Senior Cyber Risk Analyst

Senior Cyber Risk Analyst

London Full-Time 105000 - 150000 £ / year (est.) Home office (partial)
M

At a Glance

  • Tasks: Conduct risk assessments and collaborate with teams to manage cybersecurity risks.
  • Company: Join a leading firm focused on cybersecurity and risk management in the financial sector.
  • Benefits: Enjoy a competitive salary, performance bonuses, and comprehensive benefits including remote work options.
  • Why this job: Make an impact by protecting clients from cyber threats while working in a dynamic environment.
  • Qualifications: Bachelor's degree in Cybersecurity or related field; 5+ years in information security required.
  • Other info: Ideal for those passionate about cybersecurity and eager to engage with diverse stakeholders.

The predicted salary is between 105000 - 150000 £ per year.

We are seeking a Senior Analyst with a robust background in cybersecurity risk assessment and internal security audits, complemented by broad technical expertise across modern IT environments. This role requires a deep understanding of desktops, mobile devices, networks, operating systems, and cloud services, as well as the ability to effectively communicate complex technical concepts to both technical and non-technical stakeholders. The ideal candidate will possess advanced analytical skills, relevant certifications, and experience working cross-functionally—including direct client engagement—to support regulatory and business objectives.

Primary Responsibilities

  • Conduct comprehensive risk assessments of information systems, applications, business processes, and underlying technical infrastructure—including desktops, phones, network devices, operating systems (Windows, macOS, Linux), and cloud platforms (AWS, Azure, GCP).
  • Collaborate closely with compliance, legal, IT, business stakeholders, and external clients to understand operational requirements, regulatory obligations, and risk tolerance.
  • Serve as a technical point of contact for clients, addressing and managing their technical requirements, security concerns, and risk management needs.
  • Clearly document identified risks and work with stakeholders to propose, evaluate, and track compensating controls that address security gaps when standard controls are not feasible.
  • Support and participate in internal security audits, ensuring findings are clearly communicated and remediation plans are actionable and understandable by both technical and non-technical teams.
  • Prepare and deliver risk assessment reports and risk register updates to management, clients, and relevant teams, tailoring communication style and technical depth to the audience.
  • Monitor the effectiveness of compensating controls and recommend improvements as needed to maintain compliance and reduce residual risk across diverse technical environments.
  • Stay current with emerging threats, regulatory changes, and industry best practices in risk management, compensating controls, and evolving enterprise technologies.
  • Assist with incident response planning and post-incident risk evaluation, leveraging broad technical knowledge to assess impacts and recommend improvements.

Qualifications/Skills Required

  • Bachelor’s degree in Cybersecurity, Information Technology, Computer Science, or a related field.
  • 5+ years of experience in information security, with a strong focus on risk assessment and/or internal security audits.
  • Demonstrated experience working with compliance, legal, business teams, and clients to assess and document security risks and compensating controls.
  • Advanced knowledge of risk management frameworks (e.g., NIST, ISO 27001, CIS20) and regulatory requirements relevant to the financial sector.
  • Broad technical knowledge spanning desktops, mobile devices, networking, operating systems, and cloud services.
  • Proficiency with risk analytics, GRC tools, and security assessment methodologies.
  • Exceptional analytical, communication, and report-writing skills, with the ability to translate complex technical issues into clear, actionable recommendations for both technical and non-technical audiences.

Desired Skills

  • Experience in the financial services sector or advisory work with a leading consulting firm.
  • Familiarity with the design and evaluation of compensating controls in regulated environments.
  • Ability to translate technical risks into business impacts and actionable recommendations.
  • Experience presenting technical risk findings to executive leadership, clients, and non-technical stakeholders.
  • One or more of the following certifications: CISSP, CISA, CompTIA CySA+.

The estimated base salary range for this position is $175,000 to $250,000, which is specific to New York and may change in the future. Millennium pays a total compensation package which includes a base salary, discretionary performance bonus, and a comprehensive benefits package. When finalizing an offer, we take into consideration an individual’s experience level and the qualifications they bring to the role to formulate a competitive total compensation package.

Senior Cyber Risk Analyst employer: Millennium Management, LLC

At Millennium, we pride ourselves on being an exceptional employer, offering a dynamic work culture that fosters collaboration and innovation in the heart of New York. Our commitment to employee growth is evident through comprehensive training programs and opportunities for advancement, while our competitive compensation package, including performance bonuses and extensive benefits, ensures that our team members feel valued and supported. Join us to be part of a forward-thinking organisation where your expertise in cybersecurity will make a meaningful impact.
M

Contact Detail:

Millennium Management, LLC Recruiting Team

StudySmarter Expert Advice 🤫

We think this is how you could land Senior Cyber Risk Analyst

✨Tip Number 1

Familiarise yourself with the latest cybersecurity frameworks and regulations, especially those relevant to the financial sector. This knowledge will not only help you in interviews but also demonstrate your commitment to staying current in a rapidly evolving field.

✨Tip Number 2

Network with professionals in the cybersecurity field, particularly those who work in risk assessment or compliance roles. Engaging with industry peers can provide valuable insights and potentially lead to referrals that could enhance your application.

✨Tip Number 3

Prepare to discuss specific examples of how you've successfully managed risk assessments or audits in previous roles. Being able to articulate your hands-on experience will set you apart from other candidates.

✨Tip Number 4

Showcase your ability to communicate complex technical concepts clearly. Practice explaining technical risks and solutions in layman's terms, as this skill is crucial for engaging with non-technical stakeholders effectively.

We think you need these skills to ace Senior Cyber Risk Analyst

Cybersecurity Risk Assessment
Internal Security Audits
Technical Expertise in IT Environments
Knowledge of Operating Systems (Windows, macOS, Linux)
Cloud Services Proficiency (AWS, Azure, GCP)
Risk Management Frameworks (NIST, ISO 27001, CIS20)
Regulatory Compliance Knowledge
Risk Analytics and GRC Tools
Exceptional Analytical Skills
Effective Communication Skills
Report Writing Skills
Client Engagement Experience
Compensating Controls Design and Evaluation
Incident Response Planning
Ability to Translate Technical Risks into Business Impacts
CISSP, CISA, or CompTIA CySA+ Certification

Some tips for your application 🫡

Tailor Your CV: Make sure your CV highlights your experience in cybersecurity risk assessment and internal security audits. Emphasise your technical expertise with desktops, mobile devices, networks, operating systems, and cloud services, as these are crucial for the role.

Craft a Compelling Cover Letter: In your cover letter, clearly articulate your understanding of the responsibilities outlined in the job description. Mention specific examples of how you've collaborated with compliance, legal, and business teams to assess and document security risks.

Highlight Relevant Certifications: If you hold any relevant certifications such as CISSP, CISA, or CompTIA CySA+, make sure to prominently feature them in your application. These credentials can significantly strengthen your candidacy.

Showcase Communication Skills: Since the role requires effective communication with both technical and non-technical stakeholders, provide examples in your application that demonstrate your ability to translate complex technical concepts into clear, actionable recommendations.

How to prepare for a job interview at Millennium Management, LLC

✨Showcase Your Technical Expertise

Be prepared to discuss your experience with various operating systems, cloud services, and risk management frameworks. Highlight specific projects where you conducted risk assessments or audits, and be ready to explain the methodologies you used.

✨Communicate Clearly

Since this role involves liaising with both technical and non-technical stakeholders, practice explaining complex concepts in simple terms. Use examples from your past experiences to demonstrate how you've successfully communicated risks and solutions.

✨Demonstrate Analytical Skills

Prepare to showcase your analytical abilities by discussing how you've identified and mitigated risks in previous roles. Bring examples of risk assessment reports you've prepared and be ready to discuss the outcomes of your recommendations.

✨Stay Updated on Industry Trends

Familiarise yourself with the latest trends in cybersecurity and risk management. Be ready to discuss recent threats or regulatory changes that could impact the financial sector, showing that you are proactive and knowledgeable about the field.

Senior Cyber Risk Analyst
Millennium Management, LLC
M
Similar positions in other companies
UK’s top job board for Gen Z
discover-jobs-cta
Discover now
>