Sr IT Risk Security Analyst
$79.9k - $133.2kSymetra Financial Corporation
Company Overview Symetra Investment Management ("SIM") is a SEC-registered investment advisory firm with approximately $78 billion in assets under management as of March 31, 2025. Symetra Financial Corporation ("SFC"), a diversified financial services company with $68.4 billion in assets as of December 31, 2024, headquartered in Bellevue, Washington is the sole shareholder of SIM. SFC is also the holding company of Symetra Life Insurance Company ("Symetra Life"), which was founded in 1957, and has insurer financial strength ratings of 'A' by A.M. Best and Standard & Poor's and 'A1' by Moody's. Symetra Life is among the top 40 largest life insurance companies in the United States (based on statutory admitted assets as of December 31, 2024) and has approximately 2.3 million customers and over 2,600 employees nationwide. SFC is a wholly owned subsidiary of Sumitomo Life Insurance Company, a mutual life insurance company with head offices in Osaka and Tokyo, Japan. Founded in 1907, Sumitomo is one of the largest life insurance companies in Japan with $327 billion of assets as of March 31, 2025. SIM currently has recently begun marketing its investment management services to third-party institutional investors. About the role The Senior IT Risk and Security Analyst (RSA) is a critical member of the Information Security Officer's (ISO's) team. The RSA's role is to act as an interface between IT, Audit Services and the business for overall IT risk management. The RSA must be able to understand our current IT Control environment including IT General Controls and ISO 27001 Information Security Critical Controls while improving our risk posture. The RSA coordinates with several stakeholders including business, audit services, and IT to manage, evaluate and remediate issues. What you will do Serve as a trusted advisor to IT and business teams by identifying technology, security, and operational risks, recommending effective controls, and ensuring risks are properly assessed, documented, and mitigated. Lead enterprise IT risk management activities, including annual risk assessments, risk committee facilitation, risk reporting, policy development, risk register management, and continuous improvement of the organization's risk management framework. Support third-party technology risk management across the vendor lifecycle, including risk tiering, pre-contract due diligence, security assessments, and periodic monitoring. Evaluate SOC reports, ISO 27001 certifications, security questionnaires, penetration tests, external security ratings, encryption and data-handling practices, AI usage, contractual controls, and business continuity capabilities; document risk ratings and findings, drive remediation, and elevate unresolved risks in partnership with Procurement, Legal, business owners, and security teams. Manage and enhance IT audit and compliance programs, including SOX IT General Controls (ITGCs), ISO 27001 security controls, regulatory requirements, and internal/external audit activities to ensure controls are designed and operating effectively. Partner with control owners, auditors, and business stakeholders to track audit findings, drive remediation efforts, provide training, and ensure sustainable compliance across technology and business functions. Evaluate third-party vendors, emerging technologies, and business initiatives to identify security and operational risks, implement monitoring controls, and support disaster recovery and business continuity planning efforts. Develop executive-level reporting and dashboards that communicate risk exposure, audit results, compliance status, and remediation progress to senior leadership and governance committees. Conduct reviews of information systems, business applications, infrastructure, and operational processes to assess security posture, control effectiveness, and alignment with company objectives. Maintain ownership of risk management tools and processes, ensuring accurate documentation, reporting, workflow management, and ongoing program maturity. Who You Are You're an analytical problem solver with a strong understanding of information security, IT risk management, audit methodologies, compliance frameworks, and internal controls. You have experience managing complex risk assessments, audit programs, and compliance initiatives, with the ability to translate technical risks into business-focused recommendations. You're an effective communicator who can confidently collaborate with executives, auditors, IT leaders, business stakeholders, and external vendors to influence positive outcomes. You thrive working independently while also serving as a trusted advisor, mentor, and subject matter expert for colleagues and cross-functional teams. You possess strong organizational skills and attention to detail, enabling you to manage multiple priorities, maintain accurate documentation, and deliver high-quality results in a fast-paced environment. Nice to Haves Bachelor's degree in information systems, Cybersecurity, Computer Science, Accounting, Business, or related field, or equivalent combination of education and experience. 5-8 years of experience in IT risk management, information security, IT audit, cybersecurity governance, compliance, or related disciplines. Professional certifications such as CISA, CISSP, CRISC, CISM, CIA, ISO 27001 Lead Implementer/Auditor, or other relevant credentials. Experience with SOX ITGCs, ISO 27001, IT risk assessment methodologies, vendor risk management, security governance, and audit lifecycle management. Demonstrated ability to influence stakeholders, lead initiatives, and communicate complex technical concepts to both technical and non-technical audiences. Why Work at Symetra Here’s what some of our employees have to say about why they work at Symetra:
- Symetra is a great place if you are looking for the opportunity to contribute, to grow, to be seen and valued." Vernell K. - Auditor
- We're big enough to make an impact on the country, but small enough to care and know who you are and what you're contributing to the organization. All new ideas are welcome!" Stephanie F. - VP Customer Service & Operations
#LI-NW1
- LI-Remote
- J-18808-Ljbffr Symetra Financial Corporation
- ...Sr Information Security Analyst - Insider Risk The Insider Risk Analyst supports Regeneron's insider risk capability within the Global Data Protection & AI Security pillar, working alongside the Insider Risk & IP Protection lead. The role focuses on insider data risk,...Senior
- ...than 1,000 clinicians alongside care coordinators, analysts, operators, and professionals from all... ...CuranaHealth.com. Summary Curana Health is seeking an IT Governance, Risk, and Compliance Analyst to join our IT Security and Governance team. In this role, you will help...Suggested
$96.84k - $121.05k
...strengthen the organization's information security program by partnering with teams across the... ...projects, and identifying potential risks. The position serves as a trusted advisor,... ...moderate to large efforts. Works with the IT department to deploy technical controls, meet...SeniorTemporary workWork experience placementWork at officeLocal areaFlexible hours- ...DescriptionStrong knowledge of Information Security concepts such as:•Encryption, Cloud and... ...Data Loss and Prevention tools and solutions•Risk-Threat Analysis and Vulnerability... ...and Access Management, Computer Forensic•IT Audit and Compliance, Regulatory Requirements...Suggested
$75k - $85k
...focus on your physical, mental and financial well-being. The Security Analyst is an integral part of the Gen II Technology team. The Security... ...Analyst is responsible for the administration and maintenance of IT security systems. Job responsibilities will also include...SuggestedWork at officeFlexible hours1 day per week- ...trust. As part of the Technology Leadership Program in the Risk & Security Analyst track, you'll help identify, assess, and mitigate risks that... ...concentration in computer science, computer engineering, IST, IT, CIS, Security, Risk, Cybersecurity or related technical/...
$86.15k - $106.65k
...disciplines, and share their work openly. We’re seeking an Information Security Analyst to lead incident and vulnerability management, provide... ..., we would love to speak with you. You will report to the IT Business Operations Manager, able to help shape the direction...Work at officeLocal areaAfternoon shift- IT Security Analyst I Department: Technology Operations Employment Type: Full Time Location: USA - Remote Description At VC3, we don’t just solve IT problems — we own them. We serve hundreds of municipalities and organizations across the United States and Canada, bringing...Full timeWork experience placement
- Patrick Industries is seeking an IT Security Analyst I to join our Security Operations Center in Elkhart, Indiana. You will monitor security alerts across IT and OT networks, triage incidents, and escalate as needed while documenting actions in ticketing systems. The role...
- ...growth, diversified and empowered Team of more than 10,000! Your adventure awaits! We are seeking a motivated and detail-oriented IT Security Analyst I to join our Security Operations Center. In this role, you will be the first line of defense, responsible for monitoring,...
$88.39k - $110.49k
...exceptional care, despite any challenges, goes beyond just a job; it’s a calling that drives us forward every day. Job Overview The IT Security Analyst supports AltaMed’s Security Operations by monitoring, analyzing, and responding to security events, service requests, and...Local areaFlexible hours- ...Title: Information Systems Security Analyst Location: Dahlgren, VA Clearance: Active Secret Clearance... ..., threats, vulnerabilities, and risk management processes Encryption algorithms... ...procurement, and supply chain risk management IT supply chain security andcompliance with...
$70k - $90k
...these applications become more secure over time while significantly... ...make: As a Security Operations Analyst, you will be an analytical and... ...Security Architecture, IT Operations, and SIEM and SOAR... ...operational security incidents and risks into clear, actionable strategies...Local areaRemote workWork from home$34.16 - $54.57 per hour
IT - Information Security Analyst I - Manning - Information Systems Info Security Manning House I, 450 W. Paseo Redondo, Tucson, Arizona, United States... ..., or network devices. Performs and contributes to risk assessments. Maintains awareness of emerging threats and...Hourly payWork experience placementImmediate startMonday to Friday- El Rio Health is seeking an IT - Information Security Analyst I at Manning - Information Systems Info Security in Tucson, AZ. The role focuses on planning... ..., integrity, and availability. Responsibilities include risk assessments, monitoring for threats, and advising...
- AltaMed Health Services Corporation in Los Angeles, CA, is seeking an IT Security Analyst to monitor, analyze, and respond to security events across our regulated healthcare environment. This role serves as an escalation point from the IT Helpdesk for security and access...
- Fullsteam is seeking a security incident response specialist to lead investigations, coordinate with cross-functional teams, and drive incident response across the organization. You will participate in 24x7 on-call rotations, perform threat hunting, tune alerts, and contribute...Senior
- Chainguard is seeking a Senior Security Analyst (Governance and Trust) to design and run a portable continuous monitoring and authorization program for federal and defense customers. You will translate standards into practical controls, build evidence pipelines, and partner...SeniorRemote job
$127.6k - $216.9k
...Residents, holding a green card, will be considered. The ServiceNow Security Organization (SSO) The ServiceNow Security Organization (SSO) delivers world-class, innovative security solutions to reduce risk and protect the company and our customers. We enable our customers...SeniorPermanent employmentWork at officeImmediate startRemote workFlexible hoursWeekend work$100k - $105k
...love to hear from you! Your opportunity The Senior Identity Security Analyst is responsible for the day‑to‑day operations, continuous improvement... ...IAM Engineering, Infrastructure, Security Operations, Audit, Risk, and the People Team to ensure identity processes remain...SeniorFlexible hours- The Information Security Analyst at Info Technology Solutions, UC Riverside, will implement the governance, risk management, and awareness program. You will conduct risk assessments, coordinate audit engagements, and maintain policies and procedures to safeguard information...Remote job
- Air Liquide in Houston, TX is seeking an Information Security Analyst to support Governance, Risk Management and Compliance across Digital & IT environments. The role helps maintain cybersecurity for IT and OT systems and protect sensitive data. You will join a global...
$128.1k - $239.6k
...countries, all of whom rely on secure technology to be able to do... ...responds and mitigates cyber-risk, protecting EY and client data... ...are seeking an Active Defense Analyst with a strong information security... ...owners, custodians, and IT stakeholders to facilitate security...Summer holidayLocal areaRemote workFlexible hoursNight shiftWeekend work$85k
...Permanent, hybrid (Lancaster) Security Analyst 1 is offered up to $85k plus bonus based on experience. This is a JFC Global Exclusive job! Join... ...: 3+ years of relevant professional hands on experience in IT help desk or network/systemsroles, having then moved into more...Permanent employmentFull time$110k - $125k
...Security Analyst III Remote, US 10 days ago Requisition ID: 1032 Salary Range: $110,000.00 To $1... ...effectiveness. This position partners closely with IT Operations, leadership, and the... ...Security Officer to proactively reduce risk, improve security posture, and ensure compliance...For contractorsWork at officeLocal areaRemote workFlexible hours- ...Security Analyst, Third-Party Ecosystem Risk Management The role of Security Analyst in Third-Party Ecosystem Risk Management at Plaid invites candidates to safeguard our interconnected digital landscape. You will oversee security risk assessments for Plaid's third parties...Work experience placementShift work
- Nelnet is seeking a senior IT Risk Manager to lead information security risk initiatives, coordinate risk assessments and audits, and drive remediation and internal controls across IT, security, audit, and compliance teams. The role emphasizes collaboration with stakeholders...SeniorWork at officeRemote work
$129k - $171k
...TEAM Anduril's Detection and Response team is looking for a Security Operations Analyst to be the watchtower for Anduril's critical defense... ...using a third‑party service provider to conduct pre‑employment risk, integrity, and due diligence screening and assessing potential...Full timeWork experience placement$58k - $72k
...worldwide. We are a leading provider of emergency medical and security solutions for corporations and individuals. Our 24/7 Operations... ...Position Overview The Global Security Operations Center (GSOC) Analyst will be responsible for security operations requests, managing...WorldwideOverseasShift workNight shiftWeekend workWeekday work- ...known Financial Services Company is looking for a Information Security Analyst in Charlotte, NC or Irving TX(Hybrid). W2 Work with the brightest... ...experience in Information Security, Cybersecurity Operations, Risk Management, or a related field. Knowledge of web security,...Long term contractContract work
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Sr IT Risk Security Analyst. Be the first to apply!
- risk consultant Brooklyn, NY
- information risk analyst Brooklyn, NY
- risk analyst Brooklyn, NY
- senior quantitative risk analyst Brooklyn, NY
- operational risk consultant Brooklyn, NY
- it risk analyst Brooklyn, NY
- risk officer Brooklyn, NY
- third party risk analyst Brooklyn, NY
- transaction risk analyst Brooklyn, NY
- operational risk specialist Brooklyn, NY

