Summary
The Senior Director, Governance, Risk, and Compliance (GRC) leads the design, build, and maturation of an enterprise-wide GRC function to enable secure growth and digital transformation. This senior leader partners with the CISO and cross-functional executives to translate cybersecurity, regulatory, and enterprise risks into actionable insights and executive-level reporting. The role oversees audit activities, vendor risk, and GRC tooling while developing a high-performing team and continuous readiness practices.
Responsibilities
- Develop and execute an enterprise GRC strategy aligned to business priorities and risk appetite
- Lead governance, risk, and compliance programs across cyber, IT, third-party, and operational domains
- Oversee internal and external audits, remediation tracking, and continuous compliance readiness
- Drive executive- and Board-level risk reporting, dashboards, and metrics
- Partner with Legal, Technology, Finance, HR, and business leaders to embed risk management into initiatives and vendor relationships
- Evaluate and optimize GRC platforms and automation to scale risk and compliance management
Requirements
- 10+ years of progressive GRC, information security, or enterprise risk experience, including 5+ years in senior leadership
- Proven experience building, scaling, or transforming enterprise GRC programs in complex, regulated environments
- Deep expertise in cybersecurity risk, IT risk, third-party risk, and regulatory compliance frameworks
- Experience with GRC platforms and automation tools (e.g., ServiceNow GRC, Archer, OneTrust)
- Strong executive presence, cross-functional leadership, and ability to translate risk into business-relevant outcomes
Sr. Director, Governance, Risk, and Compliance (GRC) in seattle at Unknown Company
This position is listed as full time and onsite.