IT Risk Analyst
Job in
Houston, Harris County, Texas, 77246, USA
Listed on 2026-03-01
Listing for:
Emergent Professional Resources L.P. (EPR)
Full Time
position Listed on 2026-03-01
Job specializations:
-
IT/Tech
Cybersecurity, IT Business Analyst, IT Consultant, Information Security
Job Description & How to Apply Below
Our Specialty Insurance client is looking to add an IT Risk Analyst to their team to their team. This opportunity is located in North West Houston and offers hybrid flexibility. This role works closely with IT, cybersecurity, compliance, and business units to ensure the effective management of risks across systems, applications, and processes.
Key Responsibilities- Identify potential IT and cybersecurity risks across infrastructure, applications, vendors, and business processes
- Conduct regular IT risk assessments, gap analyses, and control evaluations
- Evaluate emerging technologies and threats to determine associated risk exposure
- Support risk scoring, prioritization, and reporting in alignment with the enterprise risk management framework
- Recommend, implement, and monitor risk mitigation strategies and IT controls
- Collaborate with system owners to remediate control gaps or vulnerabilities
- Validate the effectiveness of technical and procedural controls (e.g., access management, change management, backup/recovery)
- Support policy and standards development for IT governance and security
- Ensure compliance with regulatory requirements (e.g., SOX, GDPR, HIPAA, PCI-DSS, ISO 27001, NIST)
- Assist internal and external auditors with IT audit activities, supplying evidence and documentation
- Monitor adherence to IT policies, procedures, and best practices
- Prepare regular IT risk reports and dashboards for senior management and risk committees
- Maintain risk registers, assessment records, and audit logs Communicate complex risk concepts to non-technical stakeholders
- Support incident response activities, including root-cause analysis and corrective action planning
- Conduct vendor and third-party risk assessments, focusing on security posture and contractual compliance
- 3+ years of experience in IT risk, cybersecurity, IT audit, or governance
- Knowledge of frameworks and standards such as NIST, ISO 27001, COBIT, and CIS Controls
- Strong understanding of IT infrastructure, applications, cloud environments, and security practices
- Excellent analytical, communication, and documentation skills
- Experience with GRC tools (e.g., Archer, Service Now, Logic Gate, RSA)
To View & Apply for jobs on this site that accept applications from your location or country, tap the button below to make a Search.
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
Search for further Jobs Here:
×