Contract IT Director (Hybrid – NYC)
For our direct client, a successful, growing investment management firm, we seek seeking an experienced Contract IT Director to assess, and then refine and elevate their technology environment. This is a newly created leadership role for a cloud-based Registered Investment Advisor (RIA) that is scaling rapidly and preparing for increased operational and regulatory demands.
The ideal consultant is hands-on, highly articulate, comfortable advising senior leadership, and able to quickly evaluate systems, vendors, and processes. The first several months will be involved with assessment of the current state, and then can be extended to help shape the firm’s long-term technology strategy.
ResponsibilitiesConduct a comprehensive assessment of the current IT environment, including the current MSP's performance, cloud infrastructure, security posture, and application ecosystem.
Review current MSP relationship and potentially run an RFP or recommend alternative support models.
Ensure technology, processes, and controls align with RIA regulatory expectations and investor due-diligence standards.
Oversee follow-ups from penetration tests, audits, and security assessments.
Review and strengthen cybersecurity programs (MFA, email security, backup policies, endpoint protection, etc.).
Advise leadership and — when needed — speak with investors or consultants about the firm’s technology and security posture.
Provide practical, actionable recommendations on how the firm should structure and staff IT going forward.
Work closely with internal stakeholders across operations, compliance, and investment teams to understand needs and pain points.
Experience working in a Registered Investment Advisor (RIA) environment is a must-have.
Proven success supporting/leading IT for 50+ users.
Strong background managing and evaluating MSP providers.
Familiarity with RIA regulatory requirements, investor due-diligence processes, and responding to DDQs.
Experience with pen testing processes, remediation planning, and security controls.
Hands-on knowledge of common RIA/financial-services technologies, such as:
Office 365
Microsoft Dynamics CRM
Compliance platforms (e.g., Compliance Alpha, Schematic)
Email security tools (e.g., Mimecast)
Data/analytics and investment platforms (e.g., Trep, Costar, Argus)
Cloud-hosted environments (Azure / O365 ecosystem)
Understanding of AI-related workflows (the firm is beginning to adopt AI tools).
Strong verbal communication skills — capable of explaining technical topics clearly to non-technical stakeholders.
Self-starter, low-ego, “figure it out” mindset; comfortable operating independently with limited oversight.
Ability to evaluate systems, identify gaps, and produce clear recommendations.
LogisticsHybrid NYC — typically 2–3 days onsite per week.in midtown NYC office, a short walk from Grand Central.
Full-time preferred (40 hrs/week), but open to fractional/part-time (20+ hrs) for senior consultants with other clients.
Standard hours approx. 9:00–5:30, with flexibility during projects.
Initial term: 3–6 months, with the possibility of extension or conversion to a full-time IT leadership role as the firm grows.
Someone who brings calm leadership, strong judgment, and deep RIA experience. You’re analytical, articulate, collaborative, and able to quickly assess unfamiliar systems. You can operate independently, present confidently to executives and investors, and deliver clear recommendations that move the firm forward.
By applying for this job, you agree to receive calls, AI-generated calls, text messages, or emails from Benchmark IT, LLC and its affiliates, and contracted partners. Frequency varies for text messages. Message and data rates may apply. Carriers are not liable for delayed or undelivered messages. You can reply STOP to cancel and HELP for help. You can access our privacy policy here:
https://bmarkits.com/privacy-policy/Duties & Responsibilities:
Lead and manage IT, security, and privacy control assessments, including GITCs.
Plan, scope, execute, and review control testing activities.
Interpret and apply audit program requirements to assessments.
Help design, mature, and document the firm’s assurance program and its processes.
Evaluate adherence to security and privacy frameworks and internal policies.
Identify control gaps and recommend remediation steps to stakeholders.
Coordinate with technology, audit, and business teams to communicate findings and guidance.
Manage small review teams and ensure quality, consistency, and on-time delivery of work.
SME expertise in information protection controls assessments, security, technology (including AI), and privacy (likely of at least senior associate if not manager level)
SME expertise in GITCs and control testing / assessment work (of at least senior associate if not manager level)
Experience in implementing and interpreting audit program requirements
Experience in designing and maturing assurance program(s) and its requirements
Strong working knowledge of security and privacy frameworks
Strong knowledge of Information Security and Privacy Policies
Strong leadership and operational capabilities – will lead and manage review teams, oversee planning, scoping, testing and reporting
Strong communication skills – will coordinate with/provide advice to various stakeholder groups
Act with integrity, professionalism, and personal responsibility to uphold the firm’s respectful and courteous work environment