42 security risk analyst jobs at 33 companies in White Oak, MD

3w
Save
Mark Applied
Hide
Physical Security & Risk Analyst
Mechanicsburg or Owings Mills
$105k-$125k/yr HybridFull Time
Gannett Fleming
Gannett Fleming: Infrastructure engineering, design, and construction management firm.
10+ YOEBachelor's degree and 10+ years in physical security, infrastructure protection, risk assessment, resilience, emergency management, or related fields; strong analytical, communication, and project management skills required.
Microsoft Office, Microsoft Word, Microsoft Excel, Microsoft PowerPoint, Microsoft Outlook
1mo
Save
Mark Applied
Hide
Senior Information Security Risk Analyst
Washington, District of Columbia, United States
$103k-$191k/yr HybridFull Time
Warner Bros. Discovery
Warner Bros. DiscoveryNASDAQ: WBD: Global media and entertainment creating iconic content.
3+ YOEBS/BA required, 3+ years information security experience with at least 1 year in third‑party risk management; knowledge of network, access control and encryption; strong communication and analytical skills.
2w
Save
Mark Applied
Hide
Security Analyst, Third-Party Ecosystem Risk Management
New York City or Seattle or Raleigh or San Francisco or Washington or London or Amsterdam or United States or Canada or United Kingdom or Europe
$119k-$176k/yr HybridFull Time
Plaid
Plaid: Fintech data network connecting consumers’ financial accounts to apps and services.
4+ YOERequires 4+ years in vendor risk management, third-party security assessments, risk lifecycle management, security frameworks, program maturation, documentation, communication, and AI-assisted tooling.
SOC 2, ISO 27001, NIST CSF, OneTrust, ProcessUnity, Whistic, SecurityScorecard
2w
Save
Mark Applied
Hide
Senior Risk Analyst-CBRNE
Washington, District of Columbia, United States
HybridFull Time
D&G Support Services
D&G Support Services: Woman-owned federal contractor providing integrated logistics, supply-chain, data analytics, and program support to defense and homeland-security agencies.
5+ YOEBachelor's degree and 5–7 years in risk or intelligence analysis, national security, or a related field. Requires strong research, analytical, writing, communication, and collaboration skills.
Tableau
1mo
Save
Mark Applied
Hide
Security Governance Risk & Compliance (GRC) Analyst
Washington, District of Columbia, United States
$130k-$170k/yr RemoteFull Time
Virtru
Virtru: Private data security platform providing encryption and access controls for enterprises and government agencies.
5+ YOE5+ years in information security/GRC or IT audit, deep knowledge of CMMC/NIST/FedRAMP/SOC2/PCI, cloud and GRC tool experience, strong communication and risk assessment skills.
Kubernetes, GCP, AWS, Terraform, GitHub, Okta, Hyperproof, Vanta, Drata, Datadog, Splunk
2w
Save
Mark Applied
Hide
Analyst, Risk Analytics
London or New York City or Reston
OnsiteFull Time
Sony Group Corporation
Sony Group CorporationTokyo Stock Exchange: 6758: Public Japanese entertainment-and-technology conglomerate serving consumers, creators, and businesses through games, music, pictures, electronics, and sensors.
2+ YOERequires statistics and data analysis expertise, SQL and Python or R, data modeling, information security knowledge, and typically 2 years of relevant experience. Bachelor's degree preferred.
SQL, Python, R, Git, GitHub, GitLab, Microsoft Power BI, Tableau, Looker, Domo, CMDB, SIEM
3mo
Save
Mark Applied
Hide
Sr Information Security Analyst II - IT
Washington, District of Columbia, United States
$141k-$243k/yr OnsiteFull Time
Board of Governors of the Federal Reserve System
Board of Governors of the Federal Reserve System: U.S. government central banking agency that sets monetary policy, supervises financial institutions, and oversees Federal Reserve System.
6+ YOESenior information security analyst with 6+ years of experience, bachelor's degree or equivalent, strong risk management, governance, and compliance knowledge.
3mo
Save
Mark Applied
Hide
IT Security Analyst
Baltimore, Maryland, United States
$90k-$100k/yr OnsiteFull Time
Baltimore Orioles
Baltimore Orioles: Privately owned Major League Baseball club based in Baltimore serving baseball fans.
2+ YOEBachelor’s in cybersecurity or IT; 2–5+ years in cybersecurity; strong analytical skills; knowledge of risk, resilience, and security tooling; on-site role.
SIEM, EDR, Vulnerability Scanning, Incident Response Tools
2mo
Save
Mark Applied
Hide
UAS Security Analyst
Washington, District of Columbia, United States
$50k-$175k/yr OnsiteFull Time
A3 Technology, Inc.
A3 Technology, Inc.: Private professional-services contractor providing system engineering, IT, aviation, and financial-management support to federal agencies.
2+ YOEExperience in security analysis, risk assessment, or related analytical role; strong security principles, controls, and vulnerability management; ability to communicate findings clearly; strong written/verbal communication; ability to work independently and collaboratively.
2d
Save
Mark Applied
Hide
Governance, Risk & Compliance (GRC) Analyst
El Segundo or Los Angeles or Washington or San Francisco or San Diego or Seattle or London
$120k-$150k/yr HybridFull Time
CHAOS Industries
CHAOS Industries: Redefining modern defense with a multi-product portfolio.
5+ YOEBachelor's degree or equivalent experience, 5+ years of GRC or compliance experience, DoD or military experience, audit support, risk assessment, GRC tooling, and knowledge of major security frameworks.
NIST CSF, NIST RMF, ISO/IEC 27000, UK Cyber Essentials, CMMC, NIST 800-171, NIST 800-53, GRC tooling, OT/ICS
2w
Save
Mark Applied
Hide
AWS Assurance Delivery Analyst, Operational Effectiveness & Quality - Security Assurance
Arlington or New York City
$74k-$143k/yr OnsiteFull Time
Amazon
AmazonNASDAQ: AMZN: Multinational technology focused on e-commerce and cloud computing.
4+ YOEBachelor's degree or equivalent and 4+ years in compliance, audit, risk, governance, or related work. Requires IT security, AWS or cloud computing, process documentation, and cross-functional coordination experience.
AWS, SQL, Microsoft Excel
3w
Save
Mark Applied
Hide
SCRM/Emerging Technology Security Analyst
Washington, District of Columbia, United States
OnsiteContract
K2Share
K2Share: A mission-driven organization providing cyber risk management, IT solutions, and workforce readiness education.
4+ YOEBachelor's degree or equivalent experience, 4+ years in cybersecurity, third-party/vendor risk, or compliance analysis, and experience producing security risk assessments and mitigation recommendations.
NIST SP 800-218, NIST AI Risk Management Framework and Playbook
2mo
Save
Mark Applied
Hide
Physical Security Analyst
Arlington or United States
OnsiteFull Time
Sancorp Consulting
Sancorp Consulting: Service-disabled veteran-owned federal contractor providing cybersecurity, intelligence, AI/ML, and professional services to government agencies.
5+ YOETS/SCI and U.S. citizenship required. Bachelor's in security-related discipline plus 5+ years (or 10 years experience). Experience in physical access control, credential/identity management, risk methodologies, security engineering, and government databases; intermediate Microsoft Office skills.
Microsoft Office, Microsoft Word, Microsoft Access, Microsoft Excel, Microsoft PowerPoint, DOD365, SharePoint, Adobe Acrobat, MPICAM, ISMS, Modified Infrastructure Survey Tool (MIST), Interagency Security Committee - Compliance System (ISC-CS), Homeland Security Information Network (HSIN)
3w
Save
Mark Applied
Hide
NAESOC/Industrial Security Analyst - Top Secret
Hanover, Maryland, United States
HybridFull Time
Xcelerate Solutions
Xcelerate Solutions: Private defense and national security contractor delivering federal clients enterprise vetting, aviation security, cybersecurity, and digital solutions.
3+ YOERequires 3+ years in industrial security risk identification, data systems, NISPOM, metrics, and analysis; experience with FSO duties, risk mitigation strategies, and security instruction.
NISPOM, NISS, ISFD, eFCL, DISS
1d
Save
Mark Applied
Hide
Senior Cloud Security Analyst
Washington or Chicago or Denver
$145k-$193k/yr OnsiteFull Time
Bank of America
Bank of AmericaNYSE: BAC: Global financial services and banking institution.
5+ YOE5+ years of cloud security experience with AWS, Azure, or Google Cloud; CI/CD experience with Jenkins or GitLab CI/CD; strong risk analysis and communication skills; bachelor's degree preferred.
AWS, Azure, Google Cloud, Infrastructure as Code (IaC), Policy as Code (PaC), Jenkins, GitLab CI/CD, GitHub Copilot, Claude Code, Java, Python
17h
Save
Mark Applied
Hide
Senior Cloud Security Analyst
Chicago or Denver or Washington
$145k-$193k/yr OnsiteFull Time
Bank of America
Bank of AmericaNYSE: BAC: Global financial services and banking institution.
5+ YOERequires 5+ years of cloud security experience, AWS/Azure/Google Cloud expertise, CI/CD experience with Jenkins or GitLab CI/CD, and strong risk analysis and communication skills. Bachelor's degree preferred.
AWS, Azure, Google Cloud, Infrastructure as Code (IaC), Policy as Code (PaC), Jenkins, GitLab CI/CD, GitHub Copilot, Claude Code, Java, Python, CI/CD
1mo
Save
Mark Applied
Hide
Senior Risk and Vulnerability Analyst
Chandler or Washington
$104k-$166k/yr OnsiteFull Time
Peraton
Peraton: Provider of mission-critical national security technologies and services.
8+ YOE8+ years in security operations or vulnerability management; Bachelor in Cybersecurity/IT (or 4 years additional experience); hands-on vulnerability scanning, cloud compliance, ISVM, API scanning; Secret clearance and U.S. citizenship required.
ISVM, DHS 4300A, NIST SP 800-115, CISA BOD 23-01
1mo
Save
Mark Applied
Hide
Senior Risk and Vulnerability Analyst
Chandler or Washington
$104k-$166k/yr OnsiteFull Time
Peraton
Peraton: Provider of mission-critical national security technologies and services.
8+ YOEBachelor's in Cybersecurity/IT (or 4 years' extra experience), 8+ years in security operations/vulnerability management (reduced with advanced degrees), hands-on ISVM and API scanning experience, automation and compliance familiarity, U.S. citizenship.
ISVM, API scanning
2mo
Save
Mark Applied
Hide
Risk and Vulnerability Analyst II
Washington, District of Columbia, United States
HybridFull Time
SOS International
SOS International: Technology and services integrator for government and defense missions.
3+ YOE3–5 years security experience performing vulnerability assessments and scanning across OS, databases, web apps and cloud; troubleshooting scan tools; automation and ISVM experience; Bachelor's degree; Secret clearance eligible.
Information System Vulnerability Management (ISVM)
1d
Save
Mark Applied
Hide
AI Security Governance and Risk Analyst - TS/SCI and Polygraph
Bethesda, Maryland, United States
$187k-$252k/yr OnsiteFull Time
General Dynamics Information Technology
General Dynamics Information TechnologyNew York Stock Exchange: GD: Provider of enterprise IT services and defense solutions.
7+ YOERequires TS/SCI with polygraph, U.S. citizenship, bachelor's degree in a related discipline, and 7+ years of experience. Desirable credentials include CISSP, CISM, GSLC, or AI governance certifications.
NIST SP 800-53, NIST AI RMF, Risk Management Framework, Zero Trust