1

It Risk Assurance Jobs (NOW HIRING)

Job Summary The IT Risk Associate will support the organization's technology risk management and cybersecurity compliance programs. Reporting to the Senior Director of IT and Cybersecurity Risk, this ...

Overview Senior Consultant (IT Risk) USA: Los Angeles, CA | Hybrid At MGO (Macias, Gini & O'Connell LLP), we put people first-because when our talent thrives, so do our clients. We serve innovative ...

Senior Consultant (IT Risk) USA: Los Angeles, CA | Hybrid At MGO (Macias, Gini & O'Connell LLP), we put people first--because when our talent thrives, so do our clients. We serve innovative ...

Overview Senior Consultant (IT Risk) USA: Los Angeles, CA | Hybrid At MGO (Macias, Gini & O'Connell LLP), we put people first-because when our talent thrives, so do our clients. We serve innovative ...

IT Risk Analyst

San Diego, CA · On-site

$79K - $102K/yr

Position Summary The position of IT Risk Analyst is responsible for participating in IT compliance and risk management initiatives. The candidate should demonstrate a basic understanding of IT risk, ...

Strengthen IT Governance & Controls * Lead the development of executive-level reporting on IT risk, compliance posture, and operational performance * Build and evolve KPI/KRI dashboards that provide ...

Senior Manager, Internal Audit, IT Here at Entegris, we use advanced science to enable technologies ... Lead AI/GenAI governance and risk assurance, including AI use case evaluation, control design, and ...

next page

Showing results 1-20

It Risk Assurance information

See salary details

$65K

$144.7K

$262.5K

How much do it risk assurance jobs pay per year?

As of Jun 26, 2026, the average yearly pay for it risk assurance in the United States is $144,712.00, according to ZipRecruiter salary data. Most workers in this role earn between $87,000.00 and $174,000.00 per year, depending on experience, location, and employer.

What do you do in risk assurance?

In risk assurance, professionals evaluate and improve an organization's controls, processes, and systems to manage risks effectively. They perform audits, assess compliance with regulations, and use tools like data analytics to identify vulnerabilities and ensure operational integrity.

What jobs in the US pay 300,000 a year?

In IT Risk Assurance, senior roles such as IT risk managers, cybersecurity directors, and chief information security officers (CISOs) can earn $300,000 or more annually, especially with extensive experience, certifications like CISSP or CISA, and leadership responsibilities. These positions often involve overseeing security strategies, compliance, and risk management in large organizations or consulting firms.

What is the difference between It Risk Assurance vs Cybersecurity Analyst?

AspectIt Risk AssuranceCybersecurity Analyst
CertificationsISO 27001, CISSP, CISACISSP, CompTIA Security+, CEH
Work EnvironmentAudit firms, consulting companies, corporate risk teamsIT security teams, corporate or government agencies
Primary FocusAssessing and managing IT risks, compliance, controlsDetecting, preventing, and responding to security threats

It Risk Assurance professionals focus on evaluating IT controls, compliance, and risk management processes, often within audit or consulting settings. Cybersecurity Analysts concentrate on protecting systems from threats through monitoring and incident response. While both roles require security certifications and involve IT security, their core responsibilities and work environments differ.

What are the typical challenges faced in an IT Risk Assurance role, and how can they be effectively managed?

Professionals in IT Risk Assurance often encounter the challenge of keeping up with rapidly evolving technology and regulatory requirements. Balancing thorough risk assessments with tight project deadlines can also be demanding, especially in large organizations with complex IT environments. Effective management involves continuous learning, strong communication with both technical and non-technical teams, and the ability to prioritize risks based on business impact. Leveraging industry frameworks and collaborating closely with stakeholders can help address these challenges and ensure robust risk mitigation.

Is SOC an entry level job?

SOC (Security Operations Center) roles are typically not entry-level positions; they usually require some experience in cybersecurity, network monitoring, or related fields. Entry-level roles in cybersecurity may include security analyst or technician positions, with SOC roles often requiring familiarity with security tools, incident response, and certifications like CompTIA Security+ or CISSP.

What is IT Risk Assurance?

IT Risk Assurance refers to the process of identifying, evaluating, and managing risks related to an organization's information technology systems. Professionals in this field help ensure that IT systems are secure, reliable, and compliant with relevant regulations and standards. They perform assessments, audit IT processes, and recommend controls to minimize risks such as data breaches, system failures, or non-compliance. IT Risk Assurance is essential for protecting sensitive information and maintaining business continuity.

What are the key skills and qualifications needed to thrive as an IT Risk Assurance professional, and why are they important?

To thrive as an IT Risk Assurance professional, you need a solid understanding of information systems, risk management frameworks, and auditing principles, usually supported by a degree in information technology, cybersecurity, or a related field. Familiarity with tools like GRC (Governance, Risk, and Compliance) platforms, security assessment software, and certifications such as CISA or CISSP are typically required. Strong analytical thinking, attention to detail, and effective communication skills help professionals stand out in this role. These competencies are essential for accurately identifying, assessing, and mitigating IT risks to protect organizational assets and ensure regulatory compliance.

What jobs pay 500,000 a year in the US?

In the field of IT Risk Assurance, senior roles such as Chief Information Security Officer (CISO) or senior cybersecurity executives can reach or exceed a $500,000 annual salary, especially with extensive experience, certifications like CISSP, and leadership responsibilities. High-level management positions in finance, law, or executive roles in technology companies also often pay this amount or more. Compensation at this level typically includes base salary, bonuses, and stock options.
More about It Risk Assurance jobs
What cities are hiring for It Risk Assurance jobs? Cities with the most It Risk Assurance job openings:
What states have the most It Risk Assurance jobs? States with the most job openings for It Risk Assurance jobs include:
Infographic showing various It Risk Assurance job openings in the United States as of June 2026, with employment types broken down into 98% Full Time, and 2% Part Time. Highlights an 95% Physical, 1% Hybrid, and 4% Remote job distribution, with an average salary of $144,712 per year, or $69.6 per hour.
IT Risk Associate

Full-time

Medical, Dental, Vision, Life, Retirement, PTO

Posted 26 days ago


AmeriLife rating

8.5

Company rating: 8.5 out of 10

Based on 8 frontline employees who took The Breakroom Quiz

85th of 262 rated insurance


Job description

Our Company

Explore how you can contribute at AmeriLife.

For over 50 years, AmeriLife has been a leader in the development, marketing and distribution of annuity, life and health insurance solutions for those planning for and living in retirement.

Associates get satisfaction from knowing they provide agents, marketers and carrier partners the support needed to succeed in a rapidly evolving industry.

Job Summary

The IT Risk Associate will support the organization's technology risk management and cybersecurity compliance programs. Reporting to the Senior Director of IT and Cybersecurity Risk, this position helps identify, assess, and mitigate IT-related risks across the enterprise.
This is a hands-on, cross-functional role that provides broad exposure to IT risk assessments, cybersecurity risk analysis, governance activities, issue management, and policy support. The position is well- suited for a detail-oriented professional who is eager to learn, comfortable collaborating across departments, and motivated to build a career in risk and compliance.

Job Description

Key Responsibilities
  • Assist in planning and conducting technology risk assessments for systems, applications, and business processes. Help identify potential security vulnerabilities, control gaps, and emerging technology risks; evaluate their likelihood and impact; and contribute to developing mitigation plans.
  • Document risk assessment findings, recommendations, and remediation plans for review by senior leaders. Help maintain and update the organization's risk and control inventory, including inherent risk ratings, control mappings, and residual risk calculations, in alignment with the Cyber Risk Management Framework.
  • Support maintaining and improving the governance framework for information security and IT risk.
  • Assist in drafting, reviewing, and updating risk management policies, procedures, and standards to align with best practices and regulatory requirements.
  • Log, monitor, and follow- up on identified risk issues, control exceptions, and cybersecurity incidents. Coordinate with issue owners in IT and business units to drive remediation actions and risk mitigation plans to completion.
  • Help develop and track Key Risk Indicators (KRIs) and other risk metrics to measure the organization's technology risk posture.
  • Stay current on IT and cybersecurity risk trends, emerging threats, and best-practice frameworks (such as NIST CSF, ISO 27001, COBIT) and applicable regulations. Proactively suggest enhancements to risk assessment processes, tools, and controls.

Qualifications

  • Education: Bachelor's degree in Information Technology, Computer Science, Cybersecurity, Information Systems, or a related field. An equivalent combination of education, training, and relevant experience will be considered.
  • Experience: 3-5 years of experience (including internships or co-op placements) in IT risk management, cybersecurity, IT audit, compliance, or a related area. Exposure to risk assessment or compliance processes in a corporate or regulated environment is highly valued.
  • Technical Knowledge: Basic understanding of IT systems, networks, and security principles (e.g., access controls, vulnerability management, business continuity, data protection). Awareness of risk management and security frameworks or standards such as NIST, ISO 27001, CIS Controls, and regulatory compliance requirements (e.g., NY DFS 23 NYCRR 500, HIPAA) is a plus.
  • Analytical Skills: Strong analytical and problem-solving abilities. Capable of interpreting data and technical information to evaluate risk levels and remediation priorities. High attention to detail in documentation and analysis.
  • Communication Skills: Excellent written and verbal communication skills. Able to prepare clear reports and presentations on risk findings and convey technical information in business-friendly language. Comfortable engaging with employees at various levels, from technical IT staff to business managers.
  • Organizational Skills: Strong time management abilities with the capacity to manage multiple tasks and priorities in a fast-paced environment. Proactive in meeting deadlines and following up on outstanding items.
  • Tools: Proficiency with Microsoft Excel, Word, and PowerPoint for analysis, documentation, and reporting. Ability to learn and use risk management or GRC software and other security tools quickly.

What AmeriLife Offers

A comprehensive benefits package that includes PTO, medical, dental, vision, retirement savings, disability insurance, and life insurance.

Equal Employment Opportunity Statement

We are an Equal Opportunity Employer and value diversity at all levels of the organization. All employment decisions are made without regard to race, color, religion, creed, sex (including pregnancy, childbirth, breastfeeding, or related medical conditions), sexual orientation, gender identity or expression, age, national origin, ancestry, disability, genetic information, marital status, veteran or military status, or any other protected characteristic under applicable federal, state, or local law. We are committed to providing an inclusive, equitable, and respectful workplace where all employees can thrive.

Americans with Disabilities Act (ADA) Statement

We are committed to full compliance with the Americans with Disabilities Act (ADA) and all applicable state and local disability laws. Reasonable accommodations are available to qualified applicants and employees with disabilities throughout the application and employment process. Requests for accommodation will be handled confidentially. If you require assistance or accommodation during the application process, please contact us at HR@AmeriLife.com.

Pay Transparency Statement

We are committed to pay transparency and equity, in accordance with applicable federal, state, and local laws. Compensation for this role will be determined based on skills, qualifications, experience, and market factors. Where required by law, the pay range for this position will be disclosed in the job posting or provided upon request. Additional compensation information, such as benefits, bonuses, and commissions, will be provided as required by law. We do not discriminate or retaliate against employees or applicants for inquiring about, discussing, or disclosing their pay or the pay of another employee or applicant, as protected under applicable law. Pay ranges are available upon request.

Background Screening Statement

Employment offers are contingent upon the successful completion of a background screening, which may include employment verification, education verification, criminal history check, and other job-related inquiries, as permitted by law. All screenings are conducted in accordance with applicable federal, state, and local laws, and information collected will be kept confidential. If any adverse decision is made based on the results, applicants will be notified and given an opportunity to respond.