1

Operational Risk Manager Jobs in Illinois (NOW HIRING)

Senior Auditor - Risk Management

Riverwoods, IL · On-site

$84K - $103K/yr

As a member of the Audit team, the candidate will focus on audits of Enterprise and Operational Risk Management frameworks and processes in the Second Line of Defense, as well as the related risk ...

Senior Auditor - Risk Management

Riverwoods, IL · On-site

$84K - $103K/yr

As a member of the Audit team, the candidate will focus on audits of Enterprise and Operational Risk Management frameworks and processes in the Second Line of Defense, as well as the related risk ...

Senior Auditor - Risk Management

Chicago, IL · On-site

$83K - $102K/yr

As a member of the Audit team, the candidate will focus on audits of Enterprise and Operational Risk Management frameworks and processes in the Second Line of Defense, as well as the related risk ...

As a member of the Audit team, the candidate will focus on audits of Enterprise and Operational Risk Management frameworks and processes in the Second Line of Defense, as well as the related risk ...

Qualifications Required: 6+ years of experience in insider risk, security operations, investigations, compliance, data protection, or enterprise risk management 2+ years of experience managing an ...

Qualifications Required: • 6+ years of experience in insider risk, security operations, investigations, compliance, data protection, or enterprise risk management • 2+ years of experience ...

Engage with underwriting, claims, actuarial, finance, IT, and legal & compliance teams to embed risk management practices * Support enterprise initiatives related to operational risk, third-party ...

Hedge Fund Risk Manager

Chicago, IL · On-site

$80K - $133K/yr

... in continuous operation since 1889. Northern Trust is proud to provide innovative financial ... Role Overview We are seeking an experienced Risk Manager to join our investment team and oversee ...

Hedge Fund Risk Manager

Chicago, IL · On-site

$80K - $133K/yr

... in continuous operation since 1889. Northern Trust is proud to provide innovative financial ... Role Overview We are seeking an experienced Risk Manager to join our investment team and oversee ...

Hedge Fund Risk Manager

Chicago, IL · On-site

$80K - $133K/yr

... in continuous operation since 1889. Northern Trust is proud to provide innovative financial ... Role Overview We are seeking an experienced Risk Manager to join our investment team and oversee ...

Head of Risk

Chicago, IL · On-site

$225K - $300K/yr

Stand up the operational risk program covering technology risk, business continuity, and third-party risk management. * Build real-time risk monitoring and surveillance systems that can scale with ...

next page

Showing results 1-20

Operational Risk Manager information

See Illinois salary details

$45.5K

$117K

$229.7K

How much do operational risk manager jobs pay per year?

As of Jul 22, 2026, the average yearly pay for operational risk manager in Illinois is $116,967.00, according to ZipRecruiter salary data. Most workers in this role earn between $71,200.00 and $154,100.00 per year, depending on experience, location, and employer.

What Does an Operational Risk Manager Do?

An operational risk manager works to identify and limit the risk associated with a company’s operations. As an operational risk manager, your responsibilities involve assessing business operations, identifying issues, and creating reports on your findings. You then help develop policies and implement changes to lessen operational risks. Other duties include continually monitoring the business to find potential new threats and ensuring company compliance with laws and regulations.

What are the 4 pillars of operational risk management?

The four pillars of operational risk management are risk identification, risk assessment, risk mitigation, and risk monitoring. An Operational Risk Manager uses these pillars to develop strategies that minimize potential losses from internal processes, people, systems, or external events, often utilizing tools like risk dashboards and frameworks such as Basel II. Mastery of these pillars is essential for effective risk oversight and compliance.

What does an operational risk manager do?

An operational risk manager identifies, assesses, and monitors risks that could disrupt a company's operations, such as process failures, fraud, or system outages. They develop strategies to mitigate these risks, ensure compliance with regulations, and often use risk management tools and data analysis to support decision-making.

Do risk managers make good money?

Operational Risk Managers typically earn competitive salaries that vary by industry, experience, and location. According to industry data, the median annual salary ranges from $80,000 to over $130,000, with additional compensation such as bonuses and certifications like FRM or ORM enhancing earning potential.

What are some common challenges faced by Operational Risk Managers in maintaining effective risk controls across different departments?

Operational Risk Managers often encounter challenges in ensuring consistent risk controls due to varying processes, priorities, and risk appetites across departments. Communication gaps and resistance to change can make it difficult to implement standardized procedures. Successfully overcoming these challenges involves building strong cross-functional relationships, conducting regular training, and fostering a risk-aware culture to ensure alignment on risk management practices throughout the organization.

What are the three C's of operational risk management?

The three C's of operational risk management are Culture, Controls, and Communication. These elements help organizations identify, assess, and mitigate risks effectively, which is essential for an Operational Risk Manager to ensure operational resilience and compliance. Developing strong controls and fostering a risk-aware culture are key skills in this role.

What are the key skills and qualifications needed to thrive as an Operational Risk Manager, and why are they important?

To thrive as an Operational Risk Manager, you need a solid understanding of risk assessment, regulatory compliance, and internal controls, typically supported by a degree in finance, business, or a related field. Familiarity with risk management frameworks, GRC (governance, risk, and compliance) systems, and certifications such as FRM or ORM are highly valued. Strong analytical thinking, attention to detail, and effective communication skills set top performers apart in this role. These competencies are crucial for identifying, mitigating, and communicating operational risks, ensuring organizational stability and regulatory adherence.

What is the difference between Operational Risk Manager vs Risk Analyst?

AspectOperational Risk ManagerRisk Analyst
CertificationsCFA, FRM, or similarCFA, FRM, or similar
Work EnvironmentFinancial institutions, banks, insurance companiesFinancial firms, consulting, corporate risk teams
ResponsibilitiesIdentify, assess, and mitigate operational risks; develop risk frameworksAnalyze risk data, support risk assessments, prepare reports

The Operational Risk Manager focuses on managing and mitigating operational risks within organizations, often holding certifications like CFA or FRM. In contrast, Risk Analysts primarily analyze risk data and support risk management processes. Both roles are vital in financial sectors and share similar credentials, but the Operational Risk Manager has a broader responsibility for risk mitigation strategies.

What are the most commonly searched types of Operational Risk jobs in Illinois? The most popular types of Operational Risk jobs in Illinois are:
What cities in Illinois are hiring for Operational Risk Manager jobs? Cities in Illinois with the most Operational Risk Manager job openings:
Infographic showing various Operational Risk Manager job openings in Illinois as of July 2026, with employment types broken down into 100% Full Time. Highlights an 100% In-person job distribution, with an average salary of $116,967 per year, or $56.2 per hour.
Principal of Access Management Risk

Principal of Access Management Risk

Early Warning Services

Chicago, IL • On-site

Full-time

Medical, Dental, Vision, Retirement, PTO

Posted 16 days ago


Job description

At Early Warning, we've powered and protected the U.S. financial system for over thirty years with cutting-edge solutions like Zelle, Paze, and so much more. As a trusted name in payments, we partner with thousands of institutions to increase access to financial services and protect transactions for hundreds of millions of consumers and small businesses.

Positions located in Scottsdale, San Francisco, Chicago, or New York follow a hybrid work model to allow for a more collaborative working environment.

Candidates responding to this posting must independently possess the eligibility to work in the United States, for any employer, at the date of hire. This position is ineligible for employment Visa sponsorship.

OverallPurpose

Provides independent second-line oversight, assessment, and crediblechallengeof first-line technology risk management activities across the company. Partners across Technology, Security, Product, Data, and other business functions to evaluate risk and control practices, including risk assessments, issues management, control validation, key risk indicators, governance reporting, and escalation. Helps ensure technology-related risks are managedconsistentwith enterprise risk appetite, regulatory expectations, and sound industry practice. May support one or more focus areas based on business need, including Enterprise Technology Risk, Data Security Risk, Access Management Risk, Offensive Security Risk, Vulnerability Management Risk, AI SecurityRisk, andAsset and Inventory Management Risk.


Essential Functions

  • Provide independent review, oversight, and crediblechallengeoffirst-line technology risk management activities, controls, and decisions.

  • Evaluate the design and execution of risk management practices to ensure alignment with enterprise frameworks, policies, regulatory expectations, and relevant industry standards.

  • Provide independentchallengeand oversight of risk identification and assessment activities.

  • Review and challenge risk and control self-assessments,issuesmanagement, remediation plans, control validation outcomes, and key risk indicators.

  • Assess the adequacy of severity ratings, root cause analyses, action plans, and closure evidence for technology-related issues and risk events.

  • Identifyrisk trends, concentrations, and emerging themes through analysis of risk data, governance materials, and business changes; develop an independent view of risk exposure and control effectiveness.

  • Prepare and support reporting, escalation, anddiscussionmaterials for senior leaders, governance forums, and risk committees.

  • Partner with first-line leaders, subject matter experts, and independent testing or validation teams to improve clarity of control expectations, testing scope, and evidence requirements.

  • Provide ongoing risk advisory support whilemaintainingsecond-line independence and accountability for effectivechallenge.

  • Recommendopportunities to strengthen risk awareness, governance routines, and training that improve technology risk management maturity.

  • Support the company's commitment to risk management and protecting the integrity and confidentiality of systems and data.


Focus: Enterprise Technologyand Information SecurityRisk

  • Provide independentchallengeand oversight of technology risk management practices across infrastructure, cloud, cybersecurity, product, and operational technology domains.

  • Provide independentchallengeand oversight ofinformation securityrisk management practices acrossthreat management, network, endpoint, cloud, architecture,data, access, AI,or applicationsecuritydomains.

  • Assess alignment of technology risk and control activities to enterprise policies, risk frameworks, and applicable industry standards.

  • Evaluate whether risk assessments, control inventories,issuesmanagement, and key risk indicators are executed consistently and effectively across the technology organization.

  • Challenge risk identification activities related to significant technology changes, new products or capabilities, and cross-functional initiatives.

  • Assess risk trends and systemic themes across the technology environment and provide independent reporting and escalation as needed.

Minimum Qualifications

  • Education and/or experience typically obtained through completion of aBachelor'sdegree or equivalent.

  • Typically has 12 years of experience ordemonstratedportfolio consistent with experience required of the role in technology risk, information security, operational risk, or related disciplines within a regulatedor otherwisecomplex operating environment.

  • Strong understanding of risk management practices, control frameworks, and second-line oversight withinathree lines of defense model.

  • Demonstrated experience providing independent review, challenge, or governance of first-line technology, security, data, or operational risk activities.

  • Strong ability to assess control design and effectiveness, synthesize risk data,identifythemes, and translate technical issues into business risk.

  • Excellent written, verbal, presentation, and stakeholder management skills, including experience interacting with senior leaders and cross-functional partners.

  • Strong critical thinking, judgment, and problem-solving skills, with the ability to provide practical, risk-based recommendations in a complex environment.

  • Ability tooperateindependently, manage competing priorities, andmaintaineffective working relationships while preserving second-line objectivity.

  • Background and drug screen.

Preferred Qualifications

  • Advanced degree oradditionalrelated education and/or experience preferred.

  • Experience in financial services, payments, fintech, oranotherhighly regulated industry.

  • Familiarity with relevant regulatory expectations and industry standardsand frameworksapplicable to technology and security risk managementsuchas;ISO 27002, PCI DSS, NIST, FFIEC,andSOC 2.

  • Experience supporting governance committees, audits, examinations, or regulatory interactions.

  • Relevant risk, security, audit, or control certifications preferredsuch as CISA, CISM, CISSP, CCSP, CRISC, GSNA, CGIH, or equivalent preferred.

  • Project or process management experience supporting cross-functional risk, control, or governance initiatives preferred.

The above job description is not intended to be an all-inclusive list of duties and standards of the position. Incumbents will follow instructions and perform other related duties as assigned by their supervisor.

Working conditions consist of a normal office environment. Work is primarily sedentary and requires extensive use of a computer and involves sitting for periods of approximately four hours. Work may require occasional standing, walking, kneeling, and reaching. Must be able to lift 10 pounds occasionally and/or negligible amount of force frequently. Requires visual acuity and dexterity to view, prepare, and manipulate documents and office equipment including personal computers. Requires the ability to communicate with internal and/or external customers.
Employee must be able to perform essential functions and physical requirements of position with or without reasonable accommodation.

The base pay scale for this position in:
Phoenix, AZ/ Chicago, IL / Washington, DC in USD per year is: $184,000 - $230,000.
New York, NY/ San Francisco, CA in USD per year is: $221,000 - $276,000.

Additionally, candidates are eligible for a discretionary incentive plan and benefits.

This pay scale is subject to change and is not necessarily reflective of actual compensation that may be earned, nor a promise of any specific pay for any specific candidate, which is always dependent on legitimate factors considered at the time of job offer. Early Warning Services takes into consideration a variety of factors when determining a competitive salary offer, including, but not limited to, the job scope, market rates and geographic location of a position, candidate's education, experience, training, and specialized skills or certification(s) in relation to the job requirements and compared with internal equity (peers). The business actively supports and reviews wage equity to ensure that pay decisions are not based on gender, race, national origin, or any other protected classes.

Some of the Ways We Prioritize Your Health and Happiness

  • Healthcare Coverage-Competitive medical (PPO/HDHP), dental, and vision plans as well as company contributions to your Health Savings Account (HSA) or pre-tax savings through flexible spending accounts (FSA) for commuting, health & dependent care expenses.

  • 401(k) Retirement Plan-Featuring a 100% Company Safe Harbor Match on your first 6% deferral immediately upon eligibility.

  • Paid Time Off -Flexible Time Off for Exempt (salaried) employees, as well as generous PTO for Non-Exempt (hourly) employees, plus 11 paid company holidays and a paid volunteer day.

  • 12 weeks of Paid Parental Leave

  • Maven Family Planning - provides support through your Parenting journey including egg freezing, fertility, adoption, surrogacy, pregnancy, postpartum, early pediatrics, and returning to work.

AndSOmuch more! We continue to enhance our program, so be sure tocheck our Benefits page herefor the latest. Ourteamcan share more during the interview process!

Pursuant to the San Francisco Fair Chance Ordinance, we will consider for employment qualified applicants with arrest and conviction records.

Early Warning Services, LLC ("Early Warning") considers for employment, hires, retains and promotes qualified candidates on the basis of ability, potential, and valid qualifications without regard to race, religious creed, religion, color, sex, sexual orientation, genetic information, gender, gender identity, gender expression, age, national origin, ancestry, citizenship, protected veteran or disability status or any factor prohibited by law, and as such affirms in policy and practice to support and promote equal employment opportunity and affirmative action, in accordance with all applicable federal, state, and municipal laws. The company also prohibits discrimination on other bases such as medical condition, marital status or any other factor that is irrelevant to the performance of our employees.