POSITION PURPOSE The Director of IT Governance, Risk and Compliance provides strategic leadership and oversight of the organization's IT risk posture, governance frameworks, and regulatory compliance ...
POSITION PURPOSE The Director of IT Governance, Risk and Compliance provides strategic leadership and oversight of the organization's IT risk posture, governance frameworks, and regulatory compliance ...
POSITION PURPOSE The Director of IT Governance, Risk and Compliance provides strategic leadership and oversight of the organization's IT risk posture, governance frameworks, and regulatory compliance ...
POSITION PURPOSE The Director of IT Governance, Risk and Compliance provides strategic leadership and oversight of the organization's IT risk posture, governance frameworks, and regulatory compliance ...
POSITION PURPOSE The Director of IT Governance, Risk and Compliance provides strategic leadership and oversight of the organization's IT risk posture, governance frameworks, and regulatory compliance ...
POSITION PURPOSE The Director of IT Governance, Risk and Compliance provides strategic leadership and oversight of the organization's IT risk posture, governance frameworks, and regulatory compliance ...
The Senior Manager, IT Regulatory Compliance leads the company's second-line oversight of ... Communicate risk posture, control health, key issues, and program outcomes to the CISO and senior ...
The Senior Manager, IT Regulatory Compliance leads the company's second-line oversight of ... Communicate risk posture, control health, key issues, and program outcomes to the CISO and senior ...
2027 TRC Fall Internship - St. Louis, Kansas City, or Nashville
Nashville, TN · On-site
$14.50 - $19.25/hr
The TRC team's service offerings include SOC 1, SOC 2, PCI, ISO, HIPAA, and many other IT risk and control frameworks. In addition, there are numerous consulting opportunities related to assessing IT ...
2027 TRC Fall Internship - St. Louis, Kansas City, or Nashville
Nashville, TN · On-site
$14.50 - $19.25/hr
The TRC team's service offerings include SOC 1, SOC 2, PCI, ISO, HIPAA, and many other IT risk and control frameworks. In addition, there are numerous consulting opportunities related to assessing IT ...
The Senior Manager, IT Regulatory Compliance leads the company's second-line oversight of ... Communicate risk posture, control health, key issues, and program outcomes to the CISO and senior ...
The Senior Manager, IT Regulatory Compliance leads the company's second-line oversight of ... Communicate risk posture, control health, key issues, and program outcomes to the CISO and senior ...
IT Client Delivery Leader - Remote (North Region)
Brentwood, TN · Remote
$89K - $110K/yr
Risk, Compliance, and Cybersecurity Alignment * Promote adherence to corporate IT standards, cybersecurity controls, HIPAA requirements, audit expectations, and healthcare regulatory obligations.
IT Client Delivery Leader - Remote (North Region)
Brentwood, TN · Remote
$89K - $110K/yr
Risk, Compliance, and Cybersecurity Alignment * Promote adherence to corporate IT standards, cybersecurity controls, HIPAA requirements, audit expectations, and healthcare regulatory obligations.
IT Client Delivery Leader - Remote (North Region)
Brentwood, TN · Remote
$89K - $110K/yr
Risk, Compliance, and Cybersecurity Alignment * Promote adherence to corporate IT standards, cybersecurity controls, HIPAA requirements, audit expectations, and healthcare regulatory obligations.
IT Client Delivery Leader - Remote (North Region)
Brentwood, TN · Remote
$89K - $110K/yr
Risk, Compliance, and Cybersecurity Alignment * Promote adherence to corporate IT standards, cybersecurity controls, HIPAA requirements, audit expectations, and healthcare regulatory obligations.
The Senior Manager, IT Regulatory Compliance leads the company's second-line oversight of ... Communicate risk posture, control health, key issues, and program outcomes to the CISO and senior ...
The Senior Manager, IT Regulatory Compliance leads the company's second-line oversight of ... Communicate risk posture, control health, key issues, and program outcomes to the CISO and senior ...
The Senior Manager, IT Regulatory Compliance leads the company's second-line oversight of ... Communicate risk posture, control health, key issues, and program outcomes to the CISO and senior ...
The Senior Manager, IT Regulatory Compliance leads the company's second-line oversight of ... Communicate risk posture, control health, key issues, and program outcomes to the CISO and senior ...
Americas Technology and Data Risk Leader - Associate Director
Nashville, TN · On-site
$152.70 - $294/hr
Within Information Security we blend risk strategy, digital identity, cyber defense, application security and technology solutions as we consider the entire security lifecycle. You will join a team ...
Americas Technology and Data Risk Leader - Associate Director
Nashville, TN · On-site
$152.70 - $294/hr
Within Information Security we blend risk strategy, digital identity, cyber defense, application security and technology solutions as we consider the entire security lifecycle. You will join a team ...
Director - IT Security Apply now Job no: 503817 Work type: Staff Full-Time Location: Memphis ... The Director will guide security-related decisions, proactively manage risk, and promote a culture ...
Director - IT Security Apply now Job no: 503817 Work type: Staff Full-Time Location: Memphis ... The Director will guide security-related decisions, proactively manage risk, and promote a culture ...
Director - IT Security
Memphis, TN · On-site
Title: Director - IT Security Employee Classification: Other Professionals Institution: Southwest ... The Director will guide security-related decisions, proactively manage risk, and promote a culture ...
Director - IT Security
Memphis, TN · On-site
Title: Director - IT Security Employee Classification: Other Professionals Institution: Southwest ... The Director will guide security-related decisions, proactively manage risk, and promote a culture ...
Director - IT Security
Memphis, TN · On-site
Title: Director - IT Security Employee Classification: Other Professionals Institution: Southwest ... The Director will guide security-related decisions, proactively manage risk, and promote a culture ...
Director - IT Security
Memphis, TN · On-site
Title: Director - IT Security Employee Classification: Other Professionals Institution: Southwest ... The Director will guide security-related decisions, proactively manage risk, and promote a culture ...
Bachelor's degree in information systems, Computer Science, Accounting, Business, Risk Management, or Cybersecurity * 10+ years of experience in technology risk management, information technology ...
Bachelor's degree in information systems, Computer Science, Accounting, Business, Risk Management, or Cybersecurity * 10+ years of experience in technology risk management, information technology ...
Senior IT Compliance Analyst
La Vergne, TN · On-site
$97K - $123K/yr
Provides strategic guidance to leadership on risk, governance, and regulatory adherence. This ... If you are an IT professional who strives to deliver results through collaborative partnerships ...
Senior IT Compliance Analyst
La Vergne, TN · On-site
$97K - $123K/yr
Provides strategic guidance to leadership on risk, governance, and regulatory adherence. This ... If you are an IT professional who strives to deliver results through collaborative partnerships ...
Provides strategic guidance to leadership on risk, governance, and regulatory adherence. This ... Bachelor's degree in Computer Science, Information Technology, Information Security, Business or ...
Quick apply
Provides strategic guidance to leadership on risk, governance, and regulatory adherence. This ... Bachelor's degree in Computer Science, Information Technology, Information Security, Business or ...
Senior IT Compliance Analyst
La Vergne, TN · Hybrid
$97K - $123K/yr
Provides strategic guidance to leadership on risk, governance, and regulatory adherence. This ... If you are an IT professional who strives to deliver results through collaborative partnerships ...
Senior IT Compliance Analyst
La Vergne, TN · Hybrid
$97K - $123K/yr
Provides strategic guidance to leadership on risk, governance, and regulatory adherence. This ... If you are an IT professional who strives to deliver results through collaborative partnerships ...
... risk management, and disaster recovery programs. Maintain adherence to relevant regulations, standards, and best practices. • Lead, mentor, and develop a high-performing IT team, including ...
... risk management, and disaster recovery programs. Maintain adherence to relevant regulations, standards, and best practices. • Lead, mentor, and develop a high-performing IT team, including ...
Develop and enforce IT cybersecurity, compliance, risk management, and disaster recovery programs. Maintain adherence to relevant regulations, standards, and best practices. Lead, mentor, and develop ...
Develop and enforce IT cybersecurity, compliance, risk management, and disaster recovery programs. Maintain adherence to relevant regulations, standards, and best practices. Lead, mentor, and develop ...
It Risk information
See Tennessee salary details
$17.51 is the 25th percentile. Wages below this are outliers.
$13.09 - $18.01
28% of jobs
The median wage is $20.95 / hr.
$18.01 - $22.93
37% of jobs
$22.93 - $27.85
6% of jobs
$30.92 is the 75th percentile. Wages above this are outliers.
$27.85 - $32.77
6% of jobs
$32.77 - $37.69
12% of jobs
$37.69 - $42.60
0% of jobs
$42.60 - $47.52
0% of jobs
$47.52 - $52.44
8% of jobs
$52.44 - $57.36
0% of jobs
$57.36 - $62.28
0% of jobs
$62.28 - $67.20
2% of jobs
$13
$27
$67
How much do it risk jobs pay per hour?
What is IT risk?
What is the difference between It Risk vs Cybersecurity Analyst?
| Aspect | It Risk | Cybersecurity Analyst |
|---|---|---|
| Required Credentials | Certifications like CRISC, CISSP, CISA | Certifications like CompTIA Security+, CISSP, CEH |
| Work Environment | Risk management teams, compliance departments | Security operations centers, IT departments |
| Employer & Industry Usage | Financial, healthcare, and large enterprises | Tech firms, finance, government agencies |
It Risk professionals focus on identifying, assessing, and mitigating risks related to IT systems and compliance. Cybersecurity Analysts primarily monitor and respond to security threats and incidents. While both roles require similar certifications and work in overlapping environments, It Risk emphasizes risk management strategies, whereas Cybersecurity Analysts concentrate on security operations and threat response.
What are the key skills and qualifications needed to thrive as an IT Risk professional, and why are they important?
What are some common challenges faced by IT Risk professionals when working with cross-functional teams?

Other
Posted 8 days ago
Job description
POSITION PURPOSE
The Director of IT Governance, Risk and Compliance provides strategic leadership and oversight of the organization's IT risk posture, governance frameworks, and regulatory compliance within a financial services environment. This role reports to the CIO and ensures alignment between IT risk management practices and the institution's risk appetite, while enabling secure, compliant, and resilient technology operations. The director serves as a key liaison to regulators and internal audit, leads enterprise IT risk programs, and partners closely with information security, legal, compliance, and business units to proactively identify, assess, and mitigate risk across systems, vendors, and emerging technologies.
ESSENTIAL FUNCTIONS AND BASIC DUTIES
1. Define And maintain the IT risk management framework, ensuring alignment with enterprise risk appetite and business strategy.
2. Develop and execute a multi year IT risk maturity road map, including governance, controls, and reporting enhancements.
3. Provide executive level and board reporting on IT risk posture, trends, and emerging threats.
4. Establish and oversee IT governance structures, policies, standards, and procedures.
5. Lead enterprise IT risk assessments, including infrastructure, applications, and security architecture reviews.
6. Identify vulnerabilities, evaluate risk exposure, and ensure timely mitigation of identified issues.
7. Oversee risk acceptance processes and provide escalation authority for material IT and security risks.
8. Review and challenge risk decisions, ensuring consistency with organizational risk tolerance.
9. Serve as primary point of contact for IT regulatory examinations and audits.
10. Manage IT exam life cycle, including preparation, coordination, and response.
11. Oversee tracking, reporting, and remediation of IT findings from regulators and internal/ external audits.
12. Maintain comprehensive documentation of audits, findings, and corrective actions.
13. Interpret and operationalize regulatory requirements related to IT systems, data protection, and information security to include SOX, data privacy laws, and financial regulations.
14. Develop and implement strategies to ensure ongoing compliance with applicable laws and standards.
15. Partner with legal and compliance teams to monitor regulatory changes and assess impact on IT controls.
16. Provide oversight of IT risk associated with third party vendors, including material risk vendor reviews and escalations.
17. Collaborate with vendor management teams to ensure adequate controls and risk mitigation strategies.
18. Assess risks associated with new technologies, products, and services, ensuring appropriate governance and control implementation.
19. Partner closely with information security to align on security controls, risk assessments, and remediation priorities.
20. Work with business and technology stakeholders to embed risk management practices into day-to-day operations.
21. Promote a strong risk-aware culture across the organization.
QUALIFICATIONS
EDUCATION/CERTIFICATION: Bachelor’s degree in Information Technology, Cybersecurity, Risk Management, or a related field. Advanced degree preferred. Relevant certifications preferred (e.g., CISM, CRISC, CISSP, CISA)
REQUIRED KNOWLEDGE: Strong understanding of SOX, data privacy regulations, and technology compliance requirements.
EXPERIENCE REQUIRED: Ten or more (10+) years of progressive experience in IT risk management, IT audit, information security, or governance within financial services or a highly regulated industry.
Deep expertise in IT risk frameworks, such as NIST, COBIT, ISO 27001, and regulatory environments.
Proven experience managing regulatory exams and audit engagements.
SKILLS/ABILITIES:
Ability to communicate effectively with technical and non-technical stakeholders, including senior leadership.
Demonstrated ability to lead complex risk programs and influence senior stakeholders, including executive leadership.
Very strong analytical & problem-solving skills