Fidelity will not provide immigration sponsorship for this position.
The RoleAre you passionate about strengthening technology controls and influencing risk outcomes at enterprise scale? Do you thrive in complex environments where your judgment, expertise, and leadership help shape enterprise risk decisions? As a Principal Technology Risk Analyst, you will play a critical role in advancing Fidelity's technology risk management capabilities. This role offers the opportunity to lead highly complex initiatives, provide strategic risk guidance to senior stakeholders, and drive continuous improvement across the technology risk landscape.
Core responsibilities include:
- Leading highly complex technology risk and controls assessments supporting audit, regulatory, certification, and enterprise risk management objectives
- Evaluating control design and operating effectiveness across complex, distributed, cloud, and vendor-hosted environments while identifying emerging risks and systemic control concerns
- Partnering with senior leaders across technology, risk, compliance, and audit organizations to influence risk decisions and drive remediation of significant control gaps
- Applying advanced risk expertise, analytical thinking, and professional judgment to resolve complex technology risk and control challenges
- Driving enhancements to testing methodologies, risk assessment practices, automation capabilities, and reporting processes
- Providing leadership, coaching, and strategic direction across workstreams while contributing to the development of team capabilities and risk management practices
You bring extensive experience in technology risk, controls, cybersecurity, or audit functions within complex organizations, along with the ability to lead large-scale assessments and influence outcomes across diverse stakeholder groups. You possess deep knowledge of technology risk frameworks and control evaluation methodologies and are comfortable advising senior leaders on complex risk matters. You communicate effectively, navigate ambiguity, and leverage data-driven insights to support sound risk decisions.
Key qualifications include:
- Bachelor's degree in computer science, technology, or a related field (Master's degree preferred)
- 8 or more years of experience in technology risk, IT, cybersecurity, cloud, analytics, audit, or related risk management roles
- Experience leading complex control assessments and evaluating control maturity across diverse technology environments
- Advanced knowledge of industry frameworks such as NIST, COBIT, AICPA Trust Services Criteria, ISO 27001, HITRUST, or similar
- Familiarity with cloud security models (AWS, Azure, SaaS, PaaS) and GRC platforms such as Archer (preferred)
- Professional certifications such as CISA, CISSP, CRISC, CISM, or similar certifications preferred
We are part of Fidelity's Enterprise Technology Risk organization, embedded within the broader Legal, Risk, and Compliance function. Our Technology Risk Controls Testing team exists to provide independent, objective assurance over the effectiveness of technology controls protecting our clients, employees, and brand. We work closely with Corporate Audit, Enterprise Compliance, Information Security, Operational Risk, and technology and business partners across Fidelity.
Our team is built on collaboration, accountability, and a relentless commitment to risk excellence. We value diverse perspectives, continuous learning, and strong partnerships that help Fidelity remain resilient in an evolving technology landscape. We are committed to fostering an inclusive culture where our people are empowered to grow, contribute, and make a meaningful impact.
Fidelity’s Onsite Working Model
Fidelity is transitioning to a full-time onsite working model through a phased rollout across regions and roles. Currently, some roles and locations require 100% onsite presence, while others require less. Onsite expectations are likely to evolve as the rollout continues. This transition does not apply to fully remote roles.
Please be advised that Fidelity’s business is governed by the provisions of the Securities Exchange Act of 1934, the Investment Advisers Act of 1940, the Investment Company Act of 1940, ERISA, numerous state laws governing securities, investment and retirement-related financial activities and the rules and regulations of numerous self-regulatory organizations, including FINRA, among others. Those laws and regulations may restrict Fidelity from hiring and/or associating with individuals with certain Criminal Histories.
Skills Required
- Bachelor's degree in computer science, technology, or a related field
- 8 or more years of experience in technology risk, IT, cybersecurity, cloud, analytics, audit, or related risk management roles
- Experience leading complex control assessments and evaluating control maturity across diverse technology environments
- Advanced knowledge of NIST, COBIT, AICPA Trust Services Criteria, ISO 27001, HITRUST, or similar frameworks
- Familiarity with cloud security models, including AWS, Azure, SaaS, and PaaS
- Master's degree
- Experience with GRC platforms such as Archer
- Professional certification such as CISA, CISSP, CRISC, CISM, or similar
Fidelity Investments Compensation & Benefits Highlights
The following summarizes recurring compensation and benefits themes identified from responses generated by popular LLMs to common candidate questions about Fidelity Investments and has not been reviewed or approved by Fidelity Investments.
-
Strong & Reliable Incentives — Bonuses, commissions, and profit-sharing are presented as generous and meaningful components of total compensation, with certain roles achieving high total earnings through multiple pay streams. Variable pay is consistently framed as a positive contributor beyond base salary.
-
Retirement Support — A 401(k) match up to 7% alongside additional profit-sharing up to 10% materially enhances long-term compensation. These retirement features are highlighted as standout strengths of the overall package.
-
Parental & Family Support — Generous paid parental leave (16 weeks maternity, 12 weeks parental), backup dependent care, and adoption assistance provide robust family support. Hybrid work and caregiving resources further ease family responsibilities.
Fidelity Investments Insights
What We Do
At Fidelity, our goal is to make financial expertise broadly accessible and effective in helping people live the lives they want. We do this by focusing on a diverse set of customers: - from 23 million people investing their life savings, to 20,000 businesses managing their employee benefits to 10,000 advisors needing innovative technology to invest their clients’ money. We offer investment management, retirement planning, portfolio guidance, brokerage, and many other financial products. Privately held for nearly 70 years, we’ve always believed by providing investors with access to the information and expertise, we can help them achieve better results. That’s been our approach- innovative yet personal, compassionate yet responsible, grounded by a tireless work ethic—it is the heart of the Fidelity way.









