IT Risk & Compliance Analyst

Hybrid in New York, NY, US • Posted 3 days ago • Updated 3 days ago
Full Time
Hybrid
$140,000/yr
Fitment

Dice Job Match Score™

🎯 Assessing qualifications...

Job Details

Skills

  • Security Controls
  • Third-Party Risk Management (TPRM)
  • Cybersecurity
  • network security
  • PCI DSS
  • NIST
  • ISO 27001
  • IT Risk
  • Risk Assessment
  • Disaster Recovery
  • Incident Management
  • Internal Control
  • Vulnerability Management

Summary

Currently we are unable to sponsor. We Encourage to apply & GC***

Job Title: IT Risk & Compliance Analyst
Location: New York, NY (Hybrid)
Experience: 10+ Years
Position: (Full Time)

Job Summary:

We are seeking an IT Risk & Compliance Analyst with a strong background in Third-Party Risk Assessment, Internal Security Controls, and Network Security. This role will focus on identifying, assessing, and mitigating cybersecurity risks across internal systems and external vendors while ensuring compliance with industry standards.

Key Responsibilities:

  • Lead third-party/vendor risk assessments (SOC 1/SOC 2, security questionnaires, due diligence)
  • Manage and maintain risk register, risk assessments, and remediation tracking
  • Evaluate and strengthen internal security controls and governance processes
  • Support audit & compliance efforts (PCI DSS, NIST, ISO 27001)
  • Monitor security threats, vulnerabilities, and incident response activities
  • Conduct security control gap assessments across infrastructure and applications
  • Collaborate with cross-functional teams to drive risk mitigation strategies
  • Support disaster recovery and business continuity planning

Required Skills:

  • 6+ years in IT Risk, Cybersecurity, or IT Audit
  • Strong experience in Third-Party Risk Management (TPRM)
  • Hands-on knowledge of network security, vulnerability management, and threat monitoring
  • Experience with internal controls, risk frameworks, and compliance standards (PCI DSS, NIST, ISO 27001)
  • Exposure to incident response and security operations
  • Certifications like CISA, CRISC, or CISSP (preferred)
Employers have access to artificial intelligence language tools (“AI”) that help generate and enhance job descriptions and AI may have been used to create this description. The position description has been reviewed for accuracy and Dice believes it to correctly reflect the job opportunity.
  • Dice Id: 91139145
  • Position Id: 8942371
  • Posted 3 days ago
Create job alert
Set job alertNever miss an opportunity! Create an alert based on the job you applied for.

Similar Jobs

Hybrid in Jersey City, New Jersey

Today

Full-time

New York, New York

4d ago

Full-time

USD 70,100.00 - 121,475.00 per year

New York, New York

4d ago

Full-time

USD 250,000.00 - 300,000.00 per year

Hybrid in Jersey City, New Jersey

Today

Full-time

Search all similar jobs