The incumbent will execute and support day-to-day IT risk management activities (such as risk and controls assessments), manage deadlines and stakeholder expectations, and lead or participate in ...
The incumbent will execute and support day-to-day IT risk management activities (such as risk and controls assessments), manage deadlines and stakeholder expectations, and lead or participate in ...
IT Risk Manager
Scottsdale, AZ · Hybrid
Overview The Manager, Risk Management is responsible for the building and coordination of a ... information, gender, gender identity, gender expression, age, national origin, ancestry ...
IT Risk Manager
Scottsdale, AZ · Hybrid
Overview The Manager, Risk Management is responsible for the building and coordination of a ... information, gender, gender identity, gender expression, age, national origin, ancestry ...
IT Risk Manager
Chicago, IL · Hybrid
Overview The Manager, Risk Management is responsible for the building and coordination of a ... information, gender, gender identity, gender expression, age, national origin, ancestry ...
IT Risk Manager
Chicago, IL · Hybrid
Overview The Manager, Risk Management is responsible for the building and coordination of a ... information, gender, gender identity, gender expression, age, national origin, ancestry ...
Risk Assurance Senior, Advisory
Irvine, CA · On-site
Company Description Our rapidly growing advisory client is looking for Risk Assurance Seniors with ... Information Salary commensurate with experience. Interviewing immediately.
Risk Assurance Senior, Advisory
Irvine, CA · On-site
Company Description Our rapidly growing advisory client is looking for Risk Assurance Seniors with ... Information Salary commensurate with experience. Interviewing immediately.
Senior IT Risk Analyst
Rosemont, IL · On-site
$98K - $110K/yr
Wintrust provides community and commercial banking, specialty finance and wealth management ... Position Overview The Senior IT Risk Analyst (Audit concentration) role supports IT Risk Leadership ...
Senior IT Risk Analyst
Rosemont, IL · On-site
$98K - $110K/yr
Wintrust provides community and commercial banking, specialty finance and wealth management ... Position Overview The Senior IT Risk Analyst (Audit concentration) role supports IT Risk Leadership ...
IT Risk Services Analyst
Painted Post, NY · On-site
We deliver strategic workforce solutions that help you manage your talent and business more ... Work with project teams to provide Privacy Impact Assessments Conduct IT Risk Assessments on ...
IT Risk Services Analyst
Painted Post, NY · On-site
We deliver strategic workforce solutions that help you manage your talent and business more ... Work with project teams to provide Privacy Impact Assessments Conduct IT Risk Assessments on ...
IT Risk Officer, Sr
Lake Elmo, MN · On-site
$199K/yr
Issue Management & Remediation Oversight: Take oversight ownership of the open cybersecurity ... Demonstrated ability to influence security teams, technology leaders, and assurance partners ...
IT Risk Officer, Sr
Lake Elmo, MN · On-site
$199K/yr
Issue Management & Remediation Oversight: Take oversight ownership of the open cybersecurity ... Demonstrated ability to influence security teams, technology leaders, and assurance partners ...
Overview The Manager of IT Risk and Compliance will design, implement, and oversee the enterprise-wide IT governance, procurement, risk management, and compliance (GRC) framework for REEDS Jewelers.
Overview The Manager of IT Risk and Compliance will design, implement, and oversee the enterprise-wide IT governance, procurement, risk management, and compliance (GRC) framework for REEDS Jewelers.
Senior IT Risk Analyst
Rosemont, IL · Hybrid
$98K - $110K/yr
Wintrust provides community and commercial banking, specialty finance and wealth management ... Position Overview The Senior IT Risk Analyst (Audit concentration) role supports IT Risk Leadership ...
Senior IT Risk Analyst
Rosemont, IL · Hybrid
$98K - $110K/yr
Wintrust provides community and commercial banking, specialty finance and wealth management ... Position Overview The Senior IT Risk Analyst (Audit concentration) role supports IT Risk Leadership ...
Overview Baker Tilly is a leading advisory, tax and assurance firm, providing clients with a ... Managing sales pursuits and the sales pipeline, helping the team in identifying, qualifying and ...
Overview Baker Tilly is a leading advisory, tax and assurance firm, providing clients with a ... Managing sales pursuits and the sales pipeline, helping the team in identifying, qualifying and ...
Technology Risk Manager - (Technology / Integrated Risk Management) Location - Irvine, CA Company ... As a key affiliate, we provide cutting-edge IT services and support to top brands including Kia ...
Quick apply
Technology Risk Manager - (Technology / Integrated Risk Management) Location - Irvine, CA Company ... As a key affiliate, we provide cutting-edge IT services and support to top brands including Kia ...
IT Risk & Compliance Analyst
Andover, MA · On-site +1
$95K - $95K/yr
This position reports to the Manager, IT Risk & Compliance. This role is remote and may be based anywhere within the United States. Primary Job Duties and Responsibilities * Coordinate IT compliance, ...
IT Risk & Compliance Analyst
Andover, MA · On-site +1
$95K - $95K/yr
This position reports to the Manager, IT Risk & Compliance. This role is remote and may be based anywhere within the United States. Primary Job Duties and Responsibilities * Coordinate IT compliance, ...
IT Risk Officer, Sr
$199K/yr
Issue Management & Remediation Oversight: Take oversight ownership of the open cybersecurity ... Demonstrated ability to influence security teams, technology leaders, and assurance partners ...
IT Risk Officer, Sr
$199K/yr
Issue Management & Remediation Oversight: Take oversight ownership of the open cybersecurity ... Demonstrated ability to influence security teams, technology leaders, and assurance partners ...
Provide input to the Enterprise Risk Management Workgroup on technology and cybersecurity risks ... Support updates to the Information Security Program. * Participate in vendor technology risk ...
Provide input to the Enterprise Risk Management Workgroup on technology and cybersecurity risks ... Support updates to the Information Security Program. * Participate in vendor technology risk ...
Provide input to the Enterprise Risk Management Workgroup on technology and cybersecurity risks ... Support updates to the Information Security Program. * Participate in vendor technology risk ...
Quick apply
Provide input to the Enterprise Risk Management Workgroup on technology and cybersecurity risks ... Support updates to the Information Security Program. * Participate in vendor technology risk ...
Risk Assurance Senior, Advisory
Irvine, CA · On-site
Company Description Our rapidly growing advisory client is looking for Risk Assurance Seniors with ... Information Salary commensurate with experience. Interviewing immediately.
Risk Assurance Senior, Advisory
Irvine, CA · On-site
Company Description Our rapidly growing advisory client is looking for Risk Assurance Seniors with ... Information Salary commensurate with experience. Interviewing immediately.
Director, Technology Risk
Boston, MA · On-site
Evolve Geode's use of Governance, Risk, & Compliance ('GRC') tool, including adoption of IT risk management, business continuity & disaster recovery modules. * Help establish and maintain a risk ...
Director, Technology Risk
Boston, MA · On-site
Evolve Geode's use of Governance, Risk, & Compliance ('GRC') tool, including adoption of IT risk management, business continuity & disaster recovery modules. * Help establish and maintain a risk ...
Senior Director, IT/Technology Audit
$102K - $135K/yr
Reporting to the Head of IT Audit, this role leads risk-based assurance over critical technology ... This leader will manage a distributed team across regions and help elevate the function's quality ...
Senior Director, IT/Technology Audit
$102K - $135K/yr
Reporting to the Head of IT Audit, this role leads risk-based assurance over critical technology ... This leader will manage a distributed team across regions and help elevate the function's quality ...
IT QA Manager
Lubbock, TX · On-site
As a leading provider of crop insurance and other agricultural risk management tools, we recognize ... Sompo has a unique opportunity for an IT QA Manager in our Information Technology Department
IT QA Manager
Lubbock, TX · On-site
As a leading provider of crop insurance and other agricultural risk management tools, we recognize ... Sompo has a unique opportunity for an IT QA Manager in our Information Technology Department
IT Audit Manager
Parsippany, NJ · On-site
Minimum 7-10 years of progressive IT audit, IT risk management / assurance experience, or related disciplines, preferably in a large, complex organization * Hands-on experience with complex IT and ...
IT Audit Manager
Parsippany, NJ · On-site
Minimum 7-10 years of progressive IT audit, IT risk management / assurance experience, or related disciplines, preferably in a large, complex organization * Hands-on experience with complex IT and ...
It Risk And Assurance Manager information
See salary details
$82.8K is the 25th percentile. Wages below this are outliers.
$65K - $83K
25% of jobs
$83K - $100.9K
13% of jobs
$100.9K - $118.9K
0% of jobs
The median wage is $128.2K / yr.
$118.9K - $136.8K
23% of jobs
$136.8K - $154.8K
6% of jobs
$169.2K is the 75th percentile. Wages above this are outliers.
$154.8K - $172.7K
9% of jobs
$172.7K - $190.7K
8% of jobs
$190.7K - $208.6K
2% of jobs
$208.6K - $226.6K
2% of jobs
$226.6K - $244.5K
2% of jobs
$244.5K - $262.5K
8% of jobs
$65K
$144.7K
$262.5K
How much do it risk and assurance manager jobs pay per year?
What does a risk assurance manager do?
How much does a risk manager get paid?
What is the highest salary for a risk manager?
What is the difference between It Risk And Assurance Manager vs It Security Analyst?
| Aspect | It Risk And Assurance Manager | It Security Analyst |
|---|---|---|
| Certifications | ISO 27001, CISSP, CISA | CISSP, CompTIA Security+ |
| Work Environment | Oversees risk management, audits, compliance in organizations | Monitors security systems, investigates incidents, implements security measures |
| Employer & Industry Usage | Financial, healthcare, large enterprises | IT departments across various industries |
The It Risk And Assurance Manager focuses on managing overall IT risks, compliance, and assurance processes, while the It Security Analyst concentrates on monitoring and securing IT systems daily. Both roles require security certifications but differ in scope and responsibilities within organizations.
What does an IT risk manager do?

Full-time
Medical, Life, Retirement, PTO
Posted 7 days ago
Job description
Are you ready to make an impact at DTCC?
Do you want to work on innovative projects, collaborate with a dynamic and supportive team, and receive investment in your professional development? At DTCC, we are at the forefront of innovation in the financial markets. We are committed to helping our employees grow and succeed. We believe that you have the skills and drive to make a real impact. We foster a thriving internal community and are committed to creating a workplace that looks like the world that we serve.
The Information Technology group delivers secure, reliable technology solutions that enable DTCC to be the trusted infrastructure of the global capital markets. The team delivers high-quality information through activities that include development of essential, building infrastructure capabilities to meet client needs and implementing data standards and governance.
Pay and Benefits:
- Competitive compensation, including base pay and annual incentive
- Comprehensive health and life insurance and well-being benefits, based on location
- Pension / Retirement benefits
- Paid Time Off and Personal/Family Care, and other leaves of absence when needed to support your physical, financial, and emotional well-being.
- DTCC offers a flexible/hybrid model of 3 days onsite and 2 days remote (onsite Tuesdays, Wednesdays and a third day unique to each team or employee).
 The Impact you will have in this role:
Being a member of IT FinSight Delivery team, An IT ERM Associate Director has primary responsibility of supporting and conducting targeted IT risk assessments as well as the analysis and remediation of risk items including policy deviations, risk acceptances, issues and actions.
The incumbent will execute and support day-to-day IT risk management activities (such as risk and controls assessments), manage deadlines and stakeholder expectations, and lead or participate in projects within assigned areas of responsibility.Â
In carrying these responsibilities, the incumbent must work collaboratively with the IT Risk Management team (including Management Control Testing and Center of Excellence functions), other risk & control functions (e.g., Internal Audit, Technology Risk Management), as well as with IT line management (1st line).
Your Primary Responsibilities:
DTCC's Information Technology (IT) Risk Management program is designed to identify, manage, measure and mitigate risks in all IT Capabilities.
- Maintaining and enhancing IT risk management framework. The framework is comprised of tools and processes to help DTCC:
- Identify new risks, changes in risk, or relationships between risks
- Monitor and escalate key matters of risk and control. Â
- Support IT management in maintaining a complete and accurate Process, Risk, and Control libraryÂ
- Formulating, disseminating and administering IT risk management policy and procedures;
- Providing risk and control consultation and evaluations of control effectiveness to support/ evidence management awareness of the effectiveness of the control environment (i.e., assist management in issue self-identification)
- Liaising with Technology Risk, Information Security, Technology Centers of Excellence and with other subject matter experts within the organization to ensure that risks and appropriate mitigants are identified and communicated throughout the organization.
**NOTE: The Primary Responsibilities of this role are not limited to the details above. **
Qualifications:
- Minimum of 8 years of related experience
- Bachelor's degree preferred and/or equivalent experience
Talents Needed for Success:
- 8+ years of experience in risk management/ analysis and/or technical auditing/ examination
- Demonstrated experience leading and executing IT Risk and Control SelfAssessments (RCSAs), including risk identification, inherent and residual risk assessment, control design evaluation, and challenge of risk ratings.
- Strong experience producing IT quarterly risk reporting for senior management, including aggregation of risk themes, trend analysis, key risk indicators (KRIs), and concise executivelevel commentary.
- Proven ability to define, analyze, and interpret IT risk metrics, with solid quantitative and analytical skills to assess control effectiveness, risk trends, and outoftolerance conditions.
- Deep understanding of core IT processes and technologies (e.g., application development, infrastructure, cloud, cybersecurity, resiliency, change management) and how process failures translate into operational and regulatory risk.
- Experience designing and executing risk assessments across complex IT environments, including scoping, evidence evaluation, stakeholder interviews, and synthesis of findings into actionable risk insights.
- Strong business acumen, with the ability to understand supported business areas, critical services, and client impacts, and to align IT risk assessments to business priorities and outcomes.
- Handson experience analyzing IT asset inventories (applications, infrastructure, platforms, data assets) and extrapolating risk findings across portfolios, capabilities, and business lines to identify systemic issues.
- Demonstrated expertise in incident analysis and root cause analysis, including evaluation of technology incidents, control failures, and nearmisses to inform risk assessments, corrective actions, and risk reporting.
- Ability to challenge effectively and independently, partnering with IT, risk, and business stakeholders while maintaining strong governance, documentation standards, and audit readiness.
Â
The salary range is indicative for roles at the same level within DTCC across all US locations. Actual salary is determined based on the role, location, individual experience, skills, and other considerations. We are an equal opportunity employer and value diversity at our company. We do not discriminate on the basis of race, religion, color, national origin, sex, gender, gender expression, sexual orientation, age, marital status, veteran status, or disability status. We will ensure that individuals with disabilities are provided reasonable accommodation to participate in the job application or interview process, to perform essential job functions, and to receive other benefits and privileges of employment. Please contact us to request accommodation.
DTCC proudly supports Flexible Work Arrangements favoring openness and gives people freedom to do their jobs well, by encouraging diverse opinions and emphasizing teamwork.  When you join our team, you'll have an opportunity to make meaningful contributions at a company that is recognized as a thought leader in both the financial services and technology industries. A DTCC career is more than a good way to earn a living. It's the chance to make a difference at a company that's truly one of a kind.
Learn more about Clearance and Settlement by clicking here.
The IT SIFMU Delivery Department supports core Clearing and Settlement application delivery for DTC, NSCC and FICC. The department also develops and supports Asset Services, Wealth Management & Insurance Services and Master Reference Data applications.