Universal Forest Products Inc

Sr. Cybersecurity Risk Analyst

Universal Forest Products Inc$90K — $120K *
Information Technology
5 - 7 years of experience
Job Overview by Ladders

Qualifications

  • Bachelor's degree in Information Security, Computer Science, or related field (or equivalent experience)
  • 5+ years of experience in cybersecurity risk, governance, or compliance roles
  • Experience building or maintaining a cybersecurity risk register and risk management processes
  • Strong understanding of security frameworks (e.g., NIST, CMMC, ISO 27001)
  • Experience conducting third-party/vendor risk assessments
  • Strong analytical, problem-solving, and risk evaluation skills
  • Ability to translate technical risks into business impact

Responsibilities

  • Lead the development and ongoing maintenance of the enterprise cybersecurity risk register
  • Conduct and lead risk assessments for systems and business initiatives
  • Develop and implement risk management processes and reporting metrics
  • Facilitate risk review sessions with business and IT stakeholders
  • Support and maintain the organization’s CMMC compliance program
  • Develop and mature a third-party cybersecurity risk management program
  • Collaborate with IT and engineering teams to maintain cybersecurity standards

Benefits

  • Professional development opportunities
  • Mentorship from senior analysts
  • Access to industry-leading cybersecurity tools
  • Dynamic and collaborative work environment
  • Health and wellness programs
Full Job Description
Job Summary

The Sr. Cybersecurity Risk Analyst is responsible for leading and maturing the organization's cybersecurity risk management program. This role is accountable for identifying, assessing, and communicating cybersecurity risks across the enterprise, while driving alignment with regulatory requirements, including CMMC. The position will play a key role in building and maintaining the enterprise risk register, developing a third-party risk management program, and partnering with IT teams to establish and maintain secure standards and practices.

The ideal candidate combines strong analytical skills with practical experience in governance, risk, and compliance, and can translate technical risk into actionable business decisions.

Location: Onsite out of our Grand Rapids, MI office.

Work Authorization: Applicants must be currently authorized to work.

Principal Duties and Responsibilities

Risk Management and Governance
  • Lead the development and ongoing maintenance of the enterprise cybersecurity risk register, including risk identification, classification, ownership, and tracking.
  • Conduct and lead risk assessments for systems, applications, projects, and business initiatives.
  • Develop and implement risk management processes, methodologies, and reporting metrics.
  • Facilitate risk review sessions with business and IT stakeholders to ensure accountability and transparency.
  • Develop and track risk mitigation and remediation plans to closure.


Regulatory Compliance (CMMC and Related Frameworks)
  • Support and maintain the organization's CMMC compliance program, including control mapping, evidence collection, and audit readiness.
  • Partner with internal stakeholders (IT, Legal, HR, Plant Operations) to ensure alignment with CMMC and other regulatory requirements.
  • Assist in preparing documentation and responses for assessments, audits, and regulatory inquiries.
  • Monitor evolving compliance requirements and translate them into actionable internal controls.


Third-Party Risk Management
  • Develop and mature a third-party cybersecurity risk management program.
  • Conduct security risk assessments of vendors, SaaS providers, Software, and external partners.
  • Evaluate vendor security posture, shared responsibility models, and contractual security requirements.
  • Partner with procurement and legal teams to integrate security requirements into vendor onboarding and contracting processes.


Security Standards and IT Partnership
  • Collaborate with IT and engineering teams to develop, implement, and maintain cybersecurity standards and secure configuration baselines.
  • Ensure security requirements are embedded into system design, architecture, and operational processes.
  • Provide risk-based guidance on system hardening, segmentation, and control implementation.
  • Support the development of policies, standards, and procedures that are practical, enforceable, and auditable.


Reporting and Communication
  • Communicate risk findings, trends, and recommendations to technical and non-technical stakeholders, including leadership.
  • Develop reporting for executive audiences, including risk summaries, metrics, and program maturity updates.
  • Support audit committee and leadership reporting as needed.


Continuous Improvement
  • Stay current on cybersecurity threats, regulatory changes, and industry best practices.
  • Identify opportunities to improve risk visibility, coverage, and program efficiency.
  • Mentor junior analysts and contribute to the maturity of the GRC function.


Qualifications

Required
  • Bachelor's degree in Information Security, Computer Science, or related field (or equivalent experience).
  • 5+ years of experience in cybersecurity risk, governance, or compliance roles.
  • Experience building or maintaining a cybersecurity risk register and risk management processes.
  • Strong understanding of security frameworks (e.g., NIST, CMMC, ISO 27001).
  • Experience conducting third-party/vendor risk assessments.
  • Strong analytical, problem-solving, and risk evaluation skills.
  • Ability to translate technical risks into business impact.
  • Strong written and verbal communication skills.


Preferred
  • Experience supporting CMMC assessments or similar regulatory compliance programs.
  • Familiarity with manufacturing or operational technology (OT) environments.
  • Experience developing security standards or working closely with infrastructure and engineering teams.
  • Professional certifications such as CISSP, CISM, CRISC, or similar.


About Universal Forest Products Inc

Since 1955, there’s one thing that Universal Forest Products has consistently done: grow. We’ve grown our brand portfolio. We’ve grown our product lines. But, most importantly, we’ve grown our reputation—based on our commitment to grow brands by delivering the absolute best products and service possible. Not only because it’s what you expect, but also because it’s what we demand. Headquartered in Grand Rapids, Mich., with facilities throughout North America, Universal Forest Products is strategically positioned to deliver a wide variety of products to nationwide retailers that cater to both consumers and contractors. Universal Forest Products is a holding company that provides capital, management and administrative resources to subsidiaries that design, manufacture and market wood and wood-alternative products for the retail, construction and industrial markets. To explore all our products, like our outdoor living products or our framing services for the site-built market or our forming products for concrete construction.

Universal Forest Products Inc Careers

Join the dynamic team at Universal Forest Products Inc, a leader in the wood product manufacturing industry, and propel your career to new heights. As part of our commitment to innovation and leadership, we are continuously seeking skilled professionals eager to drive growth and embrace challenges in a diverse and inclusive workplace.

Why Work with Us?

At Universal Forest Products Inc, you are not just taking a job; you are embarking on a fulfilling career. We offer a range of job opportunities that allow you to utilize your skills, from entry-level positions to leadership roles. Our team is our greatest asset, and we invest in their growth through comprehensive training programs and professional development opportunities.

Explore Our Job Opportunities

Whether you're a seasoned professional or a recent graduate, Universal Forest Products Inc offers a variety of career paths in areas such as operations, sales, marketing, and technology. Our internship programs provide a robust foundation for students and recent graduates, offering hands-on experience and networking opportunities that often lead to full-time employment.

Our Culture and Benefits

At Universal Forest Products Inc, we pride ourselves on a culture that fosters innovation, leadership, and teamwork. We understand that job satisfaction extends beyond the workplace, which is why we offer competitive benefits that enhance the lives of our employees and their families. From health and wellness programs to retirement plans, we ensure our team members are supported both personally and professionally.

Join Our Team

Ready to advance your career with Universal Forest Products Inc? Explore our current openings and find the position that matches your skills and interests. Our hiring process is designed to be transparent and engaging, ensuring that all candidates can showcase their strengths from the resume submission to the interview stage.

Commitment to Diversity and Inclusion

Diversity is integral to our company ethos. Universal Forest Products Inc is committed to creating an environment where diverse perspectives are valued and where everyone has the opportunity to succeed. We believe that diversity drives innovation and makes our team stronger.

Develop Your Career

Universal Forest Products Inc is dedicated to the continuous professional development of our employees. With access to cutting-edge training and leadership programs, you can expand your knowledge, enhance your skills, and take on new challenges within the company.

Stay Connected

Don’t miss out on the exciting career opportunities at Universal Forest Products Inc. Stay updated with the latest company news, job openings, and industry insights by joining our career network. Tailor your job alerts to match your career preferences and be the first to know about new positions that fit your profile.

Apply Now

Are you ready to make a significant impact in your career and help shape the future of the wood products industry? Apply today and join a team that values hard work, creativity, and a commitment to excellence. At Universal Forest Products Inc, your future is in your hands.

SEARCH UNIVERSAL FOREST PRODUCTS INC JOBS

READ CAREERS BLOG

SIGN UP FOR JOB ALERT EMAILS

Embark on your journey with Universal Forest Products Inc and transform your professional life in a company that values growth, leadership, and diversity.
Learn more about Universal Forest Products Inc
Size
15,000 employees
Market Cap
$4.9 billion
Industry
Net Income
$246.7 million
Founded
1955
5 Year Trend
+21.7%
Revenue
$5.1 billion
NASDAQ

Similar Jobs

More Jobs at Universal Forest Products Inc

More Information Technology Jobs

Find similar Sr. Cybersecurity Risk Analyst jobs: