The Director of Governance and Risk will oversee cybersecurity policy, standards, procedures, compliance, ensuring the company adheres to relevant regulations, industry standards, and internal and ...
The Director of Governance and Risk will oversee cybersecurity policy, standards, procedures, compliance, ensuring the company adheres to relevant regulations, industry standards, and internal and ...
The Director of Governance and Risk will oversee cybersecurity policy, standards, procedures, compliance, ensuring the company adheres to relevant regulations, industry standards, and internal and ...
The Director of Governance and Risk will oversee cybersecurity policy, standards, procedures, compliance, ensuring the company adheres to relevant regulations, industry standards, and internal and ...
The Director of Governance and Risk will oversee cybersecurity policy, standards, procedures, compliance, ensuring the company adheres to relevant regulations, industry standards, and internal and ...
The Director of Governance and Risk will oversee cybersecurity policy, standards, procedures, compliance, ensuring the company adheres to relevant regulations, industry standards, and internal and ...
We are seeking a Senior Engineer (Cyber, Data & Security) with 6 to 8 years of experience to join our Governance, Risk & Compliance (GRC) team. The ideal candidate will focus on Third-Party (TP ...
We are seeking a Senior Engineer (Cyber, Data & Security) with 6 to 8 years of experience to join our Governance, Risk & Compliance (GRC) team. The ideal candidate will focus on Third-Party (TP ...
Familiar with GRC (Governance, Risk & Compliance) tools * Service delivery and/or contractual compliance experience a positive Risk & Security Assurance Manager Engineer Start Date ASAP Risk ...
Familiar with GRC (Governance, Risk & Compliance) tools * Service delivery and/or contractual compliance experience a positive Risk & Security Assurance Manager Engineer Start Date ASAP Risk ...
Developing AI-enabled capabilities that accelerate governance, risk, and compliance and cyber operations, including evidence summarization, control testing assist, policy question-and-answer ...
Developing AI-enabled capabilities that accelerate governance, risk, and compliance and cyber operations, including evidence summarization, control testing assist, policy question-and-answer ...
Risk Analysis
Raleigh, NC · On-site
... governance, risk, and compliance (GRC) initiatives, policy reviews, audit readiness, issue management, control monitoring, and reporting for senior leadership. - Develop and maintain risk dashboards ...
Quick apply
Risk Analysis
Raleigh, NC · On-site
... governance, risk, and compliance (GRC) initiatives, policy reviews, audit readiness, issue management, control monitoring, and reporting for senior leadership. - Develop and maintain risk dashboards ...
Risk Management Analyst
Raleigh, NC · On-site
Support governance, risk, and compliance (GRC) initiatives, policy adherence reviews, audit readiness, issue management, control monitoring, and risk reporting for senior leadership. * Develop risk ...
Risk Management Analyst
Raleigh, NC · On-site
Support governance, risk, and compliance (GRC) initiatives, policy adherence reviews, audit readiness, issue management, control monitoring, and risk reporting for senior leadership. * Develop risk ...
Risk Analysis
Raleigh, NC · On-site
$100K - $120K/yr
... governance, risk, and compliance (GRC) initiatives, policy adherence reviews, audit readiness, issue management, control monitoring, and risk reporting for senior leadership. • Adept at developing ...
Risk Analysis
Raleigh, NC · On-site
$100K - $120K/yr
... governance, risk, and compliance (GRC) initiatives, policy adherence reviews, audit readiness, issue management, control monitoring, and risk reporting for senior leadership. • Adept at developing ...
SUMMARY The AI Governance & Compliance Analyst drives the strategic adoption, governance, and ... Analyzes risk to business activities and operations - including financial, cyber, and regulatory ...
SUMMARY The AI Governance & Compliance Analyst drives the strategic adoption, governance, and ... Analyzes risk to business activities and operations - including financial, cyber, and regulatory ...
This leader will partner with senior business, technology, data governance, risk, compliance, product, operations, digital, and ED&A stakeholders to ensure bank data is complete, controlled, fit-for ...
This leader will partner with senior business, technology, data governance, risk, compliance, product, operations, digital, and ED&A stakeholders to ensure bank data is complete, controlled, fit-for ...
This leader will partner with senior business, technology, data governance, risk, compliance, product, operations, digital, and ED&A stakeholders to ensure bank data is complete, controlled, fit-for ...
This leader will partner with senior business, technology, data governance, risk, compliance, product, operations, digital, and ED&A stakeholders to ensure bank data is complete, controlled, fit-for ...
This leader will partner with senior business, technology, data governance, risk, compliance, product, operations, digital, and ED&A stakeholders to ensure bank data is complete, controlled, fit-for ...
This leader will partner with senior business, technology, data governance, risk, compliance, product, operations, digital, and ED&A stakeholders to ensure bank data is complete, controlled, fit-for ...
This leader will partner with senior business, technology, data governance, risk, compliance, product, operations, digital, and ED&A stakeholders to ensure bank data is complete, controlled, fit-for ...
This leader will partner with senior business, technology, data governance, risk, compliance, product, operations, digital, and ED&A stakeholders to ensure bank data is complete, controlled, fit-for ...
The HR Compliance Lead owns and advances the organization's enterprise HR compliance program, spanning both regulated and non-regulated requirements, by driving governance, risk mitigation, and ...
The HR Compliance Lead owns and advances the organization's enterprise HR compliance program, spanning both regulated and non-regulated requirements, by driving governance, risk mitigation, and ...
AI Platform Director- Data Engineering
Raleigh, NC · On-site
$245K/yr
Integrate real-time streaming data for low-latency decision systems Model Governance & Risk Compliance * Define and enforce standards, patterns, and guardrails for model deployment, explainability ...
AI Platform Director- Data Engineering
Raleigh, NC · On-site
$245K/yr
Integrate real-time streaming data for low-latency decision systems Model Governance & Risk Compliance * Define and enforce standards, patterns, and guardrails for model deployment, explainability ...
Integrate real-time streaming data for low-latency decision systems Model Governance & Risk Compliance * Define and enforce standards, patterns, and guardrails for model deployment, explainability ...
Integrate real-time streaming data for low-latency decision systems Model Governance & Risk Compliance * Define and enforce standards, patterns, and guardrails for model deployment, explainability ...
AI Platform Director- Data Engineering
Raleigh, NC · On-site
$245K/yr
Integrate real-time streaming data for low-latency decision systems Model Governance & Risk Compliance * Define and enforce standards, patterns, and guardrails for model deployment, explainability ...
AI Platform Director- Data Engineering
Raleigh, NC · On-site
$245K/yr
Integrate real-time streaming data for low-latency decision systems Model Governance & Risk Compliance * Define and enforce standards, patterns, and guardrails for model deployment, explainability ...
Security Engineer
Durham, NC · On-site
Familiar with GRC (Governance, Risk & Compliance) tools * Service delivery and/or contractual compliance experience a positive Security Engineer Start Date ASAP Security Engineer Assignment Length 6+ ...
Security Engineer
Durham, NC · On-site
Familiar with GRC (Governance, Risk & Compliance) tools * Service delivery and/or contractual compliance experience a positive Security Engineer Start Date ASAP Security Engineer Assignment Length 6+ ...
AI Platform Director- Data Engineering
Raleigh, NC · On-site
$245K/yr
Integrate real-time streaming data for low-latency decision systems Model Governance & Risk Compliance * Define and enforce standards, patterns, and guardrails for model deployment, explainability ...
AI Platform Director- Data Engineering
Raleigh, NC · On-site
$245K/yr
Integrate real-time streaming data for low-latency decision systems Model Governance & Risk Compliance * Define and enforce standards, patterns, and guardrails for model deployment, explainability ...
Governance Risk And Compliance information
See Raleigh, NC salary details
$96.2K - $121.4K
1% of jobs
$121.4K - $146.6K
21% of jobs
$167.6K is the 25th percentile. Wages below this are outliers.
$146.6K - $171.8K
3% of jobs
The median wage is $180.4K / yr.
$171.8K - $197K
71% of jobs
$197K - $222.2K
0% of jobs
$222.2K - $247.3K
3% of jobs
$247.3K - $272.5K
0% of jobs
$272.5K - $297.7K
0% of jobs
$297.7K - $322.9K
0% of jobs
$322.9K - $348.1K
0% of jobs
$348.1K - $373.3K
0% of jobs
$96.2K
$186.4K
$373.3K
How much do governance risk and compliance jobs pay per year?
What are governance risk and compliance roles?
What is the work of governance risk and compliance?
Is governance risk and compliance a good career?
What are the key skills and qualifications needed to thrive as a governance risk and compliance professional?
What are some common challenges faced by professionals in governance risk and compliance roles, and how can they be addressed?
What is the difference between Governance Risk And Compliance vs Compliance Analyst?
| Aspect | Governance Risk And Compliance | Compliance Analyst |
|---|---|---|
| Certifications | ISO 31000, ISO 27001, Certified Risk Management Professional | Certified Compliance & Ethics Professional (CCEP), ISO 19600 |
| Work Environment | Corporate, regulated industries, risk management departments | Legal, audit, compliance departments within organizations |
| Employer & Industry Usage | Financial services, healthcare, energy, government | Financial institutions, healthcare, manufacturing, retail |
Governance Risk And Compliance professionals focus on establishing frameworks, managing risks, and ensuring overall compliance strategies across organizations. Compliance Analysts primarily focus on implementing and monitoring specific compliance policies, often within legal or audit teams. While both roles require understanding regulations and certifications, Governance Risk And Compliance roles have a broader scope involving risk management and governance structures.

Full-time
Re-posted 24 days ago
Job description
The Director of Governance and Risk will report to the CISO within Advance Auto Parts and will focus on the defining and deploying governance and risk management frameworks across Advance Auto Parts.
The Director of Governance and Risk will oversee cybersecurity policy, standards, procedures, compliance, ensuring the company adheres to relevant regulations, industry standards, and internal and 3rd party risk management. The ideal candidate will combine expertise in both cybersecurity and risk management disciplines and have exceptional communication and stakeholder management skills.
This position is 4 days in office, 1 day remote per week, based at our corporate headquarters in Raleigh, North Carolina (North Hills)
The key responsibilities of the role include:
- Develop a short term and long-term comprehensive Governance and Risk Management Strategy
- Develop, communicate, and implement enterprise-wide security policy, standards, procedures, and guidelines.
- Provide strategic guidance to the CISO for the representation of risks to the Board, Audit committee, and ERM
- Lead a team of cyber specialists, providing direction and supporting their development
- Conduct regular risk assessments, including PCI-DSS and SOX, and develop comprehensive risk management plans for various business units and projects
- Support Internal Audit with engagements requiring technology support.
- Vendor Risk Management (VRM): Oversee the VRM integration, including risk reviews, contract management, and ongoing monitoring to manage risks associated with third-party vendors and suppliers
- Support the identification, evaluation, and prioritization of cyber risks across the organization
- Oversee production, reporting and evolution of cyber risk metrics, including Key Performance Indicators (KPIs), scorecards, and Key Risk Indicators (KRIs)
- Conduct risk analysis, providing insights on issues and direction on risk mitigation strategies
- Drive automation, analytics, and continuous improvement of processes
- Engage with a range of senior stakeholders across Lines of Defense to ensure appropriate oversight and reporting of cybersecurity risks and vulnerabilities
- Collaborate with cross-functional teams on cyber risk remediation activities
- Ensure regulatory compliance with frameworks in NIST, SOC 1&2, PCI, SOX, CCPA
- Maintain the database and reporting platform to ensure compliance to our security policies and standards.
Skills/ Qualifications:
- Bachelor's degree in information security, Computer Science, or a related field; Master's degree preferred
- Minimum of 12 years of experience in cybersecurity, with a focus on risk management
- Expert in the implementation and operational management of OneTrust, working knowledge of Service Now, and Auditboard.
- Process driven with an extensive knowledge of cyber risk management frameworks, tools, and methodologies
- Master in the ability to "tell a story" through PowerPoint leveraging metrics and creativity for various levels of the enterprise (Board, ERM, Steerco, Business and/or tech leaders)
- Proven experience in senior leadership roles, managing teams, and influencing executive stakeholders, driving outcomes
- Experience in establishing and managing regulatory compliance in NIST, PCI-DSS, SOX, SOC 1/2, CCPA, HIPAA
- Deep understanding in cybersecurity metrics programs that are meaningful and risk/risk posture reporting
- Strategic thinker with a strong understanding of cyber risks, vulnerabilities, and risk mitigation options
- Innovative thinker, adaptable to change, self-driven, aggressive, and detail oriented with the ability to establish true partnerships that drives business enablement while managing risk
- Exceptional communication and executive level presentation skills, capable of translating technical risk into business terms
- Must have the ability to drive enterprise aligned roadmaps focusing on top cyber risks, cyber priorities, industry threats that align to the business
- Excellent analytical, problem-solving, and decision-making skills
California Residents click below for Privacy Notice:
About Advance Auto Parts
Sourced by ZipRecruiter
At Advance Auto Parts we have a passion for YES. Each day we are motivated by a passion to help our Customers. We have a commitment to advance the lives of our fellow Team Members, Customers, and the Communities where we live and work.
Industry
Motor vehicle and motor vehicle parts wholesalers, retail, internet and it and elementary and secondary schools
Company size
10,000+ Employees
Headquarters location
Raleigh, NC, US