Cyber Security Risk Analyst
Core
Subject matter expert in cybersecurity risk management, identifying and mitigating risks across IT and Operational Technology (OT) environments to support business decision-making.
Role type
Cyber Security Risk Analyst
Builds
Cybersecurity Risk Management Program, risk registers, and control frameworks for IT, OT, cloud, and third-party environments.
Domain
Industrial Cybersecurity / GRC
Deliverable
production ML models | product features | dashboards & analysis | research | client delivery | infrastructure | physical/clinical work
Required skills
Cybersecurity risk assessment, GRC frameworks (ISO 27001, NIST, SOX), risk scoring and treatment strategies, audit support, stakeholder facilitation, technical risk translation, KRIs monitoring
Preferred skills
Third-party risk management, SIEM/log analysis, cloud security, IAM, project management, heavy industrial environment experience
Technologies
GRC tools, risk reporting dashboards, SIEM, cloud platforms
Responsibilities
Develop and improve cybersecurity risk management frameworks and policies; Perform risk assessments across IT, OT, cloud, and third-party environments; Facilitate risk workshops with technical and business stakeholders; Maintain and enhance the cybersecurity risk register; Support audit, regulatory, and compliance activities; Advise leadership on risk exposure and trends; Define and monitor Key Risk Indicators (KRIs)
Seniority
Mid-Senior, hands-on IC