1

Senior Information Security Risk Analyst Jobs (NOW HIRING)

Showing results 21-40

Senior Information Security Risk Analyst information

See salary details

$31

$58

$75

How much do senior information security risk analyst jobs pay per hour?

As of Sep 6, 2026, the average hourly pay for senior information security risk analyst in the United States is $58.45, according to ZipRecruiter salary data. Most workers in this role earn between $45.43 and $65.62 per hour, depending on experience, location, and employer.

What does a senior information security risk analyst do?

A Senior Information Security Risk Analyst is responsible for identifying, evaluating, and mitigating risks to an organization's information systems and data. They conduct risk assessments, develop security policies, and recommend measures to protect against cyber threats and vulnerabilities. Additionally, they work closely with IT and business teams to ensure compliance with regulations and industry standards, and they often play a key role in incident response and security awareness training.

What are the key skills and qualifications needed to thrive as a senior information security risk analyst?

A Senior Information Security Risk Analyst requires a deep understanding of cybersecurity frameworks, risk assessment methodologies, and regulatory compliance, usually backed by a degree in information security or a related field. Familiarity with tools like risk management software (e.g., Archer, RSA), SIEM systems, and certifications such as CISSP, CISM, or CRISC are typically expected. Exceptional analytical thinking, attention to detail, and strong communication skills set top performers apart in this role. These competencies are crucial to effectively identify, evaluate, and mitigate security risks, ensuring the organization's information assets remain protected against evolving threats.

How does a senior information security risk analyst typically collaborate with other departments to manage organizational risk?

A Senior Information Security Risk Analyst regularly works with various departments such as IT, legal, compliance, and business units to identify and address security risks. This collaboration often includes conducting risk assessments, reviewing new projects for potential vulnerabilities, and providing guidance on security best practices. Effective communication skills are essential, as the analyst must translate technical risks into business impacts and help teams implement appropriate controls. Close teamwork ensures that security is integrated into all business processes and that the organization remains compliant with relevant regulations.

What is the difference between Senior Information Security Risk Analyst vs Information Security Analyst?

AspectSenior Information Security Risk AnalystInformation Security Analyst
CertificationsCISSP, CISA, CRISCCISSP, Security+, CEH
Work EnvironmentFocus on risk assessment, policy development, and strategic planningImplementing security measures, monitoring, and incident response
Employer & Industry UsageFinancial, healthcare, and large enterprises with complex security needsVariety of industries, including tech, retail, and government

Senior Information Security Risk Analysts typically handle advanced risk assessments and strategic security planning, often requiring certifications like CISSP or CISA. Information Security Analysts focus on implementing security controls and monitoring systems. Both roles are vital in maintaining organizational security but differ in scope and seniority.

More about Senior Information Security Risk Analyst jobs

What cities are hiring for Senior Information Security Risk Analyst jobs?

Cities with the most Senior Information Security Risk Analyst job openings:

What states have the most Senior Information Security Risk Analyst jobs?

States with the most job openings for Senior Information Security Risk Analyst jobs include:

What job categories do people searching Senior Information Security Risk Analyst jobs look for?

The top searched job categories for Senior Information Security Risk Analyst jobs are:

Infographic showing various Senior Information Security Risk Analyst job openings in the United States as of August 2026, with employment types broken down into 1% As Needed, 73% Full Time, 23% Part Time, and 3% Contract. Highlights an 93% Physical, 2% Hybrid, and 5% Remote job distribution, with an average salary of $121,577 per year, or $58.5 per hour.

Senior Information Security Analyst

UNIVERSITY OF AZ FOUNDATION

Tucson, AZ โ€ข On-site

$90 - $110/hr

Other

Re-posted 16 days ago


Job description

Senior Information Security Analyst

Tucson, AZ, US

30+ days ago Requisition ID: 1155

Salary: $100,000.00 Annually

General Position Summary:

As a Senior Information Security Analyst, youโ€™ll have the opportunity to make a meaningful impact by fostering a security first mindset across the organization. If youโ€™re passionate about cybersecurity, weโ€™d love to hear from you! We are seeking a dedicated and engaging Senior Information Security Analyst to monitor, analyze, and respond to security threats and vulnerabilities within the organization. This role involves conducting risk assessments, investigating security incidents, ensuring compliance with industry standards and best practices, and leading employee security awareness initiatives and training programs. This role will play a crucial part in onboarding new employees, developing phishing awareness campaigns, facilitating one-on-one training, and collaborating with internal teams to promote a security-conscious culture. The ideal candidate will have a strong background in cybersecurity, excellent communication skills, and the ability to translate complex security topics into engaging and understandable content.

Supervisory Responsibility

This position is not supervisory in nature.

Essential Functions/ Major Responsibilities
  • Monitor security alerts and logs using organizationโ€™s cybersecurity tools.
  • Investigate and respond to security incidents, breaches, and vulnerabilities.
  • Perform root cause analysis and recommend corrective actions.
  • Conduct vendor security risk assessments and prepare formal reports.
  • Analyze security risks and provide recommendations for mitigation.
  • Lead security audits, compliance audits, risk assessments, and penetration testing efforts.
  • Assist with third-party risk assessments and vendor due diligence.
  • Support the development and maintenance of security policies, standards, and procedures.
  • Ensure compliance with regulatory requirements and security frameworks.
Knowledge, Skills, and Abilities
  • Conduct information cybersecurity training sessions for new employees as part of the onboarding process.
  • Develop engaging and informative cybersecurity training materials tailored to different employee roles.
  • Provide ongoing cybersecurity awareness education through various training methods (e-learning, webinars, in-person sessions).
  • Facilitate personalized training sessions for employees who require additional cybersecurity training.
  • Act as a cybersecurity awareness resource, addressing employee inquiries and concerns related to cybersecurity.
  • Create and manage phishing simulation campaigns to assess employee awareness and response.
  • Track, analyze, and report on phishing campaign results to identify trends and areas for improvement.
  • Ensure compliance with security policies by monitoring and reporting on repeated phishing failures.
  • Review reported phish emails and follow up with submitter.
  • Support compliance audits by ensuring complete and accurate documentation.
  • Coordinate with key stakeholders to update and maintain the business continuity and disaster recovery plan.
  • Update and maintain the incident response plan.
  • Serve as the primary liaison with the University of Arizonaโ€™s Information Security Office, ensuring compliance with its cybersecurity policies
Minimum Qualifications
  • Bachelorโ€™s degree in computer, cybersecurity, or a related field (or equivalent experience).
  • 3+ years of experience in cybersecurity work experience required.
  • Strong understanding of information security principles, phishing threats, and social engineering tactics.
  • Experience with phishing simulation tools and security awareness platforms.
  • Excellent communication, presentation, and superb customer service.
  • Excellent problem-solving, analytical, and organizational skills.
  • High attention to detail and commitment to confidentiality and integrity.
  • Ability to work collaboratively with teams across the organization.
  • Knowledge of security compliance frameworks (e.g., NIST, ISO 27001, SOC 2) is a plus.
Preferred Qualifications
  • Security + certificate.
  • Experience with threat protection, detection, and response tools for endpoints, email, identity, and cloud environments.
  • Ability to communicate effectively with technical IT staff.
  • Knowledge of IT architecture and operations.

The University of Arizona Foundation reserves the right to revise this job description at any time.

#J-18808-Ljbffr