1

Technology Risk Jobs in Virginia (NOW HIRING)

(LoD2) Technology Risk Specialist

Richmond, VA · On-site +1

$97K/yr

Partner with Enterprise Technology teammates and stakeholders in assigned oversight areas, advise on risk-related topics, effectively challenge through risk programs, and independently evaluate ...

Technology Risk Senior Specialist

Richmond, VA · On-site +1

$97K/yr

Partner with Enterprise Technology teammates and stakeholders in assigned oversight areas, advise on risk-related topics, effectively challenge through risk programs, and independently evaluate ...

The Enterprise Operations & Technology (EO&T) Risk Governance Team provides risk management support for the maturation of the EO&T division's model risk governance process, third-party vendor risk ...

The Enterprise Operations & Technology (EO&T) Risk Governance Team provides risk management support for the maturation of the EO&T division's model risk governance process, third-party vendor risk ...

Job Family: IT Risk & Controls Consulting Travel Required: Up to 10% Clearance Required: Ability to Obtain Public Trust What You Will Do: The IT Risk and Controls Managing Consultant will support ...

The IT Risk Assessor is responsible for assisting with meeting security and compliance requirements per state and federal standards. The risk assessor will review information system security controls ...

next page

Showing results 1-20

Technology Risk information

See Virginia salary details

$14

$30

$73

How much do technology risk jobs pay per hour?

As of Jul 31, 2026, the average hourly pay for technology risk in Virginia is $30.08, according to ZipRecruiter salary data. Most workers in this role earn between $19.33 and $38.37 per hour, depending on experience, location, and employer.

What are some common challenges faced by professionals working in Technology Risk roles?

Professionals in Technology Risk often encounter challenges such as keeping up with rapidly evolving cyber threats, ensuring regulatory compliance across different jurisdictions, and effectively communicating technical risks to non-technical stakeholders. Balancing proactive risk mitigation with the need to support business innovation can also be demanding. Collaboration with IT, legal, and business units is essential to identify vulnerabilities and implement practical controls without hindering productivity.

What are the key skills and qualifications needed to thrive in Technology Risk, and why are they important?

To thrive in Technology Risk, you need a solid understanding of IT systems, cybersecurity principles, risk management frameworks, and often a degree in information technology or a related field. Familiarity with tools like GRC (Governance, Risk, and Compliance) platforms, vulnerability assessment software, and certifications such as CISA, CISSP, or CRISC are commonly required. Strong analytical thinking, attention to detail, and effective communication skills help professionals assess threats and convey complex risk issues to diverse stakeholders. These skills ensure organizations can proactively identify, assess, and mitigate technology risks to protect assets and maintain regulatory compliance.

What jobs are at risk due to technology?

Technology risk professionals are concerned that automation, artificial intelligence, and evolving cybersecurity threats could impact roles such as manual data entry, basic IT support, and routine compliance tasks. These jobs may be increasingly automated or require advanced technical skills to adapt to changing technology environments.

What is the difference between Technology Risk vs Cybersecurity Analyst?

AspectTechnology RiskCybersecurity Analyst
Primary FocusIdentifying and managing technology-related risks to business operationsProtecting systems and data from cyber threats and attacks
CertificationsCRISC, CISSP, CISACISSP, CEH, Security+
Work EnvironmentRisk management teams, compliance departmentsSecurity operations centers, IT security teams
Industry UsageFinance, healthcare, technology firmsAny industry with digital assets, especially finance and government

Technology Risk professionals focus on assessing and mitigating risks associated with technology systems and processes, ensuring compliance and reducing potential disruptions. Cybersecurity Analysts primarily work to defend systems from cyber threats, focusing on security measures and incident response. While both roles involve technology and security, their core objectives and daily tasks differ significantly.

What tech jobs are safe?

Technology Risk professionals focus on identifying and mitigating risks related to IT systems, cybersecurity, and data protection. These roles are generally stable due to ongoing cybersecurity threats and regulatory requirements, and often require skills in risk assessment, compliance, and familiarity with security tools. Continuous learning and certifications like CISSP or CISA can enhance job security in this field.

What is an example of a technology risk?

A technology risk for a Technology Risk professional involves potential threats to information systems, such as cybersecurity breaches, data loss, or system failures. These risks can result from vulnerabilities in hardware, software, or network security, and managing them requires skills in risk assessment, controls, and compliance frameworks like ISO 27001.

What is Technology Risk?

Technology risk refers to the potential for losses or disruptions in an organization due to failures, vulnerabilities, or misuse of technology systems and infrastructure. Professionals in technology risk assess, manage, and mitigate risks related to cybersecurity, data privacy, IT systems, and compliance with regulations. Their work is crucial for protecting sensitive information, ensuring business continuity, and maintaining trust with clients and stakeholders.

What is the technology risk role?

A technology risk role involves identifying, assessing, and managing risks related to information technology systems and infrastructure. Professionals in this field analyze vulnerabilities, implement controls, and ensure compliance with security standards, often using tools like risk assessment frameworks and cybersecurity certifications. The role supports organizations in minimizing technology-related threats and ensuring operational resilience.
What are the most commonly searched types of Technology Risk jobs in Virginia? The most popular types of Technology Risk jobs in Virginia are:
Infographic showing various Technology Risk job openings in Virginia as of July 2026, with employment types broken down into 1% As Needed, 86% Full Time, 10% Part Time, and 3% Contract. Highlights an 91% Physical, 3% Hybrid, and 6% Remote job distribution, with an average salary of $62,558 per year, or $30.1 per hour.

(LoD2) Technology Risk Specialist

Truist

Richmond, VA • On-site, Remote

$97K/yr

Full-time

Medical, Dental, Vision, Life, Retirement, PTO

Posted 6 days ago


Truist rating

7.9

Company rating: 7.9 out of 10

Based on 117 frontline employees who took The Breakroom Quiz

78th of 170 rated banks


Job description

The position is described below. If you want to apply, click the Apply Now button at the top or bottom of this page. After you click Apply Now and complete your application, you'll be invited to create a profile, which will let you see your application status and any communications. If you already have a profile with us, you can log in to check status.

Need Help?

If you have a disability and need assistance with the application, you can request a reasonable accommodation. Send an email to Accessibility (accommodation requests only; other inquiries won't receive a response).

Regular or Temporary:

Regular

Language Fluency: English (Required)

Work Shift:

1st shift (United States of America)Please review the following job description:Individual contributor to the Truist second-line-of-defense (LoD2) Technology Risk team responsible for independent risk oversight of one or more Technology Risk Framework domains and/or Business Unit Technology areas. Partner with Enterprise Technology teammates and stakeholders in assigned oversight areas, advise on risk-related topics, effectively challenge through risk programs, and independently evaluate technology risk in the Truist environment.

**For this opportunity, Truist will not sponsor an applicant for work visa status or employment authorization, nor will we offer any immigration-related support for this position. This includes, but is not limited to:

  • H-1B,

  • F-1 OPT

  • F-1 STEM OPT

  • F-1 CPT

  • J-1

  • TN-1

  • TN-2

  • E-3

  • O-1

  • Future sponsorship for U.S. lawful permanent residence status

LOCATION:

Please note that candidate must be located in *or* willing to self-relocate to one of the following locations:

  • Charlotte, NC

  • Raleigh, NC

  • Richmond, VA

  • Atlanta, GA

Truist 'in office' requirement is 5 days per week. No full remote or relocation assistance available at this time.

ESSENTIAL DUTIES AND RESPONSIBILITIES

Following is a summary of the essential functions for this job. Other duties may be performed, both major and minor, which are not mentioned below. Specific activities may change from time to time.

1. Provides independent risk oversight (i.e. second line of defense/LOD2) for Truist Technology and related consult to Truist Business Units through the effective identification, mitigation, monitoring and reporting of technology risk and other related risks (e.g., operational, compliance) within Enterprise Technology.

2. Serve as a subject matter expert and steward of the Technology Risk Framework to identify, report and mitigate technology risks.

3. Execute independent assessment and oversight of the maturity of technology and adequacy of technology controls to achieve business outcomes for performance, stability, security and service availability.

4. Strengthen and sustains proactive risk culture through conducting effective risk focused management and partnership routines with technology teams and internal partners.

5. Review and challenge outcomes of first-line-of-defense risk program execution.

6. Monitor legal, regulatory, compliance and audit matters for assigned Technology oversight area and ensures timely action.

7. Contribute to complex projects which may have both technology and enterprise wide impact beyond risk management.

8. Comfortable and has demonstrated effectiveness in interdisciplinary, matrix environments.

Required Qualifications:

The requirements listed below are representative of the knowledge, skill and/or ability required. Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions.

1. Bachelor's Degree or an equivalent combination of education and experience.

2. 5+ years of banking, technology, operations or risk management experience.

3. Strong business acumen / knowledge, problem solving, critical thinking and decision-making skills.

4. Excellent interpersonal and communication skills demonstrating the ability to establish credibility with all levels of management effectively. Demonstrated effective influencing skills.

5. Demonstrated consistent execution and delivery of high-quality work products

6. Comfort with data and applying analysis to derive value-add insights

7. Adept with Microsoft Office products.

Preferred Qualifications:

  • Demonstrated ability to act as a trusted second line partner to first line Technology, Data, and Operations leaders, including Enterprise Architecture and CTO teams, balancing independent risk oversight with practical, solutionoriented guidance

  • Experience operating in a second line of defense role within a regulated financial services environment, providing independent risk oversight, effective challenge, and credible advisory support to technology and engineering teams.

  • Strong expertise in cloud risk management, with hands-on knowledge of AWS and its use within financial institutions, including assessment of inherent and residual risk, control design, and ongoing monitoring.

  • Demonstrated understanding of both application and infrastructure risk in cloud environments.

  • Experience supporting enterprise cloud transformation initiatives (e.g., migration from onprem to cloud), ensuring risks are identified, managed, and aligned with the firm's risk appetite and regulatory expectations.

  • Solid understanding of Secure SDLC and change management practices in a financial services context, including how controls are embedded across development, testing, deployment, and release cycles.

  • Prior developer, engineering, or architecture experience, or deep familiarity working with development teams, enabling effective oversight of CI/CD pipelines, standardized deployment patterns, and automated controls.

  • Ability to evaluate control effectiveness across key risk domains, including identity and access management, data protection, vulnerability management, incident response, business continuity, and thirdparty risk.

  • Strong communication and influencing skills, with the ability to translate complex technical risks into clear, actionable insights for senior management, risk committees, auditors, and regulators.

  • Relevant certifications preferred, such as:

    • AWS Certified Solutions Architect or Security - Specialty

    • CISSP, CISM, CRISC, or similar technology risk credentials

The annual base salary for this position is $150,000 - $160,000.

General Description of Available Benefits for Eligible Employees of Truist Financial Corporation: All regular teammates (not temporary or contingent workers) working 20 hours or more per week are eligible for benefits, though eligibility for specific benefits may be determined by the division of Truist offering the position.Truist offers medical, dental, vision, life insurance, disability, accidental death and dismemberment, tax-preferred savings accounts, and a 401k plan to teammates. Teammates also receive no less than 10 days of vacation (prorated based on date of hire and by full-time or part-time status) during their first year of employment, along with 10 sick days (also prorated), and paid holidays. For more details on Truist's generous benefit plans, please visit our Benefits site. Depending on the position and division, this job may also be eligible for Truist's defined benefit pension plan, restricted stock units, and/or a deferred compensation plan. As you advance through the hiring process, you will also learn more about the specific benefits available for any non-temporary position for which you apply, based on full-time or part-time status, position, and division of work.

Truist is an Equal Opportunity Employer that does not discriminate on the basis of race, gender, color, religion, citizenship or national origin, age, sexual orientation, gender identity, disability, veteran status, or other classification protected by law. Truist is a Drug Free Workplace.

EEO is the Law E-Verify IER Right to Work


What Truist employees say

Pay

Benefits

Hours and flexibility

Workplace

Get the full story on Breakroom


Truist logo

About Truist

Sourced by ZipRecruiter

Truist is combining distinctive personal service with investments in innovation to create transformational client experiences. We believe the unique blend of human touch and innovative technology will set us apart, instill confidence, and build deeper levels of trust with our clients

Industry

Finance and insurance

Company size

10,000+ Employees

Headquarters location

Charlotte, NC, US

Year founded

2019