1

Technology Risk Manager Jobs in Oregon (NOW HIRING)

Enterprise Risk Analyst - AI Risk

OR · On-site +1

$68K - $127K/yr

The opportunity to help shape and mature AI risk management practices at a leading financial institution. * Exposure to Emerging Technologies: Work with cutting-edge AI technologies, including ...

With business and technology transformation on the horizon, there's never been a better time to be ... Risk Manager. * The ability to help strengthen organizational resilience and protect the ...

New

Staff Machine Learning Model Risk Specialist

OR · On-site +1

$98K/yr

This work is essential for Upstart's internal risk management, ensuring that our models help us ... You will apply a risk-based approach across technologies that range from traditional statistical ...

New

Showing results 21-40

Technology Risk Manager information

See Oregon salary details

$54.5K

$117.9K

$179.7K

How much do technology risk manager jobs pay per year?

As of Aug 20, 2026, the average yearly pay for technology risk manager in Oregon is $117,947.00, according to ZipRecruiter salary data. Most workers in this role earn between $95,200.00 and $136,400.00 per year, depending on experience, location, and employer.

What is a technology risk manager?

Technology Risk Managers are professionals responsible for identifying, assessing, and mitigating risks associated with information technology systems and processes within an organization. They ensure that IT operations comply with regulations and best practices while safeguarding data and technology assets from threats such as cyberattacks, data breaches, and system failures. Their work involves developing risk management strategies, conducting risk assessments, and collaborating with other departments to ensure the organization's technology infrastructure is secure and resilient.

What are some common challenges technology risk managers face when working across different departments?

Technology Risk Managers often encounter challenges in aligning risk management strategies with the priorities of various business units. Departments may have differing levels of risk tolerance, technical understanding, and resource availability, which can make establishing consistent policies and controls difficult. Success in the role relies on strong communication and negotiation skills, as well as the ability to educate stakeholders about the importance of risk mitigation while balancing business objectives. Building collaborative relationships and maintaining flexibility are key to overcoming these cross-departmental challenges.

What are the key skills and qualifications needed to thrive as a technology risk manager, and why are they important?

To thrive as a Technology Risk Manager, you need expertise in risk assessment, cybersecurity principles, and regulatory compliance, often supported by a degree in information security or related fields. Familiarity with risk management frameworks (such as NIST or ISO 27001), GRC (governance, risk, and compliance) tools, and certifications like CISM or CISSP are typically required. Strong analytical thinking, communication, and stakeholder management skills help you translate technical risks into business terms and coordinate mitigation efforts. These abilities are critical to proactively identifying threats and ensuring organizational resilience against evolving technology risks.

What is the difference between Technology Risk Manager vs Cybersecurity Analyst?

AspectTechnology Risk ManagerCybersecurity Analyst
CertificationsCRISC, CISSP, CISACISSP, CEH, Security+
Work EnvironmentRisk assessment, policy development, complianceMonitoring security threats, incident response, vulnerability analysis
Industry UsageFinancial, healthcare, technology firmsIT security teams, government agencies, corporations

The Technology Risk Manager focuses on identifying and mitigating overall technology risks and ensuring compliance, while the Cybersecurity Analyst concentrates on protecting systems from security threats and responding to incidents. Both roles require similar certifications and often work within the same industries, but their core responsibilities differ in scope and focus.

Infographic showing various Technology Risk Manager job openings in Oregon as of August 2026, with employment types broken down into 84% Full Time, 15% Part Time, and 1% Contract. Highlights an 81% Physical, 2% Hybrid, and 17% Remote job distribution, with an average salary of $117,947 per year, or $56.7 per hour.

Senior Information Risk Officer

Columbia Banking System, Inc.

Portland, OR • On-site

$85K - $120K/yr

Full-time

Medical, Dental, Vision, Life, Retirement, PTO

Posted 22 days ago


Job description

About the Role:
Responsible for leading information governance, risk, and compliance efforts, including the establishment and maintenance of key risk management, monitoring, and validation activities and facilitating the development of relevant policies and standards.

  • Maintain governance documentation detailing how information should be secured including the maintenance and development of internal process/procedure documentation.

  • Perform formal risk assessments and self-assessments for key processes and technologies, leveraging industry standards like CIS, ITIL, and COBIT to build a unique program for Columbia Bank.

  • Analyze internal technology and security controls to ensure compliance with documented and approved standards. Ensure that information systems and vendors within the Bank's operating environment comply with company policies, standards, and procedures.

  • Drive and provide advisory and subject-matter expertise to technology teams and business units for compliance readiness.

  • Responsible for tracking and monitoring gaps in key Bank risk programs. Maintain gap analysis documents; gather necessary information from technology and lines of business to identify areas to improve banking practices.

  • Identify new assets or vendors and oversee the risk evaluation process to determine the risk ranking.

  • Facilitate and liaise with technology leaders, key corporate risk and operational groups (including TPO, TAG, Internal Audit, Corporate Compliance, Enterprise Risk Management, Legal) to ensure alignment with these groups and meet obligations.

  • Demonstrates compliance with all bank regulations for assigned job function and applies to designated job responsibilities - knowledge may be gained through coursework and on-the-job training. Keeps up to date on regulation changes.

  • Follows all Bank policies and procedures, compliance regulations, and completes all required annual or job-specific training.

  • Maintain a working knowledge of Bank's written policies and procedures regarding Bank Secrecy Act, Regulation P, Regulation CC, Regulation E, Bank Security and other regulations as applicable to this job description.

  • May be asked to coach, mentor, or train others and teach coursework as subject matter expert.

  • Actively learns, demonstrates, and fosters the Columbia corporate culture in all actions and words.

  • Takes personal initiative and is a positive example for others to emulate.

  • Embraces our vision and strategic direction

  • May perform other duties as assigned.


About You:

  • H.S. Diploma/GED (preferred)

  • Bachelor's Degree in computer science or equivalent (preferred)

  • 7-10 years - of experience in or a combination of information security, IT audit, or information technology operations. (Required)

  • Knowledge of risk management processes including information security management. Experience evaluating controls relative to information security frameworks such as ISO 27002, NIST 800 series, or financial services regulatory frameworks such as the FFIEC IT booklets and Cybersecurity Assessment Tool (CAT).

  • Knowledge of systems and network concepts including: access, authorization, configuration, and design.

  • Demonstrated understanding of information security concepts including: encryption, access controls, network security, security operations, security architect, threat modeling and design.

  • Knowledge of applicable regulatory requirements including PCI DSS, GLBA and HIPAA.

  • Ability to operate in a cross-functional environment, build, and foster relationships with other departments and stakeholders.

  • Ability to anticipate and respond to changing priorities and operate effectively in a dynamic demand-based environment, requiring extreme flexibility and responsiveness.


Licenses/Certifications

  • CISA, CRISC, CISSP, CISM, or SANS GIAC (GSNA, etc.)

Travel Requirements

  • Occasional


The pay range for this role is $85,000.00 - $120,000.00.

The pay rate for the selected candidate is dependent upon a variety of non-discriminatory factors including, but not limited to, job-related knowledge, skills, and experience, education, and geographic location. The role may be eligible for performance-based incentive compensation, and those details will be provided during the recruitment process.

Primary Location: Ability to work fully onsite at posted location(s).

111 N Wall St Building Spokane WA 99201

Our Benefits:


We are proud to offer a competitive total rewards package including base wages and comprehensive benefits.

We offer eligible associates comprehensive healthcare coverage (medical, dental, and vision plans), a 401(k)-retirement savings plan with employer match for qualifying associate contributions, an employee assistance program, life insurance, disability insurance, tuition assistance, mental health resources, identity theft protection, legal support, auto and home insurance, pet insurance, access to an online discount marketplace, and paid vacation, sick days, volunteer days, and holidays. Benefit eligibility begins the first day of the month following the date of hire for associates who are regularly scheduled to work at least thirty hours weekly.


Our Commitment to Diversity:


Columbia Bank is an equal opportunity and affirmative action employer committed to employing, engaging, and developing a diverse workforce. All qualified applicants will receive consideration for employment without regard to race, color, national origin, religion, sex, age, sexual orientation, gender identity, gender expression, protected veteran status, disability, or any other applicable protected status or characteristics. If you require an accommodation to complete the application or interview(s), please let us know by email: careers@columbiabank.com.


To Staffing and Recruiting Agencies:


Our posted job opportunities are only intended for individuals seeking employment at Columbia Bank. Columbia Bank does not accept unsolicited resumes or applications from agencies and Columbia Bank will not be responsible for any fees related to unsolicited resume submissions. Staffing and recruiting agencies are not authorized to submit profiles, applications, or resumes to this site or to any Columbia Bank employee and any such submissions will be considered unsolicited unless requested directly by a member of the Talent Acquisition team.