Governance, Risk & Compliance Manager (IT)
Core
Lead the development of an AI Governance Framework and manage IT compliance for a children's apparel retailer's enterprise technology and AI adoption.
Role type
Senior IT Governance, Risk & Compliance Manager (AI focus)
Builds
Enterprise AI governance policies, risk assessment programs, and regulatory compliance controls
Domain
Retail / AI Governance & IT Risk
Required skills
AI governance framework design, AI risk assessment, regulatory compliance mapping, audit management, vendor risk assessment, data privacy controls, stakeholder influence, cross-functional program management
Preferred skills
Experience with MCP (Model Context Protocol) architectures, agentic AI workflows, generative AI tool security
Technologies
NIST CSF, NIST AI, ISO 27001, COBIT, SOX ITGC, PCI DSS, SOC 2, CCPA, GDPR, EU AI Act, NIST AI RMF, ISO/IEC 42001
Responsibilities
Define AI governance policies for acceptable use, data classification, and model risk; maintain inventory of AI tools and connectors; conduct AI risk assessments for data exposure and vulnerabilities; enforce controls for AI connector permissions and credential management; oversee compliance with SOX, PCI DSS, and NIST standards; manage IT control testing calendars and coordinate with auditors; track remediation of audit findings.
Seniority
Senior, hands-on IC