Sr. IT Risk Analyst

Insight Global
Chicago, IL, United States
26 days ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
5 years minimum
Working hours
Regular working hours
Job source

Tech stack

Software System Penetration Testing Cyber Security Privacy Controls Information Technology Data Management Vulnerability Analysis

Job description

Insight Global is seeking a Senior IT Risk and Compliance Analyst for a leading research and data organization. This candidate will join a specialized security and compliance team responsible for ensuring systems meet rigorous government and corporate security standards. The ideal candidate brings deep expertise in ATO processes, risk assessments, and federal compliance frameworks, and will play a key role in guiding cross-functional teams through security requirements, documentation, and audits. This is a highly impactful role supporting mission-driven projects, offering exposure to complex security environments and the opportunity to influence enterprise-level compliance strategy.

Requirements

Bachelor’s degree in Computer Science, IT, or related field (or equivalent experience)

5+ years of experience in information security (focus on architecture/engineering)

Strong experience with ATO (Authorization to Operate) processes

Expertise with NIST standards, FISMA, and federal security regulations

Experience conducting risk assessments and security impact analyses

Hands-on experience with vulnerability scanning, penetration testing, and configuration analysis

Experience creating and maintaining System Security Plans (SSPs) and compliance documentation

Strong understanding of IT security & privacy controls

Experience coordinating across vendors, stakeholders, and program owners

Strong communication skills (technical + non-technical audiences) CISSP, CISM, or similar security certifications

Experience as an Information Security Officer (ISO) on federal programs

Experience using CSAM tools

Experience overseeing penetration testing projects

Proven ability to streamline ATO timelines

Incident response coordination experience across multiple teams

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on dejobs.org

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

4:11 min

Introduction to cloud-native application developer security

Micah Silverman · WWC 2022

3:43 min

Data management for stateful cloud-native workloads

Michael Cade · WWC 2022

1:13 min

Requirements and licensing plans for GitHub Copilot

lgonta lgonta +1 · WWC 2024

1:49 min

Evaluating risk profiles through the eyes of different stakeholders

Ingo Philipp · LIVE

3:44 min

Current industry adoption and future security initiatives

Alexander Allmendinger · LIVE

3:22 min

Transitioning from software engineering to security roles

Anna Oliveira · Coffee With Developers

Videos

See all

Related articles

See all