Information Security Risk Analyst - Consultant
Core
Identify and manage cyber security and technology risks, enhance business resilience, and evaluate system architectures to improve information security posture.
Role type
Information Security Risk Analyst (Consultant)
Builds
Security frameworks, risk mitigation plans, and security reporting for internal IT leaders and executives.
Domain
Professional Services / Information Security / Cloud Infrastructure
Required skills
Risk assessment, threat analysis, security standards (ISO27001, NIST 800-53), cloud security (AWS/Azure), architectural documentation analysis, security reporting, third-party integration risk evaluation.
Preferred skills
CISM, CRISC, CISSP, SABSA certifications, knowledge of emerging technologies (AI, blockchain, quantum computing).
Technologies
AWS, Azure, ISO27001, NIST 800-53
Responsibilities
Perform threat assessments to identify potential risks and determine preventative controls; review and recommend effective controls over technology assets; evaluate systems and applications to determine cyber security status; provide security reporting to IT leaders and executives; offer risk assessment advice during acquisitions and third-party integrations; champion projects to strengthen the security framework.
Seniority
Mid-level, hands-on IC