1

It Risk Compliance Jobs (NOW HIRING)

Support day-to-day operations of IT Governance, Risk and Compliance functions. Execute technology risk management processes and provide input to support continuous improvement of process and program ...

The position is primarily focused on IT risk management but also plays a key part in assisting the Director of Business Continuity with all aspects of the IT Governance, Risk and Compliance (GRC ...

This role will work closely with IT teams, business stakeholders, internal and external auditors, regulators, and global IT Risk and Compliance colleagues to support efficient audit execution ...

This role will work closely with IT teams, business stakeholders, internal and external auditors, regulators, and global IT Risk and Compliance colleagues to support efficient audit execution ...

This role will work closely with IT teams, business stakeholders, internal and external auditors, regulators, and global IT Risk and Compliance colleagues to support efficient audit execution ...

This role will work closely with IT teams, business stakeholders, internal and external auditors, regulators, and global IT Risk and Compliance colleagues to support efficient audit execution ...

This role will work closely with IT teams, business stakeholders, internal and external auditors, regulators, and global IT Risk and Compliance colleagues to support efficient audit execution ...

This role will work closely with IT teams, business stakeholders, internal and external auditors, regulators, and global IT Risk and Compliance colleagues to support efficient audit execution ...

Cultivate an environment of regulatory awareness and ensure regulatory compliance * Demonstrate and ... Demonstrated ability to oversee and own an IT risk team that serves as a decision-making tool for ...

Showing results 41-60

It Risk Compliance information

See salary details

$31K

$116.1K

$201.5K

How much do it risk compliance jobs pay per year?

As of Aug 3, 2026, the average yearly pay for it risk compliance in the United States is $116,090.00, according to ZipRecruiter salary data. Most workers in this role earn between $88,000.00 and $143,500.00 per year, depending on experience, location, and employer.

What is the difference between It Risk Compliance vs It Security Analyst?

AspectIt Risk ComplianceIt Security Analyst
CertificationsISO 27001, CISSP, CISACISSP, Security+
Work EnvironmentPolicy development, audits, compliance assessmentsMonitoring security systems, incident response
Employer & Industry UsageFinancial, healthcare, government sectorsTech companies, cybersecurity firms, enterprises

It Risk Compliance focuses on ensuring organizations adhere to regulatory standards and manage risks through policies and audits. In contrast, It Security Analysts primarily monitor and respond to security threats, implementing technical safeguards. Both roles are vital in protecting organizational assets but differ in their core responsibilities and focus areas.

What are the key skills and qualifications needed to thrive as an IT Risk Compliance professional, and why are they important?

To thrive as an IT Risk Compliance professional, you need a solid understanding of risk assessment, regulatory frameworks (like SOX, GDPR), and information security principles, often supported by a degree in IT, cybersecurity, or a related field. Familiarity with compliance management tools, risk analysis software, and certifications such as CISA, CRISC, or CISSP is highly valuable. Strong analytical thinking, attention to detail, and effective communication skills help you identify risks and articulate compliance needs to stakeholders. These competencies are crucial for safeguarding organizational data, ensuring regulatory adherence, and minimizing operational risks.

What is IT Risk Compliance?

IT Risk Compliance refers to the process of identifying, assessing, and managing risks related to information technology systems to ensure that an organization complies with internal policies, industry standards, and regulatory requirements. Professionals in this field help organizations protect sensitive data, prevent security breaches, and maintain the integrity of their IT operations. They often work closely with other departments to implement controls, conduct audits, and ensure that IT practices align with laws such as GDPR, HIPAA, or SOX. The role is critical for minimizing risks and avoiding costly penalties stemming from non-compliance.

What are some common challenges faced by professionals in IT Risk Compliance roles, and how can they be addressed?

Professionals in IT Risk Compliance often encounter challenges such as staying updated with rapidly changing regulations, managing competing priorities, and ensuring organization-wide adherence to compliance standards. Navigating these obstacles requires effective communication skills, continuous professional development, and strong collaboration with IT, legal, and business units. Proactively fostering a culture of compliance and leveraging automation tools can also help streamline processes and reduce manual workload.
More about It Risk Compliance jobs
What cities are hiring for It Risk Compliance jobs? Cities with the most It Risk Compliance job openings:
What states have the most It Risk Compliance jobs? States with the most job openings for It Risk Compliance jobs include:
Infographic showing various It Risk Compliance job openings in the United States as of July 2026, with employment types broken down into 1% As Needed, 82% Full Time, 12% Part Time, and 5% Contract. Highlights an 94% Physical, 2% Hybrid, and 4% Remote job distribution, with an average salary of $116,090 per year, or $55.8 per hour.

Director, Technology Risk

Geode Capital Management

Boston, MA โ€ข On-site

Full-time

Re-posted 29 days ago


Job description

Reporting to the Head of Risk, the Director of Technology Risk is responsible for technology risk management across the organization. This role involves identifying, assessing, monitoring, managing, mitigating, and reporting of relevant risks in a structured, coordinated, and consistent manner.

The Director of Technology Risk will help design, develop, refine, and implement risk management policies, procedures, and strategies to protect the organization and support Geode’s business objectives, strategy, and overall success.

This is a hybrid work environment opportunity located in Boston, Massachusetts with a weekly office schedule of Tuesdays, Wednesdays and Thursdays and remote work availability on Mondays and Fridays.


Primary Responsibilities:

  • Assist with design and lead the implementation of technology risk focused policies & procedures, including the company’s risk assessment framework as well as technology focused risk and control assessments.
  • Design, operationalize, and lead highly effective technology risk assessments and scenario analyses to evaluate the impact of identified risks.
  • Measure adherence to the company’s risk framework & industry standard IT control frameworks (e.g. COSO, COBIT, NIST) through periodic reporting to Senior Management & the Risk Oversight Committee.
  • Implement data and metrics-based analysis to help proactively monitor and report on technology risks through use of Key Risk Indicators (‘KRIs’).
  • Evolve Geode’s use of Governance, Risk, & Compliance (‘GRC’) tool, including adoption of IT risk management, business continuity & disaster recovery modules.
  • Help establish and maintain a risk taxonomy, technology controls inventory, and IT risk assessment related data within the GRC tool.
  • Partner with Technology & Information Security to identify control gaps and implement key controls for the Technology organization. Assist with remediation of errors and incidents.
  • Participate in strategic technology related initiatives, including IT architecture, systems implementation, cloud computing, data strategy & governance, artificial intelligence, etc. and advise on technology risk best practices.
  • Contribute to the development of the company’s Data Governance Strategy and assist with implementation of data governance procedures and controls.
  • Co-lead initial risk assessment and on-going due diligence of Geode’s key technology vendors to identify and assess any risks that may directly or indirectly impact the company.
  • Develop and implement crisis management plans to respond to emergencies and significant business disruptions, including restoration of data and systems.

Skills You Bring:

  • Minimum of 10+ years of professional experience in technology risk, information security, or IT audit, preferably with experience in the asset management industry.
  • Bachelor's degree (or above) preferably in computer science or related field.
  • IT risk, security, or auditing related certifications are preferred (e.g. CRISC, CISSP, CISM, CISA, etc.)
  • Mastery of IT risk management practices, regulatory requirements, IT Risk frameworks (e.g., NIST CSF, NIST RMF, COBIT, ISO, CSC, etc.), and the software development lifecycle (SDLC).
  • Knowledge of a cloud-services environment and associated best practices.
  • Proven success leveraging technology, data analytics, and other advanced techniques to deliver risk management best practices.
  • Ability to leverage and analyze data to inform critical decisions and make recommendations.
  • Excellent communication skills, both written and verbal with an ability to effectively interact and influence at all levels.
  • Strong relationship building, organization, and critical thinking skills.
  • Proficient time management skills with the ability to multi-task and meet deadlines.

Company Overview:

Founded in 2001, Geode is headquartered in Boston’s financial district, the center of one of the world’s most vibrant finance and technology hubs and employs approximately 170 employees.

Geode is an institutional asset manager providing core beta exposures across a range of equity and niche asset classes, with over $1 trillion in AUM as of September 30, 2024. With a robust infrastructure and experienced investment professionals, Geode offers the scale of a large asset management firm with the benefits of a smaller organization.
Geode is proud to be an equal opportunity employer and support a diversified work environment. Learn more about Geode at www.geodecapital.com/careers.