Source Job

$147,050–$220,800/yr
US

  • Lead IT governance and risk management, including executive reporting and risk register maintenance.
  • Develop KPI and KRI dashboards to translate complex data into actionable insights for senior leadership.
  • Oversee ITSM governance, ServiceNow optimization, and vendor risk management.

Security Compliance ServiceNow Data Analytics

20 jobs similar to Manager, IT Risk Operations

Jobs ranked by similarity.

US

  • Support enterprise cybersecurity governance, compliance, and risk management programs.
  • Conduct security control assessments, audit readiness, and policy development.
  • Coordinate with technical teams and executive leadership to drive cybersecurity modernization.

ERP International is a nationally respected provider of health, science, and technology solutions supporting government and commercial clients. The company has been named a Top Workplace by WTOP News for 7 years and offers a culture of employee recognition, community outreach, and professional development.

US 3w PTO

  • Lead and advance governance, risk management, compliance, and information security programs to support organizational objectives and regulatory requirements.
  • Manage vulnerability management, third-party risk, security governance, policy development, and AI governance initiatives.
  • Partner with leaders to foster a culture of accountability, risk awareness, and continuous improvement.

Ultimate Medical Academy is a non-profit healthcare educational institution with a national presence, headquartered in Tampa, Florida and founded in 1994. The organization offers online and on-campus programs and fosters a culture of integrity, student success, and team member development.

US

  • Lead the design and governance of control frameworks and risk workflows within the GRC platform, ensuring alignment with compliance requirements like HIPAA, HITRUST, and NIST.
  • Oversee risk assessments, control testing, and vendor evaluations to identify and mitigate security risks.
  • Manage policy lifecycle, audit coordination, and reporting on control effectiveness and risk indicators.

USAP is a healthcare organization focused on providing anesthesia services and patient safety. It is a growing company with a culture of security, compliance, and collaboration.

$70,000–$77,000/yr
US

  • Perform enterprise risk assessments using NIST CSF, SOC 2, and CIS frameworks.
  • Develop and execute security awareness programs including training and phishing simulations.
  • Support governance and control management by maintaining policies and control libraries.

Protective helps protect customers against life's uncertainties by providing insurance and peace of mind. The company offers a collaborative environment with a focus on employee wellbeing and work-life balance.

US

  • Develop and execute a comprehensive IT internal audit strategy covering technology, security, privacy, and compliance risks.
  • Lead end-to-end audit engagements, including planning, risk assessment, fieldwork, reporting, and remediation follow-up.
  • Manage and enhance IT ICFR/SOX compliance programs, ensuring effective control design and regulatory readiness.

The company is a fast-growing technology organization in the SaaS and fintech sectors. It fosters a culture of innovation, collaboration, and continuous improvement, with a focus on diversity and inclusion.

Europe

  • Manage IT security systems, identify and close cybersecurity risks.
  • Ensure compliance with ISO 27001 and SOC2, and develop IT policies.
  • Lead IT management, collaborate across teams, and promote a security culture.

Laminar Projects is an award-winning consultancy implementing technology to improve construction project delivery, with a product team developing construction management software. They have grown from 2 to over 170 people since 2017, focusing on human flourishing with core values of growth, care, execution, and building civilisation.

US

  • Lead GRC initiatives to protect the business and strengthen technology risk posture.
  • Translate complex risk data into clear insights and action plans for leadership.
  • Build and improve policies, standards, and procedures for governance and compliance.

Herbalife is a global nutrition company focused on developing and distributing dietary supplements and personal care products. The company employs thousands worldwide and fosters a collaborative, fast-paced environment with a culture of accountability and continuous improvement.

US

  • Serve as the Information Systems Security Officer for assigned systems, maintaining security documentation and supporting authorization activities.
  • Coordinate security control implementation with Engineering, DevOps, and IT teams, managing Plans of Action and Milestones.
  • Support continuous monitoring, vulnerability management, and incident response for FedRAMP and GovRAMP environments.

Keeper Security is a cybersecurity software company that protects organizations and individuals globally with zero-trust and zero-knowledge solutions. It is a fast-growing company with FedRAMP and GovRAMP high authorizations, recognized in the Gartner Magic Quadrant for PAM.

US

  • Lead enterprise IT infrastructure and cybersecurity operations for a government contracting company.
  • Ensure compliance with CMMC 2.0, NIST, and DFARS regulations across all systems.
  • Manage risk, business continuity, and enterprise systems governance including DAR and COOP planning.

Lynker Corporation is a leading provider of innovative solutions in weather and climate science. As an employee-owned business, Lynker combines scientific expertise with mature, results-driven processes to serve government clients and employs a team of 500-1000 staff.

US

  • Lead and support IT strategy, modernization, and governance initiatives for state government clients.
  • Assess IT capabilities, develop roadmaps, and improve management practices.
  • Collaborate with stakeholders to deliver practical, value-driven technology solutions.

BerryDunn is a professional services firm that provides tax, advisory, and consulting services to businesses, nonprofits, and government agencies. Founded in 1974, the firm is recognized for its diverse and inclusive workplace culture and focus on learning, development, and well-being.

$133,109–$239,596/yr
Global Unlimited PTO

  • Act as a trusted advisor to business leaders, bridging security risks and business priorities.
  • Lead security assessments, risk reviews, and remediation planning for new products and enterprise changes.
  • Maintain clear visibility of security risk, control health, metrics, and dashboards, escalating when needed.

Experian is a global data and technology company, powering opportunities for people and businesses around the world. With a team of 25,200 people in 32 countries, they foster an inclusive, purpose-driven culture and have been recognized as a World's Best Workplace in 2025.

India

  • Lead GRC activities including risk management framework, security assessments, and continuous monitoring for assigned systems.
  • Collaborate with engineering and security teams to integrate GRC principles into system lifecycles and DevSecOps practices.
  • Develop and maintain security documentation, support ATO processes, and provide risk briefings to leadership.

The partner company helps organizations strengthen cybersecurity programs through modern GRC practices and engineering expertise. It is a fully remote organization with a collaborative culture focused on technical excellence and professional growth.

US

  • Provide advanced cybersecurity expertise to support secure system operations and compliance initiatives.
  • Analyze system designs and architectures to ensure appropriate security controls and protection mechanisms.
  • Collaborate with technical teams and security organizations to align priorities and security objectives.

The partner company is a mission-driven organization that strengthens cybersecurity capabilities for critical information systems. It offers a collaborative culture with opportunities for professional growth and impactful work.

Global

  • Assist in monitoring compliance with frameworks like ISO 27001, SOC 2, and Cyber Essentials.
  • Maintain the central Risk Register and track remediation progress across departments.
  • Support policy management and compliance training across the organization.

We are a global Physical AI company using data and AI to improve critical industries like healthcare, water, energy, and telecom. Our teams are ambitious, curious, and practical, with colleagues across Africa, Europe, the UK, and the US.

US Unlimited PTO

  • Manage and implement complex controls frameworks for large systems consisting of Cloud infrastructure and SaaS services.
  • Design and develop automation solutions for evidence collection across Cloud infrastructure, endpoints, and SaaS services.
  • Conduct risk assessments across business units and processes, identifying risk findings and recommending remediation strategies.

Virtru is a data protection platform that enables secure sharing without sacrificing security or privacy. Backed by top venture capital firms, the company helps Fortune 500 companies and government agencies achieve true data security with freedom to share.

$27,000–$29,700/yr
Mexico

  • Operate as a trusted advisor to executive teams, guiding them through complex cybersecurity challenges and building security programs.
  • Develop enterprise security strategies, roadmaps, and governance frameworks, translating technical risks into business impact.
  • Lead risk assessments, incident response planning, and compliance initiatives aligned with NIST, CIS, and ISO frameworks.

DYOPATH simplifies technology for clients while investing deeply in its people. Recognized as a Great Place to Work for five consecutive years, the company prides itself on building exceptional teams to deliver secure solutions.

$230,000–$270,000/yr
US Unlimited PTO 16w maternity 16w paternity

  • Own and manage federal compliance frameworks including FedRAMP, NIST, CMMC, DFARS, and StateRAMP.
  • Translate regulatory controls into automated tests and machine-readable specifications for continuous authorization.
  • Collaborate with Engineering, Product, and Design to shape product capabilities and influence strategy.

Our partner company is a technology organization focused on federal compliance automation, serving organizations from emerging companies to large enterprises. They operate with a remote-first culture and value autonomy, accuracy, and scalability.

US

  • Lead day-to-day management of cybersecurity and information security programs, including schedules, milestones, and performance metrics.
  • Serve as the primary liaison between executives, cybersecurity teams, and operational stakeholders, facilitating governance forums and executive reviews.
  • Support strategic planning, risk management, and organizational change initiatives to modernize cybersecurity capabilities.

ERP International provides health, science, and technology solutions to government and commercial sectors. Founded in 2006, the company is headquartered in Laurel, MD, with satellite offices nationwide and has been recognized as a Top Workplace for seven consecutive years.

US 3w PTO

  • Lead the enterprise Vulnerability Management and CDM program, directing scanning and prioritization strategies.
  • Coordinate remediation activities across system owners, engineering teams, and ISSOs to reduce cyber risk.
  • Develop executive metrics, dashboards, and reports to communicate vulnerability posture and operational risk trends.

True Zero Technologies is a veteran-owned small business that focuses on purposeful enablement of people and technology. Recognized as a Best Places to Work in 2023 and 2025, and listed on the Inc. 5000 fastest-growing companies, the company emphasizes a people-first culture and dedication to excellence.

$150,000–$250,000/yr
Global 2w PTO

  • Own cybersecurity strategy and operations across all AIOS entities.
  • Lead identity, access, endpoint, application, and infrastructure security.
  • Drive risk and compliance for HIPAA, GDPR, SOC 2, and ISO 27001.

AIOS is building the world's first full-stack AI doctor, serving 150k monthly patients through Bolt Pharmacy. We're a profitable, founder-led company scaling from $10M to $350M ARR in 12 months, with a culture of extreme ownership and speed.