1

Senior Information Security Risk Analyst Jobs in Tennessee

$75K - $137K/yr

... that information in creating customized customer solutions. * Managing Risk - Assessing and ... Security, Malware Analysis, Network Security, Physical Security, Risk Assessments, Security ...

$75K - $137K/yr

As a Security Analyst within PNC's Technology organization, you will be based in Pittsburgh, PA ... that information in creating customized customer solutions. * Managing Risk - Assessing and ...

Manager, IT Security

Chattanooga, TN · On-site

$120 - $170/hr

This person will work closely with Information Risk on the execution and enforcement of our information security programs. Additionally, this person will be the primary contact for our due diligence ...

This person will work closely with Information Risk on the execution and enforcement of our information security programs. Additionally, this person will be the primary contact for our due diligence ...

You will Work closely with IT staff to ensure all identified risk and vulnerabilities are mitigated ... Collect, monitor, and analyze activity of logs, intrusion detection system alerts, firewall logs ...

Showing results 41-60

Senior Information Security Risk Analyst information

What does a senior information security risk analyst do?

A Senior Information Security Risk Analyst is responsible for identifying, evaluating, and mitigating risks to an organization's information systems and data. They conduct risk assessments, develop security policies, and recommend measures to protect against cyber threats and vulnerabilities. Additionally, they work closely with IT and business teams to ensure compliance with regulations and industry standards, and they often play a key role in incident response and security awareness training.

What are the key skills and qualifications needed to thrive as a senior information security risk analyst?

A Senior Information Security Risk Analyst requires a deep understanding of cybersecurity frameworks, risk assessment methodologies, and regulatory compliance, usually backed by a degree in information security or a related field. Familiarity with tools like risk management software (e.g., Archer, RSA), SIEM systems, and certifications such as CISSP, CISM, or CRISC are typically expected. Exceptional analytical thinking, attention to detail, and strong communication skills set top performers apart in this role. These competencies are crucial to effectively identify, evaluate, and mitigate security risks, ensuring the organization's information assets remain protected against evolving threats.

How does a senior information security risk analyst typically collaborate with other departments to manage organizational risk?

A Senior Information Security Risk Analyst regularly works with various departments such as IT, legal, compliance, and business units to identify and address security risks. This collaboration often includes conducting risk assessments, reviewing new projects for potential vulnerabilities, and providing guidance on security best practices. Effective communication skills are essential, as the analyst must translate technical risks into business impacts and help teams implement appropriate controls. Close teamwork ensures that security is integrated into all business processes and that the organization remains compliant with relevant regulations.

What is the difference between Senior Information Security Risk Analyst vs Information Security Analyst?

AspectSenior Information Security Risk AnalystInformation Security Analyst
CertificationsCISSP, CISA, CRISCCISSP, Security+, CEH
Work EnvironmentFocus on risk assessment, policy development, and strategic planningImplementing security measures, monitoring, and incident response
Employer & Industry UsageFinancial, healthcare, and large enterprises with complex security needsVariety of industries, including tech, retail, and government

Senior Information Security Risk Analysts typically handle advanced risk assessments and strategic security planning, often requiring certifications like CISSP or CISA. Information Security Analysts focus on implementing security controls and monitoring systems. Both roles are vital in maintaining organizational security but differ in scope and seniority.

What are popular job titles related to Senior Information Security Risk Analyst jobs in Tennessee?

For Senior Information Security Risk Analyst jobs in Tennessee, the most frequently searched job titles are:

What job categories do people searching Senior Information Security Risk Analyst jobs in Tennessee look for?

The top searched job categories for Senior Information Security Risk Analyst jobs in Tennessee are:

What cities in Tennessee are hiring for Senior Information Security Risk Analyst jobs?

Cities in Tennessee with the most Senior Information Security Risk Analyst job openings:

Infographic showing various Senior Information Security Risk Analyst job openings in Tennessee as of August 2026, with employment types broken down into 1% As Needed, 75% Full Time, 20% Part Time, and 4% Contract. Highlights an 93% Physical, 2% Hybrid, and 5% Remote job distribution.

Cybersecurity Risk Analyst

Creative Artists Agency

Nashville, TN • On-site

$87 - $104/hr

Other

Posted 4 days ago


Job description

About Creative Artists Agency

Creative Artists Agency (CAA) is the leading entertainment and sports agency with global expertise in filmed and live entertainment, digital media, publishing, sponsorship sales, endorsements, media finance, consumer investing, fashion, trademark licensing, and philanthropy. CAA represents more than 2,000 top athletes and personalities and works in broadcast rights, corporate marketing initiatives, social impact, and sports properties sales and sponsorship opportunities.

Role Overview

This hands‑on security position works within the Information Security group and with the internal IT department to deliver end‑to‑end security services. The role focuses on developing and deploying capabilities that protect enterprise systems and data, ensuring compliance with policy and security controls, and enabling the business to detect, contain, and respond to threats quickly.

Responsibilities
  • Support a Technology Vendor Management program, ensuring technology risk reviews across multiple disciplines and monitoring renewals and savings opportunities.
  • Participate in risk reviews of the IT control framework (NIST CSF, CIS, ITIL, ISO 27001, etc.).
  • Conduct thorough vendor, product, and applications security assessments partnering with system owners to integrate security early during the project lifecycle.
  • Partner with business groups to review workflows and produce outputs that enhance security processes.
  • Coordinate the implementation of core security integrations (SSO, event logs, secrets, alerting, threat model, backup/recovery) with applications developed in-house and externally/SaaS environments.
  • Ensure security considerations are implemented and solutions are configured securely.
  • Coordinate with IRM leadership to develop and deliver key security metrics and ensure technical controls meet desired objectives.
Qualifications
  • Minimum of 3–4 years in Information Technology.
  • Minimum of 2 years’ experience in cybersecurity risk management.
  • Bachelor’s or Master’s degree in a relevant field.
  • Strong analytical skills for vendor risk due diligence.
  • Familiarity with information security frameworks (NIST, ISO 27001), data privacy regulations (GDPR, CCPA), and certifications/attestations (SOC, ISO, PCI‑DSS, FedRAMP).
  • Experience coordinating technical integrations for security tooling and processes.
  • Ability to review complex systems architectures to identify key security integration opportunities.
  • Produce comprehensive written vendor security assessments.
  • Experience using security analytics tooling to produce operational metrics and dashboards.
  • Strong understanding of fundamental operations of servers, operating systems, cloud applications, and infrastructure.
Preferred Qualifications
  • Core skills in cybersecurity fundamentals and third‑party risk management.
  • Familiarity with third‑party risk management tools/processes such as OneTrust, SIG, or similar GRC platforms.
  • Hands‑on experience in Azure and AWS cloud environments and familiarity with core cloud services and architecture.
  • Familiarity with core security concepts of Single Sign‑On (PingFed, SAML), Identity and Access Administration (Active Directory, Azure AD, AWS IAM), event management (Splunk).
  • Expert skills in Microsoft Office suite and JIRA.
Location

This hybrid role is based in our Nashville office.

Compensation

The annual base salary for this position is between $87,000 and $104,000 in Nashville. The position may also include benefits and a discretionary bonus, with final pay determined by experience, time in role, business sector, and geographic location.

Equal Employment Opportunity

Creative Artists Agency, LLC is committed to a policy of Equal Employment Opportunity and will not discriminate on the basis of race, color, religion, gender, national origin, age, disability, or any other protected characteristic under applicable law. The Company also complies with the Americans with Disabilities Act and applicable state and local laws regarding reasonable accommodation for qualified individuals with disabilities.

#J-18808-Ljbffr