Overview
Skills
Job Details
No 3rd vendors allowed, no sponsorship provided, open ONLY to local candidates to Charlotte NC (hybrid job).
If you are passionate about security, the Risk Assessment Analyst III will play an integral role in supporting the Enterprise Engineering division by assessing, documenting, and helping remediate security risks across the organization. This position requires a strong understanding of network vulnerability scans, enterprise risk management practices, and compliance processes. The analyst will partner with management and technical teams to identify risks, document findings in Archer, and provide guidance on remediation and process improvements to strengthen the overall security posture of the organization.
Key Responsibilities:
- Serve as a subject matter expert in the risk assessment process, evaluating vulnerabilities identified in network security scans and determining associated risk levels.
- Create and submit detailed documentation in Archer to capture findings, risk levels, and recommendations.
- Collaborate with management to assess project risks, control gaps, and compliance requirements, ensuring alignment with enterprise strategy.
- Assist with the remediation of identified security risks by working closely with security engineers and other stakeholders.
- Develop, maintain, and publish process documentation to standardize risk assessment and remediation practices.
- Apply Enterprise Risk Management (ERM) concepts to proactively identify, assess, and mitigate emerging risks.
- Identify opportunities to enhance internal controls, reduce compliance-related costs, and improve overall business performance.
- Provide expert insights and recommendations to leadership to strengthen enterprise security risk management.
Qualifications:
- 7 10 years of experience in risk assessment, security remediation, or related cybersecurity functions.
- Strong knowledge of network vulnerability scans, how they function, and how to interpret results.
- Experience with risk management frameworks and tools such as Archer (or similar GRC platforms).
- Proven ability to document risks, processes, and remediation strategies clearly and effectively.
- Strong analytical, problem-solving, and communication skills with the ability to partner across technical and business teams.
- Demonstrated expertise in Enterprise Risk Management principles and practices.