The analyst will lead and contribute to the identification, assessment, documentation, mitigation, and communication of information security risks across the organization. This position supports risk ...
The analyst will lead and contribute to the identification, assessment, documentation, mitigation, and communication of information security risks across the organization. This position supports risk ...
Sr. Security Analyst
Chicago, IL · On-site
$99K - $129K/yr
Perform security risk assessments, quantify risk, facilitate risk decisions, and provide advisory services to business and technology stakeholders. * Support existing team of security analysts with ...
Sr. Security Analyst
Chicago, IL · On-site
$99K - $129K/yr
Perform security risk assessments, quantify risk, facilitate risk decisions, and provide advisory services to business and technology stakeholders. * Support existing team of security analysts with ...
Assess the adequacy of severity ratings, root cause analyses, action plans, and closure evidence ... Relevant risk, security, audit, or control certifications preferredsuch as CISA, CISM, CISSP, CCSP ...
Assess the adequacy of severity ratings, root cause analyses, action plans, and closure evidence ... Relevant risk, security, audit, or control certifications preferredsuch as CISA, CISM, CISSP, CCSP ...
Conducting Security risk assessments of OCC third parties and technologies * Collaborate with the Security Engineering & Technology Integration and Threat Intelligence teams to assess risk and set ...
Conducting Security risk assessments of OCC third parties and technologies * Collaborate with the Security Engineering & Technology Integration and Threat Intelligence teams to assess risk and set ...
Conducting Security risk assessments of OCC third parties and technologies * Collaborate with the Security Engineering & Technology Integration and Threat Intelligence teams to assess risk and set ...
Conducting Security risk assessments of OCC third parties and technologies * Collaborate with the Security Engineering & Technology Integration and Threat Intelligence teams to assess risk and set ...
... security risk oversight for areas of the enterprise that manage technology. As part of this ... Evaluate risk and control identification within key processes and perform gap assessments on ...
... security risk oversight for areas of the enterprise that manage technology. As part of this ... Evaluate risk and control identification within key processes and perform gap assessments on ...
Partners across Technology, Security, Product, Data, and other business functions to evaluate risk and control practices, including risk assessments, issues management, control validation, key risk ...
Partners across Technology, Security, Product, Data, and other business functions to evaluate risk and control practices, including risk assessments, issues management, control validation, key risk ...
Research and recommend new or updated risk assessment methodologies, frameworks, and standards * Assist with other Security Assurance Program efforts including but not limited to tracking of ...
Research and recommend new or updated risk assessment methodologies, frameworks, and standards * Assist with other Security Assurance Program efforts including but not limited to tracking of ...
The team conducts risk assessments and security impact analyses of information systems. Location: This is a hybrid role based in our Chicago Loop or Washington, DC office, with a minimum of six ...
The team conducts risk assessments and security impact analyses of information systems. Location: This is a hybrid role based in our Chicago Loop or Washington, DC office, with a minimum of six ...
The team conducts risk assessments and security impact analyses of information systems. Location : This is a hybrid role based in our Chicago Loop or Washington, DC office, with a minimum of six days ...
The team conducts risk assessments and security impact analyses of information systems. Location : This is a hybrid role based in our Chicago Loop or Washington, DC office, with a minimum of six days ...
... Security perspective. This position is 100% Onsite and not open for Remote. Manager, Cybersecurity ... assessments to support InfoSec the identification of risk across policy domains, identify ...
... Security perspective. This position is 100% Onsite and not open for Remote. Manager, Cybersecurity ... assessments to support InfoSec the identification of risk across policy domains, identify ...
Manager - Third Party Risk The position will be primarily responsible for managing and leading the assessment of the information security posture of key clients' third parties while overseeing the ...
Manager - Third Party Risk The position will be primarily responsible for managing and leading the assessment of the information security posture of key clients' third parties while overseeing the ...
Lead Security of AI engagements - AI risk assessments, threat modeling for LLM-integrated applications, agentic system security reviews, red team exercises, and governance program design * Shape and ...
Lead Security of AI engagements - AI risk assessments, threat modeling for LLM-integrated applications, agentic system security reviews, red team exercises, and governance program design * Shape and ...
Lead Security of AI engagements - AI risk assessments, threat modeling for LLM-integrated applications, agentic system security reviews, red team exercises, and governance program design * Shape and ...
Lead Security of AI engagements - AI risk assessments, threat modeling for LLM-integrated applications, agentic system security reviews, red team exercises, and governance program design * Shape and ...
Oversee security risk assessments of our operations and policies. Qualifications What's needed to succeed (Minimum Qualifications): * The successful candidate must have or be able to obtain a DoD ...
Oversee security risk assessments of our operations and policies. Qualifications What's needed to succeed (Minimum Qualifications): * The successful candidate must have or be able to obtain a DoD ...
Senior Physical Security Manager
Chicago, IL · On-site +1
$160K - $180K/yr
Hardening & Risk Assessment: Conduct comprehensive Physical Security Risk Assessments (PSRA) for all sites. Identify vulnerabilities and implement physical hardening measures (ballistic glass ...
Senior Physical Security Manager
Chicago, IL · On-site +1
$160K - $180K/yr
Hardening & Risk Assessment: Conduct comprehensive Physical Security Risk Assessments (PSRA) for all sites. Identify vulnerabilities and implement physical hardening measures (ballistic glass ...
Senior Physical Security Manager
Chicago, IL · On-site
$160K - $180K/yr
Hardening & Risk Assessment: Conduct comprehensive Physical Security Risk Assessments (PSRA) for all sites. Identify vulnerabilities and implement physical hardening measures (ballistic glass ...
Senior Physical Security Manager
Chicago, IL · On-site
$160K - $180K/yr
Hardening & Risk Assessment: Conduct comprehensive Physical Security Risk Assessments (PSRA) for all sites. Identify vulnerabilities and implement physical hardening measures (ballistic glass ...
Cybersecurity Assessment and Test Analyst II
Chicago, IL · On-site
$116K - $144K/yr
You'll partner with teams across multiple Security, and Technology teams and the broader business to assess risk, validate controls, and drive remediation. Reporting into a security governance ...
Cybersecurity Assessment and Test Analyst II
Chicago, IL · On-site
$116K - $144K/yr
You'll partner with teams across multiple Security, and Technology teams and the broader business to assess risk, validate controls, and drive remediation. Reporting into a security governance ...
Principal Information Security Risk Management - AI
Chicago, IL · Hybrid
$221K - $276K/yr
The Principal Information Security Risk Management, AI is responsible for ensuring enterprise-wide ... Assess and challenge risks related to: * Prompt injection and jailbreak attacks * Data leakage ...
Principal Information Security Risk Management - AI
Chicago, IL · Hybrid
$221K - $276K/yr
The Principal Information Security Risk Management, AI is responsible for ensuring enterprise-wide ... Assess and challenge risks related to: * Prompt injection and jailbreak attacks * Data leakage ...
... security posture improvement, and technology risk reduction. This role serves as a technology ... Drive PCI compliance, assessment, and remediation efforts across multiple technology teams. * Lead ...
... security posture improvement, and technology risk reduction. This role serves as a technology ... Drive PCI compliance, assessment, and remediation efforts across multiple technology teams. * Lead ...
Temporary Security Risk Assessment information
See Romeoville, IL salary details
$10.54 - $16.07
2% of jobs
$16.07 - $21.59
0% of jobs
$21.59 - $27.12
1% of jobs
$27.12 - $32.64
1% of jobs
$32.64 - $38.17
1% of jobs
$42.31 is the 25th percentile. Wages below this are outliers.
$38.17 - $43.69
26% of jobs
$43.69 - $49.22
11% of jobs
The median wage is $51.19 / hr.
$49.22 - $54.75
22% of jobs
$54.75 - $60.27
9% of jobs
$60.70 is the 75th percentile. Wages above this are outliers.
$60.27 - $65.80
17% of jobs
$65.80 - $71.32
9% of jobs
$10
$51
$71
How much do temporary security risk assessment jobs pay per hour?
What is the difference between Temporary Security Risk Assessment vs Security Analyst?
| Aspect | Temporary Security Risk Assessment | Security Analyst |
|---|---|---|
| Credentials | Certifications like CISSP, CISA often preferred | Same certifications typically required |
| Work Environment | Project-based, short-term assessments | Ongoing security monitoring and analysis |
| Industry Usage | Used during specific projects or audits | Continuous security operations in organizations |
| Search & Comparison Intent | Focus on temporary assessments and risk evaluations | Focus on ongoing security analysis roles |
The main difference is that a Temporary Security Risk Assessment is a short-term, project-specific evaluation of security risks, often used during audits or specific initiatives. In contrast, a Security Analyst performs ongoing security monitoring and analysis within an organization. Both roles require similar certifications and work in security-focused environments, but their scope and duration differ significantly.
Information Security Risk Analyst - Intermediate
Darien, IL • On-site
Full-time
Posted 9 days ago
University Of Chicago Medicine rating
7.4
Based on 61 frontline employees who took The Breakroom Quiz
262nd of 887 rated healthcare providers
Job description
Join a world-class academic healthcare system, UChicago Medicine, as an Information Security Risk Analyst - Intermediate in our Information Security and Privacy GRC department. This position will be primarily a work-from-home opportunity with the requirement to come onsite as needed. You will need to be based in the greater Chicagoland area.
The Information Security Risk Analyst - Intermediate plays a critical role within the Governance, Risk and Compliance (GRC) team in executing and enhancing the organization's information security risk management program. The analyst will independently conduct risk analysis on information systems, platforms, and processes in accordance with established regulatory requirements, organizational policies, and industry standards. The analyst will lead and contribute to the identification, assessment, documentation, mitigation, and communication of information security risks across the organization.
This position supports risk-driven decision-making by collaborating with stakeholders, managing risk treatment plans, and ensuring compliance with HIPAA, NIST, and other applicable healthcare cybersecurity regulations and frameworks. The analyst is expected to operate with moderate independence, assist in maturing risk workflows, and contribute to strategic improvements in governance, risk, and compliance activities.
The ideal candidate will have a strong understanding of security frameworks, risk assessment methodologies, risk assessments, risk registers, and the management of audit and penetration testing findings. The ideal candidate should be adept at monitoring regulatory developments while promoting a culture of risk awareness across the organization.
Essential Job Functions
- Lead and conduct comprehensive information security risk analysis for IT assets, applications, processes, medical devices and third-party vendors.
- Evaluate threats and vulnerabilities affecting the confidentiality, integrity, and availability of electronic protected health information (ePHI) and any other confidential or sensitive information, ensuring alignment with HIPAA Security Rule requirements and other applicable regulatory frameworks (e.g., NIST,).
- Lead and manage risk management initiatives based on analysis of outcomes, including maintaining the organization's risk register and scoring methodology.
- Oversee corrective action plans (CAPs), penetration testing results, audit findings, and risk treatment outcomes.
- Collaborate with IT partners and key stakeholders to prioritize, implement, and track remediation efforts.
- Monitor regulatory changes and industry threats to proactively identify emerging risks, recommend mitigation strategies, and document findings.
- Contribute to risk reporting, including executive dashboards, and participate in risk acceptance processes and governance reviews.
- Contribute to the development, review, and improvement of cybersecurity policies, standards, and procedures.
- Evaluate policy exceptions and assist in documenting decisions for governance committees.
- Enhance the organization's cybersecurity awareness and training efforts by communicating risk insights to technical and non-technical audiences.
- Other duties as assigned
Required Qualifications
- Bachelor's degree required in Information Security, Computer Science, Engineering, Information Technology, or a related field; master's degree preferred
- 3+ years of experience in cybersecurity, information security risk management, audit; healthcare industry experience strongly preferred
- Demonstrated experience with risk assessment methodologies, auditing, information security practices, and familiarity with risk management platforms and risk registers
- Strong understanding of regulatory compliance and industry best practices towards maintaining compliance with HIPAA, NIST and other relevant healthcare regulations and standards
- One or more of the following certifications are required or must be obtained within 12 months of hire: CRISC, CISM, CISA or any other applicable certification
- Ability to lead and structure risk assessments with limited supervision
- Ability to manage multiple concurrent assessments and projects in a fast-paced healthcare setting
- Experience preparing both detailed technical risk reports and executive-level summaries, tailored to varied audiences to support informed decision-making and governance oversight
- Ability to build strong cross-functional relationships and collaboration across departments, including IT, Legal, Compliance, Clinical Operations, and Privacy, to support a collaborative approach to risk management and governance
- Strong written and verbal communication and interpersonal skills, including ability to translate technical findings into business-relevant language for leadership audiences
- Experience tracking audit findings, third party vendor risks, and remediation efforts
- Familiarity with security platforms and tools
- Ability to analyze contractual security language to identify risk exposure and recommend controls
- Ability to learn quickly and work effectively in a team environment
- Ability to understand and work with healthcare professionals, educators, and researchers
- Ability to integrate cybersecurity risk management with business operations, healthcare delivery, and IT services
Position Details
- Job Type/FTE: Full Time
- Shift: Days
- Location: Flexible (Hyde Park; Darien)
- Unit/Department: Information Security Office
- CBA Code: Non-Union
About Us
We've been at the forefront of medicine since 1899. We provide superior healthcare with compassion, always mindful that each patient is a person, an individual. To accomplish this, we need employees with passion, talent and commitment... with patients and with each other. We're in this together: working to advance medical innovation, serve the health needs of the community, and move our collective knowledge forward. If you'd like to add enriching human life to your profile, UChicago Medicine is for you. Here at the forefront, we're doing work that really matters. Join us. Bring your passion.
UChicago Medicine is growing; discover how you can be a part of this pursuit of excellence at: UChicago Medicine Career Opportunities
UChicago Medicine is an equal opportunity employer. We evaluate qualified applicants without regard to race, color, ethnicity, ancestry, sex, sexual orientation, gender identity, marital status, civil union status, parental status, religion, national origin, age, disability, veteran status and other legally protected characteristics.
As a condition of employment, all employees are required to complete a pre-employment physical, background check, drug screening, and comply with the flu vaccination requirements prior to hire. Medical and religious exemptions will be considered for flu vaccination consistent with applicable law.
Compensation & Benefits Overview
UChicago Medicine is committed to transparency in compensation and benefits. The pay range provided reflects the anticipated wage or salary reasonably expected to be offered for the position.
The pay range is based on a full-time equivalent (1.0 FTE) and is reflective of current market data, reviewed on an annual basis. Compensation offered at the time of hire will vary based on candidate qualifications and experience and organizational considerations, such as internal equity. Pay ranges for employees subject to Collective Bargaining Agreements are negotiated by the medical center and their respective union.
Review the full complement of benefit options for eligible roles at Benefits - UChicago Medicine.
What University Of Chicago Medicine employees say
Pay
Benefits
Hours and flexibility
Workplace
Get the full story on Breakroom