$ cat jobs/director-grc-nextpower-03b930b67c14.json
Director, GRC
Job Description: Position Summary Nextpower is seeking an experienced Director, GRC to lead, and scale the company’s enterprise GRC program. This role will be responsible for the governance, risk management, compliance, and assurance capabilities required to support Nextpower ’s business objectives, customer commitments, regulatory obligations, and product security requirements. The Director, GRC will serve as the central program leader, coordinating work across Cybersecurity, IT, Product, Engineering, Quality, Legal, Procurement, Human Resources, Internal Audit, and executive leadership. The role will manage external implementation partners, auditors, and certification bodies while ensuring that governance and compliance processes remain sustainable after initial certification. The ideal candidate is a hands-on leader who can translate regulatory and certification requirements into practical operating processes, establish clear ownership across the organization, and drive complex cross-functional programs from discovery through certification and ongoing maintenance. Key Responsibilities Develop a scalable GRC operating model covering governance, risk management, compliance, policy management, audit readiness, evidence management, and corrective actions. Define program governance, decision-making structures, steering committees, control ownership, and executive reporting. Develop and maintain program plans, budgets, resource requirements, milestones, dependencies, and risk registers. Coordinate internal stakeholders, external consultants, auditors, and certification bodies. Establish metrics and reporting that provide leadership with visibility into compliance status, program health, organizational risk, and remediation progress. Required Qualifications Bachelor’s degree in Cybersecurity, Information Systems, Computer Science, Engineering, Business, Risk Management, or a related field. Ten or more years of progressive experience in governance, risk and compliance, i