Senior Analyst - Cyber Risk & Control Monitoring
$95.17k - $156.36kGuardian Life Insurance
Senior Analyst – Cyber Risk & Control Monitoring
Do you want to be part of a collaborative Cybersecurity Governance team? Are you a problem solver who enjoys diving into security risk, translating complex technical concepts for business partners, and driving meaningful risk reduction across the enterprise?
As a Senior Analyst, Cybersecurity Continuous Control Monitoring (CCM), you will contribute to an enterprise-wide program that provides ongoing assurance that key cybersecurity and technology controls are operating effectively. You will translate control requirements into measurable tests and monitoring, partner with control owners to investigate control failures, and drive remediation through to closure. You will continuously seek out opportunities to improve controls including through automation and AI. You may also help to proactively identify risks and gaps and design controls to address them working in collaboration with process owners, risk and internal audit subject matter experts.
This role strengthens audit and regulatory readiness by producing timely, accurate, and repeatable evidence and reporting that supports risk-based decision-making.
You are:
- Passionate about improving control effectiveness through measurable, repeatable monitoring and testing
- Driven to simplify ambiguity, establish operational cadence, and deliver outcomes without constant direction
- Detail-oriented with a strong quality bar for evidence, documentation, and data integrity
- Organized and flexible in managing multiple control domains, stakeholders, and deadlines
- An excellent communicator who can explain control expectations, test results, and remediation requirements in business-relevant terms
- Collaborative and comfortable influencing control owners, engineers, and leaders to drive timely risk reduction
- Analytical, with the ability to interpret logs, reports, and datasets to identify trends and control breakdowns
Required qualifications
- Bachelor's degree in Cybersecurity, Information Technology, Computer Science, Risk Management, or a related field (or equivalent experience)
- 5+ years of experience in information security, technology risk, control testing/assurance, audit, or GRC
- Hands-on experience coordinating audits/assessments (internal audit, external audit, or customer assurance), including evidence collection and narrative responses
- Experience managing risk/issue registers and driving remediation tracking (owners, due dates, evidence of closure, and risk acceptance)
- Strong written and verbal communication skills, including the ability to produce executive-ready summaries and action-oriented reporting
Preferred qualifications
- Experience designing and executing control tests (design and operating effectiveness) and documenting test procedures/results
- Strong understanding of control frameworks and regulatory expectations (e.g., NIST CSF/800-53, MAR, SOC 2, NYDFS, etc.)
- Experience building dashboards/metrics and presenting control health trends, key risks, and recommended actions
- Experience working with public cloud platforms (AWS, Azure, GCP) and validating control evidence (e.g., IAM, logging, encryption, configuration baselines)
- Familiarity with CCM/monitoring tooling and data sources
- Relevant certifications (e.g., CISSP, CISA, CRISC, Security+, CCSP) or demonstrated progress toward one
You will:
Continuous Control Monitoring
- Contribute to the implementation and day-to-day operation of the continuous control monitoring (CCM) program, including control scope, design, improvement, and monitoring cadence, thresholds, and escalation paths
- Monitor control health metrics and risk indicators (KPIs/KRIs) to proactively detect control degradation and configuration drift
- Partner with control owners to validate control performance, investigate exceptions, and document root cause and corrective actions
- Leverage automation and tooling to enhance near-real-time visibility into control health (automated evidence collection, alerting, dashboards, and repeatable test scripts/queries)
- Maintain a control inventory and control-to-evidence mapping aligned to internal policy and external frameworks; ensure controls have clear owners, descriptions, and measurable success criteria
- Develop and maintain control test procedures (what is tested, data sources, sampling/coverage, frequency, and pass/fail criteria) and ensure results are reproducible and audit-ready
- Validate data quality (completeness, timeliness, and accuracy) for CCM feeds and document assumptions, limitations, and compensating checks
Audit Coordination & Management
- Serve as liaison for internal audit, external audit, and third-party assessments
- Coordinate audit requests, evidence collection, and stakeholder responses across teams
- Ensure consistency, quality, and timeliness of audit deliverables
- Track audit and assessment findings, ensuring appropriate documentation and closure
Reporting & Governance
- Contribute to governance forums by providing insights on risk posture and control maturity
- Partner with:
- Security Engineering & Operations
- Enterprise Risk Management
- Internal Audit
- Privacy & Legal
Reporting Relationships
- As our Senior Analyst, Cybersecurity Continuous Control Monitoring, you will report to our Head of Cybersecurity Governance.
Location
- Three days a week at our Guardian office in New York, NY or Bethlehem, PA
Salary Range:
$95,170.00 - $156,355.00
The salary range reflected above is a good faith estimate of base pay for the primary location of the position. The salary for this position ultimately will be determined based on the education, experience, knowledge, and abilities of the successful candidate. In addition to salary, this role may also be eligible for annual, sales, or other incentive compensation.
Our Promise
At Guardian, you'll have the support and flexibility to achieve your professional and personal goals. Through skill-building, leadership development and philanthropic opportunities, we provide opportunities to build communities and grow your career, surrounded by diverse colleagues with high ethical standards.
Inspire Well-Being
As part of Guardian's Purpose – to inspire well-being – we are committed to offering contemporary, supportive, flexible, and inclusive benefits and resources to our colleagues. Explore our company benefits at Benefits apply to full-time eligible employees. Interns are not eligible for most Company benefits.
Equal Employment Opportunity
Guardian is an equal opportunity employer. All qualified applicants will be considered for employment without regard to age, race, color, creed, religion, sex, affectional or sexual orientation, national origin, ancestry, marital status, disability, military or veteran status, or any other classification protected by applicable law.
Accommodations
Guardian is committed to providing access, equal opportunity and reasonable accommodation for individuals with disabilities in employment, its services, programs, and activities. Guardian also provides reasonable accommodations to qualified job applicants (and employees) to accommodate the individual's known limitations related to pregnancy, childbirth, or related medical conditions, unless doing so would create an undue hardship. If reasonable accommodation is needed to participate in the job application or interview process, to perform essential job functions, and/or to receive other benefits and privileges of employment, please contact View email address on click.appcast.io. Please note: this resource is for accommodation requests only. For all other inquires related to your application and careers at Guardian, refer to the Guardian Careers site.
Visa Sponsorship
Guardian is not currently or in the foreseeable future sponsoring employment visas. In order to be a successful applicant. you must be legally authorized to work in the United States, without the need for employer sponsorship.
Notice Regarding Guardian's Use of Artificial Intelligence in Recruitment
As part of Guardian's job application process, Guardian may use artificial intelligence tools ("AI Tools") to automate the sorting and filtering of information provided by applicants as part of its preliminary screening. This preliminary screening may be used to help identify applicant materials and resumes relative to their indication that the applicant meets the requirements for the specific job for which they are applying, as specified in the listing posted on Guardian's jobs website (Careers at Guardian at At Guardian, we do not use AI Tools to substantially assist or replace human judgment or discretionary decision making in our hiring process. All hiring decisions will be made by Guardian colleagues.
Please be aware that if you apply for
$118.98k - $195.47k
...Lead – Cyber Risk & Control Monitoring Do you want to be part of a collaborative Cybersecurity Governance team? Are you a problem solver who enjoys... ...issues through established governance forums and senior leadership reporting Validate remediation effectiveness...CyberWork at officeFlexible hours3 days per week- ...Senior Lead Security Engineer Join a team where your engineering... ...shapes how Technology/Cyber controls are built, governed, and scaled... ...influence how the firm manages risk and maintains trust across its... ...evidence collection and continuous monitoring pipelines Translate threat...CyberSenior
$161.8k - $184.6k
Principal Associate, Cyber Controls Monitoring Analyst As a Principal Analyst within the Cyber Controls Monitoring Team (Cyber CMT), you will operate... ...process degradation before it becomes a significant risk. Key Responsibilities Metric Engineering: Collaborate with...CyberFull timePart timeH1bLocal area- Description Your Role Overview Risk and Control Analyst is accountable for engaging... ...in identifying, assessing, monitoring, and escalating the risk... ...of operational risks to senior management. Analyze operational... ...risk, information/cyber security risk, vendor risk...CyberTemporary workWork at officeRemote workFlexible hours
- ...Technology Operational Risk Officer Bring your expertise to JPMorgan... ...and assess technology and cyber operational risk in the Wealth... ..., vulnerability, access, control results) to produce actionable... ...privilege, SDLC controls, testing, monitoring) Keep stakeholders informed...CyberSenior
- ...a detail-oriented Entry-Level GRC Analyst to join their remote team. In this role, you'll work closely with senior members to strengthen client cybersecurity... .... You'll be involved in assessing controls, developing policies, and monitoring remediation efforts, all in a...CyberRemote work
$50 - $56 per hour
...international law firm is looking for a Senior Analyst, Cyber Risk to join their security group. The... ...risk management framework, including controls management and testing, policy and standards... ...KRIs, for management review - Help monitor compliance with relevant regulatory...CyberSeniorWork at office- ...Senior Analyst, Cybersecurity Governance, Risk and Compliance, New York, NY The Senior Analyst, Cybersecurity... ...to inquiries on the security controls policy, processes, and procedures... ...initial, reassessments and ongoing monitoring) and supporting broader GRC efforts...SeniorWork experience placement
$59.81k - $129.59k
...JOB DESCRIPTION Job Summary Provides senior level analyst support for risk-based process design initiatives -... ...and enterprise resource controls (ERP)/accounting controls reviews Identifies... ...accounting/finance leadership as requested Monitors the follow-up, tracking and...SeniorFull timeWork experience placementWork at officeRemote work$116.64k - $145.8k
The Metropolitan Transportation Authority (MTA) seeks an Assistant Deputy Director for Signal Control Systems in New York, NY. This role involves overseeing the installation, maintenance, and management of critical control systems essential for railroad operations, including...CyberSeniorRemote work$90.6k - $150.44k
...Position Title Cloud/Cyber Risk Management Analyst Sr Location New York, NY 10018 Job Summary... ...2LoD") mandate to identify, measure, monitor, and manage the Cybersecurity/... ...risk framework elements including RCSA, control assessment, issue management,...CyberSeniorLocal area- ...healthcare that people deserve. The Risk Adjustment team at Clover is... ...measurable impact. As a Senior Data Analyst, Risk Adjustment, you will: Be responsible for the monitoring and management of the end to... ...encounter data pipelines and controls, ensure high-quality and compliant...SeniorWork at officeRemote workFlexible hours
$130k - $155k
...My Account Openings Senior Cyber Security Engineer Senior Cyber Security Engineer... ...to: Design and implement security controls across cloud and on-premises infrastructure... ...etc.). Assist in deploying security monitoring tools and countermeasures, security tool...CyberSeniorFull timeWork at office$92k - $120.75k
...drive to win. About the Role As a Senior Data Analyst, Risk & Fraud, you will leverage data and analytical... ...role in analyzing transactional activity, monitoring fraud trends, and driving data-informed improvements to controls and processes. This is a fast-paced,...SeniorH1bVisa sponsorshipFlexible hours$110k - $130k
...SUMMARY Model risk management (MRM) refers to the overseeing... ...wrongful model usage. The MRM Senior Analyst will support the SVP MRM... ...governance and performance monitoring, in conformance with regulatory... ...the Bank‑wide model risk and control assessment. Provides on demand...SeniorTemporary workFlexible hours- ...Healthcare is seeking a Senior Cloud Security Engineer... ...identify and mitigate risks, develop and implement... ...management, and security monitoring. Cloud Security... ...QUALIFICATIONS 8+ years of relevant Cyber Security experience.... ...(e.g., AWS IAM, AWS Control Tower, GuardDuty, Macie...CyberSenior
$140k - $160k
...Senior Cybersecurity Engineer St. Louis, MO; Boston, MA; New... ...systems, networks, and data from cyber threats. This role involves... ...implementing security measures, monitoring systems, and responding to... ...information security solutions and controls across the enterprise in a...CyberSeniorRemote work3 days per week- ...Keeper Security is hiring a Senior DevOps Engineer with direct experience... ...solutions defend against cyber threats at KeeperSecurity.com... ...under strict compliance controls, and designing secure cloud architectures... ...ensure appropriate controls, monitoring, and reporting Configure...CyberSeniorTemporary workRemote work
- ...Senior Offensive Security Engineer - Pentester Denver... ...shine and grow. The Cyber Security Assurance... ...diligently hunt for high-risk vulnerabilities across... ...applications, and cyber security controls while adapting testing... ..., and assist with monitoring and response functions,...CyberSeniorWork at officeRemote workShift workDay shift
- ...Senior Cloud Engineer Contract: 1 year Location... ...detection, threat and risk analysis, network intrusion... ...practices around cyber risks and Cloud security... ...secure deployment and monitoring of applications and infrastructure... ...change management controls and guidelines...CyberSeniorContract workH1bFlexible hours
- ...Senior Data Analyst, Financial Risk Chicago, IL, Dallas, TX, OR Jersey City, NJ Hybrid – onsite 2-3 days... ...support to senior leadership by monitoring and supporting the company's financial... ...monitor key performance, risk, and control indicators to support management...Senior2 days per week3 days per week
- ...Framework Ventures is hiring a High Risk ODD Analyst to monitor high-risk retail customers within the cryptocurrency environment. The role involves conducting ongoing compliance checks to meet AML/CFT regulations through detailed reviews and analyses of customer transactions...Odd job
- ...Senior Compliance Analyst, Global Streaming Technology, Analytics and... ..., and SOC 2 Type II control frameworks. o Work... ...automate compliance monitoring for cloud environments... ...compliance, cyber security, or cloud governance... ..., CMDBs, and risk management platforms...CyberSeniorRemote workFlexible hours
$130k - $150k
SSUSA Job #1107: SENIOR SYSTEMS ADMINISTRATOR Job Description SENIOR... ...infrastructure. This includes monitoring environments, responding to... ...breaches, malware infections, and cyber-security threats, implementing and supporting security controls to protect data and...CyberSeniorPermanent employment- ...Senior Cloud Security Engineer At BNY, our culture... ...implementation of security controls across cloud platforms... ...application in cyber security. It is responsible... ...cloud policy and monitoring services. This role is... ...for threat detection, risk analysis, automation, incident...CyberSeniorWorldwide
- ...About us At Echelon Risk + Cyber, we believe in defending basic human... ...playbooks to reduce MTTD/MTTR and analyst toil. Service delivery &... ...improvement Map detections, controls, and reporting to frameworks... ..., and network security monitoring (IDS/IPS, PCAP). Proficiency...CyberSeniorTemporary workWork at officeLocal areaRemote workVisa sponsorshipFlexible hoursShift work
$100k - $110k
...and remediate security risks while ensuring alignment... ...Global Information and Cyber Security Defense (ICSD)... ...and enhance security monitoring, logging, and incident... ...cloud-native security controls, including IAM, KMS, VPC... ...All Level 38 and more senior roles may also be eligible...CyberSeniorTemporary workLocal areaVisa sponsorshipWork visaFlexible hours$145k - $210k
...Senior Cyber Security Engineer Cooley is seeking a Senior Cyber Security... ...will work to maintain and monitor the security practices and... ...Innovation projects Conduct risk and security reviews on products... ...management Recommend controls to ensure the appropriate level...CyberSeniorFull timeTemporary workWork at officeFlexible hoursWeekend work$125k - $155k
...Senior Information Assurance Engineer Simplesense... ...critical infrastructure from cyber attack while unlocking... ...siloed information to monitor, diagnose, and improve... ...Operations Command and Control (IROC) program, which... ...expert who drives the Risk Management Framework (RMF...CyberSeniorTemporary workFor contractorsLocal areaRemote work2 days per week$115k - $130k
...Senior Security Compliance Analyst (Remote - US) Senior Security Compliance... ...audit cycles, assess risk, and strengthen... ...detailed technical control assessments, policy... ...automation and continuous monitoring projects to enhance... ...CCPA, CPRA, and EU Cyber Resilience Act is a...CyberSeniorFull timeRemote workWorldwideFlexible hours
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Senior Analyst - Cyber Risk & Control Monitoring. Be the first to apply!
- it risk analyst New York, NY
- senior quantitative risk analyst New York, NY
- risk analyst New York, NY
- quantitative risk analyst New York, NY
- risk analyst intern New York, NY
- information risk analyst New York, NY
- operational risk specialist New York, NY
- third party risk analyst New York, NY
- transaction risk analyst New York, NY
- risk compliance officer New York, NY

