107 technology risk manager jobs at 78 companies in Berkeley, CA
1mo
Save
Mark Applied
Hide
1mo
Manager, Technology Risk
San Francisco or Montreal or Bengaluru
$198k-$250k/yrHybridFull Time
Hinge HealthNYSE: HNGE: Digital provider of musculoskeletal care and physical therapy
8+ YOE8+ years in technology risk, IT audit, or cybersecurity with hands-on SOX ITGC experience; expertise in access/change management, PHI/HIPAA compliance, vulnerability analysis, stakeholder influence, and executive communication.
United States or Canada or Columbus or Austin or San Francisco or New York City
$172k-$238k/yrRemoteFull Time
UpstartNasdaq: UPST: AI-powered lending marketplace for consumer and automotive loans.
8+ YOE3+ MgmtBachelor's or equivalent, 8+ years technology risk/information security/IT audit experience in banking, 3+ years people management, FFIEC/OCC regulatory experience, regulator engagement, and GRC program experience; professional certs preferred.
Williams-SonomaNYSE: WSM: Retails kitchenware, furniture, and home accessories through multiple brands.
9+ YOE9+ years in technology risk/assurance or IT audit, strong SOX and ITGC/ITAC knowledge, cloud and cybersecurity experience, bachelor's in technical field preferred, relevant certifications (CISA/CISSP/CISM/CPA) preferred.
WalmartNYSE: WMT: Multinational retail operating discount stores and supermarkets.
3+ YOEProgram management experience (3+ yrs with degree or 5+ yrs without), strong analytical skills, stakeholder management, SQL/Excel/Tableau/Power BI experience, ability to lead cross-functional technology and operations initiatives.
New York City or Chicago or San Francisco or Scottsdale
$221k-$276k/yrHybridFull Time
Early Warning Services: Operates payment and risk solutions for the financial industry.
15+ YOEBachelor's in CS/IT/Cybersecurity preferred; 15+ years IT/security experience; 3+ years security governance experience; expertise with firewalls, IDS, vulnerability management, DLP, VPN; knowledge of ISO/PCI/NIST standards; certifications like CISA/CISM/CISSP preferred.
IDS, VPN, anti-virus, vulnerability management, data loss prevention, two factor authentication, ISO 27002, PCI DSS 3.2, NIST 800-53a, SOC2 Type II, FFIEC, GLBA, FCRA, NYDFS
AsanaNYSE: ASAN: Software platform for team project management and workflow automation.
7+ YOE7+ years in information security with proven experience building security risk management programs, quantitative risk methodologies (e.g., FAIR), scripting/automation for risk monitoring, and knowledge of NIST, ISO, SOC 2, and FedRAMP.
San Diego or Costa Mesa or Los Angeles or San Francisco or San Jose or Walnut Creek
$150k-$205k/yrOnsiteFull Time
BDO USA: Provides accounting, tax, and business advisory services to organizations.
8+ YOERequires 8+ years of IT audit/information systems auditing experience, bachelor’s degree (master's preferred), required certifications (CPA, CISA, CISM, CRISC, CGEIT, CISSP, or CFE), Microsoft Office proficiency, and ability to travel up to 30%.
DocuSignNASDAQ: DOCU: Provides electronic signature and agreement management software solutions.
8+ YOE8+ years in security risk management/GRC, bachelor’s in CS/InfoSec, experience with cloud (AWS/Azure/GCP), GRC platforms, risk quantification (FAIR), and security domain expertise; CISSP/CRISC/CISM preferred.
AWS, Azure, GCP, ServiceNow IRM, OneTrust, FAIR, Tableau, Power BI
Risk Consulting - Risk Technology - GRC/IRM Platforms - Manager (New York, NY, US, 10001-8604)
New York or Atlanta or Boston or Chicago or Cleveland or Dallas or Detroit or Pittsburgh or Hoboken or Houston or Los Angeles or McLean or Miami or Minneapolis or North Carolina or Philadelphia or Portland or San Francisco or Seattle or Tampa
$150k-$260k/yrHybridFull Time
EY: Global firm providing audit, tax, and professional consulting services.
4+ YOEBachelor's + 5 yrs (or Master's + 4 yrs) implementing ServiceNow IRM/TPRM/BCM; ServiceNow CSA and GRC certifications; experience leading implementations, integrations, and client engagements; Microsoft Office proficiency.
ServiceNow IRM, Archer, AuditBoard, OneTrust, Spotfire, PowerBI, Tableau, Microsoft PowerPoint, Microsoft Word, Microsoft Excel, Vision, Integration Hub, REST, SOAP
Strava: Fitness tracking and social networking app for athletes.
8+ YOEBachelor's degree,8-12 years in security or technical risk,security certification (CISSP or CISM) preferred,experience building GRC/risk programs,AI/automation in security,team management and executive reporting.
NetflixNASDAQ: NFLX: Provider of global streaming entertainment and video content.
10+ YOE10+ years technology audit experience; degree in IS/CS preferred; SOX and integrated audit experience; strong project management, communication, risk assessment, control evaluation; experience with code review, data analytics, GenAI, and automation; professional certs a plus.
Houston or New York City or San Francisco or Seattle
$150k-$180k/yrOnsiteFull Time
Nscale: Vertically integrated AI infrastructure provider for high-performance computing.
8+ YOE8+ years in security awareness/human risk; experience with training platforms, behavioral analytics, phishing simulations, SQL/data joins, automation, policy adoption, and cross-functional program management.
Fragile: Infrastructure platform for hardware subscriptions and consumer financing.
Leadership in risk management; experience in recovery, fraud, fintech operations; ability to build AI-driven recovery workflows; collaborate with engineers and legal.
United States or California or Washington or New York or New Jersey or Connecticut or Los Angeles or San Francisco
$146k-$225k/yrRemoteFull Time
AffirmNasdaq: AFRM: Financial platform providing installment loans for consumer purchases.
5+ YOE5+ years in information security or risk roles; hands-on with Python and agentic coding tools (Cursor, Claude, Copilot); familiarity with cloud (AWS/GCP/Azure), security frameworks, strong communication and project delivery skills.
Python, Cursor, Claude, Copilot, SQL, AWS, GCP, Azure, NIST Cyber Security Framework, ISO 2700x, SOC1, SOC2, SSAE18, PCI DSS, NIST-800-53, FFIEC Cybersecurity Assessment Tool, SANS Top 20, BI tools
BILLNYSE: BILL: Automated financial operations software for small and midsize businesses.
7+ YOE7+ years in insider risk, investigations, forensics, or security operations; 2+ years managing insider risk programs; experience with forensics, EDR/SIEM/UEBA, cloud and collaboration logs; strong communication and judgment.
macOS, Windows, AWS, Google Workspace, SIEM, UEBA, EDR, email security, AI
IRENNASDAQ: IREN: Operates renewable-powered data centers for AI and Bitcoin mining
10+ YOE10+ years in risk, compliance, governance, audit, legal or commercial roles; experience with complex commercial agreements and multi-jurisdiction regulatory frameworks, especially employment law, immigration, payroll and privacy; ability to build frameworks and use technology/AI to scale compliance.
Applied MaterialsNASDAQ: AMAT: Produces equipment and services for chip and display manufacturing.
3+ YOEBachelor's degree and 3–5+ years in product management, procurement technology, or risk/compliance systems; experience with OneTrust or similar GRC platforms; experience configuring enterprise SaaS and integrations/APIs.