1

It Risk Management Jobs in Ohio (NOW HIRING)

Manager, IT Audit

Cincinnati, OH · On-site

$105K - $167K/yr

Track management action plans and oversee IT remediation validation to confirm effective and sustainable risk reduction. * People Leadership: Provide day-to-day supervision, coaching, and technical ...

Tech Risk and Controls Lead

Columbus, OH

$41K - $53K/yr

... risk management, information security, or related field, emphasizing risk identification ... technology insights into business strategies for senior executives Preferred qualifications ...

next page

Showing results 1-20

It Risk Management information

See Ohio salary details

$49K

$106.1K

$161.6K

How much do it risk management jobs pay per year?

As of Jun 16, 2026, the average yearly pay for it risk management in Ohio is $106,056.00, according to ZipRecruiter salary data. Most workers in this role earn between $85,600.00 and $122,600.00 per year, depending on experience, location, and employer.

What are the key skills and qualifications needed to thrive as an IT Risk Management professional, and why are they important?

To thrive in IT Risk Management, you need a strong understanding of information security principles, risk assessment methodologies, and regulatory compliance frameworks, typically supported by a degree in information technology, cybersecurity, or a related field. Familiarity with risk management tools (such as RSA Archer or MetricStream), knowledge of ISO 27001, and certifications like CISSP or CISM are highly valued. Strong analytical thinking, attention to detail, and effective communication skills help in identifying threats and conveying risks to stakeholders. These skills and qualities are crucial for protecting organizational assets, ensuring compliance, and enabling informed decision-making regarding technology risks.

What are some common challenges faced by IT Risk Management professionals, and how can they effectively address them?

IT Risk Management professionals often encounter challenges such as rapidly evolving cyber threats, balancing compliance with operational efficiency, and communicating technical risks to non-technical stakeholders. Staying updated with the latest security trends and regulations is essential for effective risk assessment. Building strong cross-departmental relationships can help ensure that risk mitigation strategies are both practical and well-understood across the organization. Continuous learning and leveraging risk management frameworks, like NIST or ISO 27001, can also provide a solid foundation for addressing these challenges.

What are the 4 types of risk management?

In IT risk management, the four main types are risk avoidance, risk reduction, risk transfer, and risk acceptance. These strategies help IT professionals identify, assess, and mitigate potential threats to information systems and data security effectively. Understanding these types is essential for developing comprehensive risk management plans and ensuring organizational resilience.

Do risk managers make good money?

Risk managers typically earn competitive salaries that vary based on experience, industry, and location. According to industry data, median annual pay ranges from $70,000 to over $120,000, with higher earnings possible for those with certifications like FRM or CRM and advanced skills in data analysis and risk assessment.

What is the difference between It Risk Management vs Cybersecurity Analyst?

AspectIt Risk ManagementCybersecurity Analyst
Required CredentialsCertifications like CRISC, CISSP, CISACertifications like CompTIA Security+, CISSP, CEH
Work EnvironmentFocus on risk assessment, compliance, and mitigation strategies across IT systemsFocus on monitoring, analyzing, and responding to security threats
Employer & Industry UsageUsed in organizations prioritizing risk management and complianceUsed in security operations centers and cybersecurity teams

While both roles involve IT security, It Risk Management emphasizes assessing and mitigating risks across IT systems, whereas Cybersecurity Analysts focus on detecting and responding to security threats. Understanding these differences helps organizations assign the right roles for their security needs.

What is the highest paying risk management job?

The highest paying risk management roles are often senior positions such as Chief Risk Officer (CRO) or Director of Risk Management, with salaries exceeding $150,000 annually. These roles require extensive experience, advanced certifications like FRM or CRM, and strong leadership skills in overseeing enterprise-wide risk strategies.

What is the role of IT risk management?

IT risk management involves identifying, assessing, and mitigating risks related to information technology systems to ensure data security, business continuity, and compliance. IT risk managers develop strategies, implement controls, and monitor vulnerabilities using tools like risk assessments and security frameworks. This role requires knowledge of cybersecurity, regulatory standards, and risk analysis techniques.

What is IT Risk Management?

IT Risk Management is the process of identifying, assessing, and mitigating risks related to information technology systems and data within an organization. This discipline aims to protect information assets from threats such as cyberattacks, data breaches, and system failures by implementing security controls and policies. Effective IT Risk Management helps organizations comply with regulations, minimize financial losses, and ensure business continuity. Professionals in this field continuously monitor and update risk strategies to adapt to evolving technological threats.
What are popular job titles related to It Risk Management jobs in Ohio? For It Risk Management jobs in Ohio, the most frequently searched job titles are:
Infographic showing various It Risk Management job openings in Ohio as of June 2026, with employment types broken down into 81% Full Time, 15% Part Time, 1% Temporary, and 3% Contract. Highlights an 92% Physical, 2% Hybrid, and 6% Remote job distribution, with an average salary of $106,056 per year, or $51 per hour.
Manager, IT Audit

Manager, IT Audit

AAA Club Alliance, Inc.

Cincinnati, OH • On-site

$105K - $167K/yr

Full-time

Medical, Dental, Vision, Life, Retirement, PTO

Posted 10 days ago


AAA Club Alliance rating

7.2

Company rating: 7.2 out of 10

Based on 44 frontline employees who took The Breakroom Quiz

215th of 261 rated insurance


Job description

AAA Club Alliance is hiring for an IT Audit Manager to join our Internal Audit team! The IT Audit Manager leads and supervises multiple, concurrent technology-focused engagements, including IT general controls, application controls, cybersecurity, data and integrated audits - to ensure technology risks are effectively identified, managed, and aligned with business objectives. The role designs IT risk assessments and audit programs, oversees engagement execution and quality reviews, develops audit staff, and partners with IT and business leadership to strengthen technology governance, security and control environments across all entities of the ACA organization. The Manager also supports the Audit, Risk and Compliance Committee reporting and assists the Director with the development of the annual risk assessment, audit plan and department methodology.
What We Offer:
As part of our team, you'll enjoy a total rewards package designed to support your well-being, growth, and work-life balance. Our package includes:
  • Competitive annual salary; the starting base compensation for this position is: $105,147-$167,018*
  • Annual Bonus + Annual Merit Increase Eligibility
  • Hybrid schedule (3 days on-site weekly)
  • Comprehensive health benefits package
  • Generous accrued paid time off (PTO) + 8 holidays
  • 401(K) plan with company match up to 7%
  • Professional development opportunities and tuition reimbursement
  • Paid time off to volunteer & company-sponsored volunteer events throughout the year
  • Other benefits include a free AAA Premier Membership, Health & Wellness Program, Health Concierge Service, Life Insurance and Short Term/Long Term Disability

* The base pay range shown is a guideline for compensation and ultimate salary offered will be based on factors such as applicant experience and geographic location.
What You'll Do:
  • Plan & Lead Engagements: Own end-to-end planning and execution of IT and integrated audit engagements, including IT general controls (ITGCs), application controls, cybersecurity, infrastructure, cloud, data, access governance and system implementations; design risk assessments, define scope, develop audit programs, allocate resources, and ensure work is performed in accordance with professional standards and department methodology.
  • Consulting & Special Projects: Provide control guidance for new systems, major enhancements, infrastructure changes and digital initiatives, focusing on control design and risk mitigation early in the lifecycle; participate in special reviews and confidential investigations as assigned.
  • Risk & Issue Evaluation: Assess complex technology control issues and emerging IT risk trends, determine risk severity, root cause and enterprise impact, and develop pragmatic, risk-prioritized recommendations that strengthen security, reliability, and operational effectiveness .
  • Reporting & Stakeholder Communication: Draft and review clear, concise audit reports and executive summaries; present results to IT and business leadership; assist the Director with materials for Audit Committee reporting.
  • Follow-Up & Issue Validation: Track management action plans and oversee IT remediation validation to confirm effective and sustainable risk reduction.
  • People Leadership: Provide day-to-day supervision, coaching, and technical mentorship to auditors performing IT and integrated audits; set expectations, give feedback, and support development plans for senior/staff auditors and interns; foster an inclusive, high-performance culture.
  • Quality & Review: Perform engagement-level quality reviews, including workpaper reviews, issue vetting, severity assessment, and report quality control; conduct internal QA reviews as needed.
  • Methodology & Continuous Improvement: Contribute to maintaining and enhancing departmental policies, procedures, templates, and tools; help ensure consistent standards and adoption of data-driven auditing practices.
  • External Auditor Coordination: Coordinate selected testing and control surveys to support external audit reliance where applicable.
  • Annual Audit Plan: Assist in risk assessment activities and development of the annual audit plan for Audit Committee approval.
  • Professional Development: Maintains professional proficiency in information systems, cybersecurity, auditing standards, and emerging technologies.
  • Other duties as assigned.

Minimum Qualifications:
  • Bachelor's degree in Information Systems, Computer Science, Business, Accounting, or related field.
  • Minimum of 6 years of IT or technology audit experience (internal audit or public accounting), with demonstrated success leading complex engagements and supervising teams.
  • At least 5 years in internal audit preferred.
  • CISA required; CPA or CIA strongly preferred.
  • Demonstrated experience with IT general controls, application controls, cybersecurity, and integrated audits; data-enabled testing, and/or internal quality assessment reviews is preferred.

Knowledge Skills and Abilities:
  • Advanced knowledge of IT audit concepts and technology risk management ; strong grasp of internal auditing standards, technology risk assessment techniques, and commonly used frameworks (e.g., COSO, COBIT, NIST, ISO).
  • Proven ability to assess complex issues, determine deficiency severity, and craft balanced, actionable recommendations.
  • Ability to translate technical IT risks into clear, business-focused recommendations and executive-level reporting.
  • Coaching mindset with demonstrated experience training and developing auditors across levels.
  • Strong project management skills and the ability to manage multiple deadlines.
  • High integrity and discretion in handling confidential information; sound judgement, critical thinking, and analytical skills.
  • Proficiency with IT audit tools, data analytics, and system querying techniques.

Full time Associates are offered a comprehensive benefits package that includes:
  • Medical, Dental, and Vision plan options
  • Up to 2 weeks Paid parental leave
  • 401k plan with company match up to 7%
  • 2+ weeks of PTO within your first year
  • Paid company holidays
  • Company provided volunteer opportunities + 1 volunteer day per year
  • Free AAA Membership
  • Continual learning reimbursement up to $5,250 per year
  • And MORE! Check out our Benefits Page for more information

ACA is an equal opportunity employer and complies with all applicable federal, state, and local employment practices laws. At ACA, we are committed to cultivating a welcoming and inclusive workplace of team members with diverse backgrounds and experiences to enable us to meet our goals and support our values while serving our Members and customers. We strive to attract and retain candidates with a passion for their work and we encourage all qualified individuals to apply. It is ACA's policy to employ the best qualified individuals available for all positions. Hiring decisions are based upon ACA's operating needs, and applicant qualifications including, but not limited to, experience, skills, ability, availability, cooperation, and job performance.
Job Category:
Accounting

What AAA Club Alliance employees say

Pay

Benefits

Hours and flexibility

Workplace

Get the full story on Breakroom