1

Director It Governance Risk Compliance Jobs (NOW HIRING)

$69K - $69K/yr

... organization's governance, risk, privacy, and compliance program, ensuring technology systems ... It partners closely with Legal, Information Security, IT, People Team, and Procurement to identify ...

The IT Governance, Risk, and Compliance (GRC) Lead Analyst serves as a subject matter expert responsible for leading the design, implementation, maturity, and continuous improvement of the ...

The Director, GRC owns the technology & AI compliance Framework, oversees governance for ... This is a governance and risk leadership position, ideal for someone who understands technology ...

Policy, Standards, and Compliance * Direct the development, review, publication, and lifecycle ... Risk, Performance, and Continuous Improvement * Establish governance-related performance metrics ...

IT Governance Consultant

MD Β· On-site

$90K - $150K/yr

Certified in Governance, Risk and Compliance (CGRC), (GRC Professional), FISMA, SOC, PCI DSS * 8+ years of experience supporting federal agencies or defense organizations within: * IT governance, ...

Showing results 21-40

Director It Governance Risk Compliance information

See salary details

$42.5K

$128.3K

$199.5K

How much do director it governance risk compliance jobs pay per year?

As of Sep 14, 2026, the average yearly pay for director it governance risk compliance in the United States is $128,297.00, according to ZipRecruiter salary data. Most workers in this role earn between $100,000.00 and $145,000.00 per year, depending on experience, location, and employer.

What does a director of IT governance, risk, and compliance do?

A Director of IT Governance, Risk, and Compliance (GRC) is responsible for overseeing an organization's IT policies, risk management strategies, and compliance with internal and external regulations. They ensure that the company's information systems are secure, compliant with relevant laws and standards, and aligned with business objectives. Their duties include developing frameworks for IT governance, managing risk assessments, and coordinating audits. They also lead teams to implement best practices and mitigate potential threats to information security.

What are the key skills and qualifications needed to thrive as a director of IT governance, risk, and compliance?

To thrive as a Director of IT Governance, Risk, and Compliance, you need deep expertise in risk management, regulatory frameworks (such as SOX, GDPR, or HIPAA), and IT governance principles, typically supported by a bachelor's or master's degree in information security or a related field. Familiarity with GRC platforms (like RSA Archer or ServiceNow), cybersecurity tools, and certifications such as CISA, CISM, or CISSP is highly valued. Outstanding leadership, strategic thinking, and communication skills are essential for collaborating with stakeholders and leading cross-functional initiatives. These competencies are crucial to ensure organizational compliance, minimize risk exposure, and align IT strategies with business objectives.

What are the most common challenges faced by a director of IT governance, risk, and compliance when aligning IT policies with business goals?

A Director of IT Governance, Risk, and Compliance often faces challenges in ensuring IT policies and procedures are not only regulatory-compliant but also flexible enough to support the company's strategic business objectives. Balancing risk mitigation with the need for technological innovation can be complex, especially when different departments have varying priorities. Building strong cross-functional relationships and maintaining clear communication with business leaders are key to successfully aligning IT governance frameworks with organizational goals. Additionally, staying updated with rapidly evolving regulations and emerging threats requires continuous learning and adaptation.

What is the difference between Director It Governance Risk Compliance vs IT Risk Manager?

AspectDirector It Governance Risk ComplianceIT Risk Manager
CertificationsCISA, CISSP, CRISCCISA, CISSP, CRISC
Work EnvironmentStrategic, leadership-focused, cross-departmentalOperational, technical, risk assessment tasks
Employer & Industry UsageFinancial, healthcare, large enterprisesFinancial, tech, consulting firms

The main difference is that the Director It Governance Risk Compliance oversees overall governance strategies and compliance at a senior level, while the IT Risk Manager focuses on identifying and mitigating specific IT risks. Both roles require similar certifications and work in related environments, but the director has broader strategic responsibilities.

More about Director It Governance Risk Compliance jobs

What cities are hiring for Director It Governance Risk Compliance jobs?

Cities with the most Director It Governance Risk Compliance job openings:

What are the most commonly searched types of It Governance Risk Compliance jobs?

The most popular types of It Governance Risk Compliance jobs are:

What states have the most Director It Governance Risk Compliance jobs?

States with the most job openings for Director It Governance Risk Compliance jobs include:

What are popular job titles related to Director It Governance Risk Compliance jobs?

For Director It Governance Risk Compliance jobs, the most frequently searched job titles are:

Infographic showing various Director It Governance Risk Compliance job openings in the United States as of September 2026, with employment types broken down into 1% As Needed, 83% Full Time, 12% Part Time, and 4% Contract. Highlights an 89% Physical, 2% Hybrid, and 9% Remote job distribution, with an average salary of $128,297 per year, or $61.7 per hour.

IT Governance, Risk, and Compliance Analyst

On-site

$69K - $69K/yr

Other

Medical, Dental, Vision, Life, Retirement, PTO

Posted 10 days ago


Job description

Job Description

RMI is transforming the global energy system to secure a clean, prosperous, zero-carbon future for all. We work with businesses, policymakers, communities and other organizations to identify and scale interventions that will cut greenhouse gas emissions at least 50% by 2030. This role supports the organization's governance, risk, privacy, and compliance program, ensuring technology systems, vendors, contracts, and business processes align with regulatory requirements and contractual obligations. It partners closely with Legal, Information Security, IT, People Team, and Procurement to identify compliance considerations early and mature the organization's governance and privacy programs.


Responsibilities

Governance, Policy & Audit Support Maintain governance policies, standards, and procedures for technology, privacy, and information management; support internal and external audits with supporting evidence and documentation. Review contracts and business initiatives for security, privacy, and compliance obligations, partnering with Legal and Procurement. Coordinate compliance initiatives (Colorado Privacy Act, GDPR/UK GDPR, and other contractual/regulatory programs), tracking remediation activities to closure.


Risk & Vendor Management Conduct risk assessments for new technologies, vendors, and operational changes; maintain the IT risk register and drive mitigation plans to closure. Perform security, privacy, and compliance reviews of third-party vendors and subprocessors, including DPAs, security questionnaires, and ongoing monitoring. Support vendor onboarding and contractual compliance in partnership with Legal, Procurement, and Information Security.


Data Governance & Privacy Evaluate new technologies, integrations, and AI solutions (e.g., against the NIST AI RMF, ISO/IEC 42001, or EU AI Act) for privacy and governance considerations. Assist with research, testing, and deployment of new AI functionality. Maintain data inventories, Records of Processing Activities (ROPAs), classification, retention, and lifecycle documentation. Advise stakeholders on appropriate collection, use, sharing, retention, and protection of data.


Monitoring & Continuous Improvement Manage the monthly cybersecurity awareness training program and support other training activities. Perform regular audits of user access, permissions, and IT assets. Conduct periodic compliance reviews and governance assessments of systems and processes; track corrective actions to closure. Partner with Infrastructure, Security, Legal, People Team, and Procurement to embed governance requirements early in technology projects.


Qualifications

Required Bachelor's degree in a related field, or equivalent experience, in governance, compliance, risk management, privacy, information security, or business operations. 3–5 years of progressively responsible experience in governance, compliance, risk management, privacy, procurement, internal audit, information security, or related functions. Experience supporting compliance audits, vendor risk assessments, or regulatory programs, including reviewing contracts and vendor documentation. Strong analytical, organizational, communication, and cross-functional collaboration skills. Preferred Experience with GDPR/UK GDPR, international data transfers, or information governance programs. Experience in nonprofit, consulting, research, energy, or other mission-driven organizations. One or more certifications: CIPP/US, CIPP/E, CIPM, CIPT, CRISC, CISA.


Key Competencies

Governance & Regulatory Compliance Privacy & Data Protection Risk & Vendor Management Audit & Compliance Monitoring Policy & Documentation Management Analytical Problem-Solving Cross-Functional Communication & Stakeholder Engagement


Visa Sponsorship

Please note: At this time, RMI is not able to sponsor employment visas or hire candidates who require visa sponsorship to work in the United States. All candidates must have current, independent authorization to work in the U.S. without present or future sponsorship from RMI. We will update our hiring pages if this status changes.


Location

We are a remote-ready company with team members around the globe. Our beautiful and welcoming offices are available for meetings or focused work, whether you are traveling through or living nearby. Our U.S. offices are in New York City; Washington DC; Oakland, California; Boulder, Colorado, and Basalt, Colorado. This role can be located from anywhere in the continental United States. We provide you with the essential IT equipment plus a one-time home technology payment and a monthly work from home/commuter allowance to ensure you have a comfortable home office set up and necessary supplies. We love seeing each other in person! We occasionally gather for shared time together like retreats and learning experiences. Be ready to travel for occasional in-person meetings (and of course, we cover travel costs). Some roles may require more travel, which will be discussed during the hiring process.


Compensation

At RMI, we prioritize fairness in our pay practices. Salaries are determined based on a mix of experience, market benchmarks, and internal equity across similar roles. The salary range of this position is $77,245-95,200. New hires typically start toward the lower end of the range, depending on experience and alignment with the role's scope. In addition to base salary, this position includes an annual bonus target of 5% and eligibility for merit-based increases, which are tied to both individual and organizational performance.


Benefits
  • We offer an array of benefits including: Medical, dental, vision insurance 403b retirement match with immediate vesting Group life, AD&D, and short- and long-term disability Optional voluntary life, AD&D and accident plans Health savings or flexible spending accounts Fertility and hormonal health support Mental health and wellness support Comprehensive leaves of absence (including generous parental leave) Generous paid time off and sick leave Paid sabbatical leave Regional holidays with at least one extended break in each geography Work from home and home technology allowances Learning & development opportunities (LinkedIn Learning and an annual individual professional development budget) Potential for bonuses and merit increases Discount marketplace (gym memberships, pet insurance, etc.) Hybrid / remote work options Team retreats and geographic meetups Rewards and recognition programs

Diversity

We know that the diversity of our teams makes us stronger as an organization, and RMI is dedicated to the principles of equal employment opportunity as outlined in U.S. federal law. We prohibit discrimination against applicants, interns, and employees on the basis of any legally recognized basis, including but not limited to: age (40 and over), race, color, sex, pregnancy (including lactation, childbirth, or related medical conditions), religion, national origin, ancestry, physical or mental disability, genetic information (including testing and characteristics), sexual orientation, gender expression/identity, uniformed service member status, veteran status, citizenship status, or any other applicable status protected by applicable law. RMI is an equal opportunity employer. We celebrate diversity and are committed to creating an inclusive environment for all employees.

#J-18808-Ljbffr