1

It Risk And Compliance Analyst Jobs in Minnesota

Overview The Technology Risk Analyst helps Digital & IT operate as a well-governed, resilient, risk ... The role also supports broader Office of the CIO priorities, including data governance, compliance ...

New

Senior SOX IT Analyst

New Brighton, MN · On-site

$90K - $120K/yr

Our client is seeking an experienced IT SOX Senior Analyst to support risk, compliance, and internal control initiatives. This role will partner closely with control owners, auditors, and business ...

Senior SOX IT Analyst

New Brighton, MN · On-site

$90K - $120K/yr

Our client is seeking an experienced IT SOX Senior Analyst to support risk, compliance, and internal control initiatives. This role will partner closely with control owners, auditors, and business ...

Enterprise Architect (IT)

Minnetonka, MN · On-site +1

$102K - $208K/yr

Partner with cybersecurity, technology risk, compliance, infrastructure, application, data, and ... Bachelor's degree in computer science, Information Technology, Engineering, Business, or a related ...

Enterprise Architect (IT)

Minnetonka, MN · On-site +1

$70.25 - $90.75/hr

Partner with cybersecurity, technology risk, compliance, infrastructure, application, data, and ... Bachelor's degree in computer science, Information Technology, Engineering, Business, or a related ...

Senior IT Risk Project Manager

Minneapolis, MN · On-site

$136K - $137K/yr

... IT risk, security, or compliance-driven programmes - not only feature delivery - Ability to build and maintain a risk register: identification, qualification, scoring, mitigation planning, ownership ...

next page

Showing results 1-20

It Risk And Compliance Analyst information

See Minnesota salary details

$15

$39

$64

How much do it risk and compliance analyst jobs pay per hour?

As of Sep 4, 2026, the average hourly pay for it risk and compliance analyst in Minnesota is $39.65, according to ZipRecruiter salary data. Most workers in this role earn between $29.18 and $48.27 per hour, depending on experience, location, and employer.

What is an IT Risk and Compliance Analyst?

IT Risk and Compliance Analysts are professionals who identify, assess, and manage risks related to information technology systems within an organization. They ensure that IT processes and systems comply with internal policies and external regulations, such as GDPR or SOX. Their responsibilities include conducting risk assessments, developing mitigation strategies, monitoring compliance, and reporting on the effectiveness of controls. By doing so, they help protect the organization from cyber threats, data breaches, and regulatory penalties.

What are the key skills and qualifications needed to thrive as an IT Risk and Compliance Analyst?

To thrive as an IT Risk and Compliance Analyst, you need a solid understanding of risk management frameworks, regulatory compliance standards (such as SOX, HIPAA, or GDPR), and a bachelor's degree in information technology or a related field. Familiarity with risk assessment tools, GRC (Governance, Risk, and Compliance) platforms, and relevant certifications like CRISC or CISA is typically required. Strong analytical thinking, attention to detail, and effective communication skills help analysts interpret regulations and collaborate across departments. These skills ensure organizations proactively manage risks, maintain regulatory compliance, and protect sensitive information.

What are some common challenges an IT Risk and Compliance Analyst faces when balancing regulatory requirements with business objectives?

One common challenge IT Risk and Compliance Analysts face is ensuring that regulatory requirements are fully met without hindering business operations or innovation. Balancing security protocols and compliance standards—such as GDPR, SOX, or HIPAA—with the need for efficient workflows can be complex. Analysts must collaborate closely with IT, legal, and business units to interpret regulations pragmatically, design effective controls, and communicate the importance of compliance while minimizing disruption. This often requires strong negotiation, communication, and analytical skills to find solutions that satisfy both compliance mandates and business goals.

What is the difference between It Risk And Compliance Analyst vs It Security Analyst?

AspectIt Risk And Compliance AnalystIt Security Analyst
CertificationsISO 27001, CISSP, CISACISSP, CompTIA Security+
Work EnvironmentRisk assessments, policy development, compliance auditsNetwork monitoring, incident response, security infrastructure
Industry UsageFinancial, healthcare, government sectorsTech, finance, healthcare sectors

The It Risk And Compliance Analyst focuses on ensuring organizational adherence to regulations and managing risk frameworks, while the It Security Analyst primarily handles security measures, threat detection, and incident response. Both roles require similar certifications and often work within the same industries, but their core responsibilities differ: one emphasizes compliance and risk management, the other emphasizes security operations.

What does an IT risk and compliance analyst do?

An IT risk and compliance analyst evaluates and manages an organization's technology-related risks to ensure adherence to regulatory standards and internal policies. They identify vulnerabilities, implement controls, and monitor compliance using tools like risk assessment frameworks and audit procedures to protect information systems.

What are popular job titles related to It Risk And Compliance Analyst jobs in Minnesota?

For It Risk And Compliance Analyst jobs in Minnesota, the most frequently searched job titles are:

What job categories do people searching It Risk And Compliance Analyst jobs in Minnesota look for?

The top searched job categories for It Risk And Compliance Analyst jobs in Minnesota are:

What cities in Minnesota are hiring for It Risk And Compliance Analyst jobs?

Cities in Minnesota with the most It Risk And Compliance Analyst job openings:

Infographic showing various It Risk And Compliance Analyst job openings in Minnesota as of August 2026, with employment types broken down into 1% As Needed, 87% Full Time, 9% Part Time, and 3% Contract. Highlights an 93% Physical, 3% Hybrid, and 4% Remote job distribution, with an average salary of $82,476 per year, or $39.7 per hour.

Technology Risk Analyst

Cretex Medical

Elk River, MN • On-site

$61 - $91/hr

Other

Medical, Dental, Vision, Life, Retirement, PTO

Posted 3 days ago

New


Job description

Overview

The Technology Risk Analyst helps Digital & IT operate as a well-governed, resilient, risk-aware, and effective business function, with a primary focus on strengthening organizational resilience and managing technology risk. The role works across Digital & IT and the business to strengthen organizational resilience, manage technology risk, improve governance, and help leaders understand technology dependencies and their role in reducing risk.

The primary focus is Business Continuity and Disaster Recovery, technology risk management, governance, and business education. The role also supports broader Office of the CIO priorities, including data governance, compliance, financial management, contracts, performance reporting, and continuous improvement.

The ideal candidate is highly organized, analytical, comfortable working across technical and business teams, and able to turn complex risks and requirements into practical actions and measurable improvements.

Responsibilities

Essential Job Functions

Technology Risk & Organizational Resilience

  • Own the development, maintenance, testing, and continuous improvement of technology Business Continuity and Disaster Recovery plans.
  • Partner with business and technology leaders to identify critical processes, technology dependencies, recovery requirements, and operational risks.
  • Coordinate Business Impact Analyses, tabletop exercises, disaster recovery testing, and follow-up remediation.
  • Maintain the technology risk register and coordinate risk identification, assessment, remediation, acceptance, and reporting.
  • Identify critical technology, vendor, and process dependencies that could impact business operations.
  • Help business leaders understand technology risks, preparedness expectations, and actions they can take to improve organizational resilience.

Governance, Policy & Compliance

  • Develop, coordinate, and maintain Digital & IT policies, standards, procedures, and governance processes, including stakeholder review, approval, communication, implementation, and periodic review.
  • Lead or support initiatives related to data classification, retention, handling, privacy, and other information-governance requirements.
  • Support technology-related regulatory, legal, contractual, customer, and geographic compliance requirements.
  • Coordinate technology risk exceptions and ensure accepted risks are appropriately documented, approved, reviewed, and tracked.
  • Support audits, assessments, customer requirements, cyber insurance requests, and related documentation.

Cybersecurity Risk & Awareness

  • Partner closely with the Cybersecurity Manager to support cybersecurity risk management and alignment with applicable frameworks and requirements.
  • Help translate cybersecurity risks into clear business impacts and practical actions.
  • Support cybersecurity awareness, employee education, phishing programs, and other activities designed to reduce human-related risk.
  • Assist with cybersecurity risk assessments, customer security requirements, and remediation tracking.

IT Business Management

  • Support monthly Digital & IT financial management, including budget tracking, forecast updates, actual-versus-plan analysis, vendor spend, and identification of significant variances.
  • Maintain visibility to key technology contracts, renewals, obligations, and upcoming decisions.
  • Support annual planning, investment prioritization, and development of business cases for technology initiatives.
  • Help identify opportunities to optimize technology spending, licensing, vendors, and services.

Performance, Governance & Operating Rhythm

  • Develop and maintain Digital & IT KPIs, KRIs, scorecards, dashboards, and management reporting.
  • Support recurring Digital & IT operating reviews, governance meetings, and leadership discussions.
  • Track significant risks, issues, actions, and commitments through completion and provide analysis to help leadership identify trends and improvement opportunities.

Continuous Improvement & Office of the CIO

  • Lead or coordinate cross-functional initiatives related to risk, governance, resilience, compliance, and operational improvement.
  • Identify and apply opportunities to use AI, automation, and digital tools to streamline Digital & IT processes, improve reporting, reduce manual effort, and increase operational effectiveness.
  • Support special projects and emerging CIO priorities that require structured analysis, coordination, and follow-through.
  • Work across Digital & IT, Finance, Legal, HR, business leadership, and external partners to drive initiatives to completion.
Qualifications

Minimum Requirements, Education & Experience (incl. KSA’s and certifications)

  • Bachelor’s degree in Information Technology, Business, Risk Management, Cybersecurity, Finance, or a related field, or an equivalent combination of education and relevant experience.
  • 3+ years of experience in technology, risk management, governance, business continuity, cybersecurity, business analysis, finance, or a related field.
  • Strong analytical, organizational, documentation, and project coordination skills.
  • Demonstrated ability to identify risks, organize complex information, and drive actions through completion.
  • Strong written and verbal communication skills with the ability to work effectively with technical and non-technical audiences.
  • Ability to translate technology concepts, risks, and requirements into clear business language.
  • Experience coordinating cross-functional projects or initiatives.
  • Strong attention to detail and ability to manage multiple priorities in a fast-paced environment.
  • Strong proficiency with Excel, PowerPoint, and other reporting or analytical tools

Desirable Criteria & Qualifications

  • Experience with business continuity, disaster recovery planning, Business Impact Analysis, tabletop exercises, or recovery testing.
  • Familiarity with technology and cybersecurity risk frameworks such as NIST, ISO 27001, or similar standards.
  • Experience with technology governance, policy development, audit, risk, or compliance activities.
  • Experience with data classification, data retention, privacy, or information governance.
  • Experience supporting IT financial management, budgeting, contracts, renewals, or vendor management.
  • Experience developing KPIs, dashboards, management reporting, or executive-level presentations.
  • Experience using AI, automation, or workflow tools to improve business or technology processes.
  • Experience in manufacturing, medical device, regulated, or multi-site environments.
  • Relevant certifications in risk, business continuity, cybersecurity, finance, or project management are valued.

#LI-MH1

Pay Range

USD $60,800.00 - USD $91,200.00 /Yr.

Pay Range Details

This pay range reflects the base hourly rate or annual salary for positions within this job grade, based on our market-based pay structures. Actual compensation will depend on factors such as skills, relevant experience, education, internal equity, business needs, and local market conditions. While the full hiring range is shared for transparency, offers are rarely made at the minimum or maximum of the range.

Company Benefits

All Employees:

Our 401k retirement savings plan with a company match contribution; onsite health clinics, discretionary holiday bonus program (based on years of service), Cretex University, 24/7 employee assistance program with access to five confidential visits with a licensed counselor at no cost, wellness program with incentives, an employee death benefit, and employee sick and safe leave are available to all Cretex employees.

20+hours:

Cretex’s medical benefit package includes: comprehensive medical insurance with access to virtual providers; dental insurance (Little Partners Dental benefit covers services 100 percent for children 12 and younger when seen by a Health Partners in network provider); vision insurance; a pre-tax health savings account, healthcare and dependent care pre-tax reimbursement accounts; paid holidays, paid time off; and our discretionary profit sharing program are available to employees working 20+ hours/week.

30+ hours:

Parental Leave, accident and critical illness benefits, optional employee, spouse, and child life; short and long term disability; company provided life insurance; and tuition assistance programs are available to employees working 30+ hours per week.

(Some benefits are subject to eligibility criteria.)

Applicants will receive consideration for employment regardless of their race, color, creed, religion, national origin, sex, sexual orientation, gender identity, disability, age, veteran status, marital status, family status, status with regard to public assistance, or any other protected status as required by law.

Our company uses E-Verify to confirm the employment and eligibility of all newly hired employees. To learn more about E-Verify, including your rights and responsibilities, please visit www.dhs.gov/E-Verify.

#J-18808-Ljbffr