1

Digital Risk Officer Jobs (NOW HIRING)

Showing results 41-60

Digital Risk Officer information

See salary details

$32.5K

$105.6K

$160K

How much do digital risk officer jobs pay per year?

As of Aug 12, 2026, the average yearly pay for digital risk officer in the United States is $105,602.00, according to ZipRecruiter salary data. Most workers in this role earn between $82,500.00 and $130,000.00 per year, depending on experience, location, and employer.

What does a digital risk officer do?

A Digital Risk Officer is responsible for identifying, assessing, and mitigating risks related to an organization's digital assets and technology infrastructure. They develop strategies to protect against cyber threats, data breaches, and compliance issues. Their role often involves collaborating with IT, legal, and executive teams to ensure digital operations are secure and compliant with relevant regulations. They also monitor emerging digital risks and recommend best practices to minimize potential impacts.

What are the main challenges digital risk officers face when aligning cybersecurity strategies with business objectives?

Digital Risk Officers often encounter the challenge of balancing robust cybersecurity measures with the need for operational efficiency and business growth. They must communicate complex risk assessments to non-technical stakeholders, ensuring that security initiatives support, rather than hinder, the organization’s goals. Additionally, they work collaboratively across departments to embed risk management into daily operations, requiring strong leadership and negotiation skills. Staying updated with evolving threats and regulatory requirements is also essential to effectively safeguard digital assets.

What is the difference between Digital Risk Officer vs Cybersecurity Analyst?

AspectDigital Risk OfficerCybersecurity Analyst
CredentialsCertifications like CISSP, CISM, CRISCCertifications like CompTIA Security+, CISSP, CEH
Work EnvironmentFocus on digital risk management, compliance, and strategyFocus on threat detection, incident response, and security monitoring
Employer & Industry UsageFinancial institutions, tech companies, large enterprisesIT security firms, corporate IT departments, government agencies
Search & Comparison IntentUnderstanding digital risk management roles and responsibilitiesTechnical security operations and threat mitigation

The Digital Risk Officer primarily manages digital risks, compliance, and strategic risk mitigation, while the Cybersecurity Analyst focuses on technical security measures, threat detection, and incident response. Both roles require relevant certifications and are vital in protecting organizations from digital threats, but they differ in scope and daily responsibilities.

What are the key skills and qualifications needed to thrive as a digital risk officer, and why are they important?

To thrive as a Digital Risk Officer, you need expertise in risk management, cybersecurity, regulatory compliance, and typically a degree in information security, IT, or a related field. Familiarity with risk assessment tools, cybersecurity frameworks (like NIST or ISO 27001), and certifications such as CISSP or CISM is highly valued. Strong analytical thinking, communication, and problem-solving abilities set top performers apart in this role. These skills ensure effective identification, mitigation, and communication of digital risks, protecting organizational assets and ensuring regulatory compliance.
More about Digital Risk Officer jobs
Infographic showing various Digital Risk Officer job openings in the United States as of August 2026, with employment types broken down into 1% As Needed, 88% Full Time, 8% Part Time, and 3% Contract. Highlights an 88% Physical, 5% Hybrid, and 7% Remote job distribution, with an average salary of $105,602 per year, or $50.8 per hour.

Tech Risk, Risk Practices and Controls Management - Vice President, Dallas

Goldman Sachs, Inc.

Dallas, TX • On-site

Full-time

Posted 12 days ago


Goldman Sachs rating

8.3

Company rating: 8.3 out of 10

Based on 27 frontline employees who took The Breakroom Quiz

47th of 171 rated banks


Job description


WHO WE ARE
Led by the Chief Information Security Officer (CISO), Technology Risk secures Goldman Sachs against hackers and other cyber threats. We are responsible for detecting and preventing attempted cyber intrusions against the firm, helping the firm develop more secure applications and infrastructure, developing software in support of our efforts, measuring cybersecurity risk, and designing and driving implementation of cybersecurity controls. The team has global presence across the Americas, APAC, India and EMEA.
The Digital Risk Office (DRO) is a specialized risk and governance function embedded within the Engineering Division. The Risk Practices and Control Management (RPCM) team sits within DRO and establishes the standards, governance, and lifecycle discipline required to manage controls effectively from design through execution. The team is responsible for executing an integrated, risk-aligned control environment that enforces regulatory responsiveness, assessment readiness, sustainable operational oversight and risk management.
YOUR IMPACT
As a Vice President in the Risk Practices and Control Management Team within the Digital Risk Office (DRO), you will play a pivotal role in shaping and maturing the technology control landscape across Goldman Sachs' Engineering division. You will act as a trusted advisor and strategic partner to engineering leaders, bridging the gap between complex technical architectures and risk governance.
By designing, implementing, and enhancing our control management framework, you will directly influence how the firm mitigates technology risks, ensures continuous audit and assessment readiness, and maintains compliance with evolving global regulations. This high-visibility role offers a unique opportunity to drive operational resilience, foster a strong risk-aware culture, and deliver sustainable, risk-aligned control solutions that protect the firm's global systems and infrastructure.
HOW YOU WILL FULFILL YOUR POTENTIAL
Your responsibilities will focus on developing and maturing risk practices and control management across the engineering division. In this role, you and your team will collaborate closely with all control programs within engineering to understand control objectives, control designs, identified risks, and the operational processes in which these controls reside. You will act as a trusted advisor to engineering teams, guiding them on industry best practices for control identification, design, and measurement. Additionally, you will partner on strategic, firm-wide programs aimed at mitigating technology risks and enhancing operational resilience. By monitoring and analyzing new or evolving regulations impacting the technology control environment, you will translate complex compliance mandates into actionable requirements for control, risk, and process owners. This position offers a unique vantage point to build a broad, deep understanding of the business and technologies across the entire organization while collaborating with engineers and leaders at all levels.
To be successful in this role, you must possess exceptional communication skills and the ability to articulate complex risk and control concepts clearly to both technical and non-technical stakeholders at all levels of the firm. You should have a proven track record of managing multiple complex programs simultaneously in a high-pressure, dynamic environment where change is commonplace. Strong stakeholder management and collaborative leadership skills are essential, as you will be responsible for influencing and driving consensus across diverse engineering and business teams.
Responsibilities include:
  • Oversee Risks and controls as part of first line of defense identifying weakness, recommending improvements, and educating the control program owners on risk posture across engineering products- including initiatives leveraging traditional AI, generative AI and agentic AI.
  • Develop, implement, and enhance the control management framework, processes, standards, and guidelines to ensure robust, ongoing technology control management across all systems and infrastructures.
  • Foster a culture of partnership, collaboration and transparency with control, process and risk owning teams, serving as a subject matter expert.
  • Assess and review technology policies, standards, and control changes to ensure comprehensive risk management and regulatory and industry standard alignment.
  • Review and evaluate technology control designs across engineering systems, applications, and infrastructure to ensure robust risk mitigation, and compliance with industry standards (e.g., NIST SP 800-53, ISO 27001, COBIT).
  • Execute and maintain an integrated, risk-aligned technology control environment, ensuring all engineering systems, applications, and infrastructure controls are mapped directly to the firm's risk taxonomy and business objectives.
  • Enforce regulatory responsiveness by continuously monitoring global regulatory developments (e.g., DORA, NIST, ISO) and translating complex compliance mandates into concrete, actionable engineering control requirements.
  • Drive continuous assessment readiness across the Engineering division, ensuring that all technology controls are documented, evidenced, and prepared for (1) evaluation by internal and external auditors (2) controls assessments such as RCSA and M&T.
  • Establish and manage sustainable operational oversight mechanisms, including key risk indicators (KRIs), control metrics, and continuous monitoring, to proactively manage and mitigate technology risks.
  • Translate complex control implementation and risk mitigation strategies into clear, non-technical business terms for senior leadership and key stakeholders.

BASIC QUALIFICATIONS
  • Experience with developing policies and procedures according to internationally recognized methodologies for IT management in the domains related to Software Engineering and IT Technology.
  • Strong understanding of enterprise technology concepts, including cloud computing (AWS, Azure, GCP), microservices, APIs, containerization, CI/CD pipelines, databases, and modern software engineering practices.
  • Framework Knowledge: Deep knowledge of industry-standard technology risk and control frameworks (e.g., NIST SP 800-53, NIST CSF, ISO 27001, COBIT, CSA CCM, ITIL).
  • 7+ years of relevant experience in technology risk management, cybersecurity, software engineering, cloud security, IT auditing, or a first/1.5-line risk and control function within financial services or a major technology company.
  • Strong verbal and written communication skills with the ability to present complex technical risks clearly to senior stakeholders, combined with a strong delivery focus in a fast-paced environment.
  • Bachelor's degree in Computer Science, Cybersecurity, Information Technology, or a related quantitative discipline.

PREFERRED QUALIFICATIONS
  • Relevant professional certifications (e.g., CISA, CISM, CRISC, CISSP, CCSP) are highly desirable.

#TechRiskCybersecurity

What Goldman Sachs employees say

Pay

Benefits

Hours and flexibility

Workplace

Get the full story on Breakroom


Goldman Sachs logo

About Goldman Sachs

Sourced by ZipRecruiter

At Goldman Sachs, we commit our people, capital and ideas to help our clients, shareholders and the communities we serve to grow. Founded in 1869, we are a leading global investment banking, securities and investment management firm. Headquartered in New York, we maintain offices around the world. We believe who you are makes you better at what you do. We're committed to fostering and advancing diversity and inclusion in our own workplace and beyond by ensuring every individual within our firm has a number of opportunities to grow professionally and personally, from our training and development opportunities and firmwide networks to benefits, wellness and personal finance offerings and mindfulness programs.

Industry

Finance and insurance

Company size

10,000+ Employees

Headquarters location

New York, NY, US

Year founded

1869