30 security risk analyst jobs at 18 companies in Hanover, MA
1d
Save
Mark Applied
Hide
1d
Front Office Market Risk Analyst, Assistant Vice President
Boston, Massachusetts, United States
$90k-$158k/yrOnsiteFull Time
State StreetNYSE: STT: Global financial services and bank holding.
3+ YOEBachelor's degree in a quantitative discipline and 3+ years in prime brokerage, securities financing, or margin risk management; expertise in hedge fund portfolio, leverage, liquidity, collateral, and margin risks.
Center for Health Information and Analysis: Independent Massachusetts agency that collects and analyzes health care data for policymakers, providers, payers, researchers, and residents.
1+ YOE1+ year IT security experience (Level I) or 2+ years (Level II); knowledge of Azure and Microsoft technologies; experience with network/firewall tech; strong written and verbal English; perform risk/vulnerability assessments and incident response.
Active Directory, Microsoft 365, Microsoft Azure, Cisco, Palo Alto
ProsegurBME: PSG: Global leader in private security and cash management services.
Strong analytical and organizational skills, experience with intelligence/incident/video/dispatch systems, security procedures and life-safety knowledge, effective communicator under stress.
Principal Technology Risk Analyst - Program & Regulatory Assurance
Merrimack or Smithfield or Westlake
OnsiteFull Time
Fidelity Investments: Provider of investment, retirement, and financial planning services.
5+ YOERequires 5–7 years in IT risk, controls, or audit; preferred bachelor's degree, risk or cloud certifications, financial services controls experience, cloud security knowledge, and GRC tool experience.
Front Office Market Risk Analyst, Assistant Vice President
Boston, Massachusetts, United States
$90k-$158k/yrOnsiteFull Time
State StreetNYSE: STT: Global financial services and bank holding.
3+ YOEBachelor's degree in a quantitative field and 3+ years in prime brokerage, securities financing, or margin risk management; expertise in hedge fund portfolio risk, collateral, leverage, liquidity, and margin methodologies.
Principal Technology Risk Analyst - Program & Regulatory Assurance
Merrimack or Smithfield or Westlake
OnsiteFull Time
Fidelity Investments: Provider of investment, retirement, and financial planning services.
5+ YOE5+ years in IT risk, controls, or audit; experience documenting controls in large financial services environments; knowledge of cloud, network, resiliency, and security controls; strong communication and analytical skills.
DigitalOceanNYSE: DOCN: The AI-Native Cloud purpose-built for inference and agentic workloads.
6+ YOE6+ years in detection & response, insider risk, or security engineering; hands-on UEBA/SIEM/DLP/UAM/SOAR; scripting with Python/Go/Bash; familiarity with macOS, Windows, Linux, Kubernetes and cloud; knowledge of MITRE ATT&CK and NIST.
AAA Northeast: Provides roadside assistance, travel, insurance, and financial services.
3+ YOERequires an associate degree, 3+ years of related IT experience, vulnerability and risk assessment knowledge, analytical and communication skills, domestic travel, and participation in off-hours and 24/7 on-call rotation.
Ross StoresNASDAQ: ROST: Off-price retailer of apparel and home fashion.
5+ YOEFive years of IT experience, including three in security or risk management; bachelor's degree preferred; security governance, compliance, risk management, analytical, communication, and project management skills required.
Microsoft Word, Microsoft Excel, Microsoft PowerPoint, UNIX, Windows, Firewalls, VPN, PKI, IPS, Oracle, MS SQL
PPL CorporationNYSE: PPL: Energy utility holding providing electricity and natural gas.
5+ YOEBachelor's degree and 5+ years experience; deep hands-on firewall (Cisco ASA, Palo Alto) and Panorama experience; familiarity with SIEM, NIDS/NIPS, HIDS/HIPS; incident investigation and risk analysis skills.
WHOOP: Wearable technology developing health and fitness tracking devices.
6+ YOE6+ years in cybersecurity or enterprise risk; experience conducting structured cyber/IT risk assessments, maintaining risk registers, familiarity with security frameworks and AI risk; strong communication and analysis skills.
NIST CSF, ISO 27001, PCI DSS, GDPR, HIPAA, NIST AI RMF, ISO/IEC 42001, FAIR
Cambridge or New York City or Washington or Atlanta or San Francisco
$119k-$193k/yrOnsiteFull Time
Forrester ResearchNasdaq: FORR: Public research and advisory firm serving business and technology leaders with research, consulting, and events.
5+ YOERequires 5+ years of security and risk experience, BA/BS or equivalent, strong research, critical thinking, writing, presentation, and business skills; must be a US citizen and travel 30%-50%.
Managed Detection and Response (MDR), Managed Security Services (MSS), Zero Trust
Control Risks: Global risk consultancy providing strategic security and resilience advice.
1+ YOE1–3 years in corporate or governmental security, familiarity with global risk intelligence and incident response, emergency notification and travel risk systems experience advantageous, strong open-source analysis and communication skills.
Arizona or California or Florida or Georgia or Illinois or Massachusetts or Michigan or New Hampshire or New York or New Mexico or North Carolina or Tennessee or Virginia or Medford
$75k-$95k/yrRemoteFull Time
Agero: A private U.S. provider of white-label roadside assistance, accident management, and driver-safety technology for automakers and insurers.
3+ YOERequires 3–5 years in information security compliance and hands-on experience with PCI-DSS, SOC 2, or ISO 27001 frameworks, including control mapping, evidence evaluation, risk mitigation, and strong communication skills.
Geode Capital Management: Systematic asset manager providing core beta exposures to institutional investors across equity and niche asset classes.
5+ YOERequires 5–8 years in IT governance, technology audit, information security, or IT risk management; a related bachelor's or master's degree; governance framework expertise; and ITAM/ITSM tool experience.
DraftKingsNasdaq: DKNG: Publicly traded U.S. sports entertainment and gaming serving fans with fantasy sports, betting, lottery, and events.
Bachelor’s degree in computer science, information technology, or related field plus 5+ years in technical compliance, IT audit, security compliance, privacy, risk, or governance. Framework and audit experience required.
Python, Service Organization Control 2 (SOC 2), International Organization for Standardization (ISO 27001), Payment Card Industry Data Security Standard (PCI DSS), Sarbanes-Oxley Information Technology General Controls (SOX ITGC), National Institute of Standards and Technology (NIST)