Full-Time

Senior Director

Governance, Risk & Compliance

Confirmed live in the last 24 hours

Major League Baseball

Major League Baseball

10,001+ employees

Professional baseball league with 30 teams

Compensation Overview

$190k - $260k/yr

Senior, Expert

New York, NY, USA

Category
Risk & Compliance
Legal & Compliance
Required Skills
Risk Management
Requirements
  • Completed a Master's or Bachelor's degree in Information Technology, Information Security, Cybersecurity, Computer Science, or a related field
  • Relevant certifications such as CISA, CGRC, CRISC, or similar are highly desirable
  • 8+ years of experience in governance, risk management, and compliance (focus on data privacy and protection preferred)
  • Strong understanding of PCI v4.0.1 standards, global data privacy laws and regulations (e.g., GDPR, CCPA), IT control frameworks (e.g., NIST CSF, ISO 27001), and risk assessment methodologies
  • Strong attention to detail and a commitment to maintaining high standards and ethics
  • Ability to work independently and manage multiple projects effectively
  • Strong leadership and team management abilities
  • Excellent written and verbal communication skills
  • Exceptional analytical and problem-solving skills
  • Proficiency in using GRC and risk management tools and software
Responsibilities
  • Implement a practical GRC framework aligned with business objectives and regulatory requirements, seamlessly integrating GRC processes and setting executive-level controls
  • Uphold internal governance policies, procedures, and standards to ensure adherence to regulations, and surpass industry benchmarks
  • Continuously update governance policies and procedures, communicate effectively with stakeholders, and partner with peers to develop new standards as required
  • Design and implement a comprehensive Enterprise Risk Management (ERM) program, including risk identification, assessment, mitigation, and monitoring strategies
  • Conduct regular risk assessments, including PCI-DSS targeted risk analyses (TRAs), and develop comprehensive risk management plans for various business units and projects
  • Ensure readiness for business operations continuity and disaster recovery in case of disruptions
  • Implement and maintain a robust data classification framework to protect sensitive and confidential information
  • Conduct security audits and assessments focused on Data Privacy, PCI-DSS, and SOC standards to evaluate and improve security controls and processes
  • Maintain compliance with data privacy laws, including GDPR, CCPA, and other relevant regulations. Adapt GRC strategies in response to regulatory changes
  • Oversee the VRM program, including risk reviews, contract management, and ongoing monitoring to manage risks associated with third-party vendors and suppliers
  • Increase organizational awareness of GRC principles and aid in creating internal training programs to improve employee knowledge
  • Participate in an on-call rotation to respond to escalated security incidents
  • Lead and mentor a small GRC team, fostering a culture of excellence and continuous improvement
  • Report on the status of GRC initiatives and key risk indicators to executive management, clearly communicating complex GRC concepts and emerging risks
  • Collaborate with stakeholders to embed GRC considerations into business strategy and operations
  • Ensure effective communication and coordination of GRC activities with internal and external stakeholders, including Product, Legal, IT, Finance, and HR, to execute aligned GRC objectives
Desired Qualifications
  • Relevant certifications such as CISA, CGRC, CRISC, or similar are highly desirable
Major League Baseball

Major League Baseball

View

Major League Baseball (MLB) oversees the highest level of professional baseball in the United States and Canada, consisting of 30 member clubs. The league is dedicated to promoting baseball's significance in society and enhancing its presence through various business, marketing, and community initiatives. MLB focuses on maintaining competitive balance among teams and expanding its global audience through diverse programming and content. The league has seen record engagement from fans, with increased viewership on platforms like MLB.TV and MLB Network. MLB's goal is to ensure that baseball remains a beloved sport, accessible and enjoyable for fans worldwide.

Company Size

10,001+

Company Stage

Acquired

Total Funding

$2.6B

Headquarters

New York City, New York

Founded

2000

Simplify Jobs

Simplify's Take

What believers are saying

  • MLB's partnership with Sportradar enhances viewing with advanced analytics and real-time data.
  • Investment in AUSL diversifies MLB's audience and taps into women's sports market.
  • 5G technology expansion offers new immersive viewing experiences for MLB fans.

What critics are saying

  • Investment in AUSL may divert focus from MLB's core baseball operations.
  • Dependency on Sportradar's data services poses risks if disruptions occur.
  • Streaming wars could dilute MLB.TV's audience and impact subscription revenues.

What makes Major League Baseball unique

  • MLBAM offers live audio and video broadcasts of most games on MLB.com.
  • MLBAM owns and operates official websites for various sports networks and leagues.
  • MLB's investment in Jomboy Media enhances its digital content and fan engagement.

Help us improve and share your feedback! Did you find this helpful?

Benefits

Health Insurance

Dental Insurance

Vision Insurance

401(k) Company Match

Paid Vacation

Paid Parental Leave

Employee Assistance Programs (EAP)

Onsite/Online Training & Development Programs

Tuition Reimbursement

Disability Insurance

Life Insurance

Pet Insurance

Company News

Sports Business Journal
Jun 10th, 2025
MLB teams with Jomboy Media as minority investor

MLB has become a minority investor in digital outlet Jomboy Media as part of a strategic partnership deal.

MLB
May 29th, 2025
Major League Baseball announces strategic investment in Athletes Unlimited Softball League (AUSL)

New York, N.Y. – Major League Baseball today announced a strategic investment in the AUSL (Athletes Unlimited Softball League), marking a first-of-its-kind, comprehensive partnership with a women’s professional sports league to help establish and grow the AUSL as a sustainable organization. The announcement will be made this morning on CBS

iSportconnect
Feb 11th, 2025
MLB acquires an equity stake in Sportradar

Major League Baseball (MLB) and Sportradar Group AG (NASDAQ: SRAD) have announced a long-term extension and expansion of their decade-long partnership, set to begin with the 2025 season, aimed at...

MLB
Feb 14th, 2023
Mets finalize sale of team to Steve Cohen

NEW YORK -- The Mets’ ownership change became official on Friday, as Steve Cohen closed his record $2.4 billion deal to purchase the team from Sterling Equities.

TechCrunch
Apr 6th, 2022
Fanatics reveals NFL was biggest backer in $1.5B round announced last month at $27B valuation

Fanatics, the 20-year-old, Jacksonville, Fla.-based sports merchandising giant, revealed today that the NFL was the “single biggest investor” in the latest round announced by the company, a $1.5 billion round at a whopping $27 billion valuation that reportedly closed last month. The deal marked a 50% increase from the $18 billion valuation assigned to Fanatics during its previous raise last August.