Cybersecurity Risk Analyst
My3Tech Inc
Risk Analyst Location: Richmond, CA (3 day onsite and 2 day remote) Occasional after hours and weekend support may be required. Some travel may be required. The Risk Analyst is responsible for providing guidance on tools to measure and manage risk, identify/mitigate threats, and protect against unauthorized disclosure of confidential information. Risk Analysts duties include assessing the adequacy of security strategies, adherence to security guardrails and calculating the impact of adverse events or threats. Ideal candidates will assist in ensuring effective execution of cybersecurity strategies and our risk management framework by managing relationships with key stakeholders, verifying that IT risks are appropriately mitigated, as well as providing periodic updates on the state of compliance. Responsibilities: Advises leadership on cybersecurity initiatives that supports the latest trends in IT security, risk, and controls. Facilitates compliance of all equipment utilized in the Process Control Network (PCN)/Operational Technology (OT) and Demilitarized Zone (DMZ), including timely remediation of critical vulnerabilities. Supports and integrates IT standards into the PCN environment. Serves as site representative for internal and external cyber initiatives, including the annual Coast Guard inspection. Serves as Process Advisor for the Operations Technology Incident Response Process (OTIRP). Maintains cybersecurity documentation including Business Continuity and Disaster Recovery Plans. Facilitates risk assessment exercises, perform compliance and risk monitoring/validation, and other compliance assurance exercises as required. Leads awareness and training for the information technology risk program elements to ensure responsibilities are understood and executed. Coordinates external and internal assurance or advisory audits, representing information technology throughout the lifecycle of the audit (from planning through remediation strategy). Monitors, tracks, and reports mitigation and resolution of IT risks. Works closely with other technical, incident management, and forensic personnel to develop a broader understanding of the intent, objectives, and activities of cyber threat actors and support the cyber defense program. Required Qualifications/Skills: Minimum 3-5 years related work experience in Information Technology field. Work experience in Operational Technology/Industrial Controls Systems field. Knowledge of and experience with Industry Policies, Standards and Controls (e.g., NIST 800-53, IEC-62443 in an ICS environment, ISO 27001, COBIT, ITIL, SOX, PCI-DSS, SANS, etc.). Understanding of key technology/data concepts such as access control, confidential data, encryption, data privacy, information management, intellectual property, business continuity, disaster recovery, security scans, and 3rd party/vendor applications. Strong knowledge of IT organization business processes and systems including (IT Security, data management, architectural and planning, technology life cycle management, regulatory concerns). Certifications: Desired but not required - Certifications in Industrial Control Systems Cybersecurity, Certified Information Systems Security Professional (CISSP), Certified Information Security Manager, (CISM), Certified Information Systems Auditor (CISA), Certified in Risk and Information Systems Control (CRISC), or other Cybersecurity Certifications (e.g. GISCP, GCIP, or similar certifications). Preferred Qualifications/Skills: Vendor-specific training on Operational Technology, ICS equipment manufacturers and internal network systems. A self-starter that demonstrates “One Team” behaviors and demonstrated knowledge of effective influencing tactics and strategies. Highly organized with ability to prioritize and multi-task, as well as able to thrive in a fast-paced environment. Ability to impact decisions, influence and motivate teams, and work with a variety of disciplines, cultures, and environments. Communicates in a clear, concise, understandable manner both orally and in writing. Ability to explain detailed IT concepts and solutions in business terms and make complex materials clear and engaging. Utilizes qualitative and quantitative risk analysis best practices to provide a clear decision-making framework for managing information risk. Required Skills : Basic Qualification : Additional Skills : We have a lot of success with contractors extending past 12 months. Some have been with Chevron for up to 5 years. My3Tech Inc
$100k - $120k
...-first approach to business—we invite you to explore our Cybersecurity Compliance Analyst position. Location: San Francisco Bay Area Hybrid:... ...practical compliance documentation, evaluate vendor cybersecurity risk, and organize evidence that supports client requirements....SuggestedFixed term contractSeasonal workWork at officeLocal areaRemote workHome office3 days per week- Berkeley Lab is seeking a Hazards Analyst to support the Emergency Management, Safeguards & Security, and Fire Protection Programs. You will identify and assess hazards related to biological, chemical, and radiological materials and develop assessments to inform emergency...Suggested
$70k - $110k
...Grid app lets users access cash, build credit, spend money, optimize their taxes, and lots, lots more. The role We’re adding a Risk Analyst to our team to help us build and scale our user-facing products. You’ll work closely with product, machine learning, and business...Suggested- Bio-Rad is seeking a qualified professional to support risk management activities, update hazard analyses, and coordinate cross‑functional input for comprehensive risk profiles. The role includes migrating risk files to the eQMS, ensuring metadata accuracy, and addressing...Suggested
- Grid, located in Emeryville, California, is seeking a Risk Analyst to enhance user-facing products. In this role, you will evaluate patterns to maintain platform safety, analyze data utilizing SQL, and improve existing policies for a better customer experience. Ideal candidates...Suggested
- Lawrence Berkeley National Laboratory (LBNL) invites applications for a Hazards Analyst within the Security & Emergency Services Division. You will support emergency management, safeguards & security, and fire protection programs, applying engineering, atmospheric science...
- ...About METR We are a nonprofit research organization that develops scientific methods to assess AI capabilities, risks, and mitigations, with a specific focus on threats related to AI R&D automation and misalignment. We believe it is robustly good for policymakers and civil...H1bWork at office3 days per week
$149k - $271.5k
.... We are builders. Security controls that don't get used aren't controls. Compliance programs that create friction without reducing risk aren't programs. We build things that work in production, earn adoption from engineering teams, and get better over time — and we use...Summer workRemote workFlexible hours$179.4k - $246.6k
The Technical Leader for the Product Cybersecurity Program and Product Security Incident Response Team (PSIRT) provides leadership for medical... ...Quality Management System (QMS), including Design Controls, risk management, and change management. Cross-Functional Enablement...Work at office- ...and recovery management. Maintain IP compliance of all equipment in PCN and DMZ by adhering/implementing the company's Information Risk Standards. Maintaining up-to-date inventory as per the company's standards. License management of all software installed on equipment...Contract work
- ...backup and recovery management. Maintain IP compliance of all equipment in PCN and DMZ by adhering/implementing company’s Information Risk Standards. Maintaining up-to-date inventory as per company’s standards. License management of all software installed on equipment in...
$38 - $43.72 per hour
Job Description Job Description ***On-site in Richmond, CA*** Description: This position leads execution of digital and process improvement opportunities through the pipeline to solution delivery. This role is expected to collaborate with business unit colleagues...Hourly payLocal area- ...partner to the CISO, help identify and prioritize the highest-risk areas, and represent Sardine's security program with internal... ...managing risk What We're Looking For ~10–15+ years of cybersecurity experience, including 3+ years in a senior leadership role ~...Remote workHome officeFlexible hours
$130.94k - $157k
...collaboration space. Consults with key stakeholders and colleagues in relation to AI architecture, unit security, service recovery, and risk remediation and provides guidance to leadership. Ensures unit compliance with MSSND, MSSEI, and UC Minimum Security Standards....Full timePart timeH1bLocal areaRemote work- Job Description Synergistic IT is a full-service staffing and placement firm servicing clients in America for the past 12+ years. We are dedicated towards fulfilling the IT needs of our clients. From staffing to full implementation of projects we provide the highest quality...Immediate start
- ...to build a trusted, secure environment. The role requires deep security expertise, strong communication with executives and researchers, and a mission-aligned mindset to protect AI risk assessment efforts while scaling the organization. #J-18808-Ljbffr Jobleads-US
- ...maintenance programs identifying weaknesses of current systems to determine critical server/storage or network issues, including cybersecurity. Develops technical system documentation, training materials and provides training to users and other support staff. Leads and...Full timeRemote workRelocationTrial period
- ...hands-on experience with FedRAMP compliance processes and federal risk management frameworks, including exposure to FedRAMP High and... ...Monitor FedRAMP PMO, NIST, and DoD SRG updates and federal cybersecurity directives, flagging relevant changes to the GRC team Participate...
$70.4k
...Analyst The Analyst is an essential part of the Program team that delivers innovative, data-driven reporting and technical assistance to institutions enrolled in our national Good Food Purchasing Program. The Analyst advises Center staff, participating institutions,...Full timeSummer holidayLocal areaRemote workFlexible hoursShift work- ...Vivo HealthStaff is recruiting for a 340B Analyst in Berkeley, California. This is a permanent position with salary and benefits. Job Overview: We are seeking a highly skilled and detail-oriented 340B Analyst who is a licensed Pharmacy Technician. The successful...Permanent employmentPart timeWork at officeRemote work
$117.44k - $176.16k
We are so glad you are interested in joining Sutter Health!Organization:SHSO-Sutter Health System Office-ValleyPosition Overview:This position is responsible for imaging project implementation and development.*Experience with PACS, viewer, and cloud image sharing is highly...Full timeWork at officeShift work- ...PowerPoint, Visio). Prior experience working on healthcare systems like SMS, IDX, EPIC. Demonstrated ability to determine the key risks that need to be addresses and develop action plans for director review that are multi-faceted in nature and include both business...Work experience placementWorldwide
- ...for the Technical Support Engineer track, offering mentorship and hands-on training in security, operations, asset management, and risk management. This role prioritizes customer satisfaction and proactive problem solving in a hybrid work model at Bellevue, WA or Emeryville...Internship
$81k - $150k
...Tech Companies? SynergisticIT Is Where Your Career Begins If you're a Java developer, software programmer, data scientist, or data analyst struggling to break into the tech industry, you're not alone. The job market is competitive, and many talented professionals find...Full timeH1b$10 per hour
...day one. Maintain and improve our EDR stack's detection and response coverage across the fleet. SaaS posture Reduce SaaS risk at scale through SSPM tooling and automation , including detection of risky OAuth grants, shadow IT, and configuration drift across...Work at officeImmediate startRelocationRelocation packageFlexible hours$140k - $175k
Prolific Machines is ushering in a new era of biotechnology with light. Our first-of-its-kind optogenetic platform delivers unprecedented control, precisely guiding cellular behavior when and where it matters most. Unlike existing tools used to control biology, our technology...Flexible hours$140k - $175k
...transparency on progress against key milestones for technical and non‑technical stakeholders, always holding a clear picture of progress and risks Embed with teams and coach them toward improved Agile and best practices Requirements 5 years of work experience with previous...Work experience placementWork at officeLocal area$127k - $155k
...corporation projects as well as managing the success of the projects. Exercise project control and status reporting techniques. Identify risks and mitigation, work with product owners to formulate and define project scope, define technical implementation steps and manage...Temporary workRemote work- ...actors targeting the bulk power system. Extend the product threat model to account for physical hardware tampering and supply-chain risk vectors. What you'll bring: Cyber Security Qualifications: Security Architecture: 10+ years of experience in Cyber Security, including...Full timeLocal areaRelocation package
- ...the world? Then keep reading - you've come to the right place. Role Description Form Energy is hiring a Staff Supply Chain Systems Analyst to manage and build out our purchasing systems ecosystem.. This role reports to our Sr. Manager of Purchasing within our Supply...Full timeWork at officeRelocation package3 days per week
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Cybersecurity Risk Analyst. Be the first to apply!


