1

Manager Enterprise Risk Management Jobs in Utah (NOW HIRING)

GRC Security Manager

West Valley City, UT · On-site

$150K - $165K/yr

Familiarity with vendor risk management practices, including security reviews for third parties and contract-related control considerations. * Understanding of enterprise security concepts such as ...

Showing results 41-60

Manager Enterprise Risk Management information

What does a manager enterprise risk management do?

A Manager of Enterprise Risk Management is responsible for identifying, assessing, and mitigating risks that could affect a company's operations, reputation, or financial performance. They develop risk management strategies, policies, and processes to ensure that potential threats are properly managed and controlled. Their work often involves collaborating with other departments to promote a risk-aware culture and ensure regulatory compliance. Additionally, they may oversee risk assessments, prepare reports for senior leadership, and implement risk mitigation plans.

What are the key skills and qualifications needed to thrive as a manager enterprise risk management?

To thrive as a Manager Enterprise Risk Management, you need expertise in risk assessment, regulatory compliance, financial analysis, and typically a degree in finance, business, or a related field. Familiarity with risk management frameworks (such as COSO or ISO 31000), governance, and tools like risk management software and data analytics platforms is essential. Strong analytical thinking, leadership, and communication skills help in effectively identifying risks and collaborating with diverse stakeholders. These skills are crucial for proactively managing organizational risks, ensuring compliance, and supporting strategic decision-making.

How does a manager enterprise risk management typically collaborate with other departments to identify and mitigate risks?

A Manager of Enterprise Risk Management works closely with various departments—such as finance, operations, compliance, and IT—to proactively identify, assess, and prioritize organizational risks. This collaboration often involves leading cross-functional risk workshops, facilitating open communication channels, and developing risk mitigation strategies that align with business objectives. Regular meetings and reporting help ensure that all stakeholders are informed and engaged in risk management initiatives, fostering a risk-aware culture throughout the organization.

What is the difference between Manager Enterprise Risk Management vs Risk Analyst?

AspectManager Enterprise Risk ManagementRisk Analyst
CertificationsFRM, CRM, CPAFRM, CRM, CPA
Work EnvironmentStrategic, leadership-focused, cross-departmentalAnalytical, data-driven, focused on risk assessment
Employer & Industry UsageFinancial institutions, corporations, insuranceFinancial services, consulting, insurance

The Manager Enterprise Risk Management oversees risk strategies, policy development, and cross-functional risk mitigation. In contrast, the Risk Analyst primarily conducts data analysis, risk assessments, and supports risk management initiatives. Both roles often require similar certifications and are found in similar industries, but the Manager has a broader strategic focus while the Risk Analyst emphasizes data and analysis.

What are the most commonly searched types of Enterprise Risk Management jobs in Utah?

The most popular types of Enterprise Risk Management jobs in Utah are:

What are popular job titles related to Manager Enterprise Risk Management jobs in Utah?

For Manager Enterprise Risk Management jobs in Utah, the most frequently searched job titles are:

What job categories do people searching Manager Enterprise Risk Management jobs in Utah look for?

The top searched job categories for Manager Enterprise Risk Management jobs in Utah are:

What cities in Utah are hiring for Manager Enterprise Risk Management jobs?

Cities in Utah with the most Manager Enterprise Risk Management job openings:

Infographic showing various Manager Enterprise Risk Management job openings in Utah as of August 2026, with employment types broken down into 1% As Needed, 77% Full Time, 20% Part Time, and 2% Contract. Highlights an 84% Physical, 3% Hybrid, and 13% Remote job distribution.

Director- Third Party Risk and Business Continuity

Mountain America Credit Union

Sandy, UT • On-site

Full-time

Re-posted 6 days ago


Mountain America Credit Union rating

8.0

Company rating: 8.0 out of 10

Based on 49 frontline employees who took The Breakroom Quiz

75th of 152 rated financial services


Job description

Please reference the schedule and minimum qualifications listed below before applying.
If you need assistance with filling out our application form or during any phase of the application, interview, or employment process, please notify our Human Resources Team at 801-366-6947 option 1 or email macurecruiting@macu.com and every reasonable effort will be made to accommodate your needs in a timely manner.
Job Summary
The Director of Third-Party Risk and Business Continuity is a key leader within Mountain America Credit Union's Enterprise and Operational Risk function, reporting to the Vice President of Enterprise and Operational Risk. The role is responsible for overseeing the day-to-day execution and continued maturity of the third-party risk management and operational resilience programs, including business continuity, crisis management, operational scenario analysis, and alignment with technology recovery capabilities and disaster recovery dependencies. As part of the second line of defense, the Director partners with business units, Legal, Procurement, Compliance, IT, Information Security, and other stakeholders to align program execution with strategic objectives, regulatory expectations, and enterprise risk standards.
Job Description
LOCATION
Mountain America Center - Hybrid
9800 S Monroe St
Sandy, UT 84070
SCHEDULE
Full Time; this is a hybrid schedule with some weekly in office expectation, based on business need.
To be effective, an individual must be able to perform each job duty successfully.
Business Continuity and Operational Resilience
  • Lead the design, implementation, testing, and continued maturity of the enterprise business continuity and operational resilience program, including business impact analyses, risk assessments, operational scenario analysis, tabletop exercises, and crisis management simulations.
  • Partner with IT and Information Security to align business continuity planning with technology recovery capabilities, disaster recovery dependencies, and business response requirements.
  • Coordinate crisis response governance, escalation protocols, decision rights, leadership communications, situational risk reporting, lessons learned, and prioritized remediation for significant operational events.
  • Monitor emerging threats and trends, including cyber, technology, supply chain, regulatory, physical security, climate, and geopolitical events; maintain related program documentation, reporting, and remediation visibility for operational continuity risks.

Third-Party Risk and Contract Oversight
  • Direct the continued maturity of a scalable third-party risk management program aligned to the credit union's vendor ecosystem, operational complexity, internal governance standards, and regulatory expectations.
  • Oversee the third-party risk lifecycle, including due diligence, risk assessments, contract risk reviews, ongoing monitoring, issue escalation, remediation tracking, exit planning, and senior-level credible challenge of evidence-based risk conclusions.
  • Partner with business units, Vendor Relationship Owners, Subject Matter Experts, Legal, Procurement, Information Security, Compliance, and other stakeholders to identify, assess, mitigate, monitor, and document third-party risks, contract provisions, controls, and risk mitigation strategies.
  • Monitor third-party performance, control effectiveness, key risk indicators, critical vendor exposure, concentration risk, fourth-party risk, and emerging risk themes, escalating issues when risk exposure exceeds defined thresholds.
  • Lead TPRM responses for regulatory exams, internal audits, and independent reviews, including documentation, analysis, issue remediation, and management responses.
  • Drive the TPRM program maturity roadmap, including process improvements, automation, data quality, GRC optimization, regulatory alignment, and adoption of sound industry practices.
  • Provide executive, committee, and Board-level reporting and recommendations on third-party risk exposure, trends, issues, concentrations, emerging risks, program maturity, remediation priorities, and related governance documentation.

Education and Experience
  • Bachelor's degree in finance, risk management, business administration, economics, or related field required; advanced degree preferred.
  • Minimum of 8 years of experience in enterprise risk, operational risk, business continuity, third-party risk management, contract management, or related risk disciplines.
  • Minimum of 3 years of experience leading teams, business processes, or cross-functional initiatives with notable risk and complexity.
  • Experience developing or maturing risk, resilience, third-party, or contract management programs in a regulated financial institution preferred.
  • Understanding of ERM frameworks, operational resilience expectations, third-party risk lifecycle practices, contract risk considerations, and regulatory expectations for financial institutions.
  • Understanding of SOC 2, SSAE-18, financial statements, business impact analysis, recovery planning, operational scenario analysis, and crisis response practices.

Certifications
  • Preferred certifications: CTPRP, ORCE, CRCMP, or similar risk-related credentials.

Skills
  • Strategic thinking with strong analytical, problem-solving, and risk data interpretation capabilities, including the ability to aggregate, interpret, and visualize complex risk information.
  • Demonstrated ability to apply credible challenge, respectfully question assumptions, escalate risks, and influence outcomes using facts, regulatory knowledge, and clear communication.
  • Excellent written and verbal communication skills, with the ability to synthesize risk information, prepare executive-ready materials, and collaborate effectively with cross-functional teams, including Compliance, Internal Audit, and senior leadership.
  • Familiarity with GRC platforms and risk analytics tools, such as Tableau, Power BI, or similar.

Leadership and Organization Development
  • Demonstrates ownership and accountability in delivering high-quality risk governance and reporting outcomes.
  • Fosters a culture of collaboration, transparency, and continuous improvement within the Risk function.
  • Provides mentorship and guidance to junior team members and peers, supporting professional development and knowledge sharing.
  • Aligns team activities and deliverables with operational risk strategy and organizational goals.
  • Effectively manages change and adapts to evolving regulatory, strategic, and operational priorities.
  • Builds strong cross-functional relationships to influence outcomes and promote a unified risk culture.
  • Contributes to succession planning by developing documentation, tools, and processes that support long-term team capability and resilience.

Managerial Responsibility
  • Has supervisory/managerial responsibilities that are direct or through work leaders or assistants, typically with a subordinate group of 2 to 15 employees. Estimates personnel needs and assigns work to meet these needs. Supervises, coordinates and reviews the work of assigned staff. Recommends candidates for employment, conducts performance evaluations and salary reviews for assigned staff, and applies company policy.

Mountain America Credit Union is an EEO/AA/ADA/Veterans employer.

What Mountain America Credit Union employees say

Pay

Benefits

Hours and flexibility

Workplace

Get the full story on Breakroom