Helps ensure technology-related risks are managed consistent with enterprise risk appetite, regulatory expectations, and sound industry practice. May support one or more focus areas based on business ...
Helps ensure technology-related risks are managed consistent with enterprise risk appetite, regulatory expectations, and sound industry practice. May support one or more focus areas based on business ...
Partners across Technology, Security, Product, Data, and other business functions to evaluate risk and control practices, including risk assessments, issues management, control validation, key risk ...
Partners across Technology, Security, Product, Data, and other business functions to evaluate risk and control practices, including risk assessments, issues management, control validation, key risk ...
Manager-Technology Risk & Control
Phoenix, AZ ยท On-site
$123K - $215K/yr
The Technical Risk Management (TRM) team safeguards the enterprise, globally, by identifying, assessing, monitoring & reporting risks across Information & Cyber Security Risk, Technology Risk, Data ...
Manager-Technology Risk & Control
Phoenix, AZ ยท On-site
$123K - $215K/yr
The Technical Risk Management (TRM) team safeguards the enterprise, globally, by identifying, assessing, monitoring & reporting risks across Information & Cyber Security Risk, Technology Risk, Data ...
Partners across Technology, Security, Product, Data, and other business functions to evaluate risk and control practices, including risk assessments, issues management, control validation, key risk ...
Partners across Technology, Security, Product, Data, and other business functions to evaluate risk and control practices, including risk assessments, issues management, control validation, key risk ...
The position partners closely with Technology, Information Security, Operational Risk, Audit, Compliance, Finance, and Enterprise Risk Management teams to develop and mature technology risk ...
The position partners closely with Technology, Information Security, Operational Risk, Audit, Compliance, Finance, and Enterprise Risk Management teams to develop and mature technology risk ...
Manager-Technology Risk & Control
Phoenix, AZ ยท On-site
The Technical Risk Management (TRM) team safeguards the enterprise, globally, by identifying, assessing, monitoring & reporting risks across Information & Cyber Security Risk, Technology Risk, Data ...
Manager-Technology Risk & Control
Phoenix, AZ ยท On-site
The Technical Risk Management (TRM) team safeguards the enterprise, globally, by identifying, assessing, monitoring & reporting risks across Information & Cyber Security Risk, Technology Risk, Data ...
Americas Technology and Data Risk Leader - Associate Director
Phoenix, AZ ยท On-site
$152.70 - $294/hr
Drive the identification, assessment and prioritization of technology and data risks, and develop risk management and mitigation strategies tailored to area needs. * Facilitate the smooth ...
New
Americas Technology and Data Risk Leader - Associate Director
Phoenix, AZ ยท On-site
$152.70 - $294/hr
Drive the identification, assessment and prioritization of technology and data risks, and develop risk management and mitigation strategies tailored to area needs. * Facilitate the smooth ...
New
Partners across Technology, Security, Product, Data, and other business functions to evaluate risk and control practices, including risk assessments, issues management, control validation, key risk ...
Partners across Technology, Security, Product, Data, and other business functions to evaluate risk and control practices, including risk assessments, issues management, control validation, key risk ...
By integrating risk management into technology delivery, the role strengthens EDAI's control environment, enables informed decision-making, and supports the secure, compliant, and resilient delivery ...
New
By integrating risk management into technology delivery, the role strengthens EDAI's control environment, enables informed decision-making, and supports the secure, compliant, and resilient delivery ...
New
Partners across Technology, Security, Product, Data, and other business functions to evaluate risk and control practices, including risk assessments, issues management, control validation, key risk ...
Partners across Technology, Security, Product, Data, and other business functions to evaluate risk and control practices, including risk assessments, issues management, control validation, key risk ...
Senior Manager-Enterprise Data & AI Risk & Controls
Phoenix, AZ ยท On-site
$123K - $215K/yr
By integrating risk management into technology delivery, the role strengthens EDAI's control environment, enables informed decision-making, and supports the secure, compliant, and resilient delivery ...
Senior Manager-Enterprise Data & AI Risk & Controls
Phoenix, AZ ยท On-site
$123K - $215K/yr
By integrating risk management into technology delivery, the role strengthens EDAI's control environment, enables informed decision-making, and supports the secure, compliant, and resilient delivery ...
Cybersecurity Risk Management & Oversight * Establish and oversee an end-to-end cybersecurity risk management process that enables continuous identification, analysis, assessment, treatment, and ...
Cybersecurity Risk Management & Oversight * Establish and oversee an end-to-end cybersecurity risk management process that enables continuous identification, analysis, assessment, treatment, and ...
Cybersecurity Risk Management & Oversight * Establish and oversee an end-to-end cybersecurity risk management process that enables continuous identification, analysis, assessment, treatment, and ...
Cybersecurity Risk Management & Oversight * Establish and oversee an end-to-end cybersecurity risk management process that enables continuous identification, analysis, assessment, treatment, and ...
Reporting to the Global IT SOX Risk Management Leader, you'll drive strategic SOX readiness projects and provide risk advisory expertise across many process areas to ensure compliance with SOX while ...
Reporting to the Global IT SOX Risk Management Leader, you'll drive strategic SOX readiness projects and provide risk advisory expertise across many process areas to ensure compliance with SOX while ...
The Principal Analyst serves as a subject matter expert whose insights directly influence the bank's technology risk posture and risk management strategy. Principal Risk Analysts solve complex ...
The Principal Analyst serves as a subject matter expert whose insights directly influence the bank's technology risk posture and risk management strategy. Principal Risk Analysts solve complex ...
Essential Duties and Responsibilities: * IT SOX Audit Management: * Manage the IT compliance ... Conduct regular risk assessments and control evaluations across IT systems and processes.
Essential Duties and Responsibilities: * IT SOX Audit Management: * Manage the IT compliance ... Conduct regular risk assessments and control evaluations across IT systems and processes.
The Principal Analyst serves as a subject matter expert whose insights directly influence the bank's technology risk posture and risk management strategy. Principal Risk Analysts solve complex ...
The Principal Analyst serves as a subject matter expert whose insights directly influence the bank's technology risk posture and risk management strategy. Principal Risk Analysts solve complex ...
Sr. IT Risk Manager The Sr. IT Risk Manager will play a key role in the ongoing technology ... Effectively communicate ideas and information with peers, management, and customers * Serve as a ...
Sr. IT Risk Manager The Sr. IT Risk Manager will play a key role in the ongoing technology ... Effectively communicate ideas and information with peers, management, and customers * Serve as a ...
Serve as a technology and data management risk expert on committees and working groups, fostering strong internal relationships. * Develop and implement risk mitigation strategies and controls ...
Serve as a technology and data management risk expert on committees and working groups, fostering strong internal relationships. * Develop and implement risk mitigation strategies and controls ...
Serve as a technology and data management risk expert on committees and working groups, fostering strong internal relationships. * Develop and implement risk mitigation strategies and controls ...
Serve as a technology and data management risk expert on committees and working groups, fostering strong internal relationships. * Develop and implement risk mitigation strategies and controls ...
Technology Risk Management information
See Arizona salary details
$40.5K - $51K
8% of jobs
$51K - $61.5K
14% of jobs
$66.4K is the 25th percentile. Wages below this are outliers.
$61.5K - $72.1K
6% of jobs
$72.1K - $82.6K
8% of jobs
$82.6K - $93.1K
11% of jobs
The median wage is $95.3K / yr.
$93.1K - $103.6K
13% of jobs
$103.6K - $114.1K
11% of jobs
$117.3K is the 75th percentile. Wages above this are outliers.
$114.1K - $124.6K
15% of jobs
$124.6K - $135.1K
8% of jobs
$135.1K - $145.6K
4% of jobs
$145.6K - $156.1K
2% of jobs
$40.5K
$96.6K
$156.1K
How much do technology risk management jobs pay per year?
What is a Technology Risk Management job?
A Technology Risk Management job involves identifying, assessing, and mitigating risks related to an organization's technology infrastructure, systems, and data. Professionals in this field develop policies, ensure compliance with regulatory requirements, and implement security controls to protect against cyber threats and operational failures. They collaborate with IT, security, and business teams to address vulnerabilities and enhance resilience. The role requires knowledge of risk assessment frameworks, regulatory standards, and emerging technology risks.
What are the key skills and qualifications needed to thrive in the Technology Risk Management position, and why are they important?
To excel in Technology Risk Management, you need a background in information security, risk assessment, and regulatory compliance, often supported by a relevant degree and experience in IT or cybersecurity. Familiarity with risk management frameworks (such as NIST or ISO 27001), governance, risk and compliance (GRC) tools, and certifications like CISA, CISSP, or CRISC are highly valued. Strong analytical thinking, communication skills, and the ability to influence and collaborate across departments are vital soft skills for this role. These competencies are crucial to effectively identify, mitigate, and communicate technology risks, helping organizations manage threats while ensuring business continuity and compliance.
What are the typical daily responsibilities for someone working in Technology Risk Management?
Professionals in Technology Risk Management are typically responsible for identifying and assessing potential technology-related risks, developing policies and controls to mitigate those risks, and monitoring compliance with internal and external regulations. Their day-to-day activities often include conducting risk assessments, coordinating with IT teams on security initiatives, preparing reports for senior management, and responding to incidents or audit findings. Collaboration with various departments such as IT, compliance, and business units is frequent to ensure comprehensive risk oversight. This role requires staying up-to-date on emerging threats and evolving regulatory requirements to proactively manage the organization's risk posture.

Principal Technology Risk Management - Data Security
Scottsdale, AZ โข On-site
Full-time
Medical, Dental, Vision, Retirement, PTO
Posted 16 days ago
Job description
Positions located in Scottsdale, San Francisco, Chicago, or New York follow a hybrid work model to allow for a more collaborative working environment.
Candidates responding to this posting must independently possess the eligibility to work in the United States, for any employer, at the date of hire. This position is ineligible for employment Visa sponsorship.
Job Description
Overall Purpose
Provides independent second-line oversight, assessment, and credible challenge of first-line technology risk management activities across the company. Partners across Technology, Security, Product, Data, and other business functions to evaluate risk and control practices, including risk assessments, issues management, control validation, key risk indicators, governance reporting, and escalation. Helps ensure technology-related risks are managed consistent with enterprise risk appetite, regulatory expectations, and sound industry practice. May support one or more focus areas based on business need, including Enterprise Technology Risk, Data Security Risk, Access Management Risk, Offensive Security Risk, Vulnerability Management Risk, AI Security Risk, and Asset and Inventory Management Risk.
Essential Functions
- Provide independent review, oversight, and credible challenge of first-line technology risk management activities, controls, and decisions.
- Evaluate the design and execution of risk management practices to ensure alignment with enterprise frameworks, policies, regulatory expectations, and relevant industry standards.
- Provide independent challenge and oversight of risk identification and assessment activities.
- Review and challenge risk and control self-assessments, issues management, remediation plans, control validation outcomes, and key risk indicators.
- Assess the adequacy of severity ratings, root cause analyses, action plans, and closure evidence for technology-related issues and risk events.
- Identify risk trends, concentrations, and emerging themes through analysis of risk data, governance materials, and business changes; develop an independent view of risk exposure and control effectiveness.
- Prepare and support reporting, escalation, and discussion materials for senior leaders, governance forums, and risk committees.
- Partner with first-line leaders, subject matter experts, and independent testing or validation teams to improve clarity of control expectations, testing scope, and evidence requirements.
- Provide ongoing risk advisory support while maintaining second-line independence and accountability for effective challenge.
- Recommend opportunities to strengthen risk awareness, governance routines, and training that improve technology risk management maturity.
- Support the company's commitment to risk management and protecting the integrity and confidentiality of systems and data.
Focus: Enterprise Technology and Information Security Risk
- Provide independent challenge and oversight of technology risk management practices across infrastructure, cloud, cybersecurity, product, and operational technology domains.
- Provide independent challenge and oversight of information security risk management practices across threat management, network, endpoint, cloud, architecture, data, access, AI, or application security domains.
- Assess alignment of technology risk and control activities to enterprise policies, risk frameworks, and applicable industry standards.
- Evaluate whether risk assessments, control inventories, issues management, and key risk indicators are executed consistently and effectively across the technology organization.
- Challenge risk identification activities related to significant technology changes, new products or capabilities, and cross-functional initiatives.
- Assess risk trends and systemic themes across the technology environment and provide independent reporting and escalation as needed.
Minimum Qualifications
- Education and/or experience typically obtained through completion of a Bachelor's degree or equivalent.
- Typically has 12 years of experience or demonstrated portfolio consistent with experience required of the role in technology risk, information security, operational risk, or related disciplines within a regulated or otherwise complex operating environment.
- Strong understanding of risk management practices, control frameworks, and second-line oversight within a three lines of defense model.
- Demonstrated experience providing independent review, challenge, or governance of first-line technology, security, data, or operational risk activities.
- Strong ability to assess control design and effectiveness, synthesize risk data, identify themes, and translate technical issues into business risk.
- Excellent written, verbal, presentation, and stakeholder management skills, including experience interacting with senior leaders and cross-functional partners.
- Strong critical thinking, judgment, and problem-solving skills, with the ability to provide practical, risk-based recommendations in a complex environment.
- Ability to operate independently, manage competing priorities, and maintain effective working relationships while preserving second-line objectivity.
- Background and drug screen.
Preferred Qualifications
- Advanced degree or additional related education and/or experience preferred.
- Experience in financial services, payments, fintech, or another highly regulated industry.
- Familiarity with relevant regulatory expectations and industry standards and frameworks applicable to technology and security risk management such as; ISO 27002, PCI DSS, NIST, FFIEC, and SOC 2.
- Experience supporting governance committees, audits, examinations, or regulatory interactions.
- Relevant risk, security, audit, or control certifications preferred such as CISA, CISM, CISSP, CCSP, CRISC, GSNA, CGIH, or equivalent preferred.
- Project or process management experience supporting cross-functional risk, control, or governance initiatives preferred.
The above job description is not intended to be an all-inclusive list of duties and standards of the position. Incumbents will follow instructions and perform other related duties as assigned by their supervisor.
Working conditions consist of a normal office environment. Work is primarily sedentary and requires extensive use of a computer and involves sitting for periods of approximately four hours. Work may require occasional standing, walking, kneeling, and reaching. Must be able to lift 10 pounds occasionally and/or negligible amount of force frequently. Requires visual acuity and dexterity to view, prepare, and manipulate documents and office equipment including personal computers. Requires the ability to communicate with internal and/or external customers.
Employee must be able to perform essential functions and physical requirements of position with or without reasonable accommodation.
The base pay scale for this position in:
Phoenix, AZ/ Chicago, IL / Washington, DC in USD per year is: $184,000 - $230,000.
New York, NY/ San Francisco, CA in USD per year is: $221,000 - $276,000.
Additionally, candidates are eligible for a discretionary incentive plan and benefits.
This pay scale is subject to change and is not necessarily reflective of actual compensation that may be earned, nor a promise of any specific pay for any specific candidate, which is always dependent on legitimate factors considered at the time of job offer. Early Warning Services takes into consideration a variety of factors when determining a competitive salary offer, including, but not limited to, the job scope, market rates and geographic location of a position, candidate's education, experience, training, and specialized skills or certification(s) in relation to the job requirements and compared with internal equity (peers). The business actively supports and reviews wage equity to ensure that pay decisions are not based on gender, race, national origin, or any other protected classes.
#Dice
#LI-AV
Some of the Ways We Prioritize Your Health and Happiness
- Healthcare Coverage - Competitive medical (PPO/HDHP), dental, and vision plans as well as company contributions to your Health Savings Account (HSA) or pre-tax savings through flexible spending accounts (FSA) for commuting, health & dependent care expenses.
- 401(k) Retirement Plan - Featuring a 100% Company Safe Harbor Match on your first 6% deferral immediately upon eligibility.
- Paid Time Off - Flexible Time Off for Exempt (salaried) employees, as well as generous PTO for Non-Exempt (hourly) employees, plus 11 paid company holidays and a paid volunteer day.
- 12 weeks of Paid Parental Leave
- Maven Family Planning - provides support through your Parenting journey including egg freezing, fertility, adoption, surrogacy, pregnancy, postpartum, early pediatrics, and returning to work.
And SO much more! We continue to enhance our program, so be sure to check our Benefits page here for the latest. Our team can share more during the interview process!
Pursuant to the San Francisco Fair Chance Ordinance, we will consider for employment qualified applicants with arrest and conviction records.
Early Warning Services, LLC ("Early Warning") considers for employment, hires, retains and promotes qualified candidates on the basis of ability, potential, and valid qualifications without regard to race, religious creed, religion, color, sex, sexual orientation, genetic information, gender, gender identity, gender expression, age, national origin, ancestry, citizenship, protected veteran or disability status or any factor prohibited by law, and as such affirms in policy and practice to support and promote equal employment opportunity and affirmative action, in accordance with all applicable federal, state, and municipal laws. The company also prohibits discrimination on other bases such as medical condition, marital status or any other factor that is irrelevant to the performance of our employees.
About Early Warning
Sourced by ZipRecruiter
Industry
Finance and insurance
Company size
201 - 500 Employees
Headquarters location
Scottsdale, AZ, US
Year founded
1990