Senior Director- Global Cyber Compliance

Eli Lilly Eli Lilly · Pharma · Indianapolis, IN · Remote

Senior Director of Global Cyber Compliance to lead the transformation of the compliance function into a high-performing, AI-enabled, risk-responsive program that measurably reduces regulatory risk across Lilly's global technology environment. This leader owns strategy and execution across a complex, multi-framework regulatory landscape, while ensuring every compliance decision is anchored to Lilly's threat-based cyber program. The role requires technical credibility, platform acumen to automate compliance at scale through LogicGate Risk Cloud and AI-augmented workflows, operational leadership, and strong communication skills.

What you'd actually do

  1. Define and own the global cyber compliance program, establishing a clear approach that transitions the function from reactionary audits and inspections toward continuous, risk-responsive, program-aligned assurance.
  2. Set the vision and drive execution for AI, automation and GRC platform capabilities to accelerate compliance delivery, reduce manual overhead, and improve compliance outcomes.
  3. Own and evolve Lilly's multi-framework compliance program spanning FDA 21 CFR Part 11, GxP, ISO 27001, SOC 2, NIS2, HIPAA, CCPA, PIPL/CSL/DSL, and emerging AI/ML governance requirements across global manufacturing, research, and commercial technology environments.
  4. Serve as the service owner for the LogicGate Risk Cloud compliance module, driving object hierarchy design, workflow automation, integration architecture, and adoption.
  5. Champion and deliver AI-augmented compliance capabilities including policy intelligence, automated evidence collection, and natural language advisory tooling that enables teams to self-serve compliance guidance at speed.

Skills

Required

  • Global cyber compliance program leadership
  • Multi-framework regulatory expertise (FDA 21 CFR Part 11, GxP, NIS2, ISO 27001, SOC 2, HIPAA, CCPA, PIPL/CSL/DSL)
  • AI and automation in compliance
  • GRC platform management (LogicGate Risk Cloud)
  • Risk management and analysis
  • Stakeholder communication (boards, regulators, senior leadership)
  • Team building and development

Nice to have

  • Technical credibility
  • Platform acumen

What the JD emphasized

  • AI-enabled
  • AI-augmented workflows
  • emerging AI governance requirements
  • AI and automation imperative
  • AI-augmented compliance capabilities