The Senior IT Risk Manager reports to the head of IT Risk Management (ITRM) within the firm's Operational Risk Management (ORM) function. The mission of ORM is to support Voya leadership in risk ...
The Senior IT Risk Manager reports to the head of IT Risk Management (ITRM) within the firm's Operational Risk Management (ORM) function. The mission of ORM is to support Voya leadership in risk ...
IT Risk Manager
Scottsdale, AZ · On-site
Overview The Manager, Risk Management is responsible for the building and coordination of a ... information, gender, gender identity, gender expression, age, national origin, ancestry ...
IT Risk Manager
Scottsdale, AZ · On-site
Overview The Manager, Risk Management is responsible for the building and coordination of a ... information, gender, gender identity, gender expression, age, national origin, ancestry ...
IT Risk Manager
Scottsdale, AZ · Hybrid
Overview The Manager, Risk Management is responsible for the building and coordination of a ... information, gender, gender identity, gender expression, age, national origin, ancestry ...
IT Risk Manager
Scottsdale, AZ · Hybrid
Overview The Manager, Risk Management is responsible for the building and coordination of a ... information, gender, gender identity, gender expression, age, national origin, ancestry ...
IT Risk Manager
Chicago, IL · Hybrid
Overview The Manager, Risk Management is responsible for the building and coordination of a ... information, gender, gender identity, gender expression, age, national origin, ancestry ...
IT Risk Manager
Chicago, IL · Hybrid
Overview The Manager, Risk Management is responsible for the building and coordination of a ... information, gender, gender identity, gender expression, age, national origin, ancestry ...
IT Risk Manager
San Francisco, CA · Hybrid
Overview The Manager, Risk Management is responsible for the building and coordination of a ... information, gender, gender identity, gender expression, age, national origin, ancestry ...
IT Risk Manager
San Francisco, CA · Hybrid
Overview The Manager, Risk Management is responsible for the building and coordination of a ... information, gender, gender identity, gender expression, age, national origin, ancestry ...
Technology Risk Manager
Manhattan, NY · On-site
Technology Risk Manager with Finance Industry experience Location: New York City NY / Hybrid 3 days ... Practical knowledge of technology and information security processes * High level of attention to ...
Technology Risk Manager
Manhattan, NY · On-site
Technology Risk Manager with Finance Industry experience Location: New York City NY / Hybrid 3 days ... Practical knowledge of technology and information security processes * High level of attention to ...
IT Risk Associate
Clearwater, FL · On-site
Job Summary The IT Risk Associate will support the organization's technology risk management and cybersecurity compliance programs. Reporting to the Senior Director of IT and Cybersecurity Risk, this ...
IT Risk Associate
Clearwater, FL · On-site
Job Summary The IT Risk Associate will support the organization's technology risk management and cybersecurity compliance programs. Reporting to the Senior Director of IT and Cybersecurity Risk, this ...
Sr. IT Risk Manager
Scottsdale, AZ · On-site
... Technology on the execution of enterprise and operational risk programs, promoting an environment ... Essential Functions Risk, Control, and Issue Management * Serves as a subject matter expert ...
Sr. IT Risk Manager
Scottsdale, AZ · On-site
... Technology on the execution of enterprise and operational risk programs, promoting an environment ... Essential Functions Risk, Control, and Issue Management * Serves as a subject matter expert ...
Sr. IT Risk Manager
Chicago, IL · Hybrid
... Technology on the execution of enterprise and operational risk programs, promoting an environment ... Essential Functions Risk, Control, and Issue Management * Serves as a subject matter expert ...
Sr. IT Risk Manager
Chicago, IL · Hybrid
... Technology on the execution of enterprise and operational risk programs, promoting an environment ... Essential Functions Risk, Control, and Issue Management * Serves as a subject matter expert ...
Manager, IT Risk Operations
Palo Alto, CA · On-site
$147K - $198K/yr
Managing a small team, you will work closely with senior leaders across IT, Security Engineering, General Counsel, and firm leadership to shape how risk is understood, measured, and managed. The role ...
Manager, IT Risk Operations
Palo Alto, CA · On-site
$147K - $198K/yr
Managing a small team, you will work closely with senior leaders across IT, Security Engineering, General Counsel, and firm leadership to shape how risk is understood, measured, and managed. The role ...
Manager, Technology Risk
San Francisco, CA · On-site
$198K - $250K/yr
About the Role The Technology Risk Manager is a senior individual contributor responsible for ... The role has broad exposure to Security , IT, Engineering leadership, and you're expected to ...
Manager, Technology Risk
San Francisco, CA · On-site
$198K - $250K/yr
About the Role The Technology Risk Manager is a senior individual contributor responsible for ... The role has broad exposure to Security , IT, Engineering leadership, and you're expected to ...
Develop and implement IT risk management frameworks * Provide actionable recommendations to mitigate risk * Collaborate with clients to align solutions with business goals * Prepare clear reports and ...
Develop and implement IT risk management frameworks * Provide actionable recommendations to mitigate risk * Collaborate with clients to align solutions with business goals * Prepare clear reports and ...
The IT Risk Management Associate Director provides Exam, Audit support (external and internal) in addition to supporting other Engagements (external and internal). The IT Risk Manager participates in ...
The IT Risk Management Associate Director provides Exam, Audit support (external and internal) in addition to supporting other Engagements (external and internal). The IT Risk Manager participates in ...
The incumbent will execute and support day-to-day IT risk management activities (such as risk and controls assessments), manage deadlines and stakeholder expectations, and lead or participate in ...
The incumbent will execute and support day-to-day IT risk management activities (such as risk and controls assessments), manage deadlines and stakeholder expectations, and lead or participate in ...
The incumbent will execute and support day-to-day IT risk management activities (such as risk and controls assessments), manage deadlines and stakeholder expectations, and lead or participate in ...
The incumbent will execute and support day-to-day IT risk management activities (such as risk and controls assessments), manage deadlines and stakeholder expectations, and lead or participate in ...
The incumbent will execute and support day-to-day IT risk management activities (such as risk and controls assessments), manage deadlines and stakeholder expectations, and lead or participate in ...
The incumbent will execute and support day-to-day IT risk management activities (such as risk and controls assessments), manage deadlines and stakeholder expectations, and lead or participate in ...
Senior IT Risk Analyst
Plymouth, MA · On-site
Senior IT Risk Analyst (First Line of Defense) Rockland Trust is seeking a Senior IT Risk Analyst to advance the Bank's First Line of Defense IT Risk Management Program. This is a hybrid role, 3 days ...
Senior IT Risk Analyst
Plymouth, MA · On-site
Senior IT Risk Analyst (First Line of Defense) Rockland Trust is seeking a Senior IT Risk Analyst to advance the Bank's First Line of Defense IT Risk Management Program. This is a hybrid role, 3 days ...
Senior IT Risk Analyst
Plymouth, MA · Hybrid
Senior IT Risk Analyst (First Line of Defense) Rockland Trust is seeking a Senior IT Risk Analyst to advance the Bank's First Line of Defense IT Risk Management Program. This is a hybrid role, 3 days ...
Senior IT Risk Analyst
Plymouth, MA · Hybrid
Senior IT Risk Analyst (First Line of Defense) Rockland Trust is seeking a Senior IT Risk Analyst to advance the Bank's First Line of Defense IT Risk Management Program. This is a hybrid role, 3 days ...
Manage financial audit inquiries and interface with regulatory bodies, including PCAOB * Lead and develop teams conducting IT risk assessments, internal audits, and compliance reviews across diverse ...
Manage financial audit inquiries and interface with regulatory bodies, including PCAOB * Lead and develop teams conducting IT risk assessments, internal audits, and compliance reviews across diverse ...
Technology Risk Analyst
Richmond, VA · On-site
Support the CTO, CCO and their designees in successful management of the IT risk portfolio and identified priorities. * Track a consolidated program for all interactions between HarrisWilliams ...
Technology Risk Analyst
Richmond, VA · On-site
Support the CTO, CCO and their designees in successful management of the IT risk portfolio and identified priorities. * Track a consolidated program for all interactions between HarrisWilliams ...
It Risk Manager information
See salary details
$51.5K - $62.3K
4% of jobs
$62.3K - $73K
6% of jobs
$73K - $83.8K
11% of jobs
$87.9K is the 25th percentile. Wages below this are outliers.
$83.8K - $94.6K
11% of jobs
The median wage is $103.2K / yr.
$94.6K - $105.4K
23% of jobs
$105.4K - $116.1K
13% of jobs
$123.2K is the 75th percentile. Wages above this are outliers.
$116.1K - $126.9K
12% of jobs
$126.9K - $137.7K
8% of jobs
$137.7K - $148.5K
6% of jobs
$148.5K - $159.2K
4% of jobs
$159.2K - $170K
2% of jobs
$51.5K
$111.6K
$170K
How much do it risk manager jobs pay per year?
What are some common challenges faced by IT Risk Managers when implementing risk mitigation strategies across different departments?
Do risk managers make good money?
What are the key skills and qualifications needed to thrive as an IT Risk Manager, and why are they important?
What does an IT Risk Manager do?
What is the difference between It Risk Manager vs Cybersecurity Analyst?
| Aspect | It Risk Manager | Cybersecurity Analyst |
|---|---|---|
| Certifications | CRISC, CISSP, CISM | CISSP, Security+, CEH |
| Work Environment | Oversees risk management strategies across IT systems | Monitors and responds to security threats and incidents |
| Industry Usage | Used in organizations with complex IT infrastructures | Common in security-focused roles across industries |
The It Risk Manager focuses on identifying and managing IT risks at an organizational level, ensuring compliance and risk mitigation strategies. In contrast, a Cybersecurity Analyst primarily monitors security threats and responds to incidents. While both roles require similar certifications and work within the IT security domain, the It Risk Manager has a broader scope related to risk management policies, whereas the Cybersecurity Analyst concentrates on threat detection and response.
How much does a risk manager get paid?
Are risk managers in high demand?
What is the role of IT risk manager?

Full-time
Medical, Dental, Vision, Life, Retirement, PTO
Posted 3 days ago
Job description
Together we fight for everyone's opportunity for a better financial future.
We will do this together - with customers, partners and colleagues. We will fight for others, not against: We will stand up for and champion everyone's access to opportunities. The status quo is not good enough ... we believe every individual and every community deserves access to financial opportunities. We are determined to support both individuals and communities in reaching a better financial future. We know that reaching this future depends on our actions today.
Like our Purpose Statement, Voya believes in being bold and committed to action. We are committed to a work environment where the differences that we are born with - and those we acquire throughout our lives - are understood, valued and intentionally pursued. We believe that our employees own our culture and have a responsibility to foster an environment where we all feel comfortable bringing our whole selves to work. Purposefully bringing our differences together to positively influence our culture, serve our clients and enrich our communities is essential to our vision.
Are you ready to join a company with a strong purpose and a winning culture? Start your Voyage - Apply Now
Profile Summary:
The Senior IT Risk Manager reports to the head of IT Risk Management (ITRM) within the firm's Operational Risk Management (ORM) function. The mission of ORM is to support Voya leadership in risk-based decision making and to assist with the management of operational risks of the enterprise, through the application of a comprehensive framework, processes, and tools for identifying, measuring, and monitoring operational risks. The ITRM functionprovides risk oversight for Voya's enterprise Information Technology (IT) function and technologies supporting Voya's Investment Management, Retirement Benefits, and Employee Benefits businesses by facilitating processes to identify, monitor, and mitigate IT related operational risks.
We are seeking a motivated and self-driven Senior IT Risk Managerto join our dynamic and fast-paced team, where collaboration with IT stakeholders and senior leadership is paramount. This role involves comprehensive oversight of IT risks across all technology layers and processes, with a special emphasis on AI risk management.The successful candidate will employ business, IT, and operational process knowledge to perform independent review and challenge, and to advise stakeholders on solving complex and time-sensitive risk related matters.
Profile Description:
The Senior IT Risk Manager will focus on the communication, implementation, and execution of operational risk policies and procedures, in support of managing IT risks within Voya's enterprise IT function and Investment Management, Retirement Benefits, and Employee Benefits business technologies.
Responsibilities include, but are not limited to the following:
- Forge Strong Partnerships:Actively engage with IT stakeholders and senior leadership to foster a robust risk culture. This includes regular interaction and collaboration at various organizational levels.
- AI Risk Management Expertise:Serve as a subject matter expert in AI risk management, playing a pivotal role in the identification, assessment, and mitigation of AI-related risks as well as supporting the enterprise AI governance program in line with risk principles and regulatory requirements.
- Real-Time Risk Advisory:Provide subject matter expertise and advise on IT related risks and remediation/mitigation of risk exposures. Real-time risk advisory and risk measurement are key elements of this role.
- Risk and Control Framework:Define and maintain IT risk and control standards, ensuring a comprehensive and up-to-date framework is in place.
- Risk Identification and Assessment:Lead IT risk identification and assessment activities that include IT process reviews, top-down risk assessments, targeted risk and control assessments, development of key risk indicators (KRI), risk event management, trend analysis, and controls compliance.
- Incident Analysis and Optimization:Monitor the IT risk and control environment including root cause analysis of issues and incidents to identify process improvement, control optimization, and risk reduction opportunities.
- Risk Reporting:Develop Board and senior leadership risk reporting and risk committee materials.
- Regulatory Compliance:Assist with assessments concerning compliance with applicable laws and regulations impacting IT.
- Business Impact Assessments: Work closely with line of business ORM teams to characterize potential IT risks and trends, assessing business impact and articulating criticality and implications to business stakeholders.
- Strategic Development:Assist with ongoing development and maintenance of IT Risk Management strategy and framework, and education of stakeholders.
- Travel: Occasional travel to Voya office locations for collaboration purposes.
Knowledge & Experience:
- Bachelor's degree in Computer Science, MIS or related field; or equivalent work experience. Master's degree desirable.
- Minimum 8-15 years of relevant experience with a strong background in IT, IT audit, and/or IT risk management and including minimum 4 years of financial services experience, preferably in Asset, Wealth, Investment Management, Retirement Benefits and Employee Benefits lines of business
- In depth knowledge of IT technical and operational processes, and associated risks and controls, IT risk management with a strong emphasis on AI risk management.
- CISA, CISSP, CISM, CRISC or other related IT risk certification is preferred including security, cloud platform, and AI certifications.
- Technical knowledge of risk management frameworks, applicable standards, and regulatory requirements including, NIST, COBIT, ITIL, ISO27000, and other relevant IT governance frameworks.
- Familiarity and experience using eGRC solutions.
- Ability to communicate complex information technology risks and issues to non-technical business stakeholders to ensure a clear understanding of criticality and implications.
- Ability to discern and measure business relevant risk from IT risks and issues, and to identify the corresponding remediation which is adequate, balanced, and cost effective to mitigate business impact.
- Critical thinker and ability to express risk themes from data that will serve to inform and guide leadership decisions and actions.
- Ability to operate independently with limited supervision and thrive in a dynamic, fast-paced setting.
- Ability to collaborate within ITRM and ORM as well as across functions in partnership with IT, business teams and other risk functions.
- Strong problem solving, decision making, communication, and facilitation skills.
- Proficient with Microsoft Office suite of products and automated reporting tools. Ability to produce professional documents ready for presentation to executive "C-Level" management.
#LI-KD1
Compensation Pay Disclosure:
Voya is committed to pay that's fair and equitable, which means comparable pay for comparable roles and responsibilities.
The below annual base salary range reflects the expected hiring range(s) for this position in the location(s) listed. In addition to base salary, Voya offers incentive opportunities (i.e., annual cash incentives, sales incentives, and/or long-term incentives) based on the role to reward the achievement of annual performance objectives. Please note that this salary information is solely for candidates hired to perform work within one of these locations, and refers to the amount Voya Financial is willing to pay at the time of this posting.
Actual compensation offered may vary from the posted salary range based upon the candidate's geographic location, work experience, education, licensure requirements and/or skill level and will be finalized at the time of offer. Salaries for part-time roles will be prorated based upon the agreed upon number of hours to be regularly worked.
$130,970 - $183,680 USDBe Well. Stay Well.
Voya provides the resources that can make a difference in your lives. To us, this means thriving physically, financially, socially and emotionally. Voya benefits are designed to help you do just that. That's why we offer an array of plans, programs, tools and resources with one goal in mind: To help you and your family be well and stay well.
What We Offer
- Health, dental, vision and life insurance plans
- 401(k) Savings plan - with generous company matching contributions (up to 6%)
- Voya Retirement Plan - employer paid cash balance retirement plan (4%)
- Tuition reimbursement up to $5,250/year
- Paid time off - including 20 days paid time off, nine paid company holidays and a flexible Diversity Celebration Day.
- Paid volunteer time - 40 hours per calendar year
Learn more about Voya benefits (download PDF)
Critical Skills
At Voya, we have identified the following critical skills which are key to success in our culture:
- Customer Focused: Passionate drive to delight our customers and offer unique solutions that deliver on their expectations.
- Critical Thinking: Thoughtful process of analyzing data and problem solving data to reach a well-reasoned solution.
- Team Mentality: Partnering effectively to drive our culture and execute on our common goals.
- Business Acumen: Appreciation and understanding of the financial services industry in order to make sound business decisions.
- Learning Agility: Openness to new ways of thinking and acquiring new skills to retain a competitive advantage.
Learn more about Critical Skills
Equal Employment Opportunity
Voya Financial is an equal-opportunity employer. Voya Financial provides equal opportunity to qualified individuals regardless of race, color, sex, national origin, citizenship status, religion, age, disability, veteran status, creed, marital status, sexual orientation, gender identity, genetic information, or any other status protected by state or local law.
Reasonable Accommodations
Voya is committed to the inclusion of all qualified individuals. As part of this commitment, Voya will ensure that persons with disabilities are provided reasonable accommodations. If reasonable accommodation is needed to participate in the job application or interview process, to perform essential job functions, and/or to receive other benefits and privileges of employment, please reference resources for applicants with disabilities.
Misuse of Voya's name in fraud schemes