The Analyst II, Information Risk Management is an integral individual contributor role within the CarMax Information Security Organization, focused on planning and executing critical risk and privacy ...
The Analyst II, Information Risk Management is an integral individual contributor role within the CarMax Information Security Organization, focused on planning and executing critical risk and privacy ...
The Analyst II, Information Risk Management is an integral individual contributor role within the CarMax Information Security Organization, focused on planning and executing critical risk and privacy ...
The Analyst II, Information Risk Management is an integral individual contributor role within the CarMax Information Security Organization, focused on planning and executing critical risk and privacy ...
The Analyst II, Information Risk Management is an integral individual contributor role within the CarMax Information Security Organization, focused on planning and executing critical risk and privacy ...
The Analyst II, Information Risk Management is an integral individual contributor role within the CarMax Information Security Organization, focused on planning and executing critical risk and privacy ...
Information Risk Management, Vice President
Tampa, FL · Hybrid
$125K - $164K/yr
Support coordination with global related entities' risk management harmonization efforts in order ... For more information on our Total Rewards package, please click the link below. MUFG Benefits ...
Information Risk Management, Vice President
Tampa, FL · Hybrid
$125K - $164K/yr
Support coordination with global related entities' risk management harmonization efforts in order ... For more information on our Total Rewards package, please click the link below. MUFG Benefits ...
Information Risk Management, Vice President
New York, NY · Hybrid
$125K - $164K/yr
Support coordination with global related entities' risk management harmonization efforts in order ... For more information on our Total Rewards package, please click the link below. MUFG Benefits ...
Information Risk Management, Vice President
New York, NY · Hybrid
$125K - $164K/yr
Support coordination with global related entities' risk management harmonization efforts in order ... For more information on our Total Rewards package, please click the link below. MUFG Benefits ...
Information Risk Management, Vice President
Tampa, FL · On-site
$125K - $164K/yr
Support coordination with global related entities' risk management harmonization efforts in order ... For more information on our Total Rewards package, please click the link below. MUFG Benefits ...
Information Risk Management, Vice President
Tampa, FL · On-site
$125K - $164K/yr
Support coordination with global related entities' risk management harmonization efforts in order ... For more information on our Total Rewards package, please click the link below. MUFG Benefits ...
Information Risk Management, Vice President
Jersey City, NJ · Hybrid
$125K - $164K/yr
Support coordination with global related entities' risk management harmonization efforts in order ... For more information on our Total Rewards package, please click the link below. MUFG Benefits ...
Information Risk Management, Vice President
Jersey City, NJ · Hybrid
$125K - $164K/yr
Support coordination with global related entities' risk management harmonization efforts in order ... For more information on our Total Rewards package, please click the link below. MUFG Benefits ...
Information Risk Management, Vice President
Tempe, AZ · Hybrid
$125K - $164K/yr
Support coordination with global related entities' risk management harmonization efforts in order ... For more information on our Total Rewards package, please click the link below. MUFG Benefits ...
Information Risk Management, Vice President
Tempe, AZ · Hybrid
$125K - $164K/yr
Support coordination with global related entities' risk management harmonization efforts in order ... For more information on our Total Rewards package, please click the link below. MUFG Benefits ...
The Enterprise Risk Management team, comprised of dynamic, diverse, and highly collaborative ... The Sr. Manager of Information Risk and Controls is a leadership and expert role responsible for ...
The Enterprise Risk Management team, comprised of dynamic, diverse, and highly collaborative ... The Sr. Manager of Information Risk and Controls is a leadership and expert role responsible for ...
The Enterprise Risk Management team, comprised of dynamic, diverse, and highly collaborative ... The Sr. Manager of Information Risk and Controls is a leadership and expert role responsible for ...
The Enterprise Risk Management team, comprised of dynamic, diverse, and highly collaborative ... The Sr. Manager of Information Risk and Controls is a leadership and expert role responsible for ...
Senior Specialist, Information Risk
Berwyn, PA · On-site
$94K/yr
Support Information Risk Officers (IROs) to ensure internal controls related to information risk management are sound and effective. * Assist IROs in the execution and delivery of business ...
Senior Specialist, Information Risk
Berwyn, PA · On-site
$94K/yr
Support Information Risk Officers (IROs) to ensure internal controls related to information risk management are sound and effective. * Assist IROs in the execution and delivery of business ...
The Enterprise Risk Management team, comprised of dynamic, diverse, and highly collaborative ... The Sr. Manager of Information Risk and Controls is a leadership and expert role responsible for ...
The Enterprise Risk Management team, comprised of dynamic, diverse, and highly collaborative ... The Sr. Manager of Information Risk and Controls is a leadership and expert role responsible for ...
Prepare and present solution decks to different levels of management and varying technical ... Information Risk Management and/or Information Technology * 5 - 7 years' experience within ...
Prepare and present solution decks to different levels of management and varying technical ... Information Risk Management and/or Information Technology * 5 - 7 years' experience within ...
Manage the identification, monitoring, and response to potential security incidents. Identify and ... risk posture Qualifications Bachelor's degree in Computer Science, Information Technology ...
Manage the identification, monitoring, and response to potential security incidents. Identify and ... risk posture Qualifications Bachelor's degree in Computer Science, Information Technology ...
Support Information Risk Officers (IROs) to ensure internal controls related to information risk management are sound and effective. * Assist IROs in the execution and delivery of business ...
Support Information Risk Officers (IROs) to ensure internal controls related to information risk management are sound and effective. * Assist IROs in the execution and delivery of business ...
Brief Overview of Position The Chief Information Risk Officer (CIRO) is responsible for the development, implementation, and management of the information risk strategy. Reporting to the Chief Risk ...
Brief Overview of Position The Chief Information Risk Officer (CIRO) is responsible for the development, implementation, and management of the information risk strategy. Reporting to the Chief Risk ...
We are emerging as one of the largest private talent sourcing and management firms in the US. Our ... Title: Information Risk Consultant Location: Pittsburgh PA Duration: 12+ months Responsible for ...
We are emerging as one of the largest private talent sourcing and management firms in the US. Our ... Title: Information Risk Consultant Location: Pittsburgh PA Duration: 12+ months Responsible for ...
Required Skills & Experience * 7+ years in information risk management, standards governance, or IT compliance roles * Strong understanding of IT infrastructure, enterprise operations, and risk ...
Required Skills & Experience * 7+ years in information risk management, standards governance, or IT compliance roles * Strong understanding of IT infrastructure, enterprise operations, and risk ...
Information Risk Analyst - AI Duration: 12 Months - (Possible Extensions) Location: Portland, OR ... Stay updated with the latestadvancements in AI, cybersecurity, and risk management practices.
Information Risk Analyst - AI Duration: 12 Months - (Possible Extensions) Location: Portland, OR ... Stay updated with the latestadvancements in AI, cybersecurity, and risk management practices.
Lead, Information Risk and GRC
Miami, FL · On-site
The Royal Caribbean Group's IT-Global Information Security Team has an exciting career opportunity ... The ideal candidate will bring deep expertise in managing third-party cyber risk across the vendor ...
Lead, Information Risk and GRC
Miami, FL · On-site
The Royal Caribbean Group's IT-Global Information Security Team has an exciting career opportunity ... The ideal candidate will bring deep expertise in managing third-party cyber risk across the vendor ...
Information Risk Management information
See salary details
$51.5K - $62.3K
4% of jobs
$62.3K - $73K
6% of jobs
$73K - $83.8K
11% of jobs
$87.9K is the 25th percentile. Wages below this are outliers.
$83.8K - $94.6K
11% of jobs
The median wage is $103.2K / yr.
$94.6K - $105.4K
23% of jobs
$105.4K - $116.1K
13% of jobs
$123.2K is the 75th percentile. Wages above this are outliers.
$116.1K - $126.9K
12% of jobs
$126.9K - $137.7K
8% of jobs
$137.7K - $148.5K
6% of jobs
$148.5K - $159.2K
4% of jobs
$159.2K - $170K
2% of jobs
$51.5K
$111.6K
$170K
How much do information risk management jobs pay per year?
What is Information Risk Management?
What are some common challenges faced by professionals in Information Risk Management, and how can they be addressed?
What are the key skills and qualifications needed to thrive in Information Risk Management, and why are they important?

CarMax rating
8.0
Based on 366 frontline employees who took The Breakroom Quiz
26th of 713 rated retailers
Job description
We are looking for an Analyst II, Information Risk Management to maintain and enhance the Information Risk Management posture of an innovative and fast paced company that is leveraging technology to provide innovative methods to improve the car buying experience.
The Analyst II, Information Risk Management is an integral individual contributor role within the CarMax Information Security Organization, focused on planning and executing critical risk and privacy operations and initiatives for the company to ensure continuous privacy operations, modernize control methodologies through automation and artificial intelligence, and streamline privacy assessments to improve the program’s efficiency and effectiveness.
This is a unique opportunity to work at a Fortune 200 company and national brand to expand your skills and influence a growing Technology Program. This role will partner across Business and Technology teams to design, implement and manage privacy operations practices ensuring CarMax effectively assesses and mitigates risk to company and customer data. The successful candidate will leverage strengths in privacy operations execution and drive continuous improvement through process optimization, automation and AI for streamlined efficiency.
What you will do – Essential Responsibilities
The Analyst II, Information Risk Management – Privacy will focus primarily on facilitating and supporting regulatory and privacy operations for the company to ensure an effective and compliant posture for CarMax and our customers. This role serves as the conduit between the business community, Privacy core team, technology, and the application development teams. The Analyst II – Privacy manages the intake, analysis and completion of privacy requests and facilitates all operational aspects of the privacy lifecycle, including:
Privacy Request Support – Coordinate with multiple technology teams to capture, assess and process data subject access requests (DSAR) timely and accurately.
Privacy Operations Management – Use service delivery principles to implement, execute and measure the program and related services consistently and effectively. Prepare and deliver regular program updates with KPIs that illustrate volumes, trends and risk areas to stakeholders. Maintain appropriate work management practices and backlogs to meet or exceed SLAs.
Process Improvement – Identify and implement opportunities to simplify and strengthen our privacy risk management processes and capabilities using process analysis, automation and AI where applicable.
Privacy Technology Administration – Utilize standalone and integrated platforms in daily operations and perform system improvements and administration.
Privacy Impact Assessment – Facilitate ongoing data privacy assessments of internal systems to effectively manage data sensitivity risk across in the enterprise.
Policy Governance Lifecycle Management – Own and manage the technology and information security focused guidance to ensure all policies, procedures, standards and job aids remain current, published and available for our associates.
Knowledge Management – Document and maintain clear, effective reference documentation (playbooks, processes, job aids, technical diagrams) as an internal knowledgebase and for ease of customer experience.
Projects, as defined – Participate in related strategic and tactical projects as necessary to mature the privacy operations function.
As an integral member of the team, exhibiting ownership, follow-through, initiative, awareness and effective communication with peers and management and ability to speak to details of privacy operations.
Maintain a strong knowledge base and awareness of industry and technological trends, external regulations for new or changed requirements within privacy and technology for core processes (e.g. NiST, PCI, ITIL, data privacy etc.).
Qualifications and Requirements:
Bachelor’s degree in business / computer science / information systems (or related)
2+ years working experience in privacy, technology compliance, IT Audit, cybersecurity, or related experience.
One or more of the following privacy-focused certifications such as: CIPP, CIPM, CIPT, CIA, CRSC, CISA.
Experience / familiarity with relevant U.S. legal frameworks and privacy regulation such as: CCPA, GLBA, PCI, NYDFS, CFPB.
Detail oriented – Possess a keen eye for detail and accuracy in all operations. Leverage defined, repeatable methods for managing work and communicating progress and priority.
Analytical approach – Ability to perform data analysis and trending, problem solve obstacles and find alternative ways to meet and achieve privacy goals,
Ability to understand and implement information risk and privacy principles across disciplines. Apply a risk-based approach to analysis in a fast-paced, rapidly evolving environment .
Customer Focus – Ability to provide exceptional customer service for our internal partners, with a mindset for understanding their need and consistently finding ways to exceed expectation.
Communication – Excellent verbal and written communication skills, with the ability to structure and deliver clear, accurate messaging. Ability to create and present concepts to various audiences, facilitate discussion with diplomacy while seeking diverse opinions to reach consensus
Collaboration – Strong emphasis on effective relationship building and partnership.
Demonstrate initiative, ownership, and a service-oriented mindset in all interactions.
Work Location and Arrangement: This role will be based out of the Richmond, VA Technology Innovation Center. Associates based in Richmond work onsite 4 days per week.
Work Authorization: Applicants must be currently authorized to work in the United States on a full-time basis. Sponsorship will not be considered for this specific role.
About CarMax
CarMax disrupted the auto industry by delivering the honest, transparent and high-integrity experience customers want and deserve. This innovative thinking around the way cars are bought and sold has helped us become the nation’s largest retailer of used cars, with over 200 locations nationwide.
Our amazing team of more than 25,000 associates work together to deliver iconic customer experiences. Along the way, we help every associate grow their career and achieve their best, at work and in their community. We are recognized for our commitment to training and diversity and are one of the FORTUNE 100 Best Companies to Work For®.
Our Commitment to Diversity and Inclusion:
CarMax is committed to bringing together people from different backgrounds and perspectives, providing employees with a safe, welcoming, and inclusive work environment.
CarMax is an equal opportunity employer, and all qualified candidates will receive consideration for employment without regard to age, race, color, religion, sex, sexual orientation, gender identity, gender expression, genetic information, national origin, protected veteran status, disability status, and any other characteristics protected by law.
Upon an applicant's request, CarMax will consider reasonable accommodation to complete the CarMax Job Application.
About CarMax Enterprise Services
Sourced by ZipRecruiter
Industry
Finance and insurance
Company size
10,000+ Employees
Headquarters location
Carol Stream, IL, US