Sr. Director, Governance, Risk, and Compliance (GRC)

Reposted 15 Days Ago
Be an Early Applicant
Seattle, WA, USA
In-Office
221K-365K Annually
Senior level
eCommerce • Fashion • Mobile • Software
The Role
The Senior Director of Governance, Risk, and Compliance (GRC) leads the development of GRC strategy, ensuring regulatory compliance while enabling secure growth through effective risk management and executive reporting.
Summary Generated by Built In
Job Description

JOB SUMMARY:

At Nordstrom, trust is foundational—to our customers, our employees, and our partners. The Senior Director of Governance, Risk, and Compliance (GRC) plays a critical role in protecting and enabling that trust by ensuring the company can innovate, grow, and serve customers securely and responsibly. This role is central to safeguarding the Nordstrom brand while supporting exceptional, frictionless customer experiences across an omni‑channel business.

The Senior Director of GRC is a highly visible leader responsible for building and maturing a modern, enterprise‑wide GRC function. This leader ensures governance, risk, and compliance are not barriers to progress, but strategic enablers of secure growth, digital transformation, and operational excellence.

Partnering closely with the CISO and senior leaders across Technology, Legal, Finance, HR, and the business, this role translates complex cybersecurity, regulatory, and enterprise risks into clear, actionable insights that inform executive decision‑making. Success requires strong executive presence, deep GRC expertise, and a service‑oriented mindset—balancing rigor with pragmatism in a customer‑facing environment where brand reputation and trust matter every day.

The role is based in Seattle reporting directly to the Chief Information Security Officer.

A Day in the Life…

  • Partner closely with the Chief Information Security Officer (CISO) to shape and execute a modern, enterprise‑wide GRC strategy aligned to business priorities and risk appetite
  • Lead governance, risk, and compliance programs that enable secure growth while maintaining regulatory rigor across a complex, customer‑facing organization
  • Translate cybersecurity, regulatory, and enterprise risk into clear, actionable insights for executive leadership and senior stakeholders
  • Review and guide enterprise risk assessments across cyber, IT, third‑party, and operational domains, ensuring risks are understood, prioritized, and actively managed
  • Oversee internal and external audit activities, ensuring strong coordination, timely remediation, and continuous readiness rather than point‑in‑time compliance
  • Drive executive‑ and Board‑level risk reporting through dashboards, metrics, and storytelling that inform decision‑making
  • Partner daily with Legal, Technology, Finance, HR, and business leaders to embed risk management into strategy, transformation initiatives, and vendor relationships
  • Lead and develop a high‑performing GRC organization, setting clear priorities, accountability, and operating rhythms
  • Evaluate and optimize GRC tools and platforms, advancing automation and scalable risk and compliance management
  • Stay ahead of emerging regulatory requirements, industry trends, and best practices, advising the CISO on implications and recommended actions

You Own This if You Have…

  • 10+ years of progressive experience in governance, risk, compliance, information security, or enterprise risk management, including 5+ years in senior leadership roles
  • Proven success building, scaling, or transforming enterprise GRC programs in complex, regulated environments
  • Strong executive presence with the ability to influence senior leaders and translate risk into business‑relevant outcomes
  • Deep expertise across cybersecurity risk, IT risk, enterprise risk, third‑party risk, and regulatory compliance frameworks
  • Demonstrated experience partnering closely with a CISO and security leadership to align risk, compliance, and security strategy
  • A track record of advancing compliance from point‑in‑time audits to continuous readiness and control optimization
  • Experience developing executive‑level dashboards, metrics, and reporting for senior leadership, audit committees, or Boards
  • Strong cross‑functional leadership skills, with the ability to align Legal, Technology, Finance, HR, and business teams around shared risk ownership
  • Familiarity with leading GRC platforms and automation tools (e.g., ServiceNow GRC, Archer, OneTrust)
  • Excellent written and verbal communication skills, with the judgment to operate effectively in high‑impact, ambiguous situations

We’ve got you covered…

Our employees are our most important asset and that’s reflected in our benefits. Nordstrom is proud to offer a variety of benefits to support employees and their families, including:

  • Medical/Vision, Dental, Retirement and Paid Time Away

  • Life Insurance and Disability

  • Merchandise Discount and EAP Resources

A few more important points...

The job posting highlights the most critical responsibilities and requirements of the job. It’s not all-inclusive. There may be additional duties, responsibilities and qualifications for this job.

For Los Angeles or San Francisco applicants: Nordstrom is required to inform you that we conduct background checks after conditional offer and consider qualified applicants with criminal histories in a manner consistent with legal requirements per Los Angeles, Cal. Muni. Code 189.04 and the San Francisco Fair Chance Ordinance. For additional state and location specific notices, please refer to the Legal Notices document within the FAQ section of the Nordstrom Careers site.

Applicants with disabilities who require assistance or accommodation should contact the nearest Nordstrom location, which can be identified at www.nordstrom.com. 

Please be mindful that there may be legal notices and requirements related to this job posting that are specific to your state. Review the Career Site FAQ’s for relevant information and guidelines.

© 2022 Nordstrom, Inc  

Current Nordstrom employees: To apply, log into Workday, click the Careers button and then click Find Jobs.

Nordstrom keeps job postings open for at least one day after the posting date.

Pay Range Details

The pay range(s) below has been provided in compliance with state specific laws. Pay ranges may be different for other locations. 
Pay offers are dependent on the location, as well as job-related knowledge, skills, and experience.

$221,000.00 - $365,000.00 Annual

This position may be eligible for performance-based incentives/bonuses. Benefits include 401k, medical/vision/dental/life/disability insurance options, PTO accruals, Holidays, and more. Eligibility requirements may apply based on location, job level, classification, and length of employment. Learn more in the Nordstrom Benefits Overview by copying and pasting the following URL into your browser: https://careers.nordstrom.com/pdfs/Ben_Overview_20-21.pdf

Skills Required

  • 10+ years of experience in governance, risk, compliance, information security, or enterprise risk management
  • 5+ years in senior leadership roles
  • Proven success building or transforming enterprise GRC programs in regulated environments
  • Deep expertise across cybersecurity risk, IT risk, enterprise risk, third-party risk, and regulatory compliance frameworks
  • Experience partnering with a CISO and security leadership
  • Track record of continuous readiness and control optimization
  • Experience developing executive-level dashboards and reporting
  • Strong cross-functional leadership skills
  • Familiarity with leading GRC platforms and automation tools
  • Excellent written and verbal communication skills

Nordstrom Compensation & Benefits Highlights

The following summarizes recurring compensation and benefits themes identified from responses generated by popular LLMs to common candidate questions about Nordstrom and has not been reviewed or approved by Nordstrom.

  • Healthcare Strength Healthcare options are described as broad, including medical, dental, and vision coverage alongside virtual care and mental health support. Additional protections like disability coverage, life/AD&D, and accounts such as HSA/FSA further strengthen the overall health-and-protection offering.
  • Retirement Support Retirement benefits include a 401(k) plan with a defined employer match structure and access to additional financial programs like an employee stock purchase plan. Commuter accounts, transit subsidies, and adoption assistance add to the overall financial support beyond base pay.
  • Leave & Time Off Breadth Time-away benefits include PTO accrual, paid holidays, bereavement leave, parental and bonding leave, and a sabbatical program after tenure. PTO sharing and donation options expand flexibility in how time off can be used and supported across colleagues.

Nordstrom Insights

Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
HQ: Seattle, Washington
60,000 Employees
Year Founded: 1901

What We Do

When you join Nordstrom, you join a fast-paced and entrepreneurial environment is paired with the strong history and experience of the Nordstrom retail legacy. We have access to some of the greatest minds in retail and technology and are constantly creating innovative strategies to develop the ultimate apparel solutions.

Gallery

Gallery

Similar Jobs

Inspiren Logo Inspiren

Systems Engineer

Artificial Intelligence • Hardware • Healthtech • Software
Easy Apply
In-Office or Remote
3 Locations
150 Employees
200K-240K Annually

CrowdStrike Logo CrowdStrike

Data Center Technician - (Wenatchee, WA)

Cloud • Computer Vision • Information Technology • Sales • Security • Cybersecurity
Hybrid
Wenatchee, WA, USA
10000 Employees
70K-95K Annually

CrowdStrike Logo CrowdStrike

Senior Consultant

Cloud • Computer Vision • Information Technology • Sales • Security • Cybersecurity
Remote or Hybrid
USA
10000 Employees
115K-160K Annually
In-Office or Remote
5 Locations
1450 Employees
143K-210K Annually

Similar Companies Hiring

Golden Pet Brands Thumbnail
Digital Media • eCommerce • Information Technology • Marketing Tech • Pet • Retail • Social Media
El Segundo, California
178 Employees
Kepler  Thumbnail
Fintech • Software
New York, New York
6 Employees
Onshore Thumbnail
Artificial Intelligence • Fintech • Software • Financial Services
New York, New York
60 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account