J

Senior Security Risk Analyst

Jobgether • United State
Remote
Apply
AI Summary

This role focuses on enterprise security risk management within a remote-first environment, identifying and mitigating cybersecurity risks across engineering, product, and business teams. Key responsibilities include maintaining risk registers, conducting assessments, preparing executive reports, and leveraging automation and AI tools to enhance risk operations. Candidates must have 5+ years of experience in security risk management, proficiency with frameworks like NIST RMF or ISO 31000, and strong analytical and communication skills.

Key Highlights
5+ years of security risk management experience
Proficiency with NIST RMF, ISO 31000, or similar frameworks
Ability to translate technical risks into business recommendations
Experience with GRC platforms and automation tools
Fully remote position within the United States
Key Responsibilities
Execute and continuously improve security risk management processes and day-to-day program operations
Maintain and enhance enterprise risk registers, key risk indicators (KRIs), and risk tracking activities
Partner with Product, Engineering, Security, Compliance, and business teams to identify, evaluate, and communicate cyber risks
Assess the effectiveness of risk treatment plans and recommend mitigation strategies
Prepare dashboards, reports, presentations, and executive-level updates highlighting key risks, trends, and remediation progress
Analyze qualitative and quantitative risk data to support informed business decisions and predictive risk modeling
Translate technical vulnerabilities, control gaps, and operational issues into clear business risk statements
Support compliance initiatives and coordinate with internal and external auditors during assessments
Leverage automation, AI, and governance tools to improve efficiency and scalability of risk operations
Contribute to the ongoing maturity of enterprise risk frameworks and security governance practices
Technical Skills Required
Risk Management Cybersecurity Data Analysis GRC Platforms Automation
Benefits & Perks
Fully remote position
Competitive salary
Comprehensive medical, dental, and vision healthcare coverage
401(k) retirement savings plan
Generous paid time off
Wellness programs
Occasional travel opportunities

Job Description


This position is listed on behalf of a partner company, who manages all applications and next steps. Our partner is looking for a Senior Analyst, Security Risk based in United States.

This role offers an exciting opportunity to strengthen enterprise security risk management within a highly collaborative, remote-first environment. You will help identify, assess, and mitigate cybersecurity risks while partnering with engineering, product, and business teams to enhance organizational resilience. The position combines strategic thinking with hands-on execution, leveraging industry frameworks, automation, and data-driven insights to improve risk operations. You will contribute to the evolution of mature governance and compliance practices while supporting informed decision-making across the business. This is an ideal opportunity for an experienced risk professional who thrives in dynamic environments and enjoys driving continuous improvement through innovation and cross-functional collaboration.

Accountabilities

The Senior Analyst, Security Risk will play a key role in advancing enterprise security risk management by supporting risk identification, assessment, reporting, and mitigation initiatives. Working closely with technical and business stakeholders, this role helps ensure risk processes remain effective, scalable, and aligned with regulatory requirements and industry best practices.

  • Execute and continuously improve security risk management processes and day-to-day program operations.
  • Maintain and enhance enterprise risk registers, key risk indicators (KRIs), and risk tracking activities.
  • Partner with Product, Engineering, Security, Compliance, and business teams to identify, evaluate, and communicate cyber risks.
  • Assess the effectiveness of risk treatment plans and recommend mitigation strategies where appropriate.
  • Prepare dashboards, reports, presentations, and executive-level updates highlighting key risks, trends, and remediation progress.
  • Analyze qualitative and quantitative risk data to support informed business decisions and predictive risk modeling.
  • Translate technical vulnerabilities, control gaps, and operational issues into clear business risk statements.
  • Support compliance initiatives and coordinate with internal and external auditors during assessments.
  • Leverage automation, AI, and governance tools to improve the efficiency and scalability of risk operations.
  • Contribute to the ongoing maturity of enterprise risk frameworks and security governance practices.

Requirements

The ideal candidate brings extensive experience in cybersecurity risk management and enterprise governance, along with strong analytical, communication, and stakeholder management skills. They are comfortable navigating ambiguity, collaborating across technical and business teams, and driving measurable improvements to security risk programs.

  • 5+ years of experience in security risk management, governance, compliance, or related cybersecurity disciplines.
  • Hands-on experience with recognized risk management frameworks such as NIST RMF, ISO 31000, COSO, or similar methodologies.
  • Strong background performing qualitative and quantitative cyber risk assessments.
  • Experience managing enterprise risk registers, compliance initiatives, and large-scale cross-functional risk programs.
  • Ability to translate technical security issues into actionable business risk recommendations.
  • Experience working closely with engineering, IT, and security teams to implement effective risk controls.
  • Familiarity with AI-powered solutions, automation, and governance, risk, and compliance (GRC) platforms.
  • Excellent written, verbal, and presentation skills with the ability to communicate effectively at all organizational levels.
  • Strong analytical, problem-solving, and organizational skills with the ability to manage multiple priorities.
  • Bachelor's degree in Risk Management, Business, Cybersecurity, Finance, or a related field preferred.
  • Professional certifications such as CRISC, CISSP, CISA, FRM, or equivalent are considered an asset.

Benefits

  • Fully remote position within the United States (location restrictions may apply).
  • Competitive salary based on experience and geographic location.
  • Eligibility for performance bonus and equity programs, where applicable.
  • Comprehensive medical, dental, and vision healthcare coverage.
  • 401(k) retirement savings plan.
  • Generous paid time off, paid sick leave, and parental leave.
  • Wellness programs and additional employee support benefits.
  • Occasional travel opportunities for team collaboration and project meetings.
  • Opportunity to contribute to a growing, innovative, and globally distributed organization.

How Jobgether Works

We use an AI-powered matching process to ensure your application is reviewed quickly, objectively, and fairly against the role's core requirements. Our system identifies the top-fitting candidates, and this shortlist is then shared directly with the hiring company. The final decision and next steps (interviews, assessments) are managed by their internal team.

We appreciate your interest and wish you the best!

Why Apply Through Jobgether?

Data Privacy Notice: By submitting your application, you acknowledge that Jobgether will process your personal data to evaluate your candidacy and share relevant information with the hiring employer. This processing is based on legitimate interest and pre-contractual measures under applicable data protection laws (including GDPR). You may exercise your rights (access, rectification, erasure, objection) at any time.

We may use artificial intelligence (AI) tools to support parts of the hiring process, such as reviewing applications, analyzing resumes, or assessing responses and identifying potential inconsistencies or verification signals in application materials based on available information. These tools assist our recruitment team but do not replace human judgment. Final hiring decisions are ultimately made by humans. If you would like more information about how your data is processed, please contact us.


Similar Jobs

Explore other opportunities that match your interests

Senior Product Security Engineer

Cyber Security
•
1h ago
Visa Sponsorship Relocation Remote
Job Type Full-time
Experience Level Not Applicable

Jobgether

United State
Visa Sponsorship Relocation Remote
Job Type Internship
Experience Level Not Applicable

staffline solutions

United State

Information Security Manager

Cyber Security
•
1h ago
Visa Sponsorship Relocation Remote
Job Type Full-time
Experience Level Not Applicable

affirmedrx, a public benefit c...

United State

Subscribe our newsletter

New Things Will Always Update Regularly