Full-Time

Risk Analyst

Information Security

Posted on 10/7/2025

Wabtec

Wabtec

10,001+ employees

Develops electric locomotives and digital solutions

Compensation Overview

$89.1k - $126.9k/yr

+ Annual bonus

Pittsburgh, PA, USA

Hybrid

Hybrid schedule: on-site and remote

Category
IT & Security (1)
Required Skills
Risk Management
Requirements
  • Bachelor’s degree in Business, Technology, Cyber Security, Technology Risk Management or related field or hands-on and strong experience
  • 5+ years experience within IT operations, Security or Risk management
  • Experience with Risk Register management, including categorizing risk and determining the level of the risk to be entered.
  • Prior experience in IT or Cybersecurity, supporting systems or developing/supporting applications.
  • Knowledge of industry Risk management frameworks, common mitigation practices, and Organizational control management.
  • Demonstrate professional skepticism to ensure evidence is sufficient when assessing the relevant information security controls.
  • Demonstrate an understanding of business processes, internal risk management strategies, IT controls, and how they interact together.
  • Demonstrate proficiency in process formulation and improvement.
  • Knowledge of operational security capabilities including access control, network security, secure configuration and vulnerability management, intrusion detection, security monitoring and incident response.
  • Experience with auditors, both internal and regulatory to drive positive audit results with strong remediation paths.
  • Proven solid written and oral communication skills with the ability to effectively communicate status, risks, and remediations to executive management.
Responsibilities
  • Design and implement a comprehensive risk management framework tailored to the organization's needs.
  • Establish risk assessment methodologies, including threat modeling and vulnerability scoring systems.
  • Develop policies, procedures, and guidelines for risk identification, analysis, and mitigation.
  • Create risk reporting structures and dashboards for effective communication to stakeholders.
  • Continuously evaluate and streamline risk management processes to improve efficiency, reduce complexity, and enhance responsiveness to emerging risks.
  • Lead and conduct comprehensive risk assessment to identify, prioritize and quantify potential and existing security threats and vulnerabilities across the organization’s systems, network, and applications.
  • Utilize risk analysis methodologies and tools to assess the effectiveness of existing security controls and identify areas for improvement.
  • Provide expert guidance on risk mitigation strategies and control implementation to minimize exposure to security risks.
  • Develop risk management methodologies tailored to the organization’s specific risk profile and business priorities.
  • Collaborate with stakeholders to establish risk tolerance levels and develop risk mitigation plans.
  • Develop remediation plans based on findings of risk assessments, prioritizing actions to address critical vulnerabilities and mitigate high-risk threats.
  • Work closely with relevant stakeholders to implement security controls and measures to remediate identified risks effectively.
  • Monitor progress of remediation efforts and provide regular updates to management on status of risk mitigation initiatives.
  • Conduct post-remediation reviews and analysis to validate effectiveness of remediation activities and identify residual risks.
  • Drive clear, concise, pragmatic outcomes balancing risk with business objectives.
  • Foster a culture of accountability and responsibility for information security by encouraging active participation in risk identification, reporting, and mitigation efforts.
  • Promote open communication channels for reporting concerns and potential risks, and ensure timely resolution and escalation as needed.
  • Establish channels for risk reporting and feedback from employees across departments.
  • Establish metrics and Key Performance Indicators to measure the effectiveness of the risk management program.
  • Regularly review and update the risk management framework to address emerging threats.
  • Stay informed on industry best practices and regulatory changes to enhance the program.
  • Foster partnerships with internal and external stakeholders to evolve risk management capabilities.
  • Be curious about our business and seek to understand.
  • Bring new ideas, methods, and approaches to this role. Leverage own expertise to challenge the status quo and drive decisions
Desired Qualifications
  • ISO 27001 and NIST CSF knowledge are highly desirable.
  • Governance and Risk Certification a plus (CRISC, CISM, CISA, or CISSP)

Wabtec provides transportation solutions by designing and producing electric locomotives and related services for freight railroads, transit authorities, and industrial operators. Its flagship product, the FLXdrive, is a 100% battery-electric locomotive with a battery pack over 7 megawatt-hours that cuts fuel use and emissions, while the company also sells traditional locomotives, aftermarket services, and digital solutions to optimize operations. Wabtec differentiates itself through a fully electric propulsion option paired with value-added digital tools and manufacturing techniques like mixed-reality work processes, aiming to improve efficiency and sustainability across rail networks. The company’s goal is to make rail transport more efficient and eco-friendly by delivering reliable locomotives, ongoing maintenance, and advanced software and digital capabilities that help customers run greener, lower-cost operations.

Company Size

10,001+

Company Stage

IPO

Headquarters

Pittsburgh, Pennsylvania

Founded

1872

Simplify Jobs

Simplify's Take

What believers are saying

  • Q1 2026 sales hit $2.95B, adjusted EPS up 18.9% to $2.71.
  • $670M CSX deal delivers 100 locomotives and digital upgrades.
  • $27.4B record backlog up 23% fuels multi-year revenue growth.

What critics are saying

  • CRRC undercuts FLXdrive pricing 20-30%, erodes freight share.
  • FRA 2027 zero-emission mandate delays deliveries via battery shortages.
  • $1.2B PTC lawsuit over 2025 derailments cripples $8.2B backlog.

What makes Wabtec unique

  • FLXdrive battery-electric locomotive cuts fuel use 30% with 7 MWh capacity.
  • Acquired Frauscher in 2025 for leading axle counting and train detection.
  • Dellner Couplers acquisition adds safety-critical passenger rail systems.

Help us improve and share your feedback! Did you find this helpful?

Benefits

Health Insurance

401(k) Retirement Plan

Performance Bonus

Flexible Work Hours

Company News

Yahoo Finance
Mar 31st, 2026
Westinghouse Air Brake Technologies to report Q1 earnings with 10.5% EPS growth expected

Westinghouse Air Brake Technologies (WAB), a global provider of locomotives and rail equipment with a $41.1 billion market cap, is preparing to release its fiscal Q1 2026 results. Analysts expect adjusted earnings per share of $2.52, up 10.5% year-over-year, with full-year fiscal 2026 EPS forecast at $10.41, representing 16.1% growth. Shares have risen nearly 29% over the past 52 weeks, outperforming the S&P 500's 11.9% gain. The company's Q4 2025 results showed strong performance, with adjusted EPS jumping 25% to $2.10 and sales increasing 14.8% to $2.97 billion. WAB reported a record backlog of $27.4 billion, up 23%, and generated $1.76 billion in cash. Analysts rate the stock a "Moderate Buy", with nine of 13 recommending "Strong Buy".

Yahoo Finance
Mar 6th, 2026
Wabtec shares trade at $260 after 249% gain since 2021, but slow organic growth raises concerns

Wabtec, which provides equipment and systems for the railway industry, has returned 249% since March 2021, outpacing the S&P 500's 77.3% gain. The stock currently trades at $260.47, up 34.8% over the past six months. The company's operating margin has risen 4.9 percentage points over five years to 16.1%, whilst earnings per share grew at 18.9% compounded annually, outpacing its 8.1% revenue growth. This indicates improved profitability as the company expanded. However, Wabtec's organic revenue growth averaged 7.2% year-on-year over the past two years, slightly lagging the sector. This suggests potential challenges with its products, pricing or go-to-market strategy. The stock currently trades at 25.2× forward price-to-earnings ratio.

Yahoo Finance
Feb 16th, 2026
Aristotle Small Cap Equity Fund exits Westinghouse Air Brake as it reaches $43.8B valuation

Aristotle Capital Boston's Small Cap Equity Fund has sold its position in Westinghouse Air Brake Technologies Corporation (NYSE:WAB) after the company grew beyond the small-cap investment universe. The fund redeployed the capital into new positions with potential upside opportunities. Westinghouse Air Brake, which provides equipment and systems for the rail industry, has grown from a small-cap to a large-cap company with a market capitalisation of $43.775 billion. The stock has risen 36.06% over the past twelve months and closed at $256.06 per share on 13 February 2026. The company reported $2.97 billion in sales for Q4 2025, up 14.8% year-on-year. At the end of Q3, 62 hedge funds held positions in Westinghouse Air Brake.

Yahoo Finance
Jul 7th, 2025
Wabtec to Acquire Frauscher Sensor Technology Group

PITTSBURGH, July 07, 2025--Wabtec Corporation (NYSE: WAB) announced today that it has entered into a definitive agreement to acquire Frauscher Sensor Technology Group GmbH ("Frauscher"), a global market leader in train detection, wayside object control solutions and axle counting systems. The acquisition positions Wabtec for accelerated, profitable growth, and further strengthens the Company’s Digital Intelligence business by adding highly attractive and complementary railway signaling technolog

The Globe
Jul 3rd, 2025
North Macedonia’s Wabtec MZT Secures €2.5 Million in Capital Boost

Source link : https://love-europe.com/2025/07/03/north-macedonia/north-macedonias-wabtec-mzt-secures-e2-5-million-in-capital-boost/

INACTIVE