368,634open jobs
9,437companies
50,578added this week
Browse all
Salary
$70k – $77k per year
Location
Remote (United States)
Seniority
Junior · 1+ year exp
Employment
Full-Time
Overview
Company
Impact
Profile match
Protective Life is an insurance and financial services company headquartered in Birmingham, Alabama, and founded in 1907. The company sells life insurance, annuities, and asset protection products through independent agents, financial institutions, and automotive dealerships across the United States. It has grown largely through acquisitions of closed insurance blocks and has been a wholly owned subsidiary of Japan's Dai-ichi Life Holdings since 2015.

The Security Risk Analyst supports the organization’s Information Security Risk Management program by executing many cyber risk functions such as regulatory compliance, 3rdParty, and security awareness activities under the direction of security leadership. This role focuses on ensuring adherence to regulatory requirements, industry standards, and internal policies through collaboration with compliance, legal, and technology teams.

The analyst applies strong analytical skills, attention to detail, and effective communication to perform risk assessments, maintain security policies, and assist with compliance initiatives. They help track program performance, prepare reports for leadership, and contribute recommendations for improvement. Additionally, the analyst promotes a collaborative environment by sharing insights and supporting organizational security objectives.

Key Responsibilities:

    • Perform and mature enterprise risk assessments using frameworks such as NIST CSF, NIST 800-53, SOC 2, and CIS, including documenting findings and driving mitigation strategies across systems, processes, and infrastructure.

    • Demonstrated technical acumen in analyzing vulnerability assessment reports to support troubleshooting, remediation, and risk reduction initiatives.

    • Develop and execute security awareness programs, including training, phishing simulations, newsletters, and communications to drive behavioral change and risk reduction.

    • Deliver actionable reporting and insights, including assessment results, GRC metrics, dashboards, and executive-level presentations summarizing risk posture, control effectiveness, and program maturity.

    • Perform end-to-end cyber third-party risk assessments, including vendor risk assessments, onboarding/offboarding processes, and embedding a shift-left security approach across the vendor lifecycle-particularly for high-risk and complex engagements.

    • Drive process and tooling optimization, contributing to GRC platform design, standardizing workflows, and improving operational consistency and scalability.

    • Support governance and control management, including developing and maintaining policies, standards, and control libraries aligned to regulatory requirements and industry best practices.

    • Enable audit readiness and due diligence, managing evidence collection, standardizing responses, and maintaining repositories for external audits and third-party inquiries.

    • Stay current on evolving regulations, frameworks, and industry trends, incorporating updates into practices and controls.

    • Manage priorities and execution using Agile methodologies, including tracking tasks, resolving issues, escalating risks, and providing timely status updates.

Required Skills & Expertise:

    • Bachelor’s degree in Cybersecurity, Information Systems, or related field. 1-3 years of experience in GRC, risk management, or compliance within cybersecurity.

    • Working knowledge of regulatory frameworks, audit processes, and control environments, including familiarity with industry standards and risk management terminology.

    • Understanding of third-party/vendor risk management (TPRM) processes and enterprise risk concepts, with the ability to support risk identification, assessment, and mitigation activities.

    • General knowledge of security tools and controls across domains such as network security, endpoint protection, email security, vulnerability management, access controls, and log management; foundational understanding of cloud service models (IaaS, SaaS, PaaS).

    • Proven ability to track, measure, and report on IS GRC program effectiveness using tools such as ServiceNow, Archer, SharePoint, and Power BI; able to translate metrics into actionable insights for leadership.

    • Experience contributing to continuous improvement of GRC programs, including identifying enhancements and presenting recommendations to leadership.

    • Experience developing and delivering training materials, with strong written and verbal communication skills to effectively engage technical and business stakeholders.

    • Strong organizational, analytical, and multitasking abilities, with a demonstrated ability to manage competing priorities and collaborate effectively across teams.

Preferred Qualifications:

    • Strong consideration for experience with cloud security compliance (Azure/AWS).

    • Experience with Microsoft Office Suite; familiarity with tools such as SharePoint, Power BI, ServiceNow, UpGuard, or Archer.

    • Achieved certifications such as: CISA, CRISC, GSEC/GISP, CISSP, CISM, CCSP, CIDSP, Security+

Free account
Stop reading job ads. Get the ones that fit.
One free account turns this page into a shortlist built around your stack, your level and your pay.
Match on every job. Stack, seniority, pay and location, scored against your profile.
368,634 open roles. Read straight off company career pages, refreshed every day.
Unlimited applications. Every one you send is tracked in one place, on-site or on a company board.
3 tailored CVs a month. Rewritten for the exact job you are applying to. Included free.
Create a free account
Free forever. No card. Under a minute.

Your match

How well do you fit this role?
Two answers are enough for a real match. No account needed.
Check my fit
Answers stay in this browser until you create an account.

Recommended for you based on this role

Similar stack
Same company
In your city
$12k – $27k per year (Estimated) • In office • Full-Time • 2+ years exp • Bachelor's Degree • Pune
SQL
Analytics
Power BI
Tableau
Apply
$66k – $123k per year • Remote/Hybrid • Full-Time • 2+ years exp • Bachelor's Degree • Corvallis
Python
SQL
Databases
Snowflake
AI/ML
AI Agents
dbt
DevOps
AWS
GitHub
Analytics
Power BI
Tableau
Apply
$60k – $108k per year • Remote/Hybrid • Full-Time • Bachelor's Degree • United States
PowerShell
Python
DevOps
AWS
Azure
IAM
Splunk
Cybersecurity
Crowdstrike
ISO 27001
Microsoft Defender
Microsoft Entra ID
Microsoft Sentinel
NIST CSF
Qualys Cloud Platform
Apply
$35k per year • In office • Internship • Master's Degree • Freiburg im Breisgau
Analytics
Power BI
Apply
$78k – $130k per year • In office • Full-Time • 4+ years exp • Bachelor's Degree • Cary • San Jose
Analytics
Power BI
Apply
$100k – $129k per year • Remote/Hybrid • Full-Time • 5+ years exp • Birmingham
C#
JavaScript
SQL
TypeScript
C#
ASP.NET Core
Frontend
Angular
Bootstrap
React.js
DevOps
CI/CD
QA
Selenium
Apply
$77k – $80k per year • Remote • Full-Time • Bachelor's Degree
Analytics
Power BI
Tableau
Apply
$84k – $129k per year • Remote • Full-Time • 5+ years exp • Bachelor's Degree
ABAP
SQL
ABAP
CDS Views
SAP Workflow
Apply
$84k – $120k per year • Remote • 3+ years exp • Bachelor's Degree
DevOps
Azure
Azure DevOps
Apply
$84k – $120k per year • Remote • Full-Time • 3+ years exp • Master's Degree
DevOps
Azure
Azure DevOps
Apply
See all jobs
This is one of many
368,634 more open roles from verified company boards, updated every day.