The Information Security Risk Analyst is responsible for identifying, assessing, tracking, and communicating information security risks across the organization.
Requirements
- 4 – 6 Years of experience in information security, cybersecurity, risk management, or related field
- Experience managing enterprise/third-party risk assessments, risk registers, and security training programs
- Supporting compliance audits and certifications, including NIST 800-53 (FedRAMP/GovRAMP), ISO 27001, PCI, and/or SOC 2
- Security+, GSEC, or equivalent certification
- Bachelor’s degree in Cybersecurity, Information Security, Information Systems, Risk Management, or a related field (preferred)
- Strong understanding of cybersecurity risk management principles and methodologies (such as NIST 800-30), modern security control frameworks (such as NIST 800-53), and Cloud / SaaS risk management and considerations (AWS, Azure, GCP)
Benefits
- Comprehensive health insurance
- Dental insurance
- Vision insurance
- Flexible Time Off
- 401(k) plan