Junior Risk Analyst
Walnut Creek, California
Berkshire Hathaway Homestate Companies
This entry-level role is ideal for candidates with a passion for security and risk management, offering opportunities to develop expertise in cybersecurity, threat analysis, and compliance.
ESSENTIAL RESPONSIBILITIES
SECURITY RISK ASSESSMENT
- Assist in conducting security risk assessments, including identifying potential vulnerabilities in IT systems, networks, and physical infrastructure.
- Support the evaluation of security controls and recommend improvements to mitigate identified risks.
- Participate in the development of risk profiles for different system, applications, and facilities.
THREAT MONITORING & ANALYSIS
- Monitor security alerts, threat intelligence feeds, and other relevant sources to identify emerging security threats as it relates to risk tracking.
- Analyze security risks, incidents, and vulnerabilities to assess their potential impact on the organization.
- Assist in the preparation of reports on security trends and potential risks.
COMPLIANCE & POLICY SUPPORT
- Help ensure that the company's security practices comply with relevant regulations, standards, and internal policies.
- Support the development and implementation of security policies, procedures, and guidelines.
- Participates in internal audits and reviews to assess the effectiveness of security controls.
INCIDENT RESPONSE
- Assist in the investigation and response to security incidents, including data breaches, unauthorized access, and physical security breaches.
- Document incident findings and support the development of remediation plans.
- Participate in post-incident reviews to identify lessons learned and improve incident response procedures.
SECURITY AWARENESS
- Contribute to the development and delivery of security awareness training for employees.
- Assist in creating in educational materials to promote a security-conscious culture within the organization.
REQUIRED QUALIFICATIONS
- Education: Bachelor's degree in Information Security, Cybersecurity, Computer Science, Risk Management, or related field required.
- Experience: 1-3 years of experience in security risk management, cybersecurity, or related field, or combination of relevant internships, coursework, and relevant experience, required.
- Certifications: CompTIASecurity+, Certified Information Systems Security Professional (CISSP), and/or Certified in Risk and Information Systems Control (CRISC) a plus.
DESIRED SKILLS
- Basic understanding of information security principles, including threat modeling, vulnerability management, and security controls.
- Knowledge of security frameworks and standards such as ISO 27001, NIST, or PCI DSS.
- Familiarity with cybersecurity tools and technologies, such as firewalls, intrusion detection systems, and encryption.
- Familiarity with security risk management software and tools.
- Strong analytical and problem-solving skills, particularly in a security context.
- Proficiency in Microsoft Excel and other data analysis tools.
- Excellent written and verbal communication skills, with the ability to present complex security issues clearly.
- Attention to detail and strong organizational skills.
- Ability to work independently and as part of a team.
WHAT WE OFFER
- Work-Life Balance
- Work From Home Program (up to 2 days per week)
- Reasonable caseload with in-house Medical Management support (UR, Med Bill Review, Resource Nurses); In-house Claims Assistant support
- Modern Office Setting
- Free On-Site Fitness Facility
- Two-minute walk from Walnut Creek BART Station
- Three-minute car ride from CA-24 and I-680
- Free On-Site Garage Parking
BENEFITS
- Paid Time Off
- Paid Holidays
- Retirements Savings Match
- Group Health Insurance (Medical, Dental, and Vision)
- Life and AD&D Insurance
- Long Term Disability Insurance
- Accident and Critical Illness Insurance
- Flexible Savings Accounts
- Paid Community Volunteer Day
- Employee Assistance Program
- Tuition Reimbursement Program
- Employee Referral Program
- Diversity, Equity and Inclusion Program
* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰
Tags: Audits CISSP Compliance Computer Science CRISC Encryption Firewalls Incident response Intrusion detection ISO 27001 Monitoring NIST PCI DSS Risk assessment Risk management Threat intelligence Vulnerabilities Vulnerability management
Perks/benefits: Career development Equity / stock options Fitness / gym Flex vacation Health care Insurance
More jobs like this
Explore more career opportunities
Find even more open roles below ordered by popularity of job title or skills/products/technologies used.