Security Risk Analyst Location: Onsite at 55 Water Street, NYC Position Type: Long Term Contract / Potential several years with Right to Hire GRC focused Security role / Risk management, etc. Minimum ...

61 Qualys Security Risk Analyst Jobs Hiring Near You
Security Risk Analyst Location: Onsite at 55 Water Street, NYC Position Type: Long Term Contract / Potential several years with Right to Hire GRC focused Security role / Risk management, etc. Minimum ...
Great opportunity for a hands-on Sr. Security/Risk Analyst, an IT leader with ambition and drive to provide strategy, vision, communication, and direction regarding security risks to safeguard ...
Great opportunity for a hands-on Sr. Security/Risk Analyst, an IT leader with ambition and drive to provide strategy, vision, communication, and direction regarding security risks to safeguard ...
Information Security Risk Analyst
Manhattan, NY · Hybrid
$90K - $125K/yr
The Information Security Risk Analyst is responsible for supporting the organization ... such as Qualys or Tenable. * 3+ Years of experience with risk assessment methodologies and ...
Quick apply
Information Security Risk Analyst
Manhattan, NY · Hybrid
$90K - $125K/yr
The Information Security Risk Analyst is responsible for supporting the organization ... such as Qualys or Tenable. * 3+ Years of experience with risk assessment methodologies and ...
Information Security Risk Analyst
Manhattan, NY · On-site
$90K - $125K/yr
The Information Security Risk Analyst is responsible for supporting the organization ... such as Qualys or Tenable. * 3+ Years of experience with risk assessment methodologies and ...
Quick apply
Information Security Risk Analyst
Manhattan, NY · On-site
$90K - $125K/yr
The Information Security Risk Analyst is responsible for supporting the organization ... such as Qualys or Tenable. * 3+ Years of experience with risk assessment methodologies and ...
Physical Security & Risk Analyst
$105K - $125K/yr
As a Physical Security & Risk Analyst, you will help organizations enhance security, resilience, and mission assurance across critical facilities, infrastructure, and operations. In this role, you ...
Physical Security & Risk Analyst
$105K - $125K/yr
As a Physical Security & Risk Analyst, you will help organizations enhance security, resilience, and mission assurance across critical facilities, infrastructure, and operations. In this role, you ...
Physical Security & Risk Analyst
$105K - $125K/yr
As a Physical Security & Risk Analyst, you will help organizations enhance security, resilience, and mission assurance across critical facilities, infrastructure, and operations. In this role, you ...
Physical Security & Risk Analyst
$105K - $125K/yr
As a Physical Security & Risk Analyst, you will help organizations enhance security, resilience, and mission assurance across critical facilities, infrastructure, and operations. In this role, you ...
Physical Security & Risk Analyst
Roseville, CA · On-site
$105 - $125/hr
GFT is seeking a Physical Security & Risk Analyst to join our Security and Safety Team in Roseville, CA ! This role follows a hybrid work model, requiring regular attendance at our Mechanicsburg ...
New
Physical Security & Risk Analyst
Roseville, CA · On-site
$105 - $125/hr
GFT is seeking a Physical Security & Risk Analyst to join our Security and Safety Team in Roseville, CA ! This role follows a hybrid work model, requiring regular attendance at our Mechanicsburg ...
New
Physical Security & Risk Analyst
Roseville, CA · On-site
$105K - $125K/yr
As a Physical Security & Risk Analyst, you will help organizations enhance security, resilience, and mission assurance across critical facilities, infrastructure, and operations. In this role, you ...
Physical Security & Risk Analyst
Roseville, CA · On-site
$105K - $125K/yr
As a Physical Security & Risk Analyst, you will help organizations enhance security, resilience, and mission assurance across critical facilities, infrastructure, and operations. In this role, you ...
Physical Security & Risk Analyst
$105K - $125K/yr
As a Physical Security & Risk Analyst, you will help organizations enhance security, resilience, and mission assurance across critical facilities, infrastructure, and operations. In this role, you ...
Physical Security & Risk Analyst
$105K - $125K/yr
As a Physical Security & Risk Analyst, you will help organizations enhance security, resilience, and mission assurance across critical facilities, infrastructure, and operations. In this role, you ...
Physical Security & Risk Analyst
Mechanicsburg, PA · On-site
$105K - $125K/yr
As a Physical Security & Risk Analyst, you will help organizations enhance security, resilience, and mission assurance across critical facilities, infrastructure, and operations. In this role, you ...
Physical Security & Risk Analyst
Mechanicsburg, PA · On-site
$105K - $125K/yr
As a Physical Security & Risk Analyst, you will help organizations enhance security, resilience, and mission assurance across critical facilities, infrastructure, and operations. In this role, you ...
Physical Security & Risk Analyst
Roseville, CA · On-site
$105K - $125K/yr
As a Physical Security & Risk Analyst, you will help organizations enhance security, resilience, and mission assurance across critical facilities, infrastructure, and operations. In this role, you ...
Physical Security & Risk Analyst
Roseville, CA · On-site
$105K - $125K/yr
As a Physical Security & Risk Analyst, you will help organizations enhance security, resilience, and mission assurance across critical facilities, infrastructure, and operations. In this role, you ...
Physical Security & Risk Analyst
$105K - $125K/yr
As a Physical Security & Risk Analyst, you will help organizations enhance security, resilience, and mission assurance across critical facilities, infrastructure, and operations. In this role, you ...
Physical Security & Risk Analyst
$105K - $125K/yr
As a Physical Security & Risk Analyst, you will help organizations enhance security, resilience, and mission assurance across critical facilities, infrastructure, and operations. In this role, you ...
Information Security Risk Analyst 2
Minneapolis, MN · Hybrid
$85K - $95K/mo
The Information Security Risk Analyst will assess the information security posture of collegiate and administrative units by conducting information security risk assessments, including analyzing ...
Information Security Risk Analyst 2
Minneapolis, MN · Hybrid
$85K - $95K/mo
The Information Security Risk Analyst will assess the information security posture of collegiate and administrative units by conducting information security risk assessments, including analyzing ...
We are actively seeking Senior Information Security Risk Analyst for one of our client, Please share your resume with current location & full contact info Role: Senior Information Security Risk ...
We are actively seeking Senior Information Security Risk Analyst for one of our client, Please share your resume with current location & full contact info Role: Senior Information Security Risk ...
Sr. Security Risk Analyst
Houston, TX · On-site
Develops, implements, and maintain security risk management processes that enable security risks to be identified, aggregated, tracked, and managed. * Execute risk and threat analyst activities that ...
Sr. Security Risk Analyst
Houston, TX · On-site
Develops, implements, and maintain security risk management processes that enable security risks to be identified, aggregated, tracked, and managed. * Execute risk and threat analyst activities that ...
Develops, implements, and maintain security risk management processes that enable security risks to be identified, aggregated, tracked, and managed. * Execute risk and threat analyst activities that ...
Develops, implements, and maintain security risk management processes that enable security risks to be identified, aggregated, tracked, and managed. * Execute risk and threat analyst activities that ...
Information Security Risk Analyst
San Francisco, CA · On-site
$153K/yr
We are seeking an experienced Information Security Risk Analyst to help identify, assess, and reduce cybersecurity risk across cloud and on-prem environments. In this role, you will partner closely ...
Information Security Risk Analyst
San Francisco, CA · On-site
$153K/yr
We are seeking an experienced Information Security Risk Analyst to help identify, assess, and reduce cybersecurity risk across cloud and on-prem environments. In this role, you will partner closely ...
Security Risk Analyst - AI
New York, NY · On-site
Security review background - AI adaption knowledge for security risk review background Core Must-Haves: AI Security expertise - background in AI security reviews and AI adaptation risks Security Risk ...
Security Risk Analyst - AI
New York, NY · On-site
Security review background - AI adaption knowledge for security risk review background Core Must-Haves: AI Security expertise - background in AI security reviews and AI adaptation risks Security Risk ...
Our client, a IT Services and Consulting company, is looking for a Information Security Risk Analyst (GRC) for their Phoenix, AZ / Hybrid location. Responsibilities: * Conduct ITGC, ITAC, and ...
Our client, a IT Services and Consulting company, is looking for a Information Security Risk Analyst (GRC) for their Phoenix, AZ / Hybrid location. Responsibilities: * Conduct ITGC, ITAC, and ...
Information Security Risk Analyst
Tualatin, OR · On-site
$90 - $120/hr
Information Security Risk Analyst Date: Jul 5, 2026 Location: Tualatin, OR, US, 97062 Worker Category: Virtual Flex Job Summary The Cyber Threat Analytics Analyst is responsible for identifying ...
New
Information Security Risk Analyst
Tualatin, OR · On-site
$90 - $120/hr
Information Security Risk Analyst Date: Jul 5, 2026 Location: Tualatin, OR, US, 97062 Worker Category: Virtual Flex Job Summary The Cyber Threat Analytics Analyst is responsible for identifying ...
New
Qualys Jobs Information
What is it like to work at Qualys?
What makes Qualys an attractive place to work?
What are the most popular jobs at Qualys?

Job description
Position: Security Risk Analyst
Location: Onsite at 55 Water Street, NYC
Position Type: Long Term Contract / Potential several years with Right to Hire
GRC focused Security role / Risk management, etc.
Minimum Qualifications: The EITS Security Risk Analyst will interface between the CISO's strategic and process-based activities and the work of the technology-focused analysts, engineers and administrators in the IT organization. The Security Risk Analyst must be able to translate the IT-risk requirements and constraints of the business into technical control requirements and specifications, as well as develop metrics for ongoing performance measurement and reporting. The Security Risk Analyst coordinates the IT organization's technical activities to implement and manage security.
The EITS Security Risk Analyst is part of the Enterprise Information Technology Services, Information Security and Risk Management team and will work at an enterprise level to ensure a consistent delivery of information security and risk management services. This individual will act as a subject matter expert to the assigned business units on matters regarding information security and compliance with HIPAA, Joint Commission, DSRIP, COBIT, and state privacy laws.
General Tasks and Responsibilities Will Include:
Support Information Security and Risk Management by maintaining and enforcing the Information Security and risk management framework/methodology, including execution of risk analysis and risk mitigation strategies.
Manage the process of gathering, analyzing and assessing the current and future threat landscape, as well as providing the CISO with a realistic overview of risks and threats in the enterprise environment.
Exhibit best practice risk management skills through effective internal risk controls, risk monitoring, risk assessment and improvement of risk management processes.
Document and maintain the enterprise security risk governance methodology and risk management policy, process, and procedure.
Work with various stakeholders to identify information asset owners to classify data and systems as part of a control framework implementation.
Organize and perform the enterprise security risk assessment and gap analysis for all technologies, products, and functions introduced, including maintaining risk project work plans to measure and manage progress.
Track and document all internal risk reviews, assessments, risk acceptances, and security exceptions in a GRC tool.
Work with the enterprise architecture team to ensure that there is a convergence of business, technical and security requirements; liaise with IT management to align existing technical installed base and skills with future architectural requirements.
Develop a strong working relationship with the security engineering team to develop and implement controls and configurations aligned with security policies and legal, regulatory and audit requirements
Serve as the information security liaison and subject matter expert for all relevant EMR and PHI related security risk.
Conduct or participate in all relevant audits and risk assessment activities (whether operational risk, legal/compliance risk, reputational risk, or information security risk).
Aid in the planning and execution of risk remediation activities including the identification of practical, cost effective solutions.
Facilitate team meetings between stakeholders, project leaders, and the Information Technology teams.
Attend regular team, management, and project meetings and provide both verbal and written reports to the Leadership Team as required. This may include coordination with and support of an Operational Risk Committee.
Keep informed on current threats and industry regulations.
Knowledgeable In:
Healthcare industry experience required with understanding of EMR systems and data privacy issues related to PHI
Experience with reviewing IT solution requirements and security controls implementation
A strong understanding of the business impact of security tools, technologies and policies.
Knowledge and experience working with a GRC Software tool
Strong working knowledge of HIPAA, Joint Commission, CMS, and other regulatory legislation pertinent to the healthcare industry
Working knowledge of information security frameworks such as NIST CSF, HITECH, ISO27001/27002, PCI DSS and COBIT
Experience in conducting and responding to information security assessments and audits.
Strong analytical skills and the ability to resolve complex security vulnerabilities and design compensating controls
Other Preferred Skills:
Must possess a high degree of integrity and trust along with the ability to work independently
Participate in special projects as needed and perform other duties as assigned
Must be able to work independently as well as work as part of a fast-moving team
Must be able to work at various locations when necessary along with working various shifts
Educational Level:
A bachelor's degree in information systems
CISSP, CISA, CRISC or other relevant security qualification
Years Of Experience:
A minimum of seven years of IT experience, least 5 years dedicated to IT Security Risk Management, Risk Audit/Assessment, and/or Security and/or Data Privacy Investigation least two years in a supervisory capacity. Minimum Qualifications: The EITS Security Risk Analyst will interface between the CISO's strategic and process-based activities and the work of the technology-focused analysts, engineers and administrators in the IT organization. The Security Risk Analyst must be able to translate the IT-risk requirements and constraints of the business into technical control requirements and specifications, as well as develop metrics for ongoing performance measurement and reporting. The Security Risk Analyst coordinates the IT organization's technical activities to implement and manage security.
The EITS Security Risk Analyst is part of the Enterprise Information Technology Services, Information Security and Risk Management team and will work at an enterprise level to ensure a consistent delivery of information security and risk management services. This individual will act as a subject matter expert to the assigned business units on matters regarding information security and compliance with HIPAA, Joint Commission, DSRIP, COBIT, and state privacy laws.
General Tasks and Responsibilities Will Include:
Support Information Security and Risk Management by maintaining and enforcing the Information Security and risk management framework/methodology, including execution of risk analysis and risk mitigation strategies.
Manage the process of gathering, analyzing and assessing the current and future threat landscape, as well as providing the CISO with a realistic overview of risks and threats in the enterprise environment.
Exhibit best practice risk management skills through effective internal risk controls, risk monitoring, risk assessment and improvement of risk management processes.
Document and maintain the enterprise security risk governance methodology and risk management policy, process, and procedure.
Work with various stakeholders to identify information asset owners to classify data and systems as part of a control framework implementation.
Organize and perform the enterprise security risk assessment and gap analysis for all technologies, products, and functions introduced, including maintaining risk project work plans to measure and manage progress.
Track and document all internal risk reviews, assessments, risk acceptances, and security exceptions in a GRC tool.
Work with the enterprise architecture team to ensure that there is a convergence of business, technical and security requirements; liaise with IT management to align existing technical installed base and skills with future architectural requirements.
Develop a strong working relationship with the security engineering team to develop and implement controls and configurations aligned with security policies and legal, regulatory and audit requirements
Serve as the information security liaison and subject matter expert for all relevant EMR and PHI related security risk.
Conduct or participate in all relevant audits and risk assessment activities (whether operational risk, legal/compliance risk, reputational risk, or information security risk).
Aid in the planning and execution of risk remediation activities including the identification of practical, cost effective solutions.
Facilitate team meetings between stakeholders, project leaders, and the Information Technology teams.
Attend regular team, management, and project meetings and provide both verbal and written reports to the Leadership Team as required. This may include coordination with and support of an Operational Risk Committee.
Keep informed on current threats and industry regulations.
Knowledgeable In:
Healthcare industry experience required with understanding of EMR systems and data privacy issues related to PHI
Experience with reviewing IT solution requirements and security controls implementation
A strong understanding of the business impact of security tools, technologies and policies.
Knowledge and experience working with a GRC Software tool
Strong working knowledge of HIPAA, Joint Commission, CMS, and other regulatory legislation pertinent to the healthcare industry
Working knowledge of information security frameworks such as NIST CSF, HITECH, ISO27001/27002, PCI DSS and COBIT
Experience in conducting and responding to information security assessments and audits.
Strong analytical skills and the ability to resolve complex security vulnerabilities and design compensating controls
Other Preferred Skills:
Must possess a high degree of integrity and trust along with the ability to work independently
Participate in special projects as needed and perform other duties as assigned
Must be able to work independently as well as work as part of a fast-moving team
Must be able to work at various locations when necessary along with working various shifts
Educational Level:
A bachelor's degree in information systems
CISSP, CISA, CRISC or other relevant security qualification
Years Of Experience:
A minimum of seven years of IT experience, least 5 years dedicated to IT Security Risk Management, Risk Audit/Assessment, and/or Security and/or Data Privacy Investigation least two years in a supervisory capacity.
About RIT Solutions
Sourced by ZipRecruiter
Industry
Recruiting and staffing services
Company size
201 - 500 Employees
Headquarters location
Arlington, VA, US