Base Career helps you apply smarter for this job.
Key skills for this role
Informa TechTarget (Nasdaq: TTGT) informs, influences and connects the world’s technology buyers and sellers, to accelerate growth from R&D to ROI.
With an unparalleled reach of over 220 highly targeted technology-specific websites and more than 50 million permissioned first-party audience members, Informa TechTarget has a unique understanding of and insight into technology markets.
Underpinned by those audiences and their data, we offer expert-led, data-driven, and digitally enabled services that deliver significant impact and measurable outcomes to our clients. We provide our customers with:
Trusted information that shapes the industry and informs investment
Intelligence and advice that guides and influences strategy
Advertising that grows reputation and establishes thought leadership
Custom content that engages and prompts action
Intent and demand generation that more precisely targets and converts
Our organization is committed to sustainability, diversity, wellbeing, and ethical working practices. Visit informatechtarget.com and follow us on LinkedIn.
For more information, visit informatechtarget.com and follow us on LinkedIn
We are seeking an experienced and strategic Senior Cyber Risk Analyst to join our team. This role requires deep expertise in enterprise cybersecurity risk management, with responsibility for identifying, assessing, and mitigating cyber risks across the organization. You will lead enterprise risk assessments, partner with engineering and security teams on strategic initiatives, and provide executive-level reporting on the organization's cyber risk posture. This position also includes emerging responsibilities in AI governance and technology risk as part of a comprehensive enterprise risk management approach.
Skip the repetitive application forms
Install the Base Career Chrome Extension and autofill job applications across major job boards with your profile.
Trusted by over 500,000 job seekers on Base Career
More from this employer
London, GBR
Newton, USA
London, GBR
London, GBR
Newton, USA
Newton, USA
London, GBR
Newton, USA
Newton, USA
Lead comprehensive enterprise-wide cyber risk assessments across all business operations, systems, and infrastructure
Identify, analyze, and evaluate cybersecurity risks including threats, vulnerabilities, and potential business impacts
Develop and maintain enterprise risk registers, ensuring all cyber risks are properly documented, prioritized, and monitored
Create and implement risk treatment plans and mitigation strategies to reduce organizational exposure
Conduct risk assessments for new technologies, systems, and business initiatives in partnership with engineering and product teams
Utilize risk management frameworks (NIST CSF, ISO 27005, FAIR) to quantify and communicate risk
Assess security risks associated with cloud environments (AWS, Azure, GCP) and hybrid infrastructure
Evaluate cloud architecture designs and configurations for security and compliance risks
Partner with cloud engineering teams to implement security controls and risk mitigation measures
Review and assess risks related to cloud migration projects and infrastructure changes
Oversee vulnerability management program effectiveness and risk prioritization
Analyze vulnerability scan results and penetration test findings to assess enterprise risk exposure
Work with IT and security teams to ensure timely remediation of critical vulnerabilities
Monitor threat intelligence and assess potential impact to the organization
Evaluate the effectiveness of security controls in mitigating identified vulnerabilities
Conduct cybersecurity risk assessments of third-party vendors, suppliers, and business partners
Review vendor security questionnaires, certifications, and audit reports
Assess risks associated with vendor access to systems and data
Monitor ongoing third-party risk and ensure compliance with security requirements
Support vendor risk remediation efforts and contract security requirements
Ensure compliance with relevant cybersecurity regulations, standards, and frameworks (SOC 2, ISO 27001, NIST, Sox, etc.)
Support the development and maintenance of cybersecurity policies, standards, and procedures
Participate in internal and external audits related to cybersecurity and risk management
Monitor regulatory changes and assess impact on organizational risk posture
Contribute to the organization's cybersecurity governance structure and risk committee activities
Prepare comprehensive cyber risk reports and presentations for executive leadership, board of directors, and key stakeholders
Develop and maintain cyber risk dashboards with Key Risk Indicators (KRIs) and Key Performance Indicators (KPIs)
Communicate complex cybersecurity risks in business terms to non-technical executive audiences
Provide regular updates on risk trends, threat landscape, and mitigation progress
Present risk-based recommendations to support strategic business decisions
Partner with engineering, IT, security, and product teams on new initiatives and technology implementations
Provide expert cybersecurity risk guidance during project planning and system design phases
Advise business units on cyber risk implications of strategic decisions and initiatives
Collaborate with cross-functional teams including legal, compliance, privacy, and internal audit
Assess cybersecurity and privacy risks associated with AI/ML systems and emerging technologies
Support the development of AI governance frameworks and responsible AI practices
Evaluate risks related to AI implementation including data privacy, model security, and ethical considerations
Stay current with emerging technology risks and evolving regulatory requirements
Bachelor's degree in Cybersecurity, Information Security, Risk Management, Computer Science, Information Technology, or related field
5-8 years of progressive experience in cybersecurity risk management, information security, or IT risk
Proven track record of conducting enterprise-level cyber risk assessments in complex technology environments
Experience with cloud security risk assessment and cloud platforms (AWS, Azure, GCP)
Demonstrated experience in third-party risk management and vendor security assessments
CRISC (Certified in Risk and Information Systems Control)
CISSP (Certified Information Systems Security Professional)
CISM (Certified Information Security Manager)
CISA (Certified Information Systems Auditor)
CGRC (Certified in Governance, Risk and Compliance)
CCSP (Certified Cloud Security Professional)
Additional relevant cybersecurity or risk management certifications
Strategic risk thinking and business acumen
Proactive risk identification and problem-solving
Executive presence and communication
Stakeholder influence and relationship building
Adaptability to evolving threat landscape
Ethical judgment and integrity
Continuous learning and professional development
Collaboration and cross-functional partnership
TechTarget, Inc., doing business as Informa TechTarget, including its subsidiaries is an equal opportunity employer and complies with all applicable federal, state, and local fair employment practices laws. We strictly prohibit and do not tolerate discrimination against employees, applicants, or any other covered persons because of race, color, sex (including pregnancy), age, national origin or ancestry, ethnicity, religion, creed, sexual orientation, gender identity or expression, status as a veteran, and basis of disability or any other federal, state or local protected class. This policy applies to all terms and conditions of employment, including, but not limited to, hiring, training, promotion, discipline, compensation, benefits, and termination of employment. If you would like to request reasonable adjustments or accommodations to assist your participation in the hiring process and, or in the advertised position, please inform the appropriate Talent Acquisition Partner for the role once they have been in touch. Your request will be reviewed and considered in confidence.
Informa TechTarget complies with the Americans with Disabilities Act (ADA), as amended by the ADA Amendments Act, and all applicable federal, state or local law.
We believe that great things happen when people connect face-to-face. That's why we work in-person with each other, or with customers and partners, three days a week or more. When you’re not spending time together in one of our offices or other workplaces – like at an Informa event – you get the flexibility and support to work from home or remotely.
Our benefits include:
Great community : a welcoming culture with in-person and online social events, our fantastic Walk the World charity day and active colleague groups and networks promoting a positive, supportive, and collaborative work environment
Broader impact : take up to four days per year to volunteer with a philanthropic organization
Career opportunity : the opportunity to develop your career with bespoke training and learning, mentoring platforms and on-demand access to thousands of courses on LinkedIn Learning. When it’s time for the next step, we encourage and support internal job moves
Time out : Open Vacation, plus 10 national holidays, and the chance to work from (almost!) anywhere for up to four weeks a year
Competitive benefits, including a 401k match, health, vision and dental insurance, parental leave and an ESPP offering company shares at a minimum 15% discount
Strong wellbeing support through EAP assistance, mental health first aiders, free access to a wellness app and more
Recognition for great work, with global awards and kudos programs
As an international company, the chance to collaborate with teams around the world
The salary range for this role is $150K-$170K/YR, based on experience.
This posting will automatically expire on September 25, 2026.
Verified company details for this employer are not available yet.
USD 150000-170000 yearly / year
Full-time
Senior · 5+ years experience
Hybrid
Apply faster on company sites with our extension.