48 security risk analyst jobs at 36 companies in California

2w
Save
Mark Applied
Hide
Senior Analyst, Security Risk
United States or Colorado or Hawaii or Illinois or Maryland or Massachusetts or Minnesota or Vermont or District of Columbia or New York or New Jersey or Washington or California or Connecticut or Pennsylvania
$129k-$189k/yr RemoteFull Time
Twilio
TwilioNYSE: TWLO: Cloud communications platform for building customer engagement applications.
5+ YOE5+ years security-focused risk management experience with industry risk frameworks, quantitative and qualitative risk analysis, automation and AI tooling, cross-functional collaboration, and strong communication skills.
NIST RMF, AI RMF, COSO, ISO 31000, GRC, AI
1w
Save
Mark Applied
Hide
Physical Security & Risk Analyst
Roseville or Mechanicsburg
$105k-$125k/yr HybridFull Time
GFT (Gannett Fleming)
GFT (Gannett Fleming): Provides infrastructure engineering, design, and construction management services.
10+ YOEBachelor's degree in a relevant field and 10+ years in physical security, infrastructure protection, mission assurance, emergency management, resilience, or risk assessment; strong analysis, writing, communication, and project management skills.
Microsoft Office, Microsoft Word, Microsoft Excel, Microsoft PowerPoint, Microsoft Outlook
1mo
Save
Mark Applied
Hide
Senior Security Analyst (Tier 3, Insider Risk) - Global Security Organization
San Jose, California, United States
$134k-$236k/yr OnsiteFull Time
TikTok
TikTok: Global short-form video hosting and social media platform.
Technical security analyst for insider risk investigations; strong log and telemetry analysis, IAM and cloud familiarity, EDR and endpoint/cloud/identity investigations, reporting and stakeholder communication.
Okta, Active Directory (AD), GCP, AWS, Azure, Ali Cloud, EDR, VPN, Slack, Microsoft Teams, Git, Python
3d
Save
Mark Applied
Hide
Security Analyst, Third-Party Ecosystem Risk Management
New York City or Seattle or Raleigh or San Francisco or Washington or London or Amsterdam or United States or Canada or United Kingdom or Europe
$119k-$176k/yr HybridFull Time
Plaid
Plaid: Provides financial data connectivity and payment infrastructure via APIs.
4+ YOERequires 4+ years in vendor risk management, third-party security assessments, risk lifecycle management, security frameworks, program maturation, documentation, communication, and AI-assisted tooling.
SOC 2, ISO 27001, NIST CSF, OneTrust, ProcessUnity, Whistic, SecurityScorecard
2d
Save
Mark Applied
Hide
Senior Information Security Governance, Risk & Compliance Analyst
Northridge or Georgia or Minnesota or Texas
$121k-$205k/yr OnsiteFull Time
MiniMed Group
MiniMed GroupNasdaq: MMED: A medical technology developing connected insulin delivery systems and support for people with diabetes.
7+ YOEBachelor’s degree or equivalent experience, 7+ years in information security GRC, risk, SOX ITGC, audit, access governance, or internal controls; SAP GRC certifications and advanced governance expertise required.
SAP GRC Access Control, SAP GRC Process Control, SAP GRC Risk Management, SAP, Oracle, Workday, ServiceNow, SailPoint, Entra ID, NIST Cybersecurity Framework, NIST Risk Management Framework, NIST AI Risk Management Framework, ISO 27001, ISO 31000, ISO 42001, COBIT, COSO Internal Control Framework, SOX 404 IT General Controls, HIPAA
3d
Save
Mark Applied
Hide
Security Analyst
Sacramento County or Sacramento
$7k-$11k/mo HybridFull Time
State Controller's Office
State Controller's Office: California's fiscal controller managing state financial operations and assets.
Information security role requiring eligibility for the Information Technology Specialist I classification, with work in security controls, risk assessments, incident response, compliance, vulnerability remediation, and project management.
Information Technology Project Management, Electronic Medical Records (EMR)
2w
Save
Mark Applied
Hide
Sr. Insider Risk Analyst
El Monte, California, United States
$75k-$87k/yr OnsiteFull Time
Cathay Bank
Cathay BankNASDAQ: CATY: Provides commercial and consumer financial services and banking solutions.
5+ YOE5+ years experience in insider threat, investigations, security operations or risk analysis; undergraduate degree or equivalent; knowledge of DLP, UEBA, OSINT, MITRE ATT&CK; strong analytical, communication, and confidentiality skills.
DLP, UEBA, UAM, MITRE ATT&CK, OSINT, TCP/IP, DNS, DHCP, HTTP/S
2mo
Save
Mark Applied
Hide
Insider Risk Analyst
San Diego, California, United States
$80k-$120k/yr OnsiteFull Time
Family Health Centers of San Diego
Family Health Centers of San Diego: Provides affordable medical and supportive care to underserved communities.
4+ YOE3–5 years supporting internal investigations, eDiscovery, compliance, security operations, or digital forensics; 2+ years coordinating with HR/Legal on sensitive matters; healthcare/regulatory experience preferred.
eDiscovery tools, DLP, Legal hold systems, ESI review platforms
1mo
Save
Mark Applied
Hide
Senior Cybersecurity Risk Analyst - USA Remote
Washington or Boston or Dallas or Chicago or Miami or Denver or Orange or Los Angeles or Las Vegas or Sacramento or Phoenix or San Diego or United States
$130k-$160k/yr RemoteFull Time
Danaher
DanaherNYSE: DHR: Develops scientific instruments and diagnostic tools for healthcare markets.
7+ YOE7+ years in third-party/vendor risk, enterprise risk, or vendor security; experience administering vendor questionnaires, reviewing SOC 2/ISO 27001 evidence, scoring at scale, reviewing cybersecurity contract provisions, and operating enterprise risk registers.
Shared Assessments SIG, NIST SP 800-161, ISO/IEC 27036, GDPR, HIPAA, PCI DSS, SOX, SOC 2, ISO 27001, NIST AI RMF, ISO/IEC 42001, OneTrust, ServiceNow IRM, RSA Archer
2mo
Save
Mark Applied
Hide
Agentic Risk Analyst
San Francisco, California, United States
$288k-$425k/yr HybridFull Time
OpenAI
OpenAI: Develops artificial intelligence models and generative AI software services.
7+ YOE7+ years experience in trust & safety, security, intelligence, or related fields; strong understanding of agentic AI systems; analytical judgment, technical fluency; experience synthesizing investigations and telemetry; SQL/Python a plus.
SQL, Python
2w
Save
Mark Applied
Hide
Engineer III - Cybersecurity Risk Analyst
Rancho Cucamonga, California, United States
$135k-$179k/yr HybridFull Time
Inland Empire Health Plan
Inland Empire Health Plan: Public health plan providing managed care to residents.
5+ YOE5 years cybersecurity experience focused on governance, compliance and risk; bachelor\u0002s in information systems security or related required; CISSP preferred; knowledge of cybersecurity/privacy laws and ability to apply principles.
2w
Save
Mark Applied
Hide
Engineer III - Cybersecurity Risk Analyst
Rancho Cucamonga, California, United States
$135k-$179k/yr HybridFull Time
Inland Empire Health Plan
Inland Empire Health Plan: Provides managed healthcare coverage to residents of the Inland Empire.
5+ YOEBachelor's in information systems security or related field, 5+ years cybersecurity experience focused on governance/compliance/risk, CISSP preferred, knowledge of cybersecurity/privacy laws and principles, leadership and project management experience.
2mo
Save
Mark Applied
Hide
IT Security Analyst
Huntington Beach or Farmers Branch
$110k-$130k/yr HybridFull Time
Confie
Confie: Distributes personal and small commercial insurance products nationwide.
4+ YOE4+ years IT security experience; perform risk assessments, security analysis, remediation planning, server administration, and incident response. Knowledge of network security, UTM/IPS/IDS, Linux, VMware, and Microsoft Active Directory.
Linux, VMware ESX/Vsphere, Microsoft Windows Active Directory, UTM, IPS, IDS, TCP/IP, MPLS, VoIP, Firewalls, routers, PCO, SOX
2d
Save
Mark Applied
Hide
Associate Security Trust Analyst
Belmont, California, United States
$96k-$118k/yr OnsiteFull Time
RingCentral
RingCentralNYSE: RNG: Sells cloud-based business phone and video conferencing software.
2+ YOERequires 2–3 years in security, risk, or enablement focused on GRC, TPRM, or security trust; a technical bachelor's degree or equivalent experience; security, vendor risk, compliance, writing, and data analysis skills.
AI, SaaS, SOC 2, ISO 27001, NIST
2mo
Save
Mark Applied
Hide
Information Security Analyst
San Diego, California, United States
OnsiteFull Time
Point Loma Nazarene University
Point Loma Nazarene University: Point Loma Nazarene University provides undergraduate and graduate degree programs.
5+ YOE5+ years IT enterprise infrastructure, security operations, risk management; certifications: CISSP, CC, CEH, GSEC, GCTI, CISM; experience with SIEM, firewalls, VPNs, data protection tools
SIEM, Firewalls, Endpoint protection, VPNs, Data protection tools
2d
Save
Mark Applied
Hide
Senior Information Security Analyst
Santa Clara, California, United States
$128k-$217k/yr RemoteFull Time
ServiceNow
ServiceNowNYSE: NOW: Enterprise cloud platform for digital workflow automation.
3+ YOERequires 3–5+ years in information or application security, CSA certification, cloud and security-tool expertise, Java/JavaScript knowledge, web proxy experience, application security, risk, compliance, and AI skills.
ServiceNow, Azure AI, AWS, SIEM, WAF, IDS/IPS, Java, JavaScript, OWASP Top Ten, NIST, CIS, GDPR, HIPAA, PCI DSS, ISO
1mo
Save
Mark Applied
Hide
Security Vetting Analyst
Costa Mesa or Washington
$99k-$130k/yr OnsiteFull Time
Anduril Industries
Anduril Industries: Defense technology building autonomous military hardware and software.
3+ YOEBachelor's degree,3–4 years experience in people risk vetting/investigations,public-record and OSINT research,analytical and communication skills,knowledge of defense security laws and ability to obtain Top Secret clearance.
1mo
Save
Mark Applied
Hide
Senior Security GRC Analyst
San Mateo, California, United States
$224k-$272k/yr HybridFull Time
Roblox
RobloxNYSE: RBLX: Platform for creating and playing user-generated 3D digital experiences.
4+ YOE4+ years GRC experience, risk assessment and policy development, ability to work with engineers, knowledge of compliance frameworks and security controls.
Factor Analysis of Information Risk (FAIR), Roblox Studio
1mo
Save
Mark Applied
Hide
Third Party Risk Management (TPRM) Analyst (Remote)
United States or California
$85k-$120k/yr RemoteFull Time
CrowdStrike
CrowdStrikeNASDAQ: CRWD: Provides cloud-native endpoint protection and cybersecurity services.
Experience in third-party/vendor risk management, GRC/TPRM tooling, security risk assessment methodologies and control frameworks; bachelor's degree or equivalent experience; preferred security certifications (CISSP, CISM, CRISC, CTPRP).
ServiceNow, OneTrust, ProcessUnity, GRC, BitSight, SecurityScorecard, SOC 1, SOC 2, ISO 27001, ISO 27002, NIST 800-53, CSA-CCM, GDPR, PCI-DSS, SBOM, AI, CrowdStrike
5d
Save
Mark Applied
Hide
AVP, Physical Security Intelligence Analyst
Stamford or Chicago or Connecticut or Costa Mesa or Kansas City or Orlando or Illinois or Dallas or New York City or New York or Boston or Minnesota or Cincinnati or Baltimore or Florida or Alpharetta or Ohio or Rapid City or California or Charlotte or Canton or Georgia
$100k-$170k/yr HybridFull Time
Synchrony
SynchronyNYSE: SYF: Provides consumer financial services and private label credit cards.
5+ YOEBachelor's degree or 8+ years analyst experience; 5+ years analyst experience, including 2+ years in intelligence, investigations, fraud, risk, technology, or operations; 2+ years online fraud or financial crimes experience.
social media, dark web, threat intelligence platform, Graphic Link Analysis, Cypher