Full-Time Senior Security Risk Analyst

ZILLION TECHNOLOGIES, INC is hiring a remote Full-Time Senior Security Risk Analyst. The career level for this job opening is Experienced and is accepting Henrico County, VA based applicants remotely. Read complete job description before applying.

This job was posted 5 months ago and is likely no longer active. We encourage you to explore more recent opportunities on our site. However, you may still try your luck using 'Apply Now' link below. We recommend focusing on newer listings available here.

ZILLION TECHNOLOGIES, INC

Job Title

Senior Security Risk Analyst

Posted

Career Level

Full-Time

Career Level

Experienced

Locations Accepted

Henrico County, VA

Job Details

Job Title: Sr. Risk Analyst

Location: Remote

Position Description: Reporting to the BISO, the Senior Information Security Risk Analyst will lead specific information security risk management activities protecting clients and complying with regulations/policies. The Senior Information Security Risk Analyst provides expertise and leadership to improve security policies and risk management processes, establishing a framework of controls for risk management, regulatory compliance, and governance of IT. Responsibilities include identifying, treating risks timely, and reporting exposure to known threats. The role includes policy implementation/maintenance, training/awareness, and vendor risk management.

Position Accountabilities

  1. Lead audit prep and response across InfoSec and IT.
  2. Support Controls, Policy, Standards, and Procedures maturity program for InfoSec and IT to meet FFIEC, SOX, and threat/risk-based controls program requirements.
  3. Perform security risk analysis to identify risk and enhance security posture.
  4. Serve as a subject matter expert and advisor for risk-based decisions across business, IT, and stakeholders.
  5. Contribute to Information Security reports for relevant committees (e.g., TTRC, CSWG, Operational Risk).
  6. Lead tracking and remediation of risks impacting safety, soundness, or reputation.
  7. Establish and maintain processes for security-related audits, assessments, and external assessments.
  8. Ensure timely responses to evidence requests and compiling management responses/remediation plans.
  9. Emphasize privacy, security, business resiliency, and compliance frameworks (e.g., FFIEC, SOX, GLBA, SOC 2, PCI-DSS, ITIL).
  10. Evaluate risk and controls through targeted testing of processes.
  11. Develop and publish policies, standards, and procedures based on risk appetite, industry best practices, and regulatory requirements.
  12. Track and ensure timely updates of policies, standards, and procedures.
  13. Collaborate with ERM team to design/maintain risk/controls matrix, mapped to regulations/frameworks, and aligned with risk appetite.
  14. Participate in vendor risk assessment process and provide security risk assessment services/contract reviews.
  15. Support cyber training, tabletop exercises, red team exercises, penetration testing, and ensure timely remediation of findings.
  16. Establish/lead metrics program tracking key risks/KPIs for the cybersecurity program and report regularly to leadership.
  17. Lead configuration, integration, and optimization of GRC platforms (e.g., RSA Archer, ServiceNow).

Organizational Relationship: Reports to the Business Information Security Officer (BISO).

Education & Experience: 6-10 years’ experience in information security roles (e.g., security risk analysis, compliance, risk management, process assurance, audit), Bachelor’s degree in related field (or equivalent) required, Master’s degree preferred. Professional security certifications (e.g., CISSP, CISM, CISA, CRISC) required.

Knowledge & Skills: Proven experience with GRC platforms, RSA Archer configuration, risk data integration, automation, dashboards; experience in risk treatment, controls selection, and control process design; knowledge of IT infrastructure, cloud (SaaS, IaaS), and application security; experience with policies, standards, industry practices in regulated environments (financial services); experience working with internal audit and regulators; experience with frameworks like FFIEC, SOX, ISO 27001/2, CIS CSC, NIST 800-53; experience using FFIEC CAT Tool; strong project management, communication, collaboration, and organizational skills.

FAQs

What is the last date for applying to the job?

The deadline to apply for Full-Time Senior Security Risk Analyst at ZILLION TECHNOLOGIES, INC is 23rd of July 2025 . We consider jobs older than one month to have expired.

Which countries are accepted for this remote job?

This job accepts [ Henrico County, VA ] applicants. .

Related Jobs You May Like

Cortex Cloud Sales Specialist - Public Sector

Paris, France
1 day ago
Channel Partnerships
Cloud Solutions
Customer Relationship Management
Palo Alto Networks
Full-Time
Experienced

Senior Product Manager (Security Domain)

São Paulo, Brazil
1 day ago
Agile Methodologies
Product Management
Security Management
Sigma Software
Full-Time
Experienced

Senior Director, Technical Services (NAM)

Plano, TX
1 day ago
Customer Success
Cybersecurity
Stakeholder Management
Palo Alto Networks
Full-Time
Senior Manager
YEAR $270000 - $315000

Sr. Ethics & Compliance Manager- Global Public Sector

Ottawa, Canada
1 day ago
Canadian Contract Security
Government Contract Compliance
Policy Development
ServiceNow
Full-Time
Manager

Solutions Engineer, Identity

Santa Clara, CALIFORNIA
1 day ago
IAM
IGA
REST APIs
Cyberark
Full-Time
Experienced
YEAR $107000 - $158000

Principal Product Manager - Security Center

Santa Clara, CALIFORNIA
1 day ago
AI Integration
Cloud Security
Product Management
ServiceNow
Full-Time
Manager

Senior Safety & Security Officer

Austin, TX
1 day ago
FRA System Safety For Passenger Rail
FTA System Safety And Security Certification (SSC)
PTASP Development
AECOM
Full-Time
Experienced

Sr. Manager, Global Certifications (Federal)

Santa Clara, CA
1 day ago
Cloud Security
DoD SRG
FedRAMP
Palo Alto Networks
Full-Time
Senior Manager
YEAR $180000 - $220000

IAM Engineering Specialist

São Paulo, Brazil
1 day ago
Access Control
Identity Governance And Administration (IGA)
One Identity
Experian
Full-Time
Experienced

Accreditation Specialist Lead (Remote)

United States
1 day ago
HIPAA
ISO 27001
PCI
Experian
Full-Time
Experienced

Embedded Senior Analyst, Threats and Intelligence

Remote
1 day ago
Data Analysis
OSINT
Security Investigations
Sibylline Ltd
Full-Time
Experienced
YEAR $125000 - $125000

Embedded Intelligence Analyst

Remote
1 day ago
Intelligence Analysis
Risk Assessment
Security Investigations
Sibylline Ltd
Full-Time
Experienced
YEAR $76858 - $76858

Looking for a specific job?