1

It Risk Manager Jobs in Boston, MA (NOW HIRING)

Senior IT Audit Manager

Waltham, MA · On-site

$130K - $175K/yr

This role will strengthen the company's control environment, reduce compliance and operational risk ... IT risk and compliance operating model. * Manage internal corrective actions assigned to IT ...

The IT Internal Auditor supports the execution of the Company's Internal Audit plan, with ... governance and risk management practices, and helps enhance the overall control environment.

Senior IT Audit Manager

Waltham, MA · On-site

$130K - $175K/yr

This role will strengthen the company's control environment, reduce compliance and operational risk ... IT risk and compliance operating model. * Manage internal corrective actions assigned to IT ...

The IT Internal Auditor supports the execution of the Company's Internal Audit plan, with ... governance and risk management practices, and helps enhance the overall control environment.

The IT Internal Auditor supports the execution of the Company's Internal Audit plan, with ... governance and risk management practices, and helps enhance the overall control environment.

The IT Internal Auditor supports the execution of the Company's Internal Audit plan, with ... governance and risk management practices, and helps enhance the overall control environment.

Senior IT Audit Specialist

Rockland, MA

$100K - $131K/yr

Lead and execute risk-based audits covering IT Governance, Cybersecurity, Information Security, Technology Operations, Cloud Computing, Infrastructure, Data Management, Digital Banking, and Emerging ...

Senior IT Audit Specialist

Rockland, MA · On-site

$120 - $180/hr

Lead and execute risk-based audits covering IT Governance, Cybersecurity, Information Security, Technology Operations, Cloud Computing, Infrastructure, Data Management, Digital Banking, and Emerging ...

Senior IT Audit Specialist

Rockland, MA · On-site

$100K - $131K/yr

Lead and execute risk-based audits covering IT Governance, Cybersecurity, Information Security, Technology Operations, Cloud Computing, Infrastructure, Data Management, Digital Banking, and Emerging ...

Senior IT Audit Specialist

Rockland, MA · On-site

$100K - $131K/yr

Lead and execute risk-based audits covering IT Governance, Cybersecurity, Information Security, Technology Operations, Cloud Computing, Infrastructure, Data Management, Digital Banking, and Emerging ...

Kforce's client is seeking a Manager of IT Audit to work in the Greater Boston Area, hybrid 2-3 ... Limited SOX focus; primarily project + risk-based IT audits * Strong bonus program + annual equity ...

Senior Principal, Internal Audit, IT

Bedford, MA · On-site

$88K - $110K/yr

Deep knowledge of technology risk management, IT general controls, cybersecurity, cloud ... environments, ERP platforms, data governance, and emerging technology risks. * Experience ...

Showing results 21-40

It Risk Manager information

See Boston, MA salary details

$56K

$121.2K

$184.7K

How much do it risk manager jobs pay per year?

As of Sep 3, 2026, the average yearly pay for it risk manager in Boston, MA is $121,195.00, according to ZipRecruiter salary data. Most workers in this role earn between $97,800.00 and $140,100.00 per year, depending on experience, location, and employer.

What does an IT Risk Manager do?

An IT Risk Manager is responsible for identifying, assessing, and mitigating risks that could impact an organization's information technology systems and data. They develop and implement risk management strategies, policies, and procedures to protect against cybersecurity threats, data breaches, and compliance violations. IT Risk Managers also work closely with other departments to ensure security best practices are followed and often lead risk assessments, audits, and incident response planning.

What are some common challenges faced by IT Risk Managers when implementing risk mitigation strategies across different departments?

IT Risk Managers often encounter challenges such as varying levels of risk awareness among departments, resistance to new controls or procedures, and balancing business objectives with security requirements. Successful risk mitigation requires clear communication, stakeholder buy-in, and tailored training to ensure all teams understand the importance of compliance. Building strong relationships and fostering a culture of shared responsibility are key to overcoming these hurdles and ensuring effective risk management across the organization.

What are the key skills and qualifications needed to thrive as an IT Risk Manager, and why are they important?

To thrive as an IT Risk Manager, you need a solid understanding of risk assessment, information security, and compliance frameworks, often backed by a bachelor's degree in information technology or related fields. Familiarity with tools such as risk management software, GRC platforms, and certifications like CISSP, CISM, or CRISC is typically required. Strong analytical thinking, communication skills, and the ability to influence stakeholders are crucial soft skills in this role. These skills ensure effective identification, mitigation, and communication of IT risks, supporting organizational resilience and compliance.

What is the difference between It Risk Manager vs Cybersecurity Analyst?

AspectIt Risk ManagerCybersecurity Analyst
CertificationsCRISC, CISSP, CISMCISSP, Security+, CEH
Work EnvironmentOversees risk management strategies across IT systemsMonitors and responds to security threats and incidents
Industry UsageUsed in organizations with complex IT infrastructuresCommon in security-focused roles across industries

The It Risk Manager focuses on identifying and managing IT risks at an organizational level, ensuring compliance and risk mitigation strategies. In contrast, a Cybersecurity Analyst primarily monitors security threats and responds to incidents. While both roles require similar certifications and work within the IT security domain, the It Risk Manager has a broader scope related to risk management policies, whereas the Cybersecurity Analyst concentrates on threat detection and response.

What are popular job titles related to It Risk Manager jobs in Boston, MA?

For It Risk Manager jobs in Boston, MA, the most frequently searched job titles are:

What job categories do people searching It Risk Manager jobs in Boston, MA look for?

The top searched job categories for It Risk Manager jobs in Boston, MA are:

Infographic showing various It Risk Manager job openings in Boston, MA as of August 2026, with employment types broken down into 85% Full Time, 12% Part Time, and 3% Contract. Highlights an 83% Physical, 2% Hybrid, and 15% Remote job distribution, with an average salary of $121,188 per year, or $58.3 per hour.

Full-time

Re-posted 24 days ago


Job description

Key responsibilities

The primary responsibility of this position will be as the central contact, from a Bain perspective, in coordinating activities around the development of Business Continuity Plans and an assessment of the Disaster Recovery program, reporting to the Director of Technology Risk.

Disaster recovery tests are conducted on a quarterly basis. Working with the Project Manager, Business Users and Infrastructure team you will have a hands on role in the coordination and documentation of the tests. This will include reaching out to our third parties to understand their test strategies.

For Business Continuity planning, you will be involved in the process to create/update the Business Impact Analysis (BIA) and the Business Continuity Plans. This role will be a member of the team, working with the business, to define and document their needs.

This will also require technical knowledge to work with the BC in the Cloud application to enhance and update based on user requirements. As part of these enhancements, you will need to document the requirements, coordinate the updates with the vendor, or in many cases perform them yourself and then validate the enhancements are successful.

Your secondary responsibility within the Technology Risk Group, will be to assist the Vendor Risk Manager in supporting the Third Party Risk Assessment process.

In this role, you will review the preliminary risk assessment, interface with vendor to obtain necessary diligence details, interface with third party risk assessor, document defined risks and develop communication to the business to accept risks or create plan to mitigate risk as well as track in our risk register.

As a team member, you will support the Vendor Risk Manager in tracking the assessment of new 3rd party vendor, updating assessments for our critical vendors, provide regular reporting and update the Vendor Risk system.

As part of your responsibility, not only will you be interacting with third party vendors, you will also interface with the IT Organizations and Business counterparts.

Qualifications
  • Experience with documentation and Microsoft tools, specifically Excel and Word
  • HTML skills a plus
  • Strong analytical ability, judgment and problem analysis techniques
  • Beneficial for candidate to have experience or coursework in any of the following topics: Risk Assessments, Emergency Preparedness, Business Continuity, Business, Information Technology, and/or Information Security
  • Experience with project and/or program management, whether business experience or in group/classwork activities
  • Proven ability to be self-starter with strong communication skills, written and verbal and keen attention to detail and thoroughness