Analyst, Cyber and Information Security Risk
- Discuss this with your agent
- Open in Claude
- Open in ChatGPT
Prepare application
- Draft this with your agent
- Open in Claude
- Open in ChatGPT
Role details
Tech stack
Job description
Join a global information security team helping protect complex business operations through thoughtful cybersecurity risk management. This role focuses on assessing third-party security controls, identifying and mitigating risk, and partnering with stakeholders to support secure business decisions. Responsibilities
- Evaluate external party security controls and compare them against internal information security requirements.
- Work with technology and business teams to identify cybersecurity risks tied to current and upcoming projects.
- Assess vendor and partner risk using questionnaires, industry standards, and internal policies.
- Recommend practical risk mitigation options and communicate findings to internal and external stakeholders.
- Guide teams on applicable security, regulatory, and policy requirements.
- Document assessment activity, findings, and related communications in the risk management platform.
- Provide status updates to security leadership, project managers, and other stakeholders.
- Support security policy enforcement and review exception requests with recommendations.
- Research emerging technologies, architectures, and tools that support enterprise security needs.
- Complete additional cybersecurity risk management tasks as assigned.
Requirements
- 3+ years of experience in cybersecurity risk management, IT security control design, or security control audit work.
- Bachelor’s degree in information systems, computer science, or a related field preferred.
- Working knowledge of security and compliance frameworks such as SOC 1, SOC 2, ISO 27000, SIG, CAIQ, NIST Cybersecurity Framework, SOX, PCI-DSS, GDPR, and privacy laws.
- Strong communication skills with the ability to explain security topics clearly to technical and non-technical audiences.
- Ability to influence decisions, support balanced risk-based outcomes, and handle complex discussions professionally.
- Self-directed approach with a proactive mindset and strong judgment.
- Comfort working across vendors, IT teams, and business stakeholders.
Preferred Skills
- CISSP, CISM, CISA, or CRISC certification preferred.
- GSEC, Security+, or a similar credential considered a plus.
- Experience with vendor risk reviews or external party assessments.
- Familiarity with documentation and workflow in an online risk management platform.
- Strong relationship-building skills and the ability to collaborate effectively across teams.
Horizontal is committed to fostering a diverse, equitable, and inclusive workplace where different perspectives are valued and respected. We encourage candidates from all backgrounds to apply and bring their unique experiences to the team.
Benefits & conditions
Please apply through this online posting or by visiting our Job Board at www.horizontaltalent.com/job-board. Applications will be accepted for 4 weeks. For those that join the team, we offer competitive compensation and benefits including medical, dental, vision, and retirement. Check out all we have to offer and how you can become part of the Horizontal Talent Team. The pay range for this role is $29 - $60 per hour based on qualifications and experience. Health Care 10 minutes ago Pediatrics Registered Nurse Supplemental Health Care Denver, Colorado $1,553.00 - $1,679.00 per year Health Care 11 minutes ago Pediatrics Registered Nurse Supplemental Health Care Denver, Colorado $1,553.00 - $1,679.00 per year
More jobs in Other
Apply for this position
This job is hosted externally. Click below to view the full posting and apply.
Prepare application
- Draft this with your agent
- Open in Claude
- Open in ChatGPT
Good distractions
Talks and stories from around this role — technically off-topic, practically not.
Moments
Explore playlistsVideos
See allRelated articles
See all
Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.
Walking Into The Era of Supply Chain Risks
Is Software Engineering Over-Saturated?
The Most Popular IT Jobs on the Market