1

Senior Technology Risk Management Jobs in Minnesota

Position Summary The IT Risk Officer, Sr -- Cybersecurity serves as the primary first-line risk ... Issue Management & Remediation Oversight: Take oversight ownership of the open cybersecurity ...

Technology Risk Management * Cloud Risk Management & Governance (AWS and Azure) - including platform-level control design, service enablement, and cloud migration risk oversight * Control Design ...

Technology Risk Management * Cloud Risk Management & Governance (AWS and Azure) - including platform-level control design, service enablement, and cloud migration risk oversight * Control Design ...

The IT Risk Officer, Sr - Cybersecurity must be equally fluent in the language of security ... Issue Management & Remediation Oversight: Take oversight ownership of the open cybersecurity ...

Leading coordination across product, technology, vendor, privacy, regulatory, and risk stakeholders, while managing senior team members and escalating compliance matters as needed A successful ...

next page

Showing results 1-20

Senior Technology Risk Management information

What does a technology risk manager do?

A technology risk manager identifies, assesses, and mitigates risks related to information technology and cybersecurity within an organization. They develop policies, implement controls, and monitor systems to ensure data security and compliance, often using tools like risk assessment frameworks and security protocols. Strong analytical skills and knowledge of industry standards such as ISO 27001 or NIST are essential for this role.

How much does a senior technology risk analyst make at Fidelity?

A senior technology risk analyst at Fidelity typically earns between $90,000 and $130,000 annually, depending on experience, location, and certifications. The role often requires knowledge of risk assessment tools and regulatory compliance standards.

What is the highest salary for a risk manager?

Senior Technology Risk Management professionals can earn salaries up to $150,000 or higher annually, depending on experience, certifications, and the size of the organization. Top earners in this field often have advanced skills in cybersecurity, compliance, and risk assessment, and may receive bonuses or other incentives.

How does a Senior Technology Risk Management professional typically collaborate with other departments within an organization?

A Senior Technology Risk Management professional regularly works with teams across IT, compliance, internal audit, and business units to identify, assess, and mitigate technology-related risks. This collaboration often involves participating in cross-functional meetings, providing guidance on risk controls, and ensuring that technology initiatives align with the overall risk appetite of the organization. Strong communication skills are essential, as the role requires translating complex technical risks into actionable recommendations for non-technical stakeholders. Building solid relationships with various departments is crucial to effectively manage and respond to emerging risks.

What are the key skills and qualifications needed to thrive as a Senior Technology Risk Management professional, and why are they important?

To thrive as a Senior Technology Risk Management professional, you need a deep understanding of IT risk frameworks, cybersecurity principles, and regulatory requirements, often supported by a degree in information security or related fields and certifications like CISA, CISSP, or CRISC. Familiarity with risk assessment tools, GRC (Governance, Risk, and Compliance) platforms, and incident management systems is typically required. Strong analytical thinking, communication skills, and stakeholder management abilities help professionals excel in this role. These skills and qualities are vital for effectively identifying, assessing, and mitigating technology risks to protect organizational assets and ensure regulatory compliance.

What is the difference between Senior Technology Risk Management vs Cybersecurity Analyst?

AspectSenior Technology Risk ManagementCybersecurity Analyst
Required CredentialsCertifications like CRISC, CISSP, CISACertifications like CompTIA Security+, CISSP, CEH
Work EnvironmentRisk assessment, policy development, strategic planningMonitoring security systems, incident response, vulnerability assessment
Employer & Industry UsageFinancial, healthcare, large enterprisesIT firms, government agencies, tech companies

While both roles focus on security, Senior Technology Risk Management emphasizes strategic risk assessment and mitigation planning, whereas Cybersecurity Analysts focus on technical security operations and incident response. The roles often collaborate but differ in scope and daily responsibilities.

What is the highest paying risk management job?

In risk management, senior roles such as Chief Risk Officer (CRO) or Director of Risk Management tend to have the highest salaries, often exceeding six figures annually. These positions require extensive experience, advanced certifications like FRM or CRM, and strong leadership skills, especially in financial services, insurance, or large corporations.

What is Senior Technology Risk Management?

Senior Technology Risk Management refers to a leadership role responsible for identifying, assessing, and mitigating technology-related risks within an organization. Professionals in this position develop risk management strategies, ensure compliance with regulations, and oversee the implementation of security controls to protect information systems. They collaborate with IT, business, and compliance teams to address vulnerabilities and respond to emerging threats. Their work helps safeguard critical assets and supports the organization's overall risk management framework.
What are the most commonly searched types of Technology Risk Management jobs in Minnesota? The most popular types of Technology Risk Management jobs in Minnesota are:
What are popular job titles related to Senior Technology Risk Management jobs in Minnesota? For Senior Technology Risk Management jobs in Minnesota, the most frequently searched job titles are:
What job categories do people searching Senior Technology Risk Management jobs in Minnesota look for? The top searched job categories for Senior Technology Risk Management jobs in Minnesota are:
Infographic showing various Senior Technology Risk Management job openings in Minnesota as of July 2026, with employment types broken down into 1% As Needed, 82% Full Time, 14% Part Time, 1% Temporary, and 2% Contract. Highlights an 93% Physical, 2% Hybrid, and 5% Remote job distribution.

Sr. Manager, IT Risk

Wings Credit Union

Saint Paul, MN

Full-time

Medical, Dental, Vision, Life, Retirement, PTO

Posted 3 days ago


Job description

Company Description

Ent Credit Union and Wings Credit Union joined forces in January 2026. This merger means more opportunities, expanded resources, and a shared commitment to delivering exceptional member service. Together, we become more - empowering members, communities, and teams through a bold, unified future. Both organizations bring a strong legacy of member satisfaction, operational excellence, financial stability, and community impact. Recognized locally and nationally as best-in-class financial institutions and employers of choice, each is known for its commitment to financial well-being and philanthropic leadership. Join us during this transformative time and be part of shaping the future of banking! To learn more about the merger, click here.

Job Description

Sr. Manager, IT Risk supports the Dir-Business and Technology Risk by leading a team in the development, implementation, and maintenance of an enterprise-wide Technology Risk Management program, aligning with the Information Security Policy (ISP) and organizational objectives. This role establishes robust First Line frameworks, manages technology risk assessments, and performs focused controls testing to support risk assessments, providing thought leadership and consultative advice to ensure effective integration of risk practices across all business units. Collaborating closely with IT, Enterprise Security, and business leaders, the senior manager enhances risk control initiatives and fosters a risk-aware culture. Through these comprehensive efforts, the Sr. Manager, IT Risk not only enhances regulatory compliance and audit preparedness but also strengthens the credit union's defenses against technology-related risks.
Essential Functions

  • Technology Risk Program Management:
    • Lead the inventory and understanding of existing key technology processes, risks, and internal controls within Ent's GRC platform (Archer), ensuring alignment with organizational environments and standards.
    • Conduct and document process walkthroughs to define technology processes and identify key control activities, ensuring management self-assesses its key inherent technology risks and control activities effectively.
    • Act as a consultant to the business units for the implementation of technology changes, ensuring risk considerations are integrated and compliance standards are met. Oversee the evaluation of risk implications for new technology implementations and changes, ensuring robust compliance monitoring and reporting aligned with the Information Security Policy (ISP). Draft and present Risk and Control Matrices (RACMs) for key technology risks and mitigating controls to business line management for review and approval. Design and perform focused controls testing to support required technology risk assessments Coordinate with business line management to review, update, and approve RACMs, including memorializing and retaining evidence of approval.
  • Technology Risk Monitoring and Strategy Implementation:
    • Design and maintain comprehensive risk dashboards/reports for senior management, the Enterprise Risk Management Committee (ERMC), and the Board of Directors, highlighting key technology risks, mitigation efforts, and trends.
    • Develop and refine technology risk mitigation strategies, advising IT and business units to ensure practical and sustainable risk controls.
    • Provide strategic advice on policy development and compliance, helping to shape policies that mitigate risks effectively and align with organizational goals.
    • Assist business lines in drafting program documentation (e. g. , procedures, reporting, training) that reflects approved technology risks and controls, enhancing partnerships between risk management and operational teams.
    • Leverage prior knowledge, testing, and experience gained from roles and results of engagements previously performed by Internal Audit and other assurance and advisory service providers to refine technology risk processes.
  • Staff Development and Team Leadership:
    • Develop and implement training programs to enhance team capabilities in technology risk management, ensuring alignment with industry-recognized standards and certifications.
    • Provide ongoing feedback and coaching, set goals, and monitor performance to foster a skilled and knowledgeable risk management team.
    • Lead advisory sessions to disseminate best practices and innovative risk management strategies across the organization.
    • Develop training plans to satisfy required internal training requirements and professional development through industry-recognized certifications.
    • Provide ongoing feedback and coaching through all phases of process inventory, risk and control identification, and test procedure development.
  • Teamwork and Collaboration:
    • Foster inter-departmental collaboration by participating in technology projects to ensure risk considerations are integrated from the outset.
    • Support a culture of risk awareness and proactive risk management, sharing insights and best practices across the organization.
    • Offer consultative support during cross-departmental projects, ensuring seamless integration of risk management practices.
    • Coordinate with other team members to ensure a thorough understanding of the subject matter and to solicit feedback.
    • Complete training as directed by management; ensure staff complete training as directed by management.
  • Audit Support and Regulatory Compliance:
    • Support audit activities and examinations in collaboration with Internal Audit and regulatory bodies to ensure compliance with technology risk frameworks.
    • Leverage audit findings to provide advisory insights and recommend enhancements to the technology risk framework.
    • Partner with Internal Audit to develop a process to place more reliance on the Second Line of Defense activities, e. g. , continuous auditing and continuous monitoring (CACM), to support the completion of their annual audit plan. Interface with regulators during examinations.
  • Bank Secrecy Act: Remains cognizant of and adheres to Wings policies and procedures, and regulations pertaining to the Bank Secrecy Act.
Qualifications

Minimum Formal Qualifications for this Position:

  • Bachelor's Degree In Risk, Information Technology, in IT Security, Computer Science, Information/Network Security, or another related field. preferred
  • 7+ years' of experience related to IT Security, IT Risk, or Information Security performing compliance, testing, monitoring, or similar risk management activities Required
  • 2+ Years' team leadership or management experience Required
  • 5+ years' financial industry experience preferred

Technical or Specialized Knowledge/Skills:

  • Knowledge of multiple security specialties and technical platforms along with strong understanding of the technical architecture of the organization.
  • Understanding diverse security practices along with IT risk management concepts and applying them effectively when developing security solutions.
  • Knowledge of networking and telecommunications, securing technical platforms such as Windows, Cisco, VMWare, Public Cloud (Azure, AWS, etc.), secure server and workstation deployment, and support.
  • Knowledge of IT systems/data security controls to include but not limited to firewalls, IPS/IDS, SIEM, and other security device platforms.
  • Knowledge of regulations and best practices for technical deployments specific to the financial industry, disaster recovery/business resumption technique, secure coding and application design, packet analysis, and forensic tools.
  • Knowledge of data standards (both data exchange and storage).
  • Knowledge of industry regulations and best practices such as PCI, GLBA, FFIEC, NIST, ISO 27000, HIPAA, OWASP, SSAE 18, SOC 2, and the Cloud Security Alliance.
  • Knowledge of Systems Lifecycle Development (SDLC) best practices.
  • Leadership skills and the ability to interface with all levels (executive to entry level).
  • Verbal, written, and interpersonal skills to interact with associates at all levels of responsibility, along with the ability to communicate with tact and diplomacy.
  • Organizational skills and attention to detail.
  • Problem-solving and analytical skills able to quickly digest issues/problems encountered and recommend an appropriate solution.
  • Demonstrated knowledge of risk management principles.
  • Ability to create and deliver professional presentations.
  • Ability to proactively identifies potential concerns and follows up to resolve issues.
  • Detail oriented with strong critical thinking, analytical skills and effective analysis of data.
  • Technical knowledge of insurance forms and industry best practices.
  • Ability to multi-task and adhere to sensitive deadlines.

Certifications Required:

  • Certified in Risk and Information Systems Control (CRISC) within 1 Year required
  • Certified Information Systems Security Professional (CISSP) required
  • Certified Information Systems Auditor (CISA) preferred

Additional Information

PAY RANGE: $148,000 to $172,660 Annually (I18), plus 15% annual target bonus.
Final compensation for this position will be determined by various factors such as relevant work experience, specific skills and competencies, education, certifications, location and internal pay equity.
BENEFITS:

  • Generous 401(k) match
  • 401k Discretionary Profit Sharing
  • Health Insurance
  • Dental Insurance
  • Vision Insurance
  • Life Insurance
  • Short Term and Long Term Disability
  • Health Savings Account with company contribution
  • Employee Assistance Program
  • Paid Vacation, Sick, Floating Holidays and Volunteer Time Off
  • Paid Holidays
  • Tuition Reimbursement
  • Paid Parental Leave

We anticipate this position to close on 7/31/2026. Please submit your application at your earliest convenience to be considered.
Equal Opportunity Employer/Protected Veterans/Individuals with Disabilities.
Â