> Markdown version of [/jobs/ext/592714-technical-risk-analyst](https://www.wearedevelopers.com/jobs/ext/592714-technical-risk-analyst). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Technical Risk Analyst - **Company:** Inspyr Solutions - **Location:** Vienna, VA, United States - **Experience:** Experienced - **Contract:** Permanent contract - **Skills:** Control Objectives for Information and Related Technology (COBIT), Cyber Security, Identity and Access Management, Information Technology Audit, User Provisioning Software, IT General Controls (ITGC) - **Published:** June 18, 2026 - **Apply:** https://www.dice.com/job-detail/edf8dff2-07a6-47e8-b97e-894b2a545f68 ## About the Role The ideal candidate will have experience working with IT security controls, risk management practices, compliance frameworks, or audit activities and possess strong analytical and documentation skills., * 3-5+ years of experience in IT Risk, Technology Risk, Cybersecurity, IT Audit, Information Security, Compliance, IAM, or a related field. * Understanding of IT security controls and risk management principles. * Experience with Identity and Access Management (IAM) processes and controls. * Strong analytical, organizational, and documentation skills. * Experience reviewing documentation, evidence, and technical processes. * Ability to communicate effectively with technical and non-technical stakeholders. Preferred Qualifications * Experience with IT controls testing, compliance assessments, or audit activities. * Knowledge of frameworks such as NIST, COBIT, ISO 27001, SOX, or similar standards. * Experience supporting highly regulated or security-focused environments. * Security+, CISA, CRISC, CISSP, or related certifications are a plus., * Detail-oriented professional with strong problem-solving skills. * Ability to analyze information, identify risks, and document findings clearly. * Interest in cybersecurity, risk management, governance, and controls. * Collaborative team player who can work across multiple stakeholders and teams. ## Description We are seeking a Technical Risk Analyst to support IT security controls testing, risk assessments, and assurance activities across a complex technology environment. This role will focus on evaluating the effectiveness of Identity and Access Management (IAM) controls and other technology security controls while helping identify risks, document findings, and support remediation efforts., * Support testing and assessment of IT security controls and risk management processes. * Evaluate the effectiveness of IAM controls, including user provisioning, deprovisioning, access reviews, and privileged access management. * Review control documentation and supporting evidence to identify potential gaps and risks. * Assist in assessing the design and operating effectiveness of technology security controls. * Document testing results, findings, and recommendations for stakeholders. * Track remediation efforts and support follow-up validation activities. * Partner with technology, cybersecurity, compliance, and risk teams to strengthen control effectiveness. * Contribute to risk assessments, governance activities, and continuous improvement initiatives. ## Related Videos - [Thinking Differently - How to Make Money from Cyber Attacks & Cheats](https://www.wearedevelopers.com/videos/745-thinking-differently-how-to-make-money-from-cyber-attacks-cheats) - [Under the Hood of Building on Lovable](https://www.wearedevelopers.com/videos/100032-under-the-hood-of-building-on-lovable) - [Create DSL (Domain Specific Language) on top of Swift](https://www.wearedevelopers.com/videos/707-create-dsl-domain-specific-language-on-top-of-swift) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [What makes Cybersecurity different for critical infrastructure?](https://www.wearedevelopers.com/videos/571-what-makes-cybersecurity-different-for-critical-infrastructure) - [Enabling automated 1-click customer deployments with built-in quality and security](https://www.wearedevelopers.com/videos/83-enabling-automated-1-click-customer-deployments-with-built-in-quality-and-security) ## Related Articles - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [IT Salaries in Austria](https://www.wearedevelopers.com/magazine/286-it-salaries-in-austria) - [How to Find Tech Jobs in Vienna](https://www.wearedevelopers.com/magazine/292-how-to-find-tech-jobs-in-vienna) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Is Software Engineering Over-Saturated?](https://www.wearedevelopers.com/magazine/418-is-software-engineering-over-saturated) - [Walking Into The Era of Supply Chain Risks](https://www.wearedevelopers.com/magazine/106-walking-into-the-era-of-supply-chain-risks)