Nike logo

Principal Information Security Analyst

Nike

On-site
Karnataka, India
Full-time
Principal
10+ yrs
Salary not listedPosted 36m ago

Real job — pulled straight from Nike’s careers page · Verified September 15, 2026 · No reposts.

Job description

Nike is hiring a Principal Information Security Analyst — a full-time, based in Karnataka, India role. Apply directly on Nike's careers page below.

Principal Information Security Analyst, TRM, ITC

Location: Karnataka, India

Time Type: Full time

Job Description

Become a Part of the NIKE, Inc. Team

NIKE, Inc. does more than outfit the world’s best athletes. It is a place to explore potential, obliterate boundaries and push out the edges of what can be. The company looks for people who can grow, think, dream and create. Its culture thrives by embracing diversity and rewarding imagination. The brand seeks achievers, leaders and visionaries. At NIKE, Inc. it’s about each person bringing skills and passion to a challenging and constantly evolving game.

WHO YOU’LL WORK WITH

The Principal GRC Information Security Analyst 5 is the top GRC individual contributor at Nike's India Technology Center (ITC), reporting to the ITC GRC Director. This role partners with the Global GRC team in Beaverton, Oregon and cross-functional leaders across Global Technology, Internal Audit, Legal, and Finance to advance Nike's global GRC agenda.

WHO WE ARE LOOKING FOR

The candidate needs to have deep, broadly applied GRC expertise across Governance, Risk, Compliance, and Technical Recovery, and the maturity to operate as a Principal GRC Athlete—the discipline lead for ITC on a rotating stream while providing thought leadership across all four streams. This is the senior anchor role at ITC and requires a recognized subject-matter expert who is comfortable with novel and ambiguous problems and who develops new concepts, playbooks, and standards that scale globally. The candidate influences senior leaders across a highly matrixed environment without direct authority, coaches Leads, Seniors, and Analysts, and sets the technical direction for how work gets done at ITC. Strong command of SOX ITGC, cybersecurity regulations, NIST CSF and ISO 27001, third-party cyber risk, cybersecurity risk assessments, DR/BCP resilience, GRC, and enterprise risk lifecycle discipline is essential. The candidate thrives on closing loops with evidence, not activity.

  • 10+ years of professional experience in technology risk, cybersecurity risk, IT audit, compliance, or GRC in large, matrixed, multinational technology organizations

  • Bachelor’s degree or equivalent combination of education, experience, or training

  • Advanced degree or professional certifications strongly preferred (e.g., CISSP, CISM, CRISC, CISA, GRCP, ISO 27001 LA/LI)

  • Strong hands-on experience with GRC (or comparable platform)

  • Demonstrated hands-on delivery across at least two of four GRC streams (Governance, Risk, Compliance, Technical Recovery)

WHAT YOU’LL WORK ON

You serve as the top GRC individual contributor at ITC, extending Global GRC standards into local execution while rotating as a Principal GRC Athlete across Governance, Risk, Compliance, and Technical Recovery. You lead the most complex problems, coach the ITC GRC team, and represent ITC in global forums.

  • You lead the primary GRC stream at ITC (rotates across Governance, Risk, Compliance, or Technical Recovery based on demand) and provide senior technical coverage across the other streams, partnering with the Global GRC Principal on operating-model design

  • You translate global GRC standards, policies, and platform designs into ITC-executable playbooks, workflows, and control patterns, and recommend improvements back to Global GRC

  • You govern end-to-end risk lifecycle quality and enterprise risk register posture for ITC-supported risks; you steward policies, standards, exceptions, attestations, and governance forums

  • You provide senior direction on SOX ITGC, cybersecurity risk assessments, third-party cyber risk, and DR/BCP resilience for global initiatives and platforms supported from ITC

  • You serve as the ITC power user and design partner for GRC—driving workflow improvements, control library hygiene, attestations, dashboards, and adoption across distributed owners

  • You coach and mentor Leads, Seniors, and Analysts at ITC and role-model the “own / govern / enable” judgment that raises the technical bar of the team

  • You represent ITC in global governance forums—surfacing themes early, aligning priorities, and enabling timely enterprise risk decisions

Get Security Analyst jobs like this

New roles from thousands of companies land hourly, straight from their careers pages. Get the freshest matches by email so you never miss one.

Email me new jobs
Nike logo

Nike

New

Lead Information Security Engineer

Karnataka, India
✓ From careers page· 34m ago
DTCC logo

DTCC

New

Cyber Security Threat Management Senior Associate

Manila, Philippines
✓ From careers page· 51m ago
Columbia Sportswear logo

Incident Response Coordinator

Portland, OR
✓ From careers page· 57m ago
GE Aerospace logo

Senior Director, Cybersecurity (Remote)

$176k–$235kRemote · US +2
✓ From careers page· 1h ago

Frequently asked questions

What skills are required for Principal Information Security Analyst at Nike?

The required skills for Principal Information Security Analyst at Nike include: Cybersecurity, ISO 27001, CISSP, CISM, CISA.

What is the seniority level for Principal Information Security Analyst at Nike?

Principal Information Security Analyst at Nike is a Principal level position.

How do I apply for Principal Information Security Analyst at Nike?

You can view the full description and apply for Principal Information Security Analyst at Nike on EchoJobs: https://echojobs.io/job/nike-principal-information-security-analyst-trm-itc-bwbkr.