We are seeking a Cybersecurity Risk Analyst to support managing and mitigating security risks across processes, technologies, and cloud environments.
The ideal candidate will combine technical expertise, business acumen, and cybersecurity experience to advise partners, assess risks, and drive improvements in secure operations.
This role requires hands on experience with Kusto Query Language (KQL) , cloud security, and risk assessment, as well as the ability to communicate effectively with stakeholders at all levels.
Must be local to San Francisco or Los Angeles (LA) or Salt Lake City (SLC).
Responsibilities :
- Support risk strategies by identifying and mitigating security risks in bank systems and processes.
- Apply and interpret security policies, provide guidance and input on policy enhancements.
- Advise business and technical partners on security controls, procedures, and best practices.
- Assess cloud and on-prem environments to identify risks and recommend control improvements.
- Conduct security control assessments, document findings, and develop actionable remediation plans.
- Evaluate third-party vendors to determine shared security responsibilities and associated risks.
- Communicate security risks and mitigation strategies effectively to technical teams and executives.
- Collaborate across teams to drive secure operations and deliver results in a fast-paced environment.
Qualifications :
Bachelors degree in Cybersecurity, Information Security, Computer Science, or related technical discipline (or equivalent experience).3+ years of experience in cybersecurity, information security, or technology risk management.Proficiency in Kusto Query Language (KQL) for data analysis, log correlation, and threat detection.In-depth understanding of security frameworks such as NIST, ISO 27001, or FedRAMP.Demonstrated experience assessing and improving security posture across Cloud (Azure, AWS) and on-premises environments.Proven ability to conduct security control assessments, identify risk exposures, and develop actionable remediation plans.Skilled at translating technical security concepts into clear, business-relevant insights for stakeholders and executives.Excellent communication, collaboration, and interpersonal skills, with a focus on building trusted partnerships across technical and business teams.Strong organizational and analytical skills, with the ability to manage multiple initiatives in a fast-paced, results-driven environment.