Technology Risk Analyst
Cretex Companies, Inc. · Elk River, MN, US · United States · On-site
Posted Aug 28, 2026
Sign up free: we match you to jobs like this, tailor your application and fill the form. 2 free applications every day.
Overview
The Technology Risk Analyst helps Digital & IT operate as a well-governed, resilient, risk-aware, and effective business function, with a primary focus on strengthening organizational resilience and managing technology risk. The role works across Digital & IT and the business to strengthen organizational resilience, manage technology risk, improve governance, and help leaders understand technology dependencies and their role in reducing risk.
The primary focus is Business Continuity and Disaster Recovery, technology risk management, governance, and business education. The role also supports broader Office of the CIO priorities, including data governance, compliance, financial management, contracts, performance reporting, and continuous improvement.
The ideal candidate is highly organized, analytical, comfortable working across technical and business teams, and able to turn complex risks and requirements into practical actions and measurable improvements.
Responsibilities
Essential Job Functions
Technology Risk & Organizational Resilience
Own the development, maintenance, testing, and continuous improvement of technology Business Continuity and Disaster Recovery plans.
Partner with business and technology leaders to identify critical processes, technology dependencies, recovery requirements, and operational risks.
Coordinate Business Impact Analyses, tabletop exercises, disaster recovery testing, and follow-up remediation.
Maintain the technology risk register and coordinate risk identification, assessment, remediation, acceptance, and reporting.
Identify critical technology, vendor, and process dependencies that could impact business operations.
Help business leaders understand technology risks, preparedness expectations, and actions they can take to improve organizational resilience.
Governance, Policy & Compliance
Develop, coordinate, and maintain Digital & IT policies, standards, procedures, and governance processes, including stakeholder review, approval, communication, implementation, and periodic review.
Lead or support initiatives related to data classification, retention, handling, privacy, and other information-governance requirements.
Support technology-related regulatory, legal, contractual, customer, and geographic compliance requirements.
Coordinate technology risk exceptions and ensure accepted risks are appropriately documented, approved, reviewed, and tracked.
Support audits, assessments, customer requirements, cyber insurance requests, and related documentation.
Cybersecurity Risk & Awareness
Partner closely with the Cybersecurity Manager to support cybersecurity risk management and alignment with applicable frameworks and requirements.
Help translate cybersecurity risks into clear business impacts and practical actions.
Support cybersecurity awareness, employee education, phishing programs, and other activities designed to reduce human-related risk.
Assist with…