IT Sr Director, Compliance and Risk Governance
Intuitive Surgical
Company DescriptionIt started with a simple idea: what if surgery could be less invasive and recovery less painful? Nearly 30 years later, that question still fuels everything we do at Intuitive. As a global leader in robotic-assisted surgery and minimally invasive care, our technologies—like the da Vinci surgical system and Ion—have transformed how care is delivered for millions of patients worldwide.We’re a team of engineers, clinicians, and innovators united by one purpose: to make surgery smarter, safer, and more human. Every day, our work helps care teams perform with greater precision and patients recover faster, improving outcomes around the world.The problems we solve demand creativity, rigor, and collaboration. The work is challenging, but deeply meaningful—because every improvement we make has the potential to change a life.If you’re ready to contribute to something bigger than yourself and help transform the future of healthcare, you’ll find your purpose here.Job DescriptionPrimary Function of Position: Responsible for providing strategic leadership and oversight of the enterprise Cybersecurity Governance, Risk, and Compliance (GRC) program. This role establishes the vision, operating model, and governance framework necessary to effectively identify, assess, manage, and communicate cybersecurity and technology risks across the organization. Serves as a trusted advisor to senior leadership, business stakeholders, and technology teams, ensuring that cybersecurity risk management practices align with organizational objectives, regulatory requirements, and industry best practices. This leader drives a risk- informed culture and enables the business to innovate securely while maintaining compliance and operational resilience.Roles & ResponsibilitiesCybersecurity Governance Define, implement, and continuously mature the enterprise cybersecurity governance framework, including policies, standards, procedures, and oversight mechanisms. Establish strategic direction for cybersecurity governance, ensuring alignment with corporate objectives, risk appetite, and business priorities. Lead governance forums, steering committees, and executive reviews to drive accountability and informed decision-making. Develop and monitor key performance indicators (KPIs), key risk indicators (KRIs), and executive dashboards that measure program effectiveness and organizational risk posture. Drive governance modernization initiatives through automation, process optimization, and data-driven decision support. Enterprise Risk Management Lead the enterprise cybersecurity risk management program, ensuring risks are identified, assessed, prioritized, mitigated, and monitored effectively. Develop risk assessment methodologies and reporting frameworks that provide actionable insights to executive leadership. Partner with business and technology leaders to implement risk mitigation strategies that balance security, operational efficiency, and business objectives. Facilitate enterprise-level risk discussions and support strategic decision-making by translating technical and cyber risks into business-relevant impacts. Compliance Oversight Establish and maintain programs to ensure compliance with applicable regulations, standards, and industry frameworks, including ISO 27001, ISO 27036, NIST Cybersecurity Framework (CSF), as well as other relevant frameworks such as AI risk management. Lead internal and external audits, assessments, and regulatory reviews. Ensure remediation activities are effectively managed and tracked through closure. Monitor emerging regulatory requirements and industry developments, advising leadership on compliance obligations and risk implications. Third-Party Risk Management Establish and oversee governance processes for evaluating and monitoring third-party cybersecurity and technology risks. Collaborate with Procurement, Legal, Privacy, and business stakeholders to assess vendor security posture and contractual risk requirements. Drive continuous improvement of supplier risk management practices to support organizational resilience and compliance objectives. Engagement & Business Partnership Serve as key advisor to senior leadership on cybersecurity risk, governance, and compliance matters. Provide clear, concise, and impactful reporting to executive leadership and governance bodies. Influence strategic business initiatives by integrating security, risk, and compliance considerations into planning and execution activities. Foster strong partnerships across business functions to promote risk- aware decision-making and regulatory readiness. Leadership & Organizational Development Build, lead, and develop a high-performing team of cybersecurity governance, risk, and compliance professionals. Establish organizational goals, resource strategies, and performance expectations aligned with enterprise priorities. Manage departmental budgets, strategic planning activities, and program investments. Champion a culture of accountability, transparency, continuous improvement, and risk awareness throughout the organizationQualificationsSkills, Experience, Education, & Training: Bachelor's degree in Cybersecurity, Information Technology, Information Systems, Computer Science, Business Administration, or a related discipline. 12+ years of progressive leadership experience in cybersecurity, information security, governance, risk management, compliance, or related disciplines. 7+ years of experience leading enterprise-scale cybersecurity GRC programs and teams. Demonstrated success developing and executing enterprise governance and risk management strategies within complex, highly regulated environments. Experience presenting cybersecurity risk, compliance, and governance topics to executive leadership, senior management, and governance committees. Proven track record of leading external audits, regulatory assessments, and compliance initiatives. Deep expertise in cybersecurity governance, enterprise risk management, regulatory compliance, and industry frameworks. Strong understanding of cybersecurity standards and frameworks, including ISO 27001, ISO 27036, ISO 42001, NIST CSF, NIST AI RMF, CSA AISMM, and related control frameworks. Exceptional executive communication, stakeholder management, and influencing skills. Ability to translate complex technical concepts into clear business-focused recommendations Strong strategic thinking, analytical, problem-solving, and organizational leadership capabilities. Experience driving organizational transformation, process modernization, and program maturity initiatives. Preferred certifications: o CISSP o CISM o CRISC o CISAAdditional InformationDue to the nature of our business and the role, please note that Intuitive and/or your customer(s) may require that you show current proof of vaccination against certain diseases including COVID-19. Details can vary by role.Intuitive is an Equal Opportunity Employer. We provide equal employment opportunities to all qualified applicants and employees, and prohibit discrimination and harassment of any type, without regard to race, sex, pregnancy, sexual orientation, gender identity, national origin, color, age, religion, protected veteran or disability status, genetic information or any other status protected under federal, state, or local applicable laws.Mandatory NoticesU.S. Export Controls Disclaimer: In accordance with the U.S. Export Administration Regulations (15 CFR §743.13(b)), some roles at Intuitive Surgical may be subject to U.S. export controls for prospective employeeswho are nationals from countries currently on embargo or sanctions status.Certain information you provide as part of the application will be used for purposes of determining whether Intuitive Surgical will need to (i) obtain an export license from the U.S. Government on your behalf (note: the government’s licensing process can take 3 to 6+ months) or (ii) implement a Technology Control Plan (“TCP”) (note: typically adds 2 weeks to the hiring process). For any Intuitive role subject to export controls, final offers are contingent upon obtaining an approved export license and/or an executed TCP prior to the prospective employee’sstart date, which may or may not be flexible, and within a timeframe that does not unreasonably impede the hiring need. If applicable, candidates will be notified and instructed on any requirements for these purposes. We will consider for employment qualified applicants with arrest and conviction records in accordance with fair chance laws.Preference will be given to qualified candidates who do not reside, or plan to reside, in Alabama, Arkansas, Delaware, Florida, Indiana, Iowa, Louisiana, Maryland, Mississippi, Missouri, Oklahoma, Pennsylvania, South Carolina, or Tennessee.This position may be filled at a different job level than listed here depending on business need and/or on the selected candidate’s experience, knowledge and skills. Compensation will be based primarily on the job level at which the role is filled and the candidate’s qualifications, consistent with applicable law.We provide market-competitive compensation packages, inclusive of base pay, incentives, benefits, and equity. It would not be typical for someone to be hired at the top end of range for the role, as actual pay will be determined based on several factors, including experience, skills, and qualifications. The target compensation ranges are listed.SummaryType: Full-timeFunction: Information TechnologyExperience level: DirectorIndustry: Medical Device
- ...DescriptionPrimary Function of Position: Responsible for providing strategic leadership and oversight of the enterprise Cybersecurity Governance, Risk, and Compliance (GRC) program. This role establishes the vision, operating model, and governance framework necessary to effectively...SeniorRiskLocal areaWorldwideFlexible hours
$246.8k - $355.2k
...We are looking for a Senior Director, Compliance & Ethics to join our team in... ...and regulatory compliance, risk, and ethical business conduct... ...Finance, Internal Audit, HR, IT, and commercial leaders to... ...including policies, procedures, and governance structures. Oversee risk-...SeniorRiskFull timeWork at officeWorldwide- ...seeking a strategic privacy compliance and operations... ...processes, controls, and governance. The ideal candidate brings... ...project leadership, risk management, and operational... ...reports to the Senior Director of Privacy Compliance &... ..., and partners with IT and product security, product...SeniorRiskWork at officeLocal areaWorldwideFlexible hours3 days per week
$160k - $190k
...including making recommendations to ensure compliance.Develops and maintains positive... ...generalist judgment to identify emerging risks and issues, and knowing when and which subject... ...federal and state laws and regulations that govern the handling of your personal information...SeniorRiskWork at office2 days per week3 days per week$236k - $264k
...Data Center, Cloud Computing, Enterprise IT, Hadoop/ Big Data, Hyperscale, HPC and... ...leader to join our growing Global SOX Compliance team. This role will be responsible... ...Line) in the identification of emerging risks. The Sr. Director, Global SOX Compliance Manager will be...SeniorRiskWorldwideFlexible hours$121.49k - $182k
...requirements.What You Can ExpectResponsible for strategic leadership, oversight, and day-to-day management of the IT SOX compliance program.Oversee IT risk assessment and scoping process to ensure alignment with financial reporting risks.Review control documentation and...SeniorRiskPermanent employmentFull timeInternshipWork from home$100k
...points, while proactively identifying execution gaps, surfacing risks early, and unblocking issues.What You Will LearnHow to scale... ...Administration Regulations (EAR), the Company is required to ensure compliance with these laws when transferring technology to nationals of...SeniorRiskPermanent employment$160k - $175k
...Description SR MANAGER, ACCOUNTS RECEIVABLE MOUNTAIN... ...platform for content security and governance that enables organizations to... ...data security, maintain compliance, prevent and detect ransomware... ...escalation workflows for high-risk accounts and aging receivables...SeniorRiskFull timeContract workLocal areaFlexible hours$240k - $285k
...Responsibilities Own the identity governance strategy, operating... ...conflicts.Chair the IT architecture review... ...capabilities, and third-party risk management.Manage all... ...prevent immediate compliance.Lead the evaluation and... ...teams at the manager, director, or higher level.Proven...SeniorRiskImmediate start$167.1k - $247.31k
...day-to-day leadership and management of Marvell’s Global Trade Compliance team, spanning both export and import compliance functions. This... ..., ensuring that systems and processes are calibrated to our risks and built to scale rapidly as the business grows, while also building...RiskPermanent employmentFull timeInternshipWork at officeRemote workWork from homeShift work$165.18k - $247.5k
...Finance, Marketing, Legal, Compliance, and Workplace Management. Led by the Senior Director of Enterprise... ...corporate strategy and risk priorities.Conduct portfolio... ...executive briefings, and governance reviews.Maintain a... ...+ years of progressive IT experience, with at least...RiskPermanent employmentContract workInternshipWork at officeWork from home- ...specialized vertical in Legal, Regulatory Compliance, and Corporate Governance. We operate deeply inside our... ...shaping the next decade of regulatory risk management, data governance, fintech... ...to senior counsels, leads, and director-level professionals. General Requirements...SeniorRiskContract work
$130.7k - $261.3k
...manufacturing changes, and post-market activities.Assess regulatory risks, interpret evolving regulations, and recommend strategies to... ..., including Software as a Medical Device (SaMD).Regulatory Compliance & Product SafetyEnsure compliance with applicable regulatory requirements...SeniorRiskWork experience placementWorldwideShift work- ...personal goals, and other priorities. We can hire people in any country where we have a legal entity. Responsibilities The Risk and Compliance Senior Manager at Atlassian will play a key role in driving the company's risk and compliance strategy across cloud and...SeniorRiskWork at officeLocal area
$240k - $333k
...concurrent SoC programs, establishing program governance and chairing formal executive phase-gate... ..., technical performance metrics, and risk mitigation plans are achieved.Lead cross... ...bridge to executive leadership (VPs and Directors across hardware, silicon, and operations...SeniorRisk$240k - $333k
...of developer enablement tools (DevAI), and establish scalable governance frameworks that increase iteration velocity across hundreds of... ...lifecycle. This includes managing project schedules, identifying risks and clearly communicating them to project stakeholders. You're...SeniorRiskImmediate start$137k - $185.5k
...contributing to the development and oversight of programs that ensure compliance with Payment Network Rules, Sponsor Bank, and regulatory... ...loss, increased legal or compliance expenses and reputational risk. Responsibilities Strategic Analysis & Rule Interpretation Proactively...SeniorRisk$232k - $368k
...focusing on vendor contract review and the governance of outbound data sharing with third parties. You will report to the Director of Data Governance and Privacy in our Legal... ...parties, including conducting data transfer risk assessments and ensuring appropriate contractual...SeniorRiskFull timeContract work- ...Senior Director, IT Compliance & Governance (Contractor) About the Company Innovative company designing & developing gene therapeutic products Industry Biotechnology Type Public Company Founded 2013 Employees 51-200 Categories Biotechnology...SeniorFor contractors
$175.86k - $263.5k
...not have this team to execute? IT Project Management Office •... ...the only team that manages and governs IT projects • How is this technology... ..., schedules, dependencies, risks, and resource utilization.... ...Governance & Risk ManagementEnsure compliance with organizational policies,...RiskPermanent employmentFull timeContract workInternshipWork from home$144k - $234k
...trusted partner to HR, Legal, Employee Relations, Compliance, and business leaders, driving operational excellence, risk mitigation, manager capability, and a positive... .... The Senior Manager will report to the Sr Director, Consulting & Solutions and lead a team of...SeniorRiskFull timeFor contractorsWork at officeLocal areaRemote workWork from homeFlexible hours- ...The Senior Manager Logistics Compliance Trade Programs is responsible... .... Audit and maintain data governance in SAP and global product database... ...are met. Communicate risks, proposals, regulatory updates... ...as needed. Interact with IT and Center of Excellence (COE...SeniorRiskWork experience placementFlexible hours
$200k - $275k
..., and better training—without creating risk around security, IP, or compliance. You’ll work across Field teams, Business Units, Digital/IT, compliance partners, and learning/training... ...), plus knowing how to handle data governance, security, Responsible AI, and model lifecycle...SeniorRiskFull time$190.6k - $240k
...strategic, comprehensive enterprise information security and IT risk management program and strategy.Develop and maintain security... ...standards, guidelines, and procedures to ensure ongoing security compliance.Investigate and report on security breaches and other...SeniorRiskContract work$163k - $236k
...reviews, infrastructure dependencies, and compliance launch gates.Triage engineering issues, evaluate design tradeoffs, and assess risk surfaces to prevent project bottlenecks.... ...programmatic domains (e.g., Data and Access Governance or Remediation and Response Operations),...Risk- ...Internal Audit Manager to lead elements of the SOX compliance program, strengthen internal controls, and support a scalable governance framework for a growing public technology... ...external auditors, and executives to assess risk, improve processes, and ensure regulatory...SeniorRisk
$232k - $356.5k
...are looking for a senior audit leader to own risk-based coverage across Order-to-Cash, Legal and Regulatory Compliance, and Human Resources at NVIDIA. Reporting to the... .... Collaborate with the Legal, Compliance, and Government Affairs teams to identify regulatory...RiskFull timeContract work- ...written and verbal communications for executive audiences; You have a track record of producing high-quality artifacts and communicating risk clearly to leadershipPragmatic and data-driven, you distinguish between customer requests and product requirementsYou demonstrate...SeniorRisk
- ...the kind of precision that drives great outcomes.Job SummaryAs a Sr Principal Product Manager for Strata Cloud Manager Platform, you... ...here.- /yrOur Commitment We’re trailblazers that dream big, take risks, and challenge cybersecurity’s status quo. It’s simple: we can’t...SeniorRiskFull timeWork at office
$184k
...Sr. Director Back-end Engineering – AI Infrastructure OrchestrationCompany Introduction We exist to... ...deployment).Ensure reliability, security, and compliance of the AI infrastructure, meeting strict standards for data governance and model integrity.Establish Service Level...SeniorTemporary workFlexible hours
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to IT Sr Director, Compliance and Risk Governance. Be the first to apply!
- compliance manager Sunnyvale, CA
- manager regulatory affairs Sunnyvale, CA
- regulatory manager Sunnyvale, CA
- head compliance Sunnyvale, CA
- regulatory affairs director Sunnyvale, CA
- regulatory & compliance manager Sunnyvale, CA
- compliance director Sunnyvale, CA
- head of risk management Sunnyvale, CA
- risk management specialist Sunnyvale, CA
- risk management manager Sunnyvale, CA



