5 cyber risk analyst jobs at 4 companies in Massachusetts

3mo
Save
Mark Applied
Hide
Cyber Product Analyst
Quincy, Massachusetts, United States
$120k-$203k/yr OnsiteFull Time
State Street
State StreetNYSE: STT: Global financial services and bank holding.
3+ YOEBachelor’s in cybersecurity or related field; 3-5 years in cybersecurity or technology risk; experience with cyber security products; knowledge of NIST/ISO 27001; familiarity with security tools.
Splunk, CrowdStrike, Qualys, AWS, CI/CD security, Veracode, Lakehouse technologies, Archer, ServiceNow GRC
1mo
Save
Mark Applied
Hide
Governance, Risk and Compliance Analyst
Reston or Somerville
$80k-$125k/yr HybridFull Time
Babel Street
Babel Street: Private U.S. software providing AI-powered risk intelligence and data analytics to governments, businesses, and organizations.
3+ YOEBachelor's degree or equivalent, 3+ years GRC/InfoSec experience, knowledge of NIST CSF, CMMC, Cyber Essentials Plus, SOC 2, ISO/IEC 27001, audit support and risk assessment skills.
NIST Cybersecurity Framework (NIST CSF), CMMC, Cyber Essentials Plus, ISO/IEC 27001, SOC 2
3w
Save
Mark Applied
Hide
Information Security Risk and Compliance Analyst
Boston, Massachusetts, United States
$84k-$106k/yr HybridFull Time
CarGurus
CarGurusNasdaq Global Select Market: CARG: Public online automotive marketplace helping consumers and dealers buy and sell new and used vehicles.
Manage third-party risk, customer security assurance, cyber risk, SOX ITGCs and governance; experience with GRC platforms, cloud environments, and security/IT certifications.
Auditboard, SAFE, Loopio
1w
Save
Mark Applied
Hide
Principal Information Security Risk and Compliance Analyst
Boston, Massachusetts, United States
$135k-$168k/yr HybridFull Time
CarGurus
CarGurusNasdaq Global Select Market: CARG: Public online automotive marketplace helping consumers and dealers buy and sell new and used vehicles.
8+ YOERequires 8+ years in information security, cyber risk, GRC, or IT audit; experience with cloud-native SaaS, SOC 2 Type II, SOX ITGCs, AI governance, risk assessments, and executive communication.
NIST AI Risk Management Framework, AWS
1mo
Save
Mark Applied
Hide
Senior GRC Analyst
Boston, Massachusetts, United States
$130k-$170k/yr OnsiteFull Time
WHOOP
WHOOP: Wearable technology developing health and fitness tracking devices.
6+ YOE6+ years in cybersecurity or enterprise risk; experience conducting structured cyber/IT risk assessments, maintaining risk registers, familiarity with security frameworks and AI risk; strong communication and analysis skills.
NIST CSF, ISO 27001, PCI DSS, GDPR, HIPAA, NIST AI RMF, ISO/IEC 42001, FAIR