> Markdown version of [/jobs/ext/2005441-it-risk-management-analyst](https://www.wearedevelopers.com/jobs/ext/2005441-it-risk-management-analyst). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # IT Risk Management Analyst - **Company:** Insight Global - **Location:** Atlanta, GA, United States - **Experience:** Expert - **Salary:** $120,000.0 - $150,000.0 - **Contract:** Temporary to permanent - **Skills:** Microsoft Excel, Microsoft Windows, Data Analysis, Apple Mac Systems, Confluence, JIRA, Cyber Security, Information Systems, Linux, Excel Formulas, Issue Tracking Systems, Intrusion Detection Systems, Knowledge Management, Open Web Application Security, Pivot Tables, Software Vulnerability Management, Computer Network Technologies, Macros, Mitre Att&ck, Firewalls (Computer Science), SC Clearance - **Published:** August 9, 2026 - **Apply:** https://www.juju.com/job/00000000gm9548 ## About the Role * Bachelor's degree in cybersecurity, information security, information assurance, or a related field, or an equivalent combination of education and experience. * 5+ years of progressively responsible experience in governance, risk, compliance, or information security in a complex environment. * Strong practical knowledge of security technologies and controls, as well as operating system platforms including Windows, macOS, Linux, and core networking technologies. * Demonstrated experience with vulnerability management processes and tools, including scanning, reporting, prioritization, and remediation tracking. * Solid understanding of threats, vulnerabilities, exploitation techniques, and how they map to business risk. * Advanced experience with data analysis and reporting in Excel (pivot tables, lookups, intermediate/advanced formulas; scripting or macros a plus). * Proven ability to assess and communicate the priority and business impact of vulnerabilities and risks to both technical and non-technical stakeholders. * Excellent written and verbal communication skills, including experience drafting policies, standards, and executive-level summaries. * One or more intermediate or advanced cybersecurity/GRC certifications such as CISSP, CISM, CISA, SecurityX, CCNP-Security, or equivalent. * Active Secret clearance. * Master's degree in cybersecurity, information security, information assurance, business, or a related field. * Deep understanding of cybersecurity frameworks and best practices such as NIST 800-53/171, CMMC, RMF, MITRE ATT&CK, and OWASP Top 10. * Demonstrated experience leading audit, assessment, or certification efforts (e.g., NIST, CMMC, DFARS, FedRAMP, or similar). * Experience developing and tracking security and compliance metrics for remediation stakeholders and leadership. * Strong knowledge of common vulnerability categorizations and scoring systems such as CVE, CVSS, and CWE. * Proficiency with Atlassian Confluence for documentation and knowledge management. * Proficiency with Atlassian Jira for workflow, issue tracking, and project management. ## Description This position is located within the GRC Team and will serve as a subject-matter expert for IT risk in the organization, * Monitor the institution's information systems for security incidents and vulnerabilities, responding promptly to mitigate potential threats. * Conduct regular risk assessments and security audits to identify weaknesses in the institution's cybersecurity posture and recommend remediation measures. * Develop and implement security policies, procedures, and protocols to protect sensitive data and ensure compliance with regulatory requirements. * Provide cybersecurity training and awareness programs for faculty, staff, and students to promote a culture of security within the institution. * Analyze security incidents and breaches to determine their root causes and develop strategies to prevent future occurrences. * Stay informed about emerging cybersecurity threats and trends, continuously updating security measures to address new challenges. * Prepare and present reports on the status of cybersecurity efforts, highlighting incidents, vulnerabilities, and progress on remediation activities. * Serve as a liaison with external agencies and partners on cybersecurity initiatives, collaborating on strategies to enhance the institution's security capabilities. * Collaborate with IT teams to deploy security technologies, such as firewalls, intrusion detection systems, and encryption tools, to safeguard institutional data. ## Related Videos - [Collaboration Quantified: Lessons from Open Source Developer Networks](https://www.wearedevelopers.com/videos/1422-collaboration-quantified-lessons-from-open-source-developer-networks) - [Docker network without Docker](https://www.wearedevelopers.com/videos/1418-docker-network-without-docker) - [Crafting Custom Frameworks with Rust: A Deep Dive into Procedural Macros](https://www.wearedevelopers.com/videos/849-crafting-custom-frameworks-with-rust-a-deep-dive-into-procedural-macros) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Integrate your Cognitive Assistant with 3rd-party DBs and software](https://www.wearedevelopers.com/videos/249-integrate-your-cognitive-assistant-with-3rd-party-dbs-and-software) - [Checkmate: 5 Real Incidents That Can End a Software Company](https://www.wearedevelopers.com/videos/100126-checkmate-5-real-incidents-that-can-end-a-software-company) ## Related Articles - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities) - [Walking Into The Era of Supply Chain Risks](https://www.wearedevelopers.com/magazine/106-walking-into-the-era-of-supply-chain-risks) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [The Overflow: Security and Privacy](https://www.wearedevelopers.com/magazine/715-the-overflow-security-and-privacy) - [What Are The Top Skills Required For Azure Developers?](https://www.wearedevelopers.com/magazine/77-what-are-the-top-skills-required-for-azure-developers)