1

It Risk Compliance Jobs (NOW HIRING)

This high-impact position in the Governance, Risk & Compliance function sits at the center of the ... Strengthen IT Governance & Controls * Lead the development of executive-level reporting on IT risk, ...

The IT Risk and Compliance Analyst position is a highly visible, client facing role which works closely with the Legal and Business Unit stakeholders and reports to the IT Risk and Compliance Manager.

The IT Risk and Compliance Analyst position is a highly visible, client facing role which works closely with the Legal and Business Unit stakeholders and reports to the IT Risk and Compliance Manager.

The IT Risk and Compliance Analyst position is a highly visible, client facing role which works closely with the Legal and Business Unit stakeholders and reports to the IT Risk and Compliance Manager.

Job Summary The IT Risk Associate will support the organization's technology risk management and cybersecurity compliance programs. Reporting to the Senior Director of IT and Cybersecurity Risk, this ...

Bachelor's degree in Information Technology, Cybersecurity, Computer Science, Accounting, or related field. * 1+ years in IT audit, internal audit, public accounting, or IT risk/compliance.

next page

Showing results 1-20

It Risk Compliance information

See salary details

$31K

$116.1K

$201.5K

How much do it risk compliance jobs pay per year?

As of Jun 8, 2026, the average yearly pay for it risk compliance in the United States is $116,090.00, according to ZipRecruiter salary data. Most workers in this role earn between $88,000.00 and $143,500.00 per year, depending on experience, location, and employer.

What is the difference between It Risk Compliance vs It Security Analyst?

AspectIt Risk ComplianceIt Security Analyst
CertificationsISO 27001, CISSP, CISACISSP, Security+
Work EnvironmentPolicy development, audits, compliance assessmentsMonitoring security systems, incident response
Employer & Industry UsageFinancial, healthcare, government sectorsTech companies, cybersecurity firms, enterprises

It Risk Compliance focuses on ensuring organizations adhere to regulatory standards and manage risks through policies and audits. In contrast, It Security Analysts primarily monitor and respond to security threats, implementing technical safeguards. Both roles are vital in protecting organizational assets but differ in their core responsibilities and focus areas.

What are the key skills and qualifications needed to thrive as an IT Risk Compliance professional, and why are they important?

To thrive as an IT Risk Compliance professional, you need a solid understanding of risk assessment, regulatory frameworks (like SOX, GDPR), and information security principles, often supported by a degree in IT, cybersecurity, or a related field. Familiarity with compliance management tools, risk analysis software, and certifications such as CISA, CRISC, or CISSP is highly valuable. Strong analytical thinking, attention to detail, and effective communication skills help you identify risks and articulate compliance needs to stakeholders. These competencies are crucial for safeguarding organizational data, ensuring regulatory adherence, and minimizing operational risks.

What is IT Risk Compliance?

IT Risk Compliance refers to the process of identifying, assessing, and managing risks related to information technology systems to ensure that an organization complies with internal policies, industry standards, and regulatory requirements. Professionals in this field help organizations protect sensitive data, prevent security breaches, and maintain the integrity of their IT operations. They often work closely with other departments to implement controls, conduct audits, and ensure that IT practices align with laws such as GDPR, HIPAA, or SOX. The role is critical for minimizing risks and avoiding costly penalties stemming from non-compliance.

What are some common challenges faced by professionals in IT Risk Compliance roles, and how can they be addressed?

Professionals in IT Risk Compliance often encounter challenges such as staying updated with rapidly changing regulations, managing competing priorities, and ensuring organization-wide adherence to compliance standards. Navigating these obstacles requires effective communication skills, continuous professional development, and strong collaboration with IT, legal, and business units. Proactively fostering a culture of compliance and leveraging automation tools can also help streamline processes and reduce manual workload.
More about It Risk Compliance jobs
What cities are hiring for It Risk Compliance jobs? Cities with the most It Risk Compliance job openings:
What states have the most It Risk Compliance jobs? States with the most job openings for It Risk Compliance jobs include:
Infographic showing various It Risk Compliance job openings in the United States as of May 2026, with employment types broken down into 1% As Needed, 91% Full Time, 2% Part Time, and 6% Contract. Highlights an 94% Physical, 2% Hybrid, and 4% Remote job distribution, with an average salary of $116,090 per year, or $55.8 per hour.

Manager, IT Risk Operations

Wsgr

Palo Alto, CA

$147K - $198K/yr

Full-time

Posted 28 days ago


Job description

Wilson Sonsini is the premier legal advisor to technology, life sciences, and other growth enterprises worldwide. We represent companies at every stage of development, from entrepreneurial start-ups to multibillion-dollar global corporations, as well as the venture firms, private equity firms, and investment banks that finance and advise them. The firm has approximately 1,100 attorneys in 17 offices: 13 in the U.S., two in China, and two in Europe. Our broad spectrum of practices and entrepreneurial spirit allow exceptional opportunities for professional achievement and career growth.

Essential Duties and Responsibilities:

This high-impact position in the Governance, Risk & Compliance function sits at the center of the firm's technology, security, and operational ecosystem.Managing a small team, you willwork closely with senior leaders across IT, Security Engineering, General Counsel, and firm leadership to shape how risk is understood, measured, and managed.

The role can be 100% remote or hybrid-in person if located near a physical office.

Strengthen IT Governance & Controls

  • Lead the development of executive-level reporting on IT risk, compliance posture, and operational performance
  • Build and evolve KPI/KRI dashboards that provide real-time visibility into risk trends and control effectiveness
  • Translate complex IT and security data into meaningful insights for decision making
  • Ensure adherence to IT policies, standards, and leading frameworks (e.g., NIST, ISO 27001)
  • Own and evolve the firm's IT risk register and Risk & Control Self-Assessment (RCSA) program
  • Identifyemerging and systemic risks across IT, security, privacy, and operational processes

Incident Governance & Investigations

  • Partner with General Counsel, Security, and IT to lead internal investigations

Own ITSM Governance & ServiceNow Analytics

  • Oversee governance and reporting across the IT Service Management (ITSM) ecosystem
  • Analyze incident, change, and problem management data toidentifytrends and improvement opportunities
  • Drive workflow optimization and automation within ServiceNow

Vendor Risk Management

  • Review and advise on vendor agreements
  • Enhance vendor risk processes, including risk tiering, assessments, and monitoring
  • Identifyopportunities to streamline processes, enhance reporting, and improve governance
  • Introduce data-driven approaches to risk management and operational oversight
  • Perform related duties as assigned or directed by supervisor
  • Maintain compliance with all firm policies and procedures

Education and/or Work Experience Requirements:

  • Bachelor's degree preferred
  • Seven years of experience in ITrisk,securitycompliance,technologyaudit, or ITgovernancepreferred
  • Experienceoperatingin complex, regulated environments (e.g., law firms, financial services, consulting)preferred
  • Proven ability to lead reporting, analytics, and governance initiatives
  • Familiarity with ServiceNow and ITSM reporting including understanding of incident, change, and problem management lifecycles
  • Experience with security and collaboration platforms such as Microsoft 365,Purviewand email security tools
  • Working knowledge of frameworks such as the NIST Cybersecurity Framework, ISO/IEC 27001and SOC 2
  • Strong understanding of control design, risk registers, RCSA programs, and audit response
  • Basic understanding of privacy regulations
  • CISA, CISSP, CRISC,CTPRMand/or ITILpreferred
The primary location for this job posting is in Palo Alto, but other locations may be listed. The actual base pay offered will depend upon a variety of factors, including but not limited to the selected candidate's qualifications, years of relevant experience, level of education, professional certifications and licenses, and work location. The anticipated pay range for this position is as follows:Palo Alto, New York, San Francisco: $163,200 - $220,800 per year. Austin, Boston, Boulder, Century City, Los Angeles, Salt Lake City, San Diego, Seattle: $147,050 - $198,950 per year.

The compensation for this position may include a discretionary year-end merit bonus based on performance. We offer a highly competitive salary and benefits package.

Benefits information can be found here. Equal Opportunity Employer (EOE).