Director IT Risk and Compliance
$185k - $225kBJ's Wholesale Club Holdings, Inc.
A World-Class Team BJ's Wholesale Club is powered by more than 30,000 team members who make a real impact every day. Whether you're stocking shelves, solving problems or shaping strategy, your work helps families save on what matters most. We're a team built on purpose and opportunity. Join us and be part of something meaningful. Why You'll Love Working at BJ's At BJ's Wholesale Club, our team members are at the heart of everything we do. That's why we offer a comprehensive benefits package designed to support your health, well-being and future - both on and off the job. When you grow, we grow. Here's just some of what you can look forward to:
Team Size : Leads a team of compliance, risk, and security analysts Travel : Minimal (≤10%) Position Overview: BJ's Wholesale Club is a Fortune 500 membership-based wholesale retailer operating over 267 clubs and 205 gas stations across the Eastern United States. As a high-volume retailer processing millions of transactions annually, our IT Risk & Compliance function is mission-critical - safeguarding member data, ensuring regulatory adherence, and enabling the business to innovate with confidence. We are seeking a Director of IT Risk & Compliance to lead the organization's information technology risk management and regulatory compliance programs. This is a pivotal leadership role at a moment of transformation: you will lead a tenured, high-performing team and have the mandate to modernize processes - leveraging AI, automation, and purpose-built GRC platforms to shift the function from reactive to predictive. The ideal candidate brings deep SOX ITGC and PCI DSS expertise, a track record of cross-functional influence at the executive level, and the vision to build a compliance program that is both rigorous and efficient. Responsibilities: Compliance Program Leadership
- Weekly Pay: Get paid every week so that you can manage your money on your terms.
- Free BJ's Memberships: Enjoy a complimentary The Club Card Membership, plus a free Supplemental Membership for someone in your household.*
- Generous Paid Time Off: Take the time you need with vacation, personal, sick days, holidays, bereavement, and jury duty leave.*
- Flexible and Affordable Health Benefits: Choose from three medical plans, and access optional dental, vision, Health Savings Account (HSA), and flexible spending account options to fit your lifestyle.*
- 401(k) Retirement Savings Plan: Build your financial future with a company match (available to team members 18 and older).*
- Employee Stock Purchase Plan: Accumulate funds through after-tax payroll deductions that can be used to purchase shares of BJ's common stock at a 15% discount.*
Team Size : Leads a team of compliance, risk, and security analysts Travel : Minimal (≤10%) Position Overview: BJ's Wholesale Club is a Fortune 500 membership-based wholesale retailer operating over 267 clubs and 205 gas stations across the Eastern United States. As a high-volume retailer processing millions of transactions annually, our IT Risk & Compliance function is mission-critical - safeguarding member data, ensuring regulatory adherence, and enabling the business to innovate with confidence. We are seeking a Director of IT Risk & Compliance to lead the organization's information technology risk management and regulatory compliance programs. This is a pivotal leadership role at a moment of transformation: you will lead a tenured, high-performing team and have the mandate to modernize processes - leveraging AI, automation, and purpose-built GRC platforms to shift the function from reactive to predictive. The ideal candidate brings deep SOX ITGC and PCI DSS expertise, a track record of cross-functional influence at the executive level, and the vision to build a compliance program that is both rigorous and efficient. Responsibilities: Compliance Program Leadership
- Own and mature the SOX IT General Controls (ITGC) program end-to-end: scoping, control design, testing coordination, interim and year-end audit support, and remediation tracking.
- Direct PCI DSS assessment activities and annual penetration testing, partnering with QSAs and internal stakeholders to maintain compliance posture.
- Collaborate with the IT leadership team on Governance, Operating Model and SDLC to ensure compliance with internal policy, industry standards and regulatory landscape.
- Serve as the primary liaison to Internal Audit, External Audit and Legal; manage audit findings through to closure.
- Own the annual IT policy review cycle to ensure policies reflect current regulatory requirements, emerging risks, and operational capabilities.
- Lead enterprise IT and cybersecurity risk assessments; maintain the IT risk register and report quarterly to senior leadership and the Risk Management Committee.
- Oversee the Vendor Risk Assessment program and Third-Party Risk Monitoring, including platform management and escalation protocols.
- Partner with Legal and Privacy teams on e-discovery, Legal Hold requests, contract reviews involving technology, and data retention obligations.
- Drive Architecture and Solution reviews in partnership with the enterprise architecture team to embed security and compliance requirements into project delivery.
- Maintain and exercise Incident Response plans; lead or co-lead annual executive and technical tabletop exercises.
- Design and oversee the enterprise security awareness and phishing tests program, ensuring content is role-relevant, engaging, and aligned to the current threat landscape facing large-scale retail environments.
- Champion the use of AI and automation to modernize compliance testing, evidence collection, and risk reporting - reducing manual effort and accelerating cycle times.
- Co-lead the monthly AI Working Group, evaluating emerging AI tools for risk and governance implications and piloting responsible AI use cases within the compliance function.
- Implement and optimize GRC platform capabilities to centralize controls management, automate workflows, and enable real-time compliance dashboards.
- Develop data-driven KPIs and metrics that provide the VP, IT Security and Compliance and ELT with actionable risk intelligence.
- Build and lead a high-performing team of IT risk and compliance professionals; provide coaching, career development, and performance management.
- Foster a culture of accountability and continuous improvement, where compliance is viewed as a business enabler rather than a gating function.
- Present risk and compliance status to the ELT, Audit Committee, and Board-level stakeholders; translate technical risk into business language.
- Collaborate across Technology, Finance, Legal, Internal Audit, and business units to drive cross-functional risk reduction initiatives.
- Interpret evolving legislation and regulatory guidance (SOX, PCI DSS, state data privacy laws) and translate implications into actionable organizational policy.
- Evaluate and manage strategic risk and compliance vendors and co-sourcing partners to supplement internal capacity.
- Bachelor's degree in Information Systems, Computer Science, Cybersecurity, or a related field.
- 10+ years of progressive experience in IT risk management, IT compliance, or information security; including 3+ years in a people leadership role.
- Deep, hands-on expertise with SOX ITGC: control frameworks, testing methodologies, audit liaison, and remediation management.
- Substantive experience with PCI DSS compliance programs in a large-scale retail or financial services environment.
- Proven ability to manage complex, multi-stakeholder programs simultaneously under regulatory scrutiny.
- Strong executive communication skills; comfortable presenting to C-suite and Board-level audiences.
- Professional certifications: CISA, CISSP, CISM, CRISC, or PCI ISA/QSA.
- Experience deploying or optimizing GRC platforms (AuditBoard, ServiceNow GRC, Archer, or similar).
- Demonstrated experience piloting AI or automation solutions within a compliance or audit function.
- Experience with third-party risk platforms (UpGuard, BitSight, Security Scorecard, or equivalent).
- Familiarity with state data privacy regulations (CCPA, VCDPA, CPA) and their IT implications.
- Prior experience in a Fortune 500 retail, consumer, or financial services environment.
- Strong communication and interpersonal skills Proven analytical and organizational skills
Vacancy posted 7 hours ago
Similar jobs that could be interesting for youBased on the Director IT Risk and Compliance in Marlborough, MA vacancy
- BJ’s Wholesale Club is actively seeking a Director of IT Risk & Compliance to head our IT risk management and compliance programs. You will lead a team dedicated to safeguarding member data and ensuring compliance across various regulations. This role offers a chance to...Suggested
- First Tech Federal Credit Union seeks a Director of Internal Audit - Operational Risk to lead a portfolio of risk-based audits and advisory engagements across ERM, TPRM, BC/DR, and governance. You will supervise planning, testing, reporting, and remediation validation while...Suggested
$164k - $197k
Description The Director, Internal Audit - Operational Risk is responsible for leading a portfolio of risk-based assurance and advisory activities focused... ...with executive leadership, enterprise risk leaders, compliance leaders, and business stakeholders while preserving...SuggestedWork at office- First Tech Federal Credit Union is seeking a Director, Internal Audit - Compliance to lead a portfolio of risk-based audit and advisory engagements across regulatory compliance. You will oversee planning, testing, reporting, issue validation, and regulatory engagement activities...Suggested
- ...Access Management (IAM) to oversee the organization’s IAM risk framework and provide 2LOD oversight of identity... ...and authentication practices. The role partners with IT, Cybersecurity, Internal Audit, Compliance and business stakeholders to strengthen identity governance...Suggested
- ...including drafting, negotiation, and lifecycle oversight of high-impact agreements. You will lead negotiations, analyze terms for risk and compliance, provide guidance to stakeholders, and collaborate with legal, finance, procurement, and operations teams to align contracts...Contract work
- ...services throughout New England. As the organization continues to expand, LEI is seeking a dedicated Safety & Risk Manager to champion workplace safety, compliance, and risk management across all operations. This highly visible leadership role offers the opportunity to...Local area
- ...ftsbereichRisk & Regulatory suchen wir dich zum nächstmöglichen Zeitpunkt als Consultant IT-Compliance Financial Services (w/m/d).Das erwartet dichRisk FS - Als Teil unseres Teams im Bereich Risk FS arbeitest du mit hochqualifizierten Fachleuten zusammen, um unseren Kunden in...Full timeHome office
- Avidia Bank Equal Employment Opportunity/M/F/disability/protected veteran status Position Overview: The Senior Treasury Analyst provides key operational support to vital Treasury and Profitability functions. Reporting to the Assistant Treasurer, the right candidate will...
$76.46k - $135.73k
...opportunities, achieve annual assigned sales/revenue goals and contribute to overall portfolio growth.Supports Bank's regulatory compliance objectives and recommends changes to support prescribed requirements. Ensures full compliance with the Bank's Information Security...$80k - $89k
Job Description Job Description With a network of nearly 200 branches, Loomis armored transportation, cash management centers, and cash inventory vaults keep cash flowing throughout financial institutions and retail businesses across the US. Loomis prides itself on...Flexible hours- Staples is seeking a Sr Analyst II Treasury in Framingham to contribute to debt portfolio management, compliance reporting, journal inputs, and detailed financial analysis with significant cash impact. You will partner with the Senior Treasury Manager to deliver clear...
- Staples, a Framingham-based finance team, seeks a Sr Analyst II Treasury to contribute to debt-related reporting and financial analysis. You'll partner with the Senior Treasury Manager on debt portfolio activities and critical treasury processes across the business. This...
- Citizens Bank is hiring in Marlborough, Massachusetts for a role focused on building lasting customer relationships. The position involves providing financial advice, and assisting clients with their spending, saving, and investment needs. Candidates should have strong...
- A leading healthcare solutions provider in Marlborough, MA, is seeking a Senior Manager, Investor Relations, to provide analytical support to the Investor Relations team. The role requires over 6 years of experience in financial analysis and the ability to collaborate across...Work at office
$127.9k
Additional Location(s): N/A Diversity - Innovation - Caring - Global Collaboration - Winning Spirit - High Performance At Boston Scientific, we’ll give you the opportunity to harness all that’s within you by working in teams of diverse and high‑performing employees, tackling...Hourly payWork at officeRelocation packageShift work3 days per week$22.5 - $29 per hour
...execution that drive meaningful client outcomes while adhering to TD's risk and regulatory standards. Depth & Scope: Drives acquisition... ...Applies sound judgment to balance client needs with risk and compliance requirements, ensuring accurate capture of client information...Work at officeLocal areaWork from homeFlexible hours- ...execution that drive meaningful client outcomes while adhering to TD's risk and regulatory standards.Depth & Scope:Drives acquisition in a... ...sound judgment to balance client needs with risk and compliance requirements, ensuring accurate capture of client information and...Work at officeLocal areaWork from homeFlexible hours
- ...Director, Fund Accounting At BNY, our culture allows us to run our company better and enables employees' growth and success. As a... ...and lead analysis of GAAP and IFRS rules to ensure regulatory compliance. Develop policies and set priorities for drafting financial...Work experience placementWork at officeWorldwideFlexible hours
- ...being. You will engage clients through consultative conversations, explain TD products and services, and guide decisions with clear risk-aware messaging. This on-site role emphasizes relationship-building, mortgage conversations, and adherence to TD's regulatory standards...
$140k
Associate Finance Director, Endoscopy Join to apply for the Associate Finance Director, Endoscopy... ...financial insights and highlight risks and opportunities Own the headcount reporting... ...Scientific (NYSE: BSX) isn’t just business, it’s personal. And if you’re a natural...Hourly payWork at officeWorldwideRelocation packageShift work3 days per week- Merrimackvalleychamber is looking for a Financial Services Representative in Marlborough, MA. This full-time role involves delivering exceptional financial services to our members, assisting with loan processing, and fostering member relationships through personalized support...Full time
- ...third party products as determined by the Credit Union. Function as a Membership Officer in the Branch, as approved by the Board of Directors. Handles opening and closing of all account types and completes all proper documentation. Cross trains on all teller line...Full time
- ...relationships with technology and line of business teams as Subject Matter ExpertsAnalyzes business data to identify trends, mitigate risk, enhance client relationships, and identify new products/services to increase revenueParticipates in client engagement regarding new...Work experience placementWork at officeWorldwideFlexible hours
- A leading financial services firm is seeking a Private Client Advisor in Marlborough, MA. This role involves providing personalized financial planning and investment solutions to a diverse range of clients. Candidates should have at least 2 years of financial advisory experience...
- ...and makes referrals to appropriate internal service providers based on client needs and asset thresholds • Mitigates and controls risk as part of daily activities • Identifies and engages potential new clients through referrals or financial center clientele • Provides...Temporary workWork at officeImmediate startMonday to FridayShift workDay shift
$80k - $150k
Do you have great listening skills and a knack for developing effective, analytics-based strategies? We are seeking a money-minded individual who is looking for an opportunity to break into the financial services industry! Our successful entry-level financial advisor candidate...Work at office- ...practice specializes in providing strategic, operational, and financial advice to private equity firms, management teams, boards of directors, investors, hedge funds, and other lenders or companies that are either underperforming or in transition. #ThinkBRG The BRG...Full timeWork experience placementLocal area
- ...practice specializes in providing strategic, operational, and financial advice to private equity firms, management teams, boards of directors, investors, hedge funds, and other lenders or companies that are either underperforming or in transition. The BRG Corporate...Full timeWork experience placementLocal area
- ...financial and life priorities and connecting clients to solutions that meet the financial goals. Responsibilities: - Executes the bank's risk culture and strives for operational excellence - Builds relationships with clients to meet financial needs - Follows established...Work at officeFlexible hoursShift workWeekend workDay shift
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Director IT Risk and Compliance. Be the first to apply!
Related searches
- director global regulatory affairs Marlborough, MA
- regulatory manager Marlborough, MA
- manager regulatory affairs Marlborough, MA
- regulatory & compliance manager Marlborough, MA
- head compliance Marlborough, MA
- regulatory affairs director Marlborough, MA
- compliance director Marlborough, MA
- compliance manager Marlborough, MA
- risk assurance Marlborough, MA
- high risk Marlborough, MA


