1

It Risk Manager Jobs in New York (NOW HIRING)

The IT Audit Manager plays a critical role in assessing and enhancing the effectiveness of ... Support technology risk assessment, develop risk-based IT audit plans and audit programs * Lead or ...

The IT Audit Manager plays a critical role in assessing and enhancing the effectiveness of ... Support technology risk assessment, develop risk-based IT audit plans and audit programs * Lead or ...

Bachelor's degree in Computer Science, Information Technology, Risk Management, Business, or a related field required * Advanced degree (MBA, MS, or equivalent) preferred * Relevant certifications in ...

Bachelor's degree in Computer Science, Information Technology, Risk Management, Business, or a related field required * Advanced degree (MBA, MS, or equivalent) preferred * Relevant certifications in ...

The Director, Business Information Risk Officer (BIRO) is a critical leadership role responsible ... This role provides risk governance for all IT systems managed by the EIT organization, whether they ...

New

Evaluate internal controls, IT governance, and risk management practices within the organization's technology environment. * Identify vulnerabilities and weaknesses in systems, applications, and ...

Showing results 21-40

It Risk Manager information

See New York salary details

$56.3K

$122K

$186K

How much do it risk manager jobs pay per year?

As of Aug 9, 2026, the average yearly pay for it risk manager in New York is $122,046.00, according to ZipRecruiter salary data. Most workers in this role earn between $98,500.00 and $141,100.00 per year, depending on experience, location, and employer.

What are some common challenges faced by IT Risk Managers when implementing risk mitigation strategies across different departments?

IT Risk Managers often encounter challenges such as varying levels of risk awareness among departments, resistance to new controls or procedures, and balancing business objectives with security requirements. Successful risk mitigation requires clear communication, stakeholder buy-in, and tailored training to ensure all teams understand the importance of compliance. Building strong relationships and fostering a culture of shared responsibility are key to overcoming these hurdles and ensuring effective risk management across the organization.

What are the key skills and qualifications needed to thrive as an IT Risk Manager, and why are they important?

To thrive as an IT Risk Manager, you need a solid understanding of risk assessment, information security, and compliance frameworks, often backed by a bachelor's degree in information technology or related fields. Familiarity with tools such as risk management software, GRC platforms, and certifications like CISSP, CISM, or CRISC is typically required. Strong analytical thinking, communication skills, and the ability to influence stakeholders are crucial soft skills in this role. These skills ensure effective identification, mitigation, and communication of IT risks, supporting organizational resilience and compliance.

What does an IT Risk Manager do?

An IT Risk Manager is responsible for identifying, assessing, and mitigating risks that could impact an organization's information technology systems and data. They develop and implement risk management strategies, policies, and procedures to protect against cybersecurity threats, data breaches, and compliance violations. IT Risk Managers also work closely with other departments to ensure security best practices are followed and often lead risk assessments, audits, and incident response planning.

What is the difference between It Risk Manager vs Cybersecurity Analyst?

AspectIt Risk ManagerCybersecurity Analyst
CertificationsCRISC, CISSP, CISMCISSP, Security+, CEH
Work EnvironmentOversees risk management strategies across IT systemsMonitors and responds to security threats and incidents
Industry UsageUsed in organizations with complex IT infrastructuresCommon in security-focused roles across industries

The It Risk Manager focuses on identifying and managing IT risks at an organizational level, ensuring compliance and risk mitigation strategies. In contrast, a Cybersecurity Analyst primarily monitors security threats and responds to incidents. While both roles require similar certifications and work within the IT security domain, the It Risk Manager has a broader scope related to risk management policies, whereas the Cybersecurity Analyst concentrates on threat detection and response.

What cities in New York are hiring for It Risk Manager jobs? Cities in New York with the most It Risk Manager job openings:
Infographic showing various It Risk Manager job openings in New York as of August 2026, with employment types broken down into 86% Full Time, 12% Part Time, and 2% Contract. Highlights an 87% Physical, 2% Hybrid, and 11% Remote job distribution, with an average salary of $122,046 per year, or $58.7 per hour.

IT Audit Manager

Avis Budget Group

Parsippany, NJ • On-site

Full-time

Medical, Dental, Vision, Life, Retirement

Re-posted 4 days ago


Avis Budget Group rating

6.2

Company rating: 6.2 out of 10

Based on 183 frontline employees who took The Breakroom Quiz

141st of 171 rated vehicle equipment hire


Job description

Driven to be the Best
People. Performance. Purpose.
At Avis Budget Group, we're driven to be the best vehicle rental company in the world, together. Our 25,000 employees raise the bar every day, bringing different perspectives, taking ownership, and leading with integrity. We're defining the future of mobility with safe, sustainable solutions that move people, businesses, and communities forward.
The IT Audit Manager plays a critical role in assessing and enhancing the effectiveness of IT controls, governance, and risk management across Avis Budget Group's (ABG) complex and evolving technology landscape. This position requires a unique blend of technical acumen, audit expertise, and business insight to navigate ABG's IT environment, technology portfolio, and compliance requirements. The ideal candidate will lead IT and integrated audits while maintaining a sharp focus on cybersecurity risks and operational technology controls.
If you thrive in complexity, enjoy solving difficult problems, and want to be at the forefront of technology risk management in a major global organization, this role offers professional growth and the chance to influence meaningful changes.
What You'll Do:
  • Audit Planning & Execution
    • Support technology risk assessment, develop risk-based IT audit plans and audit programs
    • Lead or execute IT audits across a complex technology environment including mainframe systems, cloud platforms, and modern enterprise solutions
    • Conduct audits of key risk areas including cybersecurity, information security, ITGC, system interfaces, and applications in a transaction-heavy rental operations environment
    • Evaluate IT governance, security controls, and emerging technology risks including artificial intelligence (AI), machine learning, cloud computing, cybersecurity, third-party providers, and digital transformation
    • Coordinate with external auditors on SOX controls testing
    • Build technical and professional capabilities across the team and ensure quality and consistency of audit work
    • Foster a culture of continuous learning and staying current with emerging technology, audit methodologies, and industry best practices

  • Reporting & Stakeholders Management
    • Serve as a trusted advisor to business and technology leadership, providing independent assurance and strategic insights on controls and emerging risks
    • Prepare clear, concise, and actionable audit reports for senior management, Audit Committee, and business stakeholders, translating complex technical findings into business risk language
    • Present audit results and recommendations to IT leadership, business unit management, and executive leadership, demonstrating the business impact of IT control deficiencies
    • Partner with IT management and business process owners to develop practical and sustainable remediation plans for audit findings
    • Track and validate remediation of audit issues, ensuring management commitments are fulfilled and controls are operating effectively

Perks You'll Get:
  • Access to Medical, Dental, Vision, Life and Disability insurance
  • Eligible to elect other voluntary benefits including: Group Auto Insurance, Group Home Insurance, Pet Insurance, Legal Assistance, Identity Theft Protection, FSA, Accident Insurance, Critical Illness Insurance, and additional life insurance coverages
  • 401(k) Retirement Plan with company matched contributions
  • Full training to learn the business and enhance professional skills
  • Employee discounts, including discounted prices on the purchase of Avis/Budget cars
  • Access to an Employee Assistance Program for services including counseling, financial and legal consultation, referrals for care service and more

What We're Looking For:
  • Bachelor's degree in Information Systems, Computer Science, Cybersecurity, or related fields
  • Certified Information Systems Auditor (CISA)
  • Minimum 7-10 years of progressive IT audit, IT risk management / assurance experience, or related disciplines, preferably in a large, complex organization
  • Hands-on experience with complex IT and integrated audits, including ERPs, cloud environments, cybersecurity programs, and mainframe systems.
  • Understanding of IT control frameworks (COBIT, NIST, ISO 27001, SOC2) and risk management methodologies
  • Strong experience in evaluating IT general controls including access management, change management, and operations management
  • Experience evaluating controls in cybersecurity, information security controls, and third-party vendors
  • Technical Knowledge & Skills
    • Knowledge of cloud platforms (AWS, Azure, GCP), SaaS applications, and modern application architecture
    • Understanding of data privacy regulations (GDPR, CCPA) and their IT control implications
    • Track record of evaluating, developing, and/or adopting emerging Generative AI technologies to transform audit or business processes
    • Proficiency with audit management tools
  • Additional / Preferred Qualifications
    • Relevant certifications (e.g., CISSP, CIA, CRISC, CISM, AWS, Azure, PCI QSA)
    • Experienced user of data analysis and/or visualization tools (Tableau, SQL, Alteryx, Power BI, ACL, IDEA, etc.)
    • Understanding of mainframe operating systems, database management systems, and legacy application architectures
    • Experience with operational technology audits in transaction-intensive business environments (rental car, travel, hospitality, retail, financial services, or similar industries)
    • Knowledge of DevOps, Agile development methodologies, and modern SDLC practices

The annual starting salary for this position is between $125,000 - $140,000 annually. Factors that may affect starting pay within this range include geography/market, skills, education, experience, and other qualifications of the successful candidate.
Who We Are:
Here at Avis Budget Group, you will be joining a team of 25,000 driven people, performing with purpose. Together, we're moving the future of transportation forward with our innovative, customer-focused solutions.
Our culture is performance driven, where we encourage and support each other to be at our best through leadership, training, tools, and rewards.
We are proud to make a positive difference to the lives of our colleagues, customers, and communities where we operate.
Avis Budget Group is an Equal Opportunity Employer - Qualified applicants will receive consideration for employment without regard to their race, color, religion, sex, sexual orientation, gender identity, national origin, disability, status as a protected veteran or any other category protected by applicable law.
This advertisement does not constitute a promise or guarantee of employment. This advertisement describes the general nature and level of this position only. Essential functions and responsibilities may change as business needs require. The compensation and benefits information is accurate as of the date of this posting. The Company reserves the right to modify this information at any time, with or without notice, subject to applicable law. This position may be with any affiliate of Avis Budget Group.
Parsippany
New Jersey
United States of America

What Avis Budget Group employees say

Pay

Benefits

Hours and flexibility

Workplace

Get the full story on Breakroom