1

Technology Risk Manager Jobs in New York (NOW HIRING)

Risk Manager

New York, NY · On-site

$175K - $275K/yr

Risk Management: Develop and implement risk management frameworks and strategies to manage and ... We draw from decades of experience and a significant investment in proprietary technology ...

Risk Manager

Manhattan, NY · On-site

$136K - $154K/yr

... Tech, and international locations. The role exercises functional expertise and influence but has no supervisory responsibilities . This position reports to the Director, Risk Management and Insurance ...

Risk Manager

New York, NY · On-site

$140K - $170K/yr

We can make this guarantee because our technology and risk management unlock value that is not available to the utility. We're currently operating in NYC (NYISO Zone J) and scaling toward hundreds of ...

Risk Manager

Manhattan, NY · On-site

$140 - $170/hr

We can make this guarantee because our technology and risk management unlock value that is not available to the utility. We\'re currently operating in NYC (NYISO Zone J) and scaling toward hundreds ...

Risk Manager

Manhattan, NY · On-site

$128 - $140/hr

As a Risk Manager, you will report to the VP of Risk and help build Kafene's profit-driven consumer ... You will harness complex data sources and machine learning, and you will partner across technology ...

Risk Manager

New York, NY · On-site

$175K - $275K/yr

Risk Management: Develop and implement risk management frameworks and strategies to manage and ... We draw from decades of experience and a significant investment in proprietary technology ...

Risk Manager

New York, NY · Hybrid

$140K - $155K/yr

About Betterment Betterment is a leading, technology-driven financial services company that offers ... As a Risk Manager, you will own a portfolio of risk processes, perform risk assessments, and ...

Risk Manager

New York, NY · On-site

$140K - $155K/yr

About Betterment Betterment is a leading, technology-driven financial services company that offers ... As a Risk Manager, you will own a portfolio of risk processes, perform risk assessments, and ...

The incumbent technologies that cater to these customers are decades old, and businesses with ... spend management platform. About the Role The Risk team at Coast owns the full credit and fraud ...

Risk Manager

Manhattan, NY · On-site

$110 - $160/hr

The incumbent technologies that cater to these customers are decades old, and businesses with ... spend management platform. About the Role The Risk team at Coast owns the full credit and fraud ...

Showing results 41-60

Technology Risk Manager information

See New York salary details

$56.3K

$122K

$186K

How much do technology risk manager jobs pay per year?

As of Sep 5, 2026, the average yearly pay for technology risk manager in New York is $122,046.00, according to ZipRecruiter salary data. Most workers in this role earn between $98,500.00 and $141,100.00 per year, depending on experience, location, and employer.

What is a technology risk manager?

Technology Risk Managers are professionals responsible for identifying, assessing, and mitigating risks associated with information technology systems and processes within an organization. They ensure that IT operations comply with regulations and best practices while safeguarding data and technology assets from threats such as cyberattacks, data breaches, and system failures. Their work involves developing risk management strategies, conducting risk assessments, and collaborating with other departments to ensure the organization's technology infrastructure is secure and resilient.

What are some common challenges technology risk managers face when working across different departments?

Technology Risk Managers often encounter challenges in aligning risk management strategies with the priorities of various business units. Departments may have differing levels of risk tolerance, technical understanding, and resource availability, which can make establishing consistent policies and controls difficult. Success in the role relies on strong communication and negotiation skills, as well as the ability to educate stakeholders about the importance of risk mitigation while balancing business objectives. Building collaborative relationships and maintaining flexibility are key to overcoming these cross-departmental challenges.

What are the key skills and qualifications needed to thrive as a technology risk manager, and why are they important?

To thrive as a Technology Risk Manager, you need expertise in risk assessment, cybersecurity principles, and regulatory compliance, often supported by a degree in information security or related fields. Familiarity with risk management frameworks (such as NIST or ISO 27001), GRC (governance, risk, and compliance) tools, and certifications like CISM or CISSP are typically required. Strong analytical thinking, communication, and stakeholder management skills help you translate technical risks into business terms and coordinate mitigation efforts. These abilities are critical to proactively identifying threats and ensuring organizational resilience against evolving technology risks.

What is the difference between Technology Risk Manager vs Cybersecurity Analyst?

AspectTechnology Risk ManagerCybersecurity Analyst
CertificationsCRISC, CISSP, CISACISSP, CEH, Security+
Work EnvironmentRisk assessment, policy development, complianceMonitoring security threats, incident response, vulnerability analysis
Industry UsageFinancial, healthcare, technology firmsIT security teams, government agencies, corporations

The Technology Risk Manager focuses on identifying and mitigating overall technology risks and ensuring compliance, while the Cybersecurity Analyst concentrates on protecting systems from security threats and responding to incidents. Both roles require similar certifications and often work within the same industries, but their core responsibilities differ in scope and focus.

What cities in New York are hiring for Technology Risk Manager jobs?

Cities in New York with the most Technology Risk Manager job openings:

Infographic showing various Technology Risk Manager job openings in New York as of August 2026, with employment types broken down into 86% Full Time, 13% Part Time, and 1% Contract. Highlights an 83% Physical, 2% Hybrid, and 15% Remote job distribution, with an average salary of $122,046 per year, or $58.7 per hour.

IT Risk & Compliance Analyst

Trinity Church Wall Street

Manhattan, NY • On-site

$126K - $157K/yr

Full-time

Re-posted 22 days ago


Job description

Position Summary:
The IT Risk & Compliance Analyst plays a critical role in safeguarding Trinity's technology environment by managing cybersecurity risk, regulatory compliance, and business continuity programs. In addition to ensuring compliance with standards such as PCI DSS and overseeing disaster recovery planning, this role monitors Trinity's IT environment for emerging cyber threats and coordinates incident response efforts.
As a hybrid security and compliance role, the Analyst supports the development and enforcement of security policies, manages security assessments and remediation, and maintains documentation for internal governance and external audits. The role also provides hands-on technical oversight of log reviews, vulnerability scans, and threat monitoring activities. By promoting a security-aware culture and enabling continuous improvement, the IT Risk & Compliance Analyst strengthens the organization's resilience and readiness in the face of evolving threats.
The annual salary range for this position is $126,100 to $157,900.
Essential Duties and Responsibilities:
Governance
  • Develop and coordinates vendor risk management frameworks, policies and processes within a broader enterprise, operational and IT risk management model.
  • Compile metrics for reporting threats, risks, and success of operating controls to leadership.
  • Coordinate creation, approval, maintenance and updating of security policies.
  • Coordinate periodic access reviews.

Risk Management
  • Develop and maintain a methodology to identify and prioritize internal and external threats, quantify the risk to the organization, and recommend methods to mitigate or remediate risk. Work with risk owners to develop appropriate risk response plans; monitor plans to closure.
  • Develop and maintain a risk register. Coordinate periodic management reviews and manage exception requests.
  • Research emerging threats and vulnerabilities to aid in the identification of network incidents.

Third-Party Risk Management
  • Coordinate management of vendor, supplier and other third-party risk.
  • Facilitate assessments of new and existing third-parties. Evaluate statements of work from partners to ensure that adequate security protections are in place. Assess provider documentation (e.g., security assessment questionnaire responses, SOC 1 or SOC 2 audit reports, or other sources).
  • As risks are identified, report risks to management and vendor management teams; work with third-parties to develop appropriate risk response plans; and monitor plans to closure.

Security Awareness and Training
  • Coordinate, maintain and continuously improve security awareness and role-based security training programs, to mitigate human risks.
  • Educate stakeholders on cybersecurity-related matters to increase awareness and improve culture.
  • Create and coordinate plans for role-based security training.

Audit and Compliance
  • Work with Legal to maintain an understanding of internal and external regulatory compliance requirements.
  • Assist in responding to findings from external audits, penetration tests and vulnerability assessments.
  • Conduct security control gap assessments of internal systems, third-party and internally-developed applications, and IT infrastructure. Work with technical teams as they develop remediation plans and track approved plans to completion.

Security Monitoring and Incident Response
  • Serve as the designated backup Incident Manager when the primary manager is unavailable. Lead the end to end response to security incidents, coordinating with external partners as needed (such as cyber insurance carriers, digital forensics teams, and root cause analysis specialists). When activated, initiate and direct the security incident response process and exercise decision making authority within the scope of the role to ensure timely and effective resolution.

Required Knowledge, Skills, and Activities:
  • Strong understanding of IT risk frameworks, compliance requirements, and security standards (e.g., PCI DSS, NIST, ISO 27001).
  • Experience supporting internal audits, managing risk registers, and working with external compliance assessors.
  • Excellent communication and interpersonal skills with both technical and non-technical stakeholders.
  • Highly organized with attention to detail, especially in documenting controls and producing reports.
  • Knowledge of disaster recovery planning and operational resilience practices.
  • Strong communications and interpersonal skills with a customer-service orientation, including listening, written, and verbal communication
  • Strong informal or formal project management skills with a proven history of getting projects done and meeting project goals utilizing teams
  • Familiarity with threat detection platforms, endpoint security, vulnerability scanning tools, and log analysis.
  • Ability to conduct root cause analysis and support containment, eradication, and recovery efforts.
  • Strong ability to effectively prioritize work
  • Must be able to work independently
  • Distinctive blend of business, IT, financial and communication skills, because this is a highly visible position with substantial impact
  • Knowledge of project management methodology and experience or familiarity with major, defined program management approaches.
  • Knowledge of project planning/scheduling tools, with a solid track record of practical application.
  • Effective influencing and negotiating skills in an environment in which this role may not directly control resources
  • Strong knowledge and understanding of business needs, with the ability to establish and maintain a high level of customer trust and confidence
  • Ability to communicate ideas in both technical and user-friendly language.
  • Good analytical and problem-solving abilities.
  • Highly self-motivated and directed.
  • Experience working in a team-oriented, collaborative environment.
  • Additional working hours as required

Required and Preferred Education, Experience, and Credentials:
Required
Candidates will be evaluated primarily upon their ability to demonstrate the competencies required to be successful in the role, as described above. For reference, the typical work experience and educational background of candidates in this role are as follows:
  • Bachelor's degree in Cybersecurity, Information Systems, or a related field, or equivalent experience.
  • Minimum 3-5 years of experience in IT risk management, information security, cybersecurity operations, or IT audit.
  • Experience supporting disaster recovery planning and regulatory compliance efforts.

Preferred
  • Background in security architecture is a plus.
  • Preferred certifications: CISA, CRISC, CISSP, or equivalent.

Equal Opportunity Employer
This employer is required to notify all applicants of their rights pursuant to federal employment laws.
For further information, please review the Know Your Rights notice from the Department of Labor.