1

It Risk Management Jobs (NOW HIRING)

This is a unique opportunity to contribute to a high-quality SOX program while helping create something from the ground up: an IT risk management function and operational audit capability at one of ...

The Technology Risk Analyst will contribute to the IT security team, focusing on technology risk management and developing risk solutions to protect the firm and its clients. Responsibilities : • ...

Foundational understanding of technology risk, IT controls, and governance concepts. * Basic knowledge of cybersecurity and technology risk management. * Familiarity with NIST, COBIT, and/or ISO ...

Technology Risk Analyst

Ware, MA · On-site

$60K - $75K/yr

This position supports the risk management and information security functions to ensure compliance with the Bank's Vendor Management Program, IT Risk Management Program, and Information Technology ...

next page

Showing results 1-20

It Risk Management information

See salary details

$51.5K

$111.6K

$170K

How much do it risk management jobs pay per year?

As of May 30, 2026, the average yearly pay for it risk management in the United States is $111,556.00, according to ZipRecruiter salary data. Most workers in this role earn between $90,000.00 and $129,000.00 per year, depending on experience, location, and employer.

What are the key skills and qualifications needed to thrive as an IT Risk Management professional, and why are they important?

To thrive in IT Risk Management, you need a strong understanding of information security principles, risk assessment methodologies, and regulatory compliance frameworks, typically supported by a degree in information technology, cybersecurity, or a related field. Familiarity with risk management tools (such as RSA Archer or MetricStream), knowledge of ISO 27001, and certifications like CISSP or CISM are highly valued. Strong analytical thinking, attention to detail, and effective communication skills help in identifying threats and conveying risks to stakeholders. These skills and qualities are crucial for protecting organizational assets, ensuring compliance, and enabling informed decision-making regarding technology risks.

What are some common challenges faced by IT Risk Management professionals, and how can they effectively address them?

IT Risk Management professionals often encounter challenges such as rapidly evolving cyber threats, balancing compliance with operational efficiency, and communicating technical risks to non-technical stakeholders. Staying updated with the latest security trends and regulations is essential for effective risk assessment. Building strong cross-departmental relationships can help ensure that risk mitigation strategies are both practical and well-understood across the organization. Continuous learning and leveraging risk management frameworks, like NIST or ISO 27001, can also provide a solid foundation for addressing these challenges.

What is IT Risk Management?

IT Risk Management is the process of identifying, assessing, and mitigating risks related to information technology systems and data within an organization. This discipline aims to protect information assets from threats such as cyberattacks, data breaches, and system failures by implementing security controls and policies. Effective IT Risk Management helps organizations comply with regulations, minimize financial losses, and ensure business continuity. Professionals in this field continuously monitor and update risk strategies to adapt to evolving technological threats.

What is the difference between It Risk Management vs Cybersecurity Analyst?

AspectIt Risk ManagementCybersecurity Analyst
Required CredentialsCertifications like CRISC, CISSP, CISACertifications like CompTIA Security+, CISSP, CEH
Work EnvironmentFocus on risk assessment, compliance, and mitigation strategies across IT systemsFocus on monitoring, analyzing, and responding to security threats
Employer & Industry UsageUsed in organizations prioritizing risk management and complianceUsed in security operations centers and cybersecurity teams

While both roles involve IT security, It Risk Management emphasizes assessing and mitigating risks across IT systems, whereas Cybersecurity Analysts focus on detecting and responding to security threats. Understanding these differences helps organizations assign the right roles for their security needs.

More about It Risk Management jobs
What cities are hiring for It Risk Management jobs? Cities with the most It Risk Management job openings:
What states have the most It Risk Management jobs? States with the most job openings for It Risk Management jobs include:
Infographic showing various It Risk Management job openings in the United States as of May 2026, with employment types broken down into 1% As Needed, 91% Full Time, 2% Part Time, 1% Temporary, and 5% Contract. Highlights an 69% Physical, 10% Hybrid, and 21% Remote job distribution, with an average salary of $111,556 per year, or $53.6 per hour.
Solution Architect - IT RISK & COMPLIANCE

Solution Architect - IT RISK & COMPLIANCE

Avance Consulting Services

Cranston, RI

Full-time

Posted 17 days ago


Job description

Job Description

Hi ,
Hope your are doing good.
I have a job opportunity related to your profile with one of our client, please find below Job Description for your review. If you are interested and available please send your updated resume along with your contact details to discuss further.
Role: Solution Architect - IT RISK & COMPLIANCE
Duration: FUll Time
Location: Cranston, RI
Scope, purpose and nature of role

Create and maintain the Identity & Access Management- Generic ID program, architecture and standards for delivering enterprise-wide Identity, Access, Directory and Authentication Services for employees, vendors and members with the capability to support cloud and on premise application services. Participate as an effective member of a passionate, highly skilled, collaborative team that supports MISO's information security policies and meets all relevant compliance requirements.
ESSENTIAL RESPONSIBILITIES
Recommend and drive the enhancement process for the Identity Access Management (IAM) program to meet business needs.
Drive program design review working directly with customers and business owners on the integration requirements including provisioning, de-provisioning and user lifecycle into the IAM platform.
Maintain and assess operational requirements and service issues for improvement opportunities.
Develop strategic road maps for the Identity Management systems and program.
Develop enterprise wide standards for identity and access management to meet business needs.
Consult with business units when implementing access levels for new systems to ensure quality and accuracy.
Create and maintain architecture for IAM systems to meet business requirements.
Prepare documentation for audits and acts as the point of contact for audit issues.
Perform additional duties as assigned.
Working in conjunction with other professional colleagues and specialists, the Architect acts as an expert advisor to management concerning risks involving or affecting technology, particularly but not exclusively IT. Although technology and other risks are owned by individual managers throughout the organization, the TRM owns and is responsible for the technology risk management policies, procedures and guidelines, and is expected to ensure that technology risks are appropriately measured and prioritized in the corporate risk register.
Distinguishing characteristics of the ideal candidate
The following personal traits are high on our wish-list:

Analytical and objective - able to elaborate on, characterize, assess and evaluate technology and tech-related risks dispassionately and rationally;
An influencer and facilitator - able to build strong interpersonal relationships, and inform, guide and motivate managers and technologists to address risks with due care and attention to detail;
Strong communication skills - able to explain risks that are often complex and obscure to non-specialists, and (just as importantly) good at listening and sensitively interpreting others;
A self-motivated leader - demonstrating a passion for and thought-leadership in this domain;
Confident and trustworthy - keen to earn the respect and trust of, and inspire, others.
Qualifications, skills and experience
The following are relevant and desirable for this role:
Technology risk management: at least 10 years work experience in the area of IT and technology risk, including at least 5 years at management level. Note: successful candidates are likely to have held roles such as IT Risk Manager, Risk Manager, IT Manager, Information or IT Security Manager, IT Audit Manager, IT Incident Manager or Business Continuity Manager;
Relevant technical qualifications such as MIRM, CRISC, CISM, CISA, CISSP etc.;
Relevant business experience/qualifications/knowledge: technology risk must be managed in the context of various other risks, opportunities and challenges facing the organization.
Candidates must be willing to undergo background checks to verify their identity, character, qualifications, skills and experience.

Additional Information

x


Avance Consulting logo

About Avance Consulting

Sourced by ZipRecruiter

Avance Consulting is a global leader in innovative talent solutions for diverse industries. Since 2007, we have been serving nearly a third of Fortune 500 companies and most of the top 100 technology companies worldwide. Our team of 700+ experts offers Engineering Services, Information Technology, Digital and Executive Search solutions from our offices in North America, UK, Europe and APAC. At Avance you can learn new skills and technologies, have more advancement opportunities and career growth, being a part of our productive atmosphere, and a positive reinforcement culture.

Industry

Recruiting and staffing services

Company size

501 - 1,000 Employees

Headquarters location

Somerset , NJ, US

Year founded

2007

Social media