1

It Risk Manager Jobs in Buffalo, NY (NOW HIRING)

IT Compliance Manager

East Aurora, NY · Hybrid

$122K - $147K/yr

Shape the Future of Aerospace Innovation at Astronics The IT Compliance Manager ensures IT systems, processes, and controls comply with SOX requirements, CMMC, applicable laws, industry standards ...

IT Compliance Manager

East Aurora, NY · Hybrid

$122K - $147K/yr

Shape the Future of Aerospace Innovation at Astronics The IT Compliance Manager ensures IT systems, processes, and controls comply with SOX requirements, CMMC, applicable laws, industry standards ...

SOX IT Manager

Buffalo, NY · Hybrid

$11K - $140K/yr

The Risk Advisory practice at Withum is experiencing significant growth driven by market demand for ... Our team is seeking an experienced IT Internal Controls Audit Lead/Manager with experience ...

SOX IT Manager

Buffalo, NY · On-site

$11K - $140K/yr

The Risk Advisory practice at Withum is experiencing significant growth driven by market demand for ... Our team is seeking an experienced IT Internal Controls Audit Lead/Manager with experience ...

next page

Showing results 1-20

It Risk Manager information

See Buffalo, NY salary details

$49.9K

$108.1K

$164.7K

How much do it risk manager jobs pay per year?

As of Aug 10, 2026, the average yearly pay for it risk manager in Buffalo, NY is $108,060.00, according to ZipRecruiter salary data. Most workers in this role earn between $87,200.00 and $125,000.00 per year, depending on experience, location, and employer.

What are some common challenges faced by IT Risk Managers when implementing risk mitigation strategies across different departments?

IT Risk Managers often encounter challenges such as varying levels of risk awareness among departments, resistance to new controls or procedures, and balancing business objectives with security requirements. Successful risk mitigation requires clear communication, stakeholder buy-in, and tailored training to ensure all teams understand the importance of compliance. Building strong relationships and fostering a culture of shared responsibility are key to overcoming these hurdles and ensuring effective risk management across the organization.

What are the key skills and qualifications needed to thrive as an IT Risk Manager, and why are they important?

To thrive as an IT Risk Manager, you need a solid understanding of risk assessment, information security, and compliance frameworks, often backed by a bachelor's degree in information technology or related fields. Familiarity with tools such as risk management software, GRC platforms, and certifications like CISSP, CISM, or CRISC is typically required. Strong analytical thinking, communication skills, and the ability to influence stakeholders are crucial soft skills in this role. These skills ensure effective identification, mitigation, and communication of IT risks, supporting organizational resilience and compliance.

What does an IT Risk Manager do?

An IT Risk Manager is responsible for identifying, assessing, and mitigating risks that could impact an organization's information technology systems and data. They develop and implement risk management strategies, policies, and procedures to protect against cybersecurity threats, data breaches, and compliance violations. IT Risk Managers also work closely with other departments to ensure security best practices are followed and often lead risk assessments, audits, and incident response planning.

What is the difference between It Risk Manager vs Cybersecurity Analyst?

AspectIt Risk ManagerCybersecurity Analyst
CertificationsCRISC, CISSP, CISMCISSP, Security+, CEH
Work EnvironmentOversees risk management strategies across IT systemsMonitors and responds to security threats and incidents
Industry UsageUsed in organizations with complex IT infrastructuresCommon in security-focused roles across industries

The It Risk Manager focuses on identifying and managing IT risks at an organizational level, ensuring compliance and risk mitigation strategies. In contrast, a Cybersecurity Analyst primarily monitors security threats and responds to incidents. While both roles require similar certifications and work within the IT security domain, the It Risk Manager has a broader scope related to risk management policies, whereas the Cybersecurity Analyst concentrates on threat detection and response.

What are popular job titles related to It Risk Manager jobs in Buffalo, NY? For It Risk Manager jobs in Buffalo, NY, the most frequently searched job titles are:
What job categories do people searching It Risk Manager jobs in Buffalo, NY look for? The top searched job categories for It Risk Manager jobs in Buffalo, NY are:
What cities near Buffalo, NY are hiring for It Risk Manager jobs? Cities near Buffalo, NY with the most It Risk Manager job openings:
Infographic showing various It Risk Manager job openings in Buffalo, NY as of August 2026, with employment types broken down into 86% Full Time, 13% Part Time, and 1% Contract. Highlights an 84% Physical, 3% Hybrid, and 13% Remote job distribution, with an average salary of $108,060 per year, or $52 per hour.

Risk Manager, Emerging Technology Risk

Keybank

Buffalo, NY • On-site

Full-time

Posted 2 days ago

New


KeyBank rating

8.2

Company rating: 8.2 out of 10

Based on 99 frontline employees who took The Breakroom Quiz

51st of 170 rated banks


Job description

Location:

4910 Tiedeman Road, Brooklyn Ohio

Position Location Policy

Hybrid Requirement (if within specific cities): If the selected candidate resides in Cleveland, OH, Buffalo, NY, or Albany, NY, are expected to work on-site 3 days per week at the nearest location.

JOB BRIEF (PURPOSE)

The Risk Manager, Emerging Technology Risk serves as a key member of the first line Risk team within the Commercial Bank, with responsibility for executing and overseeing governance activities related to the Commercial lending portfolio, including Middle Market and Financial Sponsor relationships.

The role is accountable for establishing, managing, and enhancing governance processes that support effective technology risk management, responsible AI adoption, operational resilience, regulatory readiness, and sustained control performance. This includes partnering closely with business, technology, information security, cybersecurity, model risk, operations, and other risk partners to identify, measure, monitor, and manage risks associated with new or modified Commercial Bank digital and technology systems, including AI-enabled capabilities.

The position requires strong ability to assess emerging risks, translate complex technology and AI concepts into clear business risk narratives, challenge control design, identify automation opportunities, and support disciplined innovation within risk appetite. The ideal candidate brings experience operating in a highly regulated environment, with strong governance, risk assessment, project management, communication, and analytical capabilities, as well as practical knowledge of technology risk, AI risk governance, control design, and operational resilience expectations.

ESSENTIAL JOB FUNCTIONS

  • Provide first line oversight of technology, cybersecurity, digital platform, and AI-related risks impacting the Commercial Bank.
  • Lead and facilitate risk assessments for new technology initiatives, system enhancements, and AI use cases to ensure risks are identified and managed within risk appetite.
  • Evaluate control effectiveness and identify opportunities to strengthen and automate controls across Commercial Bank processes, building from ideation to implementation.
  • Monitor technology incidents, system outages, model breakdowns, and operational disruptions; assess impacts and support remediation efforts.
  • Partner with business, technology, information security, cybersecurity, operations, and risk teams to enhance governance, controls, and operational resilience.
  • Assess and challenge AI use cases, including risks related to data protection, model accuracy, fairness, security, regulatory compliance, and responsible use.
  • Develop and maintain governance processes, risk assessments, dashboards, reporting, and executive-level materials related to technology and AI risk.
  • Support technology change management activities by ensuring risks, controls, and regulatory requirements are appropriately addressed during implementations and enhancements.
  • Serve as the first line liaison for regulatory exams, audits, issue management, and independent reviews related to technology, AI, and operational risk.
  • Identify emerging technology and AI risks, recommend mitigation strategies, and drive continuous improvement of risk management, governance, and control frameworks.

REQUIRED QUALIFICATIONS

  • Bachelor's degree required; industry experience preferred
  • Experience in risk management, first line of risk, governance, or risk oversight
  • Working Knowledge of Technology / Artificial Intelligence Risk Governance knowledge
  • Experience working in a highly regulated industry, preferably Banking or Financial Services
  • Knowledge of technology risk, cybersecurity risk, digital platform risk, operational resilience, and control design principles
  • Experience in utilizing technology to implement automated business solutions
  • Experience evaluating control design and effectiveness, including manual versus automated controls and automation opportunities
  • Experience supporting or interacting with regulatory exams, internal audits, or control reviews
  • Advanced proficiency in Excel, Python, and SQL; experience with Salesforce and PowerPoint preferred
  • Strong project management experience with ability to manage multiple initiatives, stakeholders, and competing priorities
  • Strong ability to analyze data, synthesize insights, and develop clear, concise narratives
  • Experience with reporting, analytics, governance, workflow, or GRC platforms.
  • Excellent communication skills, including demonstrated ability to partner effectively, build networks, and influence across functions

PREFERRED QUALIFICATIONS

  • Experience supporting technology, digital, or AI related risk initiatives within a Commercial Bank or Financial Services environment
  • Experience supporting regulatory exams, audits, issue management, or remediation activities
  • Experience with model risk management, model inventory governance, model breakdown assessments, or remediation oversight
  • Professional certifications related to risk, technology, cybersecurity, AI governance, audit, or project management (preferred but not required)

COMPENSATION AND BENEFITS

This position is eligible to earn a base salary in the range of $96,000.00 - $181,000.00 annually. Placement within the pay range may differ based upon various factors, including but not limited to skills, experience and geographic location. Compensation for this role also includes eligibility for incentive compensation which may include production, commission, and/or discretionary incentives.

Please click here for a list of benefits for which this position is eligible.

Key has implemented an approach to employee workspaces which prioritizes in-office presence, while providing flexible options in circumstances where roles can be performed effectively in a mobile environment.

Job Posting Expiration Date: 09/04/2026 KeyCorp is an Equal Opportunity Employer committed to sustaining an inclusive culture. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, age, genetic information, pregnancy, disability, veteran status or any other characteristic protected by law.

Qualified individuals with disabilities or disabled veterans who are unable or limited in their ability to apply on this site may request reasonable accommodations by emailing HR_Compliance@keybank.com.

#LI-Remote

What KeyBank employees say

Pay

Benefits

Hours and flexibility

Workplace

Get the full story on Breakroom


KeyBank logo

About KeyBank

Sourced by ZipRecruiter

Key is one of the nation's largest bank-based financial services companies. Key provides deposit, lending, cash management, insurance, and investment services to individuals and businesses in 15 states under the name KeyBank National Association through a network of more than 1,200 branches and more than 1,500 ATMs. Key also provides a broad range of sophisticated corporate and investment banking products, such as merger and acquisition advice, public and private debt and equity, syndications, and derivatives to middle market companies in selected industries throughout the United States under the KeyBanc Capital Markets trade name.

Industry

Banking and credit intermediation

Company size

10,000+ Employees

Headquarters location

Cleveland, OH, US

Year founded

1849