Cyber Risk Analyst
Sun King
Cyber Risk Analyst
We are looking for a Cyber Risk Analyst to strengthen our governance, risk, and compliance posture across the organization. In this role, the Cyber Risk Analyst will drive cyber security audits, vendor security reviews, business continuity (BCP/DR) drills, and security awareness initiatives, while supporting the implementation of frameworks such as NIST Cybersecurity Framework (CSF) and ISO 27001 ISMS. This role is ideal for someone who enjoys working cross-functionally, can communicate clearly with both technical and non-technical stakeholders, and is comfortable working remotely with high ownership and accountability.
What you will be expected to do:
Cyber Security Audits & Assessments (30%)
- Plan and execute internal cyber security audits and control reviews across applications, infrastructure, and business processes.
- Document findings, assess risk and impact, and track remediation through closure with respective teams.
Vendor and Third-party Security Reviews (30%)
- Conduct security due diligence for vendors and third parties: review security questionnaires, certifications, and technical controls to ensure they meet organizational requirements.
- Identify and track vendor risks, recommend mitigation measures, and support contractual security requirements where needed.
Business Continuity and BCP/DR drills (25%)
- Work with stakeholders to maintain and test business continuity and disaster recovery (BCP/DR) plans.
- Plan, coordinate, and document tabletop exercises and technical BCP/DR drills, track and follow up on corrective actions.
Cyber Governance and Risk Management (10%)
- Maintain up-to-date security policies, standards, procedures, and guidelines, ensuring alignment with NIST CSF, ISO 27001, and relevant regulations.
- Prepare regular reports and dashboards on audit findings, risk status, BCP drill outcomes, vendor risk posture, and ISMS/NIST CSF progress for management.
- Maintain and update the cyber risk register, working with control owners and business stakeholders to identify, assess, and prioritize risks.
- Perform risk assessments (likelihood/impact), propose risk treatment options (mitigate, accept, transfer, avoid), and track treatment plans to closure.
Cyber Security Awareness & Training (5%)
- Develop and deliver cyber security awareness sessions and targeted training for employees, including phishing awareness, secure handling of data, and role-based security topics.
- Create clear, engaging communication materials (presentations, FAQs, quick guides) to improve security culture.
You might be a strong candidate if you have/are:
- Bachelor's degree in any engineering discipline.
- At least 3 years of experience in cyber governance, risk and compliance domain.
- Experience in implementing security controls and processes across business functions adhering to NIST CSF, ISO 27001 standards.
- Practical experience into at least 70% of the above-mentioned responsibilities.
- Exposure to industry standards and regulations (e.g., SOC 2, ISO 27001, GDPR/DPDP etc.).
- Security certifications such as CISA, ISO 27001 Lead Implementer / Lead Auditor is preferred.
- AI-governance or AI-risk credentials such as ISO/IEC 42001 training, NIST AI RMF Architect/Lead Implementer, or recognized AI Security & Governance certifications is a strong plus.
- Good communication and interpersonal skills, with the ability to engage effectively with diverse stakeholders.
What Sun King offers:
- Professional growth in a dynamic, rapidly expanding, high-social-impact industry
- An open-minded, collaborative culture made up of enthusiastic colleagues who are driven by the challenge of innovation towards profound impact on people and the planet.
- A truly multicultural experience: You will have the chance to work with and learn from people from different geographies, nationalities, and backgrounds.
- Structured, tailored learning and development programs that help you become a better leader, manager, and professional through the Sun King Center for Leadership.
About Sun King:
Sun King is the world's leading off-grid solar energy company, combining cutting-edge product design, fintech, and field operations to deliver energy access for the 1.8 billion people who live without an affordable and reliable electric-grid connection. Sun King has built a new kind of energy utility: distributed, green, customer-centric, and affordable. We bring clean, reliable, decentralized energy directly into people's lives — from solar kits that provide first-time energy access to multi-kilowatt systems that serve both off-grid users and grid-connected customers powering larger homes, schools, hospitals, farms, offices, and light manufacturing. Already, 25 million homes and businesses rely on Sun King for electricity supply and the appliances and services it enables: lighting, televisions, fans, refrigeration, and smartphones. Sun King combines energy generation, energy-efficient appliances, installation, and financing into one seamless offering. Think of it as a distributed utility, designed for wherever energy is needed and designed to scale with its users as incomes and energy needs grow. Sun King makes solar products affordable to low-income households and businesses via 'pay-as-you-go' (PAYG) purchase financing. Sun King installs solar after customers pay a small deposit. Customers then make small, manageable payments of as little as US $0.14 a day via mobile money or cash. Instead of paying for expensive, polluting, and health-damaging kerosene for lighting or diesel for power, customers unlock savings through accessing solar power and after one to two years of payments, customers own their solar equipment outright. Sun King collects payments digitally through mobile money systems and its 35,000 field agents — over 1 million payments each day. To date, Sun King has extended more than $1.4 billion in PAYG loans to customers. Sun King began by powering homes and businesses with solar systems delivered through PAYG financing. Now, we're using the same model to make smartphones and clean cooking equipment affordable: helping households connect to the digital economy and transition from wood-based fuels to modern, sustainable alternatives. Sun King employs 3,500 full-time staff in 14 countries, with specialties spanning product design, data science, logistics, customer service, sales, software, operations, and more — all with a passion to serve off-grid families. Sun King is committed to gender diversity in the workplace. Women represent 42% of Sun King's workforce. Apply Now
- ...Rothe Development Inc is seeking a Cybersecurity Risk Vulnerability Analyst I to support our nation's ballistic missile defense program in Colorado Springs. The role involves conducting threat and vulnerability assessments, and performing data analysis. This position...Suggested
- A cybersecurity company is seeking a Cyber Risk Analyst to identify and prioritize vulnerabilities in their systems. This full-time role requires proficiency in vulnerability assessment tools and a strong understanding of cybersecurity frameworks. The candidate will conduct...SuggestedFull timeRemote work
- ...Compunnel, Inc. is seeking a Cyber Risk Analyst/Coordinator to monitor and manage cyber risks across systems and applications. This role involves supporting cyber governance, mitigating risks, and leading IT projects from inception to reporting. The ideal candidate will...Suggested
- ...Cyber Security Risk Analyst - Assurance This position is posted by Jobgether on behalf of a partner company. We are currently looking for a Cyber Security Risk Analyst - Assurance in Canada. This role sits at the intersection of cybersecurity, risk management, and...SuggestedLong term contractRemote work
- ...Cyber Defense & Risk Analyst page is loaded## Cyber Defense & Risk Analystlocations: USA - GA - Sandy Springstime type: Full timeposted on: Posted Todayjob requisition id: R31141HYBRID ROLE BASED OUT OF OUR ATLANTA OFFICE**Job Purpose:**Our Cyber Defense & Risk Analyst...SuggestedWork experience placementWork at office
- ...program that promotes resiliency by identifying and mitigating cyber risks and threats through risk-based consultation, advice, and... ...to the product development teams are implemented through CSA analysts being embedded in the development squads to provide security advice...Full timeTemporary workPart timeShift work
- ...A leading cybersecurity firm in Virginia is seeking a Cyber Risk Analyst to assess and mitigate risks for DoD programs. In this role, you will work with various stakeholders, develop action plans, and translate complex security concepts for clients. Candidates should...Full time
- ...Cyber Risk Analyst (TS/SCI) Reston, VA, USA Full-time Clearance: Top Secret/SCI Job Description Summary: Warnings about cyber threats are everywhere and the constantly evolving nature of these threats can make understanding them seem overwhelming to the...Full time
- ...project teams typically composed of a mix of junior and mid-level analysts who will look to you for technical acumen and mentoring.... ...VA., Tysons Corner, VA. Description: We are seeking a Cyber Risk Analyst (SME-level). This role involves conducting on-site and...For contractorsRemote workShift work
- ...Nrg Bluewater Wind is seeking a Cybersecurity Risk Analyst in Houston, Texas to support the organization's cyber risk management program. The analyst will conduct risk assessments, evaluate vulnerabilities, and recommend risk treatment solutions. A minimum of five years...
$110k - $130k
...Senior Cyber Risk Analyst Passionate about precision medicine and advancing the healthcare industry? Recent advancements in underlying technology have finally made it possible for AI to impact clinical care in a meaningful way. Tempus' proprietary platform connects...$44.1 - $63 per hour
...Martin Inc. is hiring a Contractor - Security for a remote position in Detroit, Michigan. This role focuses on managing cybersecurity risk assessments, requiring 5 to 7 years of experience in Information Security or IT Risk Management. The ideal candidate should have...Hourly payContract workFor contractorsRemote work- ...Cyber Risk Analyst Location: Cincinnati preferred; remote within EST zone. Pay: $35/hr, W‑2. About the Program Part of the Cyber Risk Management Program – a third‑year initiative focused on risk assessment, reporting, and Business Impact Analysis (BIA). Key Responsibilities...Remote work
- ...Holdings, a Pequot Company, is seeking a Management Analyst to support the Cybersecurity and Infrastructure... ...Programs. The role involves providing research and cyber-physical security analytic support to reduce risks posed by small unmanned aircraft systems. The ideal...Contract workWork at office
- ...Sacebt, con sede a Roma, è alla ricerca di un ICT Risk Management Analyst. Il candidato ideale avrà almeno 4 anni di esperienza nella gestione dei rischi ICT, inclusi Cyber Risk e Business Continuity. È richiesta conoscenza delle normative DORA e NIS2 e abilità in strumenti...
- ...Job Title: Cyber Risk Analyst Location: CINCINNATI preferred, remote in EST Payrate : $35/hr on W2 TOP SKILLS: Risk management, specifically cyber risk. At least some experience in a cyber role. Soft skills: Good communication skills - written and verbal...Remote work
- ...About the job Cyber Risk Analyst - Senior Associate HORNE is a professional services firm founded on a cornerstone of public accounting. Our 1,000+ team members serve clients from offices and project locations in 13 states, Washington D.C., Puerto Rico and...Local area
- ...A staffing agency is seeking a Mid-Level Cyber Analyst to execute cyber risk assessments and provide a wide range of information assurance activities. The ideal candidate should have at least 5 years of experience in cyber risk assessment, relevant certifications, and...
- ...passionate about strengthening cybersecurity through people, process, and culture? We're looking for a Risk Analyst, Cybersecurity to play a pivotal role in reducing humanrelated cyber risk and advancing a securityfirst mindset across the organization. In this role, you'll lead...Full timeWork at officeShift work3 days per week
- ...Title: Cyber Risk Analyst W-2 Only (no 1099) Must be a U.S. Citizen Company's Location: Lemont, IL Job Description Background: The Companys Cyber Security Program Office promotes the safe and secure use of information technology. There are a variety...Full timeContract workFor contractorsWork at officeImmediate startRemote workFlexible hours
- ...Veritiv Corporation is seeking a Cyber Defense & Risk Analyst to enhance the company's security posture through cybersecurity operations and governance. This hybrid role involves collaboration with IT, Legal, and third-party providers to manage risks effectively. Key...
$80k - $95k
...Job Description The Cyber Risk Assessment Analyst - Intermediate provides technical and analytical support to the DISA Infrastructure Executive by performing cybersecurity standardization and risk management tasks. This position ensures cybersecurity baselines are...Local areaRemote work$95.7k - $144.9k
...Bank of America is looking for a Resolution Analyst in Washington, DC. The role is pivotal in managing cybersecurity risks, requiring strong analytical and problem-solving... ...dedicated team committed to enhancing the organization's cyber defense capabilities. #J-18808-Ljbffr...- ...eResilience is seeking a Mid-Level Cyber Analyst in Hampton, Virginia. The candidate will apply their expertise to execute cyber risk assessments and work under the Security Control Assessor. Key responsibilities include identifying system vulnerabilities, contributing...
$100k - $145k
A consulting firm is seeking an Application Vulnerability & Obsolescence Analyst to manage software security for financial clients. The candidate must have at least 3 years of experience in vulnerability management, a Bachelor's degree in IT or Cybersecurity, and familiarity...$165k
...A leading IT solutions provider in Herndon, Virginia, is seeking a Risk Analyst to support cyber risk and compliance activities. The ideal candidate will lead the development of Supply Chain Risk Management and Third-Party Risk Management programs, ensuring effective risk...- ...Veritiv Operating Company is looking for a Cyber Defense & Risk Analyst to strengthen their security posture. This hybrid role based out of Atlanta involves monitoring security alerts, investigating incidents, and supporting audits. Candidates should have 3-5 years of...
$40 - $45 per hour
A cybersecurity firm is seeking an entry-level Cyber Risk Analyst to join their team in Columbus, OH. This hybrid role requires on-site work twice a week and offers a contract duration of one year. Responsibilities include assisting in cyber risk assessments, implementing...Hourly payContract work- A leading energy services provider is seeking a Cybersecurity Threats & Risk Analyst to join their IT security team in Houston, Texas. The ideal candidate will assess cyber risk and monitor threats while supporting incident response efforts. Required qualifications include...
$170k - $230k
Job Summary Cyber Security Assurance Analyst - New York Fed - Information Security FunctionThe Cyber Security Assurance (CSA) department assesses risks associated with third‑party vendors, systems, software, IoT devices, industrial control systems, and cloud infrastructure...
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Cyber Risk Analyst. Be the first to apply!
- remote cyber security analyst United States
- cyber security analyst no experience United States
- junior cyber security analyst United States
- cyber security analyst United States
- information security consultant United States
- cyber security business analyst United States
- entry level cyber security analyst United States
- cyber security analyst internship United States
- cyber security operations analyst United States
- it risk analyst United States

