2

Remote Technology Risk Management Jobs in Houston, TX

... Technology Asset Management, and Third-Party Risk Management workstreams in partnership with ... This compensation range is specific to Remote role and takes into account the wide range of factors ...

... manage cyber, risk, and technology programs. Recruiting for this role ends on 12/31/2026. Work you ... This compensation range is specific to a Remote role and takes into account the wide range of ...

... manage cyber, risk, and technology programs. Recruiting for this role ends on 12/31/2026. Work you ... This compensation range is specific to a Remote role and takes into account the wide range of ...

next page

Showing results 1-20

Remote Technology Risk Management information

See Houston, TX salary details

$13

$28

$70

How much do remote technology risk management jobs pay per hour?

As of Jul 23, 2026, the average hourly pay for remote technology risk management in Houston, TX is $28.97, according to ZipRecruiter salary data. Most workers in this role earn between $18.61 and $36.97 per hour, depending on experience, location, and employer.

What is Remote Technology Risk Management?

Remote Technology Risk Management refers to the process of identifying, assessing, and mitigating risks associated with the use of technology in remote work environments. This includes ensuring data security, managing access controls, and developing incident response plans for employees who work outside traditional office settings. Professionals in this field help organizations prevent data breaches, comply with regulations, and maintain business continuity as more employees work remotely. Effective risk management is crucial for protecting sensitive information and maintaining the integrity of IT systems in a distributed workforce.

What are some common challenges faced in a remote technology risk management role, and how can they be effectively addressed?

In a remote technology risk management role, one common challenge is maintaining effective communication and collaboration with cross-functional teams, especially when assessing and mitigating risks across different time zones. To address this, professionals often rely on clear documentation, regular virtual meetings, and collaborative risk management tools. Additionally, staying updated on emerging threats and ensuring consistent security practices across remote environments can be demanding, but leveraging centralized frameworks and continuous training helps maintain a strong risk posture. Building strong relationships with IT, compliance, and business stakeholders also supports more proactive and coordinated risk management.

What is the difference between Remote Technology Risk Management vs Remote Cybersecurity Analyst?

AspectRemote Technology Risk ManagementRemote Cybersecurity Analyst
CertificationsCRISC, CISSP, CISACISSP, CompTIA Security+
Work EnvironmentRisk assessment, policy development, complianceThreat detection, incident response, vulnerability analysis
Industry UsageFinance, healthcare, tech companiesFinancial institutions, government agencies, tech firms

Remote Technology Risk Management focuses on identifying and mitigating technology risks across an organization, ensuring compliance and strategic risk reduction. In contrast, Remote Cybersecurity Analysts primarily detect and respond to security threats and vulnerabilities. While both roles require cybersecurity certifications and work in similar environments, their core responsibilities differ: risk management emphasizes proactive policies, whereas cybersecurity analysts handle active threat response.

What are the key skills and qualifications needed to thrive as a Remote Technology Risk Management professional, and why are they important?

To thrive in Remote Technology Risk Management, you need a solid understanding of IT risk assessment, cybersecurity principles, and regulatory compliance, often supported by a degree in information systems or a related field. Familiarity with risk management frameworks (such as NIST or ISO 27001), GRC (governance, risk, and compliance) tools, and relevant certifications like CRISC or CISSP is typically expected. Strong analytical skills, attention to detail, and effective written communication are essential soft skills for evaluating risks and reporting findings remotely. These competencies are crucial for identifying vulnerabilities, ensuring regulatory compliance, and protecting organizational assets in a distributed work environment.
What are the most commonly searched types of Technology Risk Management jobs in Houston, TX? The most popular types of Technology Risk Management jobs in Houston, TX are:
What job categories do people searching Remote Technology Risk Management jobs in Houston, TX look for? The top searched job categories for Remote Technology Risk Management jobs in Houston, TX are:
What cities near Houston, TX are hiring for Remote Technology Risk Management jobs? Cities near Houston, TX with the most Remote Technology Risk Management job openings:

Director, Integrated Security

Cornerstone Capital Bank

Houston, TX โ€ข On-site, Remote

Full-time

Posted 21 days ago


Job description

Cornerstone Capital Bancorp, Inc., headquartered in Houston, is a Texas-based financial services company dedicated to helping families, businesses, and communities thrive. Through its primary subsidiary, Cornerstone Capital Bank, the organization operates a community and business banking franchise alongside a premier national home lending, servicing, and home insurance platform-based financial services company dedicated to helping families, businesses, and communities thrive.
Guided by a core Mission, Vision and Convictions statement, Cornerstone operates 17 full-service banking locations across major Texas markets and more than 150 mortgage offices nationwide. The company has served nearly 700,000 customers through its family of brands, including Cornerstone Home Lending, Roscoe Bank, Peoples Bank, Cornerstone Servicing, and Cornerstone Insurance. Supported by 1,600 team members, Cornerstone is consistently recognized as a Fortune-certified Great Place to Workยฎ and a Top Workplace.
Formed through the combination of Cornerstone Home Lending and The Roscoe State Bank, Cornerstone brings more than a century of experience and is the highest-capitalized new bank in Texas history.
We honor God by using our talents to make a positive difference in the lives of our Team Members, Clients, Shareholders, Communities, and the People who provide services to us.
Who we are looking for:
The Director, Integrated Security, is responsible for developing, implementing, and maintaining a comprehensive information security program to protect the bank's data and systems, ensuring compliance with regulations and industry standards. Areas of oversight include Enterprise Security Governance, the Bank's policies and programs for Information Security, IT Risk Management, and Corporate Security.
What you'll do:
Security Risk Framework and Policy:
  • Establish and maintain the enterprise security risk management framework, including risk appetite statements, policies, minimum control standards, and risk taxonomies that the first line is required to implement.
  • Review and challenge first-line policies, standards, and procedures to confirm alignment with regulatory expectations, the Bank's risk appetite, and industry frameworks (e.g., NIST CSF, FFIEC CAT, ISO 27001).

Independent Risk Assessment and Challenge:
  • Perform independent assessments of the first line's identification, measurement, and management of security risks, including review of risk and control self-assessments (RCSAs), issue management, and key risk indicators.
  • Provide credible challenge to first-line risk treatment decisions, exception requests, and risk acceptances; escalate unresolved concerns through governance committees to executive management and the Board.

Regulatory and Compliance Oversight:
  • Monitor and independently assess first-line compliance with applicable laws, regulations, and supervisory expectations (e.g., GLBA, FFIEC IT Handbook, NYDFS Part 500, SEC cybersecurity disclosure rules, state privacy laws); track remediation of regulatory findings and matters requiring attention (MRAs).
  • Partner with the Chief Privacy Officer to provide oversight and challenge of the first line's implementation of GLBA's privacy provisions and other consumer data protection requirements

Incident Oversight:
  • Establish minimum standards for the first line's incident response, business resilience, and cyber recovery programs; review and challenge the design, testing, and continuous improvement of those programs.
  • Serve in an advisory and oversight capacity during material security incidents; perform independent post-incident reviews of first-line response effectiveness and root-cause remediation, and report findings to executive management and the Board.

Security Culture and Awareness Oversight:
  • Establish enterprise expectations for the first line's security awareness and role-based training programs, and independently assess their effectiveness through metrics, phishing test results, and behavioral indicators.
  • Monitor and report on the enterprise security risk culture; identify gaps and recommend improvements to executive management and the Board.

Technology and Control Oversight:
  • Set control objectives and minimum technical standards for security architecture and tooling; review and challenge first-line technology selection, design, and deployment decisions for alignment with risk appetite.
  • Independently test and validate the design and operating effectiveness of key security controls operated by the first line; document findings and track remediation through closure.

Three Lines of Defense Coordination:
  • Coordinate with first-line technology and business owners, Enterprise Risk Management, Compliance, Legal, and Internal Audit (3LOD) to ensure clear roles, avoid duplication, and maintain the independence of the second-line challenge function.
  • Engage with business and technology leaders to understand strategic initiatives, provide advisory input on emerging security risks, and assess whether first-line risk management is commensurate with the risks taken.

Independent Reporting and Governance:
  • Produce independent reporting on the Bank's security risk posture, control effectiveness, key risk indicators, and emerging threats for executive management, the Risk Committee, and the Board, with an unfiltered reporting line that does not require first-line approval.
  • Review first-line security metrics, key risk indicators (KRIs), and breach/event trends to form an independent view of risk position relative to appetite.

Business Continuity Ownership:
  • Develop and maintain business continuity and resiliency plans.
  • Conduct business impact analyses and continuity risk assessments.
  • Coordinate continuity testing, exercises, and corrective actions.
  • Maintain business continuity governance, reporting, and documentation.
  • Lead crisis response and recovery coordination during disruptions.
  • Partner with business units and vendors to strengthen operational resilience.
  • Monitor compliance with continuity policies and regulatory expectations.
  • Deliver business continuity training and awareness programs.
  • Report continuity risks and program performance to management.
  • Align business continuity, disaster recovery, and incident management activities.

What you'll need to be successful:
Success in this job relies on your time management skills, organization, and positive attitude. In addition, you'll need the following qualifications:
    • Minimum of 10 years of experience in information security, technology risk, or operational risk management within the Financial Services sector, with at least 5 years in a second line of defense, risk oversight, or audit capacity
    • Minimum of 5 years Mid to Large Bank experience, including direct interaction with regulators (OCC, FRB, FDIC, NYDFS, or state banking departments) and the Board or its Risk Committee
    • Bachelor's Degree preferred
    • Expert knowledge of three-lines-of-defense risk governance, enterprise risk management frameworks, regulatory expectations (FFIEC IT Handbook, NIST CSF, NYDFS Part 500, GLBA, SR Letters), and the principles of independent challenge and effective challenge.
    • Strong analytical reasoning, problem solving and critical thinking skills
    • Strong computer and organizational skills
    • Strong oral and written presentation skills
    • Ability to work independently with a multi-level team
    • Ability to multi-task and meet deadlines
    • Strong proficiency with Microsoft Office (Word, Excel, Outlook, etc.);
  • Preferred Certifications:
    • Current Certified Information Systems Security Professional (CISSP)
    • Current Certified in Risk and Information Systems Control (CRISC)
    • Certified Information Systems Auditor (CISA), Certified Information Security Manager (CISM), or equivalent risk/audit certification preferred

What we offer:
Because we recognize and reward hard work, we offer a competitive salary, a full benefits package, and the potential for a performance-based bonus.
What to do next: If Cornerstone sounds like the place for you (and if you have the qualifications, drive, and passion to match), we invite you to become a member of our winning team! And remember, once you're part of our Cornerstone family, we'll continue to invest in you as a valuable asset in our company. As many of our team members can tell you, there's something special about working at Cornerstone.
Equal Opportunity Employer/Protected Veterans/Individuals with Disabilities
This employer is required to notify all applicants of their rights pursuant to federal employment laws.
For further information, please review the Know Your Rights notice from the Department of Labor.