Hybrid Cyber Risk Management Analyst

Posted 1 hour ago

Apply now

About the role

  • Cyber Risk Management Analyst driving enterprise cybersecurity risk management and compliance with federal standards. Leading risk assessments and creating security awareness programs in a hybrid workplace.

Responsibilities

  • Drive enterprise cybersecurity risk management by quantifying risks, assessing control effectiveness, and ensuring alignment with NIST 800-53, FISMA, and DOE policies
  • Lead enterprise-wide risk assessments, audits, and user awareness programs
  • Maintain and manage the enterprise Risk Register and POA&M lifecycle
  • Monitor/report critical cyber risks; use dashboards and metrics to inform leadership
  • Design security awareness programs and phishing simulations
  • Collaborate with engineers and analysts to define compliance guardrails and prioritize remediation activities
  • Generate automated risk metrics, heat maps, and executive-level security reports

Requirements

  • Applicant must be a U.S. citizen residing in the U.S.
  • This position requires obtaining a clearance through the Department of Education. Applicants must be willing to undergo a background check as part of the hiring process.
  • Education: Bachelor’s degree from an accredited university or 5-7 years of relevant experience.
  • Experience: 3+ years in GRC, third-party risk management, federal compliance (NIST 800-53, 800-37)
  • Certifications: (candidates MUST HAVE obtained at least one)
  • CISA (Certified Information Systems Auditor)
  • CRISC
  • CGEIT
  • CISSP
  • CompTIA Security+
  • CCSK (Certificate of Cloud Security Knowledge)
  • CAP/ISC2 CGRC
  • Technical Skills:
  • GRC platforms (Archer/ServiceNow)
  • TPRM tools (OneTrust/Prevalent)
  • Awareness platforms (KnowBe4/Proofpoint)
  • MS Power BI
  • Advanced Excel
  • JIRA

Benefits

  • Health Care Plan (Medical, Dental & Vision)
  • Retirement Plan (401k, IRA)
  • Life Insurance (Basic, Voluntary & AD&D)
  • Paid Time Off (Vacation, Sick & Public Holidays)
  • Training & Development

Job title

Cyber Risk Management Analyst

Job type

Experience level

Mid levelSenior

Salary

Not specified

Degree requirement

Bachelor's Degree

Location requirements

Report this job

See something inaccurate? Let us know and we'll update the listing.

Report job