Principal Information Security Analyst, ITC

nike· NIKE India Technology Center Private Limited
Apply Now ↗
📍 Karnataka, IndiaFull time

About this role

WHO YOU’LL WORK WITH

The Principal GRC Information Security Analyst 5 is the top GRC individual contributor at Nike's India Technology Center (ITC), reporting to the ITC GRC Director. This role partners with the Global GRC team in Beaverton, Oregon and cross-functional leaders across Global Technology, Internal Audit, Legal, and Finance to advance Nike's global GRC agenda.

WHO WE ARE LOOKING FOR

The candidate needs to have deep, broadly applied GRC expertise across Governance, Risk, Compliance, and Technical Recovery, and the maturity to operate as a Principal GRC Athlete—the discipline lead for ITC on a rotating stream while providing thought leadership across all four streams. This is the senior anchor role at ITC and requires a recognized subject-matter expert who is comfortable with novel and ambiguous problems and who develops new concepts, playbooks, and standards that scale globally. The candidate influences senior leaders across a highly matrixed environment without direct authority, coaches Leads, Seniors, and Analysts, and sets the technical direction for how work gets done at ITC. Strong command of SOX ITGC, cybersecurity regulations, NIST CSF and ISO 27001, third-party cyber risk, cybersecurity risk assessments, DR/BCP resilience, ServiceNow GRC, and enterprise risk lifecycle discipline is essential. The candidate thrives on closing loops with evidence, not activity.

  • 10+ years of professional experience in technology risk, cybersecurity risk, IT audit, compliance, or GRC in large, matrixed, multinational technology organizations

  • Bachelor’s degree or equivalent combination of education, experience, or training

  • Advanced degree or professional certifications strongly preferred (e.g., CISSP, CISM, CRISC, CISA, GRCP, ISO 27001 LA/LI)

  • Strong hands-on experience with ServiceNow GRC (or comparable platform)

  • Demonstrated hands-on delivery across at least two of four GRC streams (Governance, Risk, Compliance, Technical Recovery)

WHAT YOU’LL WORK ON

You serve as the top GRC individual contributor at ITC, extending Global GRC standards into local execution while rotating as a Principal GRC Athlete across Governance, Risk, Compliance, and Technical Recovery. You lead the most complex problems, coach the ITC GRC team, and represent ITC in global forums.

  • You lead the primary GRC stream at ITC (rotates across Governance, Risk, Compliance, or Technical Recovery based on demand) and provide senior technical coverage across the other streams, partnering with the Global GRC Principal on operating-model design

  • You translate global GRC standards, policies, and platform designs into ITC-executable playbooks, workflows, and control patterns, and recommend improvements back to Global GRC

  • You govern end-to-end risk lifecycle quality and enterprise risk register posture for ITC-supported risks; you steward policies, standards, exceptions, attestations, and governance forums

  • You provide senior direction on SOX ITGC, cybersecurity risk assessments, third-party cyber risk, and DR/BCP resilience for global initiatives and platforms supported from ITC

  • You serve as the ITC power user and design partner for ServiceNow GRC—driving workflow improvements, control library hygiene, attestations, dashboards, and adoption across distributed owners

  • You coach and mentor Leads, Seniors, and Analysts at ITC and role-model the “own / govern / enable” judgment that raises the technical bar of the team

  • You represent ITC in global governance forums—surfacing themes early, aligning priorities, and enabling timely enterprise risk decisions

Frequently Asked Questions

Is the salary disclosed for the Principal Information Security Analyst, ITC position at nike?
The salary for this Principal Information Security Analyst, ITC role at nike is not publicly listed. Click "Apply Now" to learn more about the compensation package on their official careers page.
Where is the Principal Information Security Analyst, ITC position at nike located?
This Principal Information Security Analyst, ITC role at nike is based in Karnataka, India. The position is listed as on-site or hybrid. Check the full job description or apply directly to confirm the work arrangement.
Is the Principal Information Security Analyst, ITC role at nike full-time or part-time?
This is listed as a Full time position. It is posted as a Principal Information Security Analyst, ITC role in the NIKE India Technology Center Private Limited department at nike.
Which team or department does the Principal Information Security Analyst, ITC at nike belong to?
This Principal Information Security Analyst, ITC position is part of the NIKE India Technology Center Private Limited department at nike. See the full job description for more information about the team structure and responsibilities.
How do I apply for the Principal Information Security Analyst, ITC position at nike?
Click the "Apply Now" button on this page. You will be redirected to nike's official application portal hosted on workday where you can submit your application directly.
When was the Principal Information Security Analyst, ITC job at nike posted?
This Principal Information Security Analyst, ITC position at nike was posted on Sep 21, 2026. Apply as soon as possible — early applications are often reviewed first.
Principal Information Security Analyst, ITC
nike
Apply for this role ↗

You'll be redirected to nike's official application page on Workday.