1

Enterprise Risk Management Jobs in Raleigh, NC (NOW HIRING)

... risk management (IRM), governance, risk, and compliance (GRC), and Security Operations (SecOps) leveraging the ServiceNow platform. * Design and implement enterprise risk and compliance frameworks ...

The Project Manager role involves planning and overseeing enterprise project rollouts, ensuring ... risk management to minimize potential risks • Create and maintain comprehensive project ...

... enterprise risk standards. * Interpret, assess, and enforce complex commercial agreements ... Coordinate resolution efforts by partnering with Legal, Risk Management, Supply Chain leadership ...

Managing Risk - Assessing and effectively managing all of the risks associated with their business objectives and activities to ensure they adhere to and support PNC's Enterprise Risk Management ...

next page

Showing results 1-20

Enterprise Risk Management information

See Raleigh, NC salary details

$50.1K

$108.4K

$165.3K

How much do enterprise risk management jobs pay per year?

As of May 30, 2026, the average yearly pay for enterprise risk management in Raleigh, NC is $108,441.00, according to ZipRecruiter salary data. Most workers in this role earn between $87,500.00 and $125,400.00 per year, depending on experience, location, and employer.

What is an Enterprise Risk Management job?

An Enterprise Risk Management (ERM) job involves identifying, assessing, and mitigating risks that could impact an organization's strategic objectives. Professionals in this role develop risk frameworks, ensure compliance with regulations, and implement strategies to minimize financial, operational, and reputational risks. They work closely with leadership to improve decision-making by integrating risk assessments into business planning. Ultimately, ERM professionals help organizations navigate uncertainties while maximizing opportunities for growth and stability.

What are the key skills and qualifications needed to thrive in the Enterprise Risk Management position, and why are they important?

To thrive in Enterprise Risk Management, you need a strong analytical background, proficiency in risk assessment methodologies, and often a degree in finance, business, or a related field. Familiarity with risk management software (like RSA Archer or MetricStream), data analysis tools, and certifications such as FRM (Financial Risk Manager) or CRM (Certified Risk Manager) are highly valued. Outstanding communication, strategic thinking, and collaboration skills help professionals effectively identify, assess, and mitigate risks across an organization. These skills are crucial to ensuring organizations remain resilient, compliant, and prepared for potential threats.

What are the typical daily responsibilities of someone working in Enterprise Risk Management?

Professionals in Enterprise Risk Management (ERM) typically spend their days identifying, assessing, and prioritizing organizational risks, collaborating with various departments to gather data and implement risk mitigation strategies. They may conduct risk workshops, develop and update risk registers, monitor key risk indicators, and prepare reports for senior leadership. Regular meetings with business units and stakeholders ensure alignment on risk appetite and compliance with policies. This role often involves a balance of independent analysis and teamwork, making strong communication and problem-solving abilities essential.

Is risk management high paying?

Risk management professionals, including those in enterprise risk management, often earn competitive salaries that increase with experience, certifications, and industry. Entry-level roles may start at moderate pay, while senior positions such as risk managers or directors can earn high six-figure incomes. Strong analytical skills and knowledge of industry regulations can enhance earning potential.
What are the most commonly searched types of Enterprise Risk Management jobs in Raleigh, NC? The most popular types of Enterprise Risk Management jobs in Raleigh, NC are:
What job categories do people searching Enterprise Risk Management jobs in Raleigh, NC look for? The top searched job categories for Enterprise Risk Management jobs in Raleigh, NC are:
What cities near Raleigh, NC are hiring for Enterprise Risk Management jobs? Cities near Raleigh, NC with the most Enterprise Risk Management job openings:
Infographic showing various Enterprise Risk Management job openings in Raleigh, NC as of May 2026, with employment types broken down into 100% Full Time. Highlights an 100% In-person job distribution, with an average salary of $108,441 per year, or $52.1 per hour.
Director Governance Risk and Compliance

Director Governance Risk and Compliance

Advance Auto Parts, Inc.

Raleigh, NC • On-site

Full-time

Posted 12 days ago


Job description

Job Description
The Director of Governance and Risk will report to the CISO within Advance Auto Parts and will focus on the defining and deploying governance and risk management frameworks across Advance Auto Parts.
The Director of Governance and Risk will oversee cybersecurity policy, standards, procedures, compliance, ensuring the company adheres to relevant regulations, industry standards, and internal and 3rd party risk management. The ideal candidate will combine expertise in both cybersecurity and risk management disciplines and have exceptional communication and stakeholder management skills.
This position is 4 days in office, 1 day remote per week, based at our corporate headquarters in Raleigh, North Carolina (North Hills)
The key responsibilities of the role include:
  • Develop a short term and long-term comprehensive Governance and Risk Management Strategy
  • Develop, communicate, and implement enterprise-wide security policy, standards, procedures, and guidelines.
  • Provide strategic guidance to the CISO for the representation of risks to the Board, Audit committee, and ERM
  • Lead a team of cyber specialists, providing direction and supporting their development
  • Conduct regular risk assessments, including PCI-DSS and SOX, and develop comprehensive risk management plans for various business units and projects
  • Support Internal Audit with engagements requiring technology support.
  • Vendor Risk Management (VRM): Oversee the VRM integration, including risk reviews, contract management, and ongoing monitoring to manage risks associated with third-party vendors and suppliers
  • Support the identification, evaluation, and prioritization of cyber risks across the organization
  • Oversee production, reporting and evolution of cyber risk metrics, including Key Performance Indicators (KPIs), scorecards, and Key Risk Indicators (KRIs)
  • Conduct risk analysis, providing insights on issues and direction on risk mitigation strategies
  • Drive automation, analytics, and continuous improvement of processes
  • Engage with a range of senior stakeholders across Lines of Defense to ensure appropriate oversight and reporting of cybersecurity risks and vulnerabilities
  • Collaborate with cross-functional teams on cyber risk remediation activities
  • Ensure regulatory compliance with frameworks in NIST, SOC 1&2, PCI, SOX, CCPA
  • Maintain the database and reporting platform to ensure compliance to our security policies and standards.

Skills/ Qualifications:
  • Bachelor's degree in information security, Computer Science, or a related field; Master's degree preferred
  • Minimum of 12 years of experience in cybersecurity, with a focus on risk management
  • Expert in the implementation and operational management of OneTrust, working knowledge of Service Now, and Auditboard.
  • Process driven with an extensive knowledge of cyber risk management frameworks, tools, and methodologies
  • Master in the ability to "tell a story" through PowerPoint leveraging metrics and creativity for various levels of the enterprise (Board, ERM, Steerco, Business and/or tech leaders)
  • Proven experience in senior leadership roles, managing teams, and influencing executive stakeholders, driving outcomes
  • Experience in establishing and managing regulatory compliance in NIST, PCI-DSS, SOX, SOC 1/2, CCPA, HIPAA
  • Deep understanding in cybersecurity metrics programs that are meaningful and risk/risk posture reporting
  • Strategic thinker with a strong understanding of cyber risks, vulnerabilities, and risk mitigation options
  • Innovative thinker, adaptable to change, self-driven, aggressive, and detail oriented with the ability to establish true partnerships that drives business enablement while managing risk
  • Exceptional communication and executive level presentation skills, capable of translating technical risk into business terms
  • Must have the ability to drive enterprise aligned roadmaps focusing on top cyber risks, cyber priorities, industry threats that align to the business
  • Excellent analytical, problem-solving, and decision-making skills
We are an Equal Opportunity Employer and do not discriminate against any employee or applicant for employment because of race, color, sex, age national origin, religion, sexual orientation, gender identity, status as a veteran and basis of disability or any other federal, state or local protected class. We comply with all applicable federal, state, and local laws.
California Residents click below for Privacy Notice:
https://jobs.advanceautoparts.com/us/en/disclosures

Advance Auto Parts logo

About Advance Auto Parts

Sourced by ZipRecruiter

At Advance Auto Parts we have a passion for YES. Each day we are motivated by a passion to help our Customers. We have a commitment to advance the lives of our fellow Team Members, Customers, and the Communities where we live and work.

Industry

Motor vehicle and motor vehicle parts wholesalers, retail, internet and it and elementary and secondary schools

Company size

10,000+ Employees

Headquarters location

Raleigh, NC, US