Manager, IT Risk Operations
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
Location: Palo Alto, New York, San Francisco, Austin, Boston, Boulder, Century City, Los Angeles, Salt Lake City, San Diego, or Seattle; 100% remote or hybrid in person near a physical office
Salary: $163,200–$220,800 per year in Palo Alto, New York, and San Francisco; $147,050–$198,950 per year in Austin, Boston, Boulder, Century City, Los Angeles, Salt Lake City, San Diego, and Seattle
Company
is a legal advisory firm serving technology, life sciences, growth enterprises, venture firms, private equity firms, and investment banks worldwide.
What you will do
- Lead executive reporting on IT risk, compliance posture, operational performance, and control effectiveness.
- Build and evolve KPI/KRI dashboards and manage the IT risk register and Risk & Control Self-Assessment program.
- Identify emerging and systemic risks across IT, security, privacy, and operational processes.
- Partner with General Counsel, Security, and IT on internal investigations.
- Oversee ITSM governance and ServiceNow reporting across incident, change, and problem management.
- Enhance vendor risk management through risk tiering, assessments, monitoring, and data-driven reporting.
Requirements
- Seven years of experience in IT risk, security compliance, technology audit, or IT governance preferred.
- Bachelor’s degree preferred.
- Experience leading reporting, analytics, and governance initiatives.
- Familiarity with ServiceNow and ITSM reporting, including incident, change, and problem management lifecycles.
- Experience with Microsoft 365, Purview, email security tools, control design, risk registers, RCSA programs, audit response, and privacy regulations.
- Working knowledge of the NIST Cybersecurity Framework, ISO/IEC 27001, and SOC 2.
Nice to have
- Experience in complex, regulated environments such as law firms, financial services, or consulting.
- CISA, CISSP, CRISC, CTPRM, or ITIL certification.
Culture & Benefits
- Work with senior leaders across IT, Security Engineering, General Counsel, and firm leadership.
- Manage a small team in a high-impact Governance, Risk & Compliance function.
- Flexible 100% remote or hybrid work near a physical office.
- Competitive salary and benefits package.
- Potential discretionary year-end merit bonus based on performance.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →