1

It Risk Manager Jobs in Florida (NOW HIRING)

The ideal candidate will work closely with corporate and IT risk management teams to develop internal control policies and provide consultancy to ensure applications and technology infrastructure ...

FL · On-site

$95 - $125/hr

Coordinates technology risk and compliance activities, including the Higher Education Community ... management, and technology risk coordination.Provides reports and recommendations to Information ...

Associate Manager of IT Audit Salary: $95,000 - $125,000 + Bonus Location: Orlando, FL (Hybrid ... Heavy focus on SOX & enterprise risk- you'll be working on what matters most * Influence and ...

... management, system development, cybersecurity, infrastructure, and third-party technology risk ... Bachelor's degree in Information Systems, Accounting, Finance, Computer Science, Cybersecurity ...

next page

Showing results 1-20

It Risk Manager information

See Florida salary details

$38.5K

$83.4K

$127K

How much do it risk manager jobs pay per year?

As of Aug 30, 2026, the average yearly pay for it risk manager in Florida is $83,365.00, according to ZipRecruiter salary data. Most workers in this role earn between $67,300.00 and $96,400.00 per year, depending on experience, location, and employer.

What does an IT Risk Manager do?

An IT Risk Manager is responsible for identifying, assessing, and mitigating risks that could impact an organization's information technology systems and data. They develop and implement risk management strategies, policies, and procedures to protect against cybersecurity threats, data breaches, and compliance violations. IT Risk Managers also work closely with other departments to ensure security best practices are followed and often lead risk assessments, audits, and incident response planning.

What are some common challenges faced by IT Risk Managers when implementing risk mitigation strategies across different departments?

IT Risk Managers often encounter challenges such as varying levels of risk awareness among departments, resistance to new controls or procedures, and balancing business objectives with security requirements. Successful risk mitigation requires clear communication, stakeholder buy-in, and tailored training to ensure all teams understand the importance of compliance. Building strong relationships and fostering a culture of shared responsibility are key to overcoming these hurdles and ensuring effective risk management across the organization.

What are the key skills and qualifications needed to thrive as an IT Risk Manager, and why are they important?

To thrive as an IT Risk Manager, you need a solid understanding of risk assessment, information security, and compliance frameworks, often backed by a bachelor's degree in information technology or related fields. Familiarity with tools such as risk management software, GRC platforms, and certifications like CISSP, CISM, or CRISC is typically required. Strong analytical thinking, communication skills, and the ability to influence stakeholders are crucial soft skills in this role. These skills ensure effective identification, mitigation, and communication of IT risks, supporting organizational resilience and compliance.

What is the difference between It Risk Manager vs Cybersecurity Analyst?

AspectIt Risk ManagerCybersecurity Analyst
CertificationsCRISC, CISSP, CISMCISSP, Security+, CEH
Work EnvironmentOversees risk management strategies across IT systemsMonitors and responds to security threats and incidents
Industry UsageUsed in organizations with complex IT infrastructuresCommon in security-focused roles across industries

The It Risk Manager focuses on identifying and managing IT risks at an organizational level, ensuring compliance and risk mitigation strategies. In contrast, a Cybersecurity Analyst primarily monitors security threats and responds to incidents. While both roles require similar certifications and work within the IT security domain, the It Risk Manager has a broader scope related to risk management policies, whereas the Cybersecurity Analyst concentrates on threat detection and response.

What are popular job titles related to It Risk Manager jobs in Florida?

For It Risk Manager jobs in Florida, the most frequently searched job titles are:

What job categories do people searching It Risk Manager jobs in Florida look for?

The top searched job categories for It Risk Manager jobs in Florida are:

What cities in Florida are hiring for It Risk Manager jobs?

Cities in Florida with the most It Risk Manager job openings:

Infographic showing various It Risk Manager job openings in Florida as of August 2026, with employment types broken down into 87% Full Time, 12% Part Time, and 1% Contract. Highlights an 81% Physical, 2% Hybrid, and 17% Remote job distribution, with an average salary of $83,365 per year, or $40.1 per hour.

AVP, IT Ops Risk

Bayview Asset Management

Coral Gables, FL • On-site

Full-time

Re-posted 16 days ago


Job description

Overview
ABOUT US
Founded in 1993, Bayview Asset Management is an investment management firm specializing in mortgage and consumer credit investments, including whole loans, asset-backed securities, mortgage servicing rights, and other credit-related assets.
POSITION SUMMARY
This role will work directly under the Head of Operational Risk and will be responsible for supporting the identification, measurement, monitoring, and management of technology-related operational risks across the organization. The individual will partner closely with Information Security, IT, Privacy, Data Protection, Business Continuity, and other key stakeholders to strengthen the organization's IT operational risk management framework.
The AVP, IT Operational Risk will play a key role in developing risk assessment methodologies, enhancing reporting, supporting risk assessments, coordinating with Information Security GRC on risk and control libraries, and helping ensure technology risks, control gaps, remediation activities, and emerging risks are appropriately identified, documented, tracked, and escalated.
RESPONSIBILITIES:
  • Identify, assess, monitor, and report on technology-related operational risks across the organization, including information security, privacy, data protection, business continuity, AI, and emerging technology risks.
  • Partner with IT, Information Security, Privacy, Data Protection, Compliance, Legal, Internal Audit, Business Continuity, and business stakeholders to identify risks, evaluate control effectiveness, and address control gaps.
  • Conduct and facilitate technology and operational risk assessments, identifying risk themes, emerging risks, and opportunities to strengthen the control environment.
  • Support the development, implementation, and continuous improvement of the firm's technology operational risk management framework, including risk taxonomies, control libraries, assessment methodologies, documentation standards, and governance processes.
  • Collaborate with the Information Security GRC team to align risk assessments, risk and control libraries, and Risk and Control Self-Assessments (RCSAs), while leveraging outputs from Internal Audit and other assurance functions.
  • Support the administration and ongoing enhancement of the Optro GRC platform and promote consistent risk documentation, reporting, and governance practices.
  • Develop dashboards, key risk indicators (KRIs), metrics, and reporting to communicate technology risks, remediation activities, control effectiveness, and emerging risk trends to senior management and governance committees.
  • Translate complex technical risks into clear, actionable business risk reporting for executive and non-technical audiences.
  • Support privacy and data protection initiatives by documenting operational risks, participating in privacy risk assessments, evaluating processing activities, assessing third-party risks, tracking remediation efforts, and contributing to incident response activities.
  • Partner with Data Protection teams to evaluate control gaps, perform operational risk gap analyses, and document, monitor, and report remediation activities.
  • Support business continuity and operational resilience initiatives, including Business Impact Analyses (BIAs), identification of critical business processes and technology dependencies, assessment of technology recovery risks, and development of mitigation strategies.
  • Contribute to the development and execution of AI governance and emerging technology risk management practices by participating in risk assessments, control design, monitoring activities, issue management, and governance processes.
  • Track remediation plans, control deficiencies, risk mitigation activities, and action items, following up with risk owners to ensure timely resolution and appropriate escalation of significant or overdue issues.
  • Support alignment of technology operational risk activities with regulatory requirements, industry standards, and internal policies by monitoring regulatory developments and assessing their impact on the organization's risk management practices.
  • Build strong cross-functional relationships and serve as a trusted risk partner, promoting a proactive risk culture and effectively communicating technology risk strategies, findings, and recommendations across the organization.

QUALIFICATIONS:
  • Bachelor's degree in Information Technology, Cybersecurity, Computer Science, Risk Management, Business, or a related field; Master's degree preferred.
  • 5+ years of experience in IT Operational Risk, Technology Risk, Information Security GRC, IT Audit, Enterprise Risk, or a related governance, risk, or compliance function.
  • Strong knowledge of technology risk, operational risk, information security, privacy, data protection, business continuity, and risk management frameworks.
  • Experience conducting risk and control assessments, managing remediation activities, developing KRIs and reporting, and supporting governance processes.
  • Experience partnering with IT, Information Security, Compliance, Privacy, Legal, Internal Audit, and business stakeholders in a cross-functional environment.
  • Familiarity with enterprise GRC platforms (Optro preferred) and industry frameworks such as NIST, COBIT, ISO 27001, or FFIEC.
  • Experience in financial services or another highly regulated industry preferred.
  • Experience supporting AI governance, emerging technology risk, or third-party technology risk preferred.
  • Excellent analytical, communication, and stakeholder management skills with the ability to translate technical risks into business-focused recommendations.

CERTIFICATIONS, LICENSES, AND/OR REGISTRATION
CRISC, CISA, CISM, CISSP, CIPM/CIPP(US) or similar certifications preferred
LOCATION AND COMPENSATION:
  • This position will be remote. If we find someone within our headquarters area, Coral Gables, FL, that would be our preference.
  • Compensation is competitive and commensurate with experience, including a base salary, performance-based bonus, and comprehensive benefits package.

PHYSICAL DEMANDS AND WORK ENVIRONMENT
The physical demands described here reflect those necessary for effective job performance:
  • Regularly required to sit and use hands to handle or feel objects, tools, or controls; frequently required to talk and hear.
  • Noise level in the work environment is typically moderate.
  • Occasionally required to stand, walk, and reach with hands and arms; rarely required to stoop, kneel, crouch, or crawl.
  • Must be able to lift/move up to 10 pounds.
  • Required vision abilities include close vision, color vision, and the ability to adjust focus.

Reasonable accommodations may be made for individuals with disabilities to perform essential job functions.
EEOC STATEMENT
Bayview is an Equal Employment Opportunity employer. All hiring and employment decisions are based on merit, qualifications, and business needs, without regard to race, color, religion, sex, national origin, age, disability, veteran status, sexual orientation, or any other protected category under applicable law.