This is a broad, high-impact role spanning both IT SOX compliance and operational IT audits. You ... Own the full IT SOX lifecycle - scoping, risk assessment, documentation, walkthroughs, testing ...
This is a broad, high-impact role spanning both IT SOX compliance and operational IT audits. You ... Own the full IT SOX lifecycle - scoping, risk assessment, documentation, walkthroughs, testing ...
IT Infrastructure Compliance Engineer
Santa Clara, CA ยท On-site +1
Evaluate the IT risk and security posture of external partners, assessing compliance with security standards, data protection protocols, and intellectual property safeguards. Serve as a primary on ...
New
IT Infrastructure Compliance Engineer
Santa Clara, CA ยท On-site +1
Evaluate the IT risk and security posture of external partners, assessing compliance with security standards, data protection protocols, and intellectual property safeguards. Serve as a primary on ...
New
$95K - $96K/yr
The Analyst, IT Compliance & Controls supports the organization's IT compliance, risk, and control environment across Canada, Europe, and Australia. This role helps coordinate the design ...
New
$95K - $96K/yr
The Analyst, IT Compliance & Controls supports the organization's IT compliance, risk, and control environment across Canada, Europe, and Australia. This role helps coordinate the design ...
New
IT SOX Compliance Senior Manager
Alameda, CA ยท On-site
$165K - $230K/yr
Specific Duties and Responsibilities โข Responsible for strategic leadership, oversight, and day-to-day management of the IT SOX compliance program. * โข Oversee IT risk assessment and scoping ...
IT SOX Compliance Senior Manager
Alameda, CA ยท On-site
$165K - $230K/yr
Specific Duties and Responsibilities โข Responsible for strategic leadership, oversight, and day-to-day management of the IT SOX compliance program. * โข Oversee IT risk assessment and scoping ...
IT Infrastructure Compliance Engineer
Santa Clara, CA ยท On-site +1
Evaluate the IT risk and security posture of external manufacturing partners (Foundries, OSATs, and Subcontractors). Assess their compliance with NVIDIA's security standards, data protection ...
IT Infrastructure Compliance Engineer
Santa Clara, CA ยท On-site +1
Evaluate the IT risk and security posture of external manufacturing partners (Foundries, OSATs, and Subcontractors). Assess their compliance with NVIDIA's security standards, data protection ...
Information Technology Risk & Controls Audit Manager
San Francisco, CA ยท On-site
$95 - $100/hr
Hybrid in San Francisco, CA Our client is seeking an experienced IT Risk & Controls Audit Manager to lead audit, risk, and compliance initiatives within a dynamic environment. The role will evaluate ...
Information Technology Risk & Controls Audit Manager
San Francisco, CA ยท On-site
$95 - $100/hr
Hybrid in San Francisco, CA Our client is seeking an experienced IT Risk & Controls Audit Manager to lead audit, risk, and compliance initiatives within a dynamic environment. The role will evaluate ...
Lead, IT SOX Risk Advisory
Mountain View, CA ยท On-site
Come join Intuit as a IT SOX Lead Risk Advisor within the SOX Risk and Compliance Organization (SRCO) . SRCO is a management-led function purpose-built to deliver a modern, sustainable, and risk ...
Lead, IT SOX Risk Advisory
Mountain View, CA ยท On-site
Come join Intuit as a IT SOX Lead Risk Advisor within the SOX Risk and Compliance Organization (SRCO) . SRCO is a management-led function purpose-built to deliver a modern, sustainable, and risk ...
Lead, IT SOX Risk Advisory
Mountain View, CA ยท On-site
Come join Intuit as a IT SOX Lead Risk Advisor within the SOX Risk and Compliance Organization (SRCO). SRCO is a management-led function purpose-built to deliver a modern, sustainable, and risk ...
Lead, IT SOX Risk Advisory
Mountain View, CA ยท On-site
Come join Intuit as a IT SOX Lead Risk Advisor within the SOX Risk and Compliance Organization (SRCO). SRCO is a management-led function purpose-built to deliver a modern, sustainable, and risk ...
Assess cybersecurity, technology, artificial intelligence, data protection, and operational risks through structured risk assessment and governance processes. * Facilitate information security risk ...
Assess cybersecurity, technology, artificial intelligence, data protection, and operational risks through structured risk assessment and governance processes. * Facilitate information security risk ...
Lead, IT SOX Risk Advisory
Mountain View, CA ยท On-site
Overview Come join Intuit as a IT SOX Lead Risk Advisor within the SOX Risk and Compliance Organization (SRCO). SRCO is a management-led function purpose-built to deliver a modern, sustainable, and ...
Lead, IT SOX Risk Advisory
Mountain View, CA ยท On-site
Overview Come join Intuit as a IT SOX Lead Risk Advisor within the SOX Risk and Compliance Organization (SRCO). SRCO is a management-led function purpose-built to deliver a modern, sustainable, and ...
Lead, IT SOX Risk Advisory
San Diego, CA ยท On-site
Overview Come join Intuit as a IT SOX Lead Risk Advisor within the SOX Risk and Compliance Organization (SRCO). SRCO is a management-led function purpose-built to deliver a modern, sustainable, and ...
Lead, IT SOX Risk Advisory
San Diego, CA ยท On-site
Overview Come join Intuit as a IT SOX Lead Risk Advisor within the SOX Risk and Compliance Organization (SRCO). SRCO is a management-led function purpose-built to deliver a modern, sustainable, and ...
Assess cybersecurity, technology, artificial intelligence, data protection, and operational risks through structured risk assessment and governance processes. * Facilitate information security risk ...
Assess cybersecurity, technology, artificial intelligence, data protection, and operational risks through structured risk assessment and governance processes. * Facilitate information security risk ...
Information Technology Risk & Controls Audit Manager
San Francisco, CA ยท On-site
$95 - $100/hr
Hybrid in San Francisco, CA Our client is seeking an experienced IT Risk & Controls Audit Manager to lead audit, risk, and compliance initiatives within a dynamic environment. The role will evaluate ...
Quick apply
Information Technology Risk & Controls Audit Manager
San Francisco, CA ยท On-site
$95 - $100/hr
Hybrid in San Francisco, CA Our client is seeking an experienced IT Risk & Controls Audit Manager to lead audit, risk, and compliance initiatives within a dynamic environment. The role will evaluate ...
IT Infrastructure Compliance Engineer
Santa Clara, CA ยท On-site
$168 - $264.50/hr
Evaluate the IT risk and security posture of external manufacturing partners (Foundries, OSATs, and Subcontractors). Assess their compliance with NVIDIA's security standards, data protection ...
IT Infrastructure Compliance Engineer
Santa Clara, CA ยท On-site
$168 - $264.50/hr
Evaluate the IT risk and security posture of external manufacturing partners (Foundries, OSATs, and Subcontractors). Assess their compliance with NVIDIA's security standards, data protection ...
Lead, IT SOX Risk Advisory
San Diego, CA ยท On-site
Come join Intuit as a IT SOX Lead Risk Advisor within the SOX Risk and Compliance Organization (SRCO). SRCO is a management-led function purpose-built to deliver a modern, sustainable, and risk ...
Lead, IT SOX Risk Advisory
San Diego, CA ยท On-site
Come join Intuit as a IT SOX Lead Risk Advisor within the SOX Risk and Compliance Organization (SRCO). SRCO is a management-led function purpose-built to deliver a modern, sustainable, and risk ...
Senior Information Security Governance, Risk & Compliance Analyst
Los Angeles, CA ยท On-site
$129 - $193/hr
This second-line role provides independent oversight, monitoring, reporting, and control assurance to strengthen information security, technology compliance, and risk management capabilities. The ...
Senior Information Security Governance, Risk & Compliance Analyst
Los Angeles, CA ยท On-site
$129 - $193/hr
This second-line role provides independent oversight, monitoring, reporting, and control assurance to strengthen information security, technology compliance, and risk management capabilities. The ...
Risk & Compliance Lead
El Segundo, CA ยท On-site
$150 - $230/hr
Serve as the primary bridge between insurance brokers, carriers, legal, operations, IT, security ... risk and compliance. * Partner with BD on new deployments (government and commercial) to ensure ...
Risk & Compliance Lead
El Segundo, CA ยท On-site
$150 - $230/hr
Serve as the primary bridge between insurance brokers, carriers, legal, operations, IT, security ... risk and compliance. * Partner with BD on new deployments (government and commercial) to ensure ...
Risk & Compliance Lead
El Segundo, CA ยท On-site
$167K/yr
Serve as the primary bridge between insurance brokers, carriers, legal, operations, IT, security ... risk and compliance. * Partner with BD on new deployments (government and commercial) to ensure ...
Quick apply
Risk & Compliance Lead
El Segundo, CA ยท On-site
$167K/yr
Serve as the primary bridge between insurance brokers, carriers, legal, operations, IT, security ... risk and compliance. * Partner with BD on new deployments (government and commercial) to ensure ...
Risk & Compliance Lead
El Segundo, CA ยท On-site
$115K - $168K/yr
Serve as the primary bridge between insurance brokers, carriers, legal, operations, IT, security ... risk and compliance. * Partner with BD on new deployments (government and commercial) to ensure ...
Risk & Compliance Lead
El Segundo, CA ยท On-site
$115K - $168K/yr
Serve as the primary bridge between insurance brokers, carriers, legal, operations, IT, security ... risk and compliance. * Partner with BD on new deployments (government and commercial) to ensure ...
Conduct quarterly account reviews with internal stakeholders, including cyber strategy, technology risk, IT audit, governance risk and compliance, privacy, third-party risk, cloud security, incident ...
Conduct quarterly account reviews with internal stakeholders, including cyber strategy, technology risk, IT audit, governance risk and compliance, privacy, third-party risk, cloud security, incident ...
It Risk Compliance information
See California salary details
$30.4K - $45.5K
4% of jobs
$45.5K - $60.7K
5% of jobs
$60.7K - $75.9K
7% of jobs
$86.6K is the 25th percentile. Wages below this are outliers.
$75.9K - $91.1K
12% of jobs
The median wage is $105.2K / yr.
$91.1K - $106.2K
23% of jobs
$106.2K - $121.4K
15% of jobs
$121.4K - $136.6K
7% of jobs
$137.8K is the 75th percentile. Wages above this are outliers.
$136.6K - $151.8K
17% of jobs
$151.8K - $167K
4% of jobs
$167K - $182.1K
3% of jobs
$182.1K - $197.3K
2% of jobs
$30.4K
$113.7K
$197.3K
How much do it risk compliance jobs pay per year?
What is IT Risk Compliance?
What are the key skills and qualifications needed to thrive as an IT Risk Compliance professional?
What are some common challenges faced by professionals in IT Risk Compliance roles, and how can they be addressed?
What is the difference between It Risk Compliance vs It Security Analyst?
| Aspect | It Risk Compliance | It Security Analyst |
|---|---|---|
| Certifications | ISO 27001, CISSP, CISA | CISSP, Security+ |
| Work Environment | Policy development, audits, compliance assessments | Monitoring security systems, incident response |
| Employer & Industry Usage | Financial, healthcare, government sectors | Tech companies, cybersecurity firms, enterprises |
It Risk Compliance focuses on ensuring organizations adhere to regulatory standards and manage risks through policies and audits. In contrast, It Security Analysts primarily monitor and respond to security threats, implementing technical safeguards. Both roles are vital in protecting organizational assets but differ in their core responsibilities and focus areas.
What are popular job titles related to It Risk Compliance jobs in California?
For It Risk Compliance jobs in California, the most frequently searched job titles are:
What job categories do people searching It Risk Compliance jobs in California look for?
The top searched job categories for It Risk Compliance jobs in California are:
What cities in California are hiring for It Risk Compliance jobs?
Cities in California with the most It Risk Compliance job openings:

Lead, IT Audit and Technology Risk
San Francisco, CA โข On-site
Full-time
Re-posted yesterday
Job description
Notion is the collaborative AI workspace where teams and agents think together. We're building one place where your knowledge, projects, meetings, and AI tools live side by side, so work is faster, clearer, and less fragmented. Millions of individuals, small teams, and large companies run their work on Notion.
Notinos (our employees) are customer zero in bringing this future of work to life. We care about craft, building things that last, and the belief that great work is still fundamentally human. Our goal isn't to ship the next feature. Each and every team of Notinos is working to set the standard for how humans work together in the AI era. From building a business's system of record to making and managing AI agents to automating away the busy work, we care deeply about giving our customers more time for their life's work.
About the Role:
We are seeking a strategic and technically fluent Lead, IT Audit to join our Finance team reporting to the Head of Internal Audit. This is a broad, high-impact role spanning both IT SOX compliance and operational IT audits. You will help establish and elevate our technology controls program end to end - owning the IT SOX lifecycle, designing the IT general and application controls framework, embedding AI and automation into how we test and monitor controls, and delivering value-added operational IT and cybersecurity audits that strengthen how the company builds and runs its systems. You will partner with leaders across Engineering, Security, IT, Finance, and the business to ensure sound technology controls are built into how the company operates as we scale. This role is ideal for someone who thinks like a builder, not just an auditor - someone who can translate complex control and security requirements into practical, scalable processes in a fast-moving SaaS environment with modern cloud architecture and complex data flows.
This role can be based in either San Francisco or New York City. We work from our offices on Mondays, Tuesdays and Thursdays (our Anchor Days) because we do our best thinking and building together in person. We're looking for someone who's excited to work alongside the team during those days.
What You'll Achieve:
- Own the full IT SOX lifecycle - scoping, risk assessment, documentation, walkthroughs, testing, deficiency evaluation, remediation, and reporting - driving automation and efficiency across IT general controls (ITGCs) and IT application controls (ITACs)
- Design, operate, and continuously improve technology controls spanning user access and segregation of duties, change management, SDLC and CI/CD pipelines, interfaces, data flows, and system-generated reports
- Design and execute value-added operational IT and cybersecurity audits - across cloud infrastructure, security operations, identity and access management, data protection and privacy, disaster recovery and resilience, and vendor and third-party risk - while driving enterprise-level technology risk assessment that anticipates emerging risks before they materialize
- Serve as a strategic advisor on cross-functional initiatives (product launches, new systems, architecture changes, M&A) and as the primary point of contact for external auditors, ensuring sound controls are built in from day one and audit evidence is complete, clear, and timely
- Own IT control deficiencies from identification through sustained remediation while partnering with and educating system owners to build a culture of ownership and accountability
- Champion the adoption of AI and modern tooling - from automated control testing and anomaly detection to continuous monitoring and AI-assisted documentation - to make the IT audit function smarter, faster, and more forward-looking
Skills You'll Need to Bring:
- 12+ years of progressive IT audit, IT SOX, or technology risk experience, with a combination of Big 4 and high-growth technology company experience
- Deep, hands-on ownership of IT SOX/ITGC programs, with a strong understanding of PCAOB standards, SEC requirements, and frameworks such as COSO, COBIT, NIST, and ITIL
- Demonstrated experience designing and leading operational IT audits end to end - including annual planning, risk-based scoping, fieldwork, and reporting - across areas such as IT operations, infrastructure resilience, disaster recovery and business continuity, capacity and availability management, and IT vendor and third-party risk
- Strong cybersecurity audit experience with working fluency in frameworks and regulations such as NIST CSF, ISO 27001, SOC 2, GDPR, and CCPA, and the ability to translate them into practical, testable controls
- Software or SaaS industry experience is a must - particularly modern cloud-based technology stacks (AWS, GCP, Azure), software development lifecycles, and complex data flows - paired with strong technical knowledge across cloud security configurations, identity and access management, change management, DevOps and CI/CD pipelines, and enterprise IT operations risks and controls
- Process leadership - a track record of building functions, designing new processes and policies, and driving continuous improvement
- Bachelor's degree in Information Systems, Computer Science, Accounting, or a related field; CISA, CISSP, CISM, CIA, CPA, or equivalent certification required
- Strong stakeholder management and communication skills, with the ability to translate complex technical and audit topics into clear language and influence partners across all levels of the organization
Notion is committed to providing highly competitive cash compensation, equity, and benefits. The compensation offered for this role will be based on multiple factors such as location, the role's scope and complexity, and the candidate's experience and expertise, and may vary from the range provided below. For roles based in San Francisco, the estimated base salary range for this role is $185,000 - $220,000 per year.
By clicking "Submit Application", I understand and agree that Notion and its affiliates and subsidiaries will collect and process my information in accordance with Notion's Global Recruiting Privacy Policy.
#LI-Onsite
A Note on AI
You don't need deep AI expertise for every role, but we do expect every Notino to be intellectually curious, drawn to tinkering and discovery, and excited to use AI as a real collaborator in their work. For some roles, AI fluency is a core requirement - when that's the case, we'll say so explicitly in the qualifications. People who thrive here don't treat AI as a novelty. They use it to think better, and make their work easier for others to build on.
Equal Opportunity & Accommodations
We hire talented people from a wide range of backgrounds. If you're excited about this role but don't meet every bullet, we still encourage you to apply. Notion is an equal opportunity employer and does not discriminate on the basis of any legally protected characteristic. Consistent with applicable law, we will consider for employment qualified applicants with arrest and conviction records. Notion provides reasonable accommodations during the application process; if you need one, please let your recruiter know.
Notion is proud to be an equal opportunity employer. We do not discriminate in hiring or any employment decision based on race, color, religion, national origin, age, sex (including pregnancy, childbirth, or related medical conditions), marital status, ancestry, physical or mental disability, genetic information, veteran status, gender identity or expression, sexual orientation, or other applicable legally protected characteristic. Notion considers qualified applicants with criminal histories, consistent with applicable federal, state and local law. Notion is also committed to providing reasonable accommodations for qualified individuals with disabilities and disabled veterans in our job application procedures. If you need assistance or an accommodation due to a disability, please let your recruiter know.