1

Technology Risk Management Jobs in Boston, MA (NOW HIRING)

Senior Risk Manager: Payments

Boston, MA

$117K - $153K/yr

  • Medical

  • Dental

  • Vision

  • Retirement

  • PTO

... management. * Partner with audit, compliance, and regulators. Core Skills & Competencies * Strong knowledge of operational, technology, compliance, and fraud risk * Expertise in ACH, RTP, and Wire ...

Senior Risk Manager: Payments

Boston, MA · On-site

$117K - $153K/yr

  • Medical

  • Dental

  • Vision

  • Retirement

  • PTO

... management. * Partner with audit, compliance, and regulators. Core Skills & Competencies * Strong knowledge of operational, technology, compliance, and fraud risk * Expertise in ACH, RTP, and Wire ...

Senior IT Audit Manager

Waltham, MA · On-site

$130 - $175/hr

  • Medical

  • Dental

  • Vision

  • Retirement

  • PTO

Minimum of 8 years of progressive experience in external audit, internal audit, IT compliance, IT risk management, or SOX advisory, with significant focus on IT General Controls and enterprise ...

In this role, you will leverage your expertise in cyber strategy, technology risk, and solution management to guide client teams in defining and executing their Cyber Tech Risk programs-shaping ...

Governance Analyst

Boston, MA · On-site

$49 - $65.25/hr

Drawing on a background in technology audit, risk management, and information security, the analyst bridges the gap between technical operations and regulatory compliance, ensuring that ...

Senior IT Audit Manager

Waltham, MA · On-site

$130K - $175K/yr

  • Medical

  • Dental

  • Vision

  • Retirement

  • PTO

Minimum of 8 years of progressive experience in external audit, internal audit, IT compliance, IT risk management, or SOX advisory, with significant focus on IT General Controls and enterprise ...

Senior IT Audit Manager

Waltham, MA · On-site

$130K - $175K/yr

  • Medical

  • Dental

  • Vision

  • Retirement

  • PTO

Minimum of 8 years of progressive experience in external audit, internal audit, IT compliance, IT risk management, or SOX advisory, with significant focus on IT General Controls and enterprise ...

Manager II, Security Risk Management

Boston, MA · On-site

  • Medical

  • Dental

  • Vision

  • Life

  • Retirement

  • PTO

... Risk Management principles • Experience in business continuity, resilience, and emergency ... With a nearly century-long legacy, we blend trusted expertise with cutting-edge technology to ...

Manager II, Security Risk Management

Boston, MA

  • Medical

  • Dental

  • Vision

  • Life

  • Retirement

  • PTO

... Risk Management principles Experience in business continuity, resilience, and emergency management ... With a nearly century-long legacy, we blend trusted expertise with cutting-edge technology to ...

Senior Principal, Internal Audit, IT

Bedford, MA · On-site

$88K - $110K/yr

  • Medical

  • Dental

  • Vision

  • Retirement

  • PTO

Develop and execute risk-based audit plans focused on technology, cybersecurity, data governance, privacy, cloud transformation, software development lifecycle, identity and access management, and ...

Senior Principal, Internal Audit, IT

Bedford, MA · On-site

$88K - $110K/yr

  • Medical

  • Dental

  • Vision

  • Retirement

  • PTO

Develop and execute risk-based audit plans focused on technology, cybersecurity, data governance, privacy, cloud transformation, software development lifecycle, identity and access management, and ...

Showing results 41-60

Technology Risk Management information

See Boston, MA salary details

$47.3K

$112.8K

$182.2K

How much do technology risk management jobs pay per year?

As of Aug 15, 2026, the average yearly pay for technology risk management in Boston, MA is $112,815.00, according to ZipRecruiter salary data. Most workers in this role earn between $78,900.00 and $143,600.00 per year, depending on experience, location, and employer.

What is technology risk management?

A Technology Risk Management job involves identifying, assessing, and mitigating risks related to an organization's technology infrastructure, systems, and data. Professionals in this field develop policies, ensure compliance with regulatory requirements, and implement security controls to protect against cyber threats and operational failures. They collaborate with IT, security, and business teams to address vulnerabilities and enhance resilience. The role requires knowledge of risk assessment frameworks, regulatory standards, and emerging technology risks.

What are the key skills and qualifications needed for technology risk management?

To excel in Technology Risk Management, you need a background in information security, risk assessment, and regulatory compliance, often supported by a relevant degree and experience in IT or cybersecurity. Familiarity with risk management frameworks (such as NIST or ISO 27001), governance, risk and compliance (GRC) tools, and certifications like CISA, CISSP, or CRISC are highly valued. Strong analytical thinking, communication skills, and the ability to influence and collaborate across departments are vital soft skills for this role. These competencies are crucial to effectively identify, mitigate, and communicate technology risks, helping organizations manage threats while ensuring business continuity and compliance.

What does someone in technology risk management do?

Professionals in Technology Risk Management are typically responsible for identifying and assessing potential technology-related risks, developing policies and controls to mitigate those risks, and monitoring compliance with internal and external regulations. Their day-to-day activities often include conducting risk assessments, coordinating with IT teams on security initiatives, preparing reports for senior management, and responding to incidents or audit findings. Collaboration with various departments such as IT, compliance, and business units is frequent to ensure comprehensive risk oversight. This role requires staying up-to-date on emerging threats and evolving regulatory requirements to proactively manage the organization's risk posture.

Is technology risk management a good career?

Technology risk management is a growing field that involves identifying and mitigating technology-related risks to organizations. It requires skills in cybersecurity, compliance, and risk assessment, often supported by certifications like CISSP or CRISC. The role offers opportunities for advancement and is in demand across various industries, making it a viable career choice for those interested in technology and security.

What are the most commonly searched types of Technology Risk Management jobs in Boston, MA?

The most popular types of Technology Risk Management jobs in Boston, MA are:

What are popular job titles related to Technology Risk Management jobs in Boston, MA?

For Technology Risk Management jobs in Boston, MA, the most frequently searched job titles are:

What job categories do people searching Technology Risk Management jobs in Boston, MA look for?

The top searched job categories for Technology Risk Management jobs in Boston, MA are:

Infographic showing various Technology Risk Management job openings in Boston, MA as of August 2026, with employment types broken down into 1% As Needed, 81% Full Time, 14% Part Time, and 4% Contract. Highlights an 92% Physical, 3% Hybrid, and 5% Remote job distribution, with an average salary of $112,815 per year, or $54.2 per hour.

Risk Management Framework (RMF) Lead

Abacus Technology

Hanscom Air Force Base, MA • On-site

$149K - $167K/yr

Other

Medical, Dental, Life, Retirement, PTO

Re-posted 6 days ago


Job description

Overview
Abacus Technology is seeking a Risk Management Framework (RMF) Lead to support the Wing Cyberspace Office (WCSO) in managing and executing DoD Risk Management Framework processes at Hanscom AFB. This is a full-time position.
Responsibilities
  • Serve as the lead RMF Subject Matter Expert supporting the Wing Cyberspace Office (WCSO) for all systems and enclaves within the base enterprise.
  • Lead the management, implementation, and execution of the Risk Management Framework (RMF) lifecycle (Categorize, Select, Implement, Assess, Authorize, and Monitor) for supported systems.
  • Develop, maintain, and validate RMF artifacts within Enterprise Mission Assurance Support Service (eMASS) to ensure completeness, accuracy, and compliance with DoD and Air Force requirements.
  • Provide expert guidance to ISSMs, ISSOs, and system owners on ATO packages, reauthorization efforts, and continuous monitoring strategies.
  • Ensure continuous compliance with DoD, Air Force, NSA, and NIST cybersecurity policies and directives, including NIST SP 800-53 and DoDI 8510.01.
  • Conduct risk assessments and security control evaluations, recommending mitigation strategies to reduce risk to acceptable levels.
  • Review and validate Security Technical Implementation Guides (STIGs), vulnerability alerts, and cybersecurity directives for implementation across supported systems.
  • Support Authorization to Operate (ATO), Authority to Connect (ATC), and Interim Authorization (IATT) processes as required.
  • Develop and manage Plans of Action & Milestones (POA&Ms) and track remediation efforts to closure.
  • Provide direct support during cybersecurity inspections and audits (e.g., CCRI, IG, SAV), including preparation, execution, and remediation.
  • Advise on system architecture, boundary definitions, and control inheritance to improve RMF efficiency and cybersecurity posture.
  • Collaborate with network, system, and cybersecurity teams to ensure secure integration and sustainment of systems.
  • Analyze and report cybersecurity posture metrics and trends, providing recommendations for continuous improvement.
  • Mentor and provide RMF training and knowledge transfer to cybersecurity staff and stakeholders across the Wing.

Qualifications
10+ years experience in cyber security, with a strong emphasis on Risk Management Framework (RMF) within the DoD or Federal environment. Bachelor's degree in a related field. Additional years of experience may be substituted for degree requirements. Must be Security+ certified. CISSP certification preferred. Extensive experience with DoD RMF processes, ATO lifecycle management, and continuous monitoring. Demonstrated expertise in eMASS and RMF package development and management. Strong knowledge of Air Force, DoD, and Federal cyber security directives, policies, and instructions. Hands-on experience conducting security control assessments, vulnerability management, and POA&M tracking. Experience supporting cyber security inspections (e.g., CCRI, IG inspections, SAVs). Able to interpret and implement STIGs, security guidance, and vulnerability remediation requirements. Strong ability to work independently and collaboratively, providing technical leadership across multiple stakeholders. Excellent communication skills, with the ability to translate complex cyber security concepts into actionable guidance. Must be a US citizen and hold a current Secret clearance.
The projected compensation range for this position is $149,000-$167,100. There are multiple factors that can impact a final salary, including, but not limited to, Contract Wage Determination, relevant work experience, skills and competencies that align to the specified role, geographic location (if remote or different from the stated location for this position), education and certifications as well as Federal Government Contract Labor categories. In addition, Abacus Technology offers a benefits package that includes: Health and Dental Insurance; 401(k) and Matching; Life Insurance; Short- and Long-Term Disability; Paid Time Off; Paid Holidays; and Professional Membership, Technical Training, Certification, and Education Assistance.
Applicants selected will be subject to a U.S. government security investigation and must meet eligibility requirements for access to classified information.
EOE/M/F/Vet/Disabled