1

It Risk Analyst Jobs in Philadelphia, PA (NOW HIRING)

Manager of IT Risk and Compliance

Wilmington, DE · On-site

$120 - $160/hr

  • Medical

  • Dental

  • Life

  • Retirement

  • PTO

Architect and execute a robust third-party risk assessment program for SaaS providers, financial partners, supply chain logistics, and AI/analytics vendors. 4. IT Audit Coordination & Policy ...

We are seeking a Data Analyst to support our Credit Risk team. Seeking a Data Analyst to support ... Partner with Marketing, Operations, IT to ensure accurate and timely campaign execution. * Leverage ...

Sr. IT QA Analyst will be a good analytical resource focusing on highly visible, complex and ... risk/compliance requirements, all geared towards IT and business solutions. Forecasts and ...

Director, Technology Risk Management

West Point, PA · On-site

$173 - $273/hr

  • Medical

  • Dental

  • Vision

  • Retirement

  • PTO

The Director, Business Information Risk Officer (BIRO) is a critical leadership role responsible ... This role provides risk governance for all IT systems managed by the EIT organization, whether they ...

Director, Technology Risk Management

West Point, PA · On-site

  • Medical

  • Dental

  • Vision

  • Retirement

  • PTO

The Director, Business Information Risk Officer (BIRO) is a critical leadership role responsible ... This role provides risk governance for all IT systems managed by the EIT organization, whether they ...

next page

Showing results 1-20

It Risk Analyst information

See Philadelphia, PA salary details

$15

$40

$66

How much do it risk analyst jobs pay per hour?

As of Aug 19, 2026, the average hourly pay for it risk analyst in Philadelphia, PA is $40.85, according to ZipRecruiter salary data. Most workers in this role earn between $30.10 and $49.71 per hour, depending on experience, location, and employer.

What does an IT Risk Analyst do?

An IT Risk Analyst is responsible for identifying, assessing, and mitigating risks that could impact an organization's information technology systems and data. They analyze potential threats, such as cyberattacks or data breaches, and develop strategies to minimize these risks. Their role involves working closely with other IT professionals to ensure compliance with security policies and regulatory requirements, as well as preparing risk reports and recommending improvements. Ultimately, IT Risk Analysts help organizations protect sensitive information and maintain secure, reliable IT operations.

What are some common challenges IT Risk Analysts face when collaborating with other departments?

IT Risk Analysts often work closely with various departments such as IT, compliance, and operations to identify and mitigate risks. One common challenge is translating technical risk information into terms that non-technical stakeholders can understand. Additionally, balancing the need for rigorous security measures with business objectives can sometimes lead to conflicting priorities. Effective communication and building strong relationships across teams are key to overcoming these challenges and ensuring that risk controls are both practical and effective.

What are the key skills and qualifications needed to thrive as an IT Risk Analyst, and why are they important?

To thrive as an IT Risk Analyst, you need a strong understanding of risk management frameworks, cybersecurity principles, and regulatory compliance—often supported by a degree in information technology or a related field. Familiarity with tools such as risk assessment software, vulnerability scanners, and certifications like CISSP or CISA is typically required. Analytical thinking, attention to detail, and effective communication are vital soft skills that distinguish top performers in this role. These competencies are crucial for accurately identifying risks, ensuring regulatory compliance, and effectively communicating findings to stakeholders.

What is the difference between It Risk Analyst vs Cybersecurity Analyst?

AspectIt Risk AnalystCybersecurity Analyst
CertificationsISO 27001, CISSP, CISACISSP, CEH, CompTIA Security+
Work EnvironmentFinancial, healthcare, corporate sectors focusing on risk managementIT security teams, cybersecurity firms, tech companies
Employer & Industry UsageFinancial institutions, large corporations, consulting firmsTech companies, government agencies, security firms

While both roles focus on protecting information, the It Risk Analyst primarily assesses and manages overall IT risks within organizations, emphasizing compliance and risk mitigation strategies. In contrast, the Cybersecurity Analyst concentrates on defending systems from cyber threats and attacks. Both roles often collaborate but serve distinct functions in an organization's security framework.

How much do IT risk analysts get paid?

IT risk analysts typically earn a median annual salary of around $80,000 to $100,000, depending on experience, certifications, and location. Entry-level positions may start lower, while experienced analysts with certifications like CISSP or CISA can earn higher salaries. Salaries also vary based on industry and company size.

Is an IT risk analyst a hard job?

An IT risk analyst's job involves assessing and managing cybersecurity threats, which requires strong analytical skills, attention to detail, and knowledge of security tools and frameworks. The role can be challenging due to the evolving nature of cyber threats and the need for continuous learning and certification, such as CISSP or CISA. Overall, it can be demanding but is manageable with proper training and experience.

What are popular job titles related to It Risk Analyst jobs in Philadelphia, PA?

For It Risk Analyst jobs in Philadelphia, PA, the most frequently searched job titles are:

Infographic showing various It Risk Analyst job openings in Philadelphia, PA as of August 2026, with employment types broken down into 100% Full Time. Highlights an 100% In-person job distribution, with an average salary of $84,975 per year, or $40.9 per hour.

Manager of IT Risk and Compliance

REEDS Jewelers

Wilmington, DE • On-site

$120 - $160/hr

Other

Medical, Dental, Life, Retirement, PTO

Re-posted 4 days ago


Reeds Jewelers Inc. rating

5.3

Company rating: 5.3 out of 10

Based on 12 frontline employees who took The Breakroom Quiz

26th of 30 rated jewelry retailers


Job description

Luxury. Innovation. Opportunity.

AtREEDS Jewelers, we bring together the timeless values with the energy and innovation of a modern luxury retailer. For 80 years, we’ve built a legacy of trust, exceptional customer service, and curated fine jewelry- offering our clients an elevated experience both in-store and online. We believe every milestone deserves to be marked with elegance, and every moment honored with meaning. As one of the nation’s largest family-owned jewelers, we are proud to pair a rich legacy with a modern vision for the future of luxury retail.

What sets REEDS apart is our unwavering commitment to people and progress. We stay true to our roots while constantly evolving, embracing new technology, premium brands, and forward-thinking practices to lead in the world of luxury retail. Here, you’ll find more than a job, you’ll find a career with purpose, growth, and lasting impact.

Overview

The Manager of IT Risk and Compliance will design, implement, and oversee the enterprise-wide IT governance, procurement, risk management, and compliance (GRC) framework for REEDS Jewelers. This strategic leader will ensure that our retail stores, corporate infrastructure, and e-commerce platform are secure, resilient, and fully compliant with all applicable regulatory, financial, and industry standards.

Additionally, this role serves as a critical point of escalation for specialized financial intelligence. The Director will independently investigate, troubleshoot, and formally file Suspicious Activity Reports (SARs) to mitigate risks associated with multi-channel point-of-sale fraud, e-commerce identity theft, credit underwriting anomalies, and anti-money laundering (AML) compliance.

Key Responsibilities1. Financial Intelligence, Fraud Investigation & SAR Filing
  • Incident Investigation: Lead technical forensic investigations into complex corporate fraud including: e-commerce account takeovers, gift card manipulation, and anomalous transactional behaviors across point-of-sale (POS) and omni-channel credit integrations.
  • SAR Management & Filing: Own the end-to-end process of troubleshooting suspicious patterns, compiling narrative reports, and formally filing Suspicious Activity Reports (SARs) with the Financial Crimes Enforcement Network (FinCEN) in strict compliance with Bank Secrecy Act (BSA) rules for luxury retailers.
  • Executive Briefings: Provide the CIO and executive leadership with confidential intelligence briefs regarding internal or external fraud investigations, exposure assessments, and structural vulnerabilities.
2. Regulatory & Industry Compliance
  • PCI-DSS Management: Own end-to-end compliance for PCI-DSS across all digital checkout touchpoints, POS systems, and multi-channel payment integrations.
  • Financial & Corporate Governance: Manage and test IT General Controls (ITGC) to support Sarbanes-Oxley (SOX) audit readiness, ensuring tight segregation of duties (SoD) across financial and inventory systems (e.g., enterprise ERP and legacy AS400 databases).
  • Data Privacy & AML Regulations: Monitor and enforce compliance with data privacy frameworks (including CCPA/CPRA) and specialized AML regulations impacting loyalty databases, high-value cash/financing transactions, and digital marketing.
3. Risk Management & Third-Party Governance
  • IT Enterprise Risk Register: Maintain and update the IT risk register, translating technical security findings and transaction fraud vectors into quantifiable business risks.
  • Technology Vendor Risk Management (VRM): Architect and execute a robust third-party risk assessment program for SaaS providers, financial partners, supply chain logistics, and AI/analytics vendors.
4. IT Audit Coordination & Policy Lifecycle
  • IT Audit Liaison: Act as the primary point of contact for internal and external IT auditors, coordinating evidence collection and owning the tracking and remediation of all audit findings.
  • IT Policy Enforcement: Develop, update, and manage the lifecycle of corporate information security policies aligned with the NIST Cybersecurity Framework or ISO 27001.
Required Qualifications & Experience
  • Experience: 3 to 5 years of progressive experience in IT audit, information security governance, or IT risk management.
  • Industry Background: Proven experience in a multi-channel retail, e-commerce, banking, or consumer-facing environment with heavy transactional volumes.
  • Framework Expertise: Deep working knowledge of American Disabilities Act (ADA), Data Protection Compliance, PCI-DSS, SOX, and consumer privacy laws.
  • Education: Bachelor’s degree in Information Technology, Cybersecurity, Computer Science, Business Administration, or a related field.
Mandated Professional Certifications

Candidates must possess at least two of the following certifications. Given the expanded investigative mandate, a combination of a technical security certification and a fraud/investigative certification is highly preferred:

  • CISA (Certified Information Systems Auditor): Highly valued for leading internal audit readiness and ITGC/SOX evaluations.
  • CISM (Certified Information Security Manager) or CISSP (Certified Information Systems Security Professional): Required to demonstrate elite capability in managing enterprise security governance and risk.
  • CRISC (Certified in Risk and Information Systems Control): Preferred for candidates specializing in designing and executing enterprise-level IT risk registers.

REEDS Jewelers offers a comprehensive compensation program, merchandise discounts, 401(k), and paid time off. Full-time team members are also eligible for our benefits program including health/dental/life/LTD insurance, and more!

REEDS Jewelers is an Equal Opportunity Employer. We value the diversity of our team, and employment decisions are made without regard to race, color, religion, national or ethnic origin, sex, sexual orientation, gender identity or expression, age, disability, protected veteran status or other characteristics protected by law. REEDS provides a smoke and drug-free environment.

#J-18808-Ljbffr

What Reeds Jewelers Inc. employees say

Pay

Benefits

Hours and flexibility

Workplace

Get the full story on Breakroom