Risk Management Analyst

Apex Systems

Oklahoma City (OK)

On-site

USD 85,000 - 105,000

Full time

8 days ago
Application generator

A complete application in a minute — tailored resume and cover letter, ready to send.

Get past ATS filters

Benefits offered by this job

Medical insurance
Dental insurance
Vision insurance
Life insurance
Disability insurance
ESPP
401K
HSA
EAP

Job summary

The Oklahoma Department of Transportation (ODOT) is seeking a Risk Management Analyst to support IT risk management, risk assessments, and remediation efforts. You will coordinate audits, track vulnerabilities, and ensure governance aligns with security standards across the organization.

You will work with cross-functional teams, leadership, auditors, and external partners to strengthen security and compliance in a dynamic environment.

Qualifications

  • Strong analytical and problem-solving skills.
  • Ability to interpret technical data (vulnerabilities, audit findings, EOL assets).
  • Effective communication across technical and non-technical groups.
  • Experience with risk assessment tools, dashboards, and structured documentation.
  • Ability to manage multiple priorities within audit and remediation timelines.
  • Understanding of IT governance principles, cybersecurity fundamentals, and compliance frameworks.
  • Experience supporting IT risk programs or audit remediation is preferred.

Responsibilities

  • Identify, assess, and document IT risks.
  • Maintain the enterprise Risk Register and remediation status.
  • Assist with audits related to IT, facilities, vulnerability, access management, and governance.
  • Utilize dashboards to monitor vulnerabilities and prioritize remediation.
  • Support incident investigations and update risk assessments.
  • Draft and maintain SOPs and risk-related documentation.
  • Review change requests for risk impact and policy alignment.
  • Communicate risk findings clearly to managers and teams.

Skills

Analytical skills
Problem-solving
Data interpretation
Effective communication
Risk assessment tools
Dashboards
Documentation
Prioritization
IT governance
Cybersecurity basics

Tools

Risk assessment tools
Dashboards
Audit management tools

Job description

Job Description

Job#: 3051473

Organization: Oklahoma Department of Transportation (ODOT)

Location: Oklahoma City, OK

Employment Type: Contract / Vendor-Provided Resource

Role Summary

The Risk Management Analyst supports ODOT by identifying, assessing, and monitoring technology and operational risks across the organization. This role contributes directly to the IT Risk Management Program, partnering with cross-functional teams, leadership, auditors, and external partners to strengthen security, compliance, and governance.

The analyst plays a key role in audit coordination, vulnerability management, risk assessments, and documenting remediation activities—ensuring ODOT maintains a secure, compliant, and well-governed technology environment.

Key Responsibilities
Risk Identification & Assessment
  • Perform annual and ongoing IT risk assessments, including state-mandated SB584 Risk Assessments.
  • Identify and document risks related to systems, applications, End-of-Life (EOL) software, and unsupported technologies.
  • Evaluate audit findings and contribute to remediation planning.
Risk Register & Documentation
  • Maintain the enterprise Risk Register, updating risks, remediation status, and next steps.
  • Prepare and organize artifacts for audits, assessments, and leadership reviews.
Audit Support & Governance
  • Assist with IT, facility, vulnerability, access management, and governance-related audits.
  • Coordinate with OMES, Internal Audit, State Audit, and external partners to remediate.
Vulnerability & Threat Management
  • Use dashboards and tools to monitor workstation and server vulnerabilities.
  • Prioritize remediation using CVSS, CISA KEV, and partner intelligence, collaborating with technical teams.
Incident Response Support
  • Participate in investigations of IT incidents and assist with root-cause validation and corrective actions.
  • Ensure incidents feed back into updated risk assessments and SOPs.
Policy, SOP, and Compliance Support
  • Draft, update, and maintain SOPs and documentation for risk assessment, change management, and third‑party risk processes.
  • Support adherence to IT governance standards, security frameworks, and regulatory requirements.
Change Control Participation
  • Review and evaluate change requests for risk impact, documentation completeness, and policy alignment.
  • Communicate approvals or required revisions with Change Control Board participants.
Collaboration & Communication
  • Work closely with IT, Innovation, Cybersecurity, OMES, and external partners to advance risk initiatives.
  • Clearly communicate risk insights, remediation needs, and technical findings to managers and team members.
Core Competencies
  • Strong analytical and problem‑solving skills.
  • Ability to interpret technical data (vulnerabilities, audit findings, EOL assets).
  • Effective communication across technical and non‑technical groups.
  • Experience with risk assessment tools, dashboards, and structured documentation.
  • Ability to manage multiple priorities within audit and remediation timelines.
  • Understanding of IT governance principles, cybersecurity fundamentals, and compliance frameworks.
Preferred Background
  • Experience supporting IT risk programs, cybersecurity functions, or audit remediation efforts.
  • Familiarity with enterprise environments, state compliance programs, vulnerability management, or SB584-related assessments.
  • Ability to coordinate with diverse stakeholders including technical teams, auditors, and leadership.
Other Requirements
  • Must pass background and vehicle checks.
  • Onsite or hybrid work per ODOT management direction.
  • Vendor will provide resources directed and supervised by an ODOT manager.
Benefits Overview
  • Everforth Apex offers a range of supplemental benefits, including medical, dental, vision, life, disability, and other insurance plans that offer an optional layer of financial protection.
  • We offer an ESPP (employee stock purchase program) and a 401K program which allows you to contribute typically within 30 days of starting, with a company match after 12 months of tenure.
  • Everforth Apex also offers a HSA (Health Savings Account on the HDHP plan), a SupportLinc Employee Assistance Program (EAP) with up to 8 free counseling sessions, a corporate discount savings program and other discounts.
  • In terms of professional development, Everforth Apex hosts an on-demand training program, provides access to certification prep and a library of technical and leadership courses/books/seminars once you have 6+ months of tenure, and certification discounts and other perks to associations that include CompTIA and IIBA.
  • Everforth Apex has a dedicated customer service team for our Consultants that can address questions around benefits and other resources, as well as a certified Career Coach. You can access a full list of our benefits, programs, support teams and resources within our 'Welcome Packet' as well, which an Everforth Apex team member can provide.
Equal Opportunity Employer

Everforth Apex Systems is an equal opportunity employer. We do not discriminate or allow discrimination on the basis of race, color, religion, creed, sex (including pregnancy, childbirth, breastfeeding, or related medical conditions), age, sexual orientation, gender identity, national origin, ancestry, citizenship, genetic information, registered domestic partner status, marital status, disability, status as a crime victim, protected veteran status, political affiliation, union membership, or any other characteristic protected by law. Everforth Apex will consider qualified applicants with criminal histories in a manner consistent with the requirements of applicable law.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

IT Governance Analyst
IT Governance Analyst

Apex Systems • Durham (NC), Northern (KY)

Hybrid
USD 90,000 - 120,000
Health insurance
401K with company match
HSA (Health Savings Account)
+3
Systems Analyst III
Systems Analyst III

Apex Systems • Tulsa (OK)

Hybrid
USD 80,000 - 105,000
Financial Analyst
Financial Analyst

Apex Systems • Reston (VA)

On-site
USD 60,000 - 81,000
ABA Testing Analyst
ABA Testing Analyst

Apex Systems • Merrifield (VA)

Hybrid
USD 90,000 - 120,000
Medical insurance
401K with company match
HSA
+3
Network Security Analyst 1
Network Security Analyst 1

Apex Systems • Austin (TX)

On-site
USD 70,000 - 90,000
Medical, dental, vision insurance
401(k) with company match
Employee stock purchase program (ESPP)
+3
Cyber Security Specialist MID - App Services EPS
Cyber Security Specialist MID - App Services EPS

Apex Systems • Norfolk (VA)

On-site
USD 70,000 - 110,000
Medical insurance
Dental insurance
Vision insurance
+1
Risk and Compliance Systems Analyst
Risk and Compliance Systems Analyst

Apex Systems • Merrifield (VA)

Hybrid
USD 80,000 - 110,000
Medical, dental, and vision insurance
401K program with company match
Employee Assistance Program (EAP)
IT Risk & Governance Analyst
IT Risk & Governance Analyst

Kappaalphapsi1911 • Chandler (AZ)

Hybrid
IT Risk & Governance Analyst
IT Risk & Governance Analyst

Gamma Phi Omega International • Chandler (AZ)

Hybrid
USD 90,000 - 120,000
Technical Support Analyst 3
Technical Support Analyst 3

Apex Systems • Virginia (MN)

On-site
USD 60,000 - 80,000
Medical insurance
Dental insurance
Vision insurance
+6