Sr Director of Governance, Risk, and Compliance

Remote Full-time
About the position The Senior Director of Governance, Risk, and Compliance will report to the Global CISO within Advance Auto Parts and will focus on the measurement, analysis, oversight and reporting of cybersecurity risks and controls. The Senior Director of GRC will lead the Cyber Risk team, and will be responsible for the ownership, operation and optimization of the team's policies, standards, risk identification, assessment and reporting processes. The ideal candidate will combine expertise in both cybersecurity and risk management disciplines and have exceptional communication and stakeholder management skills. This position is based in Raleigh, NC and part of a Hybrid work arrangement, requiring four days/week in office. Responsibilities • Develop a short term and long term comprehensive GRC Strategy • Develop, communicate, and implement enterprise-wide security policies, standards, procedures, and guidelines • Provide strategic guidance to the CISO for representing risks to the Board, Audit Committee, and ERM • Lead and develop a team of high-performing cyber risk specialists • Lead the identification, evaluation, and prioritization of cyber risks across the organization • Oversee production, reporting and evolution of cyber risk metrics, including Key Performance Indicators (KPIs) and Key Risk Indicators (KRIs) • Conduct cyber risk assessments and provide reporting to a range of senior stakeholders • Conduct cyber maturity assessments and provide reporting to a range of senior stakeholders • Conduct risk analysis, providing insights on issues and direction on risk mitigation strategies • Drive automation, analytics, and continuous improvement of processes • Engage with a range of senior stakeholders across Lines of Defense to ensure appropriate oversight and reporting of cybersecurity risks • Collaborate with cross-functional teams on cyber risk assessment and remediation activities • Ensure regulatory compliance with frameworks in NIST, SOC 1/2, PCI, SOX, CCPA • Oversee security audits / Partner with Internal Audit • Represent cybersecurity in the Enterprise Risk Management committee • Create a comprehensive security awareness program • Report on and ensure compliance to our security policies and standards through a robust compliance program Requirements • Extensive knowledge of cyber risk management frameworks and methodologies • Proven experience in leadership roles, managing teams, and influencing executive stakeholders • Experience in establishing and managing regulatory compliance in NIST, PCI-DSS, SOX, SOC 1/2, CCPA, HIPAA • Strategic thinker with a strong understanding of cyber threats, vulnerabilities, and risk mitigation options • Innovative thinker and adaptable to change • Exceptional communication and presentation skills, capable of translating technical risk into business terms • Excellent analytical, problem-solving, and decision-making skills Apply tot his job
Apply Now

Similar Opportunities

U.S. Federal Government Contracts Specialist at SnappyCX

Remote Full-time

Legal Transcriptionist (Federal Contracts - Remote)

Remote Full-time

The Post and Courier Marketing and Graphics Design Intern - Furman University

Remote Full-time

Design Co-op Summer

Remote Full-time

Growth Marketer : Remote (Full Time, USC or GC Only)

Remote Full-time

Founding Growth & Marketing Lead (Commission-Based, High Upside)

Remote Full-time

Sr. Growth & Lifecycle Marketing Manager (Remote)

Remote Full-time

Remote Marketing & Brand Growth Consultant

Remote Full-time

Manager, Digital Marketing Growth - Medical job at Henry Schein in US National

Remote Full-time

Care Manager, Complex & Disease Management - Multiple Openings/REMOTE

Remote Full-time

Revenue Manager for Airbnb Investing Program (Full Time, Remote) - Contract to Hire

Remote Full-time

Non Phone Digital Customer Support Assist Clients Online Without Phone Calls

Remote Full-time

Entry, EKIN Marketplace, Retail Marketing, Dallas

Remote Full-time

Director of Engineering – Creative Automation

Remote Full-time

Experienced Part-Time Remote Customer Service Representative – Delivering Exceptional Support and Solutions to Valued Customers at arenaflex

Remote Full-time

Security Engineer - Infrastructure - (Remote in Pittsburgh)

Remote Full-time

Databricks Developer

Remote Full-time

Senior Consumer Insight Analyst

Remote Full-time

Part Time Adjunct Faculty - Nursing

Remote Full-time

Experienced Level 1 Chat Support Agent – Customer Service and Technical Support Expert for blithequark

Remote Full-time
← Back to Home