Sr IT Risk Security Analyst
$79.9k - $133.2kSymetra Financial Corporation
Company Overview Symetra Investment Management ("SIM") is a SEC-registered investment advisory firm with approximately $78 billion in assets under management as of March 31, 2025. Symetra Financial Corporation ("SFC"), a diversified financial services company with $68.4 billion in assets as of December 31, 2024, headquartered in Bellevue, Washington is the sole shareholder of SIM. SFC is also the holding company of Symetra Life Insurance Company ("Symetra Life"), which was founded in 1957, and has insurer financial strength ratings of 'A' by A.M. Best and Standard & Poor's and 'A1' by Moody's. Symetra Life is among the top 40 largest life insurance companies in the United States (based on statutory admitted assets as of December 31, 2024) and has approximately 2.3 million customers and over 2,600 employees nationwide. SFC is a wholly owned subsidiary of Sumitomo Life Insurance Company, a mutual life insurance company with head offices in Osaka and Tokyo, Japan. Founded in 1907, Sumitomo is one of the largest life insurance companies in Japan with $327 billion of assets as of March 31, 2025. SIM currently has recently begun marketing its investment management services to third-party institutional investors. About the role The Senior IT Risk and Security Analyst (RSA) is a critical member of the Information Security Officer's (ISO's) team. The RSA's role is to act as an interface between IT, Audit Services and the business for overall IT risk management. The RSA must be able to understand our current IT Control environment including IT General Controls and ISO 27001 Information Security Critical Controls while improving our risk posture. The RSA coordinates with several stakeholders including business, audit services, and IT to manage, evaluate and remediate issues. What you will do Serve as a trusted advisor to IT and business teams by identifying technology, security, and operational risks, recommending effective controls, and ensuring risks are properly assessed, documented, and mitigated. Lead enterprise IT risk management activities, including annual risk assessments, risk committee facilitation, risk reporting, policy development, risk register management, and continuous improvement of the organization's risk management framework. Support third-party technology risk management across the vendor lifecycle, including risk tiering, pre-contract due diligence, security assessments, and periodic monitoring. Evaluate SOC reports, ISO 27001 certifications, security questionnaires, penetration tests, external security ratings, encryption and data-handling practices, AI usage, contractual controls, and business continuity capabilities; document risk ratings and findings, drive remediation, and elevate unresolved risks in partnership with Procurement, Legal, business owners, and security teams. Manage and enhance IT audit and compliance programs, including SOX IT General Controls (ITGCs), ISO 27001 security controls, regulatory requirements, and internal/external audit activities to ensure controls are designed and operating effectively. Partner with control owners, auditors, and business stakeholders to track audit findings, drive remediation efforts, provide training, and ensure sustainable compliance across technology and business functions. Evaluate third-party vendors, emerging technologies, and business initiatives to identify security and operational risks, implement monitoring controls, and support disaster recovery and business continuity planning efforts. Develop executive-level reporting and dashboards that communicate risk exposure, audit results, compliance status, and remediation progress to senior leadership and governance committees. Conduct reviews of information systems, business applications, infrastructure, and operational processes to assess security posture, control effectiveness, and alignment with company objectives. Maintain ownership of risk management tools and processes, ensuring accurate documentation, reporting, workflow management, and ongoing program maturity. Who You Are You're an analytical problem solver with a strong understanding of information security, IT risk management, audit methodologies, compliance frameworks, and internal controls. You have experience managing complex risk assessments, audit programs, and compliance initiatives, with the ability to translate technical risks into business-focused recommendations. You're an effective communicator who can confidently collaborate with executives, auditors, IT leaders, business stakeholders, and external vendors to influence positive outcomes. You thrive working independently while also serving as a trusted advisor, mentor, and subject matter expert for colleagues and cross-functional teams. You possess strong organizational skills and attention to detail, enabling you to manage multiple priorities, maintain accurate documentation, and deliver high-quality results in a fast-paced environment. Nice to Haves Bachelor's degree in information systems, Cybersecurity, Computer Science, Accounting, Business, or related field, or equivalent combination of education and experience. 5-8 years of experience in IT risk management, information security, IT audit, cybersecurity governance, compliance, or related disciplines. Professional certifications such as CISA, CISSP, CRISC, CISM, CIA, ISO 27001 Lead Implementer/Auditor, or other relevant credentials. Experience with SOX ITGCs, ISO 27001, IT risk assessment methodologies, vendor risk management, security governance, and audit lifecycle management. Demonstrated ability to influence stakeholders, lead initiatives, and communicate complex technical concepts to both technical and non-technical audiences. Why Work at Symetra Here’s what some of our employees have to say about why they work at Symetra:
- Symetra is a great place if you are looking for the opportunity to contribute, to grow, to be seen and valued." Vernell K. - Auditor
- We're big enough to make an impact on the country, but small enough to care and know who you are and what you're contributing to the organization. All new ideas are welcome!" Stephanie F. - VP Customer Service & Operations
#LI-NW1
- LI-Remote
- J-18808-Ljbffr Symetra Financial Corporation
- ...DescriptionStrong knowledge of Information Security concepts such as:•Encryption, Cloud and... ...Data Loss and Prevention tools and solutions•Risk-Threat Analysis and Vulnerability... ...and Access Management, Computer Forensic•IT Audit and Compliance, Regulatory Requirements...Suggested
- ...Services, Markets or Prime Brokerage, and/or Securities Lending. This is the team for you.As a Securities Services - Announcement Capture Analyst within the Announcement Capture Team at... ...will be responsible for processing high-risk, complex voluntary corporate action...SuggestedWork at officeLocal areaFlexible hoursRotating shift
- ...Information Security Analyst The Information Security Analyst will be responsible for engineering, implementation, configuration and monitor security for the client's network, applications and systems. The design and implementation of proper protection for all of the...Suggested
$128.1k - $239.6k
...countries, all of whom rely on secure technology to be able to do... ...responds and mitigates cyber-risk, protecting EY and client data... ...are seeking an Active Defense Analyst with a strong information security... ...owners, custodians, and IT stakeholders to facilitate security...SuggestedSummer holidayLocal areaRemote workFlexible hoursNight shiftWeekend work- ...The Security Administration Analyst is responsible for executing access management activities, resolving provisioning issues, and ensuring adherence... ...and terminations) while understanding the business purpose, risk, and impact of access requests ( the why behind the ask )...SuggestedShift work
$103k - $168k
..., and advanced detection engineering. This role is responsible for identifying, investigating, and mitigating insider risks before they become security incidents and for leveraging AI-driven approaches to uncover malicious, negligent, and compromised-user activity across...Full timeFor contractorsWork at officeLocal areaRemote work1 day per week- ...Description Job Description Job Title: Security Administration Analyst – IAM Location: Jersey City, NJ (... ..., including the business purpose and risk of the access. Handle standard and... ...or least-privilege work. Generic IT support with no IAM tooling will not be...Contract workShift work
- ...seeking an energetic, self-motivated individual to join our Credit Risk Management department. The ideal candidate would meet the... ...and maintain good working relationships with investment brokers, analysts and rating agencies. Make buy/sell recommendations based on a sound...
$123.2k - $154k
## Staff Security AnalystApplylocations: US Remotetime type: Full timeposted on: Posted Yesterdayjob... ...and LinkedIn!The Staff Security Analyst is an advanced security operations professional... ...controls and reduce organizational risk.* Lead forensic investigations across endpoint...Full timeRemote workShift work$72k - $90k
...innovative solutions for our clients' most complex challenges. Role Summary World Wide Technology (WWT) is seeking a Security Solutions Analyst to join our Product Aligned Services practice, supporting the deployment, configuration, and integration of Palo Alto...Full timeRemote workFlexible hoursShift work$90k - $123k
...of a team that is responsible for identifying vulnerabilities in our applications as well as infrastructure to improve our overall security posture. In addition, you will be offered opportunities to develop your skills under the guidance of senior team members. Major...Full timeWork experience placementWork at officeLocal areaRemote work1 day per week- ...connected to innovation and growth. JOIN OUR TEAM AS A SENIOR CAT RISK & PORTFOLIO ANALYST! As a Senior CAT Risk & Portfolio Analyst, you will play a... ...benchmarking, and risk segmentation. Collaborate with IT, Architecture, and Data Engineering teams to improve data pipelines...SeniorWork at office
$105.4k - $207.8k
Position Summary Cyber Security & Risk Strategy Senior Consultant Our Deloitte Cyber team understands the unique challenges and opportunities businesses face in cybersecurity. Join our team to deliver powerful solutions to help our clients navigate the ever-changing...SeniorLocal areaVisa sponsorship- Banco Sabadell Miami seeks a Treasury Security Analyst in Miami Lakes, FL to support daily money market and custody operations, process security and custody payments, and maintain accurate cash reconciliations and journal entries in the core ledger system. The role requires...
- ...across the United States, is seeking a Senior Security & Systems Administrator to join its... ...administration, Microsoft 365 security, and IT governance across the U.S. group companies... ..., standardize technology controls, reduce risk, and support the technology needs of affiliated...SeniorFull timeWork at office
- ...spirit of a startup, we’re hiring. SageSure, a leader in catastrophe-exposed property insurance, is seeking a Senior Catastrophe Risk Analyst. In this role, you’ll play a critical part in advancing the scientific, statistical, and model-based understanding of...SeniorLive in
- Title: AWS Cloud Security ArchitectLocation: RemoteCloud Security Engineer - SRC (Partner)Description: Hands-on policy authoring and implementation resources responsible for designing and writing Service Control Policies (SCPs), Resource Control Policies (RCPs) and data...Senior
- Company DescriptionSonSoft is an IT Staffing and consulting firm and duly organized under the laws of the Commonwealth of Georgia.... ...latest resume along with current & expected salary.Job Title : Security Engineer/Admin (with experience on Identity & Access Management,...Full timeH1b
$120k - $150k
...Custody And Digital Assets Risk Analyst At BBH, partnership is more than a form of ownership—it's our approach to business and relationships... ...blockchain technologies, cryptocurrency ecosystems, tokenized security practices and digital asset custody models. ~ Familiarity...SeniorWork experience placementLocal area$163.4k - $322.1k
Position Summary Cyber Oracle Cloud Security - Senior Manager / Associate Vice President, Engineering Management Our Deloitte Cyber... ..., and operate capabilities across Oracle platforms to manage risk and enable secure transformation. Qualifications Required: Bachelor...SeniorLocal areaVisa sponsorship$125k - $165k
...member, we provide retail investors access to both U.S. and Asian securities markets, ensuring your investment journey is backed by... ...We are seeking an experienced, detail-oriented Senior Futures Risk Analyst to join our Futures Commission Merchant (“FCM”) risk management...SeniorContract workWork at officeLocal area$67.5k - $112.5k
...Core Responsibilities Execute activities within the Operational Risk and Control Assurance (ORCA) Program, supporting TransUnion's... ...and cutting-edge technology. TransUnion's Internal Job Title: Sr Analyst, Risk Management Company: TransUnion LLC #J-18808-Ljbffr TransUnionSeniorFull timeTemporary workWork experience placementFlexible hours- Commercial Liability Actuary (ACAS/FCAS Preferred) My client is a leading P&C insurance organization focused on advancing commercial liability products, and is looking to hire a Senior-level Actuary to join their Property and Casualty team. This role partners across actuarial...SeniorFull time
- We are looking for a Senior Financial Analyst to support retail finance operations in Secaucus, New Jersey. This role will translate financial... ...financial results and operational metrics to identify trends, risks, and opportunities that influence business performance.• Prepare...Senior
- Information Risk Analyst/Cybersecurity Risk Analyst Job Locations: Dallas, TX | Tampa, FL | Jersey... ...business and technology teams utilize IT systems and supporting technological... ...Responsibilities Conduct research on technology security, cybersecurity best practices, and...
- Location : On site at location(s) listed in job posting. Summary : As the Business Risk Oversight Officer within our second line of defense (2LOD), you will serve as a critical partner providing independent oversight and credible challenge to first line of defense (1...Senior
- ...industry by delivering value to our clients through expertise and scale. We empower communities and businesses to make better decisions on risk, faster.At Verisk, you'll have the chance to use your voice and build a rewarding career that's as unique as you are, with work...SeniorWork at office
- ...collaborating across business units, including data, product development and IT. You will also get exposure to working with state insurance... ...empower communities and businesses to make better decisions on risk, faster.At Verisk, you'll have the chance to use your voice and...SeniorWork at office
$100k - $120k
...advancement opportunities· and so much more!This Senior Financial Analyst (SFA) position will report to the Senior Finance Manager (SFM)... ...will support the SFM and partner directly with Tower Leads on the IT Senior Leadership Team (“ITSLT”) and their direct reports/...SeniorFull timePart timeWork experience placementFlexible hours- ...and used.Job summary As a Data Solutions & Analytics Lead in the Securities Services Finance Data Solutions & Analytics team, you will... ...manual processes to improve efficiency and reduce operational risk.Lead end-to-end project delivery, including requirements gathering...Senior
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Sr IT Risk Security Analyst. Be the first to apply!
- it risk analyst Brooklyn, NY
- risk consultant Brooklyn, NY
- risk analyst Brooklyn, NY
- risk officer Brooklyn, NY
- third party risk analyst Brooklyn, NY
- operational risk specialist Brooklyn, NY
- operational risk consultant Brooklyn, NY
- senior quantitative risk analyst Brooklyn, NY
- senior information security analyst Brooklyn, NY
- security specialist Brooklyn, NY





