1

It Governance Risk Jobs in Chicago, IL (NOW HIRING)

IT Compliance Lead

Oak Brook, IL · On-site

$158K/yr

The IT Compliance Lead supports PLS's IT governance, risk, and compliance activities. This role partners with Information Security, Infrastructure, Application Development, Audit, and Legal ...

IT Compliance Lead

Oak Brook, IL

$158K/yr

The IT Compliance Lead supports PLS's IT governance, risk, and compliance activities. This role partners with Information Security, Infrastructure, Application Development, Audit, and Legal ...

Senior IT Risk Analyst

Rosemont, IL · On-site

$98K - $110K/yr

Demonstrated experience with IT Governance, IT-related risk, and IT Risk Management. * Proficiency in Microsoft Office, Egnyte, and SharePoint. * Bachelors degree preferred. * CRISC or CISA ...

Senior IT Risk Analyst

Rosemont, IL · Hybrid

$98K - $110K/yr

Demonstrated experience with IT Governance, IT-related risk, and IT Risk Management. * Proficiency in Microsoft Office, Egnyte, and SharePoint. * Bachelors degree preferred. * CRISC or CISA ...

Senior Manager of IT

Schaumburg, IL · On-site

$128K - $129K/yr

Solid understanding of cybersecurity, risk management, and IT governance. * Master's degree preferred. What We're Looking For * Strategic thinker who can balance long-term planning with hands-on ...

IT Project Manager-3

Chicago, IL · On-site

$60 - $70/hr

Contract Overview The Global Governance, Risk & Control (GGRC) department is seeking an experienced Project Manager III to lead enterprise-level IT projects. This hybrid role requires local presence ...

IST Risk Manager

Chicago, IL · On-site

$199K/yr

The Information Security & Technology Risk Manager supports and executes second line of defense (2LOD) governance, oversight, and independent challenge across information security and technology risk ...

Showing results 21-40

It Governance Risk information

What are the key skills and qualifications needed to thrive as an IT governance, risk, and compliance (GRC) professional, and why are they important?

To thrive as an IT GRC professional, you need a solid understanding of information security principles, risk management frameworks, and relevant regulatory standards, often supported by a degree in IT or cybersecurity and certifications like CISA or CISSP. Familiarity with GRC tools such as RSA Archer, ServiceNow GRC, and risk assessment methodologies is typically required. Strong analytical thinking, attention to detail, and effective communication skills help you interpret complex regulations and collaborate with stakeholders. These competencies ensure effective risk mitigation, regulatory compliance, and alignment between IT and business objectives.

What is IT governance risk?

IT Governance Risk refers to the potential threats and vulnerabilities that can affect an organization's information technology systems, processes, and data. It involves identifying, assessing, and managing risks related to IT operations, compliance, security, and strategic alignment with business objectives. Effective IT governance risk management helps organizations ensure regulatory compliance, protect sensitive information, and support business continuity. Professionals in this field develop policies, procedures, and controls to mitigate risks and enable informed decision-making.

What is the difference between It Governance Risk vs It Security Analyst?

AspectIt Governance RiskIt Security Analyst
CertificationsCISA, CRISCCISSP, Security+
Work EnvironmentPolicy development, risk assessment, complianceMonitoring security systems, incident response
Industry UsageGovernance, risk management, compliance teamsSecurity operations teams, IT departments

It Governance Risk focuses on establishing policies, managing IT risks, and ensuring compliance across the organization. In contrast, an It Security Analyst primarily monitors security systems, investigates incidents, and implements security measures. While both roles require understanding of IT frameworks and certifications like CISA or CISSP, their core responsibilities differ: governance versus security operations.

Is IT governance risk and compliance a good career?

IT Governance Risk and Compliance is a growing field that involves managing organizational IT policies, regulatory requirements, and risk mitigation strategies. Professionals in this area often require knowledge of frameworks like ISO 27001 or COBIT and may pursue certifications such as CISA or CISSP. It offers opportunities in various industries with a focus on security, compliance, and risk management roles.

What are the 5 types of IT governance?

The five types of IT governance are strategic, structural, operational, compliance, and risk governance. These categories help organizations align IT strategies with business goals, ensure effective management, and mitigate risks. IT governance frameworks like COBIT and ISO/IEC 38500 provide guidance for implementing these types effectively.

How does an IT governance risk professional typically collaborate with other departments within an organization?

IT Governance Risk professionals frequently work cross-functionally, partnering with departments such as IT, legal, compliance, and business units to ensure that risk management practices align with organizational objectives and regulatory requirements. This collaboration often involves facilitating risk assessments, developing and implementing policies, and providing guidance on risk mitigation strategies. Clear communication and strong relationship-building skills are key, as the role requires translating technical risks into business impacts and gaining buy-in from stakeholders across the company.

What are the roles of IT governance risk?

IT governance risk involves identifying, assessing, and managing risks related to information technology to ensure alignment with organizational goals and compliance requirements. IT governance risk professionals develop policies, implement controls, and monitor systems to mitigate threats such as data breaches, cyberattacks, and operational failures. They often work with frameworks like COBIT or ISO 27001 and may hold certifications such as CISA or CRISC.
Infographic showing various It Governance Risk job openings in Chicago, IL as of August 2026, with employment types broken down into 1% As Needed, 87% Full Time, 9% Part Time, and 3% Contract. Highlights an 89% Physical, 4% Hybrid, and 7% Remote job distribution.

IT Compliance Lead

PLS

Oak Brook, IL • On-site

$158K/yr

Full-time

Medical, Dental, Vision, Retirement, PTO

Posted 14 days ago


Job description

This job is located at 814 Commerce Drive, Oak Brook, IL 60523
PLS® Overview:
Why PLS? Because You Deserve Better!® PLS - which stands for People - Location - Service - is a leading retail provider of financial services. The "P" comes first, because our customers are at the center of everything we do, and we recognize that it's our exceptional team members who go above and beyond every day. The PLS Group, headquartered in Chicago, is comprised of over 200 financial service centers in 12 states. Through our check cashing stores, we provide consumers with convenient financial products and services to help them manage their day-to-day financial needs. Although many of our customers have banking relationships, we believe that our customers use our financial services because they are convenient, transparent, and frequently more affordable than available traditional alternatives. PLS was founded in 1997 by Bob and Dan Wolfberg, who serve as Co-Presidents.
Position Overview:
The IT Compliance Lead supports PLS's IT governance, risk, and compliance activities. This role partners with Information Security, Infrastructure, Application Development, Audit, and Legal departments, as well as business stakeholders to help assess control effectiveness, support audits and regulatory examinations, as well as track remediation activities and strengthen ongoing compliance with applicable requirements. This role requires a risk-based mindset, strong technical and analytical capabilities, and the ability to translate regulatory and control requirements into practical operational support across multiple environments. Candidates must be able to manage assigned work while contributing to compliance, policy maturity, and operational resilience.
Job Responsibilities:
  • Support IT compliance activities across PCI DSS, GLBA, IT controls, security awareness, technology risk management, and related cybersecurity and regulatory requirements.
  • Assist with IT testing, audits, assessments, and regulatory examinations conducted by internal and external auditors, and coordinate with security, IT, and other stakeholders throughout the review lifecycle.
  • Work with control owners to communicate scope, evidence requirements, testing approaches, and assessment expectations for in-scope controls and processes.
  • Gather, prepare, evaluate, and retain detailed audit-ready evidence to support control design and operating effectiveness testing.
  • Maintain a centralized library of compliance and information security evidence, including audit artifacts, control documentation, policy records, assessment materials, and supporting evidence needed for ongoing audits, regulatory examinations, and control monitoring.
  • Document testing results, compliance gaps, exceptions, and observations, and communicate findings clearly to control owners, management, and other stakeholders.
  • Support development, tracking, and ongoing revision of remediation plans for issues resulting from audits, assessments, risk reviews, and regulatory findings.
  • Track and report remediation status, overdue actions, and risk acceptance decisions for IT compliance-related issues and escalate material concerns when appropriate.
  • Help maintain and improve a risk-based control framework aligned to applicable standards and regulations, including PCI DSS v4.0.1, GLBA Safeguards Rule, NIST Cybersecurity Framework 2.0, and other relevant requirements.
  • Perform or support compliance impact assessments for new systems, infrastructure changes, cloud services, SaaS platforms, material process changes, and other technology initiatives.
  • Support third-party and vendor risk oversight by reviewing security and compliance documentation, control attestations, remediation commitments, and ongoing compliance obligations.
  • Partner with information security and IT teams on key control domains including identity and access management, multi-factor authentication, vulnerability management, secure configuration, logging and monitoring, incident response, and business continuity.
  • Assist in the review and enhancement of IT policies, standards, procedures, and control documentation to ensure alignment with regulatory expectations and operational practices.
  • Prepare compliance metrics, dashboards, and management reporting for leadership, committees, and auditors to support decision-making and continuous improvement.
  • Monitor changes in laws, regulations, standards, and threat trends, and help translate those changes into actionable control, policy, and process updates for the organization.

Job Requirements:
  • Bachelor's degree in information technology, information security, cybersecurity, computer science, business, accounting, risk management, or a related field; equivalent relevant experience may be considered.
  • 3+ years of experience in information security, IT general controls, IT compliance, IT audit, cybersecurity governance, and/or technology risk management.
  • Experience supporting internal and external auditors, regulators, and cross-functional stakeholders in audits, assessments, examinations, and remediation activities.
  • Knowledge of security and risk frameworks, standards, and best practices, including PCI DSS v4.0.1, GLBA Safeguards Rule, NIST Cybersecurity Framework 2.0, and related guidance.
  • Experience with regulatory and compliance requirements applicable to financial services, payments, retail, or other regulated environments is preferred.
  • Working knowledge of key cybersecurity control areas such as access control, multifactor authentication, vulnerability management, endpoint and network security, logging and monitoring, incident response, and business continuity.
  • Experience with audit-ready documentation, evidence management, issue tracking, and remediation support.
  • Strong communication, documentation, presentation, facilitation, and stakeholder management skills, with the ability to communicate effectively with both technical teams and business stakeholders.
  • Strong analytical skills and experience with process improvement, automation, and continuous compliance monitoring.
  • Experience with Governance, Risk, and Compliance (GRC) platforms and control management workflows is preferred.
  • Experience in cloud or hybrid environments, including SaaS and third-party service provider risk considerations, is preferred.
  • Experience in retail, payments, or financial services is preferred.
  • Professional certifications such as CISA, CRISC, CISSP, CISM, or similar qualifications are preferred.

Working Conditions and Physical Requirements:
  • This role requires regular in-person collaboration with team members at our Oak Brook Support Center.
  • Must be able to sit and/or stand for extended periods
  • Must be able to lift up to 15 lbs. with little assistance

Benefits:
Benefits for eligible employees include medical/dental/vision, 401(k), vacation, opportunities for advancement, and ongoing training.
We strive to demonstrate our Core Values in all positions at PLS:
Communication • Customer Focus • Integrity and Trust • Teamwork • Results
PLS is an Equal Employment Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, age, sexual orientation, gender identity, national origin, disability, marital status, protected veteran status, or any other characteristic protected by law. PLS is a drug-free workplace. PLS provides reasonable accommodations to applicants with disabilities. If you need a reasonable accommodation for any part of the application and hiring process, please notify your Recruiter or a member of our Human Resources team at talentacquisition@pls247.com to make arrangements. The decision on granting reasonable accommodation will be made on a case-by-case basis.
For jobs located in the City of Los Angeles, consistent with the requirements of the Fair Chance Initiative for Hiring Ordinance, qualified applicants with criminal histories will be considered for employment.
Illinois Pay Band
$110,000-$120,000 USD