This role reports to the CIO and ensures alignment between IT risk management practices and the institution's risk appetite, while enabling secure, compliant, and resilient technology operations. The ...
This role reports to the CIO and ensures alignment between IT risk management practices and the institution's risk appetite, while enabling secure, compliant, and resilient technology operations. The ...
This role reports to the CIO and ensures alignment between IT risk management practices and the institution's risk appetite, while enabling secure, compliant, and resilient technology operations. The ...
This role reports to the CIO and ensures alignment between IT risk management practices and the institution's risk appetite, while enabling secure, compliant, and resilient technology operations. The ...
This role reports to the CIO and ensures alignment between IT risk management practices and the institution's risk appetite, while enabling secure, compliant, and resilient technology operations. The ...
This role reports to the CIO and ensures alignment between IT risk management practices and the institution's risk appetite, while enabling secure, compliant, and resilient technology operations. The ...
Risk Manager
Nashville, TN ยท On-site
... RMIS technology. * Utilizes RMIS to manage, document, and store relevant risk management information. Incidents and Events * Communicates importance and encourages the use of incident reporting ...
Risk Manager
Nashville, TN ยท On-site
... RMIS technology. * Utilizes RMIS to manage, document, and store relevant risk management information. Incidents and Events * Communicates importance and encourages the use of incident reporting ...
The Digital Risk Services Practice Leader is a Director/Partner-level role responsible for leading ... Bachelor's degree in Accounting, Information Technology, Management Information Systems ...
The Digital Risk Services Practice Leader is a Director/Partner-level role responsible for leading ... Bachelor's degree in Accounting, Information Technology, Management Information Systems ...
The Digital Risk Services Practice Leader is a Director/Partner-level role responsible for leading ... Bachelor's degree in Accounting, Information Technology, Management Information Systems ...
The Digital Risk Services Practice Leader is a Director/Partner-level role responsible for leading ... Bachelor's degree in Accounting, Information Technology, Management Information Systems ...
Risk Manager
Nashville, TN ยท On-site
Ability to explain complex information in an easily digestible manner * Highly analytical mind with ... new technologies into our business or providing thoughtful advice to our clients, we are fully ...
Risk Manager
Nashville, TN ยท On-site
Ability to explain complex information in an easily digestible manner * Highly analytical mind with ... new technologies into our business or providing thoughtful advice to our clients, we are fully ...
Risk Manager
Nashville, TN ยท On-site
Ability to explain complex information in an easily digestible manner * Highly analytical mind with ... new technologies into our business or providing thoughtful advice to our clients, we are fully ...
Risk Manager
Nashville, TN ยท On-site
Ability to explain complex information in an easily digestible manner * Highly analytical mind with ... new technologies into our business or providing thoughtful advice to our clients, we are fully ...
2027 TRC Fall Internship
Nashville, TN ยท On-site
$14.50 - $19.25/hr
... IT Audit Managers and clients, you will gain an understanding of the client's IT systems, infrastructure, and control environment. You will apply that understanding to a variety of IT risk and ...
2027 TRC Fall Internship
Nashville, TN ยท On-site
$14.50 - $19.25/hr
... IT Audit Managers and clients, you will gain an understanding of the client's IT systems, infrastructure, and control environment. You will apply that understanding to a variety of IT risk and ...
Bachelor's degree in information systems, Computer Science, Accounting, Business, Risk Management, or Cybersecurity * 10+ years of experience in technology risk management, information technology ...
Bachelor's degree in information systems, Computer Science, Accounting, Business, Risk Management, or Cybersecurity * 10+ years of experience in technology risk management, information technology ...
IT Delivery Program Manager
Nashville, TN ยท On-site
$112K - $112K/yr
IT Delivery Program Manager Experience: 10 + years Location: Nashville, Tennessee Hybrid Region ... vendor performance, financial control, risk management, and customer engagement. Key ...
IT Delivery Program Manager
Nashville, TN ยท On-site
$112K - $112K/yr
IT Delivery Program Manager Experience: 10 + years Location: Nashville, Tennessee Hybrid Region ... vendor performance, financial control, risk management, and customer engagement. Key ...
IT Client Delivery Leader - Remote (North Region)
Brentwood, TN ยท Remote
$89K - $110K/yr
Executive Relationship Management * Build trusted working relationships with division presidents ... Risk, Compliance, and Cybersecurity Alignment * Promote adherence to corporate IT standards ...
IT Client Delivery Leader - Remote (North Region)
Brentwood, TN ยท Remote
$89K - $110K/yr
Executive Relationship Management * Build trusted working relationships with division presidents ... Risk, Compliance, and Cybersecurity Alignment * Promote adherence to corporate IT standards ...
2027 TRC Fall Internship
$14.50 - $19.25/hr
... IT Audit Managers and clients, you will gain an understanding of the client's IT systems, infrastructure, and control environment. You will apply that understanding to a variety of IT risk and ...
2027 TRC Fall Internship
$14.50 - $19.25/hr
... IT Audit Managers and clients, you will gain an understanding of the client's IT systems, infrastructure, and control environment. You will apply that understanding to a variety of IT risk and ...
IT Manager
Nashville, TN ยท On-site
$91K - $112K/yr
The IT Manager leads and develops the IT team, establishes operational standards, manages ... Lead cybersecurity initiatives, risk management efforts, vulnerability remediation, and security ...
IT Manager
Nashville, TN ยท On-site
$91K - $112K/yr
The IT Manager leads and develops the IT team, establishes operational standards, manages ... Lead cybersecurity initiatives, risk management efforts, vulnerability remediation, and security ...
$100K - $115K/yr
Learn more at About the role The IT Manager is responsible for leading the technology strategy ... Cybersecurity & Risk Management * Lead cybersecurity initiatives and implement security best ...
$100K - $115K/yr
Learn more at About the role The IT Manager is responsible for leading the technology strategy ... Cybersecurity & Risk Management * Lead cybersecurity initiatives and implement security best ...
SR RISK MANAGER
Knoxville, TN ยท On-site
Assists with release of records and information in response to subpoenas, court orders, attorney ... When risk management personnel are informed of an incident, the investigation should include ...
SR RISK MANAGER
Knoxville, TN ยท On-site
Assists with release of records and information in response to subpoenas, court orders, attorney ... When risk management personnel are informed of an incident, the investigation should include ...
SR RISK MANAGER
Knoxville, TN ยท On-site
Assists with release of records and information in response to subpoenas, court orders, attorney ... When risk management personnel are informed of an incident, the investigation should include ...
SR RISK MANAGER
Knoxville, TN ยท On-site
Assists with release of records and information in response to subpoenas, court orders, attorney ... When risk management personnel are informed of an incident, the investigation should include ...
Bachelor's degree in information systems, Computer Science, Accounting, Business, Risk Management, or Cybersecurity * 10+ years of experience in technology risk management, information technology ...
Bachelor's degree in information systems, Computer Science, Accounting, Business, Risk Management, or Cybersecurity * 10+ years of experience in technology risk management, information technology ...
Cybersecurity Risk Analyst
Nashville, TN ยท On-site
A minimum of 3-4 years in Information Technology * A minimum of 2 years' experience in cybersecurity risk management * A Bachelor's or Master's Degree in a relevant field of work * Strong analytical ...
Cybersecurity Risk Analyst
Nashville, TN ยท On-site
A minimum of 3-4 years in Information Technology * A minimum of 2 years' experience in cybersecurity risk management * A Bachelor's or Master's Degree in a relevant field of work * Strong analytical ...
A minimum of 3-4 years in Information Technology * A minimum of 2 years' experience in cybersecurity risk management * A Bachelor's or Master's Degree in a relevant field of work * Strong analytical ...
A minimum of 3-4 years in Information Technology * A minimum of 2 years' experience in cybersecurity risk management * A Bachelor's or Master's Degree in a relevant field of work * Strong analytical ...
It Risk Manager information
See Tennessee salary details
$46.7K - $56.5K
4% of jobs
$56.5K - $66.3K
6% of jobs
$66.3K - $76.1K
11% of jobs
$79.7K is the 25th percentile. Wages below this are outliers.
$76.1K - $85.9K
11% of jobs
The median wage is $93.6K / yr.
$85.9K - $95.6K
23% of jobs
$95.6K - $105.4K
13% of jobs
$111.9K is the 75th percentile. Wages above this are outliers.
$105.4K - $115.2K
12% of jobs
$115.2K - $125K
8% of jobs
$125K - $134.7K
6% of jobs
$134.7K - $144.5K
4% of jobs
$144.5K - $154.3K
2% of jobs
$46.7K
$101.3K
$154.3K
How much do it risk manager jobs pay per year?
What are some common challenges faced by IT Risk Managers when implementing risk mitigation strategies across different departments?
What are the key skills and qualifications needed to thrive as an IT Risk Manager, and why are they important?
What does an IT Risk Manager do?
What is the difference between It Risk Manager vs Cybersecurity Analyst?
| Aspect | It Risk Manager | Cybersecurity Analyst |
|---|---|---|
| Certifications | CRISC, CISSP, CISM | CISSP, Security+, CEH |
| Work Environment | Oversees risk management strategies across IT systems | Monitors and responds to security threats and incidents |
| Industry Usage | Used in organizations with complex IT infrastructures | Common in security-focused roles across industries |
The It Risk Manager focuses on identifying and managing IT risks at an organizational level, ensuring compliance and risk mitigation strategies. In contrast, a Cybersecurity Analyst primarily monitors security threats and responds to incidents. While both roles require similar certifications and work within the IT security domain, the It Risk Manager has a broader scope related to risk management policies, whereas the Cybersecurity Analyst concentrates on threat detection and response.

Full-time
Re-posted 24 days ago
Job description
POSITION PURPOSE
The Director of IT Governance, Risk and Compliance provides strategic leadership and oversight of the organization's IT risk posture, governance frameworks, and regulatory compliance within a financial services environment. This role reports to the CIO and ensures alignment between IT risk management practices and the institution's risk appetite, while enabling secure, compliant, and resilient technology operations. The director serves as a key liaison to regulators and internal audit, leads enterprise IT risk programs, and partners closely with information security, legal, compliance, and business units to proactively identify, assess, and mitigate risk across systems, vendors, and emerging technologies.
ESSENTIAL FUNCTIONS AND BASIC DUTIES
1. ย ย Define And maintain the IT risk management framework, ensuring alignment with enterprise risk appetite and business strategy.
2. ย ย Develop and execute a multi year IT risk maturity road map, including governance, controls, and reporting enhancements.
3. ย ย Provide executive level and board reporting on IT risk posture, trends, and emerging threats.
4. ย ย Establish and oversee IT governance structures, policies, standards, and procedures.
5. ย ย Lead enterprise IT risk assessments, including infrastructure, applications, and security architecture reviews.
6. ย ย Identify vulnerabilities, evaluate risk exposure, and ensure timely mitigation of identified issues.
7. ย ย Oversee risk acceptance processes and provide escalation authority for material IT and security risks.
8. ย ย Review and challenge risk decisions, ensuring consistency with organizational risk tolerance.
9. ย ย Serve as primary point of contact for IT regulatory examinations and audits.
10. ย ย Manage IT exam life cycle, including preparation, coordination, and response.
11. ย ย Oversee tracking, reporting, and remediation of IT findings from regulators and internal/ external audits.
12. ย ย Maintain comprehensive documentation of audits, findings, and corrective actions.
13. ย ย Interpret and operationalize regulatory requirements related to IT systems, data protection, and information security to include SOX, data privacy laws, and financial regulations.
14. ย ย Develop and implement strategies to ensure ongoing compliance with applicable laws and standards.
15. ย ย Partner with legal and compliance teams to monitor regulatory changes and assess impact on IT controls.
16. ย ย Provide oversight of IT risk associated with third party vendors, including material risk vendor reviews and escalations.
17. ย ย Collaborate with vendor management teams to ensure adequate controls and risk mitigation strategies.
18. ย ย Assess risks associated with new technologies, products, and services, ensuring appropriate governance and control implementation.
19. ย ย Partner closely with information security to align on security controls, risk assessments, and remediation priorities.
20. ย ย Work with business and technology stakeholders to embed risk management practices into day-to-day operations.
21. ย ย Promote a strong risk-aware culture across the organization.
QUALIFICATIONS
EDUCATION/CERTIFICATION: Bachelorโs degree in Information Technology, Cybersecurity, Risk Management, or a related field. Advanced degree preferred. Relevant certifications preferred (e.g., CISM, CRISC, CISSP, CISA)
REQUIRED KNOWLEDGE: Strong understanding of SOX, data privacy regulations, and technology compliance requirements.
EXPERIENCE REQUIRED: Ten or more (10+) years of progressive experience in IT risk management, IT audit, information security, or governance within financial services or a highly regulated industry.
Deep expertise in IT risk frameworks, such as NIST, COBIT, ISO 27001, and regulatory environments.
Proven experience managing regulatory exams and audit engagements.
SKILLS/ABILITIES:
Ability to communicate effectively with technical and non-technical stakeholders, including senior leadership.
Demonstrated ability to lead complex risk programs and influence senior stakeholders, including executive leadership.
Very strong analytical & problem-solving skills