IT GRC Specialist

Mundipharma

Cambridge

On-site

GBP 60,000 - 90,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

Flexible benefits
Learning & development opportunities
Collaborative work environment

Job summary

Mundipharma is seeking an IT Governance, Risk & Compliance Specialist to lead IT risk management and AI risk oversight. You will translate requirements into practical controls across business and technology processes, ensuring evidence of compliance and control effectiveness.

You will manage IT governance, security training, and policy programs, partnering with stakeholders to close gaps, audit responses, and continuous improvement across the enterprise.

Qualifications

  • University or Master’s degree in IT (or related field).
  • Proven experience managing risks within an IT organisation.
  • Experience in IT Governance, Risk & Compliance (GRC) in Pharma preferred.
  • Knowledge of ISO 27001, ISO 9001, ITIL, COBIT.
  • Policy governance and Document Management System experience.
  • Experience using GRC platforms like Vanta and creating SCORM training content with Articulate.
  • Experience implementing ITIL processes and collaborating with cybersecurity teams.

Responsibilities

  • Lead end-to-end IT risk management, ensuring obligations are met and risks are mitigated.
  • Establish AI risk frameworks and oversee responsible use of AI technologies.
  • Maintain IT policy framework and drive continuous improvement.
  • Audit IT processes for governance compliance and drive remediation.
  • Coordinate internal and external IT audits with minimal disruption.
  • Proactively identify and remediate audit risks and control weaknesses.
  • Collaborate with global teams to align IT governance with enterprise goals.
  • Manage IT governance, security, and policy training via LMS.
  • Develop training content and deliver compliance reporting against KPIs.
  • Maintain IT leadership risk reporting with global compliance teams.

Skills

IT risk management
GRC frameworks
Auditing
Policy governance
Stakeholder management
Training & LMS
Agile mindset
Collaborative teamwork
IT governance
Cybersecurity collaboration

Education

Bachelor’s or Master’s degree in IT

Tools

Vanta
Articulate (SCORM)

Job description

Join us and make a difference when it matters most!

At Mundipharma, we are proud of the work we do to bring innovative treatments to patients. We challenge ourselves constantly to deliver more for patients, healthcare professionals, our partners, and our employees.

The Team

The IT Governance, Risk & Compliance (GRC) Specialist will join the IT team at Mundipharma ensuring the organisation understands its key risks and manages them appropriately in line with its risk appetite, while maintaining effective governance, controls, and oversight. Translating requirements into practical, proportionate controls embedded across business and technology processes, and ensures suitable evidence is maintained to demonstrate compliance and control effectiveness.

Role and Responsibilities

  • Lead the end-to-end IT risk management practice, ensuring legal obligations are met and enterprise risks are detailed, owned, mitigated, and clearly communicated to leadership.
  • AI Governance & Risk Management - Establish and oversee AI risk frameworks, ensuring the responsible, transparent, and compliant use of AI technologies across all organizational use cases.
  • Policy Framework & Governance: Maintain and review IT policies, partnering with department heads to identify documentation gaps, execute review cycles, and drive continuous policy improvement.
  • Conduct regular audits of internal IT processes to verify compliance with governance frameworks and implement structured remediation plans.
  • Act as the primary point of contact for internal and external IT audits, coordinating with system owners to deliver consistent responses while minimizing operational disruption.
  • Identify, track, and remediate potential audit risks and control weaknesses proactively to prevent formal audit findings.
  • Build and sustain strong working relationships with internal audit teams to ensure ongoing alignment between IT operations and enterprise governance goals.
  • Manage and administer IT governance, security, and policy training programs across IT and the wider business via the Global Learning Management System (LMS).
  • Support the development of engaging training content and deliver regular compliance reporting against key performance indicators.
  • Maintain macro- and micro-level risk reporting for IT leadership while collaborating with global training and compliance teams to adopt best practices.

What you’ll bring

  • University or Master’s degree in IT (or related field), backed by proven experience managing risks within an IT organisation.
  • Previous experience in an IT Governance, Risk & Compliance (GRC) related position in the Pharmaceutical industry would be advantageous but other industries would be considered.
  • Deep understanding of audit operations and a track record of successfully managing responses to both internal and external audits.
  • Sound knowledge of core GRC practices and industry frameworks, such as ISO 27001, ISO 9001, ITIL, and COBIT.
  • Document & Quality Control - Expertise in quality management principles, policy governance, and administering Document Management Systems.
  • Experience using GRC platforms like Vanta (preferred) and creating SCORM-compliant training content with Articulate would be advantageous.
  • Practical experience implementing ITIL processes and collaborating directly with cybersecurity teams to mitigate risk.
  • Excellent negotiation and global stakeholder relationship-building skills with the ability to influence management-level stakeholders in a global environment.
  • Process-Driven Improvement: Strong process mindset with a proven ability to spot improvement opportunities and lead them through to completion.
  • Agile & Collaborative Mindset - Adaptable, solution-focused team player who enjoys learning new skills and driving a positive impact across the business.

What we offer in return

  • Flexible benefits package
  • Opportunities for learning & development through our varied programme
  • Collaborative, inclusive work environment

Diversity and inclusion

Building an inclusive environment where people can thrive, grow and achieve their full potential is a priority. We believe this isn’t just the right thing, but also the smart thing to do. We are on a journey and will seek to move forward together through education and awareness to build a culture that welcomes and celebrates diversity and uniqueness. We will create a workplace environment where everyone can, every day, bring their authentic selves and is treated with dignity and respect.

About Mundipharma

Mundipharma is a global healthcare company focussing on customers across Africa, Asia Pacific, Canada, Europe, Latin America, and the Middle East.

Mundipharma is dedicated to bringing innovative treatments to patients in the areas of pain management, infectious disease as well as other severe and debilitating disease areas. Their guiding principles, centered around Integrity and Patient-Centricity, are at the heart of everything they do. For more information visit www.mundipharma.com.

Join our talent pool

If you’re not sure this role is right for you but you’re keen to hear about future opportunities at Mundipharma, join our talent community and be the first to hear about new roles.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

IT GRC Specialist
IT GRC Specialist

Mundipharma IT Services Limited • Cambridge

Hybrid
GBP 60,000 - 90,000
Flexible benefits package
Learning & development opportunities
Collaborative, inclusive work env.
+1
IT GRC Specialist
IT GRC Specialist

Mundipharma International • Cambridge

Hybrid
GBP 60,000 - 90,000
Flexible benefits package
Learning & development programmes
Collaborative, inclusive environment
Global Medical Advisor - Anti-Infectives
Global Medical Advisor - Anti-Infectives

Mundipharma • Cambridge

Hybrid
GBP 140,000 - 180,000
Flexible benefits package
Learning & development opportunities
Collaborative, inclusive environment
IT GRC Lead: Risk, Policy & AI Governance
IT GRC Lead: Risk, Policy & AI Governance

Mundipharma IT Services Limited • Cambridge

Hybrid
GBP 60,000 - 90,000
Flexible benefits package
Learning & development opportunities
Collaborative, inclusive work env.
+1
Global Medical Advisor - Rescue Treatments
Global Medical Advisor - Rescue Treatments

Mundipharma • Cambourne

Hybrid
GBP 120,000 - 180,000
Flexible benefits package
Learning & development
Collaborative environment
Global Value, Access & Government Affairs Lead
Global Value, Access & Government Affairs Lead

Mundipharma • Greater London

Hybrid
GBP 120,000 - 150,000
Benefits package
Learning & development opportunities
Collaborative work environment
Global Medical Advisor - Anti-Infectives
Global Medical Advisor - Anti-Infectives

Mundipharma International • Cambridge

Hybrid
GBP 65,000 - 85,000
Flexible benefits package
Learning and development opportunities
Collaborative work environment
Regulatory Affairs Systems and Data Manager
Regulatory Affairs Systems and Data Manager

Meeveem Limited • Cambridge

Hybrid
GBP 60,000 - 80,000
Flexible benefits package
Learning & development opportunities
Collaborative work environment
International Tax Lead
International Tax Lead

Mundipharma • Greater London

On-site
GBP 120,000 - 180,000
Learning & development opportunities
Collaborative work environment
Exposure to global strategic projects
+2
Global Value, Access & Government Affairs Lead London
Global Value, Access & Government Affairs Lead London

Meeveem Limited • Greater London

Hybrid
GBP 110,000 - 140,000
Benefits package
Learning & development
Collaborative environment