Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Executive Director, InfoSec Governance, Risk, and Compliance

Disney France

Executive Director, Info Security

At Disney, we're storytellers. We make the impossible, possible. The Walt Disney Company is a world-class entertainment and technological leader. Walt's passion was to continuously envision new ways to move audiences around the world - a passion that remains our touchstone in an enterprise that stretches from theme parks, resorts and a cruise line to sports, TV, movies and a variety of other businesses. Uniting each endeavor is a commitment to creating and delivering unforgettable experiences - and we're constantly looking for new ways to enhance these exciting experiences.

The Enterprise Technology & Data mission is to deliver technology solutions that align to business strategies while enabling enterprise efficiency and promoting cross-company collaborative innovation. Global Information Security (GIS) provides services to protect the value and use of Disney's information through collaboration, empowerment, and education across The Walt Disney Company.

At Disney, innovation and imagination fuel everything we do. The InfoSec Governance, Risk & Compliance (GRC) team is not just a guardian of standards - we are leaders who drive the evolution of information security. As a strategic powerhouse in the GIS organization, our mission transcends compliance, setting new benchmarks for risk intelligence, automation, and integrated governance. We aim to redefine what "great" looks like, pioneering visionary approaches that shape how Disney (and the industry) understands and manages security risk.

The GRC team is the pulse of Disney's enterprise technology ecosystem. We don't just follow regulatory mandates; we leap ahead, leveraging data-driven insights, advanced risk quantification, and automated control frameworks to empower business leaders and technologists. Our collaborative culture ensures that every corner of GIS speaks a unified risk language, propelling risk-aware thinking to the forefront of daily business decisions and fueling cross-company innovation.

By joining this team, you become a change agent, transforming GRC from a "checkbox" function to a dynamic, strategic enabler. You will lead and inspire a diverse, high-performing group that anticipates emerging risk domains, shapes industry-leading policy design, and drives measurable, business-aligned security outcomes. If your passion is to advance, not just meet, industry standards, and to make a lasting impact on a legendary brand's global footprint, the InfoSec GRC team at Disney is your stage.

Responsibilities of Role (List in order of priority, first few bullets should be the most important):

  • Transform GRC at Disney
    • Drive continuous evolution of Disney's InfoSec GRC program, replacing compliance-centric, checkbox-driven operations with a dynamic, risk-intelligence-led model that directly informs how Disney prioritizes investment, staffing, and remediation.
    • Define what "great" looks like, not by referencing existing standards but by advancing them. Develop novel approaches to risk quantification, compliance automation, and governance integration.
    • Partner with GIS Leadership and Segment CTO teams to ensure the GRC program functions as a strategic business enabler, translating complex risk landscapes into executive- and board-ready insights that drive confident decision-making.
    • Champion a culture shift across all of GIS and the broader enterprise: risk awareness is everyone's job, and GRC's role is to make risk-informed thinking intuitive, not burdensome.
  • Risk Management Leadership
    • Oversee the development and ongoing operations of Disney's comprehensive InfoSec Risk Management program, including the establishment, implementation, and continuous improvement of the enterprise Risk Management Framework.
    • Establish and operationalize risk tolerance frameworks in partnership with executive leadership, defining clear thresholds that translate business appetite into actionable security investment and prioritization decisions.
    • Build and mature a cybersecurity risk register that serves as the authoritative source of truth for Disney's threat and control posture, dynamically integrated with threat intelligence, vulnerability management, and third-party risk inputs.
    • Drive risk-based prioritization across all InfoSec operational functions (engineering, red team, SOC, cloud security, etc.) - ensuring that every team's roadmap is anchored in defensible risk reduction rationale, not reactive urgency.
    • Develop executive and board-level risk reporting that is clear, credible, and decision-ready; ensure Disney's risk narrative is consistent from the CISO to the Audit Committee.
    • Lead efforts to quantify InfoSec risk in financial terms (FAIR or equivalent), enabling direct comparison of security investment across Disney's ubiquitous businesses and against measurable risk reduction outcomes.
    • Lead a third-party and supply chain risk intelligence capability that goes beyond questionnaire-based assessments by integrating continuous external attack surface monitoring, threat intelligence on vendor compromise activity, and contractual control requirements into a unified third-party risk posture.
  • Governance Program Leadership
    • Oversee the development, maintenance, and lifecycle management of enterprise-wide Information Security policies, standards, and guidelines, ensuring they are risk-based, clear, and aligned to business realities (not just regulatory checklists).
    • Drive automated policy enforcement and integration of governance requirements into the technology design lifecycle (DevSecOps, cloud provisioning, infrastructure-as-code, etc.), reducing reliance on manual control operations and attestation.
    • Lead the development of a policy effectiveness measurement framework that moves beyond "is the policy published and attested to?" toward "is the policy actually changing behavior and reducing risk?" (tracked via control telemetry, exception rates, and risk outcome data).
    • Pioneer a forward-looking policy architecture that anticipates emerging technology risk domains (AI/ML model governance, quantum-safe cryptography transition, agentic automation).
    • Oversee annual NIST CSF assessments and provide rigorous, actionable reporting to the CISO and senior leadership on program maturity and investment gaps.
    • In partnership with ISO teams, lead the Governance team in providing consultation to segments and business units, ensuring security requirements are understood, contextualized, and achievable - not perceived as obstacles.
  • Compliance Program Leadership
    • Provide oversight across all regulatory, contractual, and policy compliance programs, including SOX 404, PCI DSS, K-ISMS, GDPR, COPPA, ISO 27001, and more.
    • Build compliance-as-a-service capabilities for technology teams: engineers and product owners access a self-service portal to understand what compliance requirements apply to their system, what controls are already satisfied by platform-level implementations they inherit, what evidence is auto-collected on their behalf, and what residual actions remain — compliance burden on tech teams is measured and systematically driven toward zero.
    • Proactively monitor the regulatory horizon: identify emerging requirements before they become mandates, and position Disney to comply with confidence rather than scrambling.
  • Organizational Leadership
    • Lead, develop, and inspire a high-performing organization of ~40+ professionals across Governance, Compliance, and Risk Management.
    • Model and demand intellectual rigor, ownership, and a continuous improvement mindset - leading a team that challenges assumptions, identifies root causes, and delivers scalable and dynamic solutions.

Must Haves (Years of Experience, languages, programs, tools, etc.):

  • Experience & Expertise
    • 12+ years of progressive experience in cybersecurity, technology risk, or technology compliance, with a minimum of 3 years in leadership roles overseeing GRC functions at enterprise scale.
    • Demonstrated track record of building and transforming GRC programs, moving organizations to risk-driven operating models.
    • Deep expertise across the full GRC spectrum: risk management (frameworks, quantification, reporting), governance (policy lifecycle, automated enforcement, metrics), and compliance (regulatory audit management, controls assurance, overall audit alignment).
    • Extensive knowledge of information security risk, governance, and control frameworks: NIST CSF, NIST 800-53, ISO/IEC 27001, PCI DSS 4.0, SOX ITGC, GDPR.
    • Proven executive presence: ability to command a room, build trust with senior leadership, and translate highly technical risk concepts into clear business language.
    • Strong experience in risk quantification methodologies (FAIR or equivalent) and experience driving financial-terms risk reporting for executive audiences.
  • Technical Knowledge
    • Expert-level understanding of security audit methodologies, controls testing, and assurance processes across both IT general controls (ITGCs) and automated application controls.
    • Hands-on familiarity with implementing and operating GRC tooling and platforms (Archer, SailPoint, ServiceNow GRC, or equivalent).
    • Solid understanding of cloud security architecture and the compliance implications of cloud-native environments (IaaS,
Vacancy posted 1 day ago
Similar jobs that could be interesting for youBased on the Executive Director, InfoSec Governance, Risk, and Compliance in Seattle, WA vacancy
  • $197.5k - $265k

    Job Posting Title: Executive Director, InfoSec Governance, Risk, and Compliance Req ID: 10152675 Job Description: At Disney, we’re storytellers. We make the impossible, possible. The Walt Disney Company (TWDC) is a world-class entertainment and technological leader.... 
    Suggested
    Full time
    Shift work

    The Walt Disney Company

    Seattle, WA
    4 days ago
  • $197.5k - $265k

     ...Job Title Job Description Responsibilities of Role Transform GRC at Disney Risk Management Leadership Governance Program Leadership Compliance Program Leadership Organizational Leadership Must Haves Experience & Expertise Technical... 
    Suggested
    Work experience placement

    The Walt Disney Studios

    Seattle, WA
    2 days ago
  •  ...Senior Vice President, Legal and Chief Compliance Officer (CCO) About the Company...  ...directly impacts organizational strategy, governance, and risk posture. The successful candidate will...  ...on scaling and development. This executive position requires a candidate with over... 
    Suggested

    Confidential

    Seattle, WA
    4 days ago
  • $157.06k - $219.88k

     ...ownership. The person in this role will be expected to help drive execution across key initiatives, review materials and recommendations...  ...tie functional activity to enterprise outcomes (getting to rate, risk reduction, employee/site safety) Drive special projects and... 
    Suggested
    Permanent employment
    Temporary work
    Work at office
    Local area
    Relocation

    Blue Origin

    Seattle, WA
    1 day ago
  •  ...Board Member, Nonprofit Governance About the Company Mission-driven organization producing...  ...individuals to join its Board of Directors. Board Members play a pivotal role in providing...  ...with its goals. Legal and ethical compliance is a key aspect of the role, and Board... 
    Suggested

    Confidential

    Seattle, WA
    5 days ago
  • Managing Director, Cybersecurity, Information Governance page is loaded## Managing Director, Cybersecurity...  ...services, cyber risk and data privacy...  ...deliver solutions. You will execute critical project deliverables...  ...technology, legal, compliance, information management,... 
    Remote work

    Ankura

    Seattle, WA
    2 days ago
  • $159.3k - $273.2k

     ...goals. Reporting to the chief executive officer, the COO provides...  ...management, project scope definition, risk identification, project...  ...Supports, develops and validates compliance with operations policies,...  ...Experience related to publicly funded government health care programs (e.g.,... 
    Minimum wage
    Full time
    Contract work
    Work experience placement
    Local area
    Relocation

    UnitedHealthcare

    Renton, WA
    4 days ago
  • $120k

     ...leadership team and the Board of Directors, the COO will oversee organizational operations, compliance, technology strategy, data...  .... The ideal candidate is execution-oriented, strategic, and adept...  ...Board to guide our long-term governance, and staff across the organization... 
    Full time
    Part time
    Summer holiday
    Live in
    Local area
    Immediate start
    Remote work
    Monday to Friday
    Flexible hours
    Shift work

    Rhizome co

    Seattle, WA
    4 days ago
  •  ...Chief Operating Officer (COO) to join their executive team. This pivotal role requires a...  ...and asset strategy, including financial risk assessment and recapitalization or repositioning...  ...innovation, ideally spanning nonprofit, government, or mission-driven startups. ~1–3... 
    Local area
    Relocation
    Flexible hours

    Reneris

    Seattle, WA
    1 day ago
  •  ...Executive Vice President, Annuity Solutions About the Company Globally renowned reinsurance company Industry Insurance Type...  ...the oversight of in-force profitability, financial reporting, risk analysis, experience studies, and client relationship management... 

    Confidential

    Seattle, WA
    5 days ago
  • Do NOT apply through VolunteerMatch. Please apply here instead. Note: Please apply using our website here. No applications directly from VolunteerMatch are accepted. Responsibilities - Collaborate with CEO in setting and driving organizational vision...

    Digital Aid Seattle

    Seattle, WA
    5 days ago
  •  ...organization in the U.S. is seeking a Chief Operating Officer. This leader will build an operations system that enables effective execution across various markets. With over 15 years of experience in healthcare operations, the COO will ensure alignment in priorities and... 
    Remote work

    Zócalo Health

    Seattle, WA
    1 day ago
  •  ...Introduction: AstroHire Executive Search (Est. 2017), a 100% Native American...  ...increase efficiency, service quality, and compliance readiness. Strengthen communication channels...  ...property performance monitoring, risk mitigation, and compliance across the housing... 
    Permanent employment
    Full time
    Contract work
    Temporary work
    For contractors
    Interim role
    Local area
    Immediate start
    Relocation
    Night shift

    Astrohire

    Seattle, WA
    1 day ago
  • $195k - $220k

     ...Job Type Full-time Description Chief Operating Officer Reports To: Managing Director Salary: $195,000 - $220,000 Status: Exempt Location: Seattle About Us: Williams Kastner is a premier multi-practice law firm in the Pacific... 
    Full time
    Temporary work
    Work at office
    Local area
    Remote work
    2 days per week

    Williams Kastner

    Seattle, WA
    5 days ago
  •  ...project management office, procurement, and vendor management. This executive will be tasked with delivering operational excellence,...  ...current operational practices, taking ownership of issues and risks, and establishing a culture of excellence and continuous improvement... 

    Confidential

    Seattle, WA
    5 days ago
  • $250k - $325k

     ...We are looking for an experienced and execution-focused Chief Operating Officer (COO) to...  ...customer support, incident management, compliance, and cross-functional execution.  As COO...  ...operational cadence.  Compliance & Risk Management   ~ Ensure HIPAA, HITRUST,... 
    Full time
    H1b

    Curative AI, Inc.

    Bellevue, WA
    1 day ago
  •  ...Vice President, Family Engagement & Governance At JPMorgan Wealth Management, we have been...  ...skills. Reporting to the Managing Director of Family Engagement & Governance, the VP...  ...structured as a developmental pathway toward the Executive Director level.This is a newly created... 
    Work at office

    Chase

    Bellevue, WA
    1 day ago
  •  ...About the Company Internationally renowned data security & governance company Industry Computer & Network Security Type...  ...Company is seeking a Global VP, FP&A to join their team. This executive will be a key partner to the CFO, COO, and executive team, playing... 

    Confidential

    Seattle, WA
    5 days ago
  • $80.2k - $97.4k

     ...This position will report to an Escalations Manager, in Buyer Risk Prevention (BRP) team. Our mission in BRP is to make Amazon the...  ...teams to deliver detailed write-ups & root cause analysis for executive leadership team. This role includes taking the initiative in researching... 
    Flexible hours

    Amazon

    Seattle, WA
    2 days ago
  • $87.5k

     ...Executive Assistant To The President Seattle Pacific University is a Christian university fully committed to engaging the culture...  ...role within the university, supporting institutional vision, governance, strategic priorities, and community engagement. This office works... 
    Full time
    Work at office
    Immediate start

    Seattle Pacific University

    Seattle, WA
    4 days ago
  • $90k - $110k

     ...Executive Assistant To The COO & CMO The Executive Assistant (EA) provides proactive, high-caliber administrative and operational support...  ...for the intended audience, highlighting key insights, risks, and decisions required. Establish and manage timelines for... 
    Full time
    Casual work
    Work at office
    Remote work
    Shift work
    3 days per week

    Trupanion

    Seattle, WA
    5 hours ago
  •  ...The CFOO will be a key partner to the Executive Director and senior leadership team, overseeing...  ...organization's financial strength and compliance with nonprofit regulations. The successful...  ...the organization through potential governance changes and institutional evolution.... 

    Confidential

    Seattle, WA
    2 days ago
  • $228k - $345k

     ...(performance, data locality, governance, and time-to-value for AI pipelines...  ...pain, quantify value, and de-risk roadmap bets. Market...  ...ANF as a credible technical executive in briefings, advisory...  ...and HPC/simulation—including compliance and data residency requirements... 
    Local area

    NetApp

    Seattle, WA
    1 day ago
  •  ...Financial and Administrative Officer (CFAO) to serve as the senior executive leader responsible for financial stewardship, operational...  ...involves overseeing financial operations of subsidiaries, ensuring compliance with global financial policies, and navigating the financial... 

    Confidential

    Seattle, WA
    5 days ago
  •  ...Business Development Executive You are customer focused, enjoy building relationships...  ...business, with a keen eye towards risk mitigation and compliance Serve as mentor and coach to the...  ...corporate, institutional and government clients under the J.P. Morgan and Chase... 
    Bank staff

    Chase

    Seattle, WA
    3 days ago
  • $144.56k - $206.75k

     ...ID 2026-241141 JOB OVERVIEW The Executive Director is responsible for overall leadership,...  ...being, quality assurance, and regulatory compliance. Additionally, a key component of this...  ...and promotion of the Sunrise Safety and Risk Management policies. Review all... 
    Full time
    Work at office
    Local area
    Flexible hours
    Shift work
    Weekend work
    Afternoon shift

    Sunrise Senior Living

    Bellevue, WA
    5 days ago
  •  ...entering an exciting period of intentional growth—and seeks an Executive Director to lead the next phase of expansion, innovation, and...  ...strengthen its partnerships across labor, industry, education, and government, and expand programs that improve lives and strengthen... 
    Contract work
    Apprenticeship
    Work at office
    Local area

    WeTrain Washington

    Seattle, WA
    2 days ago
  • $180k - $200k

     ...Washington seeks a visionary, strategic Executive Director to lead the organization’s next...  ...budget and oversee financial planning, compliance, and operations to ensure fiscal health...  ...build board engagement with strategy, governance, financial oversight, and resource development... 
    Full time
    Temporary work
    Work experience placement
    Work at office
    Shift work
    2 days per week

    Fuse Washington

    Seattle, WA
    1 day ago
  • $197.71k - $223.69k

     ...education system? We are seeking an Executive Director for the Workers'...  ...analyzing issues, ensuring compliance with various policies and procedures...  ...and trustees of group risk management insurance programs...  ...effective program oversight and governance. Develops and maintains... 
    Full time
    Temporary work
    Work at office

    Puget Sound Educational Service District

    Renton, WA
    2 days ago
  • $131.34k

     ...Executive Director: SY27 2026-2027 The Executive Director is in charge of ensuring that the...  ...stakeholders - this includes all school governing bodies (SPS board, state authorizer,...  ...Ensure that all federal, state and local compliance requirements are met (PCSGP, CPR... 
    Work at office
    Local area

    Summit Public Schools

    Seattle, WA
    5 days ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Executive Director, InfoSec Governance, Risk, and Compliance. Be the first to apply!