Sr Manager - IT Governance, Risk, and Compliance

Plexus Corp.

Bathgate

Hybrid

GBP 75,000 - 110,000

Full time

36 hours ago
Be an early applicant
Application generator

Turn this role into an interview — a resume and cover letter built around what this employer wants.

Get past ATS filters

Benefits offered by this job

Private medical insurance
Enhanced pension contributions
Life assurance
Cycle to Work scheme
33 days annual leave

Job summary

Plexus Corp. is seeking a senior IT Governance, Risk, and Compliance (GRC) Lead to drive the multi-year GRC program in a global, fast-paced environment. You will define and mature controls, policies, and audits to protect the company and its customers.

You will lead risk assessments, coordinate audits, and establish robust third‑party risk management. The role demands strategic thinking, hands‑on execution, and strong leadership to advance Plexus's cybersecurity posture.

Qualifications

  • Bachelor’s degree with 8+ years of related experience.
  • Strong knowledge of NIST CSF, ISO 27001, CIS Controls.
  • Experience building IT GRC and Third-Party risk functions.

Responsibilities

  • Lead IT Governance, Risk, and Compliance program and framework.
  • Develop and socialize IT security policies, standards, and procedures.
  • Oversee risk register, risk assessments, and remediation tracking.
  • Coordinate internal and external cybersecurity audits and assessments.
  • Oversee Third-Party risk management.

Skills

Leadership
Decision making
Communication
Team management
Project management

Education

Bachelor’s Degree

Tools

Vanta
ServiceNow GRC

Job description

About Us

At Plexus, our vision is to help create the products that build a better world. By embracing an innovative culture of excellence, we pride ourselves on designing, manufacturing and servicing some of the world’s most transformative products. From life-saving medical technology and mission-critical defense solutions to sophisticated industrial automation, we’re proud to partner with our customers to bring their complex ideas to market.

About Us

At Plexus, our vision is to help create the products that build a better world. By embracing an innovative culture of excellence, we pride ourselves on designing, manufacturing and servicing some of the world’s most transformative products. From life-saving medical technology and mission-critical defense solutions to sophisticated industrial automation, we’re proud to partner with our customers to bring their complex ideas to market.

Visit Plexus.com to learn more about our unwavering commitment to our vision.

Living Our Values

With a vision rooted in the wellbeing and inclusive engagement of our team members, our customers, their end users and our communities, people are the heart of what we do and who we are. Our values unite and guide us in everything that we do.

Our values include: Growing our People, Building Belonging, Innovating Responsibly, Delivering Excellence and Creating Customer Success.

As part of our team, you’ll do impactful work within an inclusive environment where everyone works together to achieve extraordinary outcomes. You’ll be empowered to reach your full potential through managing your own personalised development plan and access to our learning and development programs.

Purpose Statement

Lead and manage the IT Governance, Risk, and Compliance (GRC) team, driving the development, maintenance, and execution of the GRC framework, ensuring compliance with global regulations and industry standards, and maturing the organization's overall cybersecurity posture.

Key Job Accountabilities
  • IT Governance, Risk, and Compliance Program Leadership:
    • Develop and maintain the Cybersecurity GRC framework, policies, standards, and procedures in alignment with regulatory requirements (e.g., ISO 27001, NIST CSF, Cyber Essentials +, SOC 2, GDPR, CMMC Level 2,3)
    • Develop, maintain, and socialize IT and cybersecurity policies, standards, and procedures across the organization.
    • Oversee risk mitigation and the IT risk register, lead risk assessments.
    • Develop, and oversee IT control effectiveness. Experience with IT Control design review and validation.
    • Coordinate internal and external cybersecurity audits and assessments, tracking findings through remediation.
    • Oversee customer assessments and questionnaires.
    • Build, coordinate and oversee Third-Party risk management
  • Strategic Program Management and Continuous Improvement: Lead the execution of the multi-year GRC Program roadmap, tracking and reporting on key performance indicators (KPIs) and key risk indicators (KRIs) to executive leadership. Drive continuous improvement in security controls and GRC processes by implementing best practices and automating controls where feasible.
  • Talent Management and Core Values: Responsible to exemplify and hold their team accountable to demonstrating the Plexus Core Values. Leader will focus on evaluating potential, driving succession planning, and ensuring their employees receive the development and coaching required to realize their full potential.
  • All GT leaders are accountable for upholding the organization's cybersecurity posture by adhering to security policies and procedures, actively participating in training, protecting data and systems, actively identifying and mitigating vulnerabilities, and promptly reporting any suspicious activity or potential security incidents.
Education/Experience Qualifications
  • Bachelor’s Degree with 8 or more years of related experience is preferred. An equivalent combination of education and/or experience will be considered.
Other Qualifications
  • Advanced leadership experience in dynamic, fast paced environments.
  • Advanced decision making, problem solving, and prioritization skills.
  • Advanced verbal and written communication skills.
  • Good interpersonal, communication and leadership skills; ability to motivate people and manage resources effectively and work with business partners to achieve goals.
  • Business acumen, knowledge and professionalism; understand how a business operates with the ability to develop and articulate the value proposition of a new process.
  • Functional knowledge in project management skills.
  • Must be self-motivated with the ability to work independently and in a team environment.
  • Knowledge of industry-standard security frameworks (e.g., NIST CSF, ISO 27001, CIS Controls) and regulatory requirements (e.g., SOX, SEC, GDPR, HIPAA, CMMC).
Preferred Qualifications
  • Experience building an IT GRC function within a global organization.
  • Experience building an IT Third-Party Risk function within a global organization.
  • Industry recognized certifications such as the CRISC, CISA, CISSP, CISM, and/or CGEIT are preferred.
  • Experience in the use and administrative setup of GRC software platforms (e.g., Vanta, ServiceNow GRC).
Physical Requirements
  • Professional office environment with suitable lighting, comfortable temperatures, and low noise level. May require prolonged periods of sitting at a desk, using a computer, and other office equipment. Minimal physical activity is generally involved, emphasizing the importance of good posture and ergonomic workplace arrangements.
Travel Requirements
  • 5%
Your Rewards and Wellbeing
  • Growth: Bespoke development plans and volunteer time off
  • Health: Private medical insurance, Employee Assistance Program and vision care
  • Wealth: Enhanced pension contributions, life assurance, and group income protection
  • Lifestyle: Electric Vehicle and Cycle to Work schemes, plus 33 days of annual leave
Application Process

At Plexus, we don't look for culture fit, we look for culture add. We value the unique perspectives you bring and review every candidate holistically, balancing professional experience, education and individual journey.

Accessibility and Accommodations

As a Disability Confident employer, we recruit purely on the basis of skills and merit, ensuring an equitable process for everyone. We are committed to providing reasonable accommodations for individuals with disabilities or special requirements. If you require support during the application process, please contact us at GHQ.TA@plexus.com with your contact information and a description of your needs.

Note: This inbox is dedicated to accommodation requests; please note that application status updates cannot be provided via this address.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Sr Manager - IT Governance, Risk, and Compliance
Sr Manager - IT Governance, Risk, and Compliance

Plexus Corp. • Livingston

On-site
GBP 90,000 - 130,000
Private medical insurance
Enhanced pension contributions
33 days annual leave
IT Generalist
IT Generalist

Plexus Corp. • Bathgate

On-site
GBP 26,000 - 34,000
Health insurance
Pension
Life assurance
+3
Senior IT GRC Leader - Risk, Compliance & Cyber Governance
Senior IT GRC Leader - Risk, Compliance & Cyber Governance

Plexus Corp. • Bathgate

Hybrid
GBP 75,000 - 110,000
Private medical insurance
Enhanced pension contributions
Life assurance
+2
Documentation Control Coordinator
Documentation Control Coordinator

Plexus Corp. • Kelso

On-site
GBP 28,000 - 38,000
Growth plans
Private medical insurance
Enhanced pension contributions
+1
Business Development Director - Aftermarket Services – EMEA (Remote - Europe)) Livingston, United Kingdom + 1 more Business Development Posted 19 hours ago
Business Development Director - Aftermarket Services – EMEA (Remote - Europe)) Livingston, United Kingdom + 1 more Business Development Posted 19 hours ago

Plexus Corp. • Livingston

Hybrid
GBP 70,000 - 110,000
Private medical insurance
Vision care
Enhanced pension contributions
+4
Site Administrative Assistant - Engineering Solutions Livingston, United Kingdom Administrative[...]
Site Administrative Assistant - Engineering Solutions Livingston, United Kingdom Administrative[...]

Plexus Corp. • Livingston

On-site
GBP 26,000 - 34,000
Private medical insurance
Pension contributions
Cycle to Work / EV options
Documentation Control Coordinator
Documentation Control Coordinator

Plexus Corp. • Livingston

On-site
GBP 22,000 - 32,000
Growth plans
Private medical insurance
Enhanced pension
+2
Test Engineer II - Manufacturing
Test Engineer II - Manufacturing

Plexus Corp. • Bathgate

On-site
GBP 42,000 - 56,000
Health insurance
Pension contributions
Life assurance
+4
Site Administrative Assistant
Site Administrative Assistant

Plexus Corp. • Bathgate

Hybrid
GBP 24,000 - 32,000
Hybrid working
Early Friday finish
Private medical insurance
+2
Staff Engineer - Fluent German speaker
Staff Engineer - Fluent German speaker

Plexus Corp. • Bathgate

On-site
GBP 65,000 - 90,000
Bespoke development plans
Private medical insurance
Enhanced pension contributions
+1