Risk Innovation · Transformation · ServiceNow GRC

Modernizing enterprise risk.

Risk innovation leader with 14+ years modernizing enterprise risk through technology, AI, and process redesign across Fortune 500 environments. Member of the ServiceNow Product Advisory Council, currently building the next generation of a quantifiable, scalable risk program at McDonald’s Corporation.

Based Greater Chicago
Linkedin /kelly-bozich
Kelly Bozich — Senior Manager, GRC
Chicago · 2026
Core expertise

Where I create measurable impact.

Three disciplines I’ve built, scaled, and led across Fortune 100 enterprises — from platform implementation to program governance to team development.

01 / Platform

ServiceNow GRC · IRM · Privacy

Architecting and deploying enterprise GRC platforms — including IRM and Privacy Management modules — that consolidate fragmented processes into a single, intelligent system of record.

  • Global ServiceNow GRC operating model
  • IRM & Privacy Management deployment
  • Continuous monitoring strategy
  • Vendor lifecycle automation & workflows
  • ServiceNow Product Advisory Council, 2026
02 / Program

Governance, Risk & Compliance

End-to-end GRC program ownership across information risk and third-party risk, mapped to global regulatory frameworks and quantitative methodologies.

  • Information Risk & Third-Party Risk programs
  • FAIR framework for risk quantification
  • PCI DSS, ISO 27001, ISO 42001, GDPR, NIST 800-53
  • Risk taxonomy & supply-chain frameworks
  • Regulatory monitoring & policy audits
03 / Quantitative

AI-Enabled Risk Intelligence

Integrating AI and automation into risk workflows — using ServiceNow and Gemini Enterprise — for continuous monitoring, predictive analytics, and scalable oversight.

  • AI & automation in risk workflows
  • FAIR-based risk quantification
  • Predictive risk analytics & KRIs
  • Executive dashboards & real-time visibility
04 / People

People & Program Leadership

Senior risk transformation advisor to AI Center of Excellence, Procurement, Legal, Internal Audit, and Cyber Security — building and leading high-performing globally distributed teams.

  • Cross-functional team leadership
  • Executive stakeholder advisory
  • Change management & technology adoption
  • Mentorship & talent development
Experience

A decade governing risk at global scale.

Roles spanning Fortune 100 retail, e-commerce, certification, and energy — with consistent themes of modernization, automation, and measurable cost reduction.

Senior Manager, Governance, Risk & Compliance

McDonald’s Corporation · Global Cyber Security
Chicago · 2023 — Present

Risk transformation leader deploying ServiceNow GRC to modernize global governance, risk, and compliance capabilities across one of the world’s most complex supply chains.

  • Architected and deployed enterprise ServiceNow GRC operating model including IRM and Privacy Management modules across 120+ global markets.
  • Integrated AI and automation into risk workflows using ServiceNow and Gemini Enterprise — enabling continuous monitoring, predictive risk identification, and scalable compliance oversight.
  • Delivered $1.3MM in annual cost savings by insourcing compliance operations and automating reporting, monitoring, and vendor engagement workflows.
  • Drove full program redesign from reactive risk management to proactive risk intelligence — applying change management methodologies to accelerate adoption across legal, product, operations, and security teams.
  • Senior risk transformation advisor to AI Center of Excellence, Procurement, Legal, Internal Audit, and Cyber Security, translating technical requirements into AI-assisted risk roadmaps.
  • Lead firmwide compliance lifecycle across PCI-DSS, ISO 27001, ISO 42001, GDPR, and NIST 800-53. Member, ServiceNow Product Advisory Council.

Regulatory Program Manager, Global Trade Services

Amazon · Direct Imports
Seattle · Jan 2022 — July 2023

Led regulatory compliance programs for high-risk global consumer product categories across Amazon’s direct import ecosystem, partnering closely with legal, product, and operations leadership.

  • Governed regulatory compliance for $88M in high-risk consumer products, with zero critical regulatory failures.
  • Reduced compliance operating costs by ~$400K annually through digital monitoring automation and process redesign.
  • Built and launched digital regulatory monitoring with predictive analytics and process improvement, enabling real-time executive decision support.
  • Translated evolving regulatory requirements into scalable enterprise controls across 20+ jurisdictions.

Technical Services Supervisor, Advisory Services

Underwriters Laboratories · Consumer Retail Services
Northbrook · 2017 — 2021

Senior compliance advisory leader supporting global retailers and manufacturers across regulated markets in 120+ countries.

  • Directed global compliance advisory programs influencing regulatory strategy for multinational clients across 120+ markets.
  • Designed digital regulatory intelligence repositories and automated monitoring dashboards adopted by global enterprise clients.
  • Championed automation and AI-driven regulatory analysis, improving scalability and reducing manual compliance workloads.
  • Led teams delivering compliance intelligence, analytics, and executive-level reporting.

Regulatory Analyst

QEP Resources / Encana · Oil & Gas
Denver · 2013 — 2016
  • Led audits of permits and compliance records, resolving deficiencies and mitigating $100K+ in potential audit fines.
  • Streamlined compliance documentation and reporting using Lean Six Sigma principles.
  • Liaised with Federal and State agencies on permits, contracts, and royalty documentation.
Credentials

Certifications, recognition, education.

Continuously invested in deepening technical credibility across third-party risk, information security, and operational excellence.

A
Advanced in AI Risk (AAIR)
ISACA · June 2026
R
RIMS Certified Professional (RIMS-CRMP)
RIMS · May 2026
I
Lead Auditor — ISO 27001
BSI Group · April 2025
C
Certified Third-Party Risk Professional (CTPRP)
Shared Assessments
S
Supply Chain AI Resilience & Crisis Manager
AAPSCM
L
Green Belt Certification
Lean Six Sigma

Education

Master of Business Administration
University of Illinois — Gies College of Business
In progress · 2028
Bachelor of Arts (Minor, Spanish)
Illinois State University

Recognition

She Leads Tech Mentor Recognition
ISACA · May 2024
UL Mark of Excellence
Women in Leadership · Communications Lead
Let’s talk

Let’s build a smarter risk program.

Always happy to connect with leaders working on third-party risk, compliance modernization, and platform-led transformation.

· 847.609.5355 · BozichKelly@gmail.com · Greater Chicago Area