Director of Digital Technology - GRC (Governance, Risk, And Compliance)

Atlanta, Georgia, United States

ServiceNow

ServiceNow allows employees to work the way they want to, not how software dictates they have to. And customers can get what they need, when they need it.

View all jobs at ServiceNow

Apply now Apply later

Company Description

It all started in sunny San Diego, California in 2004 when a visionary engineer, Fred Luddy, saw the potential to transform how we work. Fast forward to today — ServiceNow stands as a global market leader, bringing innovative AI-enhanced technology to over 8,100 customers, including 85% of the Fortune 500®. Our intelligent cloud-based platform seamlessly connects people, systems, and processes to empower organizations to find smarter, faster, and better ways to work. But this is just the beginning of our journey. Join us as we pursue our purpose to make the world work better for everyone.

Job Description

About Digital Technology:

We’re not yesterday’s IT department, we're Digital Technology. The world around us keeps changing and so do we. We’re redefining what it means to be IT with a mindset centered on transformation, experience, AI-driven automation, innovation, and growth. We’re all about delivering delightful, secure customer and employee experiences that accelerate ServiceNow’s journey to become the defining enterprise software company of the 21st century. And we love co-creating, using, and highlighting our own products to do it.

Ultimately, we strive to make the world work better for our employees and customers—when you work in ServiceNow Digital Technology, you work for them.

About this role:

The Director of Digital Technology GRC will be responsible for developing and implementing a comprehensive GRC program for the organization's IT environment. 

What you get to do in this role:

  • Develop & and execute a strategic roadmap for advanced Technology & Security architecture, controls, and solutions across applications, networks, and cloud environments.
  • Drive key Technology, Security, and Data compliance programs in support of the Digital Technology (corporate IT) organization
  • In addition to IT and Security, architect and deploy technical controls across new GRC emerging risk priorities such as, Third Party Risk and Resiliency (BC/DR) programs including cross functional support, coordination and oversight of the programs
  • Partner closely with Legal, Privacy, and Data Security & Governance teams to develop corresponding GRC programs within the DT organization, ensuring adherence to requirements through ongoing monitoring and validation of DT controls and supporting processes
  • Lead the design, implementation and ongoing execution of ServiceNow’s Internal AI Governance program aimed at driving compliant and risk-based controls across the development, testing, deployment, and monitoring of AI systems across the ServiceNow corporate environment
  • Integrate GRC requirements into all elements of the DT risk management framework and supporting control and issue management programs.
  • Act as a technical advisor to stakeholders, communicating complex IT, Security, Data, AI, TPRM, and Resiliency issues, risk impacts, and recommendations for incident response and risk mitigation.
  • Govern and enforce ongoing adherence and compliance against requirements through ongoing control testing, continuous controls monitoring and automation using the ServiceNow IRM platform

Qualifications

To be successful in this role you have:

  • Experience in leveraging or critically thinking about how to integrate AI into work processes, decision-making, or problem-solving. This may include using AI-powered tools, automating workflows, analyzing AI-driven insights, or exploring AI’s potential impact on the function or industry. 
  • 12+ years of related experience, with at least 5+ years of hands-on leadership experience in the Technology Governance Risk and Compliance field.
  • Experience with Government and Regulated Markets mandates including regulator management and interaction is a plus.
  • Deep understanding of certification and attestation programs including SOX-404, EU AI Act, NIST AI RMF, NIST-CSF, Global Statutory Audit requirements, ISO standards, and other relevant regulations and standards
  • Understanding of Federal compliance certifications and requirements such as NIST 800-53 and FedRAMP is a plus.
  • Demonstrated ability to build out scalable compliance systems and processes for complex environments and regulations.
  • Demonstrated ability to build and lead product development and implementation of ServiceNow’s IRM (Integrated Risk Management) platform and tooling.
  • Deep understanding of GRC principles, methodologies, and industry best practices
  • Self-motivated, self-directed, and able to thrive in a fast-paced environment with a passion to make an impact.
  • Ability to work across the organization to evangelize and influence company IT compliance and governance efforts.
  • Demonstrated ability to interface successfully with customers and engineering teams in critical and challenging audits and conversations.
  • Strong leadership skills, strategy, analytical, problem solving, decision-making; and ability to work under minimum direction.
  • Prior experience at a SaaS, PaaS or IAAS Cloud company.
  • Master’s degree or related experience; certifications highly regarded.
  • Willing to travel up to 20%+ is required.

#DTjobs

Not sure if you meet every qualification? We still encourage you to apply! We value inclusivity, welcoming candidates from diverse backgrounds, including non-traditional paths. Unique experiences enrich our team, and the willingness to dream big makes you an exceptional candidate!

Additional Information

Work Personas

We approach our distributed world of work with flexibility and trust. Work personas (flexible, remote, or required in office) are categories that are assigned to ServiceNow employees depending on the nature of their work. Learn more here.

Equal Opportunity Employer

ServiceNow is an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, creed, religion, sex, sexual orientation, national origin or nationality, ancestry, age, disability, gender identity or expression, marital status, veteran status, or any other category protected by law. In addition, all qualified applicants with arrest or conviction records will be considered for employment in accordance with legal requirements. 

Accommodations

We strive to create an accessible and inclusive experience for all candidates. If you require a reasonable accommodation to complete any part of the application process, or are unable to use this online application and need an alternative method to apply, please contact globaltalentss@servicenow.com for assistance. 

Export Control Regulations

For positions requiring access to controlled technology subject to export control regulations, including the U.S. Export Administration Regulations (EAR), ServiceNow may be required to obtain export control approval from government authorities for certain individuals. All employment is contingent upon ServiceNow obtaining any export license or other approval that may be required by relevant export control authorities. 

From Fortune. ©2024 Fortune Media IP Limited. All rights reserved. Used under license. 

Apply now Apply later

* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰

Job stats:  0  0  0

Tags: Audits Automation Cloud Compliance FedRAMP Governance IaaS Incident response Monitoring NIST NIST 800-53 PaaS Privacy Risk management RMF SaaS SOX Strategy

Perks/benefits: Career development

Region: North America
Country: United States

More jobs like this

Explore more career opportunities

Find even more open roles below ordered by popularity of job title or skills/products/technologies used.