Principal Information Security Analyst, TRM, ITC

Nike

Karnataka

On-site

INR 4,000,000 - 6,500,000

Full time

3 days ago
Be an early applicant
Application generator

An application made for this job — a tailored resume and cover letter that speak straight to the posting.

Get past ATS filters

Job summary

NIKE, Inc. ITC is seeking a Principal GRC Information Security Analyst 5 to lead the GRC program across Governance, Risk, Compliance, and Technical Recovery. You will partner with global teams and drive standards, playbooks, and control patterns in a large, matrixed environment.

You will own end‑to‑end risk lifecycle quality, guide SOX ITGC assessments, and mentor ITC analysts while implementing ServiceNow GRC to scale enterprise risk management globally.

Qualifications

  • 10+ years of professional experience in technology risk, cybersecurity risk, IT audit, compliance, or GRC in large, matrixed, multinational technology organizations.
  • Bachelor’s degree or equivalent combination of education, experience, or training.
  • Advanced degree or professional certifications strongly preferred (e.g., CISSP, CISM, CRISC, CISA, GRCP, ISO 27001 LA/LI).
  • Strong hands‑on experience with ServiceNow GRC (or comparable platform).
  • Demonstrated hands‑on delivery across at least two of four GRC streams (Governance, Risk, Compliance, Technical Recovery).

Responsibilities

  • Lead the primary GRC stream at ITC and provide senior technical coverage across other streams.
  • Translate global GRC standards, policies, and platform designs into ITC‑executable playbooks and control patterns.
  • Govern end‑to‑end risk lifecycle quality and enterprise risk register posture for ITC‑supported risks.
  • Provide senior direction on SOX ITGC, cybersecurity risk assessments, third‑party cyber risk, and DR/BCP resilience.
  • Serve as the ITC power user and design partner for ServiceNow GRC—driving workflow improvements and dashboards.

Skills

GRC expertise
SOX ITGC
Cybersecurity risk assessments
Regulatory compliance
GRC leadership

Education

Bachelor’s degree or equivalent
Advanced degree or professional certifications preferred

Tools

ServiceNow GRC

Job description

Become a Part of the NIKE, Inc. Team

NIKE, Inc. does more than outfit the world’s best athletes. It is a place to explore potential, obliterate boundaries and push out the edges of what can be. The company looks for people who can grow, think, dream and create. Its culture thrives by embracing diversity and rewarding imagination. The brand seeks achievers, leaders and visionaries. At NIKE, Inc. it’s about each person bringing skills and passion to a challenging and constantly evolving game.

Who You’ll Work With

The Principal GRC Information Security Analyst 5 is the top GRC individual contributor at Nike's India Technology Center (ITC), reporting to the ITC GRC Director. This role partners with the Global GRC team in Beaverton, Oregon and cross-functional leaders across Global Technology, Internal Audit, Legal, and Finance to advance Nike's global GRC agenda.

Who We Are Looking For

The candidate needs to have deep, broadly applied GRC expertise across Governance, Risk, Compliance, and Technical Recovery, and the maturity to operate as a Principal GRC Athlete—the discipline lead for ITC on a rotating stream while providing thought leadership across all four streams. This is the senior anchor role at ITC and requires a recognized subject‑matter expert who is comfortable with novel and ambiguous problems and who develops new concepts, playbooks, and standards that scale globally. The candidate influences senior leaders across a highly matrixed environment without direct authority, coaches Leads, Seniors, and Analysts, and sets the technical direction for how work gets done at ITC. Strong command of SOX ITGC, cybersecurity regulations, NIST CSF and ISO 27001, third‑party cyber risk, cybersecurity risk assessments, DR/BCP resilience, ServiceNow GRC, and enterprise risk lifecycle discipline is essential. The candidate thrives on closing loops with evidence, not activity.

  • 10+ years of professional experience in technology risk, cybersecurity risk, IT audit, compliance, or GRC in large, matrixed, multinational technology organizations
  • Bachelor’s degree or equivalent combination of education, experience, or training
  • Advanced degree or professional certifications strongly preferred (e.g., CISSP, CISM, CRISC, CISA, GRCP, ISO 27001 LA/LI)
  • Strong hands‑on experience with ServiceNow GRC (or comparable platform)
  • Demonstrated hands‑on delivery across at least two of four GRC streams (Governance, Risk, Compliance, Technical Recovery)
What You’ll Work On

You serve as the top GRC individual contributor at ITC, extending Global GRC standards into local execution while rotating as a Principal GRC Athlete across Governance, Risk, Compliance, and Technical Recovery. You lead the most complex problems, coach the ITC GRC team, and represent ITC in global forums.

  • You lead the primary GRC stream at ITC (rotates across Governance, Risk, Compliance, or Technical Recovery based on demand) and provide senior technical coverage across the other streams, partnering with the Global GRC Principal on operating‑model design
  • You translate global GRC standards, policies, and platform designs into ITC‑executable playbooks, workflows, and control patterns, and recommend improvements back to Global GRC
  • You govern end-to-end risk lifecycle quality and enterprise risk register posture for ITC-supported risks; you steward policies, standards, exceptions, attestations, and governance forums
  • You provide senior direction on SOX ITGC, cybersecurity risk assessments, third‑party cyber risk, and DR/BCP resilience for global initiatives and platforms supported from ITC
  • You serve as the ITC power user and design partner for ServiceNow GRC—driving workflow improvements, control library hygiene, attestations, dashboards and adoption across distributed owners
  • You coach and mentor Leads, Seniors, and Analysts at ITC and role‑model the “own / govern / enable” judgment that raises the technical bar of the team
  • You represent ITC in global governance forums—surfacing themes early, aligning priorities, and enabling timely enterprise risk decisions
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Lead Information Security Analyst, ITC
Lead Information Security Analyst, ITC

Nike • Karnataka

On-site
INR 3,000,000 - 6,000,000
Principal Information Security Engineer, ITC
Principal Information Security Engineer, ITC

Nike • Karnataka

On-site
INR 4,000,000 - 7,000,000
Principal Cyber Defense Analyst, ITC
Principal Cyber Defense Analyst, ITC

Nike • Karnataka

On-site
INR 3,500,000 - 6,000,000
Director, Software Engineering Core Cloud, ITC
Director, Software Engineering Core Cloud, ITC

Kayavlon Impex Pvt. Ltd • India

On-site
INR 6,000,000 - 9,000,000
Lead Cyber Defense Data Analyst, ITC
Lead Cyber Defense Data Analyst, ITC

Nike • Karnataka

On-site
INR 3,500,000 - 7,000,000
Senior / Principal GRC Analyst
Senior / Principal GRC Analyst

844 Altera Semiconductor Technology India Pvt. Ltd. • Bengaluru

On-site
INR 2,000,000 - 3,000,000
Manager Software Engineering, ITC
Manager Software Engineering, ITC

Kayavlon Impex Pvt. Ltd • India

On-site
INR 4,000,000 - 7,000,000
Vice President-Information Security.Information Security Group-ISG
Vice President-Information Security.Information Security Group-ISG

Mashreq • Bengaluru

On-site
INR 4,000,000 - 7,000,000
Principal Software Engineer - AIML, ITC
Principal Software Engineer - AIML, ITC

Kayavlon Impex Pvt. Ltd • India

On-site
INR 6,000,000 - 12,000,000
GRC Solution Consultant
GRC Solution Consultant

LTM • Dadri

On-site
INR 3,000,000 - 5,500,000