1

It Risk Analyst Jobs (NOW HIRING)

Governance & Risk Analyst

Chicago, IL · On-site

$85K - $95K/yr

The GRC Analyst will support the organization's Governance, Risk & Compliance function with a ... Strong understanding of IT risk assessment methodologies, frameworks, and industry best practices.

The IT Security Risk Manager will lead the identification, assessment, monitoring, and mitigation ... cause analysis and remediation tracking. • Participates in business continuity and disaster ...

What you'll do The IT Risk Senior Analyst is a strategic advisor responsible for integrating IT risk management and compliance into enterprise technology transformation initiatives. This role ensures ...

What you'll do The IT Risk Senior Analyst is a strategic advisor responsible for integrating IT risk management and compliance into enterprise technology transformation initiatives. This role ensures ...

Showing results 41-60

It Risk Analyst information

See salary details

$15

$40

$65

How much do it risk analyst jobs pay per hour?

As of Jul 28, 2026, the average hourly pay for it risk analyst in the United States is $40.49, according to ZipRecruiter salary data. Most workers in this role earn between $29.81 and $49.28 per hour, depending on experience, location, and employer.

What does an IT Risk Analyst do?

An IT Risk Analyst is responsible for identifying, assessing, and mitigating risks that could impact an organization's information technology systems and data. They analyze potential threats, such as cyberattacks or data breaches, and develop strategies to minimize these risks. Their role involves working closely with other IT professionals to ensure compliance with security policies and regulatory requirements, as well as preparing risk reports and recommending improvements. Ultimately, IT Risk Analysts help organizations protect sensitive information and maintain secure, reliable IT operations.

What are the key skills and qualifications needed to thrive as an IT Risk Analyst, and why are they important?

To thrive as an IT Risk Analyst, you need a strong understanding of risk management frameworks, cybersecurity principles, and regulatory compliance—often supported by a degree in information technology or a related field. Familiarity with tools such as risk assessment software, vulnerability scanners, and certifications like CISSP or CISA is typically required. Analytical thinking, attention to detail, and effective communication are vital soft skills that distinguish top performers in this role. These competencies are crucial for accurately identifying risks, ensuring regulatory compliance, and effectively communicating findings to stakeholders.

What are some common challenges IT Risk Analysts face when collaborating with other departments?

IT Risk Analysts often work closely with various departments such as IT, compliance, and operations to identify and mitigate risks. One common challenge is translating technical risk information into terms that non-technical stakeholders can understand. Additionally, balancing the need for rigorous security measures with business objectives can sometimes lead to conflicting priorities. Effective communication and building strong relationships across teams are key to overcoming these challenges and ensuring that risk controls are both practical and effective.

What is the difference between It Risk Analyst vs Cybersecurity Analyst?

AspectIt Risk AnalystCybersecurity Analyst
CertificationsISO 27001, CISSP, CISACISSP, CEH, CompTIA Security+
Work EnvironmentFinancial, healthcare, corporate sectors focusing on risk managementIT security teams, cybersecurity firms, tech companies
Employer & Industry UsageFinancial institutions, large corporations, consulting firmsTech companies, government agencies, security firms

While both roles focus on protecting information, the It Risk Analyst primarily assesses and manages overall IT risks within organizations, emphasizing compliance and risk mitigation strategies. In contrast, the Cybersecurity Analyst concentrates on defending systems from cyber threats and attacks. Both roles often collaborate but serve distinct functions in an organization's security framework.

More about It Risk Analyst jobs
What cities are hiring for It Risk Analyst jobs? Cities with the most It Risk Analyst job openings:
What states have the most It Risk Analyst jobs? States with the most job openings for It Risk Analyst jobs include:
Infographic showing various It Risk Analyst job openings in the United States as of July 2026, with employment types broken down into 3% Locum Tenens, 86% Full Time, 6% Part Time, 1% Temporary, and 4% Contract. Highlights an 83% Physical, 7% Hybrid, and 10% Remote job distribution, with an average salary of $84,210 per year, or $40.5 per hour.
Principal Technology Risk Analyst

Principal Technology Risk Analyst

Fidelity Investments

Merrimack, NH

Full-time

Retirement

Posted 22 hours ago


Fidelity Investments rating

8.7

Company rating: 8.7 out of 10

Based on 270 frontline employees who took The Breakroom Quiz

16th of 150 rated financial services


Job description

Job Description:

PRINCIPAL ANALYST, CYBER ASSURANCE AND SUPPORT

THE ROLE


Fidelity Investments is seeking a Principal Analyst to join the Cyber Assurance and Support team. This role offers an outstanding opportunity to advance a cybersecurity career at one of the top financial services companies. You will join a high-impact team that plays a critical role in attracting and retaining business by supporting cybersecurity, fraud, AI, and technology inquiries from 401(k) clients and prospects.


In this role, you will support client requests, including discussions on cybersecurity posture, fraud prevention, and Fidelity's approach to responsible AI use, model governance, and data protection

 You will also help articulate Fidelity's approach to secure, responsible AI adoption and oversight.


  • Provide assurance over Fidelity's cybersecurity, AI governance, and customer protection controls using the team's standard response library, collaboration with team members, and engagement with business partners
  • Respond to client security, privacy, and AI-related inquiries, including Requests for Proposals (RFPs), due diligence questionnaires, and emerging AI risk assessments
  • Support client requests, including discussions on cybersecurity posture, fraud prevention, and Fidelity's approach to responsible AI use, model governance, and data protection
  • Partner with internal teams to continuously enhance response content, including evolving AI-related controls, policies, and safeguards

THE EXPERTISE AND SKILLS YOU BRING 

  • Bachelor's degree, preferably in Computer Science, Cybersecurity, Information Systems, or a related technical field; or equivalent experience
  • Strong understanding of security and risk considerations related to artificial intelligence, including data privacy, model governance, and responsible AI practices
  • Demonstrated ability to translate technical cybersecurity and AI controls into clear, concise, and client-friendly responses
  • Strong ability to manage multiple priorities simultaneously in a fast-paced, highly visible environment
  • Excellent written and verbal communication skills, with the ability to build strong, collaborative relationships across technical, business, and client-facing teams
  • 6-10 years of experience in cybersecurity, information security, technology risk management, and/or emerging technology risk domains such as AI
  • Relevant cybersecurity certifications such as CISSP, CISA, or similar; familiarity with AI governance frameworks is a plus

THE TEAM

You will be a member of the Workplace Customer Protection organization. The mission of the Customer Protection is to protect the Workplace community of plan sponsors and participants using our retirement and benefits platforms. 


As a member of the Customer Protection, you would be joining a culture that is defined by how our team members work. We: 


  • Aretrusted, collaborative partnerswho are engaged and transparent 
  • Aresecurity subject matter expertsand continuous learners that are passionate about protecting our customers 
  • Takepersonal accountability for quality and timely deliveryof our services 
  • Demonstrateinclusion and empathywhere everyone feels safe to be their authentic selves 
  • Fosterassociates' well-beingby supporting work-life balance and guilt-free time off 

Fidelity's Onsite Working Model
Fidelity is transitioning to a full-time onsite working model through a phased rollout across regions and roles. Currently, some roles and locations require 100% onsite presence, while others require less. Onsite expectations are likely to evolve as the rollout continues. This transition does not apply to fully remote roles.

Certifications:Category:Information Technology

Please be advised that Fidelity's business is governed by the provisions of the Securities Exchange Act of 1934, the Investment Advisers Act of 1940, the Investment Company Act of 1940, ERISA, numerous state laws governing securities, investment and retirement-related financial activities and the rules and regulations of numerous self-regulatory organizations, including FINRA, among others. Those laws and regulations may restrict Fidelity from hiring and/or associating with individuals with certain Criminal Histories.


What Fidelity Investments employees say

Pay

Benefits

Hours and flexibility

Workplace

Get the full story on Breakroom