Sr. Director, Governance, Risk, and Compliance (GRC)
Core
Building and maturing an enterprise-wide Governance, Risk, and Compliance (GRC) function to enable secure growth and digital transformation while safeguarding the Nordstrom brand.
Role type
Senior Director, GRC
Builds
Enterprise GRC programs, risk dashboards, and executive reporting for a retail organization.
Domain
Retail / Enterprise Risk Management / Cybersecurity Compliance
Deliverable
dashboards & analysis
Required skills
Enterprise GRC strategy, executive presence, cybersecurity risk, IT risk, third-party risk, regulatory compliance frameworks, audit coordination, GRC platforms, automation, cross-functional leadership
Preferred skills
Scaling GRC programs, continuous readiness, Board-level reporting, risk storytelling
Technologies
ServiceNow GRC, Archer, OneTrust
Responsibilities
Partner with CISO to execute enterprise GRC strategy; translate complex risks into actionable insights for executives; review and guide enterprise risk assessments; oversee internal and external audit activities; drive executive and Board-level risk reporting; lead and develop the GRC organization; evaluate and optimize GRC tools and platforms.
Seniority
Senior, hands-on IC with strategic leadership