Let’s get started
By clicking ‘Next’, I agree to the Terms of Service
and Privacy Policy
Jobs / Job page
Manager, Governance, Risk & Compliance image - Rise Careers
Job details

Manager, Governance, Risk & Compliance - job 1 of 2

Company Description

McDonald’s growth strategy, Accelerating the Arches, encompasses all aspects of our business as the leading global omni-channel restaurant brand. As the consumer landscape shifts we are using our competitive advantages to further strengthen our brand. One of our core growth strategies is to Double Down on the 3Ds (Delivery, Digital and Drive Thru). McDonald’s will accelerate technology innovation so 65M+ customers a day will experience a fast, easy experience, whether at one of our 25,000 and growing Drive thrus, through McDelivery, dine-in or takeaway. 

McDonald’s Global Technology is here to power tomorrow’s feel-good moments.That’s why you’ll find us at the forefront of transformative technology, exploring new and innovative ways to serve our millions of customers and spread happiness one delicious Hot Fudge Sundae-dipped fry at a time. Using AI, robotics and emerging tech, we’re digitizing the Golden Arches. Combine that with our unparalleled global scale, and we’re reshaping all areas of the business, industry and every community that is home to a McDonald’s restaurant. We face complex tech challenges every day. But that’s where our diverse and talented teams come in. They’re made up of the best and brightest from all over the globe, and they thrive in the space where feel-good meets fast-paced.  

Check out the McDonald’s  Global Technology Technical Blog to learn how technology and our global team are directly enabling the Accelerating the Arches strategy. 

Job Description

McDonald’s is seeking a Manager, Governance, Risk and Compliance to support our cybersecurity team as we protect our global brand. You will collaborate closely with cybersecurity experts, Global Technology teams, suppliers, and business leaders to assess technology risk across McDonald’s. In addition, the Manager will help in driving the development, deployment, and maintenance of our global policies and standards, and help build a more secure culture through security awareness.

We are moving fast and are adding to our best-in-class team, and joining McDonald's means thinking big every day and preparing for a career that will have a global impact. We are customer-obsessed, committed to being leaders in our industry, and believe we are better when we work together. Over the last several years, we have launched home delivery, radically improved the digital experiences of our restaurants, introduced mobile pay, and have so much more to come. These critical initiatives require strong leadership to ensure compliance with policies, standards, regulatory requirements, and best practices.

McDonald’s is investing heavily in technology to drive our growth. We’re looking at how to use technology to improve the customer journey and build new customer experiences. We’re also exploring technologies that can help us reduce or eliminate repetitive tasks and make employees’ jobs more exciting and rewarding. With all the new projects and initiatives, it is an exciting time to be on the cybersecurity team, helping to make a safer and better McDonald's!

Qualifications

Risk Management under Governance, Risk and Compliance (GRC) is the team that is ultimately responsible for the securing of McDonald’s information assets at a global level. This role will directly collaborate with the group within Global Cyber Security (GCS) that is responsible for our cybersecurity governance documents, risk management, and critical services; ensuring our leadership makes informed risk-based decisions. The Manager will work closely with cybersecurity guides, Global Technology teams, suppliers, and business leaders to support the assessment of cybersecurity risk along with the policies and standards to the organization and develop detailed security guidance.

Responsibilities

  • Maintain a solid understanding of current industry risk and trends as well as clear understanding of McDonalds’ business and technical strategies in order to be accountable for identifying security risks and concerns and identifying them, if applicable, on McDonald’s policies and standards.
  • Lead and review complex application/solution/ risk assessments to identify security risks and control gaps that put McDonald’s at risk.
  • Partner with relevant collaborators to drive implementation of appropriate controls to align with McDonald’s policies and standards.
  • Handle of the intake queue for new risk assessments across the organization
  • Produce and communicate metrics and identify trends for risk management activities and drive transparency and transparency of business value for completed work.
  • Advise and influence global technology and business management regarding security best practices, risk analysis, risk mitigation and reporting.
  • Review complex application/solution/third-party security risk assessments to identify security risks and control gaps that put McDonald’s at risk.
  • Provide oversight, learning opportunities, and mentorship to the risk analysts.

Benefits eligible: Yes
Bonus eligible: Yes
Long term incentive eligible: Yes
The expected salary range for this role is $129,800 – $165,490 per year
The above represents the expected salary range for this job requisition. Ultimately, in determining your pay, we may also consider your experience, and other job-related factors.

Qualifications

  • Applicable bachelor’s degree or equivalent work experience (6+ years) within Risk Management, Internal Audit, Third Party Risk Management, Compliance, Cybersecurity, IT Security Governance, Computer Science, or other related fields.
  • Excellent written & verbal communication.
  • Ability to build and maintain professional relationships across the organization.
  • Meticulous with strong project and time management, report writing and presentation skills.
  • Ability to translate messaging between technical teams and business collaborators.
  • Process enhancements and the desire to improve excites you.
  • Eagerness to join the ranks of a high performing team.
  • Experience of GRC platforms (e.g. OneTrust, RSA Archer, ServiceNow).
  • Understanding of key compliance, risk, and control frameworks such as NIST, PCI, ISO, COBIT, CIS etc.
  • Professional certifications such as Security+, CIA, CISA, CISM, CRISC, CISSP, and PMP.

Desired skills

  • Familiarity with sophisticated multinational companies and distributed business models.
  • Strong ability to develop and communicate strategic direction and long-term objectives without supervision.
  • Experience with Information/Technology Risk Management, Supply Chain Risk Management, Third Party Risk Management, and/or Global Regulatory Compliance.
  • Proficient in technical writing and demonstrating various creative mechanisms to communicate to diverse audiences.
  • Strong ability to assess vitality and prioritization and make good decisions based upon business or market requirements.
  • Demonstrable ability to quickly identify project objectives and define optimal project approach to align security controls with overall program success.

Additional Information

Benefits eligible: This position offers health and welfare benefits, a 401(k) plan, adoption assistance program, educational assistance program, flexible ways of working, and time off policies (including sick leave, parental leave, and vacation/PTO). Eligibility requirements apply to some benefits and may depend on job classification and length of employment. 

Bonus eligible: This position is eligible for a bonus, calculated based on individual and company performance.

Long term Incentive eligible: This position is eligible for stock or other equity grants pursuant to McDonald’s long-term incentive plan.

McDonald’s is an equal opportunity employer committed to the diversity of our workforce. We promote an inclusive work environment that creates feel-good moments for everyone. McDonald’s provides reasonable accommodations to qualified individuals with disabilities as part of the application or hiring process or to perform the essential functions of their job. If you need assistance accessing or reading this job posting or otherwise feel you need an accommodation during the application or hiring process, please contact [email protected]. Reasonable accommodations will be determined on a case-by-case basis.

McDonald’s provides equal employment opportunities to all employees and applicants for employment and prohibits discrimination and harassment of any type without regard to sex, sex stereotyping, pregnancy (including pregnancy, childbirth, and medical conditions related to pregnancy, childbirth, or breastfeeding), race, color, religion, ancestry or national origin, age, disability status, medical condition, marital status, sexual orientation, gender, gender identity, gender expression, transgender status, protected military or veteran status, citizenship status, genetic information, or any other characteristic protected by federal, state or local laws. This policy applies to all terms and conditions of employment, including recruiting, hiring, placement, promotion, termination, layoff, recall, transfer, leaves of absence, compensation and training.

Nothing in this job posting or description should be construed as an offer or guarantee of employment.

Average salary estimate

$147645 / YEARLY (est.)
min
max
$129800K
$165490K

If an employer mentions a salary or salary range on their job, we display it as an "Employer Estimate". If a job has no salary data, Rise displays an estimate if available.

What You Should Know About Manager, Governance, Risk & Compliance, McDonald's Corporation

Join McDonald's as a Manager, Governance, Risk & Compliance, where your role will be vital in supporting our cybersecurity team in protecting a cherished global brand. Stationed in the vibrant city of Chicago, Illinois, you’ll collaborate with cybersecurity experts, Global Technology teams, and business leaders to assess and manage technology risks that face McDonald's. In this exciting role, you will not only be part of our innovative journey as we accelerate digital advancements but also take charge of developing, deploying, and maintaining our robust global policies and standards. Your contributions will play a pivotal role in building a security-aware culture at McDonald's, empowering us to enhance technologies that improve customer experiences – from drive-thrus to McDelivery. If you're passionate about risk management and eager to make a significant impact in a fast-paced environment, this is the role for you. Strong leadership is crucial as we aim to align our operations with compliance standards and best practices while continually pushing the boundaries of what's possible in the restaurant industry. In essence, this position positions you at the forefront of transforming how we operate and safeguard not just business successes but the satisfaction of over 65 million customers globally every day. So, if you're ready to think big, embrace challenges, and help build a safer McDonald's, we would love to meet you!

Frequently Asked Questions (FAQs) for Manager, Governance, Risk & Compliance Role at McDonald's Corporation
What are the main responsibilities of a Manager, Governance, Risk & Compliance at McDonald's?

As a Manager, Governance, Risk & Compliance at McDonald's, you will lead the assessment of cybersecurity risks, develop and implement global policies, and mentor a team of risk analysts. Your key responsibilities will include reviewing complex application and solution risk assessments, advising on security best practices, and collaborating closely with industry professionals to promote a secure environment that aligns with McDonald's standards.

Join Rise to see the full answer
What qualifications are necessary for a Manager, Governance, Risk & Compliance role at McDonald's?

To qualify for the Manager, Governance, Risk & Compliance position at McDonald's, you should possess a bachelor's degree or equivalent experience (at least 6 years) in fields such as Risk Management, Cybersecurity, IT Security Governance, or related disciplines. Strong communication skills, project management abilities, and familiarity with GRC platforms like OneTrust or ServiceNow are essential to succeed in this role.

Join Rise to see the full answer
How does the role of Manager, Governance, Risk & Compliance contribute to McDonald's cybersecurity strategy?

The Manager, Governance, Risk & Compliance is integral to McDonald's cybersecurity strategy by identifying security risks and ensuring compliance with regulatory standards. This role involves collaborating with both technical and business teams to enforce robust security policies, ultimately helping to protect the company's information assets and enhancing team awareness about cybersecurity management.

Join Rise to see the full answer
What does the career path look like for a Manager, Governance, Risk & Compliance at McDonald's?

A career as a Manager, Governance, Risk & Compliance at McDonald's opens up numerous opportunities to advance within the cybersecurity domain. With demonstrated success and skill enhancement, you could progress to senior leadership roles within Global Cyber Security or expand into risk management in related business areas, further shaping the company's security landscape.

Join Rise to see the full answer
What benefits can one expect while working as a Manager, Governance, Risk & Compliance at McDonald's?

As a Manager, Governance, Risk & Compliance at McDonald's, you will enjoy a comprehensive benefits package, including health and welfare benefits, a 401(k) plan, educational assistance, performance bonuses, and long-term incentives. Additionally, the company prioritizes flexible working arrangements and offers generous paid time off policies, promoting a balance between work and personal life.

Join Rise to see the full answer
Common Interview Questions for Manager, Governance, Risk & Compliance
Can you describe your experience with governance, risk, and compliance frameworks?

When answering this question, detail your familiarity with standards such as NIST, PCI, and ISO. Share specific examples of how you've applied these frameworks in previous roles, highlighting your contributions to risk assessment and mitigation strategies.

Join Rise to see the full answer
How do you approach risk assessments for technology solutions?

Discuss your methodology for conducting risk assessments, including identifying potential risks, evaluating control gaps, and recommending appropriate security measures. Emphasize clear communication with technical teams and business collaborators throughout the process.

Join Rise to see the full answer
What strategies do you employ to foster a security-aware culture within an organization?

Share examples of how you've successfully implemented security awareness programs, emphasizing the importance of training and clear communication. Highlight the initiative you’ve taken to engage employees at all levels in understanding their role in cybersecurity.

Join Rise to see the full answer
Can you provide an example of a challenging cybersecurity risk you have managed?

Utilize a specific case to illustrate a significant risk you handled, detailing your research and decision-making process in mitigating that risk. Emphasize the outcomes and lessons learned to demonstrate your critical thinking and problem-solving skills.

Join Rise to see the full answer
How do you ensure compliance with regulatory requirements in your projects?

Articulate the steps you take to stay informed about regulatory changes, your experience in integrating compliance within project frameworks, and how you communicate these requirements to different stakeholders.

Join Rise to see the full answer
What tools or software do you find essential for managing risk in cybersecurity?

Discuss any GRC platforms you’ve worked with, such as ServiceNow or OneTrust, and explain how these tools have enhanced your ability to track compliance, report risks, and manage assessments effectively.

Join Rise to see the full answer
How do you keep current with the latest cybersecurity trends and threats?

Share your proactive approach to staying updated on industry developments, including reading relevant blogs, attending seminars, and participating in forums or networks focused on governance, risk, and compliance.

Join Rise to see the full answer
Can you describe your experience in mentoring or leading teams?

Highlight your experience in providing oversight or mentorship to junior team members. Discuss how you fostered their growth and collaboration, showcasing your leadership style and approach to team dynamics.

Join Rise to see the full answer
What metrics do you use to measure the effectiveness of compliance programs?

Speak to the specific metrics or KPIs you track, such as incident response times, audit findings, or employee training completion rates, sharing how these insights help refine compliance initiatives within the organization.

Join Rise to see the full answer
In your opinion, what is the most considerable challenge facing governance, risk, and compliance professionals today?

Reflect on emerging challenges such as rapid technological advancements or evolving cyber threats. Express your viewpoint on how GRC professionals can adapt by being proactive, embracing innovative solutions, and prioritizing continuous learning.

Join Rise to see the full answer
Similar Jobs
Photo of the Rise User
McDonald's Corporation Hybrid 110 N Carpenter St, Chicago, IL 60607, USA
Posted 11 days ago

Join McDonald's Global Cyber Security team as a Manager for Vulnerability Management Governance, driving key security initiatives while collaborating with diverse stakeholder groups.

Photo of the Rise User
Posted 11 days ago

Join McDonald's Global Technology team as a Senior Manager of Program Management to lead transformative projects that elevate customer experiences at a global scale.

Photo of the Rise User
Posted 10 days ago

Join Walmart Global Tech as a Senior Systems and Infrastructure Engineer, focusing on improving conferencing technology and infrastructure reliability.

Become a key player in the Enterprise Network Services Team at Encantado Technical Solutions as a Networking Technician II.

Photo of the Rise User

Become part of IFS’s team as an Undergraduate Trainee in Site Reliability Engineering, where you'll help empower change through innovative technology.

Photo of the Rise User
Pepperstone Remote No location specified
Posted 12 days ago

Join Pepperstone as a Solution Architect to innovate and drive architectural strategy in a dynamic fintech environment.

Photo of the Rise User
Continental Remote Continental-Plaza 1, 30175 Hannover, Germany
Posted 9 days ago

Become a key player in Continental's cybersecurity team, shaping policies and ensuring compliance with industry standards.

Photo of the Rise User
Inclusive & Diverse
Feedback Forward
Collaboration over Competition
Growth & Learning

OpenAI invites innovative Security Engineers to architect secure cloud infrastructures while collaborating across teams.

Photo of the Rise User
Posted 3 days ago

McDonald's Corporation is a chain of fast food restaurants. Headquartered in Oak Brook, Illinois, the company's famous menu items include the Big Mac, Chicken McNuggets and Egg McMuffin. McDonald's is a publicly owned company and operates a Canadi...

336 jobs
MATCH
Calculating your matching score...
FUNDING
SENIORITY LEVEL REQUIREMENT
TEAM SIZE
EMPLOYMENT TYPE
Full-time, on-site
DATE POSTED
April 16, 2025

Subscribe to Rise newsletter

Risa star 🔮 Hi, I'm Risa! Your AI
Career Copilot
Want to see a list of jobs tailored to
you, just ask me below!
LATEST ACTIVITY
Photo of the Rise User
Someone from OH, Stow just viewed Customer Success Manager at Total Expert
R
Someone from OH, Cincinnati just viewed Director, Payroll Tax at Ryan
Photo of the Rise User
13 people applied to Intern/Co-op-4 at GE
P
Someone from OH, Columbus just viewed Data Science for Smart Agriculture- Part-Time at PSU
Photo of the Rise User
Someone from OH, Cincinnati just viewed Brand Management & Partnerships Assistant at LAIKA
Photo of the Rise User
Someone from OH, Athens just viewed Senior Multimedia Artist, Design & Creative at RepRisk AG
Photo of the Rise User
62 people applied to Cyber Crime Analyst at TEKsystems
H
Someone from OH, Rocky River just viewed Training Manager at Hotel Bardo Savannah
F
Someone from OH, Columbus just viewed VP of Communications at Freedom Together Foundation
Photo of the Rise User
Someone from OH, Columbus just viewed Chief Organizational Communication Officer at Providence
Photo of the Rise User
54 people applied to Security Analyst Jr at DEUNA
Photo of the Rise User
Someone from OH, Cuyahoga Falls just viewed SEASONER at Shearer's Foods
Photo of the Rise User
Someone from OH, Columbus just viewed Bilingual Care Manager, Telephonic RN at Humana
Photo of the Rise User
Someone from OH, Columbus just viewed Talent Business Partner at Red Bull
Photo of the Rise User
Someone from OH, Brunswick just viewed Sanitation Team Member at Shearer's Foods
Photo of the Rise User
Someone from OH, Columbus just viewed Talent Acquisition Specialist at Beghou Consulting
C
Someone from OH, Middletown just viewed Operations Analyst at Core Specialty Insurance
A
Someone from OH, Strongsville just viewed Graphic Design Intern at Anvil NorthWest
W
Someone from OH, Uhrichsville just viewed Director Operations at WVUMedicine