1

Sr Risk And Vulnerability Analyst Jobs (NOW HIRING)

Senior Risk/Audit Analyst Locations: St. Louis MO, Charlotte NC, Dallas TX, Des Moines IA, Tempe ... Serve as an analyst in executing the risk management control for vulnerability consequence model ...

The Analyst will evaluate the reports to ensure the vulnerability is reproducible and therefore ... They will assess each vulnerability for severity and assign an associated risk statement. The ...

The Analyst will evaluate the reports to ensure the vulnerability is reproducible and therefore ... They will assess each vulnerability for severity and assign an associated risk statement. The ...

Perform vulnerability and risk analyses of applications throughout all phases of the SDLC. * Track, assess, and apply Security Technical Implementation Guides (STIGs) and system patches. * Support ...

The Analyst will evaluate the reports to ensure the vulnerability is reproducible and therefore ... They will assess each vulnerability for severity and assign an associated risk statement. The ...

The Analyst will evaluate the reports to ensure the vulnerability is reproducible and therefore ... They will assess each vulnerability for severity and assign an associated risk statement. The ...

* A Vulnerability Analyst II with a data focus is responsible for improving the quality, consistency ... A solid understanding of vulnerability management tools, security concepts, and risk-based ...

next page

Showing results 1-20

People also search for

Sr Risk And Vulnerability Analyst information

See salary details

$53.5K

$109.8K

$142.5K

How much do sr risk and vulnerability analyst jobs pay per year?

As of May 30, 2026, the average yearly pay for sr risk and vulnerability analyst in the United States is $109,846.00, according to ZipRecruiter salary data. Most workers in this role earn between $90,500.00 and $137,000.00 per year, depending on experience, location, and employer.

What are the key skills and qualifications needed to thrive as a Sr Risk and Vulnerability Analyst, and why are they important?

To thrive as a Sr Risk and Vulnerability Analyst, you need in-depth knowledge of cybersecurity principles, risk assessment methodologies, and a relevant degree or certifications such as CISSP or CEH. Proficiency with vulnerability scanning tools (e.g., Nessus, Qualys), SIEM systems, and risk management frameworks (like NIST or ISO 27001) is typically required. Strong analytical thinking, attention to detail, and effective communication skills help you interpret complex data and collaborate across teams. These competencies are vital for identifying threats, reducing organizational risk, and ensuring robust security defenses.

What are some common challenges faced by a Sr Risk and Vulnerability Analyst, and how can they be addressed?

Sr Risk and Vulnerability Analysts often encounter challenges such as staying updated with rapidly evolving threats, managing a large volume of vulnerabilities, and effectively communicating risks to non-technical stakeholders. Addressing these challenges involves continuous learning, leveraging automated tools for vulnerability management, and developing strong reporting and presentation skills to translate technical findings into actionable business insights. Collaboration with IT, security teams, and business leaders is essential to prioritize and remediate risks efficiently.

What does a Sr Risk and Vulnerability Analyst do?

A Sr Risk and Vulnerability Analyst is responsible for identifying, assessing, and mitigating risks and vulnerabilities within an organization’s information systems and processes. They conduct security assessments, analyze potential threats, and recommend strategies to protect assets and data. Their role often involves collaborating with IT, compliance, and management teams to develop risk management policies and respond to emerging security issues. Additionally, they may lead vulnerability testing and ensure the organization meets regulatory and industry standards for cybersecurity.

What is the difference between Sr Risk And Vulnerability Analyst vs Risk Analyst?

AspectSr Risk And Vulnerability AnalystRisk Analyst
CertificationsCertifications like CISSP, CISA often preferredSimilar certifications, often entry to mid-level
Work EnvironmentFocus on cybersecurity vulnerabilities and risk management in ITBroader risk assessment across financial, operational, or strategic areas
Employer & Industry UsageCommon in cybersecurity, IT, finance sectorsUsed across various industries including finance, insurance, and consulting

The Sr Risk And Vulnerability Analyst specializes in identifying and mitigating cybersecurity vulnerabilities, often requiring advanced certifications and experience. In contrast, a Risk Analyst has a broader scope, assessing risks across multiple business areas. Both roles require analytical skills but differ in focus and industry application.

More about Sr Risk And Vulnerability Analyst jobs
What cities are hiring for Sr Risk And Vulnerability Analyst jobs? Cities with the most Sr Risk And Vulnerability Analyst job openings:
What states have the most Sr Risk And Vulnerability Analyst jobs? States with the most job openings for Sr Risk And Vulnerability Analyst jobs include:
What job categories do people searching Sr Risk And Vulnerability Analyst jobs look for? The top searched job categories for Sr Risk And Vulnerability Analyst jobs are:

Senior Risk/Audit Analyst

Concord IT Systems

Dallas, TX • Hybrid

Contractor

Posted 15 days ago


Job description

Senior Risk/Audit Analyst
Locations: St. Louis MO, Charlotte NC, Dallas TX, Des Moines IA, Tempe/Phoenix AZ (Hybrid), (3 days onsite/2 wfh)
Duration: 12+ Months Contract
Must have skills : Risk management and Audit, JIRA and agile
Required Qualifications: 5 years of Information Security Analysis experience or equivalent demonstrated through one or a combination of the following: work or consulting experience training military experience education.
Skills:
This particular role is responsible for escalating overdue vulnerabilities to senior leaders for help getting urgent, prioritized attention to remediate them.
In this role, you will:
Serve as an analyst in executing the risk management control for vulnerability consequence model escalation.
Take daily direction from the control lead and overarching direction from the hiring manager.
Collaborate with other team members involved in executing this control in a collaborative teamwork fashion.
Identify improvements and lead efforts to implement the improvements to control execution and underlying technology and procedures.
Develop an understanding of incoming work, identify the affected parties, communicate action needed concisely.
Work with the remediation owners and their leadership to provide guidance on actions required• Track deliverables until completed, escalating when deliverables are missed.
Craft communications and reports which provide transparency into progress and insight into problems or actions needed.
Retain evidence and artifacts demonstrating the quality of execution of this work in support of audit and control reviews and quality assurance assessments.
Required Qualifications:
2+ years of Information Security Analysis experience, or equivalent demonstrated through one or a combination of the following: work experience, training, military experience, education
2+ years of advanced Excel data analysis
Desired Qualifications:
Extremely strong attention to detail in recognition that this is a heavily audited enterprise risk management control.
Prior audit or risk management experience.
Demonstrated experience in analyzing governance, policy, compliance, and risk management practices
Ability to work and influence successfully within a matrixed environment and build effective business partnerships with all levels of team members
Ability to facilitate and lead meetings to reach conclusions, identify tasks, record actions, and achieve results
Problem solving and decision-making skills
Strong communication skills and ability to articulate complex material to a diverse audience
Strong analytical skills with high attention to detail and accuracy
Excellent verbal, written, and interpersonal communication skills
Advanced Microsoft Office (Word, Excel, Outlook, and PowerPoint) skills
Demonstrated experience in use of Sharepoint
Demonstrated experience with Jira