1

Senior Information Security Risk Analyst Jobs in Northbrook, IL

Vice President, Information Security & Risk

Chicago, IL · On-site

$155K - $175K/yr

  • Medical

  • Dental

  • Vision

  • Retirement

  • PTO

... analytics, and digital transformation in a secure and compliant manner; provides strong technical ... Demonstrated experience partnering with leaders/senior leaders and influencing outcomes. SKILLS ...

Governance & Risk Analyst

Chicago, IL · On-site

$85K - $95K/yr

Governance & Risk Analyst in the Enterprise will... The GRC Analyst will support the organization ... Information Security * Data Privacy * Access Controls * Business Continuity & Disaster Recovery

Senior IT Risk Analyst

Rosemont, IL · Hybrid

$98K - $110K/yr

  • Medical

  • Dental

  • Vision

  • Life

  • Retirement

Position Overview The Senior IT Risk Analyst (Audit concentration) role supports IT Risk Leadership in maintaining a strong, healthy audit culture across IT globally. This role applies industry best ...

Senior IT Risk Analyst

Rosemont, IL · On-site

$98K - $110K/yr

  • Medical

  • Dental

  • Vision

  • Life

  • Retirement

Position Overview The Senior IT Risk Analyst (Audit concentration) role supports IT Risk Leadership in maintaining a strong, healthy audit culture across IT globally. This role applies industry best ...

Support the Information Governance Manager and Senior Information Governance Analyst in ... security, risk management, and IT teams on investigations, policy enforcement, and continuous ...

Senior Risk and Compliance Analyst

Chicago, IL · On-site

$96K - $148K/yr

  • Medical

  • Dental

  • Vision

  • Retirement

  • PTO

The Senior Risk and Compliance Analyst is a key member of the IT Governance, Risk, and Compliance ... This role partners with stakeholders across IT, Information Security, Procurement, Legal, OT, and ...

Sr. Cybersecurity Operational Risk Officer

Chicago, IL · On-site

$103K - $132K/yr

This position is responsible for Cybersecurity and Information Security Risk Oversight of the Key ... Analyze and assess cybersecurity and AI-related risks associated with new products or services ...

AI Security Risk Assessor

Chicago, IL · On-site

$75 - $100/hr

  • Medical

  • Dental

  • Vision

  • Life

  • Retirement

  • PTO

Description We are seeking a Senior AI Security Risk Assessment Consultant to help establish and ... REQUIRED QUALIFICATIONS - 7+ years of experience in Cybersecurity, Information Security, Technology ...

New

AI Security Risk Assessor

Chicago, IL · Remote

$75 - $100/hr

  • Medical

  • Dental

  • Vision

  • Life

  • Retirement

  • PTO

Description We are seeking a Senior AI Security Risk Assessment Consultant to help establish and ... REQUIRED QUALIFICATIONS - 7+ years of experience in Cybersecurity, Information Security, Technology ...

next page

Showing results 1-20

Senior Information Security Risk Analyst information

See Northbrook, IL salary details

$32

$59

$76

How much do senior information security risk analyst jobs pay per hour?

As of Aug 13, 2026, the average hourly pay for senior information security risk analyst in Northbrook, IL is $59.33, according to ZipRecruiter salary data. Most workers in this role earn between $46.11 and $66.59 per hour, depending on experience, location, and employer.

What is the difference between Senior Information Security Risk Analyst vs Information Security Analyst?

AspectSenior Information Security Risk AnalystInformation Security Analyst
CertificationsCISSP, CISA, CRISCCISSP, Security+, CEH
Work EnvironmentFocus on risk assessment, policy development, and strategic planningImplementing security measures, monitoring, and incident response
Employer & Industry UsageFinancial, healthcare, and large enterprises with complex security needsVariety of industries, including tech, retail, and government

Senior Information Security Risk Analysts typically handle advanced risk assessments and strategic security planning, often requiring certifications like CISSP or CISA. Information Security Analysts focus on implementing security controls and monitoring systems. Both roles are vital in maintaining organizational security but differ in scope and seniority.

How does a senior information security risk analyst typically collaborate with other departments to manage organizational risk?

A Senior Information Security Risk Analyst regularly works with various departments such as IT, legal, compliance, and business units to identify and address security risks. This collaboration often includes conducting risk assessments, reviewing new projects for potential vulnerabilities, and providing guidance on security best practices. Effective communication skills are essential, as the analyst must translate technical risks into business impacts and help teams implement appropriate controls. Close teamwork ensures that security is integrated into all business processes and that the organization remains compliant with relevant regulations.

What are the key skills and qualifications needed to thrive as a senior information security risk analyst?

A Senior Information Security Risk Analyst requires a deep understanding of cybersecurity frameworks, risk assessment methodologies, and regulatory compliance, usually backed by a degree in information security or a related field. Familiarity with tools like risk management software (e.g., Archer, RSA), SIEM systems, and certifications such as CISSP, CISM, or CRISC are typically expected. Exceptional analytical thinking, attention to detail, and strong communication skills set top performers apart in this role. These competencies are crucial to effectively identify, evaluate, and mitigate security risks, ensuring the organization's information assets remain protected against evolving threats.

What does a senior information security risk analyst do?

A Senior Information Security Risk Analyst is responsible for identifying, evaluating, and mitigating risks to an organization's information systems and data. They conduct risk assessments, develop security policies, and recommend measures to protect against cyber threats and vulnerabilities. Additionally, they work closely with IT and business teams to ensure compliance with regulations and industry standards, and they often play a key role in incident response and security awareness training.
What are popular job titles related to Senior Information Security Risk Analyst jobs in Northbrook, IL? For Senior Information Security Risk Analyst jobs in Northbrook, IL, the most frequently searched job titles are:
What cities near Northbrook, IL are hiring for Senior Information Security Risk Analyst jobs? Cities near Northbrook, IL with the most Senior Information Security Risk Analyst job openings:
Infographic showing various Senior Information Security Risk Analyst job openings in Northbrook, IL as of August 2026, with employment types broken down into 1% As Needed, 72% Full Time, 23% Part Time, 1% Temporary, and 3% Contract. Highlights an 94% Physical, 2% Hybrid, and 4% Remote job distribution, with an average salary of $123,399 per year, or $59.3 per hour.

Senior IT Risk and Compliance Analyst

NORC at the University of Chicago

Chicago, IL • Hybrid

Full-time

Medical, Dental, Vision, Life, Retirement, PTO

Re-posted 18 days ago


Job description

Senior IT Risk and Compliance Analyst

Apply now Job no: 503865 Work type: Regular Full-Time Location: Chicago - 300 E Randolph St Capability Area: IT DSS Security and Compliance

JOB SUMMARY:

NORC at the University of Chicago seeks Senior IT Risk and Compliance Analyst to join our DSS Security and Compliance group. The successful candidate will be part of an IT Risk and Compliance team, expert in government security standards and regulations.  

The successful candidate will be part of an IT Risk and Compliance team, expert in government security standards and regulations. The team is responsible for specifying, documenting, validating, and maintaining IT security & privacy controls to ensure compliance with security requirements of clients (principally Government) and corporate standards for data and systems integrity. The team develops and implements tools and processes to measure and track IT risk and compliance metrics. The team provides guidance to IT functional teams on risk and compliance as it pertains to system development, documentation, testing, monitoring, and reporting. The team conducts risk assessments and security impact analyses of information systems. 

Location: This is a hybrid role based in our Chicago Loop or Washington, DC office, with a minimum of six days per month in the office. 

Qualified applicants must be U.S. citizens due to security clearance requirements for projects. 

DEPARTMENT: Digital Services & Solutions Security & Compliance

NORC's Digital Services & Solutions group provides technology services to our staff and clients. Given the critical role technology plays in our day-to-day lives, we are committed to providing professional, high-quality solutions in order to further our collective goal of advancing social science research. 

RESPONSIBILITIES:
  • Work with the team in specifying, documenting, validating, and maintaining IT security & privacy controls to ensure compliance with security. requirements of clients (principally Government) and corporate standards for data and systems integrity. 

  • Help develop and implement tools and processes to measure and track IT risk and compliance metrics. 

  • Provide guidance to IT functional teams on risk and compliance as it pertains to system development, documentation, testing, monitoring, and reporting. 

  • Assist the team with conducting risk assessments and security impact analyses of information systems. 

REQUIRED SKILLS:

Education and Certifications: 

  • Bachelor's degree in computer science, Information Technology, or a related field (or equivalent years of experience). 

  • Professional certifications such as Certified Information Systems Security Professional (CISSP), Certified Information Security Manager (CISM), or similar certifications. 

General Experience: 

  • Minimum of 4 years of experience in information security roles, emphasizing security architecture and engineering solutions. 

  • Proven experience in performing network penetration testing, vulnerability scans, and configuration analysis. 

  • Experience overseeing project penetration testing activities. 

  • Preferred experience as an ISO for federal programs and projects. 

  • Experience coordinating communications across vendors, internal stakeholders, and program owners. 

  • Experience using CSAM 

ATO Experience: 

  • In-depth knowledge and experience guiding information systems through the Authorization to Operate (ATO) process:  

  • Proficient in navigating the complex landscape of ATO processes, demonstrating a successful track record in obtaining authorizations for information systems 

  • Extensive knowledge of the steps involved in the ATO process, ensuring compliance with government regulations and standards, including NIST Special Publications and FISMA 

  • A proven ability to streamline and expedite ATO timelines without compromising security standards, showcasing efficiency in documentation and regulatory adherence 

  • Expertise in developing and presenting comprehensive ATO documentation, including System Security Plans, to accrediting authorities and other relevant stakeholders 

  • Demonstrated skill in addressing and mitigating security risks identified during the ATO process, ensuring the secure operation of systems in various environments 

  • Exceptional communication skills to articulate ATO requirements, progress, and challenges to both technical and non-technical stakeholders, fostering collaboration and understanding. 

Risk Management Experience: 

  • Demonstrated experience in developing threat models and security risk assessments. 

  • Ability to recommend mitigations and countermeasures to address identified risks, vulnerabilities, and threats. 

  • Experience conducting incident response across vendors, internal stakeholders, and program owners, including implementing, and coordinating the response plan, overseeing the technical response, and coordinating with legal, technical, and communications teams. 

Compliance and Documentation: 

  • Thorough understanding and experience with government regulations and standards related to information security. 

  • In-depth knowledge of security compliance checks and the ability to perform audit activities. 

  • Experience in reviewing and validating security documentation, including system security requirements definition and System Security Plans. 

  • Experience conducting penetration testing across multiple vendors, contractors, and consultants that meet stringent client requirements. 

Communication and Guidance: 

  • Strong communication skills with the ability to guide NORC customers on information security policies and regulations. 

  • Ability to effectively communicate complex security concepts to both technical and non-technical stakeholders.

SALARY AND BENEFITS:

The pay range for this position is $97,000 - $120,000. 

This position is classified as regular. Regular staff are eligible for NORC's comprehensive benefits program. Benefits include, but are not limited to:  

  • Generously subsidized health insurance, effective on the first day of employment 

  • Dental and vision insurance  

  • A defined contribution retirement program, along with a separate voluntary 403(b) retirement program  

  • Group life insurance, long-term and short-term disability insurance 

  • Benefits that promote work/life balance, including generous paid time off, holidays; paid parental leave, bereavement leave, tuition assistance, and an Employee Assistance Program (EAP). 

NORC is committed to equity and transparency in its pay practices. We publish salary ranges and benefit information for every job. The listed hiring range reflects what we, in good faith, expect to pay at the time of posting, though actual compensation may vary and may be adjusted over time. A candidate's placement within the range depends on factors such as competencies, education, qualifications, experience, skills, performance, and organizational needs.

WHAT WE DO:

NORC at the University of Chicago is an objective, non-partisan research institution that delivers reliable data and rigorous analysis to guide critical programmatic, business, and policy decisions. Since 1941, our teams have conducted groundbreaking studies, created and applied innovative methods and tools, and advanced principles of scientific integrity and collaboration. Today, government, corporate, and nonprofit clients around the world partner with us to transform increasingly complex information into useful knowledge.

WHO WE ARE:

For over 80 years, NORC has evolved in many ways, moving the needle with research methods, technical applications and groundbreaking research findings. But our tradition of excellence, passion for innovation, and commitment to collegiality have remained constant components of who we are as a brand, and who each of us is as a member of the NORC team. With world-class benefits, a business casual environment, and an emphasis on continuous learning, NORC is a place where people join for the stellar research and analysis work for which we're known, and stay for the relationships they form with their colleagues who take pride in the impact their work is making on a global scale.

EEO STATEMENT: 

NORC is an equal opportunity employer. NORC evaluates qualified applicants without regard to race, color, religion, sex, gender, national origin, disability, status as a protected veteran, sexual orientation, and other legally protected characteristics. #LI-MS1

Advertised: June 26, 2026 Central Daylight Time Applications close:

Back to search results Apply now Refer a friend

Whatsapp Facebook LinkedIn Email App