21 information security risk analyst jobs at 18 companies in Westminster, MD
1mo
Save
Mark Applied
Hide
1mo
Senior Information Security Risk Analyst
Washington, District of Columbia, United States
$103k-$191k/yrHybridFull Time
Warner Bros. DiscoveryNASDAQ: WBD: Global media and entertainment creating iconic content.
3+ YOEBS/BA required, 3+ years information security experience with at least 1 year in third‑party risk management; knowledge of network, access control and encryption; strong communication and analytical skills.
Board of Governors of the Federal Reserve System: U.S. government central banking agency that sets monetary policy, supervises financial institutions, and oversees Federal Reserve System.
6+ YOESenior information security analyst with 6+ years of experience, bachelor's degree or equivalent, strong risk management, governance, and compliance knowledge.
Virtru: Private data security platform providing encryption and access controls for enterprises and government agencies.
5+ YOE5+ years in information security/GRC or IT audit, deep knowledge of CMMC/NIST/FedRAMP/SOC2/PCI, cloud and GRC tool experience, strong communication and risk assessment skills.
Sony Group CorporationTokyo Stock Exchange: 6758: Public Japanese entertainment-and-technology conglomerate serving consumers, creators, and businesses through games, music, pictures, electronics, and sensors.
2+ YOERequires statistics and data analysis expertise, SQL and Python or R, data modeling, information security knowledge, and typically 2 years of relevant experience. Bachelor's degree preferred.
SQL, Python, R, Git, GitHub, GitLab, Microsoft Power BI, Tableau, Looker, Domo, CMDB, SIEM
Baltimore Orioles: Privately owned Major League Baseball club based in Baltimore serving baseball fans.
2+ YOEBachelor’s in cybersecurity or IT; 2–5+ years in cybersecurity; strong analytical skills; knowledge of risk, resilience, and security tooling; on-site role.
A3 Technology, Inc.: Private professional-services contractor providing system engineering, IT, aviation, and financial-management support to federal agencies.
2+ YOEExperience in security analysis, risk assessment, or related analytical role; strong security principles, controls, and vulnerability management; ability to communicate findings clearly; strong written/verbal communication; ability to work independently and collaboratively.
Bank of AmericaNYSE: BAC: Global financial services and banking institution.
5+ YOE5+ years of cloud security experience with AWS, Azure, or Google Cloud; CI/CD experience with Jenkins or GitLab CI/CD; strong risk analysis and communication skills; bachelor's degree preferred.
AWS, Azure, Google Cloud, Infrastructure as Code (IaC), Policy as Code (PaC), Jenkins, GitLab CI/CD, GitHub Copilot, Claude Code, Java, Python
Bank of AmericaNYSE: BAC: Global financial services and banking institution.
5+ YOERequires 5+ years of cloud security experience, AWS/Azure/Google Cloud expertise, CI/CD experience with Jenkins or GitLab CI/CD, and strong risk analysis and communication skills. Bachelor's degree preferred.
AWS, Azure, Google Cloud, Infrastructure as Code (IaC), Policy as Code (PaC), Jenkins, GitLab CI/CD, GitHub Copilot, Claude Code, Java, Python, CI/CD
Peraton: Provider of mission-critical national security technologies and services.
8+ YOE8+ years in security operations or vulnerability management; Bachelor in Cybersecurity/IT (or 4 years additional experience); hands-on vulnerability scanning, cloud compliance, ISVM, API scanning; Secret clearance and U.S. citizenship required.
Peraton: Provider of mission-critical national security technologies and services.
8+ YOEBachelor's in Cybersecurity/IT (or 4 years' extra experience), 8+ years in security operations/vulnerability management (reduced with advanced degrees), hands-on ISVM and API scanning experience, automation and compliance familiarity, U.S. citizenship.
SOS International: Technology and services integrator for government and defense missions.
3+ YOE3–5 years security experience performing vulnerability assessments and scanning across OS, databases, web apps and cloud; troubleshooting scan tools; automation and ISVM experience; Bachelor's degree; Secret clearance eligible.
Information System Vulnerability Management (ISVM)
5+ YOERequires 5+ years of information security analysis experience or equivalent experience, training, military experience, or education. Expertise in cyber risk, threat intelligence, social engineering, and cross-functional security initiatives preferred.
Network Designs, Inc.: Service-disabled veteran-owned federal IT contractor designing network, cybersecurity, applications, and resilient technology solutions for government customers.
8+ YOEU.S. citizen with active TS clearance and ability to obtain SCI and pass CI polygraph; Bachelor's in CS/IT/business; 8+ years cybersecurity/risk/supply chain experience; Network+ and Security+ preferred.
Venture Global LNGNYSE: VG: Producer and exporter of liquefied natural gas.
10+ YOEBachelor's degree or equivalent experience; 10+ years in cybersecurity, information security engineering, or security architecture; cloud, multi-cloud, risk assessment, security frameworks, IAM, cryptography, and DevSecOps expertise.
Concurrent Technologies Corporation (CTC): An independent nonprofit applied scientific research and development organization delivering full-lifecycle solutions to government and private-sector clients.
10+ YOEBachelor's degree or equivalent experience, 10+ years of progressive cybersecurity experience, federal and intelligence community program experience, governance, policy, risk, compliance, cloud and on-premises expertise.
NIST Cybersecurity Framework (CSF), NIST Special Publications (800 Series), Risk Management Framework (RMF), FISMA, CNSS, Intelligence Community Directives (ICDs), Zero Trust Architecture
MaximusNYSE: MMS: Government services and health administration partner for public programs.
7+ YOERequires active Secret clearance, US citizenship, 7+ years in cybersecurity, and 4+ years managing POA&Ms, federal security frameworks, vulnerability and risk management. Daily onsite work and 24x7x365 on-call availability required.
NIST 800-53, Risk Management Framework (RMF), Federal Information Security Modernization Act (FISMA), antivirus software, vulnerability scanners, access control, endpoint protection, Public Key Infrastructure (PKI), Security Information and Event Management (SIEM), Data Loss Prevention (DLP)
Cleveland Brothers Equipment: Exclusive Caterpillar dealer serving Pennsylvania, West Virginia, and Maryland.
Bachelor's or equivalent experience in cybersecurity/IT, deep GRC knowledge, experience with security frameworks, policy development, audits, risk assessments, control tracking, and strong written/verbal communication.
Koniag Advisory and Business Solutions, LLC: Alaska Native-owned management consulting firm advising federal agencies on administrative, financial, medical-office, and records-management operations.
5+ YOEBachelor's degree or equivalent experience, 5+ years in cybersecurity analysis, compliance, systems security, or risk management, and experience with enterprise applications or ServiceNow. Must obtain Public Trust.