1

It Risk Manager Jobs in Philadelphia, PA (NOW HIRING)

... IT audit, cybersecurity risk, operational risk, or a related field. * Experience assessing ... Experience with third-party risk management, AI risk, or emerging technology risk. * Relevant ...

Manager, IT Audit

Wilmington, DE · On-site

$105K - $167K/yr

The role designs IT risk assessments and audit programs, oversees engagement execution and quality ... The Manager also supports the Audit, Risk and Compliance Committee reporting and assists the ...

Risk Manager

Media, PA · On-site

$75K - $98K/yr

The Risk Manager ensures compliance with applicable federal, Commonwealth of Pennsylvania, and ... the Information Technology Department. Experience supporting or developing cyber liability ...

IT SOX Senior Auditor

Malvern, PA · On-site

$92K - $121K/yr

Experience testing and evaluating automated business process controls and IT controls within financial services, technology, or risk management environments, including end-to-end process, risk, and ...

Risk Manager

Media, PA · On-site

$75K - $98K/yr

The Risk Manager ensures compliance with applicable federal, Commonwealth of Pennsylvania, and ... the Information Technology Department. * Experience supporting or developing cyber liability ...

next page

Showing results 1-20

It Risk Manager information

See Philadelphia, PA salary details

$52K

$112.6K

$171.5K

How much do it risk manager jobs pay per year?

As of Aug 7, 2026, the average yearly pay for it risk manager in Philadelphia, PA is $112,570.00, according to ZipRecruiter salary data. Most workers in this role earn between $90,800.00 and $130,200.00 per year, depending on experience, location, and employer.

What are some common challenges faced by IT Risk Managers when implementing risk mitigation strategies across different departments?

IT Risk Managers often encounter challenges such as varying levels of risk awareness among departments, resistance to new controls or procedures, and balancing business objectives with security requirements. Successful risk mitigation requires clear communication, stakeholder buy-in, and tailored training to ensure all teams understand the importance of compliance. Building strong relationships and fostering a culture of shared responsibility are key to overcoming these hurdles and ensuring effective risk management across the organization.

What are the key skills and qualifications needed to thrive as an IT Risk Manager, and why are they important?

To thrive as an IT Risk Manager, you need a solid understanding of risk assessment, information security, and compliance frameworks, often backed by a bachelor's degree in information technology or related fields. Familiarity with tools such as risk management software, GRC platforms, and certifications like CISSP, CISM, or CRISC is typically required. Strong analytical thinking, communication skills, and the ability to influence stakeholders are crucial soft skills in this role. These skills ensure effective identification, mitigation, and communication of IT risks, supporting organizational resilience and compliance.

What does an IT Risk Manager do?

An IT Risk Manager is responsible for identifying, assessing, and mitigating risks that could impact an organization's information technology systems and data. They develop and implement risk management strategies, policies, and procedures to protect against cybersecurity threats, data breaches, and compliance violations. IT Risk Managers also work closely with other departments to ensure security best practices are followed and often lead risk assessments, audits, and incident response planning.

What is the difference between It Risk Manager vs Cybersecurity Analyst?

AspectIt Risk ManagerCybersecurity Analyst
CertificationsCRISC, CISSP, CISMCISSP, Security+, CEH
Work EnvironmentOversees risk management strategies across IT systemsMonitors and responds to security threats and incidents
Industry UsageUsed in organizations with complex IT infrastructuresCommon in security-focused roles across industries

The It Risk Manager focuses on identifying and managing IT risks at an organizational level, ensuring compliance and risk mitigation strategies. In contrast, a Cybersecurity Analyst primarily monitors security threats and responds to incidents. While both roles require similar certifications and work within the IT security domain, the It Risk Manager has a broader scope related to risk management policies, whereas the Cybersecurity Analyst concentrates on threat detection and response.

What are popular job titles related to It Risk Manager jobs in Philadelphia, PA? For It Risk Manager jobs in Philadelphia, PA, the most frequently searched job titles are:
What job categories do people searching It Risk Manager jobs in Philadelphia, PA look for? The top searched job categories for It Risk Manager jobs in Philadelphia, PA are:
What cities near Philadelphia, PA are hiring for It Risk Manager jobs? Cities near Philadelphia, PA with the most It Risk Manager job openings:
Infographic showing various It Risk Manager job openings in Philadelphia, PA as of August 2026, with employment types broken down into 86% Full Time, 12% Part Time, and 2% Contract. Highlights an 87% Physical, 2% Hybrid, and 11% Remote job distribution, with an average salary of $112,570 per year, or $54.1 per hour.

IT Security Manager - Third-Party IT Risk Manager

Wolters Kluwer

Philadelphia, PA

Full-time

Medical, Dental, Vision, Retirement, PTO

Posted 2 days ago

New


Wolters Kluwer rating

9.0

Company rating: 9.0 out of 10

Based on 28 frontline employees who took The Breakroom Quiz

33rd of 242 rated software companies


Job description

ThirdParty IT Risk Manager is responsible for leading and modernizing Wolters Kluwer's global thirdparty cyber risk management capability across a highly distributed, marketdriven technology and supplier landscape. This role ensures third-party engagements align with the organization's risk appetite, security standards, and regulatory expectations and lead the execution of a scalable, intelligenceled TPRM program that delivers meaningful and defensible assurance over thirdparty cyber risk-moving beyond traditional, questionnairecentric models.

The role partners closely with Global Supply Chain, Procurement, Legal, and Privacy teams to reduce fragmentation across markets by translating diverse, marketspecific approaches into standardized enterprise agreements, security configurations, and control expectations. A core focus of this position is innovation: designing and implementing differentiated thirdparty assurance approaches that leverage automation, technical validation, and continuous monitoring to provide realtime insight into supplier risk rather than relying solely on static assessments.
Responsibilities:

Program Leadership & Modernization
Lead and evolve Wolters Kluwer's global Third Party Risk Management (TPRM) program and operating model, ensuring it is scalable, risk based, and aligned with enterprise cyber risk governance.
Modernize TPITRM by shifting from a primarily questionnaire driven approach to a data driven program that incorporates technical validation, continuous monitoring, AI, and risk quantification.
Lead, whether functionally or formally - junior team members as a manager level leader across the TPRM function to drive successful outcomes across the entire TPRM unit.

Continuous Monitoring, Automation & Innovation
Implement continuous monitoring capabilities to deliver near real time visibility into third party cyber posture, control performance, and emerging risk indicators.
Design and deploy innovative approaches-including automation and AI assisted techniques-for evidence collection, risk scoring, and exception management.
Continuously assess emerging tools, data sources, and assurance models to improve risk coverage, reduce assessment friction, and enhance signal quality beyond traditional questionnaires.

Contract Review:
Strong skills in the development, review, and analysis of third party contracts to ensure Company requirements, principles, and assets are sufficiently protected in accordance with internal expectations.
Strong business acumen and ability to identify technical and functional requirements that do not align or meet Company needs, suggest enhancements, and have them accepted and implemented by the supplier.

Governance, Reporting & Escalation
Maintain a centralized, enterprise wide inventory of third party relationships, risk tiers, and risk treatment decisions.
Provide clear, concise reporting on third party cyber risk posture, trends, and concentration risk to senior leadership.

Leadership & Collaboration
Build, lead, and develop a high performing team of third party risk professionals and technical reviewers.
Foster a culture of accountability, innovation, and constructive challenge consistent with Wolters Kluwer values and operating principles.
Job Qualifications

Bachelors degree in computer science, information security, management information systems or similar.
12+ years of experience in cybersecurity, technology risk, or information security, including significant ownership of third party or supplier cyber risk management in large, complex enterprises.
5+ years of leadership (direct managerial experience or functional delivery leading teams).
Proven experience designing and leading a global TPRM program across the full third party risk lifecycle.
Demonstrated success modernizing TPRM by implementing risk based approaches that integrate technical validation, automation, and continuous monitoring.
Demonstrated success owning decisions and outcomes at a senior level independently without formal authority.
Strong technical fluency across cloud platforms, APIs, identity, data flows, and integration architectures, with the ability to partner credibly with security architects and technical SMEs.
Experience overseeing advanced technical assessments for high risk or critical third parties, such as architecture reviews, vulnerability assessments, penetration testing, and threat modeling.
Ability to operate effectively in highly distributed, market driven environments.
Demonstrated leadership experience, including building high performing teams and influencing senior stakeholders across Technology, Procurement, Legal, Privacy, and Enterprise Risk Management.
Strong executive communication skills, with experience reporting third party cyber risk posture and trends to senior leadership.
Preferred qualification

Familiarity with systemic, concentration, and fourthparty risk.
Working knowledge of NIST CSF, ISO 27001, GDPR, and CCPA.
Relevant certifications (e.g., CISSP, CISM, CTPRP, CRISC, CISA)
#LI-Hybrid

Our Interview Practices

To maintain a fair and genuine hiring process, we kindly ask that all candidates participate in interviews without the assistance of AI tools or external prompts. Our interview process is designed to assess your individual skills, experiences, and communication style. We value authenticity and want to ensure we're getting to know you-not a digital assistant. To help maintain this integrity, we ask to remove virtual backgrounds and include in-person interviews in our hiring process. Please note that use of AI-generated responses or third-party support during interviews will be grounds for disqualification from the recruitment process.

Applicants may be required to appear onsite at a Wolters Kluwer office as part of the recruitment process.

Compensation:

$118,300.00 - $207,400.00 USDThis role is eligible for Bonus.

Compensation range listed is based on primary location of the position. Actual base salary offer is influenced by a wide array of factors including but not limited to skills, experience and actual hiring location. Your recruiter can share more information about the specific offer for the job location during the hiring process.

Additional Information:

Wolters Kluwer offers a wide variety of competitive benefits and programs to help meet your needs and balance your work and personal life, including but not limited to: Medical, Dental, & Vision Plans, 401(k), FSA/HSA, Commuter Benefits, Tuition Assistance Plan, Vacation and Sick Time, and Paid Parental Leave. Full details of our benefits are available upon request.


What Wolters Kluwer employees say

Pay

Benefits

Hours and flexibility

Workplace

Get the full story on Breakroom