Cyber and IT Risk Management Job Qualifications: Skills: GRC Tools, NIST 800-53, Risk Management Framework Certifications: None Experience: 3 + years of related experience US Citizenship Required: No ...
Cyber and IT Risk Management Job Qualifications: Skills: GRC Tools, NIST 800-53, Risk Management Framework Certifications: None Experience: 3 + years of related experience US Citizenship Required: No ...
Information Security Risk and Governance Specialist, Senior
El Dorado Hills, CA · On-site
$102K - $154K/yr
Your Role The Technology and Data Trust Assurance Services team drives BSC technology and ... The Technology Risk and External Assurance program runs technology governance forums including the ...
Information Security Risk and Governance Specialist, Senior
El Dorado Hills, CA · On-site
$102K - $154K/yr
Your Role The Technology and Data Trust Assurance Services team drives BSC technology and ... The Technology Risk and External Assurance program runs technology governance forums including the ...
Overall Purpose: Top technical subject matter expert providing technical and risk management ... Typically 15 or more years of progressive related information technology or information security ...
New
Overall Purpose: Top technical subject matter expert providing technical and risk management ... Typically 15 or more years of progressive related information technology or information security ...
New
Sr. IT Risk Manager
San Francisco, CA · Hybrid
Overall Purpose This position is responsible for consulting with, educating and supporting Technology on the execution of enterprise and operational risk programs, promoting an environment of risk ...
Sr. IT Risk Manager
San Francisco, CA · Hybrid
Overall Purpose This position is responsible for consulting with, educating and supporting Technology on the execution of enterprise and operational risk programs, promoting an environment of risk ...
As part of the OCIO, the IT Governance, Risk, and Compliance (GRC) team's mission is to drive IT risk management and compliance strategy, capabilities, and deliverables across the organization. Our ...
As part of the OCIO, the IT Governance, Risk, and Compliance (GRC) team's mission is to drive IT risk management and compliance strategy, capabilities, and deliverables across the organization. Our ...
The Assurance Senior Manager, Technology Risk Assurance is responsible for acting as an IT audit technical resource to clients, as well as internal stakeholders (Assurance teams), in the resolution ...
The Assurance Senior Manager, Technology Risk Assurance is responsible for acting as an IT audit technical resource to clients, as well as internal stakeholders (Assurance teams), in the resolution ...
Risk Management Analyst
Sacramento, CA · On-site
Risk Management Analyst Location: Sacramento, CA Duration: 12 Months Minimum Skills: * Must ... Working knowledge of common IT security impacted regulations and/or standards such as ISO/IEC 27001 ...
Risk Management Analyst
Sacramento, CA · On-site
Risk Management Analyst Location: Sacramento, CA Duration: 12 Months Minimum Skills: * Must ... Working knowledge of common IT security impacted regulations and/or standards such as ISO/IEC 27001 ...
Manager of Internal Controls- Technology Risk
South San Francisco, CA · On-site
$120K - $160K/yr
Position Summary The Manager of Internal Controls - Technology Risk will serve as an expert for IT General Controls (ITGCs), automated controls, systems governance, and technology-enabled ICFR ...
Quick apply
Manager of Internal Controls- Technology Risk
South San Francisco, CA · On-site
$120K - $160K/yr
Position Summary The Manager of Internal Controls - Technology Risk will serve as an expert for IT General Controls (ITGCs), automated controls, systems governance, and technology-enabled ICFR ...
The Assurance Senior Manager, Technology Risk Assurance is responsible for acting as an IT audit technical resource to clients, as well as internal stakeholders (Assurance teams), in the resolution ...
The Assurance Senior Manager, Technology Risk Assurance is responsible for acting as an IT audit technical resource to clients, as well as internal stakeholders (Assurance teams), in the resolution ...
The Compliance Assessor of IT Risk & Compliance Management performs Security Risk Assessments on DIRECTV's 3rd party vendors. An assesment would typically involve the following tasks: Communicating ...
The Compliance Assessor of IT Risk & Compliance Management performs Security Risk Assessments on DIRECTV's 3rd party vendors. An assesment would typically involve the following tasks: Communicating ...
Your Role The Technology and Data Trust Assurance Services team drives BSC technology and ... The Technology Risk and External Assurance program runs technology governance forums including the ...
Your Role The Technology and Data Trust Assurance Services team drives BSC technology and ... The Technology Risk and External Assurance program runs technology governance forums including the ...
IT Program Project Manager
Santa Clara, CA · Hybrid
$114K - $135K/yr
Governance Risk and Compliance GRC and IT Risk Management, Project Planning, Pursuit/ Proposal Management, Risk/Crisis Management We are seeking an accomplished IT Program Project Manager with deep ...
IT Program Project Manager
Santa Clara, CA · Hybrid
$114K - $135K/yr
Governance Risk and Compliance GRC and IT Risk Management, Project Planning, Pursuit/ Proposal Management, Risk/Crisis Management We are seeking an accomplished IT Program Project Manager with deep ...
... to evaluate risk factors, pricing implications, and coverage considerations for specialized ... of technology innovations and related insurance implications Skills and Competencies • ...
... to evaluate risk factors, pricing implications, and coverage considerations for specialized ... of technology innovations and related insurance implications Skills and Competencies • ...
Senior Analyst, Information Security Governance, Risk, & Compliance
Commerce, CA · On-site
$121K - $152K/yr
The position will also manage, maintain, and administer the company's IT Risk Register and Information Security Awareness Training program. Minimum Requirements * A bachelor's degree in business ...
Senior Analyst, Information Security Governance, Risk, & Compliance
Commerce, CA · On-site
$121K - $152K/yr
The position will also manage, maintain, and administer the company's IT Risk Register and Information Security Awareness Training program. Minimum Requirements * A bachelor's degree in business ...
The position will also manage, maintain, and administer the company's IT Risk Register and Information Security Awareness Training program. Minimum Requirements * A bachelor's degree in business ...
The position will also manage, maintain, and administer the company's IT Risk Register and Information Security Awareness Training program. Minimum Requirements * A bachelor's degree in business ...
Work with client senior management to design, and implement new IT risk and control frameworks, sustainable solutions (including applying knowledge of governance, risk and security tools), operating ...
Work with client senior management to design, and implement new IT risk and control frameworks, sustainable solutions (including applying knowledge of governance, risk and security tools), operating ...
If yes, consider joining Baker Tilly (BT) as an IT Audit, Cybersecurity & Risk Senior Consultant ! Our Risk Advisory practice provides a full spectrum of services to help our clients assess their ...
If yes, consider joining Baker Tilly (BT) as an IT Audit, Cybersecurity & Risk Senior Consultant ! Our Risk Advisory practice provides a full spectrum of services to help our clients assess their ...
If yes, consider joining Baker Tilly (BT) as an IT Audit, Cybersecurity & Risk Senior Consultant ! Our Risk Advisory practice provides a full spectrum of services to help our clients assess their ...
If yes, consider joining Baker Tilly (BT) as an IT Audit, Cybersecurity & Risk Senior Consultant ! Our Risk Advisory practice provides a full spectrum of services to help our clients assess their ...
Sr. Technology Auditor
San Francisco, CA · On-site
$110K - $145K/yr
Execute end-to-end IT audits, including planning, risk assessment, execution, and reporting, while driving alignment with cross-functional stakeholders. * Assess the design and operating ...
Sr. Technology Auditor
San Francisco, CA · On-site
$110K - $145K/yr
Execute end-to-end IT audits, including planning, risk assessment, execution, and reporting, while driving alignment with cross-functional stakeholders. * Assess the design and operating ...
Sr. Technology Auditor
San Francisco, CA · On-site
$110K - $145K/yr
Execute end-to-end IT audits, including planning, risk assessment, execution, and reporting, while driving alignment with cross-functional stakeholders. * Assess the design and operating ...
Sr. Technology Auditor
San Francisco, CA · On-site
$110K - $145K/yr
Execute end-to-end IT audits, including planning, risk assessment, execution, and reporting, while driving alignment with cross-functional stakeholders. * Assess the design and operating ...
Technology Risk information
See California salary details
$19.04 is the 25th percentile. Wages below this are outliers.
$14.23 - $19.58
28% of jobs
The median wage is $22.78 / hr.
$19.58 - $24.93
37% of jobs
$24.93 - $30.28
6% of jobs
$33.62 is the 75th percentile. Wages above this are outliers.
$30.28 - $35.63
6% of jobs
$35.63 - $40.98
12% of jobs
$40.98 - $46.33
0% of jobs
$46.33 - $51.67
0% of jobs
$51.67 - $57.02
8% of jobs
$57.02 - $62.37
0% of jobs
$62.37 - $67.72
0% of jobs
$67.72 - $73.07
2% of jobs
$14
$29
$73
How much do technology risk jobs pay per hour?
Is SOC an entry level job?
Can I make $200 a year in cyber security?
What are some common challenges faced by professionals working in Technology Risk roles?
What are the key skills and qualifications needed to thrive in Technology Risk, and why are they important?
What jobs are at risk due to technology?
What is the difference between Technology Risk vs Cybersecurity Analyst?
| Aspect | Technology Risk | Cybersecurity Analyst |
|---|---|---|
| Primary Focus | Identifying and managing technology-related risks to business operations | Protecting systems and data from cyber threats and attacks |
| Certifications | CRISC, CISSP, CISA | CISSP, CEH, Security+ |
| Work Environment | Risk management teams, compliance departments | Security operations centers, IT security teams |
| Industry Usage | Finance, healthcare, technology firms | Any industry with digital assets, especially finance and government |
Technology Risk professionals focus on assessing and mitigating risks associated with technology systems and processes, ensuring compliance and reducing potential disruptions. Cybersecurity Analysts primarily work to defend systems from cyber threats, focusing on security measures and incident response. While both roles involve technology and security, their core objectives and daily tasks differ significantly.
What are 5 risks of technology?
What is Technology Risk?

Full-time
Medical, Dental, Vision, Life, Retirement, PTO
Posted 18 days ago
General Dynamics Information Technology rating
7.8
Based on 63 frontline employees who took The Breakroom Quiz
70th of 204 rated it services
Job description
Type of Requisition:
RegularClearance Level Must Currently Possess:
NoneClearance Level Must Be Able to Obtain:
NonePublic Trust/Other Required:
NoneJob Family:
Cyber and IT Risk ManagementJob Qualifications:
Skills:
GRC Tools, NIST 800-53, Risk Management FrameworkCertifications:
NoneExperience:
3 + years of related experienceUS Citizenship Required:
NoJob Description:
Transform technology into opportunity as an IT Risk and Compliance Senior Specialist with GDIT. A career in enterprise IT means connecting and enhancing the systems that matter most. At GDIT you'll be at the forefront of innovation and play a meaningful part in improving how agencies operate.
GDIT's Technology Shared Services (TSS), Governance, Risk, and Compliance (GRC) team is seeking an experienced IT Risk and Compliance Senior Specialist with experience as an Information System Security Officer (ISSO). Our team provides services across GDIT programs to ensure the confidentiality, integrity, and availability of information systems while supporting compliance with relevant regulations and standards.
This role requires a highly knowledgeable self-starter to independently develop key artifacts based on NIST 800-171. The ideal candidate will operate in a dynamic, high-tempo environment, applying expertise in risk management and regulatory compliance to protect critical information assets.
HOW THE IT RISK AND COMPLIANCE SPECIALIST WILL MAKE AN IMPACT:
- Manage and/or maintain the security posture and authorization lifecycle for multiple cloud and on-premises information systems.
- Collaborate with stakeholders to attain information necessary for continuous monitoring activities, including vulnerability scan analysis, audit log reviews, and supporting the SCA/ISSM during security control assessments.
- Develop, maintain, and update security documentation, including System Security Plans (SSPs), Plan of Action & Milestones (POAMs), network architectures
- Collaborate with stakeholders in order to develop program/project cyber policies .
- Familiarization with NIST 800 series documentation, ( NIST 800-171, GD and GDIT Cybersecurity policies), hardening guidance from vendors and US Government clients.
- Posses the ability to interpret vulnerability scan reports and coordinate with program stakeholders in order to remediate actions to closure and develop presentations and brief findings as needed.
- Support incident response, contingency planning, and disaster recovery efforts as needed by program and stakeholders.
- Serve as the program ISSO and represent the interests of the system owners, developers, and administrators.
- The ISSO will Interface with auditors and assessors during security control assessments and authorization events.
- Facilitate and collaborate with data owners, system owners, authorizing officials, and technical teams to prepare, implement,and monitor privacy and security controls in accordance with organizational risk policy.
- Ensure compliance with applicable GDIT requirements and policies
- maintain cyber compliance processes, procedures, and standards
- Collaborate stakeholders to design and implement security controls for new and existing systems and lab environments
- Maintain and update security documentation, including System Security Plans (SSPs, Architecture Diagrams, , Plan of Action and Milestones (POA&Ms), and other AO/AODR required documents, etc.
- Support security assessments and audits as a key stakeholder during the SCA/ISSMs evaluation of the security controls,
- Review vulnerability and compliance scan reports, and other relevant security reports and alerts for assigned systems
- Support incident response activities, including investigation, containment, and recovery efforts and annual incident response testing
WHAT YOU'LL NEED TO SUCCEED:
- Technical Training, Certification(s) or Degree
- Minimum of 3+ years of experience serving as an ISSO for either Corporate or program levels with a basic understanding of ISSO duties and responsibilities and awareness of GRC tools (eMASS or XACTA)
- Experience supporting security projects as well as delivering and supporting customer security requirements
- Comprehension of change and configuration management and security impact analysis
- Excellent problem-solving, analytical, and communication skills
- Ability to effectively collaborate across multi-functional teams
- Possesses experience with communicating and presenting technical solutions and status to executives, key stakeholders and decision makers
- Familiarity with security tools and technologies (e.g., Firewalls, VPNs, SIEM, End Point Protection, Vulnerability & Compliance Scanning, Identity & Access Management)
- Ability to develop network architectures or follow templated examples in order to properly document a network architecture.
- Knowledge of IT risk management frameworks and regulatory requirements (e.g., NIST 800-171, ISO 27001)
- Knowledge of Security and privacy controls (e.g., CIS Level 2, DISA STIG)
- Knowledge of DoD security authorization process
- Knowledge of Security auditing practices and procedures and associated processes
PREFERRED QUALIFICATIONS:
- Proven track record of successfully managing large-scale IT risk and compliance programs
- Relevant certifications such as IAT Level II/8570/8140, Security +CE Preferred
- Experience with Microsoft Office Products, Adobe Pro, Visio, JIRA, ServiceNow
- Experience in a government
- Familiarity with cloud security best practices and technologies
- Must be clearable up to Top Secret
- Bachelor's degree in computer science, information technology, information/cyber security or a related field
Location: Hybrid at GDIT's Integrated Technology Center in Bossier City, Louisiana. Candidates residing within the state of Louisiana who are more than 60 miles from our office in Bossier City may be considered to work remotely.
GDIT IS YOUR PLACE
At GDIT, the mission is our purpose, and our people are at the center of everything we do.
Growth: AI-powered career tool that identifies career steps and learning opportunities
Support: An internal mobility team focused on helping you achieve your career goals
Rewards: Comprehensive benefits and wellness packages, 401K with company match, and competitive pay and paid time off
Flexibility: Full-flex work week to own your priorities at work and at home
Community: Award-winning culture of innovation and a military-friendly workplace
OWN YOUR OPPORTUNITY
Explore a career in cyber at GDIT and you'll find endless opportunities to grow alongside colleagues who share your focus on defending and protecting what matters.
Scheduled Weekly Hours:
40Travel Required:
Less than 10%Telecommuting Options:
RemoteWork Location:
USA LA Home Office (LAHOME)Additional Work Locations:
Total Rewards at GDIT:
Our benefits package for all US-based employees includes a variety of medical plan options, some with Health Savings Accounts, dental plan options, a vision plan, and a 401(k) plan offering the ability to contribute both pre and post-tax dollars up to the IRS annual limits and receive a company match. To encourage work/life balance, GDIT offers employees full flex work weeks where possible and a variety of paid time off plans, including vacation, sick and personal time, holidays, paid parental, military, bereavement and jury duty leave. To ensure our employees are able to protect their income, other offerings such as short and long-term disability benefits, life, accidental death and dismemberment, personal accident, critical illness and business travel and accident insurance are provided or available. We regularly review our Total Rewards package to ensure our offerings are competitive and reflect what our employees have told us they value most.Our Identity Verification Process:
As part of the hiring process, we will ask you to complete an identity verification process that leverages advanced biometrics and artificial intelligence to ensure authenticity and protect against identity fraud. You are expected to be on camera during virtual interviews. We reserve the right to take your picture to verify your identity and prevent fraud. By proceeding, you authorize the collection, processing, and use of your biometric data for identity verification and security purposes.About Our Work:
We are GDIT. A global technology and professional services company that delivers consulting, technology and mission services to every major agency across the U.S. government, defense and intelligence community. Our 26,000 experts extract the power of technology to create immediate value and deliver solutions at the edge of innovation. We operate across 50 countries worldwide, offering leading capabilities in digital modernization, AI/ML, Cloud, Cyber and application development. Together with our clients, we strive to create a safer, smarter world by harnessing the power of deep expertise and advanced technology.Join our Talent Community to stay up to date on our career opportunities and events atgdit.com/tc.
Equal Opportunity Employer / Individuals with Disabilities / Protected VeteransWhat General Dynamics Information Technology employees say
Pay
Benefits
Hours and flexibility
Workplace
Get the full story on Breakroom
About General Dynamics Information Technology
Sourced by ZipRecruiter
GDIT is a global technology and professional services company that delivers technology solutions and mission services to every major agency across the U.S. government, defense, and intelligence community. Its 30,000 experts extract the power of technology to create immediate value and deliver solutions at the edge of innovation. The company operates across 50+ countries worldwide, offering leading capabilities in digital modernization, AI/ML, cloud, cyber, and application development.
Industry
It services
Company size
10,000+ Employees
Headquarters location
Falls Church, VA, US