Senior Director, GRCPosted today

The opportunity

Secure Every Identity, from AI to Human Identity is the key to unlocking the potential of AI. Okta secures AI by building the trusted, neutral infrastructure that enables organizations to safely embrace this new era.

What you'll do

  • Drive AI-first Transformation: Execute a vision to integrate AI and agentic tools into daily GRC operations (automated evidence collection, automated risk scoring, intelligent policy mapping, and continuous audit readiness).

  • Enterprise Risk & Governance: Operationalize Okta’s AI risk and governance framework—addressing training data protection, model risk management, responsible AI principles, and alignment with emerging frameworks (NIST AI RMF, ISO/IEC 42001, and the EU AI Act).

  • Enterprise Cyber Risk Management: Lead enterprise-wide cyber risk identification, prioritization, treatment, and quantification

  • Regulatory & Compliance Assurance: Maintain and expand Okta’s global compliance posture across major security and privacy frameworks, including SOC 1/2/3, ISO 27001/ENS High/MS DPR/PCI-DSS/CSA STAR/HDS

  • Policy & Governance Lifecycle: Ensure our corporate information security policies and control standards to reflect evolving business priorities and emerging threats.

  • Third-Party & SaaS Risk Governance: Direct high-impact vendor risk assessment programs, ensuring third-party SaaS tools and supply chain risks meet Okta’s stringent security controls program.

What they're looking for

  • Audit Management & Remediation: Serve as the primary executive lead for internal/external audits, customer assurances, and regulatory reviews. Drive rapid, engineering-led remediation of audit findings and control gaps.
  • Cross-Functional Partnership: Collaborate closely with Product Management, Legal, Privacy, Infrastructure, and Business Technology teams to align compliance requirements with product roadmaps and commercial objectives.
  • Proven Executive Leadership: 10+ years of progressive leadership in Security GRC within a high-growth SaaS, cloud-first, or enterprise technology environment.
  • AI Governance Expertise: Demonstrated understanding of AI/ML governance challenges, including generative and agentic AI security, data lineage and global AI regulatory landscapes.