1

Senior Information Security Risk Analyst Jobs in Oregon

OR · On-site

$110 - $160/hr

Analyze business needs, research and recommend solutions balancing business needs and risk mitigation. * Define, build, and review reports on information security system performance; document gaps ...

Information Security Analyst * Job Level: W2T Consultant * Job Location: Remote * Travel Expectations: None * Job Classification: Temporary (W2T) Join Centric Consulting - A Culture You'll Love At ...

New

Qualifications * 8+ years of information security, risk, or compliance experience, including interaction with senior leadership, auditors, and regulators. * Demonstrated experience leading or ...

Foster information security practices and procedures across the organization * Research, analyze ... Security risk management * Experience with FIPS, NIST 800-53/CSF, or other relevant frameworks

Showing results 21-40

Senior Information Security Risk Analyst information

See Oregon salary details

$33

$61

$79

How much do senior information security risk analyst jobs pay per hour?

As of Aug 14, 2026, the average hourly pay for senior information security risk analyst in Oregon is $61.80, according to ZipRecruiter salary data. Most workers in this role earn between $48.03 and $69.38 per hour, depending on experience, location, and employer.

What is the difference between Senior Information Security Risk Analyst vs Information Security Analyst?

AspectSenior Information Security Risk AnalystInformation Security Analyst
CertificationsCISSP, CISA, CRISCCISSP, Security+, CEH
Work EnvironmentFocus on risk assessment, policy development, and strategic planningImplementing security measures, monitoring, and incident response
Employer & Industry UsageFinancial, healthcare, and large enterprises with complex security needsVariety of industries, including tech, retail, and government

Senior Information Security Risk Analysts typically handle advanced risk assessments and strategic security planning, often requiring certifications like CISSP or CISA. Information Security Analysts focus on implementing security controls and monitoring systems. Both roles are vital in maintaining organizational security but differ in scope and seniority.

How does a senior information security risk analyst typically collaborate with other departments to manage organizational risk?

A Senior Information Security Risk Analyst regularly works with various departments such as IT, legal, compliance, and business units to identify and address security risks. This collaboration often includes conducting risk assessments, reviewing new projects for potential vulnerabilities, and providing guidance on security best practices. Effective communication skills are essential, as the analyst must translate technical risks into business impacts and help teams implement appropriate controls. Close teamwork ensures that security is integrated into all business processes and that the organization remains compliant with relevant regulations.

What are the key skills and qualifications needed to thrive as a senior information security risk analyst?

A Senior Information Security Risk Analyst requires a deep understanding of cybersecurity frameworks, risk assessment methodologies, and regulatory compliance, usually backed by a degree in information security or a related field. Familiarity with tools like risk management software (e.g., Archer, RSA), SIEM systems, and certifications such as CISSP, CISM, or CRISC are typically expected. Exceptional analytical thinking, attention to detail, and strong communication skills set top performers apart in this role. These competencies are crucial to effectively identify, evaluate, and mitigate security risks, ensuring the organization's information assets remain protected against evolving threats.

What does a senior information security risk analyst do?

A Senior Information Security Risk Analyst is responsible for identifying, evaluating, and mitigating risks to an organization's information systems and data. They conduct risk assessments, develop security policies, and recommend measures to protect against cyber threats and vulnerabilities. Additionally, they work closely with IT and business teams to ensure compliance with regulations and industry standards, and they often play a key role in incident response and security awareness training.

What are popular job titles related to Senior Information Security Risk Analyst jobs in Oregon?

For Senior Information Security Risk Analyst jobs in Oregon, the most frequently searched job titles are:

What job categories do people searching Senior Information Security Risk Analyst jobs in Oregon look for?

The top searched job categories for Senior Information Security Risk Analyst jobs in Oregon are:

What cities in Oregon are hiring for Senior Information Security Risk Analyst jobs?

Cities in Oregon with the most Senior Information Security Risk Analyst job openings:

Infographic showing various Senior Information Security Risk Analyst job openings in Oregon as of August 2026, with employment types broken down into 1% As Needed, 73% Full Time, 22% Part Time, 3% Contract, and 1% Nights. Highlights an 93% Physical, 3% Hybrid, and 4% Remote job distribution, with an average salary of $128,541 per year, or $61.8 per hour.

Information Security Engineer III

CareOregon, Inc.

OR • On-site

$110 - $160/hr

Other

Medical, Dental, Vision, Life, Retirement, PTO

Re-posted 6 days ago


CareOregon rating

8.3

Company rating: 8.3 out of 10

Based on 9 frontline employees who took The Breakroom Quiz

128th of 307 rated insurance


Job description

Information Security Engineer III

The Information Security Engineer III is responsible for managing corporate security and designing effective solutions to support business strategies. This role is essential for maturing CareOregon’s security model and involves partnering with business leaders, architecting, and implementing information security policies and systems.

Essential Responsibilities
  • Lead the design and management of security technologies such as firewalls, proxy systems, logging devices, and other security systems.
  • Provide security technology expertise, consult on projects, and advise other IS teams on best practices for security design.
  • Execute tasks related to tickets and service requests, provide escalation support for complex network tickets, and oversee maintenance of security systems.
  • Analyze business needs, research and recommend solutions balancing business needs and risk mitigation.
  • Define, build, and review reports on information security system performance; document gaps and elevate to management.
  • Develop and maintain technology documentation on design and operation.
  • Author and administer information security standards, requirements, and policies; monitor compliance and continuously review existing systems.
  • Integrate security policies with network engineering, support disaster recovery and business continuity initiatives.
  • Conduct product and vendor research, present recommendations, manage vendor relations, and maintain service contracts and licensing.
  • Collaborate with business leaders to align work with the organization’s mission, vision, and values; support equity, diversity, and inclusion.
Required Knowledge, Skills, and Abilities
  • Advanced knowledge of DLP, IDS, IPS, and SIEM systems.
  • Expert troubleshooting of system performance issues and root cause analysis.
  • Strong understanding of network transport protocols, ITIL concepts, vulnerability management, and security incident management.
  • Programming skills in scripting languages such as Python, PowerShell, VB, or C++.
  • Excellent communication skills—verbal, written, and presentation.
  • Policy authoring, risk documentation, and proposal development.
  • High initiative, motivation, and ability to collaborate across departments.
  • Leadership skills—able to lead teams and execute with a systems‑thinking approach.
  • Strong project, vendor, and organizational management skills.
  • Analytical skills for data pattern recognition and solution proposal.
Education and Experience

Minimum 5 years of experience delivering information security solutions and related services. Experience must include most or all of the following: WAN firewalls, load balancers, proxies, DMZ configuration and support, secure collaboration solutions, risk analysis, audit and compliance objectives, and ITIL practices.

Certifications (Preferred)

CISSP, CASP+, GIAC (GSEC, GCIA, GCIH, GPEN), CCSP, CISM, Security+, Microsoft SC‑100, SC‑200, AZ‑500, IAM, PAM, EDR, SIEM, vulnerability management, Email Security, Cloud Security (Azure, AWS, or GCP), data protection, security automation scripting.

Benefits

Competitive salary, bonus opportunity, and a comprehensive benefits package. Benefits‑eligible employees qualify for benefits beginning on the first of the month after their start date. Benefits include medical, dental, vision, life, AD&D, disability insurance, health savings account, flexible spending account, lifestyle spending account, employee assistance program, wellness program, discounts, supplemental benefits such as voluntary life, critical illness, accident, hospital indemnity, identity theft protection, pre‑tax parking, pet insurance, 529 College Savings, and a retirement plan with employer contributions. PTO and paid state sick time accrue based on hours worked; additional paid holidays, volunteer time, jury duty, and bereavement leave may be available.

Equal Opportunity Employer Statement

CareOregon is an equal‑opportunity employer. The organization selects the best individual for the job based upon job‑related qualifications, regardless of race, color, religion, sexual orientation, gender identity, age, veteran status, and other protected characteristics. The organization will make reasonable accommodations for disability injuries unless they impose undue hardship.

#J-18808-Ljbffr

What CareOregon employees say

Pay

Benefits

Hours and flexibility

Workplace

Get the full story on Breakroom