Executive Director, Governance Risk & Compliance

Jobtailor

Illinois

On-site

USD 180,000 - 240,000

Full time

4 days ago
Be an early applicant
Application generator

Stand out for this role — generate a tailored resume and cover letter in about a minute.

Get past ATS filters

Job summary

Jobtailor is seeking an senior security and GRC leader to own enterprise risk, governance, and regulatory alignment across the organization and its subsidiaries. You will executive-levelly report on risk posture, drive attestations, and govern policy, budget, and awareness initiatives.

The role requires deep experience in SOX, HIPAA, HITRUST, NIST CSF/ISO 27001, and a proven track record of cross-functional leadership with Legal, Compliance, IT, and business stakeholders.

Qualifications

  • Bachelor’s degree and 15 years of IT/Information Security experience; or 19 years of experience without a degree.
  • Minimum 7 years of people leadership experience (multi-team leadership preferred).
  • Proven experience leading enterprise GRC programs, including risk, compliance, policy, third-party risk, and subsidiary governance.
  • Preferred: HIPAA/HITRUST and SOX regulatory regimes; experience with NIST CSF/800-53 and ISO 27001 enterprise control frameworks.

Responsibilities

  • Provide enterprise leadership for security risk and compliance.
  • Set strategy, own GRC outcomes, and ensure regulatory alignment across the company and its subsidiaries.
  • Build and sustain the enterprise GRC framework.
  • Lead enterprise attestations and certifications, including SOX, HIPAA, and HITRUST.
  • Provide C-suite and Board reporting.
  • Govern security policy, exceptions, and security awareness initiatives.
  • Oversee third-party risk management.
  • Enable consistent identification, tracking, remediation, and reporting of enterprise security risks.
  • Oversee threat and vulnerability management processes.
  • Ensure adherence to established risk policies and standards.
  • Continuously improve security risk management capabilities and controls.
  • Own the enterprise information security risk posture and budget stewardship.
  • Drive cross-functional alignment with Legal, Compliance, IT, and Business stakeholders.

Skills

Enterprise GRC Leadership
Risk Management
Regulatory Compliance
People Leadership
Cross-Functional Collaboration

Education

Bachelor’s degree

Job description

  • Provide enterprise leadership for security risk and compliance
  • Set strategy, own GRC outcomes, and ensure regulatory alignment across the company and its subsidiaries
  • Build and sustain the enterprise GRC framework
  • Lead enterprise attestations and certifications, including SOX, HIPAA, and HITRUST
  • Provide C-suite and Board reporting
  • Govern security policy, exceptions, and security awareness initiatives
  • Oversee third-party risk management
  • Enable consistent identification, tracking, remediation, and reporting of enterprise security risks
  • Oversee threat and vulnerability management processes
  • Ensure adherence to established risk policies and standards
  • Continuously improve security risk management capabilities and controls
  • Own the enterprise information security risk posture and budget stewardship
  • Drive cross-functional alignment with Legal, Compliance, IT, and Business stakeholders
Requirements
  • Bachelor’s degree and 15 years of experience in IT/Information Security; or 19 years of experience without a degree
  • Minimum 7 years of people leadership experience (multi-team leadership preferred)
  • Proven experience leading enterprise GRC programs, including risk, compliance, policy, third-party risk, and subsidiary governance
  • Demonstrated success briefing executives/Board, owning budgets, and driving cross-functional outcomes
  • Preferred: Executive experience with HIPAA/HITRUST and SOX regulatory regimes
  • Preferred: Experience with NIST CSF/800-53 and ISO 27001 enterprise control frameworks
Core Competencies

Demonstrates extensive expertise in enterprise governance, risk, and compliance (GRC) leadership, with a strong focus on regulatory alignment, risk management, and cross-functional collaboration. Proven ability to drive security initiatives, oversee compliance frameworks, and report to executive leadership.

Highest-signal resume keywords
  • Enterprise GRC Leadership
  • Risk Management
  • Regulatory Compliance (SOX, HIPAA, HITRUST)
  • People Leadership (Multi-Team)
  • Cross-Functional Collaboration
Hard Skills
  • Risk Assessment
  • Compliance Frameworks (NIST CSF, ISO 27001)
  • Security Policy Governance
  • Third-Party Risk Management
  • Threat and Vulnerability Management
  • Budget Stewardship
  • Enterprise Attestations
  • Security Awareness Initiatives
  • Regulatory Alignment
  • Reporting to Executives
Soft Skills
  • Leadership
  • Strategic Thinking
  • Communication
  • Collaboration
  • Problem-Solving
Industry Keywords
  • Enterprise Risk Management
  • Governance
  • Compliance
  • Security Risk Posture
  • C-Suite Reporting
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Sr. Director, Governance, Risk, and Compliance (GRC)
Sr. Director, Governance, Risk, and Compliance (GRC)

Brobston Group LLC • Seattle (WA)

On-site
USD 180,000 - 260,000
GRC Lead
GRC Lead

Jobtailor • Houston (TX)

On-site
USD 120,000 - 180,000
IT Sr Director, Compliance and Risk Governance
IT Sr Director, Compliance and Risk Governance

Intuitive • Sunnyvale (CA)

On-site
USD 180,000 - 300,000
Manager Security Compliance and Risk Management
Manager Security Compliance and Risk Management

RELX • Raleigh (NC)

On-site
USD 118,000 - 220,000
Annual incentive bonus
Senior Manager, GRC
Senior Manager, GRC

Jobtailor • California (MO)

On-site
USD 130,000 - 165,000
Senior Security Analyst
Senior Security Analyst

Jobtailor • Columbus (OH)

On-site
USD 120,000 - 155,000
Senior Manager of Risk and Compliance
Senior Manager of Risk and Compliance

PTR Global • United States

On-site
USD 100,000 - 130,000
IT GRC Lead Analyst
IT GRC Lead Analyst

Westfield Insurance • Westfield Center (OH)

Hybrid
USD 90,000 - 120,000
Director, Risk – Reporting, Governance, Exam Management
Director, Risk – Reporting, Governance, Exam Management

Jobtailor • Town of Florida (NY)

On-site
USD 150,000 - 210,000
Governance Risk and Compliance Analyst Intermediate
Governance Risk and Compliance Analyst Intermediate

Cone Health • Greensboro (NC)

On-site
USD 110,000 - 140,000