270 information security risk analyst jobs at 214 companies in United States
1mo
Save
Mark Applied
Hide
1mo
Information Security Risk Analyst
New Brunswick, New Jersey, United States
$108k-$165k/yrHybridFull Time
Rutgers University: Providing higher education degrees and conducting academic research.
5+ YOEBachelor's in a related field and 5+ years information security experience; knowledge of HIPAA, GLBA, PCI DSS, NIST CSF; experience with GRC/VRM; strong communication and risk assessment skills.
HIPAA, GLBA, PCI DSS, NIST CSF, NIST 800-171, ISO 27001, ISO 27002, GRC, VRM
University of Minnesota: Public research university providing undergraduate and graduate education.
1+ YOEBachelor's degree plus 2 years relevant experience (or Master's); 1 year information security risk assessment experience; strong communication and analytical skills; knowledge of security standards and regulations.
Victaulic: Manufacturer of mechanical pipe joining and flow control systems.
0+ YOE0–2 years in information security, IT audit, or risk; familiarity with NIST CSF, ISO/IEC 27001, CMMC, and NIS2; experience with risk assessments, third-party audits, cloud/DevOps/application security; CompTIA Security+ or equivalent; CISA preferred.
5+ YOEBachelor’s degree in MIS/Computer Science or related; 5+ years in information security/risk; PCI-DSS knowledge; familiarity with COSO, COBIT, ISO, NIST, ITIL; ability to manage multiple tasks.
Lam ResearchNASDAQ: LRCX: Manufacturing equipment used to fabricate advanced semiconductor microchips.
Develop and tune SIEM detections, translate threat intelligence into detections, analyze security telemetry across cloud, endpoint, identity, and network sources; SIEM and scripting experience preferred.
SIEM, Microsoft Sentinel, Splunk, Exabeam, Securonix, KQL, SPL, SQL, Microsoft Defender XDR, Defender for Endpoint, Defender for Identity, Entra ID, Azure, AWS, Google Cloud, UEBA, MITRE ATT&CK, Python, PowerShell, Logic Apps, MISP, STIX/TAXII
Lam ResearchNASDAQ: LRCX: Designs and manufactures wafer fabrication equipment for the semiconductor industry.
Experience developing and tuning SIEM detections, threat hunting, incident response support, familiarity with security telemetry across cloud, endpoint, identity, and network, and scripting/automation skills.
Microsoft Sentinel, Splunk, Exabeam, Securonix, KQL, SPL, SQL, Microsoft Defender XDR, Defender for Endpoint, Defender for Identity, Entra ID, Azure, AWS, Google Cloud, Python, PowerShell, Logic Apps, MISP, STIX/TAXII, MITRE ATT&CK
FISNYSE: FIS: Provides technology solutions for merchants, banks, and capital markets
3+ YOEBachelor's in computer science or equivalent, 3+ years applicable experience desired, knowledge of IT general controls, strong communication, time management, problem-solving, stakeholder and project management, and controls assurance/testing.
University of Wisconsin–Madison: Public research university providing academic programs and clinical healthcare.
Experience conducting risk assessments (NIST/COBIT/ISO), knowledge of HIPAA and cloud/AI risks, professional information security or IT audit certification, project management and communication skills.
Southern FirstNASDAQ: SFST: Provides commercial and personal banking and mortgage lending services.
1+ YOE1-3 years information security/IT risk or audit experience in banking; knowledge of FFIEC, GLBA, SOX and risk frameworks (COBIT, NIST, PCI); bachelor’s degree or equivalent; CISSP/CISA/CISM preferred.
HAPO Community Credit Union: A member-owned credit union providing personal and business banking services.
Experienced information security analyst to monitor, investigate, and respond to security events, support vulnerability management, phishing campaigns, risk assessments, and mentor Level I/II analysts.
Microsoft Defender for Endpoint, Microsoft Purview, Defender for Office, Kusto Query Language, SIEM, Sentinel, Microsoft Office, FFIEC Cyber Assessment Tool, NIST 800-53, CIS Top 20
Krakow or Hyderabad or New York City or Chicago or London or Singapore or Hong Kong or Tokyo or United States or Europe or Asia
HybridFull Time
Pico: Provides managed infrastructure and data services to financial markets.
5+ YOE5+ years IT experience in information security; experience with firewall/IDS, SIEM, Linux, cloud (AWS/GCP), Fortinet and Firepower; risk and vulnerability assessment experience; bachelor's degree or equivalent; CCNA/CISSP/cloud security certs desirable.
Southcentral Foundation: Integrated medical and wellness services for Alaska Native people.
3+ YOEBachelor's or equivalent, 3+ years in security analyst/engineer or operations role, certification in CISSP/HCISPP/CISM/CRISC/CISA/GIAC-GSE (or obtain within 12 months); support implementation and assessment of security practices and risk management; meet employee health immunization requirements.
Federal Reserve Board of Governors: The central bank of the United States.
6+ YOESenior information security analyst with 6+ years of experience, bachelor's degree or equivalent, strong risk management, governance, and compliance knowledge.
Information Security GRC – Risk & Compliance Senior Analyst (Contract)
Southfield or Detroit
HybridFull Time, Contract
AlixPartners: Global business advisory specializing in turnaround and performance improvement.
3+ YOE3+ years experience in information security, risk, compliance or audit; knowledge of ISO27001/SOC2/PCI/HIPAA preferred; CISSP/CISA/CRISC desired; bachelor’s in IT preferred; MS Office and ServiceNow experience; must be authorized to work in the U.S.
Microsoft Word, Microsoft Excel, Microsoft PowerPoint, Microsoft SharePoint, ServiceNow
5+ YOE5+ years information security analysis experience; vulnerability management, application/cloud/container security, cybersecurity risk assessment, security analytics and reporting; strong communication and mentoring skills.
Capitol Federal Savings BankNasdaq: CFFN: Provides retail banking services and residential mortgage lending.
5+ YOE5+ years related experience in IT audit/governance/risk/compliance, industry security certification required (CISM, CISA, CRISC), knowledge of cybersecurity best practices, intermediate Excel and Microsoft Office, strong communication and analytical skills.
Johnson & Quin: Produces personalized direct mail and integrated marketing campaigns.
4+ YOEBachelor’s in cybersecurity or IT; 4–8 years in information security; knowledge of IT infrastructure; experience with SIEM/EDR; incident response; risk and compliance; automation/scripting; cloud security; audits and compliance.
SIEM, EDR/XDR, vulnerability management, PowerShell, Python, Microsoft 365, Azure
Providence: Provides comprehensive healthcare services through hospitals, clinics, and health plans.
10+ YOEBachelor's in CS/MIS/InfoSec/Business, 10 years information security experience, hands-on security risk management, service delivery and systems experience, cross-functional leadership, strong analysis and communication skills.
RWJBarnabas Health: Provides comprehensive academic healthcare services and medical research.
1+ YOEExperience performing security risk assessments in healthcare, knowledge of HIPAA privacy/security, 1+ year enterprise IT experience, CompTIA Security/Network preferred, bachelor's in IT preferred.