30 information security risk analyst jobs at 23 companies in Washington, DC

2w
Save
Mark Applied
Hide
Senior Information Security Risk Analyst
Washington, District of Columbia, United States
$103k-$191k/yr HybridFull Time
Warner Bros. Discovery
Warner Bros. DiscoveryNasdaq: WBD: Produces and distributes multimedia entertainment content and news worldwide.
3+ YOEBS/BA required, 3+ years information security experience with at least 1 year in third‑party risk management; knowledge of network, access control and encryption; strong communication and analytical skills.
2mo
Save
Mark Applied
Hide
Sr Information Security Analyst II - IT
Washington, District of Columbia, United States
$141k-$243k/yr OnsiteFull Time
Federal Reserve Board of Governors
Federal Reserve Board of Governors: The central bank of the United States.
6+ YOESenior information security analyst with 6+ years of experience, bachelor's degree or equivalent, strong risk management, governance, and compliance knowledge.
3w
Save
Mark Applied
Hide
Security Governance Risk & Compliance (GRC) Analyst
Washington, District of Columbia, United States
$130k-$170k/yr RemoteFull Time
Virtru
Virtru: Provides data-centric encryption and privacy control software for organizations.
5+ YOE5+ years in information security/GRC or IT audit, deep knowledge of CMMC/NIST/FedRAMP/SOC2/PCI, cloud and GRC tool experience, strong communication and risk assessment skills.
Kubernetes, GCP, AWS, Terraform, GitHub, Okta, Hyperproof, Vanta, Drata, Datadog, Splunk
4d
Save
Mark Applied
Hide
Security Analyst, Third-Party Ecosystem Risk Management
New York City or Seattle or Raleigh or San Francisco or Washington or London or Amsterdam or United States or Canada or United Kingdom or Europe
$119k-$176k/yr HybridFull Time
Plaid
Plaid: Provides financial data connectivity and payment infrastructure via APIs.
4+ YOERequires 4+ years in vendor risk management, third-party security assessments, risk lifecycle management, security frameworks, program maturation, documentation, communication, and AI-assisted tooling.
SOC 2, ISO 27001, NIST CSF, OneTrust, ProcessUnity, Whistic, SecurityScorecard
2mo
Save
Mark Applied
Hide
Senior Cybersecurity Risk Analyst - USA Remote
Washington or Boston or Dallas or Chicago or Miami or Denver or Orange or Los Angeles or Las Vegas or Sacramento or Phoenix or San Diego or United States
$130k-$160k/yr RemoteFull Time
Danaher
DanaherNYSE: DHR: Develops scientific instruments and diagnostic tools for healthcare markets.
7+ YOE7+ years in third-party/vendor risk, enterprise risk, or vendor security; experience administering vendor questionnaires, reviewing SOC 2/ISO 27001 evidence, scoring at scale, reviewing cybersecurity contract provisions, and operating enterprise risk registers.
Shared Assessments SIG, NIST SP 800-161, ISO/IEC 27036, GDPR, HIPAA, PCI DSS, SOX, SOC 2, ISO 27001, NIST AI RMF, ISO/IEC 42001, OneTrust, ServiceNow IRM, RSA Archer
6d
Save
Mark Applied
Hide
Cyber Security Analyst
Herndon, Virginia, United States
$130k-$260k/yr OnsiteFull Time
Ardent Principles
Ardent Principles: Provides specialized technology and program management services to government agencies.
Active TS/SCI with full scope polygraph; experience with cloud security assessments, AWS, Azure, Oracle Cloud, GCP, security tools, NIST RMF, POA&Ms, compliance, reporting, and project management.
Amazon Web Services, Microsoft Azure, Oracle Cloud, Google Cloud, Rapid7, Nessus, Qualys, Xacta 360, Risk Vision, RSA Archer, NIST Risk Management Framework
3d
Save
Mark Applied
Hide
Analyst, Risk Analytics
London or New York City or Reston
OnsiteFull Time
Sony
SonyNYSE: SONY: Sells consumer electronics, video games, and entertainment media.
2+ YOERequires statistics and data analysis expertise, SQL and Python or R, data modeling, information security knowledge, and typically 2 years of relevant experience. Bachelor's degree preferred.
SQL, Python, R, Git, GitHub, GitLab, Microsoft Power BI, Tableau, Looker, Domo, CMDB, SIEM
3mo
Save
Mark Applied
Hide
IT Security Analyst
Baltimore, Maryland, United States
$90k-$100k/yr OnsiteFull Time
Baltimore Orioles
Baltimore Orioles: Professional Major League Baseball team and entertainment organization.
2+ YOEBachelor’s in cybersecurity or IT; 2–5+ years in cybersecurity; strong analytical skills; knowledge of risk, resilience, and security tooling; on-site role.
SIEM, EDR, Vulnerability Scanning, Incident Response Tools
3w
Save
Mark Applied
Hide
IT Risk & Compliance Analyst
Washington, District of Columbia, United States
$77k-$95k/yr OnsiteFull Time
NORC at the University of Chicago
NORC at the University of Chicago: Conducts objective social science research and public policy analysis.
2+ YOESupport FedRAMP continuous monitoring, assess security controls, coordinate evidence collection and audits, track remediation; U.S. citizenship required; 2+ years GRC/security experience preferred.
CSAM, ServiceNow GRC, Archer
6d
Save
Mark Applied
Hide
Senior Manager, Risk Management - Policy Analyst
McLean or Riverwoods or Plano or New York City or Richmond
$162k-$221k/yr OnsiteFull Time
Capital One
Capital OneNYSE: COF: A diversified financial services providing banking and credit products.
7+ YOEBachelor's degree or military experience; 7+ years in information security, data management, technology, or risk management; 5+ years developing or managing policy; project management and risk experience preferred.
Data Management Body of Knowledge (DMBOK)
1mo
Save
Mark Applied
Hide
Risk and Vulnerability Analyst
Washington, District of Columbia, United States
$60k-$180k/yr RemoteFull Time
M9 Solutions
M9 Solutions: Provides IT modernization and technology services to federal agencies.
3+ YOEActive Secret clearance, Bachelor's degree, 3+ years security experience, experience with scanning tools, cloud compliance scans, ISVM, API discovery, automation of scanning, and strong organization/customer-service focus.
Information Security Vulnerability Management (ISVM), API Discovery, Cloud Compliance
3w
Save
Mark Applied
Hide
Cyber Security Analyst II
Arlington, Virginia, United States
$120k-$130k/yr HybridFull Time
TechFlow
TechFlow: TechFlow provides infrastructure support and digital services for government.
5+ YOEBachelor's degree, 5+ years cybersecurity experience, ability to obtain Public Trust clearance, knowledge of security policies and risk management, and strong stakeholder communication.
Security Technology Integrated Program (STIP)
6d
Save
Mark Applied
Hide
AVP, Physical Security Intelligence Analyst
Stamford or Chicago or Connecticut or Costa Mesa or Kansas City or Orlando or Illinois or Dallas or New York City or New York or Boston or Minnesota or Cincinnati or Baltimore or Florida or Alpharetta or Ohio or Rapid City or California or Charlotte or Canton or Georgia
$100k-$170k/yr HybridFull Time
Synchrony
SynchronyNYSE: SYF: Provides consumer financial services and private label credit cards.
5+ YOEBachelor's degree or 8+ years analyst experience; 5+ years analyst experience, including 2+ years in intelligence, investigations, fraud, risk, technology, or operations; 2+ years online fraud or financial crimes experience.
social media, dark web, threat intelligence platform, Graphic Link Analysis, Cypher
6d
Save
Mark Applied
Hide
Senior Manager, Risk Management - Policy Analyst
McLean or Riverwoods or Plano or New York City or Richmond
$162k-$221k/yr OnsiteFull Time
Capital One
Capital OneNYSE: COF: Provides credit card, banking, and auto loan services.
7+ YOEBachelor's degree or military experience; 7+ years in information security, data management, technology, or risk management; 5+ years developing or managing policy. Cross-functional leadership preferred.
Data Management Body of Knowledge (DMBOK)
2w
Save
Mark Applied
Hide
Senior Risk and Vulnerability Analyst
Chandler or Washington
$104k-$166k/yr OnsiteFull Time
Peraton
Peraton: Provides advanced technology and mission support for government agencies.
8+ YOEBachelor's in Cybersecurity/IT (or 4 years' extra experience), 8+ years in security operations/vulnerability management (reduced with advanced degrees), hands-on ISVM and API scanning experience, automation and compliance familiarity, U.S. citizenship.
ISVM, API scanning
2w
Save
Mark Applied
Hide
Senior Risk and Vulnerability Analyst
Chandler or Washington
$104k-$166k/yr OnsiteFull Time
Peraton
Peraton: National security and mission-critical government technology services provider.
8+ YOE8+ years in security operations or vulnerability management; Bachelor in Cybersecurity/IT (or 4 years additional experience); hands-on vulnerability scanning, cloud compliance, ISVM, API scanning; Secret clearance and U.S. citizenship required.
ISVM, DHS 4300A, NIST SP 800-115, CISA BOD 23-01
2mo
Save
Mark Applied
Hide
Risk and Vulnerability Analyst II
Washington, District of Columbia, United States
HybridFull Time
SOSi
SOSi: Provides technology and mission solutions for national security.
3+ YOE3–5 years security experience performing vulnerability assessments and scanning across OS, databases, web apps and cloud; troubleshooting scan tools; automation and ISVM experience; Bachelor's degree; Secret clearance eligible.
Information System Vulnerability Management (ISVM)
1mo
Save
Mark Applied
Hide
Senior Cybersecurity Supply Chain Risk Management (SCRM) Analyst #1809720
Washington, District of Columbia, United States
$114k-$127k/yr OnsiteFull Time
Network Designs, Inc.
Network Designs, Inc.: Provides IT, network, and cybersecurity solutions to government agencies.
8+ YOEU.S. citizen with active TS clearance and ability to obtain SCI and pass CI polygraph; Bachelor's in CS/IT/business; 8+ years cybersecurity/risk/supply chain experience; Network+ and Security+ preferred.
5d
Save
Mark Applied
Hide
Cybersecurity Analyst
Arlington, Virginia, United States
$130k-$155k/yr OnsiteFull Time
Venture Global LNG
Venture Global LNGNYSE: VG: Develops and operates liquefied natural gas export facilities.
10+ YOEBachelor's degree or equivalent experience; 10+ years in cybersecurity, information security engineering, or security architecture; cloud, multi-cloud, risk assessment, security frameworks, IAM, cryptography, and DevSecOps expertise.
Azure, AWS, NIST 800-53, FISMA, FedRAMP, ISO 27000, SAML, OAuth, OIDC, Multi-Factor Authentication, DevSecOps
6d
Save
Mark Applied
Hide
Senior Security Governance and Policy Analyst
Washington, District of Columbia, United States
$145k-$168k/yr OnsiteFull Time
Concurrent Technologies Corporation
Concurrent Technologies Corporation: Conducts applied research and development for national security.
10+ YOEBachelor's degree or equivalent experience, 10+ years of progressive cybersecurity experience, federal and intelligence community program experience, governance, policy, risk, compliance, cloud and on-premises expertise.
NIST Cybersecurity Framework (CSF), NIST Special Publications (800 Series), Risk Management Framework (RMF), FISMA, CNSS, Intelligence Community Directives (ICDs), Zero Trust Architecture