19 security risk analyst jobs at 13 companies in Marblehead, MA

3w
Save
Mark Applied
Hide
Information Security Risk and Compliance Analyst
Boston, Massachusetts, United States
$84k-$106k/yr HybridFull Time
CarGurus
CarGurusNASDAQ: CARG: Operates an online marketplace for buying and selling vehicles.
Manage third-party risk, customer security assurance, cyber risk, SOX ITGCs and governance; experience with GRC platforms, cloud environments, and security/IT certifications.
Auditboard, SAFE, Loopio
4d
Save
Mark Applied
Hide
Principal Information Security Risk and Compliance Analyst
Boston, Massachusetts, United States
$135k-$168k/yr HybridFull Time
CarGurus
CarGurusNASDAQ: CARG: Operates an online marketplace for buying and selling vehicles.
8+ YOERequires 8+ years in information security, cyber risk, GRC, or IT audit; experience with cloud-native SaaS, SOC 2 Type II, SOX ITGCs, AI governance, risk assessments, and executive communication.
NIST AI Risk Management Framework, AWS
23h
Save
Mark Applied
Hide
Security Analyst
Waltham, Massachusetts, United States
$23-$31/hr OnsiteFull Time
Thermo Fisher Scientific
Thermo Fisher ScientificNYSE: TMO: Sells equipment and chemicals for scientific research and healthcare.
Bachelor's degree required; experience in intelligence, geopolitical security, GSOC, or protective services preferred. Requires OSINT analysis, risk assessment, communication, confidentiality, security tools, and shift flexibility.
Microsoft Office
3w
Save
Mark Applied
Hide
Risk Intelligence Analyst
Lowell, Massachusetts, United States
$28/hr OnsiteFull Time
Prosegur
ProsegurBolsa de Madrid: PSG: Global provider of physical security, cash logistics, and technology.
Strong analytical and organizational skills, experience with intelligence/incident/video/dispatch systems, security procedures and life-safety knowledge, effective communicator under stress.
3w
Save
Mark Applied
Hide
Risk Operations Analyst
Lowell, Massachusetts, United States
$25/hr OnsiteFull Time
Prosegur
ProsegurBolsa de Madrid: PSG: Global provider of physical security, cash logistics, and technology.
2+ YOEMonitor global events, analyze intelligence, issue alerts, dispatch resources; Bachelor's in security/international relations or 2+ years military/professional intelligence; strong analytical, communication, and incident management skills.
3w
Save
Mark Applied
Hide
Security Analyst
Boston, Massachusetts, United States
$76k-$126k/yr HybridFull Time
Center for Health Information and Analysis
Center for Health Information and Analysis: Analyzes health care data to improve system transparency and affordability.
1+ YOE1+ year IT security experience (Level I) or 2+ years (Level II); knowledge of Azure and Microsoft technologies; experience with network/firewall tech; strong written and verbal English; perform risk/vulnerability assessments and incident response.
Active Directory, Microsoft 365, Microsoft Azure, Cisco, Palo Alto
1mo
Save
Mark Applied
Hide
Principal Technology Risk Analyst - Program & Regulatory Assurance
Merrimack or Smithfield or Westlake
OnsiteFull Time
Fidelity Investments
Fidelity Investments: Provides investment management, retirement planning, and brokerage services.
5+ YOERequires 5–7 years in IT risk, controls, or audit; preferred bachelor's degree, risk or cloud certifications, financial services controls experience, cloud security knowledge, and GRC tool experience.
AWS, Azure, SaaS, PaaS, NIST SP 800-53, COBIT, AICPA Trust Principles, ISO27001, SWIFT, HITRUST, SOX404, ISO9001, Archer
1mo
Save
Mark Applied
Hide
Principal Technology Risk Analyst - Program & Regulatory Assurance
Merrimack or Smithfield or Westlake
OnsiteFull Time
Fidelity Investments
Fidelity Investments: Provides investment management, retirement planning, and brokerage services.
5+ YOE5+ years in IT risk, controls, or audit; experience documenting controls in large financial services environments; knowledge of cloud, network, resiliency, and security controls; strong communication and analytical skills.
Archer, AWS, Azure
2w
Save
Mark Applied
Hide
Risk Intelligence Analyst - Night Shift
Lowell, Massachusetts, United States
$65k-$70k/yr OnsiteFull Time
Prosegur
ProsegurBolsa de Madrid: PSG: Global provider of physical security, cash logistics, and technology.
2+ YOEBachelor’s degree in security studies, international relations, or related field, or equivalent intelligence training; intelligence analysis experience; OSINT, social media, and intelligence tool expertise; strong analytical and communication skills.
OSINT, Ontic, Factal, Everbridge, International SOS
2mo
Save
Mark Applied
Hide
Senior Security Analyst I
Boston or Seattle
$141k-$176k/yr RemoteFull Time
DigitalOcean
DigitalOceanNew York Stock Exchange: DOCN: Simplifies cloud infrastructure for developers, startups, and SMBs.
6+ YOE6+ years in detection & response, insider risk, or security engineering; hands-on UEBA/SIEM/DLP/UAM/SOAR; scripting with Python/Go/Bash; familiarity with macOS, Windows, Linux, Kubernetes and cloud; knowledge of MITRE ATT&CK and NIST.
UEBA, SIEM, DLP, UAM, SOAR, Python, Go, Bash, macOS, Windows, Linux, Kubernetes, Pandas, MITRE ATT&CK, NIST
5d
Save
Mark Applied
Hide
Securities Finance Front Office Market Risk Analyst, Vice Presidentnalyst
Boston or Jersey City
$130k-$220k/yr OnsiteFull Time
State Street
State StreetNYSE: STT: Provides investment servicing and management to institutional investors.
10+ YOEBachelor's degree in a related field and 10+ years in FCM, futures clearing, listed derivatives, repo, securities financing, or front-office market risk. Requires margin, liquidity, counterparty risk, controls, and stress-testing expertise.
1mo
Save
Mark Applied
Hide
Lead Security Analysis
Dublin or New York City or Los Angeles or Boston
$125k-$213k/yr HybridFull Time
Ross Stores
Ross StoresNASDAQ: ROST: Operates an off-price retail chain selling clothing and home goods.
5+ YOEFive years of IT experience, including three in security or risk management; bachelor's degree preferred; security governance, compliance, risk management, analytical, communication, and project management skills required.
Microsoft Word, Microsoft Excel, Microsoft PowerPoint, UNIX, Windows, Firewalls, VPN, PKI, IPS, Oracle, MS SQL
2mo
Save
Mark Applied
Hide
Data, AI and Emerging Technology Risk Principal Analyst
Johnston or Iselin or Westwood or Phoenix
HybridFull Time
Citizens Financial Group
Citizens Financial GroupNYSE: CFG: Provides retail, commercial, and private banking services to customers.
7+ YOE7+ years IT risk experience; deep expertise with CRI/NIST/COBIT/ITIL; experience with cloud, data platforms, analytics, and security tools; strong executive communication and mentoring skills.
CRI Profile, NIST Cybersecurity Framework, NIST 800-53, COBIT, ITIL, AWS RDS, OCI, Snowflake, Databricks, Redshift, Starburst, Hadoop, Spark, Kafka, Talend, Informatica, Tableau, Webfocus, Autosys, Airflow, Java, Tessell, MongoAtlas, Collibra, Grafana, Datadog, Qualys, Wiz, CyberArk, Splunk, ServiceNow, Jira, Confluence, GRC Archer, WDesk, Nexus, Jenkins, Harness, Fortify, EKS, Openshift, Bedrock, Sagemaker, H2O.ai, MLflow, Microsoft Excel
1mo
Save
Mark Applied
Hide
Senior GRC Analyst
Boston, Massachusetts, United States
$130k-$170k/yr OnsiteFull Time
WHOOP
WHOOP: Wearable technology for personalized health and performance tracking.
6+ YOE6+ years in cybersecurity or enterprise risk; experience conducting structured cyber/IT risk assessments, maintaining risk registers, familiarity with security frameworks and AI risk; strong communication and analysis skills.
NIST CSF, ISO 27001, PCI DSS, GDPR, HIPAA, NIST AI RMF, ISO/IEC 42001, FAIR
1w
Save
Mark Applied
Hide
Senior Analyst
Cambridge or New York City or Washington or Atlanta or San Francisco
$119k-$193k/yr OnsiteFull Time
Forrester
ForresterNASDAQ: FORR: Provides market research and business advisory services to global leaders.
5+ YOERequires 5+ years of security and risk experience, BA/BS or equivalent, strong research, critical thinking, writing, presentation, and business skills; must be a US citizen and travel 30%-50%.
Managed Detection and Response (MDR), Managed Security Services (MSS), Zero Trust
3mo
Save
Mark Applied
Hide
Cyber Product Analyst
Quincy, Massachusetts, United States
$120k-$203k/yr OnsiteFull Time
State Street
State StreetNYSE: STT: Provides investment servicing and management to institutional investors.
3+ YOEBachelor’s in cybersecurity or related field; 3-5 years in cybersecurity or technology risk; experience with cyber security products; knowledge of NIST/ISO 27001; familiarity with security tools.
Splunk, CrowdStrike, Qualys, AWS, CI/CD security, Veracode, Lakehouse technologies, Archer, ServiceNow GRC
2mo
Save
Mark Applied
Hide
GSOC Analyst - Night Shift
Boston, Massachusetts, United States
$70k-$80k/yr OnsiteFull Time
Control Risks
Control Risks: Provides risk management, security, and strategic intelligence consulting services.
1+ YOE1–3 years in corporate or governmental security, familiarity with global risk intelligence and incident response, emergency notification and travel risk systems experience advantageous, strong open-source analysis and communication skills.
2mo
Save
Mark Applied
Hide
GSOC Analyst - Swing Shift
Boston, Massachusetts, United States
$70k-$80k/yr OnsiteFull Time
Control Risks
Control Risks: Provides risk management, security, and strategic intelligence consulting services.
1+ YOEBachelor's preferred; 1–3 years corporate or governmental security experience required; familiarity with global risk intelligence, incident response, and mass notification/travel risk systems; strong open-source analysis and communication skills.
12h
Save
Mark Applied
Hide
Cybersecurity Governance Analyst
Arizona or California or Florida or Georgia or Illinois or Massachusetts or Michigan or New Hampshire or New York or New Mexico or North Carolina or Tennessee or Virginia or Medford
$75k-$95k/yr RemoteFull Time
Agero
Agero: Provides digital roadside assistance and accident management software solutions.
3+ YOERequires 3–5 years in information security compliance and hands-on experience with PCI-DSS, SOC 2, or ISO 27001 frameworks, including control mapping, evidence evaluation, risk mitigation, and strong communication skills.
ISO 27001, PCI-DSS, SOC 2, DevSecOps, AI