1

Risk Control Manager Jobs in Connecticut (NOW HIRING)

Vendor Risk Manager Dalio Family Office Dalio Family Office Overview: The Dalio Family Office (DFO ... Translate threat model outputs into concrete, testable control requirements drawing from OWASP ...

If you have a strong understanding of internal controls and risk management, along with excellent ... Conduct thorough end-to-end evaluations of the business' risk and control environment to identify ...

RISK ANALYST

Canton, CT · On-site

$70 - $90/hr

... Control Self-Assessments (RCSAs), identifying risks, evaluating controls, and recommending mitigation strategies. * Support administration and adherence of enterprise risk management programs ...

Manager - Regulatory & Compliance - Enterprise Operations & Risk Our Deloitte Regulatory, Risk ... risk, control, and compliance frameworks, as well as internal policies and procedures. * Assess ...

The Risk Analyst is responsible for reconciling, analyzing, and reporting the middle office P&L and ... of control policies and procedures • Fields and responds to inquiries from management, traders ...

The Risk Analyst is responsible for reconciling, analyzing, and reporting the middle office P&L and ... of control policies and procedures · Fields and responds to inquiries from management, traders ...

Showing results 41-60

Risk Control Manager information

See Connecticut salary details

$32

$57

$76

How much do risk control manager jobs pay per hour?

As of Sep 5, 2026, the average hourly pay for risk control manager in Connecticut is $57.81, according to ZipRecruiter salary data. Most workers in this role earn between $44.38 and $72.50 per hour, depending on experience, location, and employer.

What does a Risk Control Manager do?

A Risk Control Manager is responsible for identifying, assessing, and mitigating risks that could negatively impact an organization's operations, assets, or reputation. They develop and implement risk management policies, conduct audits, and work closely with various departments to ensure compliance and safety. Their role also includes training staff on risk prevention and preparing reports for senior management. Effective risk control helps prevent losses, legal issues, and enhances the overall resilience of the organization.

What are the key skills and qualifications needed to thrive as a Risk Control Manager?

To thrive as a Risk Control Manager, you need a solid background in risk assessment, loss prevention, and regulatory compliance, often supported by a degree in risk management, business, or a related field. Familiarity with risk management information systems (RMIS), data analysis tools, and certifications such as ARM (Associate in Risk Management) are commonly required. Strong analytical thinking, communication, and leadership skills help you effectively identify risks, collaborate with stakeholders, and implement mitigation strategies. These skills and qualifications are crucial for minimizing organizational losses, ensuring regulatory compliance, and supporting informed decision-making.

How does a Risk Control Manager typically collaborate with other departments to identify and mitigate risks?

A Risk Control Manager works closely with departments such as operations, finance, compliance, and IT to proactively identify potential risks and develop mitigation strategies. This collaboration often involves conducting risk assessments, sharing insights from incident reports, and leading cross-functional meetings to ensure everyone is aligned on risk management protocols. Effective communication and relationship-building are key, as the Risk Control Manager must ensure that risk controls are practical and integrated into daily workflows. By fostering a culture of transparency, they help departments understand their roles in maintaining organizational safety and compliance.

What is the difference between Risk Control Manager vs Risk Analyst?

AspectRisk Control ManagerRisk Analyst
CredentialsCertifications like CRM, ARM, or CPCU often preferredCertifications such as FRM or CRM may be beneficial
Work EnvironmentOversees risk management strategies, collaborates with departmentsAnalyzes data, assesses risks, prepares reports
Industry UsageCommon in insurance, finance, and corporate sectorsWidely used in finance, insurance, and consulting firms

While both roles focus on risk, the Risk Control Manager develops and implements risk mitigation strategies, whereas the Risk Analyst primarily assesses and analyzes risks through data. The manager has a broader strategic role, often supervising teams, while the analyst concentrates on detailed risk evaluation.

Do risk control managers make good money?

Risk control managers typically earn a competitive salary that varies based on experience, industry, and location. They often hold certifications such as CRM or ARM and work in industries like insurance, manufacturing, or finance, with salaries ranging from moderate to high depending on their level of responsibility and expertise.

What cities in Connecticut are hiring for Risk Control Manager jobs?

Cities in Connecticut with the most Risk Control Manager job openings:

Infographic showing various Risk Control Manager job openings in Connecticut as of August 2026, with employment types broken down into 85% Full Time, 12% Part Time, 2% Temporary, and 1% Contract. Highlights an 79% Physical, 3% Hybrid, and 18% Remote job distribution, with an average salary of $120,239 per year, or $57.8 per hour.

Vendor Risk Manager

DFO Referrals

Westport, CT • On-site

Full-time

Dental, Vision, Life, Retirement, PTO

Re-posted 6 days ago


Job description

Vendor Risk Manager
Dalio Family Office
Dalio Family Office Overview:
The Dalio Family Office (DFO) supports Barbara and Ray Dalio and their family in their ventures, investments, and philanthropic efforts under Dalio Philanthropies, which includes OceanX, Dalio Education, Endless Network, and the Beijing Dalio Foundation. The core of the DFO's culture is built around meaningful work and meaningful relationships and the family's commitment to giving back. The office is headquartered in Westport, CT with regional offices in New York City, Singapore, and Abu Dhabi.
Position Summary:
The Vendor Risk Manager owns the end-to-end third-party risk lifecycle, onboarding, diligence, monitoring, and exit across a high-volume, diverse vendor portfolio. You will synthesize risk across cybersecurity, AI, privacy, financial, and AML/CFT/sanctions domains into clear, actionable risk positions, performing structured threat modeling for high-exposure vendors.
Day-to-day responsibilities would include a combination of the following:
  • Own the VRM program end-to-end: strategy, policy, procedure, workflow, tooling, metrics, and executive reporting for CISO/CRO/board visibility.
  • Lead holistic vendor risk assessments across cybersecurity, AI risk, privacy, financial, AML/CFT/sanctions.
  • Document residual risk acceptances with named accountable executives and time-boxed review dates; coordinate with IT, Legal, Finance, and Compliance as appropriate.
  • Evaluate and monitor vendor security controls based on data sensitivity and business criticality, leveraging industry frameworks and evidence such as SOC 2, ISO 27001, penetration testing, and security assessments.
  • Conduct structured threat models (STRIDE, PASTA) for high risk vendors, and document findings as durable artifacts informing contracting, monitoring, and exit planning.
  • Translate threat model outputs into concrete, testable control requirements drawing from OWASP (ASVS, API Security Top 10, LLM/Agentic Top 10), NIST (SP 800-53, SP 800-161, CSF 2.0, SP 800-207), and MITRE ATT&CK; scale requirements to vendor tier.
  • Partner with Legal to translate identified risks into enforceable contractual requirements.
  • Apply FAIR or comparable quantitative methods for high-impact vendor decisions, expressing cyber risk in loss-exposure terms that resonate with senior leadership.
  • Advise IT, Engineering and business teams on vendor integration architecture (SSO/SCIM, OAuth, conditional access, DLP, segmentation, BYOK, VPC peering) and maintain approved reference patterns.
  • Drive automation and tooling maturity to handle high vendor volume without proportional headcount growth; produce program dashboards tracking throughput, cycle time, recertification compliance, and remediation aging.

The ideal candidate will possess the following knowledge, skills, attributes, and values:
  • Expert knowledge of third-party/vendor risk management
  • Strong risk assessment and analytical skills
  • Technical understanding of enterprise security architecture
  • Excellent communication and stakeholder management skills
  • Proven ability to lead and optimize vendor risk programs

Illustrative Benefits:
  • 100% company paid medical premiums
  • 17 company paid holidays
  • Friday summer hours
  • Monthly community happy hours
  • Hybrid work environment
  • Free catered food services for in-office days
  • Generous PTO offering
  • Casual dress code
  • 150% 401(k) match up to $7,500 and 100% match above $7,500 ($15k match limit)
  • Gym reimbursement, back up childcare services, insurance, financial, and legal services, and much more!

Qualifications:
  • Bachelor's degree in Information Security, Risk Management, Computer Science, Cybersecurity, or a related discipline.
  • At least 7 years of progressive experience across vendor risk management, cybersecurity architecture, security engineering, GRC, audit, or related fields.
  • Experience managing the full third-party/vendor risk lifecycle, including vendor onboarding, due diligence, risk assessments, continuous monitoring, recertification, remediation tracking, and vendor exit planning, with at least 2 years owning an end-to-end TPRM program.
  • Strong technical knowledge of cybersecurity frameworks, standards, and methodologies including NIST, ISO 27001/27002, OWASP, MITRE ATT&CK, Shared Assessments, threat modeling approaches (STRIDE/PASTA), and risk management practices.
  • Hands-on experience evaluating enterprise security controls, cloud and integration architectures, SOC 2 Type II reports, ISO certifications, penetration testing results, data protection requirements, and third-party security risks across complex technology environments.
  • Ability to communicate complex technical and risk concepts to executive stakeholders, collaborate effectively across business functions
  • 10% travel as required based on business needs.

Compensation:
Compensation for the role includes a competitive salary in the range from $175,000 -$260,000 (inclusive of a merit-based bonus, dependent on years of experience, level of education obtained, as well as applicable skillset) and an excellent benefits package, including paid time off ranging from 15 to 25 days based on years of service, paid sick and safe leave, dental, vision, life and disability insurance, paid parental time off, birth mother recovery pay, sick family member pay, parental ramp back up program, gym reimbursement and generous employer match for 401k.
Please note we are unable to provide immigration sponsorship for this position.
At the DFO, we believe our biggest asset is our people. We are proud to be an equal opportunity employer, hiring and developing individuals from diverse backgrounds and experiences to add to our collaborative culture. The DFO treats all candidates and employees with respect and does not discriminate in our recruiting, hiring, and promoting processes and general treatment during employment, including on the basis of actual or perceived race, creed, color, religion, sex, age, sexual orientation, gender identity and/or expression, alienage or national origin, ancestry, citizenship status, marital status, veteran status, or disability.