IT GRC Specialist

Mundipharma IT Services Limited

Cambridge

Hybrid

GBP 60,000 - 90,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

Flexible benefits package
Learning & development opportunities
Collaborative, inclusive work env.
Diversity and inclusion

Job summary

Mundipharma IT Services Limited in Cambridge seeks an IT GRC Specialist to lead IT governance, risk and compliance across the organization. You will translate requirements into practical controls, maintain evidence of compliance, and report on risk management to leadership.

Join a hybrid working environment, contributing to AI governance, policy governance, audits, training, and cross-functional collaboration with global teams.

Qualifications

  • Bachelor's or master's degree in IT or related field and proven IT GRC experience.
  • Experience conducting and coordinating internal/external IT audits.
  • Knowledge of ISO 27001, ISO 9001, ITIL and COBIT frameworks.

Responsibilities

  • Lead end-to-end IT risk management and ensure compliance.
  • Oversee AI governance and risk management across the organization.
  • Maintain IT policy framework and drive continuous improvement.

Skills

IT governance
Risk management
Audits
Policy governance
Stakeholder engagement
AI governance

Education

University degree in IT or related field

Tools

Vanta
Articulate (SCORM)

Job description

IT GRC Specialist Location: Cambridge, Hybrid Department: IT Job type: Full Time

Join us and make a difference when it matters most! At Mundipharma, we are proud of the work we do to bring innovative treatments to patients. We challenge ourselves constantly to deliver more for patients, healthcare professionals, our partners, and our employees.

The Team

The IT Governance, Risk & Compliance (GRC) Specialist will join the IT team at Mundipharma ensuring the organisation understands its key risks and manages them appropriately in line with its risk appetite, while maintaining effective governance, controls, and oversight. Translating requirements into practical, proportionate controls embedded across business and technology processes, and ensures suitable evidence is maintained to demonstrate compliance and control effectiveness.

Role and Responsibilities
  • Lead the end-to-end IT risk management practice, ensuring legal obligations are met and enterprise risks are detailed, owned, mitigated, and clearly communicated to leadership.
  • AI Governance & Risk Management - Establish and oversee AI risk frameworks, ensuring the responsible, transparent, and compliant use of AI technologies across all organizational use cases.
  • Policy Framework & Governance: Maintain and review IT policies, partnering with department heads to identify documentation gaps, execute review cycles, and drive continuous policy improvement.
  • Conduct regular audits of internal IT processes to verify compliance with governance frameworks and implement structured remediation plans.
  • Act as the primary point of contact for internal and external IT audits, coordinating with system owners to deliver consistent responses while minimizing operational disruption.
  • Identify, track, and remediate potential audit risks and control weaknesses proactively to prevent formal audit findings.
  • Build and sustain strong working relationships with internal audit teams to ensure ongoing alignment between IT operations and enterprise governance goals.
  • Manage and administer IT governance, security, and policy training programs across IT and the wider business via the Global Learning Management System (LMS).
  • Support the development of engaging training content and deliver regular compliance reporting against key performance indicators.
  • Maintain macro- and micro-level risk reporting for IT leadership while collaborating with global training and compliance teams to adopt best practices.
What you’ll bring
  • University or Master’s degree in IT (or related field), backed by proven experience managing risks within an IT organisation.
  • Previous experience in an IT Governance, Risk & Compliance (GRC) related position in the Pharmaceutical industry would be advantageous but other industries would be considered.
  • Deep understanding of audit operations and a track record of successfully managing responses to both internal and external audits.
  • Sound knowledge of core GRC practices and industry frameworks, such as ISO 27001, ISO 9001, ITIL, and COBIT.
  • Document & Quality Control - Expertise in quality management principles, policy governance, and administering Document Management Systems.
  • Experience using GRC platforms like Vanta (preferred) and creating SCORM-compliant training content with Articulate would be advantageous.
  • Practical experience implementing ITIL processes and collaborating directly with cybersecurity teams to mitigate risk.
  • Excellent negotiation and global stakeholder relationship-building skills with the ability to influence management-level stakeholders in a global environment.
  • Process-Driven Improvement: Strong process mindset with a proven ability to spot improvement opportunities and lead them through to completion.
  • Agile & Collaborative Mindset - Adaptable, solution-focused team player who enjoys learning new skills and driving a positive impact across the business.
What we offer in return
  • Flexible benefits package
  • Opportunities for learning & development through our varied programme
  • Collaborative, inclusive work environment
  • Diversity and inclusion
  • Building an inclusive environment where people can, every day, bring their authentic selves and is treated with dignity and respect.
About Mundipharma

Mundipharma is a global healthcare company focussing on customers across Africa, Asia Pacific, Canada, Europe, Latin America, and the Middle East. Mundipharma is dedicated to bringing innovative treatments to patients in the areas of pain management, infectious disease as well as other severe and debilitating disease areas. Their guiding principles, centered around Integrity and Patient-Centricity, are at the heart of everything they do.

For more information visit www.mundipharma.com.

Additional Job Description:

Primary Location: GB Cambridge

Job Posting Date: 2026-07-31

Job Type: Permanent

Mundipharma is a global healthcare company with a presence across Africa, Asia Pacific, Canada, Europe, Latin America, and the Middle East. Mundipharma is dedicated to bringing innovative treatments to patients in the areas of Pain Management, Infectious Disease and Consumer Healthcare as well as other severe and debilitating disease areas. Our guiding principles, centered around Integrity and Patient-Centricity, are at the heart of everything we do. For more information visit www.mundipharma.com. For more information about Mundipharma's guiding principles and commitment to diversity and inclusion visit: www.mundipharma.com/people

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

IT GRC Specialist
IT GRC Specialist

Mundipharma • Cambridge

On-site
GBP 60,000 - 90,000
Flexible benefits
Learning & development opportunities
Collaborative work environment
IT GRC Specialist
IT GRC Specialist

Mundipharma International • Cambridge

Hybrid
GBP 60,000 - 90,000
Flexible benefits package
Learning & development programmes
Collaborative, inclusive environment
Global Medical Advisor - Anti-Infectives
Global Medical Advisor - Anti-Infectives

Mundipharma • Cambridge

Hybrid
GBP 140,000 - 180,000
Flexible benefits package
Learning & development opportunities
Collaborative, inclusive environment
Global Medical Advisor - Anti-Infectives
Global Medical Advisor - Anti-Infectives

Mundipharma International • Cambridge

Hybrid
GBP 65,000 - 85,000
Flexible benefits package
Learning and development opportunities
Collaborative work environment
Global Medical Advisor - Rescue Treatments
Global Medical Advisor - Rescue Treatments

Mundipharma • Cambourne

Hybrid
GBP 120,000 - 180,000
Flexible benefits package
Learning & development
Collaborative environment
IT GRC Lead: Risk, AI & Compliance (Hybrid)
IT GRC Lead: Risk, AI & Compliance (Hybrid)

Mundipharma International • Cambridge

Hybrid
GBP 60,000 - 90,000
Flexible benefits package
Learning & development programmes
Collaborative, inclusive environment
Global Medical Advisor - Rescue Treatments
Global Medical Advisor - Rescue Treatments

Mundipharma International • Cambridge

Hybrid
GBP 75,000 - 90,000
Flexible benefits package
Learning & development opportunities
Collaborative work environment
Regulatory Affairs Systems and Data Manager
Regulatory Affairs Systems and Data Manager

Meeveem Limited • Cambridge

Hybrid
GBP 60,000 - 80,000
Flexible benefits package
Learning & development opportunities
Collaborative work environment
Global Value, Access & Government Affairs Lead
Global Value, Access & Government Affairs Lead

Mundipharma • Greater London

Hybrid
GBP 120,000 - 150,000
Benefits package
Learning & development opportunities
Collaborative work environment
Management Associate Commercial
Management Associate Commercial

Mundipharma International • Cambridge, Greater London

Hybrid
GBP 40,000 - 60,000
Flexible benefits package
Opportunities for learning & development
Collaborative, inclusive work environment