SlipstreamJobsFresh Startup & VC-Backed Jobs

Cybersecurity Risk Analyst II

CLEAR - New York, NY, United States - In-office - posted 2026-07-08

Apply on the company site

SlipstreamJobs tracks this role from the company's public career site. Apply directly on the employer's site.

Salary: USD 119,000 - 140,000 / annual

CLEAR is building a secure identity platform serving 43+ million members globally. As Cybersecurity Risk Analyst II, you will own the company's third-party risk management program end-to-end, including vendor security assessments, due diligence, and ongoing monitoring across the partner ecosystem. You'll lead the cyber risk management lifecycle by identifying, assessing, prioritizing, and tracking risks through remediation. A core responsibility is translating complex technical risk into clear, actionable recommendations for business and engineering leaders. You'll develop and maintain meaningful risk metrics, dashboards, and reporting that provide leadership visibility into CLEAR's evolving cyber risk posture. Partnering with Engineering, Product, Privacy, Legal, and Security teams, you'll ensure security requirements are understood, implemented, and validated throughout the development lifecycle. You'll identify and drive continuous process improvements to make risk management more scalable and efficient while reducing friction for internal stakeholders. The role also includes supporting risk quantification initiatives using probabilistic and data-driven approaches to better measure, prioritize, and communicate risk. Success is measured by timely completion of third-party risk assessments, accurate prioritization and remediation of high-priority cyber risks, delivery of actionable metrics and reporting, adoption of security requirements across engineering initiatives, reduced assessment cycle times through process improvements, and increased visibility into enterprise cyber risk across the organization. You bring 3-5+ years of cybersecurity risk management experience, ideally in regulated industries (technology, finance, healthcare). You excel at communicating complex technical and business risk to both technical and non-technical audiences, partnering effectively with engineering teams, staying organized across multiple priorities, thriving in ambiguity, and applying analytical thinking to new technologies and business domains. Experience with FAIR or other cyber risk quantification frameworks is a plus.

Similar roles