Nike logo

Lead Information Security Analyst

Nike

On-site
Karnataka, India
Full-time
Senior
Lead
7+ yrs
Salary not listedPosted 36m ago

Real job — pulled straight from Nike’s careers page · Verified September 15, 2026 · No reposts.

Job description

Nike is hiring a Lead Information Security Analyst — a full-time, based in Karnataka, India role. Apply directly on Nike's careers page below.

Lead Information Security Analyst, ITC

Location: Karnataka, India

Time Type: Full time

Job Description

Become a Part of the NIKE, Inc. Team

NIKE, Inc. does more than outfit the world’s best athletes. It is a place to explore potential, obliterate boundaries and push out the edges of what can be. The company looks for people who can grow, think, dream and create. Its culture thrives by embracing diversity and rewarding imagination. The brand seeks achievers, leaders and visionaries. At NIKE, Inc. it’s about each person bringing skills and passion to a challenging and constantly evolving game.

WHO YOU’LL WORK WITH

The Lead GRC Information Security Analyst 4 is an advanced individual contributor and workstream owner on the GRC team at Nike's India Technology Center (ITC), reporting to the ITC GRC Director. This role partners with the Global GRC team in Beaverton, Oregon and cross-functional leaders across Global Technology, Internal Audit, and Finance.

WHO WE ARE LOOKING FOR

The candidate needs to have advanced GRC delivery experience and the versatility to operate as a Lead GRC Athlete—running workstreams end-to-end across Governance, Risk, Compliance, and Technical Recovery, and rotating between them without re-hiring. This is a workstream ownership role that requires in-depth knowledge, conceptual thinking, and the credibility to work with Principals globally. The candidate provides direction and mentorship to Seniors and Analysts, advises the team on complex matters, and foresees most future implications of the solutions they implement. Solid working knowledge of SOX ITGC, NIST CSF and ISO 27001, risk lifecycle management, third-party cyber risk, DR/BCP practices, and GRC is essential. The candidate closes loops with artifacts and evidence and knows when to execute, when to govern, and when to escalate.

  • 7+ years of professional experience in technology risk, cybersecurity risk, IT audit, compliance, or GRC in matrixed, multinational technology organizations

  • Bachelor’s degree or equivalent combination of education, experience, or training

  • Professional certifications strongly preferred (e.g., CISA, CRISC, CISM, CISSP, GRCP, ISO 27001 LA/LI)

  • Hands-on experience with GRC (or comparable platform)

  • Demonstrated hands-on delivery across at least two of four GRC streams (Governance, Risk, Compliance, Technical Recovery)

WHAT YOU’LL WORK ON

You run GRC workstreams as a Lead GRC Athlete across Governance, Risk, Compliance, and Technical Recovery. You coach Seniors and Analysts, serve as the trusted delivery lead for the ITC Principal and Director, and partner across the global GRC organization to deliver outcomes at ITC.

  • You own one or more workstreams end-to-end in the stream where demand is highest (Governance, Risk, Compliance, or Technical Recovery), rotating based on the stream with the longest queue

  • You drive risk lifecycle discipline and risk register hygiene in GRC, and support policies, standards, exceptions, attestations, and governance forum cadence

  • You drive SOX ITGC testing readiness and evidence quality, TPRM remediation, cybersecurity risk assessments, and DR/BCP exercise support

  • You provide direction and mentorship to Senior and Analyst GRC Athletes on the workstream—unblocking issues, reviewing artifacts, and enforcing a quality bar

  • You produce and interpret workstream metrics (control effectiveness, risk closure, TPRM cycle time, DR test outcomes) for Directors and Principals and recommend improvements

  • You build strong working relationships with control owners, engineers, vendors, and cross-functional partners; you navigate ambiguity and competing priorities

  • You identify recurring pain points, propose changes, and implement improvements with an eye to future implications for the global program

Get Security Analyst jobs like this

New roles from thousands of companies land hourly, straight from their careers pages. Get the freshest matches by email so you never miss one.

Email me new jobs
Nike logo

Nike

New

Principal Information Security Analyst

Karnataka, India
✓ From careers page· 36m ago
Vix Technology logo

Information Security and GRC Specialist

Manchester, England
✓ From careers page· 4h ago
Elsevier logo

Senior Systems Engineer

$95k–$159kTexas
✓ From careers page· 4h ago

Frequently asked questions

What skills are required for Lead Information Security Analyst at Nike?

The required skills for Lead Information Security Analyst at Nike include: ISO 27001, CISA, CISM, CISSP.

What is the seniority level for Lead Information Security Analyst at Nike?

Lead Information Security Analyst at Nike is a Senior / Lead level position.

How do I apply for Lead Information Security Analyst at Nike?

You can view the full description and apply for Lead Information Security Analyst at Nike on EchoJobs: https://echojobs.io/job/nike-lead-information-security-analyst-itc-tndnr.