About the role The Director, IT and Governance, Risk & Compliance (GRC) leads Q4's IT operations, security operations, and technology governance programs to ensure a reliable, secure, and compliant ...
About the role The Director, IT and Governance, Risk & Compliance (GRC) leads Q4's IT operations, security operations, and technology governance programs to ensure a reliable, secure, and compliant ...
VSU - IT Governance and Compliance Analyst - South Chesterfield, VA 23834 - Hybrid
Chesterfield, VA · On-site
$89K - $89K/yr
Reports to the Director of IT Governance, Risk & Compliance. Skill Matrix: Experience with governance frameworks (COBIT, ITIL) and compliance standards (NIST, ISO). Required 10 Years Experience in ...
VSU - IT Governance and Compliance Analyst - South Chesterfield, VA 23834 - Hybrid
Chesterfield, VA · On-site
$89K - $89K/yr
Reports to the Director of IT Governance, Risk & Compliance. Skill Matrix: Experience with governance frameworks (COBIT, ITIL) and compliance standards (NIST, ISO). Required 10 Years Experience in ...
IT Governance Analyst
Chandler, AZ · On-site
$45 - $50/hr
We need candidates with experience in IT Governance, Risk & Compliance, Access Management, Change Management, IT Risk, Application Inventory (AIT), Security Compliance, and IT Operations. Experience ...
New
Quick apply
IT Governance Analyst
Chandler, AZ · On-site
$45 - $50/hr
We need candidates with experience in IT Governance, Risk & Compliance, Access Management, Change Management, IT Risk, Application Inventory (AIT), Security Compliance, and IT Operations. Experience ...
New
The IT Governance, Risk, and Compliance (IT GRC) organization is a critical part of the IT enterprise. We are seeking a visionary leader for the position of Director, Technology Compliance. This ...
The IT Governance, Risk, and Compliance (IT GRC) organization is a critical part of the IT enterprise. We are seeking a visionary leader for the position of Director, Technology Compliance. This ...
... direct engagement with engineers and operational personnel. * Execute and document testing ... IT audit, or a closely related compliance or risk function. * Ability to coordinate with ...
... direct engagement with engineers and operational personnel. * Execute and document testing ... IT audit, or a closely related compliance or risk function. * Ability to coordinate with ...
Director, Technology Compliance
Rahway, NJ · On-site
The IT Governance, Risk, and Compliance (IT GRC) organization is a critical part of the IT enterprise. We are seeking a visionary leader for the position of Director, Technology Compliance. This ...
Director, Technology Compliance
Rahway, NJ · On-site
The IT Governance, Risk, and Compliance (IT GRC) organization is a critical part of the IT enterprise. We are seeking a visionary leader for the position of Director, Technology Compliance. This ...
The IT Governance, Risk, and Compliance (IT GRC) organization is a critical part of the IT enterprise. We are seeking a visionary leader for the position of Director, Technology Compliance. This ...
The IT Governance, Risk, and Compliance (IT GRC) organization is a critical part of the IT enterprise. We are seeking a visionary leader for the position of Director, Technology Compliance. This ...
The IT Governance, Risk, and Compliance (IT GRC) organization is a critical part of the IT enterprise. We are seeking a visionary leader for the position of Director, Technology Compliance. This ...
The IT Governance, Risk, and Compliance (IT GRC) organization is a critical part of the IT enterprise. We are seeking a visionary leader for the position of Director, Technology Compliance. This ...
AVP, IT & AI Governance
$150K - $187K/yr
The AVP will oversee IT governance, AI governance, model risk alignment, technology risk management, and regulatory compliance across the organization. This role serves as a key control function ...
AVP, IT & AI Governance
$150K - $187K/yr
The AVP will oversee IT governance, AI governance, model risk alignment, technology risk management, and regulatory compliance across the organization. This role serves as a key control function ...
... Compliance, and Audit stakeholders to identify risks, strengthen controls, and support regulatory and governance requirements. ESSENTIAL RESPONSIBILITIES MAY INCLUDE * Leads the enterprise IT risk ...
New
... Compliance, and Audit stakeholders to identify risks, strengthen controls, and support regulatory and governance requirements. ESSENTIAL RESPONSIBILITIES MAY INCLUDE * Leads the enterprise IT risk ...
New
Senior Consultant - IT Governance, Risk & Compliance (GRC)
Ashburn, VA · On-site
$90K - $139K/yr
Senior Consultant - IT Governance, Risk & Compliance (GRC) ABOUT INFINITIVE Infinitive is a data and AI consultancy that enables its clients to modernize and operationalize their data to create ...
Senior Consultant - IT Governance, Risk & Compliance (GRC)
Ashburn, VA · On-site
$90K - $139K/yr
Senior Consultant - IT Governance, Risk & Compliance (GRC) ABOUT INFINITIVE Infinitive is a data and AI consultancy that enables its clients to modernize and operationalize their data to create ...
... Compliance, and Audit stakeholders to identify risks, strengthen controls, and support regulatory and governance requirements. ESSENTIAL RESPONSIBILITIES MAY INCLUDE * Leads the enterprise IT risk ...
New
... Compliance, and Audit stakeholders to identify risks, strengthen controls, and support regulatory and governance requirements. ESSENTIAL RESPONSIBILITIES MAY INCLUDE * Leads the enterprise IT risk ...
New
... Compliance, and Audit stakeholders to identify risks, strengthen controls, and support regulatory and governance requirements. ESSENTIAL RESPONSIBILITIES MAY INCLUDE * Leads the enterprise IT risk ...
New
... Compliance, and Audit stakeholders to identify risks, strengthen controls, and support regulatory and governance requirements. ESSENTIAL RESPONSIBILITIES MAY INCLUDE * Leads the enterprise IT risk ...
New
Requirements * 3 to 5+ years of experience in information security, governance, risk management, compliance, IT audit, or a related discipline. * Experience supporting security programs in global or ...
Quick apply
Requirements * 3 to 5+ years of experience in information security, governance, risk management, compliance, IT audit, or a related discipline. * Experience supporting security programs in global or ...
The Director, Governance, Risk & Compliance (GRC) leads the organization's enterprise governance ... Partner with Legal, IT, business leaders, and external stakeholders to strengthen privacy ...
The Director, Governance, Risk & Compliance (GRC) leads the organization's enterprise governance ... Partner with Legal, IT, business leaders, and external stakeholders to strengthen privacy ...
Requirements * 3 to 5+ years of experience in information security, governance, risk management, compliance, IT audit, or a related discipline. * Experience supporting security programs in global or ...
Quick apply
Requirements * 3 to 5+ years of experience in information security, governance, risk management, compliance, IT audit, or a related discipline. * Experience supporting security programs in global or ...
... Compliance, and Audit stakeholders to identify risks, strengthen controls, and support regulatory and governance requirements. ESSENTIAL RESPONSIBILITIES MAY INCLUDE * Leads the enterprise IT risk ...
New
... Compliance, and Audit stakeholders to identify risks, strengthen controls, and support regulatory and governance requirements. ESSENTIAL RESPONSIBILITIES MAY INCLUDE * Leads the enterprise IT risk ...
New
... Compliance, and Audit stakeholders to identify risks, strengthen controls, and support regulatory and governance requirements. ESSENTIAL RESPONSIBILITIES MAY INCLUDE * Leads the enterprise IT risk ...
New
... Compliance, and Audit stakeholders to identify risks, strengthen controls, and support regulatory and governance requirements. ESSENTIAL RESPONSIBILITIES MAY INCLUDE * Leads the enterprise IT risk ...
New
... Compliance, and Audit stakeholders to identify risks, strengthen controls, and support regulatory and governance requirements. ESSENTIAL RESPONSIBILITIES MAY INCLUDE * Leads the enterprise IT risk ...
New
... Compliance, and Audit stakeholders to identify risks, strengthen controls, and support regulatory and governance requirements. ESSENTIAL RESPONSIBILITIES MAY INCLUDE * Leads the enterprise IT risk ...
New
POSITION PURPOSE The Director of IT Governance, Risk and Compliance provides strategic leadership and oversight of the organization's IT risk posture, governance frameworks, and regulatory compliance ...
POSITION PURPOSE The Director of IT Governance, Risk and Compliance provides strategic leadership and oversight of the organization's IT risk posture, governance frameworks, and regulatory compliance ...
Director It Governance Risk Compliance information
See salary details
$42.5K - $56.8K
1% of jobs
$56.8K - $71K
5% of jobs
$71K - $85.3K
6% of jobs
$85.3K - $99.6K
12% of jobs
$100.2K is the 25th percentile. Wages below this are outliers.
$99.6K - $113.9K
13% of jobs
The median wage is $128.1K / yr.
$113.9K - $128.1K
13% of jobs
$141K is the 75th percentile. Wages above this are outliers.
$128.1K - $142.4K
28% of jobs
$142.4K - $156.7K
10% of jobs
$156.7K - $171K
6% of jobs
$171K - $185.2K
4% of jobs
$185.2K - $199.5K
2% of jobs
$42.5K
$128.3K
$199.5K
How much do director it governance risk compliance jobs pay per year?
What are the key skills and qualifications needed to thrive as a Director of IT Governance, Risk, and Compliance, and why are they important?
What does a Director of IT Governance, Risk, and Compliance do?
What are the most common challenges faced by a Director of IT Governance, Risk, and Compliance when aligning IT policies with business goals?
What is the difference between Director It Governance Risk Compliance vs IT Risk Manager?
| Aspect | Director It Governance Risk Compliance | IT Risk Manager |
|---|---|---|
| Certifications | CISA, CISSP, CRISC | CISA, CISSP, CRISC |
| Work Environment | Strategic, leadership-focused, cross-departmental | Operational, technical, risk assessment tasks |
| Employer & Industry Usage | Financial, healthcare, large enterprises | Financial, tech, consulting firms |
The main difference is that the Director It Governance Risk Compliance oversees overall governance strategies and compliance at a senior level, while the IT Risk Manager focuses on identifying and mitigating specific IT risks. Both roles require similar certifications and work in related environments, but the director has broader strategic responsibilities.
- Governance Risk Compliance Manager
- Director Of Governance
- Entry Level Governance Risk Compliance
- Fedramp Compliance Program
- Freelance Governance Risk Compliance
- It Risk Compliance
- Governance Risk Compliance Consultant
- Chief Risk Compliance Officer
- Cybersecurity Governance Risk Compliance
- Vice President Governance Risk Compliance

Job description
Q4 is charting a bold new path for investor relations as the first AI-driven IR Ops Platform, providing everything an IR team needs to succeed on a single, powerful platform. The Q4 Platform enables public companies to attract, manage, and understand investors - all in one place. Over 2,600 customers, including many of the most respected brands in the world, trust Q4 to help drive premium valuations for their companies. Only Q4 offers a tech stack holistically designed to equip IR teams with data, insights, and smart workflows that power remarkable outcomes. Learn more at q4inc.com.
We hire smart, curious, and talented people to push boundaries, reimagine what's possible, and turn challenges into opportunities. All while keeping the needs of our clients at the heart of everything we do.
Come grow with us!
About the role
The Director, IT and Governance, Risk & Compliance (GRC) leads Q4's IT operations, security operations, and technology governance programs to ensure a reliable, secure, and compliant internal environment for a high-growth SaaS business. The role translates strategy into execution by running the programs, teams, and processes that keep Q4's corporate environment available, secure, and audit-ready, and acts as a senior security and risk subject-matter expert for internal and customer-facing stakeholders.
What you'll do
Strategy & Stakeholder Partnership
- Translate enterprise technology, security, and GRC strategy into a clear roadmap with priorities, milestones, and success metrics.
- Act as a senior security and risk SME, advising internal teams and customers on best practices, emerging threats, and pragmatic risk-based decisions.
- Run the portfolio of IT, security, and GRC initiatives as a formal program, coordinating cross-functional delivery, timelines, and status reporting.
IT Operations & Service Delivery
- Lead IT operations to ensure infrastructure, end-user computing, and collaboration platforms are reliable, secure, and cost-effective.
- Oversee incident, request, and change management; drive improvements in SLAs, MTTR, and employee experience.
- Own standards for asset management and access lifecycle for employees and independent contractors.
Security Operations & Risk Management
- Manage day-to-day security operations: threat monitoring, alert triage, and coordination of incident response with Security and Engineering.
- Maintain and test security incident response playbooks; coordinate periodic security testing and ensure remediation of findings.
- Operate and improve vulnerability management; support DR/BCP planning; help manage security budgets and key security vendors.
Governance, Risk & Compliance (GRC)
- Lead technology GRC processes (policies, controls, risk registers, exceptions) and coordinate SOC 2 and customer security assessments.
- Operationalize GDPR, CCPA, PIPEDA and other requirements into controls in partnership with Legal/Privacy, maintaining RoPA, DPIAs, and vendor/sub-processor assessments.
- Define and track KPIs/KRIs (e.g., incident SLAs, vuln closure rates, audit findings) and provide clear dashboards and reports to leadership.
Business Systems & Enterprise Enablement
- Partner with Business Systems, Product, and Data teams to ensure enterprise platforms and integrations meet security and governance expectations.
- Contribute to architecture standards, access models, and data protection patterns across core systems.
- Identify automation and tooling opportunities to reduce manual work and improve control coverage and data quality.
People Leadership & Collaboration
- Lead and develop a high-performing IT and GRC team with clear goals and feedback.
- Foster a culture of accountability, continuous improvement, and strong cross-functional partnership.
- Champion security, privacy, and technology best practices through training, communication, and engagement.
Qualifications
- 7+ years in IT operations, information security, technology risk, or GRC, including people management.
- Strong knowledge of security and control frameworks (e.g., SOC 2, ISO 27001, NIST CSF, CIS) and privacy regulations (e.g., GDPR, CCPA, PIPEDA).
- Hands-on experience with IT and security tooling (IdP/IAM, MDM/EDR, logging/monitoring, GRC platforms).
- Proven ability to manage multiple security/IT/GRC projects or programs with ownership of timelines, budgets, and stakeholder communication.
- Track record supporting external audits and customer security assessments and communicating complex risk/technical topics in clear business language.
About Q4
Sourced by ZipRecruiter