1

Business Risk Manager Jobs (NOW HIRING)

Business Risk Analyst

Saint Louis Park, MN

$44K - $84K/yr

  • Medical

  • Dental

  • Vision

  • Retirement

The selected candidate will have the opportunity to support the Business Risk Manager in building risk and control activities in the first line of defense for the Consumer, Commercial and Shared ...

Business Risk Analyst

Saint Louis Park, MN · On-site

$44K - $84K/yr

  • Medical

  • Dental

  • Vision

  • Retirement

The selected candidate will have the opportunity to support the Business Risk Manager in building risk and control activities in the first line of defense for the Consumer, Commercial and Shared ...

The Risk Management (RM) Business Risk Office is seeking a highly motivated Risk Manager to apply their analytical, risk, communication, and project management skills to support Operational Risk ...

The Risk Management (RM) Business Risk Office is seeking a highly motivated Risk Manager to apply their analytical, risk, communication, and project management skills to support Operational Risk ...

The Risk Management (RM) Business Risk Office is seeking a highly motivated Risk Manager to apply their analytical, risk, communication, and project management skills to support Operational Risk ...

Business Risk Professional

Owensboro, KY · On-site

  • Medical

  • Dental

  • Vision

  • Life

  • Retirement

  • PTO

Working in a queue-based production environment, the Business Risk Professional manages a high volume of loan reviews while maintaining a strong focus on quality, accuracy, and timeliness. The ...

Business Risk Analyst

Atlanta, GA · On-site +1

$70K - $98K/yr

  • Medical

  • Dental

  • Vision

  • Life

  • Retirement

The ideal candidate will have experience performing risk assessments, developing and/or managing business continuity plans, working with external auditors and cybersecurity frameworks. Who you will ...

Manager, GWAM Business Risk Management

Boston, MA · On-site

$92K - $160K/yr

  • Medical

  • Dental

  • Vision

  • Life

  • Retirement

  • PTO

The Manager, GWAM Business Risk Management, is a first line (Line 1B) risk management role responsible for supporting the execution of the Global Wealth and Asset Management (GWAM) Risk and Control ...

New

next page

Showing results 1-20

Business Risk Manager information

See salary details

$30K

$108.3K

$178.5K

How much do business risk manager jobs pay per year?

As of Aug 19, 2026, the average yearly pay for business risk manager in the United States is $108,284.00, according to ZipRecruiter salary data. Most workers in this role earn between $86,500.00 and $125,000.00 per year, depending on experience, location, and employer.

What are the key skills and qualifications needed to thrive as a business risk manager?

To thrive as a Business Risk Manager, you need strong analytical skills, risk assessment expertise, and a background in finance, business, or a related field, often backed by a bachelor's degree or higher. Familiarity with risk management frameworks, regulatory compliance systems, and certifications like FRM (Financial Risk Manager) or CRM (Certified Risk Manager) is typically required. Exceptional communication, problem-solving, and stakeholder management skills help you effectively identify, mitigate, and communicate risks across an organization. These competencies are crucial for proactively managing threats, ensuring regulatory compliance, and supporting the long-term stability and success of the business.

How does a business risk manager typically collaborate with other departments to address organizational risks?

As a Business Risk Manager, cross-functional collaboration is a key part of the role. You’ll regularly work with departments such as finance, compliance, operations, and IT to identify potential risks, assess their impact, and develop mitigation strategies. This often involves facilitating risk assessment workshops, sharing reports, and ensuring that risk controls are integrated into business processes. Effective communication and relationship-building skills are essential, as you’ll act as a bridge between senior management and operational teams to align risk management efforts with organizational goals.

What is the difference between Business Risk Manager vs Risk Analyst?

AspectBusiness Risk ManagerRisk Analyst
CredentialsCertifications like CRM, FRM, or CRC; bachelor's degree in business, finance, or related fieldCertifications such as FRM or CRM; bachelor's degree in finance, economics, or related field
Work EnvironmentStrategic planning, risk assessment, and policy development in corporate settingsData analysis, risk modeling, and reporting in finance or insurance firms
Employer & IndustryCorporations, financial institutions, insurance companiesFinancial services, consulting firms, insurance companies

The Business Risk Manager focuses on developing risk strategies and policies at a strategic level, while the Risk Analyst primarily conducts data analysis and risk assessments. Both roles require similar certifications and often work within the same industries, but their responsibilities differ in scope and focus.

Do business risk managers make good money?

Business risk managers typically earn a competitive salary that varies based on experience, industry, and location. According to industry data, median annual salaries range from $80,000 to over $120,000, with higher earnings possible for those with advanced certifications or in senior roles. The profession often requires strong analytical skills and knowledge of risk assessment tools.

How much do business risk managers make?

Business risk managers typically earn a median annual salary of around $100,000, with salaries ranging from approximately $70,000 to over $140,000 depending on experience, industry, and location. Advanced certifications and strong analytical skills can lead to higher compensation in this role.

What does a business risk manager do?

A business risk manager identifies, assesses, and develops strategies to mitigate potential risks that could impact an organization's operations, financial health, or reputation. They analyze data, implement risk management frameworks, and work with various departments to ensure compliance and resilience. Strong analytical skills and knowledge of industry regulations are essential for this role.
More about Business Risk Manager jobs

What cities are hiring for Business Risk Manager jobs?

Cities with the most Business Risk Manager job openings:

What states have the most Business Risk Manager jobs?

States with the most job openings for Business Risk Manager jobs include:

Infographic showing various Business Risk Manager job openings in the United States as of August 2026, with employment types broken down into 84% Full Time, 13% Part Time, and 3% Contract. Highlights an 89% Physical, 3% Hybrid, and 8% Remote job distribution, with an average salary of $108,284 per year, or $52.1 per hour.

Senior Technology & Business Risk Manager

Biodesix, Inc.

Louisville, CO

Full-time

Medical, Dental, Vision, Life, Retirement, PTO

Posted 2 days ago

New


Job description

Senior Technology amp; Business Risk Manager
ABOUT US:
Biodesix is a leading diagnostic solutions company, driven to improve clinical care and outcomes for patients. Biodesix Diagnostic Tests support clinical decisions to expedite personalized care and improve outcomes for patients with lung disease. Biodesix Development Services enable the world’s leading biopharmaceutical, life sciences, and research institutions with scientific, technological, and operational capabilities that fuel the development of diagnostic tests, tools, and therapeutics.
Our Mission: Transform patient care and improve outcomes through personalized diagnostics that are timely, accessible, and address immediate clinical needs.
Our Vision: A world where patient diseases are conquered with the guidance of personalized diagnostics.
For more information, please visit www.biodesix.com.
LOCATION:
On-Site in Louisville, CO

THE ROLE:
The Senior Technology amp; Business Risk Manager is responsible for leading enterprise technology risk management, business continuity, governance, compliance coordination, and operational resilience activities across the organization. This role oversees risk assessment processes, business continuity planning, control governance, third-party risk management, audit readiness, and technology risk initiatives that support business operations, cybersecurity objectives, regulatory compliance, and organizational growth. The position partners closely with Infrastructure Engineering, Cybersecurity, Software Development, Business Intelligence, Compliance, Legal, Quality, and business stakeholders to ensure risks are identified, evaluated, communicated, and appropriately mitigated. This position is designed for a hands-on technology risk leader capable of assessing cybersecurity, infrastructure, operational, and business risks while helping mature enterprise governance, risk management, and operational resilience programs. The successful candidate must be comfortable operating in a highly technical environment and actively participating in risk assessments, audits, technology reviews, business continuity planning, vendor risk evaluations, control design discussions, and operational resilience initiatives.
WHAT YOU'LL DO:
Enterprise Risk Management amp; Governance
  • Lead enterprise-wide risk identification, assessment, prioritization, mitigation, and reporting activities across technology and business domains.
  • Maintain and continuously improve the enterprise risk register, risk methodologies, scoring models, and governance processes
  • Facilitate cross-functional risk assessments involving cybersecurity, infrastructure, applications, cloud technologies, data protection, operational processes, and third-party services
  • Establish risk metrics, key risk indicators (KRIs), dashboards, and executive reporting processes.
  • Coordinate risk review activities with business leaders and IT stakeholders to ensure risk ownership and mitigation accountability
  • Support risk-informed decision-making throughout technology and business initiatives
  • Partner with business leaders to identify, assess, and monitor operational, strategic, regulatory, and enterprise risks beyond traditional technology domains
  • Drive enterprise risk governance through regular risk reviews, executive reporting, and cross-functional governance committees
Technology Risk amp; Cybersecurity Governance
  • Partner with Infrastructure Engineering and Cybersecurity teams to evaluate technical risks, control effectiveness, and remediation strategies
  • Assess enterprise risks associated with emerging technologies, including Artificial Intelligence (AI), automation, cloud-native platforms, and evolving digital capabilities
  • Support governance activities aligned with NIST CSF, NIST RMF, ISO 27001, SOC 2, HIPAA, SOX and related frameworks
  • Assist with root cause analysis, risk investigations, control reviews, and corrective action planning
  • Conduct and lead technology risk assessments involving infrastructure, cloud services, enterprise applications, identity and access management, cybersecurity controls, endpoint technologies, and operational technology environments
  • Stay current with emerging cybersecurity threats, regulatory developments, risk management practices, and technology trends
Business Continuity amp; Operational Resilience
  • Lead development and continuous improvement of the Business Continuity Program
  • Conduct Business Impact Assessments (BIAs) and recovery planning activities across business functions
  • Coordinate tabletop exercises, continuity testing, and resilience validation activities
  • Partner with Infrastructure and Security teams to ensure Disaster Recovery capabilities support business recovery objectives
  • Evaluate operational resiliency risks involving critical business processes, vendors, and technology dependencies
  • Support incident response reviews and lessons-learned activities following significant operational disruptions
  • Coordinate responses to customer security questionnaires, technology due diligence activities, and third-party assurance requests
Compliance, Audit amp; Third-Party Risk
  • Coordinate readiness activities for internal and external audits including SOC 2, HIPAA, ISO 27001, SOX, and related assessments
  • Partner with business and IT teams to collect audit evidence, validate controls, and track remediation activities
  • Support vendor risk assessments, third-party reviews, and ongoing vendor monitoring activities
  • Assist with policy development, control governance, and risk-related training initiatives
  • Monitor evolving regulatory requirements impacting technology, cybersecurity, privacy, and operational risk programs
  • Maintain documentation supporting governance, compliance, continuity, and risk management activities
  • Partner with Finance, Internal Audit, and business stakeholders to support SOX IT General Controls (ITGCs), application controls, control testing, remediation activities, and audit readiness efforts
  • Evaluate technology, cybersecurity, and operational control effectiveness and recommend improvements to reduce organizational risk exposure
Operational Governance amp; Leadership
  • Drive maturity improvements across enterprise risk, business continuity, and governance programs
  • Develop and maintain risk management procedures, methodologies, standards, and documentation
  • Drive accountability through governance reviews, risk reporting, mitigation tracking, and issue escalation processes
  • Support audit readiness and control effectiveness activities within regulated environments
  • Provide enterprise leadership by influencing cross-functional teams, facilitating governance forums, and driving accountability for organizational risk management activities
  • Foster a collaborative, risk-aware, and business-focused culture across the organization
  • Oversee the enterprise technology policy governance process, including policy lifecycle management, periodic reviews, and alignment with regulatory and business requirements
WHAT YOU'LL BRING:
  • Bachelor's degree in Information Technology, Information Systems, Cybersecurity, Computer Science, Engineering, Risk Management, or related technical field
  • 8+ years of progressive experience in IT Risk Management, Cybersecurity Governance, Enterprise Risk Management, Information Security, Internal IT Audit, GRC, or related disciplines
  • 5+ years of leadership experience leading enterprise risk, cybersecurity governance, business continuity, compliance, or technology risk programs
  • Experience conducting enterprise technology risk assessments and control evaluations
  • Demonstrated experience assessing enterprise technology environments, including infrastructure, cloud platforms, cybersecurity technologies, identity and access management, endpoint technologies, and enterprise applications
  • Experience implementing or supporting frameworks such as NIST CSF, NIST RMF, ISO 27001, COBIT, SOX ITGC, HIPAA Security Rule, SOC 2, HITRUST, or similar frameworks
  • Demonstrated ability to lead enterprise risk management, business continuity, governance, or cybersecurity risk programs
  • Strong organizational skills and ability to balance strategic planning with hands-on execution
  • Experience influencing business and technology leaders regarding risk decisions
  • Strong analytical and problem-solving capabilities involving technology, cybersecurity, operational, and business risks
  • Demonstrated understanding of enterprise infrastructure, cloud platforms, identity and access management, endpoint technologies, data protection, and cybersecurity controls
  • Comfortable participating in technical reviews, architecture discussions, risk assessments, and remediation planning
  • Ability to evaluate technical control effectiveness and communicate risk implications to leadership
  • Strong written and verbal communication skills with executive-level presentation abilities
  • Ability to communicate technical risk concepts to both technical and non-technical audiences
  • Collaborative mindset with the ability to influence stakeholders across multiple business functions
  • Experience operating within regulated or compliance-focused environments
  • Familiarity with healthcare, laboratory, biotechnology, or highly regulated industry frameworks
  • Experience presenting risk assessments and recommendations to executive leadership
  • CISSP, CISM, CRISC, CGRC, CISA, CBCP, PMP, or equivalent certifications, preferred
  • Experience with ServiceNow GRC, Archer, AuditBoard, Drata, or similar platforms, preferred
  • Experience within healthcare, diagnostics, biotechnology, pharmaceutical, or regulated industries, preferred
  • Experience supporting AI governance, AI risk management, or emerging technology oversight, preferred
WHAT YOU'LL GET:
  • Annual Base Salary Range $145,000 - $160,000
  • Discretionary Bonus opportunity
  • Comprehensive health coverage: Medical, Dental, and Vision
  • Insurance: Short/Long Term Disability and Life Insurance
  • Financial benefits: 401(k), Flex Spending Account
  • 120 hours of annual vacation
  • 72 hours of paid sick time off
  • 11 paid holidays + 3 floating holidays
  • Employee Assistance Program
  • Voluntary Benefits
  • Employee recognition program
WHAT TO EXPECT IN THE INTERVIEW PROCESS:

We want you to have a clear view of the IT Operations amp; End User Services Manager role—and we want to get to know the real you. Our interview process is designed to be thorough, transparent, and give you direct insight into what it’s like to work here:

  1. Virtual Recruiter Screen – A conversation to understand your background, what motivates you, and where you're looking to grow.
  2. Hiring Manager Interview – A deeper discussion about your experience, skills, and approach.
  3. Final On-Site Interview – Tour our corporate headquarters; interview with additional members of the team to discuss alignment and fit.
Individual base compensation is based on various factors unique to each candidate, including skill set, experience, qualifications, and other job-related aspects.
Biodesix is an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or veteran status.