports and contributes to third-party ... Design, develop, and monitor robust data analysis and reporting systems, along with communication ...
Information Security Governance,Risk & Compliance (GRC) * Supports and contributes to third-party ... Design, develop, and monitor robust data analysis and reporting systems, along with communication ...
Information Security Governance,Risk & Compliance (GRC) * Supports and contributes to third-party ... Design, develop, and monitor robust data analysis and reporting systems, along with communication ...
Information Security Governance,Risk & Compliance (GRC) * Supports and contributes to third-party ... Design, develop, and monitor robust data analysis and reporting systems, along with communication ...
Information Security Governance,Risk & Compliance (GRC) * Supports and contributes to third-party ... Design, develop, and monitor robust data analysis and reporting systems, along with communication ...
PROLIM Global Corporation ( www.prolim.com ) is currently seeking an IT Security Analyst 3 - Risk compliance for location 7150 Harris Dr. Dimondale, Michigan 48821 ( Hybrid - 2 days onsite, 3 days ...
PROLIM Global Corporation ( www.prolim.com ) is currently seeking an IT Security Analyst 3 - Risk compliance for location 7150 Harris Dr. Dimondale, Michigan 48821 ( Hybrid - 2 days onsite, 3 days ...
IT Compliance Analyst
$90K - $90K/yr
We're hiring an IT Compliance Analyst to support our Information Security and IT Risk Management team through audit coordination, risk tracking, control remediation, and compliance initiatives. This ...
IT Compliance Analyst
$90K - $90K/yr
We're hiring an IT Compliance Analyst to support our Information Security and IT Risk Management team through audit coordination, risk tracking, control remediation, and compliance initiatives. This ...
We're hiring an IT Compliance Analyst to support our Information Security and IT Risk Management team through audit coordination, risk tracking, control remediation, and compliance initiatives. This ...
Quick apply
We're hiring an IT Compliance Analyst to support our Information Security and IT Risk Management team through audit coordination, risk tracking, control remediation, and compliance initiatives. This ...
IT Compliance Analyst
Grand Rapids, MI ยท On-site
$78K/yr
We're hiring an IT Compliance Analyst to support our Information Security and IT Risk Management team through audit coordination, risk tracking, control remediation, and compliance initiatives. This ...
IT Compliance Analyst
Grand Rapids, MI ยท On-site
$78K/yr
We're hiring an IT Compliance Analyst to support our Information Security and IT Risk Management team through audit coordination, risk tracking, control remediation, and compliance initiatives. This ...
IT Security Analyst
Lansing, MI ยท On-site
Job Title: IT Security Analyst II (Compliance & GRC) Location: Lansing, MI (Hybrid as Required) Job ... Conduct security risk assessments and document security control implementations. * Perform security ...
IT Security Analyst
Lansing, MI ยท On-site
Job Title: IT Security Analyst II (Compliance & GRC) Location: Lansing, MI (Hybrid as Required) Job ... Conduct security risk assessments and document security control implementations. * Perform security ...
We are looking for IT Security Analyst in Lansing MI Hybrid. Please read the below and let me know ... Conduct security risk assessments and recommend remediation plans. * Validate compliance with NIST ...
We are looking for IT Security Analyst in Lansing MI Hybrid. Please read the below and let me know ... Conduct security risk assessments and recommend remediation plans. * Validate compliance with NIST ...
The Risk Analyst role requires above-average attention to detail, a strong commitment to accuracy ... Improving and maintaining the management information system that houses third-party information
The Risk Analyst role requires above-average attention to detail, a strong commitment to accuracy ... Improving and maintaining the management information system that houses third-party information
Risk Analyst
East Lansing, MI ยท On-site
The Risk Analyst role requires above-average attention to detail, a strong commitment to accuracy ... Improving and maintaining the management information system that houses third-party information
Risk Analyst
East Lansing, MI ยท On-site
The Risk Analyst role requires above-average attention to detail, a strong commitment to accuracy ... Improving and maintaining the management information system that houses third-party information
Information Security Specialist
Holland, MI ยท On-site
The ideal candidate brings expertise in physical security systems, risk management, and enterprise ... Monitor and analyze security events using SIEM tools (e.g., Splunk) * Assist in cybersecurity ...
Quick apply
Information Security Specialist
Holland, MI ยท On-site
The ideal candidate brings expertise in physical security systems, risk management, and enterprise ... Monitor and analyze security events using SIEM tools (e.g., Splunk) * Assist in cybersecurity ...
Senior Information Security Risk Analyst information
What is the difference between Senior Information Security Risk Analyst vs Information Security Analyst?
| Aspect | Senior Information Security Risk Analyst | Information Security Analyst |
|---|---|---|
| Certifications | CISSP, CISA, CRISC | CISSP, Security+, CEH |
| Work Environment | Focus on risk assessment, policy development, and strategic planning | Implementing security measures, monitoring, and incident response |
| Employer & Industry Usage | Financial, healthcare, and large enterprises with complex security needs | Variety of industries, including tech, retail, and government |
Senior Information Security Risk Analysts typically handle advanced risk assessments and strategic security planning, often requiring certifications like CISSP or CISA. Information Security Analysts focus on implementing security controls and monitoring systems. Both roles are vital in maintaining organizational security but differ in scope and seniority.
How does a senior information security risk analyst typically collaborate with other departments to manage organizational risk?
What are the key skills and qualifications needed to thrive as a senior information security risk analyst?
What does a senior information security risk analyst do?

Full-time
Medical, Retirement, PTO
Re-posted 3 days ago
Job description
Amerisure is currently recruiting for a Senior IT Security Risk Analyst that can do a 3-day hybrid approach onsite in our Farmington Hills office. The ideal candidate will also possess the following skill set.
Summary Statement
The Senior IT Security Risk Analyst is responsible for leading the organization's cybersecurity governance, risk, and compliance initiatives. This role drives the design, implementation, and continuous improvement of the IT risk program, ensuring alignment with regulatory requirements (e.g., New York State Department of Financial Services, NIST CSF) and business objectives.
Essential Tasks/Major Duties
- Perform security risk assessments of third-party vendors including AI and mobile application reviews.
- Lead the review, update, and communication of cybersecurity policies, standards, and procedures to ensure alignment with global frameworks (e.g., NIST CSF, NYDFS, NIS2, PCI DSS).
- Lead and maintain the IT Risk Register including metrics which provides leadership an overall view of IT risk.
- Perform risk assessments of IT risks.
- Map regulations to policies and controls.
- Create risk and compliance metrics for management and compliance purposes.
- Perform control testing and validation to ensure proper control effectiveness.
- Support IT audits and controls around Model Audit Rule (MAR).
- Monitor threat intelligence to determine potential impact to environment and remediation urgency.
- Support vulnerability management program, daily security operations and identity tasks as needed.
- Be a key advisor to leadership, translating cybersecurity risk into business impact and enabling informed decision-making.
Knowledge, Skills & Abilities
- Bachelor's degree or equivalent combination of education and experience.
- 5 years cybersecurity experience.
- Advanced Cyber Risk Management domain specific professional certification required: Certified Information Systems Security Professional (CISSP); Certified Information Security Manager (CISM); Certified in Risk and Information Systems Control (CRISC); Certified Cloud Security Professional (CCSP); AWS Certified Security.
- 2 years experience performing IT security control testing.
- Experience reviewing SOC 2 Type 1 and Type 2 reports to articulate potential security risk.
- Expertise in conducting third-party cyber risk assessments.
- Proficient in NIST security domain frameworks and architectures.
- Experience in Logicgate or another GRC tool.
- Experience using AI driven tools to enhance automation and operational efficiency.
- Ability to quickly diagnose security control problems and propose/implement solutions.
- Clear and concise articulation of risk to both technical peers and non-technical stakeholders.
- Partner with IT teams, developers, and business leaders to support security initiatives, and mentor and develop members of the security team.
- Analyze data and security trends to anticipate and assess potential threats.
- Stay current with regulations, evolving threats, technologies, and security protocols.
#LI-BR1
Just as we are committed to creating exceptional value for our Partners For Successยฎ agencies and policyholders, Amerisure also remains committed to being an employer of choice. We reinforce this commitment by adhering to an Employee Value Proposition that, in part, is provided through a competitive total rewards package. This package includes competitive base pay, performance-based incentive pay, comprehensive health and welfare benefits, a 401(k) savings plan with profit sharing, and generous paid time off programs. We also offer flexible work arrangements to promote work-life balance. Recognized as one of the Best and Brightestยฎ Companies to Work For in the Nation and one of Business Insurance magazine's Best Places to Work in Insurance, we provide a workplace that fosters excellence and professional growth. If you are looking for a collaborative and rewarding career, Amerisure is looking for you.
Amerisure Mutual Insurance Company is an Equal Employment Opportunity employer. Amerisure provides equal employment opportunities to all employees and applicants without regard to race, color, religion, sex (to include sexual orientation and gender identity), national origin, age, disability, genetic information, veteran status, or any other protected characteristic under applicable federal, state, or local laws. Amerisure complies with all applicable laws governing nondiscrimination in employment in all locations where the company operates. This policy applies to all terms and conditions of employment, including recruiting, hiring, placement, promotion, termination, layoff, recall, transfer, leaves of absence, compensation, and training. Amerisure prohibits harassment or discrimination of any kind and is committed to maintaining a workplace free from unlawful harassment or discrimination. Amerisure prohibits retaliation against anyone who reports discrimination, participates in an investigation, or opposes unlawful practices. Any improper interference with an employee's ability to perform their job duties may result in disciplinary action, up to and including termination.
About Amerisure
Sourced by ZipRecruiter
Industry
Insurance services
Company size
501 - 1,000 Employees
Headquarters location
Farmington, MI, US
Year founded
1912