Cyber Risk Analyst
New York City | Jobs
Cyber Risk AnalystThe Office of Technology and Innovation (OTI) leverages technology to drive opportunity, improve public safety, and help government run better across New York City. From delivering affordable broadband to protecting against cybersecurity threats and building digital government services, OTI is at the forefront of how the City delivers for New Yorkers in the 21st century. At OTI, we offer great benefits, and the chance to work on projects that have a meaningful impact on millions of people. You'll have the opportunity to work with cutting-edge technology and collaborate with other passionate professionals who share your drive and commitment to making a difference through technology.About Cyber Command Cyber Command is charged with protecting all City systems against cyber threats, including systems that deliver vital services to New Yorkers. Headed by the Chief Information Security Officer of the City of New York, we provide in-depth support to over 100 agencies and offices to protect, detect, identify, respond to, and recover from cyber threats.About This Role The Cyber Risk Analyst will serve in the Cyber Command Risk Program under the direction of the Senior Advisor. They will help shape Cyber Command's approach to risk management, build new risk frameworks and processes, and assess and monitor NYC agencies' cybersecurity risks. Responsibilities will include:Build new risk processes and implement risk frameworks to enable better monitoring and evaluation of risks across the City;Manage projects, pushing through ambiguity and challenges which may arise;Work with stakeholders across various divisions, soliciting input and working through feedback;Review and analyze various cybersecurity risk cases, justifications, and exceptions documents submitted by agencies;Assist in developing cybersecurity risk assessment procedures and control testing methodologies based on established frameworks and guidelines;Assess NYC agencies' documented information security and technology policies, procedures, and practices.Draft risk cases accompanied by working papers, concise controls assessments, and systems testing reports;Present risk findings to senior leadership;Engage in communications with NYC agencies to assist them in successfully managing risk;Handle special projects and initiatives as assigned.HOURS/SHIFT Day - Due to the necessary technical duties of this position in a 24/7 operation, candidate may be required to work various shifts such as weekends and/or nights/evenings. WORK LOCATION Brooklyn, NYTO APPLY * Interested applicants with other civil service titles who meet the preferred requirements should also submit a resume for consideration Please go to and search for Job ID #777247Minimum QualificationsA baccalaureate degree from an accredited college and four years of satisfactory full-time experience related to projects and policies required by the particular position; or, Education and/or experience which is equivalent to "1" above.Preferred SkillsThe successful candidate should possess the following: - 2-3 years of experience in cybersecurity risk management, IT auditing, or policy - Familiarity with cybersecurity framework(s) (NIST, SANS, PCI, ISO 27001/27002, or CIS) - Experience performing security controls assessments - Knowledge of hardware, software, data, and network principles and systems related to Private and/or Public Sectors services - Understanding of commonly used computer operating systems, databases, network structures - Experience managing projects - Being a highly organized, motivated, and self-directed professional - Ability to work effectively in a team environment - Investigative and analytical skills - Excellent oral and written communication skills - Knowledge of the current and evolving cyber threat landscape - Knowledge of laws, regulations, policies, and ethics related to cybersecurity and information privacy One or more of the following certifications is preferred: o CompTIA Security+ o CompTIA Network+ o CompTIA A+ o CompTIA CySA+ o Cisco Certified Network Associate - CCNA o CEH: Certified Ethical Hacker o GIAC Information Security Fundamentals GISF) o GIAC Security Essentials (GSEC) o ISC)2 Systems Security Certified Practitioner (SSCP) o One or more of the following certifications are a plus: o Certified Information Systems Auditor (CISA) o Certified Information Systems Security Professional CISSP) o Certified in Risk and Information Systems Control (CRISC) o Certified Information Security Manager (CISM)Public Service Loan ForgivenessAs a prospective employee of the City of New York, you may be eligible for federal loan forgiveness programs and state repayment assistance programs. For more information, please visit the U.S. Department of Education's website at RequirementNew York City Residency is not required for this positionAdditional InformationThe City of New York is an inclusive equal opportunity employer committed to recruiting and retaining a diverse workforce and providing a work environment that is free from discrimination and harassment based upon any legally protected status or protected characteristic, including but not limited to an individual's sex, race, color, ethnicity, national origin, age, religion, disability, sexual orientation, veteran status, gender identity, or pregnancy.
- ...commitment to making a difference through technology. About Cyber Command Cyber Command is charged with protecting all City... ...from cyber threats. About This Role The Cyber Risk Analyst will serve in the Cyber Command Risk Program under the...SuggestedFull timeWork at officeShift workNight shiftWeekend workAfternoon shift
- Vanguard’s Technology Leadership Program, in the Risk & Security Analytics track, invites graduates to help identify and mitigate cybersecurity and operational risks across Vanguard’s systems and clients. The two-year, three-rotation program includes real‑world capstones...Suggested
- ...will be given to candidates with prior experience in the Financial Services Industry. Position Summary: The Information Risk Analyst/Cybersecurity Risk Analyst will be responsible for developing risk assessment questionnaires, conducting risk assessments for...Suggested
- ...Cybersecurity Risk AnalystWe are seeking a Cybersecurity Risk Analyst to join our Information Security Risk team. This role focuses on assessing risks across applications (on-prem and cloud), infrastructure, and third-party vendors through a formalized risk assessment...Suggested
- ...hands-on opportunities and mentorship from professionals to broaden your technical expertise. As part of the Analyst track, you’ll work on security strategy, risk mitigation, and digital ethics while practicing Agile and LEAN methodologies, with ongoing guidance from...SuggestedInternship
- AnaVation is seeking a Cyber Vulnerability Analyst to support mission-critical customer operations in Reston, VA or Colorado Springs, CO. You will maintain the Vulnerability Management Program, manage the patch repository, issue alerts, and track compliance while coordinating...
- ...spirit of a startup, we’re hiring. SageSure, a leader in catastrophe-exposed property insurance, is seeking a Senior Catastrophe Risk Analyst. In this role, you’ll play a critical part in advancing the scientific, statistical, and model-based understanding of...Live in
$131.8k - $290k
Job Title: Senior Cyber Network Operations Analyst Job Category: Engineering Time Type: Full time Minimum Clearance Required to Start: TS/SCI with Polygraph Employee Type: Regular Percentage of Travel Required: Up to 10% Type of Travel: Local The Opportunity: CACI is seeking...Full timeContract workWork experience placementLocal areaFlexible hours$120k - $150k
...where you can learn and thrive, Brown Brothers Harriman is the right place for you. Join us as our Custody and Digital Assets Risk Analyst. BBH is seeking a risk professional to support the risk and governance oversight of traditional and digital asset servicing...Work experience placementLocal area- ...projections and stress scenarios used for regulatory and internal purposes, including CCAR, CECL, and IFRS-9. You will assess evolving macro risks, communicate insights to senior leadership, and collaborate with a team of economists while advancing quantitative methods and data...
- ...Risk AnalystKey responsibilities include:Ensure assessments, project and task deliverable dates are metConduct Information Security, Information Technology, Cyber Security, application risk, Disaster Recovery Planning, Risk Control Self-Assessment, Onsite (i.e. data center...
- ...Risk Analyst# Risk AnalystRemote - Tulsa, OK 74120## OverviewPosition TypeFull TimeJob ShiftDayCategoryBanking## Description**Vast Bank is looking to hire an *Risk Analyst!*****About Vast Bank**Since February of 1982, we've been a financial institution that has served...Work at officeLocal areaRemote workWork from home
- ...National Institute of Standards and Technology seeks an Enterprise Risk Management Analyst to provide technical and analytical services for the ERM Office. The analyst will develop components of the ERM framework and advise senior NIST management on implementing the agency...Work at office
- # AI Governance & Risk AnalystOperates the Managed AI program for our clients on a recurring cadence. Maintains AI Acceptable Use Policy... ...travel: Not required.## About this roleThe AI Governance & Risk Analyst operates the Managed AI program for our clients on a recurring...
$116.04k - $168.29k
...and FSAs for eligible expenses. Retirement: Competitive retirement package to secure your future. Responsibilities The Principal Risk Analyst will lead risk business operations, special projects, investigations, legal litigation, mitigation development, non-employee...Full timeWork at officeVisa sponsorshipMonday to FridayFlexible hoursWeekend work- ...SMBC Group in Charlotte, NC is seeking a seasoned Data Analyst to join the Regulatory Reporting & CCAR Technology Team. You will analyze data requirements, design data solutions, and support automation of CCAR and regulatory reporting initiatives. The role emphasizes collaboration...
- ...Cyber Security Analyst Onsite: New York W2 OR 1099 Exp: 8+ Visa: GC, USC, H4 Ead, L2 Ead The position requires fully on-site reporting. Provide support for all corporate and enclave firewalls, application delivery controllers, RADIUS, RSA. Develop and implement...Work experience placementLocal areaRotating shift
- ...in understanding their overall cybersecurity posture, developing risk management plans, identifying practical improvements, and/or... ...facilities, we help water utilities build a complete picture of their cyber risk exposure and maturity, and guide them toward sustainable...Full timeTemporary workPart timeCasual workLive inWork at officeLocal areaRemote workFlexible hours
- ...lifecycle, and cost efficiency. Job Description: Cybersecurity Analyst (Federal Assessments Top Secret Clearance) Position Summary PiTech... ...policies). The analyst documents objective evidence, identifies risk and root cause, and produces clear, actionable recommendations...Contract workFor contractors
$2,500 per month
## Cyber Security AnalystApplyremote type: Remotelocations: US PA Home Office: US TX Home... ...Better.We are seeking a **Cyber Security Analyst** for our **First Quality Enterprises,... ...channels and articles to identify potential risks and proactively strengthen defenses.*...Remote workHome officeFlexible hours$7,094.23 per month
...at a FedEx office location up to several times per week. Sr Cyber Security Analyst Job Description We are seeking an experienced and technically... ...Security Organization to help address Fraud and Security risks. Under limited supervision, you will be responsible for creating...Work experience placementWork at office- ...day actions. What you will be doing: Job Summary / Purpose: We are seeking an experienced detail-oriented and proactive Business Risk Analyst to support the organization’s information security compliance, GRC workflow, and risk management initiatives. This role will...Temporary workWork at officeLocal areaRemote workWorldwideFlexible hours
- ...Risk Management Analyst One of the leading financial institutions is seeking a Risk Management Analyst who will be analyzing risk management activities and creating various reports related risks. Responsibilities: Prepare various reports for Control Self-Assessment,...
- ...NIST is seeking an Enterprise Risk Management Analyst to provide technical and analytical services for the NIST Enterprise Risk Management Office. This position involves analyzing and evaluating program operations. The analyst will develop elements of the Enterprise Risk...Work at office
- Orion Advisor Solutions is seeking a Senior Privacy & AI Risk Analyst to lead privacy initiatives and oversee AI governance from a privacy perspective. You will collaborate across Legal, InfoSec, and business units to ensure privacy controls are applied to AI use cases...Work at office3 days per week
- EY is seeking a Threat & Risk Analyst to lead strategic and tactical threat intelligence efforts in partnership with Global Security and Regional Security teams, focusing on the Americas. The analyst collects, assesses, and reports relevant intelligence to help protect...
$76k - $91.75k
As a member of the Knowledge Management Department, the Risk Mitigation Analyst conducts hands-on, detail-oriented public records and investigative research in support of the firm's client engagements and internal risk management functions. The Analyst investigates individuals...Full timeContract workWork experience placementWork at officeLocal area$88k - $107.5k
## Enterprise Risk Analyst - AI RiskApplylocations: Remote, WA: Remote, TX: Remote, CA: Remote, ID: Remote, SCtime type: Full timeposted on: Posted Yesterdayjob requisition id: R-13684Is it surprising to hear that a financial institution of 1.5 million members and over...Work experience placementRemote work- Raymond James Financial, Inc. is seeking a Fixed Income Capital Markets Risk Analyst to join our FICM Risk Management team in Saint Petersburg, FL. The role emphasizes learning, analytical thinking, and collaboration across partners to identify, assess, and monitor risk...
- Blue Cross NC is seeking an IT Governance Analyst to help identify, assess, monitor, and mitigate third-party vendor risks across technology, cybersecurity, data privacy, and regulatory requirements. You will partner with business stakeholders, procurement, information...Remote jobFlexible hours
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Cyber Risk Analyst. Be the first to apply!
- information security consultant Brooklyn, NY
- cyber security analyst Brooklyn, NY
- remote cyber security analyst Brooklyn, NY
- risk consultant Brooklyn, NY
- risk analyst Brooklyn, NY
- senior quantitative risk analyst Brooklyn, NY
- operational risk consultant Brooklyn, NY
- it risk analyst Brooklyn, NY
- risk officer Brooklyn, NY
- third party risk analyst Brooklyn, NY

