1

It Risk Manager Jobs in North Carolina (NOW HIRING)

Bachelor's degree in Information Technology, Computer Science, Information Systems, Cybersecurity ... Advanced understanding of enterprise risk management, with experience advising leadership on risk ...

... technology risk management. * Lead and facilitate process mapping activities with business ... stakeholders to document end-to-end workflows, identify key risks and controls, assess process gaps ...

... technology risk management. * Lead and facilitate process mapping activities with business ... stakeholders to document end-to-end workflows, identify key risks and controls, assess process gaps ...

... technology risk management. * Lead and facilitate process mapping activities with business ... stakeholders to document end-to-end workflows, identify key risks and controls, assess process gaps ...

IT Auditor

Charlotte, NC · On-site

$80K - $104K/yr

Leverages knowledge of common technology risk and control frameworks, including financial industry ... Management, Technology Systems Anticipated Posting End Date: 2026-08-17 Base Pay Range: $80,100/yr ...

Assess technology processes, controls, and risk management practices to determine design and ... Demonstrated ability to formulate and communicate solutions based on a synthesis of information. 12.

Assess technology processes, controls, and risk management practices to determine design and ... Demonstrated ability to formulate and communicate solutions based on a synthesis of information. 12.

Assess technology processes, controls, and risk management practices to determine design and ... Demonstrated ability to formulate and communicate solutions based on a synthesis of information. 12.

Assess technology processes, controls, and risk management practices to determine design and ... Demonstrated ability to formulate and communicate solutions based on a synthesis of information. 12.

Assess technology processes, controls, and risk management practices to determine design and ... Demonstrated ability to formulate and communicate solutions based on a synthesis of information. 12.

Provide basic and complex preventive risk management assessment of processes, procedures, and ... Additional information and provision for requests for reasonable accommodation will be provided by ...

Showing results 21-40

It Risk Manager information

See North Carolina salary details

$46.8K

$101.4K

$154.5K

How much do it risk manager jobs pay per year?

As of Aug 20, 2026, the average yearly pay for it risk manager in North Carolina is $101,382.00, according to ZipRecruiter salary data. Most workers in this role earn between $81,800.00 and $117,200.00 per year, depending on experience, location, and employer.

What does an IT Risk Manager do?

An IT Risk Manager is responsible for identifying, assessing, and mitigating risks that could impact an organization's information technology systems and data. They develop and implement risk management strategies, policies, and procedures to protect against cybersecurity threats, data breaches, and compliance violations. IT Risk Managers also work closely with other departments to ensure security best practices are followed and often lead risk assessments, audits, and incident response planning.

What are some common challenges faced by IT Risk Managers when implementing risk mitigation strategies across different departments?

IT Risk Managers often encounter challenges such as varying levels of risk awareness among departments, resistance to new controls or procedures, and balancing business objectives with security requirements. Successful risk mitigation requires clear communication, stakeholder buy-in, and tailored training to ensure all teams understand the importance of compliance. Building strong relationships and fostering a culture of shared responsibility are key to overcoming these hurdles and ensuring effective risk management across the organization.

What are the key skills and qualifications needed to thrive as an IT Risk Manager, and why are they important?

To thrive as an IT Risk Manager, you need a solid understanding of risk assessment, information security, and compliance frameworks, often backed by a bachelor's degree in information technology or related fields. Familiarity with tools such as risk management software, GRC platforms, and certifications like CISSP, CISM, or CRISC is typically required. Strong analytical thinking, communication skills, and the ability to influence stakeholders are crucial soft skills in this role. These skills ensure effective identification, mitigation, and communication of IT risks, supporting organizational resilience and compliance.

What is the difference between It Risk Manager vs Cybersecurity Analyst?

AspectIt Risk ManagerCybersecurity Analyst
CertificationsCRISC, CISSP, CISMCISSP, Security+, CEH
Work EnvironmentOversees risk management strategies across IT systemsMonitors and responds to security threats and incidents
Industry UsageUsed in organizations with complex IT infrastructuresCommon in security-focused roles across industries

The It Risk Manager focuses on identifying and managing IT risks at an organizational level, ensuring compliance and risk mitigation strategies. In contrast, a Cybersecurity Analyst primarily monitors security threats and responds to incidents. While both roles require similar certifications and work within the IT security domain, the It Risk Manager has a broader scope related to risk management policies, whereas the Cybersecurity Analyst concentrates on threat detection and response.

What job categories do people searching It Risk Manager jobs in North Carolina look for?

The top searched job categories for It Risk Manager jobs in North Carolina are:

What cities in North Carolina are hiring for It Risk Manager jobs?

Cities in North Carolina with the most It Risk Manager job openings:

Infographic showing various It Risk Manager job openings in North Carolina as of August 2026, with employment types broken down into 83% Full Time, 9% Part Time, 7% Temporary, and 1% Contract. Highlights an 81% Physical, 2% Hybrid, and 17% Remote job distribution, with an average salary of $101,382 per year, or $48.7 per hour.

Full-time

Posted 22 days ago


Job description

Job Description Risk Advisor Hybrid, 3-days onsite (NYC or Charlotte office) Contract role Our client's Technology Governance, Risk & Compliance (GRC) organization is seeking a Risk Advisor to advise leadership on risk posture and tradeoffs and to lead enterprise risk assessments and treatment decisions across their business and technology functions. The Risk Advisor also supports and helps drive our client's third-party risk management (TPRM) program, contributing to vendor risk assessments, escalations, and remediation across the vendor lifecycle. Responsibilities: Advise leadership on enterprise risk posture, tradeoffs, and risk acceptance, with clear recommendations.

Identify systemic and emerging risks and influence prioritization and investment decisions. Lead risk assessments and gap assessments across business processes and technologies, from initiation through treatment planning. Own escalation of material risks, with recommendations for treatment or acceptance.

Maintain the enterprise risk register, keeping risks and response plans current. Track remediation and follow up to closure and SLA adherence. Integrate risk data into recurring reporting and metrics for leadership and risk-focused governance forums.

Support and help drive the third-party risk management program, contributing to vendor risk assessments across onboarding, reassessment, and renewal. Advise business owners and procurement on third-party risk decisions, and support escalation and remediation tracking for vendor risks. Contribute to TPRM process improvements and program maturity.

Requirements: Bachelor's degree in Information Technology, Computer Science, Information Systems, Cybersecurity, Business Administration, or a related discipline. (Equivalent experience may be considered in lieu of formal education) 7+ years in risk management, including risk leadership or advisory experience. Advanced understanding of enterprise risk management, with experience advising leadership on risk posture, tradeoffs, and acceptance.

Demonstrated experience with third-party/vendor risk assessments across the vendor lifecycle, and the ability to support and help drive a TPRM program. Strong executive communication skills, including clear risk documentation and reporting to leadership and governance forums. Working knowledge of security and risk frameworks such as NIST CSF, NIST 800-53, PCI-DSS, HIPAA, or SOC 2, applied to enterprise and third-party risk.

Familiarity with GRC and vendor risk platforms such as TruOps, Prevalent, OneTrust, ProcessUnity, or ServiceNow. Strong stakeholder management, with the ability to influence risk decisions without centralized authority. Identify opportunities to improve risk management scalability through analytics, automation, and AI.

(Preferred) CRISC, CISA, or PMI-RMP; CTPRP, CTPRA, CISM, or CISSP a plus. Experience building or maturing a third-party risk management program. Experience operating in federated, matrixed, or multi-business enterprise environments.

Familiarity with AI governance or emerging technology risk Experience supporting risk-focused governance forums or steering committees.