Information Security Analyst, GRC, ITC

5 hours ago


India Nike Full time

Job Description

About The Job

Become a Part of the NIKE, Inc. Team

NIKE, Inc. does more than outfit the world's best athletes. It is a place to explore potential, obliterate boundaries and push out the edges of what can be. The company looks for people who can grow, think, dream and create. Its culture thrives by embracing diversity and rewarding imagination. The brand seeks achievers, leaders and visionaries. At NIKE, Inc. it's about each person bringing skills and passion to a challenging and constantly evolving game.

NIKE is a technology company. From our flagship website and five-star mobile apps to developing products, managing big data and providing leading edge engineering and systems support, our teams at NIKE Global Technology exist to revolutionize the future at the confluence of tech and sport. We invest and develop advances in technology and employ the most creative people in the world, and then give them the support to constantly innovate, iterate and serve consumers more directly and personally. Our teams are innovative, diverse, multidisciplinary and collaborative, taking technology into the future and bringing the world with it.

Who Are We Looking For

We're looking for an Information Security Analyst to join Nike's Corporate Information Security Governance, Risk, and Compliance (GRC) team, which is responsible for enterprise wide GRC ensuring Nike leadership has the information needed to make strategic risk-based decisions and maintain compliance with international regulations while enabling the achievement of Nike business objectives globally. This role will meet with business and technology teams across Nike and consult with them on their security and compliance requirements. We are looking for an individual who is passionate about GRC, someone with a good working knowledge of industry best practice frameworks, such as ISO, NIST and CoBIT.

What Will You Work On

If this is you, you'll be working with the GRC team and performing these key tasks:

- Assess moderately complex platforms against Nike security and configuration standards
- Evaluate and process exceptions to information security policies and standards
- Participate in complex internal risk assessments, identifying information security risks through analysis of threats and vulnerabilities, and reporting on those risks to Nike business and technology owners
- Perform risk assessments of critical third-party vendors and ensure the business objectives align with the type and volume of data used in maintaining a need to know/use mindset
- Utilize your thorough understanding of ITGC's to consult with Technology units on compliance matters
- Champion information security policies, standards, controls, and processes so that compliance requirements are addressed as part of business as usual operations
- Lead Nike business units in control design and control operations related in support of compliance requirements
- Perform Compliance control validation testing to determine the operating effectiveness of IT controls for scoped systems
- Provide analysis and insights into data supporting the effectiveness of technical and process-based cyber security controls and establish automated data pipelines that feed data visualization tools, such as Tableau
- Collaborate effectively with NIKE leaders, managers, employees, and partners to provide deliberate and thoughtful engagement throughout NIKE
- Help drive execution of the Information Security training programs. Ensure the workforce stays fully informed on information security through formal trainings and oversee the development and delivery of security training and awareness campaigns
- Effective, positive verbal and written communication skills and experienced creating and developing high-quality PowerPoint presentations

Who Will You Work With

You will report into the Governance, Risk and Compliance - India Technology Center Director , in support of global GRC processes and procedures, and will work cross-functionally within the Corporate Information Security (CIS) teams and across Nike. You will regularly meet with Nike business and technology teams.

What You Bring

- Knowledge of information security principles and practices, general procedures and guidelines
- A general understanding of technology use, trends and risks as it applies in a business context and environment
- Experience reviewing third party SOC reports
- Experience/working knowledge with PCI DSS (Former QSA is a benefit).
- Knowledge of information security principles, frameworks, and best practices (e.g., PCI DSS, COBIT, COSO, NIST and ISO 27000)
- Excellent collaboration skills - must be eager to work as part of a cohesive team and work as a partner to others within Nike, Inc. both at WHQ and globally
- Experience with ServiceNow, Confluence or JIRA

NIKE, Inc. is a growth company that looks for team members to grow with it. Nike offers a generous total rewards package, casual work environment, a diverse and inclusive culture, and an electric atmosphere for professional development. No matter the location, or the role, every Nike employee shares one galvanizing mission: To bring inspiration and innovation to every athlete* in the world.

NIKE, Inc. is committed to employing a diverse workforce. Qualified applicants will receive consideration without regard to race, color, religion, sex, national origin, age, sexual orientation, gender identity, gender expression, veteran status, or disability.

Benefits

Whether it's transportation or financial health, we continually invest in our employees to help them achieve greatness - inside and outside of work. All who work here should be able to realize their full potential.



  • India CSG Full time US$ 90,000 - US$ 1,20,000 per year

    Hi, I'm Debin Dennis, your Recruiter and guide to joining CSG We are excited to learn more about you and your unique background. We are looking for an Information Security Analyst II to join our dynamic global Information Security team. In this role, you'll support the governance, risk, and compliance functions, playing a key part in how we protect data,...

  • GRC Analyst

    5 days ago


    Mumbai, India PINKVILLA Full time

    Job Description Pinkvilla is seeking a dynamic Information Security professional, who will play a key role in driving compliance programs, managing audits, supporting data protection initiatives, and ensuring third-party security risks are effectively identified and mitigated. Key Responsibilities Governance, Risk & Compliance (GRC) - Develop, implement,...


  • Bengaluru, India ACCA Careers Full time

    Job Description Kenvue Is Currently Recruiting For a ITC Collection Analyst What We Do At Kenvue, we realize the extraordinary power of everyday care. Built on over a century of heritage and rooted in science, we're the house of iconic brands - including NEUTROGENA, AVEENO, TYLENOL, LISTERINE, JOHNSON'S and BAND-AID that you already know and love....


  • India TriOptus Full time ₹ 1,20,000 - ₹ 3,00,000 per year

    Job Description :The Information Security Cyber Organization Alignment role is focused on the strategic alignment of information security practices with the bank's overall risk management strategy, compliance requirements, and governance frameworks. The role focuses on driving Information Security Governance, Risk, and Compliance (GRC) initiatives to...

  • GRC Analyst, Security

    2 weeks ago


    Bengaluru, India Ethos Full time

    Job Description About Ethos Ethos was built to make it faster and easier to get life insurance for the next million families. Our approach blends industry expertise, technology, and the human touch to find you the right policy to protect your loved ones. We leverage deep technology and data science to streamline the life insurance process, making it more...


  • Bengaluru, India InMobi Advertising Full time

    Job Description InMobi Advertising is a global technology leader helping marketers win the moments that matter. Our advertising platform reaches over 2 billion people across 150+ countries and turns real-time context into business outcomes, delivering results grounded in privacy-first principles. Trusted by 30,000+ brands and leading publishers, InMobi is...

  • Data Analyst

    2 weeks ago


    Bengaluru, India ITC Infotech Full time

    Job Description Urgently hiring at ITC Infotech for the below mentioned requirement. Role - Data Analyst Experience - 2 year to 4 years (relevant) Skills - Proficient in writing SQL queries and Python scripting, experience in Power BI and good understanding of MS excel. Location - Bangalore (Work from Office) Notice period - Immediate joiners only Job...


  • India DigiHelic Solutions Pvt. Ltd. Full time

    As a Cybersecurity GRC , this position plays an vital role to support the implementation and management of governance, risk, and compliance initiatives that safeguard the organization's information assets. This role involves assisting in the execution of cybersecurity policies, conducting risk assessments, participating in audits, and evaluating...


  • Bengaluru, India Skyworks Solutions, Inc. Full time

    Job Description If you are looking for a challenging and exciting career in the world of technology, then look no further. Skyworks is an innovator of high performance analog semiconductors whose solutions are powering the wireless networking revolution. At Skyworks, you will find a fast-paced environment with a strong focus on global collaboration, minimal...


  • India DigiHelic Solutions Pvt. Ltd. Full time

    As a Cybersecurity GRC , this position plays an vital role to support the implementation and management of governance, risk, and compliance initiatives that safeguard the organization's information assets. This role involves assisting in the execution of cybersecurity policies, conducting risk assessments, participating in audits, and evaluating third-party...