About the role The Director, IT and Governance, Risk & Compliance (GRC) leads Q4's IT operations, security operations, and technology governance programs to ensure a reliable, secure, and compliant ...
About the role The Director, IT and Governance, Risk & Compliance (GRC) leads Q4's IT operations, security operations, and technology governance programs to ensure a reliable, secure, and compliant ...
Senior IT Risk Officer
Amelia, OH · Hybrid
This role will work closely with IT teams, business stakeholders, internal and external auditors, regulators, and global IT Risk and Compliance colleagues to support efficient audit execution ...
New
Senior IT Risk Officer
Amelia, OH · Hybrid
This role will work closely with IT teams, business stakeholders, internal and external auditors, regulators, and global IT Risk and Compliance colleagues to support efficient audit execution ...
New
Senior IT Risk Officer
Hartford, CT · Hybrid
This role will work closely with IT teams, business stakeholders, internal and external auditors, regulators, and global IT Risk and Compliance colleagues to support efficient audit execution ...
Senior IT Risk Officer
Hartford, CT · Hybrid
This role will work closely with IT teams, business stakeholders, internal and external auditors, regulators, and global IT Risk and Compliance colleagues to support efficient audit execution ...
Senior IT Risk Officer
Princeton, NJ · Hybrid
This role will work closely with IT teams, business stakeholders, internal and external auditors, regulators, and global IT Risk and Compliance colleagues to support efficient audit execution ...
Senior IT Risk Officer
Princeton, NJ · Hybrid
This role will work closely with IT teams, business stakeholders, internal and external auditors, regulators, and global IT Risk and Compliance colleagues to support efficient audit execution ...
Information Technology Location: Red Roof Pay Band: Professional Job Summary : The Information Security Risk & Compliance Analyst is responsible for participating in the information security program ...
Information Technology Location: Red Roof Pay Band: Professional Job Summary : The Information Security Risk & Compliance Analyst is responsible for participating in the information security program ...
IT Security Risk Mgr
Fort Worth, TX · On-site
The IT Security Risk Manager will lead the identification, assessment, monitoring, and mitigation of information technology and security risks across the health system, ensuring compliance with ...
IT Security Risk Mgr
Fort Worth, TX · On-site
The IT Security Risk Manager will lead the identification, assessment, monitoring, and mitigation of information technology and security risks across the health system, ensuring compliance with ...
Information Technology Location: Red Roof Pay Band: Professional Job Summary : The Information Security Risk & Compliance Analyst is responsible for participating in the information security program ...
Information Technology Location: Red Roof Pay Band: Professional Job Summary : The Information Security Risk & Compliance Analyst is responsible for participating in the information security program ...
Senior IT Risk and Compliance Analyst Apply now Job no: 503864 Work type: Regular Full-Time Location: Washington, DC Capability Area: IT DSS Security and Compliance JOB SUMMARY: NORC at the ...
Senior IT Risk and Compliance Analyst Apply now Job no: 503864 Work type: Regular Full-Time Location: Washington, DC Capability Area: IT DSS Security and Compliance JOB SUMMARY: NORC at the ...
Senior IT Risk and Compliance Analyst Job no: 503865 Work type: Regular Full-Time Location: Chicago - 300 E Randolph St Capability Area: IT DSS Security and Compliance JOB SUMMARY: NORC at the ...
Senior IT Risk and Compliance Analyst Job no: 503865 Work type: Regular Full-Time Location: Chicago - 300 E Randolph St Capability Area: IT DSS Security and Compliance JOB SUMMARY: NORC at the ...
IT Manager II - IT Governance, Risk and Controls
Phoenix, AZ · On-site
$94K - $115K/yr
Intermediate knowledge of regulatory and compliance frameworks (e.g., FFIEC, SOX, GLBA) and ... Experience managing IT risk programs and governance processes, including KRIs, control inventories ...
IT Manager II - IT Governance, Risk and Controls
Phoenix, AZ · On-site
$94K - $115K/yr
Intermediate knowledge of regulatory and compliance frameworks (e.g., FFIEC, SOX, GLBA) and ... Experience managing IT risk programs and governance processes, including KRIs, control inventories ...
Overview The Manager of IT Risk and Compliance will design, implement, and oversee the enterprise-wide IT governance, procurement, risk management, and compliance (GRC) framework for REEDS Jewelers.
New
Overview The Manager of IT Risk and Compliance will design, implement, and oversee the enterprise-wide IT governance, procurement, risk management, and compliance (GRC) framework for REEDS Jewelers.
New
Overview The Manager of IT Risk and Compliance will design, implement, and oversee the enterprise-wide IT governance, procurement, risk management, and compliance (GRC) framework for REEDS Jewelers.
New
Overview The Manager of IT Risk and Compliance will design, implement, and oversee the enterprise-wide IT governance, procurement, risk management, and compliance (GRC) framework for REEDS Jewelers.
New
IT Manager II - IT Governance, Risk and Controls
Dallas, TX · On-site
$94K - $115K/yr
Intermediate knowledge of regulatory and compliance frameworks (e.g., FFIEC, SOX, GLBA) and ... Experience managing IT risk programs and governance processes, including KRIs, control inventories ...
IT Manager II - IT Governance, Risk and Controls
Dallas, TX · On-site
$94K - $115K/yr
Intermediate knowledge of regulatory and compliance frameworks (e.g., FFIEC, SOX, GLBA) and ... Experience managing IT risk programs and governance processes, including KRIs, control inventories ...
IT Manager II - IT Governance, Risk and Controls
Columbus, OH · On-site
$91K - $112K/yr
Intermediate knowledge of regulatory and compliance frameworks (e.g., FFIEC, SOX, GLBA) and ... Experience managing IT risk programs and governance processes, including KRIs, control inventories ...
IT Manager II - IT Governance, Risk and Controls
Columbus, OH · On-site
$91K - $112K/yr
Intermediate knowledge of regulatory and compliance frameworks (e.g., FFIEC, SOX, GLBA) and ... Experience managing IT risk programs and governance processes, including KRIs, control inventories ...
Job Title : IT Security Risk and Audit Manager - Governance Risk Compliance (GRC) Analyst Location : Tolls Data Center in Boca Raton, FL. This is an onsite position, not remote. Job Summary: The ...
Job Title : IT Security Risk and Audit Manager - Governance Risk Compliance (GRC) Analyst Location : Tolls Data Center in Boca Raton, FL. This is an onsite position, not remote. Job Summary: The ...
We're hiring an IT Compliance Analyst to support our Information Security and IT Risk Management team through audit coordination, risk tracking, control remediation, and compliance initiatives. This ...
Quick apply
We're hiring an IT Compliance Analyst to support our Information Security and IT Risk Management team through audit coordination, risk tracking, control remediation, and compliance initiatives. This ...
AVP, IT & AI Governance
$171K - $215K/yr
This role serves as a key control function, partnering with IT, Risk, Compliance, Legal, Information Security, and business leadership to ensure safe, responsible, and compliant use of technology ...
AVP, IT & AI Governance
$171K - $215K/yr
This role serves as a key control function, partnering with IT, Risk, Compliance, Legal, Information Security, and business leadership to ensure safe, responsible, and compliant use of technology ...
AVP, IT & AI Governance
$150K - $187K/yr
This role serves as a key control function, partnering with IT, Risk, Compliance, Legal, Information Security, and business leadership to ensure safe, responsible, and compliant use of technology ...
AVP, IT & AI Governance
$150K - $187K/yr
This role serves as a key control function, partnering with IT, Risk, Compliance, Legal, Information Security, and business leadership to ensure safe, responsible, and compliant use of technology ...
AVP, IT & AI Governance
Coral Gables, FL · On-site
$150K - $187K/yr
This role serves as a key control function, partnering with IT, Risk, Compliance, Legal, Information Security, and business leadership to ensure safe, responsible, and compliant use of technology ...
AVP, IT & AI Governance
Coral Gables, FL · On-site
$150K - $187K/yr
This role serves as a key control function, partnering with IT, Risk, Compliance, Legal, Information Security, and business leadership to ensure safe, responsible, and compliant use of technology ...
IT Compliance Analyst
Grand Rapids, MI · On-site
$78K/yr
We're hiring an IT Compliance Analyst to support our Information Security and IT Risk Management team through audit coordination, risk tracking, control remediation, and compliance initiatives. This ...
IT Compliance Analyst
Grand Rapids, MI · On-site
$78K/yr
We're hiring an IT Compliance Analyst to support our Information Security and IT Risk Management team through audit coordination, risk tracking, control remediation, and compliance initiatives. This ...
It Risk Compliance information
See salary details
$31K - $46.5K
4% of jobs
$46.5K - $62K
5% of jobs
$62K - $77.5K
7% of jobs
$88.4K is the 25th percentile. Wages below this are outliers.
$77.5K - $93K
12% of jobs
The median wage is $107.4K / yr.
$93K - $108.5K
23% of jobs
$108.5K - $124K
15% of jobs
$124K - $139.5K
7% of jobs
$140.7K is the 75th percentile. Wages above this are outliers.
$139.5K - $155K
17% of jobs
$155K - $170.5K
4% of jobs
$170.5K - $186K
3% of jobs
$186K - $201.5K
2% of jobs
$31K
$116.1K
$201.5K
How much do it risk compliance jobs pay per year?
What is the difference between It Risk Compliance vs It Security Analyst?
| Aspect | It Risk Compliance | It Security Analyst |
|---|---|---|
| Certifications | ISO 27001, CISSP, CISA | CISSP, Security+ |
| Work Environment | Policy development, audits, compliance assessments | Monitoring security systems, incident response |
| Employer & Industry Usage | Financial, healthcare, government sectors | Tech companies, cybersecurity firms, enterprises |
It Risk Compliance focuses on ensuring organizations adhere to regulatory standards and manage risks through policies and audits. In contrast, It Security Analysts primarily monitor and respond to security threats, implementing technical safeguards. Both roles are vital in protecting organizational assets but differ in their core responsibilities and focus areas.
What are the key skills and qualifications needed to thrive as an IT Risk Compliance professional, and why are they important?
What is IT Risk Compliance?
What are some common challenges faced by professionals in IT Risk Compliance roles, and how can they be addressed?

Job description
Q4 is charting a bold new path for investor relations as the first AI-driven IR Ops Platform, providing everything an IR team needs to succeed on a single, powerful platform. The Q4 Platform enables public companies to attract, manage, and understand investors - all in one place. Over 2,600 customers, including many of the most respected brands in the world, trust Q4 to help drive premium valuations for their companies. Only Q4 offers a tech stack holistically designed to equip IR teams with data, insights, and smart workflows that power remarkable outcomes. Learn more at q4inc.com.
We hire smart, curious, and talented people to push boundaries, reimagine what's possible, and turn challenges into opportunities. All while keeping the needs of our clients at the heart of everything we do.
Come grow with us!
About the role
The Director, IT and Governance, Risk & Compliance (GRC) leads Q4's IT operations, security operations, and technology governance programs to ensure a reliable, secure, and compliant internal environment for a high-growth SaaS business. The role translates strategy into execution by running the programs, teams, and processes that keep Q4's corporate environment available, secure, and audit-ready, and acts as a senior security and risk subject-matter expert for internal and customer-facing stakeholders.
What you'll do
Strategy & Stakeholder Partnership
- Translate enterprise technology, security, and GRC strategy into a clear roadmap with priorities, milestones, and success metrics.
- Act as a senior security and risk SME, advising internal teams and customers on best practices, emerging threats, and pragmatic risk-based decisions.
- Run the portfolio of IT, security, and GRC initiatives as a formal program, coordinating cross-functional delivery, timelines, and status reporting.
IT Operations & Service Delivery
- Lead IT operations to ensure infrastructure, end-user computing, and collaboration platforms are reliable, secure, and cost-effective.
- Oversee incident, request, and change management; drive improvements in SLAs, MTTR, and employee experience.
- Own standards for asset management and access lifecycle for employees and independent contractors.
Security Operations & Risk Management
- Manage day-to-day security operations: threat monitoring, alert triage, and coordination of incident response with Security and Engineering.
- Maintain and test security incident response playbooks; coordinate periodic security testing and ensure remediation of findings.
- Operate and improve vulnerability management; support DR/BCP planning; help manage security budgets and key security vendors.
Governance, Risk & Compliance (GRC)
- Lead technology GRC processes (policies, controls, risk registers, exceptions) and coordinate SOC 2 and customer security assessments.
- Operationalize GDPR, CCPA, PIPEDA and other requirements into controls in partnership with Legal/Privacy, maintaining RoPA, DPIAs, and vendor/sub-processor assessments.
- Define and track KPIs/KRIs (e.g., incident SLAs, vuln closure rates, audit findings) and provide clear dashboards and reports to leadership.
Business Systems & Enterprise Enablement
- Partner with Business Systems, Product, and Data teams to ensure enterprise platforms and integrations meet security and governance expectations.
- Contribute to architecture standards, access models, and data protection patterns across core systems.
- Identify automation and tooling opportunities to reduce manual work and improve control coverage and data quality.
People Leadership & Collaboration
- Lead and develop a high-performing IT and GRC team with clear goals and feedback.
- Foster a culture of accountability, continuous improvement, and strong cross-functional partnership.
- Champion security, privacy, and technology best practices through training, communication, and engagement.
Qualifications
- 7+ years in IT operations, information security, technology risk, or GRC, including people management.
- Strong knowledge of security and control frameworks (e.g., SOC 2, ISO 27001, NIST CSF, CIS) and privacy regulations (e.g., GDPR, CCPA, PIPEDA).
- Hands-on experience with IT and security tooling (IdP/IAM, MDM/EDR, logging/monitoring, GRC platforms).
- Proven ability to manage multiple security/IT/GRC projects or programs with ownership of timelines, budgets, and stakeholder communication.
- Track record supporting external audits and customer security assessments and communicating complex risk/technical topics in clear business language.
About Q4
Sourced by ZipRecruiter