An application made for this job — a tailored resume and cover letter that speak straight to the posting.
NIKE, Inc. ITC is seeking a Principal GRC Information Security Analyst 5 to lead the GRC program across Governance, Risk, Compliance, and Technical Recovery. You will partner with global teams and drive standards, playbooks, and control patterns in a large, matrixed environment.
You will own end‑to‑end risk lifecycle quality, guide SOX ITGC assessments, and mentor ITC analysts while implementing ServiceNow GRC to scale enterprise risk management globally.
Become a Part of the NIKE, Inc. Team
NIKE, Inc. does more than outfit the world’s best athletes. It is a place to explore potential, obliterate boundaries and push out the edges of what can be. The company looks for people who can grow, think, dream and create. Its culture thrives by embracing diversity and rewarding imagination. The brand seeks achievers, leaders and visionaries. At NIKE, Inc. it’s about each person bringing skills and passion to a challenging and constantly evolving game.
The Principal GRC Information Security Analyst 5 is the top GRC individual contributor at Nike's India Technology Center (ITC), reporting to the ITC GRC Director. This role partners with the Global GRC team in Beaverton, Oregon and cross-functional leaders across Global Technology, Internal Audit, Legal, and Finance to advance Nike's global GRC agenda.
The candidate needs to have deep, broadly applied GRC expertise across Governance, Risk, Compliance, and Technical Recovery, and the maturity to operate as a Principal GRC Athlete—the discipline lead for ITC on a rotating stream while providing thought leadership across all four streams. This is the senior anchor role at ITC and requires a recognized subject‑matter expert who is comfortable with novel and ambiguous problems and who develops new concepts, playbooks, and standards that scale globally. The candidate influences senior leaders across a highly matrixed environment without direct authority, coaches Leads, Seniors, and Analysts, and sets the technical direction for how work gets done at ITC. Strong command of SOX ITGC, cybersecurity regulations, NIST CSF and ISO 27001, third‑party cyber risk, cybersecurity risk assessments, DR/BCP resilience, ServiceNow GRC, and enterprise risk lifecycle discipline is essential. The candidate thrives on closing loops with evidence, not activity.
You serve as the top GRC individual contributor at ITC, extending Global GRC standards into local execution while rotating as a Principal GRC Athlete across Governance, Risk, Compliance, and Technical Recovery. You lead the most complex problems, coach the ITC GRC team, and represent ITC in global forums.