1

It Risk Manager Jobs in Buffalo, NY (NOW HIRING)

IT Compliance Manager

East Aurora, NY · Hybrid

$122K - $147K/yr

Shape the Future of Aerospace Innovation at Astronics The IT Compliance Manager ensures IT systems, processes, and controls comply with SOX requirements, CMMC, applicable laws, industry standards ...

IT Project Manager

Buffalo, NY · On-site

$95K - $112K/yr

IT Project Manager Location: Larkin Bldg @ Exchange Street Location of Job : US:NY:Buffalo Work ... Responsible for directing multiple complex, risk-assessed projects. Education And Credentials HS ...

IT Project Manager

Buffalo, NY · On-site

$95K - $112K/yr

They are seeking an IT Project Manager responsible for coordinating resources, managing ... risk-assessed projects. Qualifications : Required : • HS - High School Diploma or GED required ...

Our cutting-edge technology and innovative financial products empower businesses with more control ... Collaborate with the portfolio risk team to track credit performance and take action to manage the ...

Drive the design and delivery of technology projects, automation solutions, Proofs of Concept and ... Credit Risk management and/or audit, regulatory or QA experience; strong understanding of risk ...

Sr. Cybersecurity Operational Risk Officer

Amherst, NY · On-site

$92K - $118K/yr

... technology and information security risk oversight for areas of the enterprise that manage technology, data and AI/ML systems. As part of this oversight role, experience with cybersecurity domains ...

Responsible for delivering client services support by managing, coaching, evaluating and developing ... Evaluates site needs and impacts for any proposed changes and raises risk awareness for proposed IT ...

Showing results 21-40

It Risk Manager information

See Buffalo, NY salary details

$49.9K

$108.1K

$164.7K

How much do it risk manager jobs pay per year?

As of Aug 10, 2026, the average yearly pay for it risk manager in Buffalo, NY is $108,060.00, according to ZipRecruiter salary data. Most workers in this role earn between $87,200.00 and $125,000.00 per year, depending on experience, location, and employer.

What are some common challenges faced by IT Risk Managers when implementing risk mitigation strategies across different departments?

IT Risk Managers often encounter challenges such as varying levels of risk awareness among departments, resistance to new controls or procedures, and balancing business objectives with security requirements. Successful risk mitigation requires clear communication, stakeholder buy-in, and tailored training to ensure all teams understand the importance of compliance. Building strong relationships and fostering a culture of shared responsibility are key to overcoming these hurdles and ensuring effective risk management across the organization.

What are the key skills and qualifications needed to thrive as an IT Risk Manager, and why are they important?

To thrive as an IT Risk Manager, you need a solid understanding of risk assessment, information security, and compliance frameworks, often backed by a bachelor's degree in information technology or related fields. Familiarity with tools such as risk management software, GRC platforms, and certifications like CISSP, CISM, or CRISC is typically required. Strong analytical thinking, communication skills, and the ability to influence stakeholders are crucial soft skills in this role. These skills ensure effective identification, mitigation, and communication of IT risks, supporting organizational resilience and compliance.

What does an IT Risk Manager do?

An IT Risk Manager is responsible for identifying, assessing, and mitigating risks that could impact an organization's information technology systems and data. They develop and implement risk management strategies, policies, and procedures to protect against cybersecurity threats, data breaches, and compliance violations. IT Risk Managers also work closely with other departments to ensure security best practices are followed and often lead risk assessments, audits, and incident response planning.

What is the difference between It Risk Manager vs Cybersecurity Analyst?

AspectIt Risk ManagerCybersecurity Analyst
CertificationsCRISC, CISSP, CISMCISSP, Security+, CEH
Work EnvironmentOversees risk management strategies across IT systemsMonitors and responds to security threats and incidents
Industry UsageUsed in organizations with complex IT infrastructuresCommon in security-focused roles across industries

The It Risk Manager focuses on identifying and managing IT risks at an organizational level, ensuring compliance and risk mitigation strategies. In contrast, a Cybersecurity Analyst primarily monitors security threats and responds to incidents. While both roles require similar certifications and work within the IT security domain, the It Risk Manager has a broader scope related to risk management policies, whereas the Cybersecurity Analyst concentrates on threat detection and response.

What are popular job titles related to It Risk Manager jobs in Buffalo, NY? For It Risk Manager jobs in Buffalo, NY, the most frequently searched job titles are:
What job categories do people searching It Risk Manager jobs in Buffalo, NY look for? The top searched job categories for It Risk Manager jobs in Buffalo, NY are:
What cities near Buffalo, NY are hiring for It Risk Manager jobs? Cities near Buffalo, NY with the most It Risk Manager job openings:
Infographic showing various It Risk Manager job openings in Buffalo, NY as of August 2026, with employment types broken down into 86% Full Time, 13% Part Time, and 1% Contract. Highlights an 84% Physical, 3% Hybrid, and 13% Remote job distribution, with an average salary of $108,060 per year, or $52 per hour.

IT Compliance Manager

Astronics

East Aurora, NY • Hybrid

$122K - $147K/yr

Full-time

Medical, Dental, Vision, Life, Retirement, PTO

Posted 19 days ago


Astronics rating

8.1

Company rating: 8.1 out of 10

Based on 17 frontline employees who took The Breakroom Quiz

49th of 156 rated electronics manufacturers


Job description

Shape the Future of Aerospace Innovation at Astronics

The IT Compliance Manager ensures IT systems, processes, and controls comply with SOX requirements, CMMC, applicable laws, industry standards, and company policies across the global Astronics organization. This role leads IT SOX audit activities and CMMC readiness efforts, working closely with internal audit, external auditors, control owners, and business stakeholders to identify compliance risks, implement controls, and drive remediation.

In addition to a collaborative culture at a long-standing organization committed to continued growth, Astronics offers:

  • Competitive base salary with quarterly bonus opportunities
  • Hybrid role, work two days onsite in our East Aurora, NY office
  • 9/80 schedule with every other Friday off
  • 401(k) with company contribution and discounted Employee Stock Purchase Plan
  • Comprehensive health, dental, vision, and life benefits
  • Week-long Christmas shutdown and paid holidays

What You’ll Do

  • Own the IT SOX compliance program, including ITGC scoping, control design, testing coordination, and remediation tracking across all in-scope systems and processes
  • Act as primary point of contact for coordination of IT SOX audit activities with internal and external auditors, managing evidence requests, and facilitating walkthroughs and interim ITGC change testing
  • Manage CMMC readiness efforts including POAM remediation, scoping, evidence gathering, and C3PAO coordination
  • Develop, implement, and maintain comprehensive IT compliance programs to ensure adherence to relevant regulations, laws, and industry standards including SOX and CMMC/DFARS
  • Lead a team of IT compliance analysts, supporting their independent ownership of individual control areas; providing mentorship through ongoing professional development
  • Manage user access review (UAR) cycles, including scheduling, evidence coordination, remediation tracking, and follow-up with control owners on high-priority items
  • Monitor IT change activity through tools such as Tripwire, coordinating scope decisions and managing reconciliation queues
  • Draft and route IT policies and procedures for approval, engaging key stakeholders as needed
  • Create IT compliance training programs, monitor delivery and ensure employee completion
  • Review and approve exception and control reviews, ensuring remediation plans adequately mitigate identified risks
  • Serve as subject matter expert on IT compliance matters, fielding questions from stakeholders and routing inquiries to appropriate compliance analysts based on expertise
  • Coordinate with the Director of IT, Internal Audit, Finance, and other departments to ensure effective communication on IT compliance initiatives, including project charter reviews and new system implementations
  • Proactively track IT compliance trends and anticipated regulatory modifications to support organizational compliance

What You’ll Bring

  • 5+ years of experience leading IT audit or compliance functions, with significant hands-on SOX ITGC experience
  • Expertise in managing IT SOX audits end-to-end, including coordination with external auditors
  • Deep familiarity with ITGC domains: access management, change management, computer operations, and logical security
  • Exposure to CMMC, DFARS, or NIST 800-171 compliance programs
  • Strong interpersonal, analytical, and written communication skills; ability to translate complex compliance and technical requirements for finance, operations, and executive audiences
  • Detail-oriented with the ability to manage competing priorities and tight audit deadlines

What Makes You Stand Out

  • CPA, CISA, CISSP, or equivalent certification
  • Experience with IT compliance frameworks such as COBIT or NIST
  • Experience with GRC tools (e.g., CrossComply) for control tracking and audit evidence management
  • Experience with formal assessment preparation
  • Familiarity with change monitoring tools and compliance training platforms
  • Knowledge of additional regulatory requirements relevant to aerospace and defense (e.g., ITAR, GDPR)

Why You’ll Enjoy Working Here:

  • Base salary: $122,000 to $147,000 annually, influenced by several factors including experience, skill set, education, certifications, market conditions, and business needs
  • Generous Time Off: Starting with 120 hours of paid time off annually, plus 12 paid holidays per year
  • Competitive rewards: Benefits start the first of the month after hire, quarterly bonus tied to company profitability, 401(k) with 3% company contribution, Employee Stock Purchase Plan, paid holidays (including a full Christmas week shutdown), and comprehensive health/vision/dental coverage
  • Professional growth: Continuing education support, certifications, and exposure to data governance on a global scale
  • A culture that values balance: Work with a high-performing, motivated team that also promotes positivity and collaboration

This position may involve access to items subject to U.S. export-control laws. Employment is contingent upon the employee’s authorization to access such items under applicable law. The company does not guarantee and is under no obligation to seek such authorization if it would be necessary.


What Astronics employees say

Pay

Benefits

Hours and flexibility

Workplace

Get the full story on Breakroom