1

It Risk Manager Jobs in Pennsylvania (NOW HIRING)

IT Audit Associate Director

Wayne, PA · On-site

$160K - $180K/yr

... and risk management processes. • Review and refine key engagement materials such as audit ... in IT audit, technology risk, internal audit, consulting, or a closely related field. • ...

... IT audit, cybersecurity risk, operational risk, or a related field. * Experience assessing ... Experience with third-party risk management, AI risk, or emerging technology risk. * Relevant ...

The position partners closely with Technology, Information Security, Operational Risk, Audit, Compliance, Finance, and Enterprise Risk Management teams to develop and mature technology risk ...

Enterprise Architect (IT)

Pittsburgh, PA · On-site +1

$67 - $86.50/hr

Partner with cybersecurity, technology risk, compliance, infrastructure, application, data, and operations teams to support holistic IT risk management. * Facilitate alignment across application ...

Enterprise Architect (IT)

Pittsburgh, PA · On-site +1

$102K - $208K/yr

Partner with cybersecurity, technology risk, compliance, infrastructure, application, data, and operations teams to support holistic IT risk management. * Facilitate alignment across application ...

IT SOX Senior Auditor

Malvern, PA · On-site

$92K - $121K/yr

Experience testing and evaluating automated business process controls and IT controls within financial services, technology, or risk management environments, including end-to-end process, risk, and ...

IT SOX Senior Auditor

Malvern, PA · On-site

$92K - $121K/yr

Experience testing and evaluating automated business process controls and IT controls within financial services, technology, or risk management environments, including end-to-end process, risk, and ...

IT SOX Senior Auditor

Malvern, PA

$92K - $121K/yr

Experience testing and evaluating automated business process controls and IT controls within financial services, technology, or risk management environments, including end-to-end process, risk, and ...

Risk Manager

Media, PA · On-site

$75K - $98K/yr

The Risk Manager ensures compliance with applicable federal, Commonwealth of Pennsylvania, and ... the Information Technology Department. Experience supporting or developing cyber liability ...

next page

Showing results 1-20

It Risk Manager information

See Pennsylvania salary details

$51.6K

$111.8K

$170.4K

How much do it risk manager jobs pay per year?

As of Jul 29, 2026, the average yearly pay for it risk manager in Pennsylvania is $111,824.00, according to ZipRecruiter salary data. Most workers in this role earn between $90,200.00 and $129,300.00 per year, depending on experience, location, and employer.

What are some common challenges faced by IT Risk Managers when implementing risk mitigation strategies across different departments?

IT Risk Managers often encounter challenges such as varying levels of risk awareness among departments, resistance to new controls or procedures, and balancing business objectives with security requirements. Successful risk mitigation requires clear communication, stakeholder buy-in, and tailored training to ensure all teams understand the importance of compliance. Building strong relationships and fostering a culture of shared responsibility are key to overcoming these hurdles and ensuring effective risk management across the organization.

What are the key skills and qualifications needed to thrive as an IT Risk Manager, and why are they important?

To thrive as an IT Risk Manager, you need a solid understanding of risk assessment, information security, and compliance frameworks, often backed by a bachelor's degree in information technology or related fields. Familiarity with tools such as risk management software, GRC platforms, and certifications like CISSP, CISM, or CRISC is typically required. Strong analytical thinking, communication skills, and the ability to influence stakeholders are crucial soft skills in this role. These skills ensure effective identification, mitigation, and communication of IT risks, supporting organizational resilience and compliance.

What is the highest salary for a risk manager?

The highest salary for an IT Risk Manager can exceed $150,000 annually, especially for those with extensive experience, advanced certifications like CRISC or CISSP, and working in large organizations or financial institutions. Senior risk managers or those in managerial or executive roles may earn even higher compensation, including bonuses and benefits.

What does an IT Risk Manager do?

An IT Risk Manager is responsible for identifying, assessing, and mitigating risks that could impact an organization's information technology systems and data. They develop and implement risk management strategies, policies, and procedures to protect against cybersecurity threats, data breaches, and compliance violations. IT Risk Managers also work closely with other departments to ensure security best practices are followed and often lead risk assessments, audits, and incident response planning.

Is risk a good career?

A career as an IT Risk Manager is considered stable and in demand, as organizations prioritize cybersecurity and risk mitigation. The role requires strong analytical skills, knowledge of security frameworks, and often certifications like CISSP or CRISC. It offers opportunities for advancement and specialization in a growing field.

What is the difference between It Risk Manager vs Cybersecurity Analyst?

AspectIt Risk ManagerCybersecurity Analyst
CertificationsCRISC, CISSP, CISMCISSP, Security+, CEH
Work EnvironmentOversees risk management strategies across IT systemsMonitors and responds to security threats and incidents
Industry UsageUsed in organizations with complex IT infrastructuresCommon in security-focused roles across industries

The It Risk Manager focuses on identifying and managing IT risks at an organizational level, ensuring compliance and risk mitigation strategies. In contrast, a Cybersecurity Analyst primarily monitors security threats and responds to incidents. While both roles require similar certifications and work within the IT security domain, the It Risk Manager has a broader scope related to risk management policies, whereas the Cybersecurity Analyst concentrates on threat detection and response.

How much does a risk manager get paid?

A risk manager's average salary varies by experience and location but typically ranges from $80,000 to $150,000 annually. Senior risk managers or those with specialized certifications like FRM or CRM can earn higher salaries, especially in large organizations or financial sectors.

What is the role of IT risk manager?

An IT risk manager is responsible for identifying, assessing, and mitigating information technology risks within an organization. They develop security policies, implement controls, and ensure compliance with industry standards to protect digital assets and infrastructure. Strong knowledge of cybersecurity, risk management frameworks, and relevant certifications like CISSP or CISM are often required.
What are popular job titles related to It Risk Manager jobs in Pennsylvania? For It Risk Manager jobs in Pennsylvania, the most frequently searched job titles are:
What cities in Pennsylvania are hiring for It Risk Manager jobs? Cities in Pennsylvania with the most It Risk Manager job openings:
Infographic showing various It Risk Manager job openings in Pennsylvania as of July 2026, with employment types broken down into 1% As Needed, 70% Full Time, 22% Part Time, 1% Temporary, 5% Contract, and 1% Nights. Highlights an 90% Physical, 5% Hybrid, and 5% Remote job distribution, with an average salary of $111,824 per year, or $53.8 per hour.
IT Audit Associate Director

IT Audit Associate Director

Robert Half

Wayne, PA • On-site

$160K - $180K/yr

Full-time

Posted 4 days ago


Job description

We are looking for an accomplished IT Audit Associate Director to guide technology risk and audit engagements for a client in the greater Philadelphia area. This position combines client leadership, delivery oversight, and team development, making it ideal for someone who can translate complex technical risk topics into practical business recommendations. The role also offers the opportunity to strengthen client partnerships, support growth initiatives, and promote high-quality audit and advisory outcomes across a range of technology-focused projects.


Responsibilities:

• Direct IT audit and technology risk engagements from initial scope definition through final reporting, ensuring quality, timeliness, and alignment with client objectives.

• Evaluate technology environments and advise clients on strengthening controls, governance practices, compliance readiness, and risk management processes.

• Review and refine key engagement materials such as audit programs, process documentation, control narratives, testing results, and final reports.

• Build trusted relationships with client stakeholders, including business and technology leaders, by providing practical guidance on complex audit and risk matters.

• Recognize opportunities to expand services with current and prospective clients and contribute to proposal development, scoping conversations, and market-facing activities.

• Lead, coach, and support engagement teams by fostering accountability, collaboration, and continued growth across staff members.

• Apply data analytics, automation, AI-enabled approaches, and other technologies to improve audit effectiveness and delivery efficiency.

• Present technology risk findings and recommendations clearly to executives and other stakeholders, tailoring communication to varied audiences.

• Support client work across areas such as IT general controls, compliance, cybersecurity, cloud assurance, data privacy, enterprise applications, technology resilience, and emerging risk topics.

• Bachelor’s degree in Accounting, Finance, Information Technology, Cybersecurity, or a related discipline.
• At least 7 years of experience in IT audit, technology risk, internal audit, consulting, or a closely related field.
• Demonstrated success leading teams and managing several client engagements at the same time.
• Strong understanding of IT audit practices, internal control concepts, risk assessment methods, and established governance frameworks.
• Experience with Sarbanes-Oxley compliance activities and IT control testing.
• Certification such as CISA is required or strongly preferred; additional credentials in audit, risk, or cybersecurity are valued.
• Ability to communicate effectively with senior leaders and deliver clear, executive-level insights.
• Familiarity with tools and reporting platforms such as Power BI and Tableau, along with knowledge of cybersecurity compliance expectations.

Robert Half logo

About Robert Half

Sourced by ZipRecruiter

Founded in 1948, Robert Half pioneered the idea of professional talent solutions to connect opportunities at great companies with highly skilled job seekers. As business needs changed, we evolved to offer specialized talent solutions for finance and accounting, technology, administrative and customer support, creative and marketing, and legal fields. In 2002, we introduced our subsidiary, Protiviti, a global independent risk consulting and internal audit service, to support companies as they faced more strategic business challenges.

Industry

Recruiting and staffing services

Company size

10,000+ Employees

Headquarters location

San Ramon, CA, US

Year founded

1948