Bachelor's degree in computer science, technology, or a related field (Master's degree preferred) * 5 or more years of experience in technology risk, IT, cybersecurity, cloud, analytics, or audit ...
Bachelor's degree in computer science, technology, or a related field (Master's degree preferred) * 5 or more years of experience in technology risk, IT, cybersecurity, cloud, analytics, or audit ...
Bachelor's degree in computer science, technology, or a related field (Master's degree preferred) * 5 or more years of experience in technology risk, IT, cybersecurity, cloud, analytics, or audit ...
Bachelor's degree in computer science, technology, or a related field (Master's degree preferred) * 5 or more years of experience in technology risk, IT, cybersecurity, cloud, analytics, or audit ...
Bachelor's degree in computer science, technology, or a related field (Master's degree preferred) * 5 or more years of experience in technology risk, IT, cybersecurity, cloud, analytics, or audit ...
Bachelor's degree in computer science, technology, or a related field (Master's degree preferred) * 5 or more years of experience in technology risk, IT, cybersecurity, cloud, analytics, or audit ...
Bachelor's degree in computer science, technology, or a related field (Master's degree preferred) * 5 or more years of experience in technology risk, IT, cybersecurity, cloud, analytics, or audit ...
Bachelor's degree in computer science, technology, or a related field (Master's degree preferred) * 5 or more years of experience in technology risk, IT, cybersecurity, cloud, analytics, or audit ...
Bachelor's degree in computer science, technology, or a related field (Master's degree preferred) * 5 or more years of experience in technology risk, IT, cybersecurity, cloud, analytics, or audit ...
Bachelor's degree in computer science, technology, or a related field (Master's degree preferred) * 5 or more years of experience in technology risk, IT, cybersecurity, cloud, analytics, or audit ...
The Senior Technology Risk Analyst is expected to manage and mature the enterprise risk register and drive high-quality risk assessments across new and existing information system capabilities.
The Senior Technology Risk Analyst is expected to manage and mature the enterprise risk register and drive high-quality risk assessments across new and existing information system capabilities.
IT Risk and Compliance Analyst
Portland, OR · On-site
$99K - $100K/yr
We are seeking a highly motivated and detail-oriented IT Risk and Compliance Analyst to join our team. The ideal candidate will be responsible for ensuring that IT risk management processes are ...
Quick apply
IT Risk and Compliance Analyst
Portland, OR · On-site
$99K - $100K/yr
We are seeking a highly motivated and detail-oriented IT Risk and Compliance Analyst to join our team. The ideal candidate will be responsible for ensuring that IT risk management processes are ...
Assess risk and control gaps of IT systems, processes, and procedures. Ensure control gaps and ... Demonstrated ability to analyze technology and security risk solutions, independently scope and ...
Assess risk and control gaps of IT systems, processes, and procedures. Ensure control gaps and ... Demonstrated ability to analyze technology and security risk solutions, independently scope and ...
Senior Technology Risk Analyst (Hybrid)
Iselin, NJ · Hybrid
$70K/yr
Conduct regulatory IT compliance and risk assessments to identify and address technology, data ... This entails analyzing and applying applicable laws, regulations, policies, and guidance to create ...
Senior Technology Risk Analyst (Hybrid)
Iselin, NJ · Hybrid
$70K/yr
Conduct regulatory IT compliance and risk assessments to identify and address technology, data ... This entails analyzing and applying applicable laws, regulations, policies, and guidance to create ...
Senior Technology Risk Analyst (Hybrid)
Iselin, NJ · Hybrid
$70K/yr
Conduct regulatory IT compliance and risk assessments to identify and address technology, data ... This entails analyzing and applying applicable laws, regulations, policies, and guidance to create ...
Senior Technology Risk Analyst (Hybrid)
Iselin, NJ · Hybrid
$70K/yr
Conduct regulatory IT compliance and risk assessments to identify and address technology, data ... This entails analyzing and applying applicable laws, regulations, policies, and guidance to create ...
Information Security Risk Analyst Location: Oklahoma City, OK Type: Full-time Salary: DOE ... Engage in IT SOX, ISO 27001/2, and other compliance activities. * Assist in implementation of SANS ...
Information Security Risk Analyst Location: Oklahoma City, OK Type: Full-time Salary: DOE ... Engage in IT SOX, ISO 27001/2, and other compliance activities. * Assist in implementation of SANS ...
Information Security Risk Analyst Location: Oklahoma City, OK Type: Full-time Salary: DOE ... Engage in IT SOX, ISO 27001/2, and other compliance activities. * Assist in implementation of SANS ...
Information Security Risk Analyst Location: Oklahoma City, OK Type: Full-time Salary: DOE ... Engage in IT SOX, ISO 27001/2, and other compliance activities. * Assist in implementation of SANS ...
Technology Risk Analyst
Westlake, TX · On-site
You will assist with responding to cybersecurity questionnaires, Requests for Information (RFIs ... Collaborate with cybersecurity, technology, risk, legal, and compliance teams to gather and ...
Technology Risk Analyst
Westlake, TX · On-site
You will assist with responding to cybersecurity questionnaires, Requests for Information (RFIs ... Collaborate with cybersecurity, technology, risk, legal, and compliance teams to gather and ...
Technology Risk Analyst
Merrimack, NH · On-site
You will assist with responding to cybersecurity questionnaires, Requests for Information (RFIs ... Collaborate with cybersecurity, technology, risk, legal, and compliance teams to gather and ...
Technology Risk Analyst
Merrimack, NH · On-site
You will assist with responding to cybersecurity questionnaires, Requests for Information (RFIs ... Collaborate with cybersecurity, technology, risk, legal, and compliance teams to gather and ...
IT Risk Services Analyst
Painted Post, NY · On-site
Work with project teams to provide Privacy Impact Assessments Conduct IT Risk Assessments on External Vendor's system architecture and design to ensure the security requirements meets maturity levels ...
IT Risk Services Analyst
Painted Post, NY · On-site
Work with project teams to provide Privacy Impact Assessments Conduct IT Risk Assessments on External Vendor's system architecture and design to ensure the security requirements meets maturity levels ...
Technology Risk Analyst
Westlake, TX · On-site
You will assist with responding to cybersecurity questionnaires, Requests for Information (RFIs ... Collaborate with cybersecurity, technology, risk, legal, and compliance teams to gather and ...
Technology Risk Analyst
Westlake, TX · On-site
You will assist with responding to cybersecurity questionnaires, Requests for Information (RFIs ... Collaborate with cybersecurity, technology, risk, legal, and compliance teams to gather and ...
Senior Technology Risk Analyst
$88K - $141K/yr
Title and Summary Senior Technology Risk Analyst Perform due diligence reviews and questionnaire ... Do not include any medical or health information in this email. The Reasonable Accommodations team ...
Senior Technology Risk Analyst
$88K - $141K/yr
Title and Summary Senior Technology Risk Analyst Perform due diligence reviews and questionnaire ... Do not include any medical or health information in this email. The Reasonable Accommodations team ...
Technology Risk Analyst
Smithfield, RI · On-site
You will assist with responding to cybersecurity questionnaires, Requests for Information (RFIs ... Collaborate with cybersecurity, technology, risk, legal, and compliance teams to gather and ...
Technology Risk Analyst
Smithfield, RI · On-site
You will assist with responding to cybersecurity questionnaires, Requests for Information (RFIs ... Collaborate with cybersecurity, technology, risk, legal, and compliance teams to gather and ...
The Cybersecurity Risk Analyst supports the organization's cyber risk management program by ... A bachelor's degree in Cybersecurity, Information Technology, Information Systems, Risk Management ...
The Cybersecurity Risk Analyst supports the organization's cyber risk management program by ... A bachelor's degree in Cybersecurity, Information Technology, Information Systems, Risk Management ...
... analyst continuously evaluates the assurance of the risk management program.The Senior Technology ... Ability to effectively and accurately convey riskrelated information to stakeholders at all levels.
... analyst continuously evaluates the assurance of the risk management program.The Senior Technology ... Ability to effectively and accurately convey riskrelated information to stakeholders at all levels.
It Risk Analyst information
See salary details
$15.38 - $19.97
3% of jobs
$19.97 - $24.56
7% of jobs
$24.56 - $29.15
12% of jobs
$30.05 is the 25th percentile. Wages below this are outliers.
$29.15 - $33.74
15% of jobs
$33.74 - $38.33
13% of jobs
The median wage is $38.48 / hr.
$38.33 - $42.92
16% of jobs
$42.92 - $47.51
8% of jobs
$48.08 is the 75th percentile. Wages above this are outliers.
$47.51 - $52.10
11% of jobs
$52.10 - $56.69
6% of jobs
$56.69 - $61.28
6% of jobs
$61.28 - $65.87
3% of jobs
$15
$40
$65
How much do it risk analyst jobs pay per hour?
What does an IT Risk Analyst do?
How much do risk analysts get paid?
What are the key skills and qualifications needed to thrive as an IT Risk Analyst, and why are they important?
What jobs pay $2000 a day?
What are some common challenges IT Risk Analysts face when collaborating with other departments?
What is the difference between It Risk Analyst vs Cybersecurity Analyst?
| Aspect | It Risk Analyst | Cybersecurity Analyst |
|---|---|---|
| Certifications | ISO 27001, CISSP, CISA | CISSP, CEH, CompTIA Security+ |
| Work Environment | Financial, healthcare, corporate sectors focusing on risk management | IT security teams, cybersecurity firms, tech companies |
| Employer & Industry Usage | Financial institutions, large corporations, consulting firms | Tech companies, government agencies, security firms |
While both roles focus on protecting information, the It Risk Analyst primarily assesses and manages overall IT risks within organizations, emphasizing compliance and risk mitigation strategies. In contrast, the Cybersecurity Analyst concentrates on defending systems from cyber threats and attacks. Both roles often collaborate but serve distinct functions in an organization's security framework.
What does a risk analyst do?
What is the role of IT risk analyst?

Full-time
Posted 20 days ago
Fidelity Investments rating
8.7
Based on 264 frontline employees who took The Breakroom Quiz
14th of 138 rated financial services
Job description
The Role
Are you passionate about strengthening technology controls and influencing risk outcomes at enterprise scale? Do you thrive in complex environments where your judgment and expertise directly support audit, regulatory, and certification objectives? As a Senior Technology Risk Analyst, you will play a critical role in shaping how Fidelity evaluates and strengthens technology risk management across the organization. This role offers the opportunity to lead impactful testing efforts, collaborate with senior stakeholders, and continuously improve how we manage technology risk.
Core responsibilities include:
- Leading and executing technology risk and controls testing activities supporting audit, regulatory, and certification requirements
- Assessing control design and operating effectiveness across complex, distributed, cloud, and vendor‑hosted environments
- Partnering with technology, risk, and audit teams to identifying, analyzing, and escalating control gaps and emerging risks
- Applying advanced risk judgment and analytical thinking to solving complex control and risk challenges
- Contributing to improving testing methodologies, automation approaches, and documentation quality
- Providing guidance and informal mentorship to less experienced analysts while supporting broader testing workstreams
The Expertise and Skills You Bring
You bring strong experience in technology risk, controls, or audit functions within complex organizations, along with the ability to independently evaluate control effectiveness and navigate ambiguity. You have a solid foundation in technology risk frameworks and testing methodologies and are comfortable partnering with senior stakeholders across technology, audit, and compliance. You communicate clearly, apply sound professional judgment, and leverage data and analytics to drive meaningful insights.
- Bachelor’s degree in computer science, technology, or a related field (Master’s degree preferred)
- 5 or more years of experience in technology risk, IT, cybersecurity, cloud, analytics, or audit roles
- Experience performing control assessments and evaluating control maturity across diverse technology environments
- Working knowledge of industry frameworks such as NIST, COBIT, AICPA Trust Services Criteria, ISO 27001, HITRUST, or similar
- Familiarity with cloud security models (AWS, Azure, SaaS, PaaS) and GRC platforms such as Archer (preferred)
- Professional certifications such as CISA, CISSP, CRISC, or CISM (nice to have, not required)
Note: Fidelity will not provide immigration sponsorship for this position.
The Team
We are part of Fidelity’s Enterprise Technology Risk organization, embedded within the broader Legal, Risk, and Compliance function. Our Technology Risk Controls Testing team exists to provide independent, objective assurance over the effectiveness of technology controls protecting our clients, employees, and brand. We work closely with Corporate Audit, Enterprise Compliance, Information Security, Operational Risk, and technology and business partners across Fidelity.
Our team is built on collaboration, accountability, and a relentless commitment to risk excellence. We value diverse perspectives, continuous learning, and strong partnerships that help Fidelity remain resilient in an evolving technology landscape. We are committed to fostering an inclusive culture where our people are empowered to grow, contribute, and make a meaningful impact.
Certifications:Category:Information TechnologyPlease be advised that Fidelity’s business is governed by the provisions of the Securities Exchange Act of 1934, the Investment Advisers Act of 1940, the Investment Company Act of 1940, ERISA, numerous state laws governing securities, investment and retirement-related financial activities and the rules and regulations of numerous self-regulatory organizations, including FINRA, among others. Those laws and regulations may restrict Fidelity from hiring and/or associating with individuals with certain Criminal Histories.
What Fidelity Investments employees say
Pay
Benefits
Hours and flexibility
Workplace
Get the full story on Breakroom
About Fidelity
Sourced by ZipRecruiter