... of information security-related technologies. including firewalls, IDS, vulnerability management ... regulatory landscape, risk assessment, and risk management principles and techniques.
... of information security-related technologies. including firewalls, IDS, vulnerability management ... regulatory landscape, risk assessment, and risk management principles and techniques.
IT Compliance Analyst
Scottsdale, AZ ยท On-site
$90K - $115K/yr
Strong experience in IT, security, audit, risk, or compliance, with hands-on knowledge of common security frameworks and control environments. * Experience supporting audits, managing evidence ...
Quick apply
IT Compliance Analyst
Scottsdale, AZ ยท On-site
$90K - $115K/yr
Strong experience in IT, security, audit, risk, or compliance, with hands-on knowledge of common security frameworks and control environments. * Experience supporting audits, managing evidence ...
IT Compliance Analyst
Scottsdale, AZ ยท On-site
$90K - $115K/yr
Strong experience in IT, security, audit, risk, or compliance, with hands-on knowledge of common security frameworks and control environments. * Experience supporting audits, managing evidence ...
Quick apply
IT Compliance Analyst
Scottsdale, AZ ยท On-site
$90K - $115K/yr
Strong experience in IT, security, audit, risk, or compliance, with hands-on knowledge of common security frameworks and control environments. * Experience supporting audits, managing evidence ...
The Senior Manager, Enterprise Data & AI Risk & Controls serves as the first-line risk and controls ... Significant experience in Technology Risk, Technology Controls, Operational Risk, Information ...
The Senior Manager, Enterprise Data & AI Risk & Controls serves as the first-line risk and controls ... Significant experience in Technology Risk, Technology Controls, Operational Risk, Information ...
Support the integration of key Information Technology (IT), Information Security (IS), Third Party (TP), and Data Management (DM) data sources to risk monitoring reporting platforms. * Identify and ...
Support the integration of key Information Technology (IT), Information Security (IS), Third Party (TP), and Data Management (DM) data sources to risk monitoring reporting platforms. * Identify and ...
Support the integration of key Information Technology (IT), Information Security (IS), Third Party (TP), and Data Management (DM) data sources to risk monitoring reporting platforms. * Identify and ...
Support the integration of key Information Technology (IT), Information Security (IS), Third Party (TP), and Data Management (DM) data sources to risk monitoring reporting platforms. * Identify and ...
Senior Manager-Enterprise Data & AI Risk & Controls
Phoenix, AZ ยท On-site
$123K - $215K/yr
The Senior Manager, Enterprise Data & AI Risk & Controls serves as the first-line risk and controls ... Significant experience in Technology Risk, Technology Controls, Operational Risk, Information ...
Senior Manager-Enterprise Data & AI Risk & Controls
Phoenix, AZ ยท On-site
$123K - $215K/yr
The Senior Manager, Enterprise Data & AI Risk & Controls serves as the first-line risk and controls ... Significant experience in Technology Risk, Technology Controls, Operational Risk, Information ...
Collaborate with cyber strategists, risk advisors, IT audit professionals, compliance specialists ... Manage the internal sales process, including proposal development, competitive assessments, multi ...
Collaborate with cyber strategists, risk advisors, IT audit professionals, compliance specialists ... Manage the internal sales process, including proposal development, competitive assessments, multi ...
Americas Technology and Data Risk Leader - Associate Director
Phoenix, AZ ยท On-site
$152.70 - $294/hr
Facilitate the smooth implementation of Information Security programs that involve Area, Regional and Member Firm Risk Management stakeholders. * Collaborate with business and technology stakeholders ...
New
Americas Technology and Data Risk Leader - Associate Director
Phoenix, AZ ยท On-site
$152.70 - $294/hr
Facilitate the smooth implementation of Information Security programs that involve Area, Regional and Member Firm Risk Management stakeholders. * Collaborate with business and technology stakeholders ...
New
... technology risk, information security, operational risk, or related disciplines within a ... Strong understanding of risk management practices, control frameworks, and second-line oversight ...
... technology risk, information security, operational risk, or related disciplines within a ... Strong understanding of risk management practices, control frameworks, and second-line oversight ...
IT Manager
$80K/hr
Support cybersecurity, compliance, and risk management efforts aligned with governance policies ... Minimum 5 years progressive experience in IT operations, infrastructure, and team leadership
Quick apply
IT Manager
$80K/hr
Support cybersecurity, compliance, and risk management efforts aligned with governance policies ... Minimum 5 years progressive experience in IT operations, infrastructure, and team leadership
IT Manager
$80K/hr
Support cybersecurity, compliance, and risk management efforts aligned with governance policies ... Minimum 5 years progressive experience in IT operations, infrastructure, and team leadership
IT Manager
$80K/hr
Support cybersecurity, compliance, and risk management efforts aligned with governance policies ... Minimum 5 years progressive experience in IT operations, infrastructure, and team leadership
... in technology risk, information security, operational risk, or related disciplines within a ... Strong understanding of risk management practices, control frameworks, and second-line oversight ...
... in technology risk, information security, operational risk, or related disciplines within a ... Strong understanding of risk management practices, control frameworks, and second-line oversight ...
... management of risk for all assigned GFC IT audit engagements. * Complete the execution of all ... walkthroughs/testing and work paper documentation for assigned GFC IT audit engagements ...
... management of risk for all assigned GFC IT audit engagements. * Complete the execution of all ... walkthroughs/testing and work paper documentation for assigned GFC IT audit engagements ...
Works under general direction of IT Risk and Information Security Director. Responsible for implementing and/or managing security and operational risk processes in one or multiple small to medium ...
Works under general direction of IT Risk and Information Security Director. Responsible for implementing and/or managing security and operational risk processes in one or multiple small to medium ...
Assess, manage and optimize information technology risk across a wide range of areas, IT general controls, financial account and auditing, IT strategy and governance, IT regulatory and compliance ...
Assess, manage and optimize information technology risk across a wide range of areas, IT general controls, financial account and auditing, IT strategy and governance, IT regulatory and compliance ...
Assess, manage and optimize information technology risk across a wide range of areas, IT general controls, financial account and auditing, IT strategy and governance, IT regulatory and compliance ...
Assess, manage and optimize information technology risk across a wide range of areas, IT general controls, financial account and auditing, IT strategy and governance, IT regulatory and compliance ...
Manager, Quality Management
Tempe, AZ ยท On-site +1
Performing risk assessments, information management reviews, and control evaluations for audit technology platforms, including generative artificial intelligence and agentic artificial intelligence ...
Manager, Quality Management
Tempe, AZ ยท On-site +1
Performing risk assessments, information management reviews, and control evaluations for audit technology platforms, including generative artificial intelligence and agentic artificial intelligence ...
Assess, manage and optimize information technology risk across a wide range of areas, including cybersecurity, IT strategy and governance, IT regulatory and compliance requirements, and business ...
Assess, manage and optimize information technology risk across a wide range of areas, including cybersecurity, IT strategy and governance, IT regulatory and compliance requirements, and business ...
Manager, Quality Management
Gilbert, AZ ยท On-site +1
Performing risk assessments, information management reviews, and control evaluations for audit technology platforms, including generative artificial intelligence and agentic artificial intelligence ...
Manager, Quality Management
Gilbert, AZ ยท On-site +1
Performing risk assessments, information management reviews, and control evaluations for audit technology platforms, including generative artificial intelligence and agentic artificial intelligence ...
It Risk Manager information
See Phoenix, AZ salary details
$51.1K - $61.7K
4% of jobs
$61.7K - $72.4K
6% of jobs
$72.4K - $83.1K
11% of jobs
$87.1K is the 25th percentile. Wages below this are outliers.
$83.1K - $93.8K
11% of jobs
The median wage is $102.3K / yr.
$93.8K - $104.5K
23% of jobs
$104.5K - $115.1K
13% of jobs
$122.2K is the 75th percentile. Wages above this are outliers.
$115.1K - $125.8K
12% of jobs
$125.8K - $136.5K
8% of jobs
$136.5K - $147.2K
6% of jobs
$147.2K - $157.9K
4% of jobs
$157.9K - $168.5K
2% of jobs
$51.1K
$110.6K
$168.5K
How much do it risk manager jobs pay per year?
What are some common challenges faced by IT Risk Managers when implementing risk mitigation strategies across different departments?
What are the key skills and qualifications needed to thrive as an IT Risk Manager, and why are they important?
What is the highest salary for a risk manager?
What does an IT Risk Manager do?
Is risk a good career?
What is the difference between It Risk Manager vs Cybersecurity Analyst?
| Aspect | It Risk Manager | Cybersecurity Analyst |
|---|---|---|
| Certifications | CRISC, CISSP, CISM | CISSP, Security+, CEH |
| Work Environment | Oversees risk management strategies across IT systems | Monitors and responds to security threats and incidents |
| Industry Usage | Used in organizations with complex IT infrastructures | Common in security-focused roles across industries |
The It Risk Manager focuses on identifying and managing IT risks at an organizational level, ensuring compliance and risk mitigation strategies. In contrast, a Cybersecurity Analyst primarily monitors security threats and responds to incidents. While both roles require similar certifications and work within the IT security domain, the It Risk Manager has a broader scope related to risk management policies, whereas the Cybersecurity Analyst concentrates on threat detection and response.
How much does a risk manager get paid?
What is the role of IT risk manager?

Full-time
Medical, Dental, Vision, Retirement, PTO
Posted 11 days ago
Job description
At Early Warning, we've powered and protected the U.S. financial system for over thirty years with cutting-edge solutions like Zelle, Paze, and so much more. As a trusted name in payments, we partner with thousands of institutions to increase access to financial services and protect transactions for hundreds of millions of consumers and small businesses.
Positions located in Scottsdale, San Francisco, Chicago, or New York follow a hybrid work model to allow for a more collaborative working environment.
Candidates responding to this posting must independently possess the eligibility to work in the United States, for any employer, at the date of hire. This position is ineligible for employment Visa sponsorship.
Overall Purpose:
Lead Artificial Intelligence Technology Risk 2LOD oversight and Challenge, with core accountability for AI Technology across EWS. This role operates under the Vice President of Technology Risk, and have responsibility for independent oversight, challenge, and governance of AI Technology Risk.
The role is responsible for ensuring that AI Systems used across the organizations are governed consistently, responsibly, and in alignment with Technology policies and control expectations. This includes working closely with member teams to assess, approve, monitor, and continuously improve AI usage.
This position supports the enterprise-wide Information Security program as a trusted technical advisor by empowering team members to make risk-aware decisions in accordance with Early Warning's compliance, regulatory and departmental policy and procedures. Provides the primary measure of confidence that the security features, practices, procedures, and architecture of the security program accurately mediate and enforce the security policy.
Essential Functions:
Provide oversight of AI risk assessments and governance decisions
Identify, assess, and monitor IT and AI risks.
Review and challenge LLM usage and infrastructure
Ensure AI Systems continue to meet internal and external regulatory expectation
Support development and maintenance of IT AI policies
Assess emerging AI technology prior to adoption
Provide advisory on AI technology Risk and adoption
Support challenging of KPI's and KRI's for IT and AI governance
Exercise judgment in risk classification ambiguity and escalation decisions
Ensure appropriate risk governance Customer-facing or internal facing AI use cases
Create and manage the operating model for identifying and resolving security risks and posture drift.
Lead initiatives and strategies in support of the Security Posture Management program.
Own ensuring that business goals and risks are adequately addressed; collaborate and consult with enterprise cross-functional teams to maintain continuous awareness of the enterprise's Security Posture and identify improvement opportunities.
Establish effective working relationships across the enterprise to foster a strong risk culture by supporting stakeholders in owning and managing their risks and controls.
Ensure controls are successfully designed and implemented to meet Compliance requirements and business objectives. Manage relationships cross-functionally to integrate alignment with organizational strategies while addressing risk management needs.
Review new processes from a control's perspective. Consult with process owners to design and implement new controls.
Improve risk and control environment by providing subject matter technical expertise on enhancing the design and effectiveness of Security's control program while aligning with compliance and technical needs.
Develop, execute, and present the risk reporting framework ensure risk mitigation activities are performed timely. Select appropriate metrics (KRI/KPI's) to monitor adequacy and effectiveness of the control environment. Monitor remediation efforts to closure, including review of supporting evidence.
Develop and enhance documentation and reporting standards to support oversight of the enterprise's Security Posture and ensure consistent execution and coverage across the enterprise supported through a stakeholder-approved policy-driven governance program.
Supports the company's commitment to risk management and protecting the integrity and confidentiality of systems and data.
Minimum Qualifications:
Experience operating in regulated environments
Experience leveraged Technology such as Bedrock or others for compute of AI solutions
Understanding of AI Systems governance and technology risk
Education and experience typically obtained through completion of a bachelor's degree in computer science, Information Technology, Cyber Security, or related field.
Typically 15 or more years of progressive related information technology or information security work experience with various types of information security-related technologies. including firewalls, IDS, vulnerability management, anti-virus, data loss prevention, two factor authentication, and VPN.
3 or more years of experience with the security, regulatory, and privacy controls environment, and security governance, regulatory landscape, risk assessment, and risk management principles and techniques.
Demonstrated advanced level experience with network security design and protection, application development, application security issues, operating system security, hardening standards and protection mechanisms.
Strong technical knowledge in the area of security tools, application security design and architecture; secure network design and architecture, server security, and workstation security.
Ability to articulate the practical and technical application of the following standards: (ISO, PCI and NIST/FISMA)
Strong understanding and experience with Information technology systems and processes, network infrastructure, data architecture, data processes, protocols, and auditing and monitoring processes.
Strong understanding and experience with Cyber and cloud security standard frameworks, architecture, design, operations, controls, technology, solutions, and service orchestration.
Experience evaluating process and configurations for compliance with policies and regulations.
Respected subject matter expert with high level of integrity, effective interpersonal and communication skills, and executive presence.
Strong experience developing and tracking information security related KPIs and KRIs.
Background and drug screen.
The above job description is not intended to be an all-inclusive list of duties and standards of the position. Incumbents will follow instructions and perform other related duties as assigned by their supervisor.
Preferred Qualifications:
Expertise in ISO 27002, PCI DSS 3.2 or current, NIST 800-53a, SIG, FFIEC handbooks, SOC2 Type II, GLBA, FCRA, NYDFS, data privacy.
Certification in one of CISA, CISM, CISSP, CCSP, CRISC, GSNA, CGIH, or equivalent
Project or Process management experience.
Working conditions consist of a normal office environment. Work is primarily sedentary and requires extensive use of a computer and involves sitting for periods of approximately four hours. Work may require occasional standing, walking, kneeling, and reaching. Must be able to lift 10 pounds occasionally and/or negligible amount of force frequently. Requires visual acuity and dexterity to view, prepare, and manipulate documents and office equipment including personal computers. Requires the ability to communicate with internal and/or external customers.
Employee must be able to perform essential functions and physical requirements of position with or without reasonable accommodation.
The base pay scale for this position in:
Phoenix, AZ/ Chicago, IL / Washington, DC in USD per hour is: $184,000 - $230,000.
New York, NY/ San Francisco, CA in USD per hour is: $221,000 - $276,000.
Additionally, candidates are eligible for a discretionary incentive plan and benefits.
This pay scale is subject to change and is not necessarily reflective of actual compensation that may be earned, nor a promise of any specific pay for any specific candidate, which is always dependent on legitimate factors considered at the time of job offer. Early Warning Services takes into consideration a variety of factors when determining a competitive salary offer, including, but not limited to, the job scope, market rates and geographic location of a position, candidate's education, experience, training, and specialized skills or certification(s) in relation to the job requirements and compared with internal equity (peers). The business actively supports and reviews wage equity to ensure that pay decisions are not based on gender, race, national origin, or any other protected classes.
Some of the Ways We Prioritize Your Health and Happiness
Healthcare Coverage-Competitive medical (PPO/HDHP), dental, and vision plans as well as company contributions to your Health Savings Account (HSA) or pre-tax savings through flexible spending accounts (FSA) for commuting, health & dependent care expenses.
401(k) Retirement Plan-Featuring a 100% Company Safe Harbor Match on your first 6% deferral immediately upon eligibility.
Paid Time Off -Flexible Time Off for Exempt (salaried) employees, as well as generous PTO for Non-Exempt (hourly) employees, plus 11 paid company holidays and a paid volunteer day.
12 weeks of Paid Parental Leave
Maven Family Planning - provides support through your Parenting journey including egg freezing, fertility, adoption, surrogacy, pregnancy, postpartum, early pediatrics, and returning to work.
AndSOmuch more! We continue to enhance our program, so be sure tocheck our Benefits page herefor the latest. Ourteamcan share more during the interview process!
Pursuant to the San Francisco Fair Chance Ordinance, we will consider for employment qualified applicants with arrest and conviction records.
Early Warning Services, LLC ("Early Warning") considers for employment, hires, retains and promotes qualified candidates on the basis of ability, potential, and valid qualifications without regard to race, religious creed, religion, color, sex, sexual orientation, genetic information, gender, gender identity, gender expression, age, national origin, ancestry, citizenship, protected veteran or disability status or any factor prohibited by law, and as such affirms in policy and practice to support and promote equal employment opportunity and affirmative action, in accordance with all applicable federal, state, and municipal laws. The company also prohibits discrimination on other bases such as medical condition, marital status or any other factor that is irrelevant to the performance of our employees.
About Early Warning
Sourced by ZipRecruiter
Industry
Finance and insurance
Company size
201 - 500 Employees
Headquarters location
Scottsdale, AZ, US
Year founded
1990