1

Chief Information Risk Officer Jobs (NOW HIRING)

Join Our Team as a Chief Risk Officer at Starion Bank in Bismarck! Are you a strategic, disciplined ... information security, bank security, AML/CFT, and Fraud functions. โ€ข Responsible for designing ...

Chief Risk Officer

Chicago, IL ยท On-site

$310K/yr

About the Job Chief Risk Officer - To $310K - Chicago, IL - Job # 3760 Who We Are: The Symicor ... Working knowledge of information security and cybersecurity practices and methodologies and ...

Chief Risk Officer (CRO) Organization: Sezzle Bank ILC Location: Utah, USA Employment Type ... Oversee the Bank's CISO to ensure information assets, sensitive customer data, and technologies are ...

Chief Risk Officer | Division: Enterprise Risk Mgmt| Work Days: Monday - Friday| Hours of Operation: 8:00am - 5:00pm Why Broadway Bank: We are one of the largest independently owned banks in Texas ...

Chief Information Security Officer

New York, NY ยท On-site

$248K - $400K/yr

This role will collaborate and interact with the Chief Risk Officer (CRO) and the Office of Enterprise Risk Management (OERM) on information security risk related topics. Responsibilities

Chief Risk Officer | Division: Enterprise Risk Mgmt| Work Days: Monday - Friday| Hours of Operation: 8:00am - 5:00pm Why Broadway Bank: We are one of the largest independently owned banks in Texas ...

next page

Showing results 1-20

Chief Information Risk Officer information

See salary details

$99K

$191.8K

$384K

How much do chief information risk officer jobs pay per year?

As of Jun 6, 2026, the average yearly pay for chief information risk officer in the United States is $191,763.00, according to ZipRecruiter salary data. Most workers in this role earn between $168,500.00 and $190,500.00 per year, depending on experience, location, and employer.

What are the primary challenges a Chief Information Risk Officer faces when aligning risk management strategies with rapidly evolving technology landscapes?

Chief Information Risk Officers often encounter the challenge of keeping information risk management practices up-to-date with fast-changing technologies and emerging threats. They must continuously assess new digital tools, cloud services, and regulatory requirements while ensuring their teams are equipped to handle unexpected vulnerabilities. This role requires proactive collaboration with IT, legal, and business units to implement effective policies and foster a culture of risk awareness across the organization. Adapting risk frameworks and communicating complex risks to non-technical stakeholders are also common hurdles.

What is a Chief Information Risk Officer?

A Chief Information Risk Officer (CIRO) is a senior executive responsible for identifying, assessing, and mitigating information-related risks within an organization. They oversee strategies to protect sensitive data, ensure compliance with regulations, and manage risks associated with information technology and cybersecurity. The CIRO collaborates with other executives to develop risk management frameworks and respond to emerging threats, ensuring the organization's information assets remain secure and resilient.

What are the key skills and qualifications needed to thrive as a Chief Information Risk Officer, and why are they important?

To thrive as a Chief Information Risk Officer, you need deep expertise in risk management, cybersecurity, regulatory compliance, and typically a degree in information technology or a related field. Familiarity with risk assessment tools, security frameworks (such as ISO 27001 or NIST), and certifications like CISSP or CISM are highly valued. Exceptional leadership, strategic thinking, and communication skills help build cross-functional trust and drive risk-aware cultures. These competencies are crucial for effectively protecting organizational assets, ensuring regulatory compliance, and enabling informed decision-making at the executive level.

What is the difference between Chief Information Risk Officer vs Chief Information Security Officer?

AspectChief Information Risk OfficerChief Information Security Officer
Primary FocusManaging overall information risks, including compliance, governance, and enterprise risk managementProtecting information assets through security policies, incident response, and cybersecurity measures
CertificationsISO 27001, CRISC, CISSP, CISMCISSP, CISM, GIAC Security certifications
Work EnvironmentExecutive leadership, risk management teams, compliance departmentsSecurity teams, IT departments, incident response units
Industry UsageFinancial services, healthcare, large enterprisesTechnology firms, government agencies, organizations with high security needs

The Chief Information Risk Officer focuses on managing overall information risks across the organization, including compliance and governance, while the Chief Information Security Officer concentrates on protecting information assets through cybersecurity measures. Both roles require similar certifications and often collaborate but serve distinct strategic functions within an organization.

More about Chief Information Risk Officer jobs
What job categories do people searching Chief Information Risk Officer jobs look for? The top searched job categories for Chief Information Risk Officer jobs are:
Infographic showing various Chief Information Risk Officer job openings in the United States as of May 2026, with employment types broken down into 89% Full Time, and 11% Part Time. Highlights an 78% In-person, 11% Hybrid, and 11% Remote job distribution, with an average salary of $191,763 per year, or $92.2 per hour.

Chief Information Risk Officer

Texascapitalbank

Richardson, TX โ€ข On-site

Full-time

Medical, Life, Retirement, PTO

Posted 16 days ago


Job description

Texas Capital is built to help businesses and their leaders. Our depth of knowledge and expertise allows us to bring the best of the big firms at a scale that works for our clients, with highly experienced bankers who truly invest in people's success - today and tomorrow.

While we are rooted in core financial products, we are differentiated by our approach. Our bankers are seasoned financial experts who possess deep experience across a multitude of industries. Equally important, they bring commitment - investing the time and resources to understand our clients' immediate needs, identify market opportunities and meet long-term objectives. At Texas Capital, we do more than build business success. We build long-lasting relationships.

Texas Capital provides a variety of benefits to colleagues, including health insurance coverage, wellness program, fertility and family building aids, life and disability insurance, retirement savings plans with a generous 401K match, paid leave programs, paid holidays, and paid time off (PTO).

Headquartered in Dallas with offices in Austin, Fort Worth, Houston, Richardson, Plano and San Antonio, Texas Capital was recently named Best Regional Bank in 2024 by Bankrate and was named to The Dallas Morning News' Dallas-Fort Worth metroplex Top Workplaces 2023 and GoBankingRate's 2023 list of Best Regional Banks. For more information about joining our team, please visit us at www.texascapitalbank.com.

Brief Overview of Position

The Chief Information Risk Officer (CIRO) is responsible for the development, implementation, and management of the information risk strategy. Reporting to the Chief Risk Officer, the CIRO oversees and provides effective challenge to the first line of defense CISO organization and provides independent reporting to the Board of Directors for cybersecurity, data privacy, risk management, and regulatory compliance. The CIRO will work closely with other executive leaders to ensure information risk initiatives align with business goals while safeguarding the organization from internal and external threats.

Responsibilities

Develop and implement a comprehensive information risk strategy and written information security program that includes information, and cyber security.
Collaborate with executive leadership to align information risk goals with the organization's strategic objectives.
Report key risks and metrics to the Board of Directors and the Enterprise Risk Committee.
Oversee and challenge the first line implementation of cybersecurity policies, procedures, cloud security posture and technologies.
Provide independent and effective challenge to first line of defense cyber security to ensure the protection of IT infrastructure, networks, and sensitive data from cyber threats, breaches, and attacks.
Manage the identification, monitoring, and response to potential security incidents.
Identify and assess security risks, vulnerabilities, and potential threats across the organization.
Ensure compliance with relevant laws, regulations, and industry standards
Develop audit processes and oversee external audits or assessments.
Deliver annual assessments of the information security program and maturity rating.
Assess and challenge the use of artificial intelligence (AI) and machine learning technologies within the organization, ensuring appropriate security controls, bias mitigation, and compliance with emerging AI regulations.
Monitor and respond to AI-driven security threats, including adversarial AI attacks, deepfake fraud, and automated phishing campaigns, developing policies and countermeasures to protect the organization against evolving AI-enabled risks.
Develop and implement plans for incident management, disaster recovery, and business continuity in the event of security breaches.
Lead initiatives to protect personal, customer, and organizational data.
Implement strategies to mitigate risks related to data breaches and unauthorized access to sensitive information.
Design and implement security awareness programs for employees, including training on recognizing potential threats (e.g., phishing, social engineering).
Foster a culture of security within the organization to encourage proactive risk management behaviors.
Lead the organization's response to security incidents, ensuring timely and effective resolution.
Develop and maintain crisis management protocols, including communication strategies with internal and external stakeholders.
Identify and evaluate new technologies, tools, and services that can enhance the organization's risk posture

Qualifications

Bachelor's degree in Computer Science, Information Technology, Cybersecurity, or equivalent
Masters degree in relevant discipline preferred
15+ years of related experience
Proven experience in a senior leadership role, ideally in a corporate or large-scale organization.
Experience in the finance and banking industry is preferred
Extensive knowledge of information security principles, including risk management, threat analysis, security architecture, and incident response.
Strong understanding of regulatory requirements and compliance standards.
Excellent communication and leadership skills, with the ability to influence decision-making at the executive level.
Relevant certifications such as CISSP, CISM, or CISA are preferred.
Working knowledge and experience with key regulatory entities and related regulations, including the FDIC, FFIEC, CFPB, and FINRA.
Deep knowledge of banking regulations, including OCC supervisory expectations for technology and cybersecurity risk.
Demonstrated expertise in GLBA, SOX, and PCI-DSS compliance requirements and their operational implications.
Proficiency applying the NIST Cybersecurity Framework to enterprise risk management programs.
Experience managing regulatory examinations and responding to findings across multiple frameworks simultaneously.

The duties listed above are the essential functions, or fundamental duties within the job classification. The essential functions of individual positions within the classification may differ. Texas Capital Bank may assign reasonably related additional duties to individual employees consistent with standard departmental policy.Texas Capital is an Equal Opportunity Employer.