1

It Risk Manager Jobs in Phoenix, AZ (NOW HIRING)

IT Manager

Phoenix, AZ · On-site

$65K - $90K/yr

IT Manager Job No: 541561 Work Type: Full-time Location: PHOENIX Categories: Forestry/Wildland Fire ... Manages AZDOHS Cyber Risk metrics (85% target) and the Standards Exception Process. Ensures agency ...

IT Manager

Phoenix, AZ · On-site

$65K - $90K/yr

IT Manager Apply now Job No: 541561 Work Type: Full-time Location: PHOENIX Categories: Forestry ... Manages AZDOHS Cyber Risk metrics (85% target) and the Standards Exception Process. Ensures agency ...

Project Manager - Healthcare IT

Phoenix, AZ · On-site +1

$95K - $113K/yr

Lead end-to-end project management for healthcare IT initiatives, ensuring alignment with ... Risk management and quality assurance * Budget management and financial acumen * Change management ...

IT Director

Chandler, AZ

$160K - $180K/yr

IT Director Location: Chandler, AZ Work Arrangement: On-site Compensation: $160,000 - $180,000 base ... Establish, strengthen, and manage cybersecurity, risk management, controls, and related IT ...

The IT Director will establish operational standards, processes, and governance that improve ... Lead cybersecurity initiatives, including risk management, vulnerability management, incident ...

IT Project Manager

Phoenix, AZ · Remote

$120K - $130K/yr

... Risk, Issue & Vendor Management * Proactively identify delivery risks and escalate early with ... Bachelor's degree in Information Technology, Business Administration, Computer Science, or a ...

IT Project Manager

Phoenix, AZ · On-site

$97K - $115K/yr

The IT Project Manager plays a critical role in driving the successful delivery of both Enterprise ... Manage multiple concurrent projects of varying size, complexity, and risk across the portfolio.

IT Project Manager

Phoenix, AZ · On-site

$89K - $106K/yr

The IT Project Manager plays a critical role in driving the successful delivery of both Enterprise ... Manage multiple concurrent projects of varying size, complexity, and risk across the portfolio.

IT Project Manager

Phoenix, AZ · On-site

$89K - $106K/yr

The IT Project Manager plays a critical role in driving the successful delivery of both Enterprise ... Manage multiple concurrent projects of varying size, complexity, and risk across the portfolio.

Showing results 41-60

It Risk Manager information

See Phoenix, AZ salary details

$51.1K

$110.8K

$168.8K

How much do it risk manager jobs pay per year?

As of Aug 12, 2026, the average yearly pay for it risk manager in Phoenix, AZ is $110,765.00, according to ZipRecruiter salary data. Most workers in this role earn between $89,400.00 and $128,100.00 per year, depending on experience, location, and employer.

What are some common challenges faced by IT Risk Managers when implementing risk mitigation strategies across different departments?

IT Risk Managers often encounter challenges such as varying levels of risk awareness among departments, resistance to new controls or procedures, and balancing business objectives with security requirements. Successful risk mitigation requires clear communication, stakeholder buy-in, and tailored training to ensure all teams understand the importance of compliance. Building strong relationships and fostering a culture of shared responsibility are key to overcoming these hurdles and ensuring effective risk management across the organization.

What are the key skills and qualifications needed to thrive as an IT Risk Manager, and why are they important?

To thrive as an IT Risk Manager, you need a solid understanding of risk assessment, information security, and compliance frameworks, often backed by a bachelor's degree in information technology or related fields. Familiarity with tools such as risk management software, GRC platforms, and certifications like CISSP, CISM, or CRISC is typically required. Strong analytical thinking, communication skills, and the ability to influence stakeholders are crucial soft skills in this role. These skills ensure effective identification, mitigation, and communication of IT risks, supporting organizational resilience and compliance.

What does an IT Risk Manager do?

An IT Risk Manager is responsible for identifying, assessing, and mitigating risks that could impact an organization's information technology systems and data. They develop and implement risk management strategies, policies, and procedures to protect against cybersecurity threats, data breaches, and compliance violations. IT Risk Managers also work closely with other departments to ensure security best practices are followed and often lead risk assessments, audits, and incident response planning.

What is the difference between It Risk Manager vs Cybersecurity Analyst?

AspectIt Risk ManagerCybersecurity Analyst
CertificationsCRISC, CISSP, CISMCISSP, Security+, CEH
Work EnvironmentOversees risk management strategies across IT systemsMonitors and responds to security threats and incidents
Industry UsageUsed in organizations with complex IT infrastructuresCommon in security-focused roles across industries

The It Risk Manager focuses on identifying and managing IT risks at an organizational level, ensuring compliance and risk mitigation strategies. In contrast, a Cybersecurity Analyst primarily monitors security threats and responds to incidents. While both roles require similar certifications and work within the IT security domain, the It Risk Manager has a broader scope related to risk management policies, whereas the Cybersecurity Analyst concentrates on threat detection and response.

What are popular job titles related to It Risk Manager jobs in Phoenix, AZ? For It Risk Manager jobs in Phoenix, AZ, the most frequently searched job titles are:
What job categories do people searching It Risk Manager jobs in Phoenix, AZ look for? The top searched job categories for It Risk Manager jobs in Phoenix, AZ are:
What cities near Phoenix, AZ are hiring for It Risk Manager jobs? Cities near Phoenix, AZ with the most It Risk Manager job openings:
Infographic showing various It Risk Manager job openings in Phoenix, AZ as of August 2026, with employment types broken down into 86% Full Time, 12% Part Time, and 2% Contract. Highlights an 87% Physical, 2% Hybrid, and 11% Remote job distribution, with an average salary of $110,765 per year, or $53.3 per hour.

Principal Engineer I, Cyber - IT Security Governance

Western Alliance Bancorporation

Phoenix, AZ • On-site

Full-time

Medical, Dental, Retirement

Re-posted 12 days ago


Job description

Job Title:
Principal Engineer I, Cyber - IT Security Governance
Location:
CityScape
What you'll do:
As a Principal IT Security Governance Engineer, you will serve as a senior individual contributor responsible for leading and advancing the organization's cybersecurity governance, risk management, and maturity initiatives. This role combines deep expertise in cyber risk, control design, CRI Profile maturity, and policy management with a strong understanding of modern engineering practices, data, automation, and AI-driven capabilities.
You will drive complex, cross-functional initiatives that embed secure, compliant, and scalable practices into technology, data, and AI solutions, ensuring alignment with enterprise risk management objectives and regulatory expectations. This includes designing and implementing governance frameworks, control structures, and engineering-enabled solutions that enhance the effectiveness, consistency, and automation of risk assessments, RCSAs, and control monitoring.
In this role, you will act as both a governance and technical authority, partnering closely with engineering, data, and risk teams to translate evolving technologies into defensible, regulator-ready processes, controls, and documentation. You will leverage data, automation, and AI to improve visibility into risk posture, drive operational efficiency, and enable sustained improvements in cybersecurity maturity and program scalability.
  • Own and lead cybersecurity governance initiatives spanning risk identification, control design, policy management, and maturity improvement.
  • Serve as a subject-matter expert for cyber risk management, providing guidance on control effectiveness, risk treatment, and residual risk decisions.
  • Drive execution of cybersecurity Risk & Control Self-Assessments (RCSAs), ensuring alignment to ERM standards and regulatory expectations.
  • Own and manage CRI Profile assessments, maturity scoring, evidence standards, and remediation tracking. Partner with technology, security, and risk teams to drive improved and sustained maturity gains.
  • Maintain traceability between risks, controls, assessment results, and remediation activities.
  • Lead the development, maintenance, and rationalization of cybersecurity policies, standards, and procedures in alignment with industry best practices (e.g., GLBA, FFIEC, NIST).
  • Design, document, and maintain cyber risk statements, control descriptions, and control narratives suitable for audits and regulatory exams.
  • Support internal audits, regulatory exams, and second line credible challenge through structured responses, evidence packaging, and issue management.
  • Track and report on control performance, risk posture, and remediation progress using defined metrics and governance forums.
  • Manage complex projects requiring coordination across IT, Information Security, ERM, Privacy, and Audit.
  • Act as a trusted advisor to senior leaders on risk posture, maturity trends, and program health.
  • Produce clear, executive-ready artifacts including risk summaries, maturity dashboards, remediation roadmaps, and briefing materials.
  • Develop and maintain automation solutions (e.g., scripting, workflow tools, AI-assisted processes) to improve efficiency of risk assessments, control testing, and evidence collection.
  • Enable data-driven insights and reporting through engineering-oriented solutions (e.g., dashboards, metrics automation, control monitoring).
  • Drive integration of AI and automation into RCSA, CRI assessments, and risk reporting processes to improve scalability, consistency, and accuracy.

What you'll need:
  • 8+ years of related experience in Cybersecurity, Information Security Governance, IT Risk, or Enterprise Risk Management.
  • Bachelor's degree in Information Systems, Computer Science, Cybersecurity, Risk Management, or a related field. Masters or MBA in related field preferred.
  • Advanced to expert experience with:
    • Cyber Risk Management frameworks (NIST CSF, CRI Profile, FFIEC, ISO 27001 principles).
    • RCSAs, risk identification, control design, and residual risk assessment.
    • Policy, standard, and procedure lifecycle management.
    • Regulatory and audit engagement support in a financial services environment.
  • Strong ability to translate complex technical and regulatory concepts into clear, defensible documentation.
  • Proven experience managing cross functional initiatives with competing priorities.
  • Expert speaking and writing communication skills.
  • Demonstrated experience leveraging or governing AI/ML, automation, or advanced analytics within cybersecurity, risk, or compliance domains preferred.
  • Strong understanding of data architectures, data flows, and system integrations, with the ability to assess associated cyber and privacy risks preferred.
  • Familiarity with emerging regulatory expectations related to AI, model risk, and data usage in financial services preferred.
  • Working knowledge of software engineering or scripting practices (e.g., Python, PowerShell, automation workflows) to support scalable governance solutions preferred.
  • Strong analytical mindset with the ability to use data and automation to enhance risk identification, monitoring, and reporting preferred.
  • Relevant industry certifications (e.g., CISA, CRISC, CISSP, CISM, CGEIT, ITIL) preferred.

Benefits you'll love:
We offer all the important things you'd want - like competitive salaries, an ownership stake in the company, medical and dental insurance, time off, a great 401k matching program, tuition assistance program, an employee volunteer program, and a wellness program. In addition, you'll have the opportunity to bolster your business knowledge, learning the ins and outs of how successful companies operate and manage their finances, giving you invaluable hands-on experience to help grow your career!
About the company:
Western Alliance Bank, Member FDIC, is a wholly owned subsidiary of Western Alliance Bancorporation. Serving clients nationwide, Western Alliance Bank includes six legacy bank brands - Alliance Association Bank, Alliance Bank of Arizona, Bank of Nevada, Bridge Bank, First Independent Bank and Torrey Pines Bank - that remain part of the company's heritage, as well as AmeriHome Mortgage, a Western Alliance Bank Company.
Western Alliance Bancorporation is committed to equal employment and will consider all qualified applicants without regard to race, sex, color, religion, age, nation origin, marital status, disability, protected veteran status, sexual orientation, gender identity or genetic information. Western Alliance Bancorporation is committed to working with and providing reasonable accommodations for individuals with disabilities. If you are an individual with a disability and require a reasonable accommodation to complete any part of the application process and/or need an alternative method of applying, please email HR@westernalliancebank.com or call 602-386-2488. When contacting us, please provide your contact information and state the nature of your accessibility issue. We will only respond to inquiries concerning requests that involve a reasonable accommodation in the application process.
© Western Alliance Bancorporation