1

Senior Technology Risk Management Jobs in Tennessee

$55K - $141K/yr

As an LOB Risk Specialist Sr. within PNC's Technology organization, you will be based in Pittsburgh ... Management, Risk Management Programs, Strategic Planning, Technology Risk Competencies ...

$112K - $208K/yr

Serves as a senior risk advocate for the risk management program, process owner and/or regulatory ... Technology Risk Competencies Collaborating, Data Gathering and Reporting, Decision Making and ...

$80K - $194K/yr

... senior risk advocate for the risk management program. * Establishes the line of business risk ... Technology Risk Competencies Collaborating, Decision Making and Critical Thinking, Effective ...

Overview Senior Risk Manager Full Time, 80 Hours Per Pay Period, Day Shift Covenant Health Overview ... Designs and implements risk management surveys and studies; conducts surveys, studies, and special ...

New

Senior Risk Manager Full Time, 80 Hours Per Pay Period, Day Shift Covenant Health Overview ... Designs and implements risk management surveys and studies; conducts surveys, studies, and special ...

New

$75K - $125K/yr

As a LOB Risk Specialist, Senior within PNC's Technology Third-Party Risk Management organization, you will be based in Pittsburgh, PA, Cleveland, OH, Phoenix, AZ. Birmingham, AL, or Dallas, TX. ...

next page

Showing results 1-20

Senior Technology Risk Management information

How much does a senior technology risk analyst make at Fidelity?

A senior technology risk analyst at Fidelity typically earns between $90,000 and $130,000 annually, depending on experience, location, and certifications. Compensation may also include bonuses and benefits related to risk management and cybersecurity tools.

How does a Senior Technology Risk Management professional typically collaborate with other departments within an organization?

A Senior Technology Risk Management professional regularly works with teams across IT, compliance, internal audit, and business units to identify, assess, and mitigate technology-related risks. This collaboration often involves participating in cross-functional meetings, providing guidance on risk controls, and ensuring that technology initiatives align with the overall risk appetite of the organization. Strong communication skills are essential, as the role requires translating complex technical risks into actionable recommendations for non-technical stakeholders. Building solid relationships with various departments is crucial to effectively manage and respond to emerging risks.

What are the key skills and qualifications needed to thrive as a Senior Technology Risk Management professional, and why are they important?

To thrive as a Senior Technology Risk Management professional, you need a deep understanding of IT risk frameworks, cybersecurity principles, and regulatory requirements, often supported by a degree in information security or related fields and certifications like CISA, CISSP, or CRISC. Familiarity with risk assessment tools, GRC (Governance, Risk, and Compliance) platforms, and incident management systems is typically required. Strong analytical thinking, communication skills, and stakeholder management abilities help professionals excel in this role. These skills and qualities are vital for effectively identifying, assessing, and mitigating technology risks to protect organizational assets and ensure regulatory compliance.

What is the difference between Senior Technology Risk Management vs Cybersecurity Analyst?

AspectSenior Technology Risk ManagementCybersecurity Analyst
Required CredentialsCertifications like CRISC, CISSP, CISACertifications like CompTIA Security+, CISSP, CEH
Work EnvironmentRisk assessment, policy development, strategic planningMonitoring security systems, incident response, vulnerability assessment
Employer & Industry UsageFinancial, healthcare, large enterprisesIT firms, government agencies, tech companies

While both roles focus on security, Senior Technology Risk Management emphasizes strategic risk assessment and mitigation planning, whereas Cybersecurity Analysts focus on technical security operations and incident response. The roles often collaborate but differ in scope and daily responsibilities.

What is Senior Technology Risk Management?

Senior Technology Risk Management refers to a leadership role responsible for identifying, assessing, and mitigating technology-related risks within an organization. Professionals in this position develop risk management strategies, ensure compliance with regulations, and oversee the implementation of security controls to protect information systems. They collaborate with IT, business, and compliance teams to address vulnerabilities and respond to emerging threats. Their work helps safeguard critical assets and supports the organization's overall risk management framework.
What are the most commonly searched types of Technology Risk Management jobs in Tennessee? The most popular types of Technology Risk Management jobs in Tennessee are:
What are popular job titles related to Senior Technology Risk Management jobs in Tennessee? For Senior Technology Risk Management jobs in Tennessee, the most frequently searched job titles are:
What job categories do people searching Senior Technology Risk Management jobs in Tennessee look for? The top searched job categories for Senior Technology Risk Management jobs in Tennessee are:
What cities in Tennessee are hiring for Senior Technology Risk Management jobs? Cities in Tennessee with the most Senior Technology Risk Management job openings:

Director of IT Governance, Risk and Compliance

orionfcu

Memphis, TN

Other

Posted 20 days ago


Job description

POSITION PURPOSE

The Director of IT Governance, Risk and Compliance provides strategic leadership and oversight of the organization's IT risk posture, governance frameworks, and regulatory compliance within a financial services environment. This role reports to the CIO and ensures alignment between IT risk management practices and the institution's risk appetite, while enabling secure, compliant, and resilient technology operations. The director serves as a key liaison to regulators and internal audit, leads enterprise IT risk programs, and partners closely with information security, legal, compliance, and business units to proactively identify, assess, and mitigate risk across systems, vendors, and emerging technologies.

ESSENTIAL FUNCTIONS AND BASIC DUTIES

1.    Define And maintain the IT risk management framework, ensuring alignment with enterprise risk appetite and business strategy.
2.    Develop and execute a multi year IT risk maturity road map, including governance, controls, and reporting enhancements.
3.    Provide executive level and board reporting on IT risk posture, trends, and emerging threats.
4.    Establish and oversee IT governance structures, policies, standards, and procedures.
5.    Lead enterprise IT risk assessments, including infrastructure, applications, and security architecture reviews.
6.    Identify vulnerabilities, evaluate risk exposure, and ensure timely mitigation of identified issues.
7.    Oversee risk acceptance processes and provide escalation authority for material IT and security risks.
8.    Review and challenge risk decisions, ensuring consistency with organizational risk tolerance.
9.    Serve as primary point of contact for IT regulatory examinations and audits.
10.    Manage IT exam life cycle, including preparation, coordination, and response.
11.    Oversee tracking, reporting, and remediation of IT findings from regulators and internal/ external audits.
12.    Maintain comprehensive documentation of audits, findings, and corrective actions.
13.    Interpret and operationalize regulatory requirements related to IT systems, data protection, and information security to include SOX, data privacy laws, and financial regulations.
14.    Develop and implement strategies to ensure ongoing compliance with applicable laws and standards.
15.    Partner with legal and compliance teams to monitor regulatory changes and assess impact on IT controls.
16.    Provide oversight of IT risk associated with third party vendors, including material risk vendor reviews and escalations.
17.    Collaborate with vendor management teams to ensure adequate controls and risk mitigation strategies.
18.    Assess risks associated with new technologies, products, and services, ensuring appropriate governance and control implementation.
19.    Partner closely with information security to align on security controls, risk assessments, and remediation priorities.
20.    Work with business and technology stakeholders to embed risk management practices into day-to-day operations.
21.    Promote a strong risk-aware culture across the organization.

QUALIFICATIONS

EDUCATION/CERTIFICATION: Bachelor’s degree in Information Technology, Cybersecurity, Risk Management, or a related field. Advanced degree preferred. Relevant certifications preferred (e.g., CISM, CRISC, CISSP, CISA)
REQUIRED KNOWLEDGE: Strong understanding of SOX, data privacy regulations, and technology compliance requirements.

EXPERIENCE REQUIRED: Ten or more (10+) years of progressive experience in IT risk management, IT audit, information security, or governance within financial services or a highly regulated industry.
Deep expertise in IT risk frameworks, such as NIST, COBIT, ISO 27001, and regulatory environments.
Proven experience managing regulatory exams and audit engagements.

SKILLS/ABILITIES:

Ability to communicate effectively with technical and non-technical stakeholders, including senior leadership.
Demonstrated ability to lead complex risk programs and influence senior stakeholders, including executive leadership.
Very strong analytical & problem-solving skills