×
Register Here to Apply for Jobs or Post Jobs. X

AVP of Governance, Risk & Compliance; GRC

Job in Miramar, Broward County, Florida, USA
Listing for: Royal Caribbean Group
Full Time position
Listed on 2026-02-07
Job specializations:
  • IT/Tech
    Cybersecurity, Information Security
Job Description & How to Apply Below
AVP of Governance, Risk & Compliance (GRC)

LOCATION: Miramar, FL

REPORTS TO: VP, Information Security

POSITION OVERVIEW

The AVP of Governance, Risk & Compliance (GRC) will ensure technology and business teams comply with external regulations and internal requirements. This role will lead efforts to achieve continuous compliance by partnering with technology, business, and brand teams to adhere to policies, reduce security risks, and maintain compliance. The initial focus will be to establish and advance an IT GRC framework supporting RCCL's global environments, including shoreside, shipboard, subsidiaries, mobile, and cloud services.

This position will also define and direct activities to meet regulatory requirements such as GDPR, SOX, PCI, HIPAA, and Privacy.

The GRC Associate Vice President (AVP) is a leader with a strong knowledge of security frameworks, controls – NIST CSF, and audit techniques, which seeks to improve how compliance programs are implemented and maintained. The ideal candidate will bring a passion for improving the customer experience by easing operational burdens associated with compliance and will focus on enhancing transparency across the security landscape.

Candidates must have a proven track record of leadership in enterprise-level information security. They should be able to translate complex technical information into strategic insights for technical leaders and simplify it for business leaders. This role demands high intellectual acumen and the ability to make complex technical details accessible to technical and non-technical stakeholders.

The GRC AVP will lead a global team of 30+ cybersecurity and compliance professionals and manage a portfolio of 15 products and technologies to ensure proper compliance, making risk visible for leaders and employees across RCG.

We seek for a hybrid GRC leader - Envision a balance between GRC and oversight in the governance piece and interfacing and interacting with the technical side, in partnership with our Business Information Security Officers (BISOs) and Business Enablement Engineers (BEEs).

Engagement, exposure, and significant involvement with the technology leaders, business leaders, and the Global CISO, participating in compliance, analytics, third-party risk management, etc.

As the GRC AVP, you will oversee maritime business enablement and related areas, ensuring compliance for internal and external stakeholders and their regulators, as well as managing critical performance (KPIs) and risk (KRIs) indicators. You will also develop and implement strategies to manage and mitigate risks across the organization.

Understands the balance between governance/risk/compliance, the various other dynamics of a security program, business enablement engineers, and the needs and goals of business and executive stakeholders and can straddle both in a leadership role.

Candidates should have experience in developing and empowering team members, including BISOs and experts in governance, compliance, cyber risk posture management, and human risk management. They should also be able to partner with business enablement engineers across all areas of the cybersecurity program, such as identity and access management and cyber defense operations.

RESPONSIBILITIES

Governance and Compliance Strategy: Create a global, enterprise-wide cybersecurity risk and compliance strategy aligned with organizational priorities, business objectives, regulatory requirements, and evolving risks.

Team Leadership: Lead and grow a global team of cybersecurity professionals, managing risk, compliance, assessments, reporting, metrics, policy, awareness, and third-party risk management. The candidate will oversee teams including BISOs, Maritime Cybersecurity Compliance, Service Now GRC Development, Information Risk Management, Third-Party Risk Management, Regulatory IT Compliance, Human Risk Management & Awareness, and Cybersecurity Posture Management.

Peer Interaction: The candidate will work closely with the following peer leaders:
Cyber Defense Operations, Identity and Access Management, Cybersecurity Business Enablement and Strategy, and Counter Threat Operations.

Program Risk…

To View & Apply for jobs on this site that accept applications from your location or country, tap the button below to make a Search.
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
 
 
 
Search for further Jobs Here:
(Try combinations for better Results! Or enter less keywords for broader Results)
Location
Increase/decrease your Search Radius (miles)

Job Posting Language
Employment Category
Education (minimum level)
Filters
Education Level
Experience Level (years)
Posted in last:
Salary