1

It Risk Manager Jobs in Iowa (NOW HIRING)

Ability to learn new technology and tools quickly. * Strong collaboration and interpersonal skills ... Additional Information Job Responsibilities a. Serve as centralized vendor contact and facilitator ...

Ability to learn new technology and tools quickly. * Strong collaboration and interpersonal skills ... Additional Information Job Responsibilities a. Serve as centralized vendor contact and facilitator ...

Manage departmental budgets, capital planning, forecasting, and technology investment prioritization. Business Continuity, Risk & Incident Leadership * Govern IT business continuity, disaster ...

... readiness and risk management. Partner with security leadership to embed enterprise security ... Lead IT infrastructure integration efforts for mergers and acquisitions. Own I&O financial ...

... risk management. • Partner with security leadership to embed enterprise security practices into ... IT infrastructure integration efforts for mergers and acquisitions. • Own I&O financial ...

... risk management. • Partner with security leadership to embed enterprise security practices into ... IT infrastructure integration efforts for mergers and acquisitions. • Own I&O financial ...

IT Vendor Manager

Des Moines, IA · On-site

$92.70K - $113.70K/yr

Position Title: IT Vendor Manager Location: Des Moines, IA Engagement Type: Contract Work Mode ... Minimum 3 years tracking SLAs, KPIs, and risk metrics and driving corrective actions for ...

IT Manager

Des Moines, IA

$92.70K - $113.70K/yr

KCCI Television, the CBS affiliate in Des Moines, Iowa, is seeking a strategic and experienced IT Manager to lead our station's technology infrastructure and operations. This leadership role is ...

IT Project Manager

Davenport, IA · Hybrid

$87.30K - $103.20K/yr

The IT Project Manager is responsible for managing key project(s) that span across one or more ... Establishes risk profiles, quantifies risk data, and develops response with mitigation plans

next page

Showing results 1-20

It Risk Manager information

See Iowa salary details

$48.4K

$104.8K

$159.7K

How much do it risk manager jobs pay per year?

As of May 30, 2026, the average yearly pay for it risk manager in Iowa is $104,781.00, according to ZipRecruiter salary data. Most workers in this role earn between $84,500.00 and $121,200.00 per year, depending on experience, location, and employer.

What are the key skills and qualifications needed to thrive as an IT Risk Manager, and why are they important?

To thrive as an IT Risk Manager, you need a solid understanding of risk assessment, information security, and compliance frameworks, often backed by a bachelor's degree in information technology or related fields. Familiarity with tools such as risk management software, GRC platforms, and certifications like CISSP, CISM, or CRISC is typically required. Strong analytical thinking, communication skills, and the ability to influence stakeholders are crucial soft skills in this role. These skills ensure effective identification, mitigation, and communication of IT risks, supporting organizational resilience and compliance.

What are some common challenges faced by IT Risk Managers when implementing risk mitigation strategies across different departments?

IT Risk Managers often encounter challenges such as varying levels of risk awareness among departments, resistance to new controls or procedures, and balancing business objectives with security requirements. Successful risk mitigation requires clear communication, stakeholder buy-in, and tailored training to ensure all teams understand the importance of compliance. Building strong relationships and fostering a culture of shared responsibility are key to overcoming these hurdles and ensuring effective risk management across the organization.

What does an IT Risk Manager do?

An IT Risk Manager is responsible for identifying, assessing, and mitigating risks that could impact an organization's information technology systems and data. They develop and implement risk management strategies, policies, and procedures to protect against cybersecurity threats, data breaches, and compliance violations. IT Risk Managers also work closely with other departments to ensure security best practices are followed and often lead risk assessments, audits, and incident response planning.

What is the difference between It Risk Manager vs Cybersecurity Analyst?

AspectIt Risk ManagerCybersecurity Analyst
CertificationsCRISC, CISSP, CISMCISSP, Security+, CEH
Work EnvironmentOversees risk management strategies across IT systemsMonitors and responds to security threats and incidents
Industry UsageUsed in organizations with complex IT infrastructuresCommon in security-focused roles across industries

The It Risk Manager focuses on identifying and managing IT risks at an organizational level, ensuring compliance and risk mitigation strategies. In contrast, a Cybersecurity Analyst primarily monitors security threats and responds to incidents. While both roles require similar certifications and work within the IT security domain, the It Risk Manager has a broader scope related to risk management policies, whereas the Cybersecurity Analyst concentrates on threat detection and response.

What are popular job titles related to It Risk Manager jobs in Iowa? For It Risk Manager jobs in Iowa, the most frequently searched job titles are:
Infographic showing various It Risk Manager job openings in Iowa as of May 2026, with employment types broken down into 1% As Needed, 75% Full Time, 23% Part Time, and 1% Contract. Highlights an 89% Physical, 2% Hybrid, and 9% Remote job distribution, with an average salary of $104,781 per year, or $50.4 per hour.

Sr Governance, Risk & Compliance (GRC) Analyst

Athene Holding Ltd.

West Des Moines, IA • On-site

Full-time

Posted 25 days ago


Job description

We are driven to do more. More for our customers and the financial professionals who offer our products. If you are driven to do more and love the challenge of pursuing more, Athene is your kind of company. You will find we offer more than the basics to create an inclusive and dynamic work environment at our various locations.
Purpose:
Athene is seeking a Sr. Governance, Risk & Compliance (GRC) Analyst to help strengthen and evolve enterprise technology risk management, cybersecurity governance, and regulatory compliance across the organization.
This role partners closely with Cybersecurity, Technology, Internal Audit, and Enterprise Risk teams to assess emerging risks, influence control strategy, and enhance regulatory readiness within a highly regulated financial services environment.
The ideal candidate is a strategic and collaborative risk professional who enjoys solving complex problems, driving continuous improvement, and helping shape governance practices for modern technologies, including AI and emerging platforms.
This is an opportunity to play a visible role in advancing Athene's cybersecurity maturity and technology risk program while working in a fast-paced, highly collaborative environment with meaningful enterprise impact.
Accountabilities:
IT Risk Management & Governance
  • Conduct technology and cybersecurity risk assessments to identify risks, control gaps, and opportunities for program enhancement.
  • Manage and maintain the enterprise technology risk register, including risk tracking, reporting, and remediation oversight.
  • Partner with technology and cybersecurity teams to strengthen controls, policies, standards, and governance processes aligned to industry frameworks (e.g., NIST) and regulatory requirements (e.g., BMA, NYDFS, SOX).
  • Evaluate IT governance and compliance processes to support ongoing program maturity and operational effectiveness.
  • Develop and enhance cybersecurity metrics, KPIs, and executive reporting to support governance and risk-informed decision making.
  • Provide risk advisory support to technology and business stakeholders on governance, control, and compliance considerations.

AI & Emerging Technology Governance
  • Help shape Athene's governance approach for AI and emerging technologies by partnering across technology, legal, compliance, and risk functions.
  • Assess AI and emerging technology use cases for risk, control effectiveness, regulatory alignment, and operational readiness.
  • Contribute to the development and operationalization of AI governance standards, controls, and risk management practices.
  • Monitor adherence to AI governance requirements, including documentation, control evidence, and risk management procedures.
  • Support internal and external audit inquiries related to AI usage, data governance, and technology risk oversight.

Third-Party & Vendor Risk Management
  • Perform technology and cybersecurity due diligence assessments for key vendors and third parties, including review of SOC 1 and SOC 2 reports.
  • Monitor third-party risk ratings and coordinate remediation or follow-up activities related to identified concerns.
  • Partner with business and technology teams to evaluate vendor risk exposure and strengthen third-party governance practices.
  • Respond to client, partner, and vendor security assessments and questionnaires, clearly communicating Athene's security controls and governance practices.

Audit & Regulatory Compliance
  • Serve as a key liaison for technology risk, audit, and regulatory activities, helping streamline evidence collection, remediation tracking, and control maturity efforts.
  • Partner with Internal Audit, External Audit, and Technology teams to support technology audits and SOX IT control testing.
  • Track and manage remediation activities related to audit findings, risk assessments, and compliance initiatives.
  • Monitor evolving cybersecurity and technology regulations and support readiness efforts across the organization.

Cybersecurity Program Support
  • Partner with cybersecurity teams to track vulnerability remediation efforts and support enterprise risk reduction initiatives.
  • Coordinate and facilitate cyber incident response exercises, disaster recovery activities, and tabletop simulations.
  • Support the enterprise security awareness program, including annual training initiatives and phishing simulation activities.
  • Develop governance, risk, and compliance educational materials to increase awareness and strengthen risk culture across the organization.

Tools & Process Enablement
  • Maintain and enhance Athene's GRC platform and supporting workflows as the program evolves.
  • Identify opportunities to improve processes, reporting, automation, and control visibility across governance and compliance activities.
  • Collaborate with technology leadership, cybersecurity teams, and risk management stakeholders to develop and track remediation action plans and strategic initiatives.

Qualifications and Experience:
  • Bachelor's degree in Accounting, Management Information Systems, Computer Science, Cybersecurity, or related field (or equivalent experience) and 5+ years of experience in IT risk management, cybersecurity governance, IT audit, GRC, compliance, consulting, or professional services environments.
  • Strong understanding of IT risk frameworks, governance practices, and internal control methodologies, including SOX IT controls.
  • Experience assessing technology and cybersecurity risks, evaluating control effectiveness, and supporting remediation efforts.
  • Ability to communicate effectively with both technical and non-technical stakeholders across all levels of the organization.
  • Strong analytical, problem-solving, and organizational skills with the ability to manage multiple priorities independently.
  • Experience working in a regulated industry or financial services environment.

Preferred Qualifications
  • Professional certifications such as CRISC, CISA, CISSP, or similar.
  • Experience supporting AI governance, emerging technology risk, or cybersecurity compliance initiatives.
  • Experience with ServiceNow IRM/GRC or similar governance and risk management platforms.
  • Familiarity with regulatory frameworks and standards such as NIST, NYDFS, BMA, ISO 27001, or COBIT.

Drive. Discipline. Confidence. Focus. Commitment. Learn more about working at Athene.
Athene is a Military Friendly Employer! Learn more about how we support our Veterans.
Athene is committed to inclusion and is proud to be an Equal Opportunity Employer. We do not discriminate on the basis of race, color, religion, sex, national origin, age, disability, marital status, sexual orientation, veteran status or any other status protected by federal, state or local law.