IT Risk Manager, BT Risk Management

Workday•Pleasanton, CA
•$130,700 - $232,200•Hybrid

About The Position

Workday's Business Technology (BT) organization continues its mission to deliver unparalleled value to our business partners and customers. To support this mission, the BT Strategy & Operations team is responsible for developing the long-term vision for BT, setting goals and objectives, and ensuring that we have the right plans in place to move with speed at scale. The team collaborates closely with cross-functional teams, business partners, and executives to understand the needs and priorities of the business, and supports the development of strategies that will help BT meet those needs.

Requirements

  • 8+ years experience in GRC, developing and implementing GRC policies and procedures.
  • 8+ years of experience conducting internal audits, and managing regulatory compliance.
  • 8+ years of experience in risk assessment methodologies, control frameworks, and regulatory requirements.
  • Strong knowledge of internal controls, audit procedures, and compliance regulations.
  • Experience designing federal SaaS cloud computing systems.
  • Experience with Intelligence, DOD, and other federal programs.
  • Successful record of implementing and improving operational processes as it pertains to risk management, regulatory compliance, incident response planning, and security technologies.
  • Familiarity with privacy principles and the intent of privacy regulations including GDPR, HIPAA, etc.
  • Experience with industry compliance standards as they relate to Software as a Service and Cloud Computing including ISO 27001, SOC1, SOC2
  • Bachelor’s degree in a relevant discipline such as Business Administration, Law, Finance, Information Security, or a related discipline, or equivalent practical experience.

Nice To Haves

  • CISA, PMP, CIPP or other related certifications

Responsibilities

  • Assist with the design and development of the new, formal, and comprehensive BT Risk Management Program, clarifying roles, responsibilities, and a standardized framework for risk buy down prioritization.
  • Review and enhance the BT compliance strategy, including controls and procedures, with regard to industry trends and upcoming regulatory activity, ensuring BT maintains its commitment to running secure and reliable systems.
  • Collaborate with Architecture, Engineering and Asset Management team to ensure ongoing accuracy of application, control and risk acceptance information.
  • Work with business units and stakeholders, including Security, Internal Audit, BT, and Compliance, to formally assess security issues/gaps and identify potential operational risks.
  • Clearly communicate the impact of security issues and gaps to business management and agree on precise remediation actions and timelines. Manage follow-up programs to ensure timely completion of all Management Action Plans.
  • Lead a project to establish and perform a risk assessment process for BT technology. Lead ongoing projects to address GRC-related findings, demonstrating immediate value and embedding a culture of proactive risk management.
  • Build and maintain strong, effective partnerships with BT leaders and cross-functional partners to foster a collaborative and supportive environment. This is essential to drive the collective objective of "Doing Things Right".
  • Lead change management efforts to overcome resistance and drive adoption of new security behaviors and risk processes across the organization, simplifying the path to compliance.
  • Define, implement, and track Outcome-Driven Metrics (ODMs) to measure the effectiveness of risk management, compliance, and control activities.
  • Continuously refine initiatives based on organizational feedback and data-driven insights from metrics to ensure the BT Risk Management program maintains alignment with strategic objectives.

Benefits

  • Workday Bonus Plan
  • role-specific commission/bonus
  • annual refresh stock grants
  • comprehensive benefits
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service