1

It Risk Manager Jobs in Buffalo, NY (NOW HIRING)

Partner effectively with security, risk, and compliance teams to meet all regulatory obligations ... Information Technology (IT); ability to apply this knowledge appropriately to benefit the ...

Oracle Program Manager

Buffalo, NY ยท On-site

$112K - $112K/yr

The Information Technology (IT) Program Manager is responsible for overseeing all aspects of any ... Conducting risk assessments for projects. * Organizing meetings to discuss project goals and ...

Showing results 41-60

It Risk Manager information

See Buffalo, NY salary details

$49.9K

$108.1K

$164.7K

How much do it risk manager jobs pay per year?

As of Aug 26, 2026, the average yearly pay for it risk manager in Buffalo, NY is $108,060.00, according to ZipRecruiter salary data. Most workers in this role earn between $87,200.00 and $125,000.00 per year, depending on experience, location, and employer.

What does an IT Risk Manager do?

An IT Risk Manager is responsible for identifying, assessing, and mitigating risks that could impact an organization's information technology systems and data. They develop and implement risk management strategies, policies, and procedures to protect against cybersecurity threats, data breaches, and compliance violations. IT Risk Managers also work closely with other departments to ensure security best practices are followed and often lead risk assessments, audits, and incident response planning.

What are some common challenges faced by IT Risk Managers when implementing risk mitigation strategies across different departments?

IT Risk Managers often encounter challenges such as varying levels of risk awareness among departments, resistance to new controls or procedures, and balancing business objectives with security requirements. Successful risk mitigation requires clear communication, stakeholder buy-in, and tailored training to ensure all teams understand the importance of compliance. Building strong relationships and fostering a culture of shared responsibility are key to overcoming these hurdles and ensuring effective risk management across the organization.

What are the key skills and qualifications needed to thrive as an IT Risk Manager, and why are they important?

To thrive as an IT Risk Manager, you need a solid understanding of risk assessment, information security, and compliance frameworks, often backed by a bachelor's degree in information technology or related fields. Familiarity with tools such as risk management software, GRC platforms, and certifications like CISSP, CISM, or CRISC is typically required. Strong analytical thinking, communication skills, and the ability to influence stakeholders are crucial soft skills in this role. These skills ensure effective identification, mitigation, and communication of IT risks, supporting organizational resilience and compliance.

What is the difference between It Risk Manager vs Cybersecurity Analyst?

AspectIt Risk ManagerCybersecurity Analyst
CertificationsCRISC, CISSP, CISMCISSP, Security+, CEH
Work EnvironmentOversees risk management strategies across IT systemsMonitors and responds to security threats and incidents
Industry UsageUsed in organizations with complex IT infrastructuresCommon in security-focused roles across industries

The It Risk Manager focuses on identifying and managing IT risks at an organizational level, ensuring compliance and risk mitigation strategies. In contrast, a Cybersecurity Analyst primarily monitors security threats and responds to incidents. While both roles require similar certifications and work within the IT security domain, the It Risk Manager has a broader scope related to risk management policies, whereas the Cybersecurity Analyst concentrates on threat detection and response.

What are popular job titles related to It Risk Manager jobs in Buffalo, NY?

For It Risk Manager jobs in Buffalo, NY, the most frequently searched job titles are:

What cities near Buffalo, NY are hiring for It Risk Manager jobs?

Cities near Buffalo, NY with the most It Risk Manager job openings:

Infographic showing various It Risk Manager job openings in Buffalo, NY as of August 2026, with employment types broken down into 85% Full Time, 13% Part Time, 1% Contract, and 1% Nights. Highlights an 84% Physical, 2% Hybrid, and 14% Remote job distribution, with an average salary of $108,060 per year, or $52 per hour.

Information Security Officer (Onsite)

Orchard Park, NY โ€ข On-site

$63K/yr

Full-time

Posted 22 days ago


Job description

Department:
Information Technology Services
Salary/Hourly
$63,912.81 Annual
Union/Position Status:
AAECC FT
Posting Closing Date:
August 26, 2026
Applications must be submitted by 11:59 PM the evening before the posting closing date.
Please note that the posting will close at midnight (12:00 AM) on the posting closing date.
JOB DESCRIPTION
PLEASE NOTE THAT THIS POSITION IS FULLY IN-PERSON AND BASED ON CAMPUS.
DISTINGUISHING FEATURES OF THE CLASS:
Under the direction of the Executive Director of Information Technology Services (ITS), the Information Security Officer (ISO) supports the development, implementation, and ongoing coordination of the College's information security and privacy program.
The Information Security Officer (ISO) collaborates with ITS leadership, technical staff, and campus stakeholders to promote a secure, compliant, and resilient technology environment. The ISO supports the alignment of security practices with institutional priorities, regulatory requirements, and risk management principles while providing guidance on information security best practices, contributing to policy development, and advancing campus-wide security awareness, training, and continuous improvement through a collaborative, shared-responsibility approach.
TYPICAL WORK ACTIVITIES:
โ€ข Assists the Executive Director of Information Technology Services in developing, reviewing, and maintaining information security policies, procedures, standards, and guidelines in alignment with best practices and applicable compliance requirements.
โ€ข Supports periodic security risk assessments and helps identify areas of potential exposure, recommending practical mitigation strategies appropriate to institutional resources.
โ€ข Monitors, investigates, and responds to security incidents and alerts-including managed detection and response (MDR) services, Security Information and Event Management (SIEM) systems, endpoint protection, and email security threats-while coordinating incident response,
documentation, communication, and follow-up activities.
โ€ข Supports vulnerability management by reviewing security findings, coordinating remediation efforts, collaborating with ITS teams to maintain secure systems, and providing guidance on security controls, data protection, and the secure use of technology resources.
โ€ข Contributes to the development and delivery of security awareness, education, and training programs for faculty, staff, and students.
โ€ข Assists in preparing documentation and responses to support internal and external audits.
โ€ข Monitors information security and privacy compliance requirements and communicates security updates, emerging threats, and risk information to ITS leadership and campus stakeholders.
KNOWLEDGE, SKILLS AND ABILITIES:
The Information Security Officer supports the College's information security program by applying security best practices, monitoring and responding to security alerts and incidents, assessing risks and vulnerabilities, and coordinating mitigation efforts with ITS staff to maintain a secure and compliant technology environment.
The ISO assists in the development and maintenance of information security policies, standards, and procedures, and contributes to audit preparation and risk management activities. Familiarity with compliance expectations and audit processes is beneficial in supporting institutional requirements.
Effective written and verbal communication skills are essential, along with the ability to work collaboratively with ITS staff and campus stakeholders. The position requires strong organizational skills, the ability to manage multiple priorities, and a commitment to ongoing professional development to stay current with evolving security threats and technologies.
MINIMUM QUALIFICATIONS:
Graduation from a regionally accredited college or university with a Master's degree in Information Security, Cybersecurity, Information Technology, or a closely related field.
Minimum of five (5) years of experience in information security, cybersecurity, or a related information technology field, with demonstrated involvement in areas such as security operations, incident response, vulnerability management, or security monitoring.
Relevant security certifications (e.g., Security+, CISSP, CISM, or similar) are preferred.
SPECIAL REQUIREMENTS:
Official transcripts will be required for successful candidates within 30 days of hire.
Contact Human Resources at (716) 851-1840 with any questions.
Our mission to offer quality education includes exposing our students to a diverse range of cultures, experiences and expertise. At SUNY Erie Community College, we value diversity and encourage applicants from all backgrounds to apply.
Notice of Non-Discrimination
SUNY Erie Community College does not discriminate in admission, employment, or in the administration of any of its policies and programs on the basis of race, color, religion, national origin, age, sex, gender, gender expression, gender identity, pregnancy, disability, sexual orientation, familial status, military status, domestic violence victim status, predisposing genetic characteristics, veteran status, criminal conviction, or any other characteristics protected by law. This applies to all students, applicants or other members of the College community (including, but not limited to, vendors and visitors). Grievance procedures are available to interested persons by contacting the office listed below. Retaliation against a person who files a complaint, serves as a witness, or assists or participates in the investigation of a complaint in any manner is strictly prohibited.
The following individual has been designated to handle inquiries regarding the College's non-discrimination policies:
Civil Rights Compliance Officer
Legal Affairs Office
North Campus
6205 Main Street
Williamsville, NY 14221
legalaffairs@ecc.edu
For further information on notice of non-discrimination, please contact:
New York Office
United States Department of Education
Office for Civil Rights, 32 Old Slip 26th Floor,
New York, N.Y., 10005-25010;
Tel (646) 428-3800; Email: OCR.NewYork@ed.gov.