Develop a short term and long-term comprehensive Governance and Risk Management Strategy * Develop, communicate, and implement enterprise-wide security policy, standards, procedures, and guidelines.
Develop a short term and long-term comprehensive Governance and Risk Management Strategy * Develop, communicate, and implement enterprise-wide security policy, standards, procedures, and guidelines.
... management capabilities ... The role partners closely with the Enterprise Third Party Risk Operations Function (TPROF), second ...
... management capabilities ... The role partners closely with the Enterprise Third Party Risk Operations Function (TPROF), second ...
Managing Risk - Assessing and effectively managing all of the risks associated with their business objectives and activities to ensure they adhere to and support PNC's Enterprise Risk Management ...
Managing Risk - Assessing and effectively managing all of the risks associated with their business objectives and activities to ensure they adhere to and support PNC's Enterprise Risk Management ...
Drive consensus and implementation of AI risk management and governance activities across enterprise departments. Qualifications * 10+ years in compliance, cybersecurity, data governance, risk, or AI ...
Drive consensus and implementation of AI risk management and governance activities across enterprise departments. Qualifications * 10+ years in compliance, cybersecurity, data governance, risk, or AI ...
Managing Risk - Assessing and effectively managing all of the risks associated with their business objectives and activities to ensure they adhere to and support PNC's Enterprise Risk Management ...
Managing Risk - Assessing and effectively managing all of the risks associated with their business objectives and activities to ensure they adhere to and support PNC's Enterprise Risk Management ...
... Data Analytics, Enterprise Risk Management OR High School Diploma or GED and 12 years of experience in Data Management, Data Analytics, Enterprise Risk Management Experience * 15+ years of ...
... Data Analytics, Enterprise Risk Management OR High School Diploma or GED and 12 years of experience in Data Management, Data Analytics, Enterprise Risk Management Experience * 15+ years of ...
Bachelor's Degree and 8 years of experience in Data Management, Data Analytics, Enterprise Risk Management OR High School Diploma or GED and 12 years of experience in Data Management, Data Analytics ...
Bachelor's Degree and 8 years of experience in Data Management, Data Analytics, Enterprise Risk Management OR High School Diploma or GED and 12 years of experience in Data Management, Data Analytics ...
Bachelor's Degree and 8 years of experience in Data Management, Data Analytics, Enterprise Risk Management OR High School Diploma or GED and 12 years of experience in Data Management, Data Analytics ...
Bachelor's Degree and 8 years of experience in Data Management, Data Analytics, Enterprise Risk Management OR High School Diploma or GED and 12 years of experience in Data Management, Data Analytics ...
Establish Information Security and Risk Management programs. Some of the responsibilities include developing, implementing and maintaining DES information security enterprise standards, processes ...
Establish Information Security and Risk Management programs. Some of the responsibilities include developing, implementing and maintaining DES information security enterprise standards, processes ...
ServiceNow - Senior Manager
Raleigh, NC · On-site
... risk management (IRM), governance, risk, and compliance (GRC), and Security Operations (SecOps) leveraging the ServiceNow platform. * Design and implement enterprise risk and compliance frameworks ...
ServiceNow - Senior Manager
Raleigh, NC · On-site
... risk management (IRM), governance, risk, and compliance (GRC), and Security Operations (SecOps) leveraging the ServiceNow platform. * Design and implement enterprise risk and compliance frameworks ...
Partner with Legal, Risk, Privacy, enterprise Data Management and IT teams on discovery, audit, regulatory inquiries, compliance, and evidence collection * Maintain and audit data retention schedules ...
Partner with Legal, Risk, Privacy, enterprise Data Management and IT teams on discovery, audit, regulatory inquiries, compliance, and evidence collection * Maintain and audit data retention schedules ...
Lead a recurring Business Impact Analysis (BIA) process to identify critical operations, RTOs, RPOs, and maximum tolerable downtime that is aligned to the corporate ERM (Enterprise Risk Management ...
Lead a recurring Business Impact Analysis (BIA) process to identify critical operations, RTOs, RPOs, and maximum tolerable downtime that is aligned to the corporate ERM (Enterprise Risk Management ...
Personal Risk Specialist
Raleigh, NC · On-site
$95.80K/yr
USI ONE ® represents Omni, Network, Enterprise-the three key elements that set USI apart from the competition. Through USI ONE, we develop strategic, timely, and effective risk management and ...
Personal Risk Specialist
Raleigh, NC · On-site
$95.80K/yr
USI ONE ® represents Omni, Network, Enterprise-the three key elements that set USI apart from the competition. Through USI ONE, we develop strategic, timely, and effective risk management and ...
Lead a recurring Business Impact Analysis (BIA) process to identify critical operations, RTOs, RPOs, and maximum tolerable downtime that is aligned to the corporate ERM (Enterprise Risk Management ...
Lead a recurring Business Impact Analysis (BIA) process to identify critical operations, RTOs, RPOs, and maximum tolerable downtime that is aligned to the corporate ERM (Enterprise Risk Management ...
... of the enterprise RCSA program. This position is responsible for facilitating assessments ... The role is ideal for someone with a solid understanding of risk management, controls, process ...
... of the enterprise RCSA program. This position is responsible for facilitating assessments ... The role is ideal for someone with a solid understanding of risk management, controls, process ...
Enterprise Project Manager
Raleigh, NC · On-site
The Project Manager role involves planning and overseeing enterprise project rollouts, ensuring ... risk management to minimize potential risks • Create and maintain comprehensive project ...
Enterprise Project Manager
Raleigh, NC · On-site
The Project Manager role involves planning and overseeing enterprise project rollouts, ensuring ... risk management to minimize potential risks • Create and maintain comprehensive project ...
Serve as alternate technical SME and emergency backup for the Enterprise IT Risk Technology Manager. * Other responsibilities as necessary to support the enterprise GRC program. EXPERIENCE * 7+ years ...
Serve as alternate technical SME and emergency backup for the Enterprise IT Risk Technology Manager. * Other responsibilities as necessary to support the enterprise GRC program. EXPERIENCE * 7+ years ...
FINRA Supervisory Specialist - PNC Wealth Management
$45K - $142.35K/yr
Managing Risk - Assessing and effectively managing all of the risks associated with their business objectives and activities to ensure they adhere to and support PNC's Enterprise Risk Management ...
FINRA Supervisory Specialist - PNC Wealth Management
$45K - $142.35K/yr
Managing Risk - Assessing and effectively managing all of the risks associated with their business objectives and activities to ensure they adhere to and support PNC's Enterprise Risk Management ...
... enterprise risk standards. * Interpret, assess, and enforce complex commercial agreements ... Coordinate resolution efforts by partnering with Legal, Risk Management, Supply Chain leadership ...
... enterprise risk standards. * Interpret, assess, and enforce complex commercial agreements ... Coordinate resolution efforts by partnering with Legal, Risk Management, Supply Chain leadership ...
Managing Risk - Assessing and effectively managing all of the risks associated with their business objectives and activities to ensure they adhere to and support PNC's Enterprise Risk Management ...
Managing Risk - Assessing and effectively managing all of the risks associated with their business objectives and activities to ensure they adhere to and support PNC's Enterprise Risk Management ...
Enterprise Risk Management information
See Raleigh, NC salary details
$50.1K - $60.5K
4% of jobs
$60.5K - $71K
6% of jobs
$71K - $81.5K
11% of jobs
$85.4K is the 25th percentile. Wages below this are outliers.
$81.5K - $92K
11% of jobs
The median wage is $100.3K / yr.
$92K - $102.4K
23% of jobs
$102.4K - $112.9K
13% of jobs
$119.8K is the 75th percentile. Wages above this are outliers.
$112.9K - $123.4K
12% of jobs
$123.4K - $133.8K
8% of jobs
$133.8K - $144.3K
6% of jobs
$144.3K - $154.8K
4% of jobs
$154.8K - $165.3K
2% of jobs
$50.1K
$108.4K
$165.3K
How much do enterprise risk management jobs pay per year?
What is an Enterprise Risk Management job?
What are the key skills and qualifications needed to thrive in the Enterprise Risk Management position, and why are they important?
What are the typical daily responsibilities of someone working in Enterprise Risk Management?
Is risk management high paying?

Full-time
Posted 12 days ago
Job description
The Director of Governance and Risk will report to the CISO within Advance Auto Parts and will focus on the defining and deploying governance and risk management frameworks across Advance Auto Parts.
The Director of Governance and Risk will oversee cybersecurity policy, standards, procedures, compliance, ensuring the company adheres to relevant regulations, industry standards, and internal and 3rd party risk management. The ideal candidate will combine expertise in both cybersecurity and risk management disciplines and have exceptional communication and stakeholder management skills.
This position is 4 days in office, 1 day remote per week, based at our corporate headquarters in Raleigh, North Carolina (North Hills)
The key responsibilities of the role include:
- Develop a short term and long-term comprehensive Governance and Risk Management Strategy
- Develop, communicate, and implement enterprise-wide security policy, standards, procedures, and guidelines.
- Provide strategic guidance to the CISO for the representation of risks to the Board, Audit committee, and ERM
- Lead a team of cyber specialists, providing direction and supporting their development
- Conduct regular risk assessments, including PCI-DSS and SOX, and develop comprehensive risk management plans for various business units and projects
- Support Internal Audit with engagements requiring technology support.
- Vendor Risk Management (VRM): Oversee the VRM integration, including risk reviews, contract management, and ongoing monitoring to manage risks associated with third-party vendors and suppliers
- Support the identification, evaluation, and prioritization of cyber risks across the organization
- Oversee production, reporting and evolution of cyber risk metrics, including Key Performance Indicators (KPIs), scorecards, and Key Risk Indicators (KRIs)
- Conduct risk analysis, providing insights on issues and direction on risk mitigation strategies
- Drive automation, analytics, and continuous improvement of processes
- Engage with a range of senior stakeholders across Lines of Defense to ensure appropriate oversight and reporting of cybersecurity risks and vulnerabilities
- Collaborate with cross-functional teams on cyber risk remediation activities
- Ensure regulatory compliance with frameworks in NIST, SOC 1&2, PCI, SOX, CCPA
- Maintain the database and reporting platform to ensure compliance to our security policies and standards.
Skills/ Qualifications:
- Bachelor's degree in information security, Computer Science, or a related field; Master's degree preferred
- Minimum of 12 years of experience in cybersecurity, with a focus on risk management
- Expert in the implementation and operational management of OneTrust, working knowledge of Service Now, and Auditboard.
- Process driven with an extensive knowledge of cyber risk management frameworks, tools, and methodologies
- Master in the ability to "tell a story" through PowerPoint leveraging metrics and creativity for various levels of the enterprise (Board, ERM, Steerco, Business and/or tech leaders)
- Proven experience in senior leadership roles, managing teams, and influencing executive stakeholders, driving outcomes
- Experience in establishing and managing regulatory compliance in NIST, PCI-DSS, SOX, SOC 1/2, CCPA, HIPAA
- Deep understanding in cybersecurity metrics programs that are meaningful and risk/risk posture reporting
- Strategic thinker with a strong understanding of cyber risks, vulnerabilities, and risk mitigation options
- Innovative thinker, adaptable to change, self-driven, aggressive, and detail oriented with the ability to establish true partnerships that drives business enablement while managing risk
- Exceptional communication and executive level presentation skills, capable of translating technical risk into business terms
- Must have the ability to drive enterprise aligned roadmaps focusing on top cyber risks, cyber priorities, industry threats that align to the business
- Excellent analytical, problem-solving, and decision-making skills
California Residents click below for Privacy Notice:
https://jobs.advanceautoparts.com/us/en/disclosures
About Advance Auto Parts
Sourced by ZipRecruiter
At Advance Auto Parts we have a passion for YES. Each day we are motivated by a passion to help our Customers. We have a commitment to advance the lives of our fellow Team Members, Customers, and the Communities where we live and work.
Industry
Motor vehicle and motor vehicle parts wholesalers, retail, internet and it and elementary and secondary schools
Company size
10,000+ Employees
Headquarters location
Raleigh, NC, US