Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Staff Cybersecurity Analyst, Risk Management

$140.6k - $186.36k

Rivian

About Rivian

Rivian is on a mission to keep the world adventurous forever. This goes for the emissions-free Electric Adventure Vehicles we build, and the curious, courageous souls we seek to attract.

As a company, we constantly challenge what's possible, never simply accepting what has always been done. We reframe old problems, seek new solutions and operate comfortably in areas that are unknown. Our backgrounds are diverse, but our team shares a love of the outdoors and a desire to protect it for future generations.

Role Summary

The Cybersecurity Analyst - Risk Management is a mid-career individual contributor supporting Rivian's cybersecurity risk management practice. This role involves day-to-day management of cybersecurity risks, monitoring key risk indicators (KRIs), and facilitating risk discussions with technology and business stakeholders.

The analyst will leverage Rivian's risk platforms and AI-enabled tooling to improve efficiency, transparency, and defensibility of risk decisions. This role sits within Enterprise Cybersecurity on the Cybersecurity Risk Management team and partners closely with the Cyber Third-Party Risk Management (TPRM) lead, security engineering teams, and other functions.

Responsibilities

  • Risk Register Ownership: Maintain and continuously improve the cybersecurity and crown-jewel risk registers, ensuring risks are clearly defined, scored, prioritized, and kept current.
  • Track risk status from identification through treatment and closure, including documenting decisions, owners, due dates, dependencies, and evidence.
  • Design, implement, and monitor KRIs and related metrics, such as control health, incident trends, and assessment throughput, to provide an objective view of risk posture.
  • Meet regularly with risk owners and functional leaders to gather updates, validate assumptions, and align on risk treatment plans and progress.
  • Evaluate how risks propagate across systems, suppliers, processes, and programs; surface second-order and cascading impacts in risk narratives and dashboards.
  • Collaborate with the Cyber TPRM lead where responsibilities intersect, including supplier-driven risks, concentration risk, and systemic control gaps, to ensure consistent risk assessment and treatment.
  • Help facilitate workshops and review sessions with business and technology leaders to clarify risk scenarios, tradeoffs, and treatment options.
  • Use Rivian's risk platform and AI-enabled tools to improve efficiency, effectiveness, and expediency in risk logging, analysis, reporting, and communication.
  • Maintain and evolve a Cybersecurity Risk Dashboard that provides an accurate, near real-time view of key risks, KRIs, and trends for leadership and governance forums.
  • Apply NIST CSF and ISO 27001 concepts when assessing controls, documenting risks, and proposing treatments, helping ensure consistency with the ISMS and enterprise risk practices.
  • Identify gaps and friction in current risk processes and propose practical improvements to increase clarity, adoption, and impact.

Qualifications

Minimum Qualifications

  • 5+ years of combined experience in cybersecurity, technology risk, enterprise risk management, or related fields.
  • At least 3 years with primary responsibility for leading or owning a risk management function, program, or risk domain within an organization.
  • Hands-on experience maintaining and operating risk registers and risk management tooling, including GRC, IRM, or dedicated risk platforms.
  • Working knowledge of the NIST Cybersecurity Framework (CSF) and exposure to frameworks such as ISO/IEC 27001, including risk assessment/treatment concepts and control alignment.
  • Demonstrated ability to influence risk treatment decisions, not just document them, by framing options, tradeoffs, and business impact for stakeholders.
  • Strong analytical and quantitative risk skills, including building KRIs, basic risk modeling, scenario comparison, and trend analysis.
  • High comfort working with AI tools for analysis, synthesis, workflow automation, and responsible experimentation to improve risk processes.
  • Excellent written and verbal communication skills with the ability to translate complex technical risks into concise, business-relevant narratives.
  • Proven ability to work cross-functionally, build trust with stakeholders, and facilitate productive discussions in ambiguous situations.

Preferred Qualifications

  • Experience with modern GRC/IRM or dedicated risk platforms and building risk dashboards for security leadership.
  • Professional certifications such as CRISC, PMI-RMP, CISM, or similar.
  • Experience in fast-paced, high-growth environments such as technology, automotive, or manufacturing, where speed, agility, and rigor are required.

Pay Disclosure

The salary range for this role is $140,600 to $186,360 for Georgia based applicants. This is the lowest to highest salary we in good faith believe we would pay for this role at the time of this posting. An employee's position within the salary range will be based on several factors including, but not limited to, specific competencies, relevant education, qualifications, certifications, experience, skills, geographic location, shift, and organizational needs.


The successful candidate may be eligible for annual performance bonus and equity awards.


We offer a comprehensive package of benefits for full-time and part-time employees, their spouse or domestic partner, and children up to age 26, including but not limited to paid vacation, paid sick leave, and a competitive portfolio of insurance benefits including life, medical, dental, vision, short-term disability insurance, and long-term disability insurance to eligible employees. You may also have the opportunity to participate in Rivian's 401(k) Plan and Employee Stock Purchase Program if you meet certain eligibility requirements. Full-time employee coverage is effective on their first day of employment. Part-time employee coverage is effective the first of the month following 90 days of employment. More information about benefits is available at rivianbenefits.com.


You can apply for this role through careers.rivian.com (or through internal-careers-rivian.icims.com if you are a current employee). This job is not expected to be closed any sooner than 5/5/26.

Equal Opportunity

Rivian is an equal opportunity employer and complies with all applicable federal, state, and local fair employment practices laws. All qualified applicants will receive consideration for employment without regard to race, color, religion, national origin, ancestry, sex, sexual orientation, gender, gender expression, gender identity, genetic information or characteristics, physical or mental disability, marital/domestic partner status, age, military/veteran status, medical condition, or any other characteristic protected by law.

Rivian is committed to ensuring that our hiring process is accessible for persons with disabilities. If you have a disability or limitation, such as those covered by the Americans with Disabilities Act, that requires accommodations to assist you in the search and application process, please email us at View email address on click.appcast.io.

Candidate Data Privacy

Rivian may collect, use and disclose your personal information or personal data (within the meaning of the applicable data protection laws) when you apply for employment and/or participate in our recruitment processes ("Candidate Personal Data"). This data includes contact, demographic, communications, educational, professional, employment, social media/website, network/device, recruiting system usage/interaction, security and preference information. Rivian may use your Candidate Personal Data for the purposes of (i) tracking interactions with our recruiting system; (ii) carrying out, analyzing and improving our application and recruitment process, including assessing you and your application and conducting employment, background and reference checks; (iii) establishing an employment relationship or entering into an employment contract with you; (iv) complying with our legal, regulatory and corporate governance obligations; (v) recordkeeping; (vi) ensuring network and information security and preventing fraud; and (vii) as otherwise required or permitted by applicable law.

Rivian may share your Candidate Personal Data with (i) internal personnel who have a need to know such information in order to perform their duties, including individuals on our People Team, Finance, Legal, and the team(s) with the position(s) for which you are applying; (ii) Rivian affiliates; and (iii) Rivian's service providers, including providers of background checks, staffing services, and cloud services.

Rivian may transfer or store internationally your Candidate Personal Data, including to or in the United States, Canada, the United Kingdom, and the European Union and in the cloud, and this data may be subject to the laws and accessible to the courts, law enforcement and national security authorities of such jurisdictions.

Please note that we are currently not accepting applications from third party application services.

Vacancy posted 3 days ago
Similar jobs that could be interesting for youBased on the Staff Cybersecurity Analyst, Risk Management in Atlanta, GA vacancy
  •  ...J Cybersecurity & GRC Analyst We are CirrusLabs. Our vision is to become the world's most sought-after...  ...community. You aren't afraid to take risks. You appreciate a growth path with...  ...initiatives such as: Cyber & IT Risk Management Supporting cybersecurity risk... 
    Suggested

    CirrusLabs

    Atlanta, GA
    3 days ago
  • $90k - $180k

     ...Position Purpose The Cybersecurity team at Home Depot protects the organization's systems, data, and technology assets through proactive risk management, strong operational controls, and rapid incident response. This role supports core security functions by ensuring the... 
    Suggested
    Work experience placement
    Local area
    Remote work
    Night shift

    Home Depot

    Atlanta, GA
    1 day ago
  • Position Purpose:The Cybersecurity team at Home Depot protects the organization’s systems, data, and technology assets through proactive risk management, strong operational controls, and rapid incident response. This role supports core security funct
    Suggested
    Remote work

    Home Depot

    Atlanta, GA
    4 days ago
  • $140.8k - $186.5k

     ...reports, ensuring remediation is owned and tracked. Partner with Cybersecurity, Incident Response, and IT Operations to design and test cyber...  ..., testing, and recovery events; exposure to cybersecurity, IT risk, or GRC preferred. Strong understanding of IT infrastructure... 
    Suggested
    Full time
    Contract work
    Temporary work
    Part time
    Local area
    Shift work

    Rivian

    Atlanta, GA
    2 days ago
  •  ...Senior Analyst, Cybersecurity Governance, Risk and Compliance, Atlanta, GA The Senior Analyst, Cybersecurity Governance Risk & Compliance will administer...  ...policy, processes, and procedures implemented for managed systems and applications, as well as support Third... 
    Suggested
    Work experience placement

    Next Step Systems LTD

    Atlanta, GA
    4 days ago
  •  ...Sr. GRC Analyst, Third-Party & Human Risk Management (TPHRM) Clayco is a full-service, turnkey real estate development, master planning, architecture...  ...Plans, coordinates, and executes activities for Cybersecurity month Partners with Employee Relations, Legal, and... 
    For contractors
    Immediate start
    Flexible hours

    CRG

    Atlanta, GA
    4 days ago
  • Southwire Company is seeking a Senior Analyst for IT Governance Operations in Atlanta, Georgia. This role ensures compliance and risk management across the IT portfolio. Responsibilities include supporting governance forums, managing application portfolio governance, and... 

    Southwire Company

    Atlanta, GA
    4 days ago
  •  ...Credit Risk Analyst - Portfolio Management When you join Atlanticus, you become a member of a fast-growing, mission-focused company that is committed to aid in meeting the financial needs of middle-class Americans. With a culture of collaboration and a one-team mindset... 
    Work at office

    Atlanticus Services Corporation

    Atlanta, GA
    20 hours ago
  • $146.28k - $219.42k

     ...Cybersecurity Senior Advisor - Offensive Security & Exposure Management Location: This role requires associates to be in-office 1 - 2 days per week, fostering collaboration...  ...penetration testing, and delivering measurable risk reduction across the enterprise. You'll act as a... 
    Temporary work
    Work experience placement
    Work at office
    Local area
    2 days per week
    1 day per week

    Elevance Health

    Atlanta, GA
    3 days ago
  • Governance, Risk & Compliance (GRC) Analyst (AI Training) We're looking for experienced GRC professionals to help train and evaluate cutting-edge...  ...policies, compliance programs, audits, and risk management actually work inside real organizations. Your real-world... 
    Hourly pay
    Ongoing contract
    Contract work
    Freelance
    Remote work
    Flexible hours

    Alignerr

    Atlanta, GA
    2 days ago
  • $139.8k - $297.9k

     ...Strategic Risk Advisor As a global leader in insurance broking and risk management, Marsh helps clients succeed by defining, designing, and delivering innovative, industry-specific solutions to effectively manage risk. Marsh is searching for an experienced Strategic... 
    Minimum wage
    For contractors
    Work at office
    Local area
    Remote work
    Flexible hours
    3 days per week
    1 day per week

    Marsh & McLennan

    Atlanta, GA
    2 days ago
  • $96k - $181k

     ...the Job Reporting to the Director of Cybersecurity Risk Oversight, the Sr. Cybersecurity Risk...  ...Professional is a 2nd Line of Defense risk management position that provides independent...  ...Business Risk and Control Analysts. This position is responsible for Operational... 
    Work at office
    Flexible hours
    Night shift

    Key Bank

    Atlanta, GA
    4 days ago
  •  ...Credit Risk Associate As part of Risk Management and Compliance, you are at the center of keeping JPMorgan Chase strong and resilient. You help the firm grow its business in a responsible way by anticipating new and emerging risks, and using your expert judgement to... 

    Chase

    Atlanta, GA
    1 day ago
  •  ...Description Risk Analyst / Sr. Risk Analyst - Business Analytics & Forecasting Automotive Lending Industry | Contract-to-Hire...  ...are contract-to-hire opportunities supporting a growing Risk Management and Analytics organization focused on portfolio analytics, forecasting... 
    Permanent employment
    Contract work
    Temporary work

    C.C. Pace Systems

    Atlanta, GA
    2 days ago
  • $120k - $130k

    Deluxe is seeking an Information Security Staff Risk Analyst in Atlanta, Georgia. The role involves leading cyber resiliency initiatives, overseeing documentation for the cyber risk management program, and collaborating across teams to enhance security protocols. Candidates... 

    Deluxe

    Atlanta, GA
    3 days ago
  • $140.6k - $186.36k

    Rivian is seeking a Cybersecurity Analyst - Risk Management in Atlanta, Georgia. This mid-career role focuses on managing cybersecurity risks and facilitating discussions with stakeholders. Candidates should have 5+ years in cybersecurity, experience in maintaining risk... 

    Rivian

    Atlanta, GA
    2 days ago
  • Job Title: Project Controls Cost Analyst - Risk Management Location: 241 Ralph McGill Blvd, Atlanta, GA Department: Project Controls / Risk Management Reports To: Manager, Project Controls Job Type: Hybrid (4 days in-office) Position Summary The Project Controls Risk... 
    Full time
    Work at office

    Mississippi Power Co

    Atlanta, GA
    20 hours ago
  • NACBA is seeking a Business Insurance Sr. Risk Control Consultant located in the Atlanta area. This position requires providing loss prevention services and establishing risk management relationships with Hospitality clients. Candidates should have a BS in Risk Management... 
    Work at office

    NACBA

    Atlanta, GA
    3 days ago
  • Overview Public Entity Risk Management Authority (PERMA), a California Joint Powers Authority (JPA), is seeking a Senior Risk Control Specialist...  ...member service related to risk control efforts. PERMA staff work remotely and candidates must reside in California. #Jobs... 
    Remote job
    Full time

    AGRiP (Association of Governmental Risk Pools)

    Atlanta, GA
    2 days ago
  • A governmental financial institution in Atlanta is seeking a skilled professional for enterprise risk management. The role involves assessing various risks including operational, credit, and business risks, while collaborating with business units for improved risk strategies... 
    Remote work

    Federal Home Loan Bank of Atlanta

    Atlanta, GA
    1 day ago
  • $81.9k - $143.4k

     ...different and how you can make your mark as a Risk Control Consultant at McGriff , a...  ...our Risk Control Consultant on the Risk Management team, you'll deliver value added risk control...  ...skills working with senior level client staff Above average interpersonal skills Ability... 
    Minimum wage
    Local area
    Night shift

    McGriff

    Atlanta, GA
    3 days ago
  • As part of Risk Management and Compliance, you are at the center of keeping JPMorgan Chase strong and resilient. You help the firm grow its business in a responsible way by anticipating new and emerging risks and using your expert judgement to solve real‑world challenges... 

    JPMorganChase

    Atlanta, GA
    1 day ago
  • Overview Come join Intuit as a Senior SOX Risk Advisor within the SOX Risk and Compliance Organization (SRCO). SRCO is a newly established...  ...growth with a strong foundation of financial compliance, risk management, and operational excellence. Within SRCO, the SOX Risk Advisory... 
    Work experience placement

    Intuit

    Atlanta, GA
    20 hours ago
  •  ...divh2Senior SOX Risk Advisor/h2pCome join Intuit as a Senior SOX Risk Advisor within the SOX Risk and Compliance Organization (SRCO...  ...growth with a strong foundation of financial compliance, risk management, and operational excellence. Within SRCO, the SOX Risk Advisory... 
    Work experience placement

    Intuit

    Atlanta, GA
    2 days ago
  • $71k - $122k

     ...Location:4910 Tiedeman Road, Brooklyn Ohio About the Job As part of Key's second line of defense Compliance Risk Management function, the Risk Evaluation and Assurance Program (the "REA Program") has the responsibility for evaluating Key's ongoing compliance with applicable... 
    Work at office
    Flexible hours
    Shift work

    Key Bank

    Atlanta, GA
    3 days ago
  •  ...identification, measurement, assessment and reporting of enterprise wide risks at the Bank including emerging risks, operational risk, credit...  ...with the governance and oversight of enterprise wide programs managed by the Enterprise Risk Management area. Develops and maintains... 
    Work at office
    Remote work
    Visa sponsorship
    Work visa

    Federal Home Loan Bank of Atlanta

    Atlanta, GA
    1 day ago
  • $154.38k - $193.13k

     ...divh2Anti-Fraud Risk Management Principal/h2pAs a Principal, you will lead and manage delivery of engagements, being responsible for quality, budget and staffing, working closely with senior client stakeholders to develop anti-fraud strategies to enhance their fraud risk... 
    Full time
    Temporary work
    Work at office
    Local area

    Infosys

    Atlanta, GA
    3 days ago
  •  ...THE DEPARTMENT Our Enterprise Risk Management department is responsible for minimizing loss while respecting people, brand and operations. THE OPPORTUNITY With a special focus on merchandise security, our Risk Associate supports the Store team in delivering an... 

    Aritzia

    Atlanta, GA
    1 day ago
  •  ...A leading home improvement retailer in Atlanta is seeking a Cybersecurity professional to manage risk and protect technology assets across the organization. The role involves analyzing data, collaborating with teams, and ensuring business continuity through disaster recovery... 
    Work experience placement

    Home Depot

    Atlanta, GA
    1 day ago
  •  ...Cybersecurity Analyst PurpleBox is the leading technology consulting company that focuses on solving business problems utilizing...  ...Computing, and DevOps consulting services that help businesses manage their business risk more effectively. Job Description Multiple... 
    Full time
    Part time
    Internship
    Local area

    Purple Box

    Atlanta, GA
    20 hours ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Staff Cybersecurity Analyst, Risk Management. Be the first to apply!