Sr Risk Analyst

Informa
United States
Workplace: OnsiteFull timeUSD 150,000 - 170,000 annuallyFunction: Legal, Risk & ComplianceExperience: 5-8 yearsEducation: bachelorsSkills: ["Analytical thinking","Critical thinking","Attention to detail","Written communication","Verbal communication","Stakeholder management","Translating technical concepts","Data analysis","Data visualization","Project management","Executive communication","Leadership influence"]

Lead enterprise cyber risk assessments and manage risk treatment across business operations, systems, and infrastructure. Partner with engineering, IT, security, and product teams to evaluate cloud security (AWS, Azure, GCP), vulnerability exposure, and third-party/vendor risk. Use frameworks such as NIST CSF, ISO 27005, FAIR, and SOC 2/ISO 27001/SOX to quantify and report risk to executives via dashboards with KRIs and KPIs, including emerging AI governance and technology risk responsibilities.

Loading

Loading job details...

Preparing the role view and application actions.

FursaFursa
Informa
Informa
3 days ago

Sr Risk Analyst

✓ Verified Job

Canonical indexed version, validated from employer's careers page.

Source: Company careers pageValidated by: Fursa AI
Last checked: 14 hours agoStatus: Live
Reposted: similar role first listed 4 weeks ago

Job Summary

Lead enterprise cyber risk assessments and manage risk treatment across business operations, systems, and infrastructure. Partner with engineering, IT, security, and product teams to evaluate cloud security (AWS, Azure, GCP), vulnerability exposure, and third-party/vendor risk. Use frameworks such as NIST CSF, ISO 27005, FAIR, and SOC 2/ISO 27001/SOX to quantify and report risk to executives via dashboards with KRIs and KPIs, including emerging AI governance and technology risk responsibilities.
Location: United States
Workplace: Onsite
Employment Type: Full time
Job Function: Legal, Risk & Compliance
Seniority: Mid level

Key Responsibilities

  • •Lead enterprise-wide cyber risk assessments across business operations, systems, and infrastructure.
  • •Develop and maintain enterprise cyber risk registers and risk treatment plans, including prioritization and monitoring.
  • •Assess cloud and hybrid infrastructure security risks (AWS, Azure, GCP) and partner to implement controls and mitigation measures.
  • •Oversee vulnerability and threat management, including reviewing scan results and penetration test findings and supporting remediation of critical vulnerabilities.
  • •Provide executive reporting through cyber risk dashboards and presentations, including AI governance and technology risk assessments.

Pay and Benefits

Salary: USD 150,000 - 170,000 annually
Equity and Bonus:Equity
Perks:401k MatchHealth InsuranceVisionDentalParental LeaveEsppEap AssistanceWellness Stipend

Key Requirements

  • •Bachelor's degree in Cybersecurity, Information Security, Risk Management, Computer Science, Information Technology, or related field.
  • •5-8 years of progressive experience in cybersecurity risk management, information security, or IT risk.
  • •Proven experience conducting enterprise-level cyber risk assessments in complex technology environments, including cloud security risk assessment (AWS, Azure, GCP).
  • •Demonstrated experience in third-party risk management and vendor security assessments.
  • •At least one: CRISC, CISSP, or CISM; with preferred certifications such as CISA, CGRC, and CCSP.
Experience:5-8 years
Education:Bachelor's in Cybersecurity, Information Security, Risk Management, Computer Science, Information Technology, or related field
Skills:Analytical thinkingCritical thinkingAttention to detailWritten communicationVerbal communicationStakeholder managementTranslating technical conceptsData analysisData visualizationProject managementExecutive communicationLeadership influence
Certifications:CRISCCISSPCISMCISACGRCCCSP
Languages:English
Tech Stack:NIST CSFISO 27005FAIRAWSAzureGCPSOC 2ISO 27001NISTSOXNIST 800-53GRC platformsVulnerability managementPenetration testingDashboardsKRIsKPIsCloud security architectureSecurity controlsDefense-in-depth

Company Brief

Informa
Global business-to-business information services group operating events, academic and professional publishing, and data & analytics businesses serving specialist markets worldwide.
Industry: Publishing
Company Size: Enterprise (1,001+ employees)
Revenue: USD 1B+
Growth: Public Company
Valuation: Public Company (Market Cap in USD)
Funding: IPO / Publicly Listed
Headquarters: London, United Kingdom
Founded: 1998
WebsiteLinkedIn