CivicPlus

Powering and Empowering Government

Information Security Risk Analyst

Security EngineerSecurity EngineerFull TimeRemoteTeam 501-1,000Since 2001H1B SponsorCompany SiteLinkedIn

Location

United States

Posted

23 hours ago

Salary

$80.2K - $117.1K / year

Bachelor Degree4 yrs expEnglishCyber Security

Job Description

• Identify and translate inherent and residual risk through likelihood, impact, treatment plans, and ownership. • Define and track risk and awareness key metrics to measure program effectiveness and communicate to leadership and governance committees. • Conduct and manage enterprise information security risk assessment through recognized frameworks (including NIST 800-30) and maintain an information security risk register. • Lead third-party security risk assessments for vendors, partners, and service providers through analysis of assurance documentation, security testing summaries, and security questionnaires. • Maintain the information security risk register and third-party vendor risk inventory to track and monitor ongoing risks and approved exceptions. • Develop and lead enterprise security awareness training, including phishing simulations and targeted role-based training for security education and reporting. • Support internal and external security and compliance assessments through risk evidence and documentation. • Partner closely with organizational functions and key stakeholders to understand and address organizational risks across systems and processes, and ensure security risks are understood, prioritized, and treated in alignment with organizational risk appetite.

Job Requirements

  • 4 – 6 Years of experience in information security, cybersecurity, risk management, or related field
  • Working experience managing enterprise/third-party risk assessments, risk registers, and security training programs.
  • Working experience supporting compliance audits and certifications, including NIST 800-53 (FedRAMP/GovRAMP), ISO 27001, PCI, and/or SOC 2
  • Certifications Security+, GSEC, or equivalent
  • Bachelor’s degree in Cybersecurity, Information Security, Information Systems, Risk Management, or a related field (preferred)

Benefits

  • Comprehensive health insurance
  • Dental insurance
  • Vision insurance
  • Flexible Time Off
  • 401(k) plan
  • and more.

Related Categories

Related Job Pages

More Security Engineer Jobs

Security Engineer1 day ago
Full TimeRemoteTeam 5,001-10,000Since 1969

This position requires an active Public Trust clearance or the ability to obtain a Public Trust clearance to be considered. The right candidate will be a driven cybersecurity leader with a deep commitment to privacy and public service. Recognized for exceptional communication and...

United States
$180K - $190K / year

Clinical Engineering Medical Device Network Engineer

CommonSpirit Health

Inspired by faith. Driven by innovation. Powered by humankindness. CommonSpirit Health is building a healthier future for all through its integrated health services. As one of the nation’s largest nonprofit Catholic healthcare organizations, CommonSpirit Health delivers more than 20 million patient encounters annually through more than 2,300 clinics, care sites and 137 hospital-based locations, in addition to its home-based services and virtual care offerings. CommonSpirit has more than 157,000 employees, 45,000 nurses and 25,000 physicians and advanced practice providers across 24 states and contributes more than $4.2 billion annually in charity care, community benefits and unreimbursed government programs. Together with our patients, physicians, partners, and communities, we are creating a more just, equitable, and innovative healthcare delivery system.

Security Engineer1 day ago
Full TimeRemoteTeam 10,001

This role focuses on mitigating medical device vulnerabilities and threats at a system level by developing and testing remediation instructions and implementing mitigation strategies across the organization's medical device environment. In security incidents, this position leads remediation efforts to restore service and implement preventative measures.

United States

Cloud Security Compliance Engineer

itD Tech

About itD: We are part of a new generation of consulting and software development company that blends diversity, innovation, and integrity with real business results. Our structure rejects any strong hierarchy, empowering us to deliver excellent results. We are a woman- and minority-led firm. Every day, we challenge ourselves to be considerate, fair and to re-think what great outcomes mean for our customers. This permeates down to how we approach every interaction, on every project, for every client. You’ll thrive here if you are a dynamic self-starter, a difference-maker or someone who wants to deliver great results, without constraints. The itD Digital Experience: Joining us means you’ll be part of our global community, you have a say about your own career journey, and you’ll get a chance to give back to causes that matter. You will experience working with Fortune 500 companies and high-performance teams across numerous industries. itD offers our employees excellent benefits such as medical, dental, vision, life insurance, paid holidays, 401K + matching, networking & career learning and development programs. We are growing and we want to see you grow! Visit https://itdtech.com/careers to learn more about what working at itD can mean for you. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, age, disability or protected veteran status, or any other legally protected basis, in accordance with applicable law. itD is committed to working with and providing reasonable accommodation to individuals with disabilities. If, because of a medical condition or disability, you need a reasonable accommodation for any part of the application process, or to perform the essential functions of a position, please contact us at recruiting@itdtech.com and let us know the nature of your request and your contact information. Dynamic environment in a culture of respect, empowerment and recognition for a job well done, apply today!

Security Engineer1 day ago
ContractRemoteTeam 501-1,000

itD is seeking a Cloud Security Compliance Engineer (SOC 2 Automation) to lead the design and implementation of automated evidence collection and compliance processes that strengthen security governance and ensure audit readiness across cloud environments. This role will drive sc...

United States

Cybersecurity Intern

Circular Action Alliance

Circular Action Alliance is an equal employment opportunity employer. All qualified applicants for employment will be considered without regard to race, color, religion, sex (including pregnancy, childbirth, lactation, and related medical conditions), national origin, military or veteran status, sexual orientation, gender identity, age, or any other category protected by applicable federal, state, or local law. If you require accommodation as part of the application process, please contact careers@circularaction.org.

Security Engineer1 day ago
Part TimeRemote

The Cybersecurity Intern will support our small IT/security team in protecting staff, volunteers, and client data across our nonprofit systems and cloud services. This role is ideal for student or early-career professionals who want hands-on experience with Microsoft Defender, Cl...

United States
$25 / hour