2

Remote Technology Risk Management Jobs in Florida

Compliance & Risk Manager

FL ยท On-site +1

$95K - $105K/yr

Audit & Certification Management * Own the end-to-end SOC 2 Type II audit lifecycle: scope ... technology domains are identified, assessed, prioritized, and tracked. * Maintain and update the ...

Risk Manager / Senior Risk Analyst

Tallahassee, FL ยท On-site +1

$120K - $150K/yr

Remote flexibility available for the right candidate Division : Dealer General Warranty About CV ... in trust/treasury management of reinsurance accounts. * Pursue external data sources and ...

$100K - $156K/yr

... technology, delivery system, health plan, finance, human resources, risk management, and other key ... Open to remote applicants in the United States, except for the following states: California ...

VP, Cybersecurity & Information Risk

Plantation, FL ยท On-site +1

$149K - $187K/yr

... 3PLs, carriers, and technology providers across the global supply chain * Manage internal ... workers, mobile/remote employees, and third-party logistics partners * Own the enterprise ...

Director of IT

Miami, FL ยท On-site +1

... IT, risk mitigation, and technical governance across the organization. * System Management: Lead ... Experience leading and mentoring remote or hybrid IT teams. * Strong technical foundation across ...

... Technology Asset Management, and Third-Party Risk Management workstreams in partnership with ... This compensation range is specific to Remote role and takes into account the wide range of factors ...

... Technology Asset Management, and Third-Party Risk Management workstreams in partnership with ... This compensation range is specific to Remote role and takes into account the wide range of factors ...

... Technology Asset Management, and Third-Party Risk Management workstreams in partnership with ... This compensation range is specific to Remote role and takes into account the wide range of factors ...

... Technology Asset Management, and Third-Party Risk Management workstreams in partnership with ... This compensation range is specific to Remote role and takes into account the wide range of factors ...

... Technology Asset Management, and Third-Party Risk Management workstreams in partnership with ... This compensation range is specific to Remote role and takes into account the wide range of factors ...

Bridge the gap between business and technology teams, ensuring alignment and clarity of project ... Risk Management: Identify risks, propose mitigation strategies, and ensure business continuity ...

next page

Showing results 1-20

Remote Technology Risk Management information

What is Remote Technology Risk Management?

Remote Technology Risk Management refers to the process of identifying, assessing, and mitigating risks associated with the use of technology in remote work environments. This includes ensuring data security, managing access controls, and developing incident response plans for employees who work outside traditional office settings. Professionals in this field help organizations prevent data breaches, comply with regulations, and maintain business continuity as more employees work remotely. Effective risk management is crucial for protecting sensitive information and maintaining the integrity of IT systems in a distributed workforce.

What are some common challenges faced in a remote technology risk management role, and how can they be effectively addressed?

In a remote technology risk management role, one common challenge is maintaining effective communication and collaboration with cross-functional teams, especially when assessing and mitigating risks across different time zones. To address this, professionals often rely on clear documentation, regular virtual meetings, and collaborative risk management tools. Additionally, staying updated on emerging threats and ensuring consistent security practices across remote environments can be demanding, but leveraging centralized frameworks and continuous training helps maintain a strong risk posture. Building strong relationships with IT, compliance, and business stakeholders also supports more proactive and coordinated risk management.

What is the difference between Remote Technology Risk Management vs Remote Cybersecurity Analyst?

AspectRemote Technology Risk ManagementRemote Cybersecurity Analyst
CertificationsCRISC, CISSP, CISACISSP, CompTIA Security+
Work EnvironmentRisk assessment, policy development, complianceThreat detection, incident response, vulnerability analysis
Industry UsageFinance, healthcare, tech companiesFinancial institutions, government agencies, tech firms

Remote Technology Risk Management focuses on identifying and mitigating technology risks across an organization, ensuring compliance and strategic risk reduction. In contrast, Remote Cybersecurity Analysts primarily detect and respond to security threats and vulnerabilities. While both roles require cybersecurity certifications and work in similar environments, their core responsibilities differ: risk management emphasizes proactive policies, whereas cybersecurity analysts handle active threat response.

What are the key skills and qualifications needed to thrive as a Remote Technology Risk Management professional, and why are they important?

To thrive in Remote Technology Risk Management, you need a solid understanding of IT risk assessment, cybersecurity principles, and regulatory compliance, often supported by a degree in information systems or a related field. Familiarity with risk management frameworks (such as NIST or ISO 27001), GRC (governance, risk, and compliance) tools, and relevant certifications like CRISC or CISSP is typically expected. Strong analytical skills, attention to detail, and effective written communication are essential soft skills for evaluating risks and reporting findings remotely. These competencies are crucial for identifying vulnerabilities, ensuring regulatory compliance, and protecting organizational assets in a distributed work environment.
What are the most commonly searched types of Technology Risk Management jobs in Florida? The most popular types of Technology Risk Management jobs in Florida are:
What job categories do people searching Remote Technology Risk Management jobs in Florida look for? The top searched job categories for Remote Technology Risk Management jobs in Florida are:
What cities in Florida are hiring for Remote Technology Risk Management jobs? Cities in Florida with the most Remote Technology Risk Management job openings:
Infographic showing various Remote Technology Risk Management job openings in Florida as of July 2026, with employment types broken down into 83% Full Time, 14% Part Time, 1% Temporary, and 2% Contract. Highlights an 92% Physical, 3% Hybrid, and 5% Remote job distribution.
Compliance & Risk Manager

Compliance & Risk Manager

Blossom

FL โ€ข On-site, Remote

$95K - $105K/yr

Full-time

Medical, Dental, Vision, Life, Retirement, PTO

Posted 20 days ago


Job description

Job Description
FLSA Classification: Exempt
Reports To: Chief Financial Officer (CFO)
Job Summary:
The Compliance & Risk Manager is responsible for managing and executing Blossom's compliance and risk management programs. Reporting to the CFO, this role oversees day-to-day compliance operations across all regulatory, security, and audit functions-including SOC 2 Type II, PCI DSS, and all compliance obligations associated with Blossom's hardware and software products while maintaining a risk management framework that identifies, tracks, and mitigates operational, financial, regulatory, and strategic risks. This role collaborates closely with Engineering, Product, Legal, HR, and Operations to support a culture of compliance and risk awareness across the organization. This role works in close partnership with the IT and Infrastructure function, which retains ownership of technical security controls, HSM/key management, and PCI Security; the Compliance & Risk Manager owns program management, audit coordination, the enterprise risk framework, and policy.
Supervisory Responsibilities:
  • Support the recruitment and onboarding of compliance and risk staff; provide day-to-day guidance and oversight to any direct reports within the function.

Duties/ Responsibilities:
Audit & Certification Management
  • Own the end-to-end SOC 2 Type II audit lifecycle: scope definition, control design, evidence collection, auditor coordination, and remediation tracking.
  • Lead PCI DSS compliance efforts across applicable business units, including scope management, gap assessments, and coordination with Qualified Security Assessors (QSAs).
  • Manage relationships with external auditors, assessors, and certification bodies; serve as primary point of contact during audit engagements.
  • Maintain a comprehensive controls inventory; ensure all controls are documented, tested, and operating effectively.
  • Track and manage audit findings and remediation plans through to closure in collaboration with control owners.

Enterprise Risk Management
  • Manage and maintain the enterprise risk management (ERM) framework, ensuring risks across operational, regulatory, financial, strategic, and technology domains are identified, assessed, prioritized, and tracked.
  • Maintain and update the company-wide risk register; coordinate with risk owners to ensure mitigation and remediation plans are tracked to resolution.
    • Conduct periodic enterprise risk assessments; summarize findings and risk trends for CFO review.
    • Collaborate with Product, Engineering, Finance, HR, and Operations to identify and flag risks associated with new initiatives, product launches, and process changes.
    • Support operational risk programs including business continuity planning (BCP), disaster recovery readiness, and incident response protocols in coordination with IT and Engineering.
    • Administer the third-party and vendor risk assessment process, evaluating vendors for security, financial stability, regulatory alignment, and contractual risk.
    • Monitor the evolving risk landscape-including emerging cyber threats, regulatory changes, and market developments-and flag potential impact to leadership.
    • Support the CFO in maintaining the company's risk appetite and tolerance thresholds; help ensure business decisions align with established risk parameters.
    • Respond to credit union client risk and security due diligence requests, including vendor questionnaires and risk assessments.
    • Maintain required risk documentation including the risk register, risk appetite statements, and reporting artifacts in a manner that supports executive review and external audit.

Regulatory & Policy Compliance
  • Monitor and interpret federal, state, and credit union-specific regulatory requirements applicable to Blossom's software and hardware products (e.g., NCUA guidance, FFIEC frameworks, GLBA, applicable state laws).
  • Maintain and update company-wide compliance policies, standards, and procedures; ensure alignment with regulatory requirements and industry best practices.
  • Conduct regular internal audits and control testing to evaluate compliance with applicable laws, regulations, and internal policies.

Hardware & Software Product Compliance
  • Ensure Blossom's hardware and software products comply with applicable regulatory standards, including security and interoperability requirements for financial technology solutions used by credit unions.
  • Collaborate with Product and Engineering teams to embed security and compliance requirements into the SDLC and hardware release processes.
  • Advise on compliance and risk implications of new product features, APIs, and data integrations with credit union core systems and third-party platforms.
  • Ensure the organization meets all data privacy requirements, including applicable provisions of state privacy laws and any credit union member data obligations.

Security Awareness & Training Oversight
  • Partner with HR to support compliance training integration into onboarding and ongoing employee development.
  • Promote a compliance- and risk-aware culture by supporting cross-functional teams with guidance on regulatory obligations and risk.

Oversee training completion tracking across mandatory platforms (e.g., NINJIO, Udemy Business) and ensure role-specific training obligations are met, including Swipe team PCI requirements.
  • Develop and deliver compliance communications, training materials, and policy updates to employees across all departments.
  • Coordinate with HR and department heads to ensure annual policy acknowledgments and required compliance certifications are completed on schedule.
  • Own the enterprise Security Awareness Training program, ensuring compliance with PCI DSS Requirement and other applicable mandates.

Reporting & Executive Partnership
  • Serve as a key point of contact for compliance and risk-related questions and escalations across the organization.
  • Provide regular updates to the CFO on the status of the compliance and risk programs, including audit outcomes, risk register updates, and remediation progress.
  • Prepare compliance metrics, risk dashboards, and audit findings summaries for CFO and executive review.
  • Coordinate with external auditors, regulators, and credit union compliance and risk stakeholders as the day-to-day point of contact.
  • Identify and escalate emerging compliance and risk issues to the CFO, with recommended mitigation steps and timelines.
  • Collaborate with Legal, Finance, HR, and Operations to support alignment of the compliance and risk programs with company strategy and growth objectives.
  • Performs other related duties as assigned.

Required Skills/ Abilities:
  • Deep knowledge of SOC 2 Trust Services Criteria (TSC) and experience leading or managing SOC 2 Type II audit engagements from preparation through report issuance.
  • Working knowledge of PCI DSS requirements and experience applying them within a fintech, payments, or software organization.
  • Familiarity with financial services regulatory frameworks including FFIEC, GLBA, NCUA guidelines, and applicable state consumer protection and data privacy laws.
  • Experience developing, implementing, and managing enterprise compliance policies, procedures, risk registers, and controls inventories.
  • Demonstrated experience building or managing an enterprise risk management (ERM) framework, including risk registers, risk appetite statements, and risk reporting.
  • Strong organizational and project management skills; able to manage multiple compliance and risk workstreams simultaneously with attention to detail.
  • Exceptional written and verbal communication skills; able to translate complex regulatory requirements into clear, actionable guidance for technical and non-technical audiences.
  • Experience partnering with Engineering and Product teams to embed compliance into software and product development processes.
  • Comfort with GRC platforms and risk management tools (e.g., Drata, Vanta, LogicGate, ServiceNow GRC, or similar).
  • High integrity, strong judgment, and the ability to operate as a trusted advisor to senior leadership.
  • Ability to navigate ambiguity and execute within a fast-growing fintech environment with evolving compliance and risk needs.
  • Proficiency with Google Workspace or Microsoft 365 and standard business productivity tools.

Education and Experience:
  • Bachelor's degree in Business, Finance, Legal Studies, Information Systems, or a related field required; Master's degree a plus.
  • Minimum 4+ years of progressive experience in compliance, risk management, audit, or related fields; experience within fintech, payments, or financial services strongly preferred.
  • 2 or more years of hands-on experience with SOC 2 audits (as preparer, auditee, or program contributor); experience with PCI DSS compliance strongly preferred.
  • 2 or more years of experience in a compliance, risk, or audit role with increasing responsibility, preferably in a growth-stage or mid-market company.
  • Prior experience working with or supporting credit unions, community financial institutions, or regulated financial services clients strongly preferred.
  • Experience supporting fintech, SaaS, or B2B technology companies serving regulated industries is a plus.
  • Relevant professional certifications strongly preferred: CISA, CISM, CRISC, CCEP, CIPP, CFE, or equivalent.

Physical Requirements:
  • Prolonged periods sitting at a desk and working on a computer.
  • Must be able to lift up to 15 pounds at times.

What We Offer:
  • Health, fully covered: Company-paid medical, dental, and vision insurance.
  • Life & AD&D: Company-paid life and accidental death & dismemberment coverage.
  • Income protection: Company-paid short- and long-term disability.
  • 401(k) with match: Save for the long run, and we'll match.
  • Remote allowance: Cell phone and internet connectivity expenses support.
  • Flexible spending: FSA and Dependent Care (DCSA) accounts to stretch your pre-tax dollars.
  • Unlimited PTO: Take the time you actually need.
  • Employee Assistance Program (EAP): Confidential support for life's harder moments.
  • Supplemental coverage: Voluntary insurance options to round out your plan.