Senior Manager - Governance, Risk & Compliance
Company: McDonald's Corporation
Location: Chicago
Posted on: May 9, 2025
Job Description:
Job Description:Company Description:McDonald's growth strategy,
Accelerating the Arches, encompasses all aspects of our business as
the leading global omni-channel restaurant brand. As the consumer
landscape shifts we are using our competitive advantages to further
strengthen our brand. One of our core growth strategies is to
Double Down on the 3Ds (Delivery, Digital and Drive Thru).
McDonald's will accelerate technology innovation so 65M+ customers
a day will experience a fast, easy experience, whether at one of
our 25,000 and growing Drive thrus, through McDelivery, dine-in or
takeaway. McDonald's Global Technology is here to power tomorrow's
feel-good moments. That's why you'll find us at the forefront of
transformative technology, exploring new and innovative ways to
serve our millions of customers and spread happiness one delicious
Hot Fudge Sundae-dipped fry at a time. Using AI, robotics and
emerging tech, we're digitizing the Golden Arches. Combine that
with our unparalleled global scale, and we're reshaping all areas
of the business, industry and every community that is home to a
McDonald's restaurant. We face complex tech challenges every day.
But that's where our diverse and talented teams come in. They're
made up of the best and brightest from all over the globe, and they
thrive in the space where feel-good meets fast-paced. Check out the
McDonald's to learn how technology and our global team are directly
enabling the Accelerating the Arches strategy. Department
OverviewMcDonald's is seeking a Senior Manager of Governance, Risk
and Compliance to support our growing Governance, Risk and
Compliance team as we protect McDonald's. You will closely
collaborate with cybersecurity guides, Global Technology teams, ,
and business leaders to assess technology risk across McDonald's,
drive the development, deployment, and maintenance of our global
policies and standards, and help build a more secure culture
through security awareness.We are quickly advancing and are adding
to our best-in-class team, and joining McDonald's means thinking
big every day and preparing for a career that will affect the
world. We are customer-obsessed, committed to being leaders in our
industry, and believe we are better when we work together. Over the
last several years, we have launched home delivery, radically
improved the digital experiences of our restaurants, introduced
mobile pay, and have so much more to come. These critical
initiatives need strong leadership to ensure compliance with
policies, standards, regulatory requirements, and industry
norms.McDonald's is investing heavily in technology to drive our
growth. We're looking at how to use technology to improve the
customer experience while protecting our iconic brand. We're also
exploring technologies that can help us reduce or eliminate
repetitive tasks and make employees' jobs more exciting and
rewarding. With all the new projects and initiatives, it is an
exciting time to be on the Information Risk Management team,
helping to make a safer and Better McDonald's!Global Cyber Security
(GCS) is the team that is ultimately responsible for the securing
of McDonald's information assets at a global level and stewards of
the McDonald's IT Policies and Standards. This role will partner to
lead, develop, and complete our governance, risk, and compliance
function and critical services, ensuring our leadership makes
informed risk-based decisions.The Senior Manager of GRC will lead a
team of global professionals and will work with partners globally
to oversee the day-to-day tactical functioning of the processes and
people dedicated to the organization. It is important to set clear
expectations, define measures of success, and provide direction for
the team members supporting these daily activities. The Senior
Manager will work closely with the Director of GRC, Global
Technology teams and business leaders to assess technology risk
across McDonald's and help build a more secure
culture.Responsibilities
- Help develop a strong reporting function to provide visibility
and clarity to our collaborators and leaders.
- Assist in tracking team goals, deliverables, and the strategic
direction.
- Assist in building ways to measure risks (KRIs, performance
indicators, etc.)
- Ensure accuracy and completeness of our global IT policies and
standards
- Support in our continual effort to improve internal processes
and the way in which we work.
- Define and operate a GRC strategy to lead the visibility,
value, security, integrity, and availability of electronic data and
information throughout McDonald's.
- Collaborate with internal and external product and development
teams to integrate security tools, standards, and processes into
the product life cycle.
- Work with multi-functional teams to identify and implement
value and risk-reducing opportunities.
- Facilitate collaborator discussions related to risk, control,
and security policies and standards
- Translate technical risks to senior leadership to help them
better understand how they will affect their business
objectives.
- Analyze the most complex risk issues, resolve their cause, and
impact on the business, and identify the corrective action needed
to eliminate and prevent the events in the future.
- Develop and be responsible for the implementation of a
strategic program applying industry-leading practices and
methodologies to support the achievement of short, medium, and
long-term goals.
- Collaborate with other GCS leaders to improve our programs and
add new value.
- Identifies developmental needs of team members and provides
suggestions to address those needs. Acts as a mentor to junior
staff and provides on-the-job training. Schedules work, assigns
responsibility, and delegates authority for assigned
projects.CompensationBonus Eligible:YesLong - Term
Incentive:YesBenefits Eligible:YesSalary RangeSalary
Ranges-$149,260.00 -$190,310.00Qualifications
- Bachelor's degree or equivalent work experience within
Technology Risk Management, Computer Science, Information
Technology, Cybersecurity, Engineering, or other related fields.
Certifications are a plus (e.g. CISA, CISSP, CRISC, CISM, PMP)
- 10 plus years of relevant work experience.
- Preference will be given to an MBA from an accredited
university.
- Leadership experience with proven track record of success and
growth.
- Excellent written & verbal communication.
- Ability to translate messaging and build the "story" between
technical teams and business partners.
- Eagerness to join the ranks of an impactful team.
- Understanding of key compliance, risk, and control frameworks
such as NIST, PCI, ISO, COBIT, etc.
- Understanding of a central GRC function.Desired skills:
- Familiarity with complex multinational companies and
distributed business models.
- Strong ability to develop strategic direction and long-term
objectives without supervision.
- Eagerness to build and maintain relationships across the
organization.
- Experience with information/technology risk management, third
party risk management, global governance/compliance, control
implementation and oversight.
- Proficient in technical writing and demonstrating various
creative mechanisms to communicate to diverse audiences.
- Strong ability to assess urgency and prioritization and make
good decisions based upon situation circumstances.
- Demonstrable ability to quickly identify project objectives and
define optimal project approach to align security controls with
overall program success.Additional Information:Benefits eligible:
This position offers health and welfare benefits, a 401(k) plan,
adoption assistance program, educational assistance program,
flexible ways of working, and time off policies (including sick
leave, parental leave, and vacation/PTO). Eligibility requirements
apply to some benefits and may depend on job classification and
length of employment. Bonus eligible: This position is eligible for
a bonus, calculated based on individual and company
performance.Long term Incentive eligible: This position is eligible
for stock or other equity grants pursuant to McDonald's long-term
incentive plan.McDonald's is an equal opportunity employer
committed to the diversity of our workforce. We promote an
inclusive work environment that creates feel-good moments for
everyone. McDonald's provides reasonable accommodations to
qualified individuals with disabilities as part of the application
or hiring process or to perform the essential functions of their
job. If you need assistance accessing or reading this job posting
or otherwise feel you need an accommodation during the application
or hiring process, please contact mcdhrbenefits@us.mcd.com.
Reasonable accommodations will be determined on a case-by-case
basis.McDonald's provides equal employment opportunities to all
employees and applicants for employment and prohibits
discrimination and harassment of any type without regard to sex,
sex stereotyping, pregnancy (including pregnancy, childbirth, and
medical conditions related to pregnancy, childbirth, or
breastfeeding), race, color, religion, ancestry or national origin,
age, disability status, medical condition, marital status, sexual
orientation, gender, gender identity, gender expression,
transgender status, protected military or veteran status,
citizenship status, genetic information, or any other
characteristic protected by federal, state or local laws. This
policy applies to all terms and conditions of employment, including
recruiting, hiring, placement, promotion, termination, layoff,
recall, transfer, leaves of absence, compensation and
training.Nothing in this job posting or description should be
construed as an offer or guarantee of employment.
#J-18808-Ljbffr
Keywords: McDonald's Corporation, Elmhurst , Senior Manager - Governance, Risk & Compliance, Executive , Chicago, Illinois
Didn't find what you're looking for? Search again!
Loading more jobs...