IT Sr Director, Compliance and Risk Governance
$223.7k - $394.8kIntuitive
Company Description
It started with a simple idea: what if surgery could be less invasive and recovery less painful? Nearly 30 years later, that question still fuels everything we do at Intuitive . As a global leader in robotic-assisted surgery and minimally invasive care , our technologies—like the da Vinci surgical system and Ion —have transformed how care is delivered for millions of patients worldwide.
We’re a team of engineers, clinicians, and innovators united by one purpose: to make surgery smarter, safer, and more human. Every day, our work helps care teams perform with greater precision and patients recover faster, improving outcomes around the world.
The problems we solve demand creativity, rigor, and collaboration. The work is challenging, but deeply meaningful—because every improvement we make has the potential to change a life.
If you’re ready to contribute to something bigger than yourself and help transform the future of healthcare , you’ll find your purpose here.
Job Description
Primary Function of Position:
Responsible for providing strategic leadership and oversight of the enterprise
Cybersecurity Governance, Risk, and Compliance (GRC) program. This role
establishes the vision, operating model, and governance framework necessary to
effectively identify, assess, manage, and communicate cybersecurity and
technology risks across the organization. Serves as a trusted advisor to senior
leadership, business stakeholders, and technology teams, ensuring that
cybersecurity risk management practices align with organizational objectives,
regulatory requirements, and industry best practices. This leader drives a risk-
informed culture and enables the business to innovate securely while maintaining
compliance and operational resilience.
Roles & Responsibilities
Cybersecurity Governance
Define, implement, and continuously mature the enterprise cybersecurity
governance framework, including policies, standards, procedures, and
oversight mechanisms.
Establish strategic direction for cybersecurity governance, ensuring
alignment with corporate objectives, risk appetite, and business priorities.
Lead governance forums, steering committees, and executive reviews to
drive accountability and informed decision-making.
Develop and monitor key performance indicators (KPIs), key risk
indicators (KRIs), and executive dashboards that measure program
effectiveness and organizational risk posture.
Drive governance modernization initiatives through automation, process
optimization, and data-driven decision support.
Enterprise Risk Management
Lead the enterprise cybersecurity risk management program, ensuring
risks are identified, assessed, prioritized, mitigated, and monitored
effectively.
Develop risk assessment methodologies and reporting frameworks that
provide actionable insights to executive leadership.
Partner with business and technology leaders to implement risk mitigation
strategies that balance security, operational efficiency, and business
objectives.
Facilitate enterprise-level risk discussions and support
strategic decision-making by translating technical and cyber risks into
business-relevant impacts.
Compliance Oversight
Establish and maintain programs to ensure compliance with applicable
regulations, standards, and industry frameworks, including ISO 27001,
ISO 27036, NIST Cybersecurity Framework (CSF), as well as other
relevant frameworks such as AI risk management.
Lead internal and external audits, assessments, and regulatory reviews.
Ensure remediation activities are effectively managed and tracked through
closure.
Monitor emerging regulatory requirements and industry developments,
advising leadership on compliance obligations and risk implications.
Third-Party Risk Management
Establish and oversee governance processes for evaluating and
monitoring third-party cybersecurity and technology risks.
Collaborate with Procurement, Legal, Privacy, and business stakeholders
to assess vendor security posture and contractual risk requirements.
Drive continuous improvement of supplier risk management practices to
support organizational resilience and compliance objectives.
Engagement & Business Partnership
Serve as key advisor to senior leadership on cybersecurity
risk, governance, and compliance matters.
Provide clear, concise, and impactful reporting to executive leadership and
governance bodies.
Influence strategic business initiatives by integrating security, risk, and
compliance considerations into planning and execution activities.
Foster strong partnerships across business functions to promote risk-
aware decision-making and regulatory readiness.
Leadership & Organizational Development
Build, lead, and develop a high-performing team of cybersecurity
governance, risk, and compliance professionals.
Establish organizational goals, resource strategies, and performance
expectations aligned with enterprise priorities.
Manage departmental budgets, strategic planning activities, and program
investments.
Champion a culture of accountability, transparency, continuous
improvement, and risk awareness throughout the organization
Qualifications
Skills, Experience, Education, & Training:
Bachelor's degree in Cybersecurity, Information Technology, Information
Systems, Computer Science, Business Administration, or a related
discipline.
12+ years of progressive leadership experience in
cybersecurity, information security, governance, risk management,
compliance, or related disciplines.
7+ years of experience leading enterprise-scale cybersecurity GRC
programs and teams.
Demonstrated success developing and executing enterprise governance
and risk management strategies within complex, highly regulated
environments.
Experience presenting cybersecurity risk, compliance, and governance
topics to executive leadership, senior management, and governance
committees.
Proven track record of leading external audits, regulatory assessments,
and compliance initiatives.
Deep expertise in cybersecurity governance, enterprise risk management,
regulatory compliance, and industry frameworks.
Strong understanding of cybersecurity standards and frameworks,
including ISO 27001, ISO 27036, ISO 42001, NIST CSF, NIST AI RMF,
CSA AISMM, and related control frameworks.
Exceptional executive communication, stakeholder management, and
influencing skills.
Ability to translate complex technical concepts into clear business-focused
recommendations
Strong strategic thinking, analytical, problem-solving, and
organizational leadership capabilities.
Experience driving organizational transformation, process modernization,
and program maturity initiatives.
Preferred certifications:
o CISSP
o CISM
o CRISC
o CISA
Additional Information
Due to the nature of our business and the role, please note that Intuitive and/or your customer(s) may require that you show current proof of vaccination against certain diseases including COVID-19. Details can vary by role.
Intuitive is an Equal Opportunity Employer. We provide equal employment opportunities to all qualified applicants and employees, and prohibit discrimination and harassment of any type, without regard to race, sex, pregnancy, sexual orientation, gender identity, national origin, color, age, religion, protected veteran or disability status, genetic information or any other status protected under federal, state, or local applicable laws.
Mandatory Notices
U.S. Export Controls Disclaimer: In accordance with the U.S. Export Administration Regulations (15 CFR §743.13(b)), some roles at Intuitive Surgical may be subject to U.S. export controls for prospective employees who are nationals from countries currently on embargo or sanctions status.
Certain information you provide as part of the application will be used for purposes of determining whether Intuitive Surgical will need to (i) obtain an export license from the U.S. Government on your behalf (note: the government’s licensing process can take 3 to 6+ months) or (ii) implement a Technology Control Plan (“TCP”) (note: typically adds 2 weeks to the hiring process).
For any Intuitive role subject to export controls, final offers are contingent upon obtaining an approved export license and/or an executed TCP prior to the prospective employee’s start date, which may or may not be flexible, and within a timeframe that does not unreasonably impede the hiring need. If applicable, candidates will be notified and instructed on any requirements for these purposes.
We will consider for employment qualified applicants with arrest and conviction records in accordance with fair chance laws.
Preference will be given to qualified candidates who do not reside, or plan to reside, in Alabama, Arkansas, Delaware, Florida, Indiana, Iowa, Louisiana, Maryland, Mississippi, Missouri, Oklahoma, Pennsylvania, South Carolina, or Tennessee.
This position may be filled at a different job level than listed here depending on
business need and/or on the selected candidate’s experience, knowledge and skills.
Compensation will be based primarily on the job level at which the role is filled and the
candidate’s qualifications, consistent with applicable law.
We provide market-competitive compensation packages, inclusive of base pay, incentives, benefits, and equity. It would not be typical for someone to be hired at the top end of range for the role, as actual pay will be determined based on several factors, including experience, skills, and qualifications. The target compensation ranges are listed.
Shift: DayMax. Salary Region 2: 335600 USDMax. Salary Region 1: 394800 USDWays of Working: Set Schedule - This job will be onsite weekly, the percentage of onsite work will be defined by the leader.Employee Type: EmployeeMin. Salary Region 1: 263200 USDGlobal Job Level (HCM): Management 6, Sr Dir (18)Min. Salary Region 2: 223700 USD$246.8k - $355.2k
...We are looking for a Senior Director, Compliance & Ethics to join our team in... ...and regulatory compliance, risk, and ethical business conduct... ...Finance, Internal Audit, HR, IT, and commercial leaders to... ...including policies, procedures, and governance structures. Oversee risk-...SeniorRiskFull timeWork at officeWorldwide- ...seeking a strategic privacy compliance and operations... ...processes, controls, and governance. The ideal candidate brings... ...project leadership, risk management, and operational... ...reports to the Senior Director of Privacy Compliance &... ..., and partners with IT and product security, product...SeniorRiskWork at officeLocal areaWorldwideFlexible hours3 days per week
$236k - $264k
...Data Center, Cloud Computing, Enterprise IT, Hadoop/ Big Data, Hyperscale, HPC and... ...leader to join our growing Global SOX Compliance team. This role will be responsible... ...Line) in the identification of emerging risks. The Sr. Director, Global SOX Compliance Manager will be...SeniorRiskWorldwideFlexible hours- ...seeking a strategic privacy compliance and operations... ...processes, controls, and governance. The ideal candidate brings... ...project leadership, risk management, and operational... ...reports to the Senior Director of Privacy Compliance &... ..., and partners with IT and product security, product...SeniorRisk
$100k
...points, while proactively identifying execution gaps, surfacing risks early, and unblocking issues.What You Will LearnHow to scale... ...Administration Regulations (EAR), the Company is required to ensure compliance with these laws when transferring technology to nationals of...SeniorRiskPermanent employment$225k - $250k
...infrastructure requirements. Discover more at Senior Director, Governance, Risk Management and Compliance Location: San Jose, CA Role Overview... ...cross-functional role that partners with Finance, Legal, IT, Security, Engineering, and Operations to embed risk-...SeniorRiskFull timeFlexible hours$89.02k - $202.27k
...as passionate about your future as we are, join our team.KPMG is currently seeking a Manager, Ethics & Compliance Governance & Monitoring to join our LRMC(Legal Risk Management & Compliance) - E&C (Ethics & Compliance) organization.Responsibilities:Drive execution of Ethics...RiskH1bLocal area$181k - $215k
...join the movement!What you'll do:IT & Enterprise Technology LeadershipOversee... ...and ensuring alignment with cost, risk, and service expectations.Establish governance frameworks for evaluating and... ...disciplines.Familiarity with compliance requirements such as SOC2, HIPAA and...SeniorRiskContract workLocal area- NVIDIA is seeking a Senior Director, Global Risk & Compliance in Santa Clara, CA to design and lead a global risk and compliance framework aligned with our strategic objectives and regulatory requirements. You will guide a high-performing team of compliance professionals...SeniorRisk
$241k - $344.5k
...are looking for a Senior Director to serve as the enterprise authority on Data Governance at Palo Alto Networks.... ...: Partner deeply with IT Engineering and Product... ...infrastructure required for both compliance and AI enablement.... ...health, progress, and risks of the enterprise data...SeniorRiskFull timeWork at officeLocal area$332k
...lasting impact on the world. Join NVIDIA, a leader in computer graphics, PC gaming, and AI innovation, as a Senior Director, Global Risk & Compliance. This is a rare opportunity to invent and carry out world-class risk and compliance strategies that will propel us into...SeniorRisk$164.4k - $205.4k
...systems that make the CIO Office's demand governance model run in practice. This role owns the... ..., integration constraints, technical risks, and protected site-level changes; own approved... ...process Familiarity with enterprise IT portfolio structures (projects vs. programs...SeniorRiskWork at officeLocal area- Baker Tilly US in California is seeking a Public Sector Internal Audit & Risk Senior Consultant to help clients assess risks, strengthen controls, and improve governance across government and education sectors. You will work with client executives to understand their processes...SeniorRisk
$164k - $239k
Own individual Enterprise Compliance Priorities (ECPs), defining project-level scope and ensuring global support operations are integrated... ...with emerging AI capabilities to improve efficiency in a risk and compliance context.As a Functional Compliance IC, you serve...SeniorRisk$163.4k - $224.75k
...first of these apps, giving cybersecurity, governance, and risk teams an open, agentic Security Lakehouse that unifies security, IT, and business data into a single, governed environment... ..., and response. We are looking for a Sr. Product Marketing Manager to support the...SeniorRiskFor contractors$235k - $260k
...As Senior Corporate Counsel/ Associate Director, Compliance, you will serve as a strategic legal... ...the business, and providing practical, risk-based advice in a dynamic and rapidly... ...functional compliance initiatives that enhance governance, operational effectiveness, and...SeniorRiskFull timeWork at officeLocal areaWorldwideFlexible hours$190.9k - $334.1k
Job Description The Director Cross-APEX Licensing and Entitlement... ..., aggregation, and governance requirements across... ...governance, licensing compliance, and consumption-based... ...model infrastructure. It establishes the single... ...architectural gaps, overlaps, risks, and compliance issues...SeniorRiskWork at officeRemote workFlexible hoursShift work- ...hiring a Senior Analyst for SOX and Internal Audit to strengthen financial reporting controls and governance. The role collaborates with accounting/finance to assess risks, design controls, and support audits, including external engagements. Responsibilities include leading...SeniorRisk
$175.5k - $263.8k
Technology Compliance Program Manager, IT Governance & Planning, IS&T Sunnyvale, California, United States Corporate Functions The people here at Apple... ...Bachelorʼs degree with a concentration in Technology, Risk Management, Business, Finance, or a related field Preferred...RiskRelocation$165.18k - $247.5k
...Finance, Marketing, Legal, Compliance, and Workplace Management. Led by the Senior Director of Enterprise... ...corporate strategy and risk priorities.Conduct portfolio... ...executive briefings, and governance reviews.Maintain a... ...+ years of progressive IT experience, with at least...RiskPermanent employmentContract workInternshipWork at officeWork from home- ...specialized vertical in Legal, Regulatory Compliance, and Corporate Governance. We operate deeply inside our... ...shaping the next decade of regulatory risk management, data governance, fintech... ...to senior counsels, leads, and director-level professionals. General Requirements...SeniorRiskContract work
- ...Mountain View seeks a Senior Staff Fraud & Risk Analyst to own end-to-end lending fraud... ...shape policy, detection systems, and governance for fraud prevention throughout the lending... ..., Data Science, Finance, Legal, and Compliance to design risk solutions, deploy ML models...SeniorRisk
- ...Senior Director, IT Compliance & Governance (Contractor) About the Company Innovative company designing & developing gene therapeutic products Industry Biotechnology Type Public Company Founded 2013 Employees 51-200 Categories Biotechnology...SeniorFor contractors
$137k - $185.5k
Overview We are seeking a highly motivated and experienced Sanctions Compliance Manager, Sanctions Investigations to join our Sanctions... ...to global sanctions regulations, and mitigating financial crime risks. This is an excellent opportunity for a detail-oriented professional...SeniorRiskWork at office$272k - $431.25k
...reusable building blocks, integrations, and governance mechanisms that accelerate developer... ...data lineage, and ensuring adherence to compliance and Responsible AI frameworks.Design, implement... ..., audit ability, monitoring, and risk managementStrong leadership and executive...SeniorRiskFull time$232k - $368k
...focusing on vendor contract review and the governance of outbound data sharing with third parties. You will report to the Director of Data Governance and Privacy in our Legal... ...parties, including conducting data transfer risk assessments and ensuring appropriate contractual...SeniorRiskFull timeContract work- ...accounting policies and related governance related to both Global... ...Global Manufacturing Operations, IT, SEC Reporting, and other business... ...accounting and reporting risks, and proactively drive... ...COGS, R&D expenses, ensuring compliance with U.S. GAAP and external reporting...SeniorRiskWork at officeLocal areaWorldwideFlexible hours
$192k - $307k
...partners across Finance, DnA, and IT to bring AI‑enabled solutions... ...life while establishing the governance, controls, and adoption... ..., prioritization, milestones, risk management, stakeholder communications... ...the Santa Clara, CA office in compliance with Everpure's policies,...SeniorRiskWork at officeFlexible hours$200k - $275k
..., and better training—without creating risk around security, IP, or compliance. You’ll work across Field teams, Business Units, Digital/IT, compliance partners, and learning/training... ...), plus knowing how to handle data governance, security, Responsible AI, and model lifecycle...SeniorRiskFull time- ...The Senior Manager Logistics Compliance Trade Programs is responsible... ...programs. Audit and maintain data governance in SAP and global product... ...are met. Communicate risks, proposals, regulatory updates... ...applications as needed. Interact with IT and Center of Excellence (COE...SeniorRiskWork experience placementFlexible hours
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to IT Sr Director, Compliance and Risk Governance. Be the first to apply!
- regulatory manager Sunnyvale, CA
- director global regulatory affairs Sunnyvale, CA
- manager regulatory affairs Sunnyvale, CA
- head compliance Sunnyvale, CA
- compliance manager Sunnyvale, CA
- compliance director Sunnyvale, CA
- regulatory affairs director Sunnyvale, CA
- regulatory & compliance manager Sunnyvale, CA
- senior associate architect Sunnyvale, CA
- senior dynamics crm developer Sunnyvale, CA

