Full-Time

IT Risk Analyst 2

Posted on 8/21/2026

Deadline 8/29/26
WGU

WGU

Online university in Salt Lake City, UT

Compensation Overview

$108.2k - $162.4k/yr

+ Bonus

Salt Lake City, UT, USA

In Person

Five days onsite per week in Salt Lake City, Utah.

Bachelor's

Category
IT & Security (1)
Required Skills
LLM
Cybersecurity
SOC 2
HIPAA

Get referred to WGU

See people who can refer or advise you

Requirements
  • A bachelor's degree in a related field and 3 years of relevant work experience, or 7+ years of information security experience, or 6+ years of experience with a relevant certification.
  • Working knowledge of risk management frameworks and practices, including NIST.
  • Working knowledge of regulations relevant to higher education and data protection, such as FERPA, GLBA, GDPR, and HIPAA.
  • Experience assessing security controls and recommending safeguards in a corporate environment.
  • Experience with cybersecurity and privacy principles used to manage risk related to the use, processing, storage, and transmission of data.
  • Experience with AI tools, including building or using AI agents in day-to-day work.
  • Strong analytical and problem-solving skills, with attention to detail and results orientation.
  • Strong written and oral communication skills, including the ability to explain technical risk to non-technical audiences.
Responsibilities
  • Conduct third-party and supplier risk assessments end to end, including scoping, evidence review of SOC 2 reports, questionnaires and contracts, risk analysis, and a clear residual risk conclusion.
  • Conduct security risk assessments of internal systems, projects, and applications using industry-accepted frameworks, including NIST and similar standards.
  • Perform Open-Source Intelligence research on third parties, suppliers, and applications to establish the security profile of the target of evaluation.
  • Work with engineers, architects, and business units to understand how a system, vendor, or project works before recommending controls.
  • Recommend security controls that fit the risk and business context, and support the teams responsible for implementing them.
  • Provide guidance to operational teams and third parties on remediating deficiencies identified in assessments.
  • Work with IT and business unit management to keep third parties, applications, and suppliers aligned with the university's security requirements.
  • Serve as lead analyst on risk analysis, third-party risk, and exception-to-policy efforts as assigned.
  • Articulate risk to management in plain language, including what the risk is, who it affects, and what it costs to accept or fix.
  • Measure, collect, and report on key risk indicators and information security services.
  • Identify and build AI efficiencies in risk and assessment workflows, including AI-assisted analysis and agent-based tooling.
  • Contribute to security policies, standards, procedures, and assessment methodologies; identify process gaps and drive improvement.
  • Advocate for information security by helping the business understand risk, standards, and best practices for third parties and products.
Desired Qualifications
  • An industry certification, such as CISSP, CISM, CRISC, or CISA.
  • Experience with third-party risk management platforms or governance, risk, and compliance tooling.
  • Higher education experience.

Western Governors University is a nonprofit online university headquartered in Salt Lake City, Utah. It offers competency-based bachelor's and master's degree programs in business, education, technology, and health and nursing.

Company Size

N/A

Company Stage

N/A

Total Funding

N/A

Headquarters

N/A

Founded

N/A

Get referred to WGU

See people who can refer or advise you