Senior Analyst, Cyber Risk Quantification and GRC
$119k - $193kForrester Research
At Forrester, we’re trusted to work on trailblazing, mission critical problems that business and technology leaders face today. That’s why we’re always looking to empower talented individuals to perform at their best every single day. We’re proud of our community of smart people and vibrant voices who come together to do what’s right by our clients and each other. Our success is driven by curiosity, courage and customer obsession. The confidence and drive to be bold at work. Join us and build an extraordinary future.About This Role:Forrester is currently looking for a Senior Analyst to conduct research and deliver strategic advice for risk management leaders and their teams. The ideal candidate has a strong understanding of risk management roles, responsibilities, and the most important security and risk trends and their business and technology implications; deep knowledge and experience with risk management practices and methods; deep knowledge and expertise in cyber risk quantification; and deep experience in developing, maintaining, and communicating risk management artifacts including risk standards, procedures, appetite, registry, and business strategy. Expertise in compliance management, internal or external audit, and GRC platforms is strongly desired.The successful candidate researches and uncovers the strategies, technologies, and best practices of risk management that create a resilient and opportunity-seeking business. The Senior Analyst delivers these insights and recommendations in written reports, presentations, inquiries, guidance sessions, and custom advisory for risk leaders across industries and geographies. Our research is aimed at helping enterprise clients solve business problems and improve business results by applying principles and best practices. We also advise vendors on their strategies, roadmaps, and messaging in line with our market insights and our recommendations for enterprise clients.Job Description:The Senior Analyst works as part of a high-performing team with a strong emphasis on collaborating with others in all aspects of the job. The Senior Analyst is expected to:Develop a deep understanding of what Forrester clients require to be successful as risk management leaders and professionals with a focus on how they help their organizations develop risk management capabilities that enable a resilient and opportunity-seeking business.Conduct primary research into risk management capabilities, practices, touchpoints, and artifacts in the context of supporting C-suite executives, business leaders, and appropriate committees.Help define the future of risk management, including how risk leaders and professionals can work with other key business functions and support organizational success.Work with different focus areas across Forrester research teams to develop a complete research portfolio on risk management, providing both input to others’ research and writing reports incorporating expertise from across Forrester to provide a “big picture” view.Partner as appropriate with other Forrester analysts on broader risk topics: risk quantification, third-party risk, systemic risk, compliance, and cyber risk.Research/write/create approximately six to eight research projects per year — a mix of written reports, tools, webinars, videos, podcasts, infographics, and other intellectual property. Build visibility for their research and contribute to Forrester client communities.Consult with clients to apply Forrester’s research in the context of their specific business environment and help solve their problems through inquiry, guidance, and advisory engagements.Establish an industry presence as an influential speaker and thinker; build relationships with journalists who cover the sector; and participate in vendor briefings and field press inquiries as necessary.Job Requirements:Five to seven years as a research analyst, consultant, or practitioner where you have led or been involved in risk management, with a focus on cyber risk quantification, or an equal amount of time as product manager for vendors that serve the market.A deep intellectual curiosity about the effect of technology on the business landscape; solid business instincts and a practical understanding of what makes companies tick; and a creative view of markets, technologies, and attitudes combined with a fascination with the future.Superior listening, critical thinking, and writing skills as well as compelling presentation skills.The ability to take complex, disparate ideas and distill them into simple, provocative concepts — and be willing to take a stand on vendors and outcomes.The ability to travel up to 20% of the time.Please note that the base salary range indicated here is inclusive of all applicable US geographies listed in this requisition, with the exception of New York City and Georgia. This salary range is based upon the position as described in the job listing. The offered compensation may vary within this range and is dependent upon the successful candidate’s primary work location, experience, training, education, and credentials.Base salary range: $119,000 - $193,000Base salary range for Georgia: $106,000 - $174,000Base salary range for New York City, NY: $136,000 – $222,000For employees based in Washington State, the percentage listed here is an estimated bonus target as a percentage of base salary, in accordance with the Forrester Employee Bonus plan. Individual and company performance, as well as other eligibility criteria, will determine the actual incentive amount.Bonus target: 10%For information on benefits, please visit: application deadline is July 31, 2026. Please refer to the job posting on Forrester.com careers page if the deadline has been extended.#LI-JM1We’re a network of knowledge and experience leading to richer, fuller careers. Here, we’re always learning. Whether you want to hone your strengths or discover new ones, Forrester is the place to go for it. It’s a place where everyone is given the tools, support , and runway they need to go far. We’ll be right there beside you, every step of the way.Let’s be bold, together.FLSA Status:ExemptHere at Forrester, we welcome people from all backgrounds and perspectives. Our aim is for all candidates to be able to fully participate in Forrester’s recruitment process. If you would like to discuss a reasonable accommodation, please reach out to View email address on click.appcast.io .Forrester Research, Inc. is an Equal Employment Opportunity Employer. As a federal contractor, Forrester encourages veterans and individuals with disabilities to apply for employment. #J-18808-Ljbffr Forrester Research
$95k - $110k
...Kite is the global leader in third‑party cyber risk intelligence, trusted by more than 3,00... ...from customers and industry analysts alike. WHY BLACK KITE We’re a fast‑moving... ...the right place. THE OPPORTUNITY The Senior GRC Analyst reports to the Director of Information...CyberSeniorWorldwideFlexible hours- ...GRC Program Operations Specialist Support day-to-day GRC program operations – manage... ...resolution. Perform and support third-party risk management activities, including vendor... ...in any discipline. Computer science, cyber security and risk or technology degrees preferred...Cyber
$70 - $75 per hour
...Description We are seeking a ServiceNow professional to support the Cyber Risk Management and Governance team in managing and implementing... ...controls within the ServiceNow Continuous Authorization and GRC modules while collaborating closely with application managers and...CyberSeniorContract work$70 - $75 per hour
...a ServiceNow professional to manage application security controls within the Cyber Risk Management and Governance team. This role involves coding and validating controls in ServiceNow's GRC modules while collaborating with various application and technical teams. The...CyberSenior$95k - $110k
Blackkite in Boston seeks a Senior GRC Analyst to manage compliance platforms and customer security assessments. The ideal candidate will have 2-4 years in GRC or information security, paired with skills in SOC 2 and ISO 27001. You'll support FedRAMP ConMon reporting and...Senior- ...The GRC Analyst will be responsible for supporting the development, implementation, and maintenance of the firm's governance, risk management, and compliance program. The ideal candidate will have... .... ~ Strong drive to learn and grow in the cyber security field....CyberFlexible hours
$102.79k - $141.36k
...Possible™. Learn more at and on LinkedIn and Twitter (X). Senior Analyst, Cybersecurity Risk & Compliance Risk Management & IT Compliance |... ...Ensure organization-wide identification and mitigation of cyber and IT risks Support business continuity and regulatory...CyberSeniorPermanent employmentWork at officeFlexible hoursShift workDay shift$87.8k - $160.9k
...opportunity The objective of our consulting risk services is to provide clients with a... ...by regulation or contract. For our Cyber Risk services, the ideal candidate will be... ...present risk reports and dashboards to senior management and the board of directors....CyberSeniorContract workSummer holidayWork at officeFlexible hours- A global investment firm in Boston is seeking a Cybersecurity GRC Associate to support cyber governance, risk, and compliance efforts. The role involves shaping cybersecurity policies, aiding in risk assessments, and reporting metrics to internal stakeholders. Ideal candidates...Cyber
$91k - $321.5k
...Specialty/Competency: IFS - Risk & Quality (R&Q) Industry/Sector: Not Applicable... ...Contract Specialist - Managed Services - Senior Manager, you will lead initiatives in enterprise... ...maintenance application managed services, (3) cyber managed services, or (4) risk & regulatory...CyberSeniorFull timeContract workH1b- Cybersecurity GRC Associate - Boston (Hybrid) Perm Hybrid We’re hiring an Associate to support cyber governance, risk, and compliance for a global investment firm. This role offers direct exposure to C-level leadership and cross-functional teams including Legal, Risk, and...CyberPermanent employment
$75 per hour
Insight Global is seeking a ServiceNow GRC Analyst in Boston to join a growing Security team. This role will be responsible for operationalizing security controls in ServiceNow across SaaS applications, working closely with system owners and technical leads. The ideal candidate...$75 per hour
Job Description We’re looking for a hands‑on ServiceNow GRC Analyst to join a growing Security organization and support the implementation... ...compliance regulations Understanding of regulatory environments or risk frameworks is a plus Prior experience documenting control...$100k - $150k
...GSS team (namely Security Risk and Trust, Security... ...About the role: The Senior Technical Program Manager... ...governance, and the data-driven cyber risk and control... ...program tooling (security GRC, TPRM, continuous... ..., CompTIA Cybersecurity Analyst or Certified Fraud Examiner...CyberSeniorFlexible hours- A cutting-edge AI security firm in Boston is seeking a Tier 3 Security Analyst with over 5 years in cyber security operations. This role involves leading junior analysts and investigating incidents with a focus on understanding malicious activities. Candidates should have...CyberSenior
$201.37k - $236.9k
...effectiveness of governance, compliance, risk management, and control process... ...for IT & security audit as a senior leader within the global... ...crypto, digital assets, cloud, cyber, AI, data privacy, and... ...optimization of IA tooling (e.g., GRC platforms, Workiva/Archer)....CyberSeniorWork at officeLocal area- ...validate investigations by AI Agents. The role involves mentoring junior analysts, investigating malicious activity, and collaborating with various teams. Required qualifications include over 5 years in cyber security operations, hands-on experience with security monitoring...CyberSenior
- ...leading financial institution is seeking a Senior Ethical Hacker to evaluate the security of applications and technologies within its Cyber Security Assurance group. The ideal... ...include assessing vulnerabilities, advising on risk management, and developing innovative solutions...CyberSeniorWork at office
$96.72k - $162.12k
...We are seeking a Technical Risk Engineer with strong technical acumen to design, prioritize... ...risk solutions that reduce operational, cyber, and resilience risk through architecture,... ...Supporting Knowledge (nice to have): GRC and/or Security Domain expertise CI/CD...CyberSeniorImmediate startRemote workVisa sponsorshipFree visaFlexible hours- ...with our partners, and generate superior risk-adjusted returns that secure Liberty's promises... .... #LMI The Position: The Sr. Analyst/Associate will join Liberty Mutual... ...process. This is a range posting between a Senior Analyst and Associate position and level...SeniorWork experience placementLocal area
- ...Job Title Quantitative Risk Management, QRM Job Description Are you ready to make an impact at DTCC? Do you want to... ...the development and support of models and methodologies for the quantification of risk. QRM also carries out quantitative analysis and other...SeniorRemote workFlexible hours
- ...Job Summary We are seeking a visionary Senior Director of Cybersecurity Operations to lead and elevate enterprise cyber defense strategies. This executive leadership... ...analysis of major security incidents to assess risk and drive remediation Develop and implement...CyberSenior
- ...We are seeking a Senior Software Architect to join our core R&D team. You will help define and evolve the technical foundation of our... ...with data pipelines, highly scalable systems, cloud native architectures and services ~ Experience in Cyber Security is a bonus...CyberSenior
$148k - $296k
K&L Gates is seeking a Senior Manager, Security Operations in Boston, Massachusetts, to oversee cybersecurity, forensics, and incident... ...This role demands over 10 years of experience in cybersecurity and risk management, along with a Bachelor's degree in a related field....CyberSenior- Maltego Technologies is looking for a Senior Account Manager to act as a trusted advisor and advocate for our clients, ensuring their success and maximizing ROI. You will manage customer relationships from onboarding to renewal, develop strategic plans, and identify growth...CyberSeniorRemote job
- Klaviyo is looking for a Senior Security Engineer to add to our growing Detection and Response (D&R) Team. This is a hands‑on technical... ...and/or ML‑based detections as code Respond to security alerts, cyber threats, and security incidents Drive end‑to‑end incident response...CyberSenior
- Responsibilities Oversee and advance LMI's risk management framework across asset classes... ...Units (IBUs) portfolio managers and analysts to support new investment reviews and portfolio... ...and quarterly portfolio risk reviews for senior stakeholders and committees; provide ad...SeniorWork experience placement
$82.3k - $220k
...leading independent research company based in Cambridge, MA is looking for a Senior Systems Engineer. The role involves working with multidisciplinary teams to develop secure solutions that resist cyber and supply chain threats. The candidate should have a Bachelor's degree...CyberSenior$107.5k - $204.5k
Prattwhitney in Cambridge, Massachusetts seeks an experienced leader to drive Cyber/EW research and integrate with defense communities. The role requires active U.S. Secret DoD clearance and involves leading cross-functional teams to influence business development and perform...CyberSenior$82.3k - $220k
A nonprofit R&D company in Cambridge is seeking a Senior Systems Engineer to support the development of secure platforms that resist cyber threats. Candidates should have 5-10 years of relevant experience, a Bachelor's degree in engineering or related field, and strong...CyberSenior
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Senior Analyst, Cyber Risk Quantification and GRC. Be the first to apply!
- senior accounts payable Cambridge, MA
- senior brand designer Cambridge, MA
- senior business analyst contract Cambridge, MA
- senior app developer Cambridge, MA
- senior digital account manager Cambridge, MA
- director sr. director clinical operations Cambridge, MA
- senior specialist Cambridge, MA
- senior research manager Cambridge, MA
- senior account executive Cambridge, MA
- senior database analyst Cambridge, MA

