Technology Standards & Control Framework Development Lead

gsknch

Bengaluru

On-site

INR 4,000,000 - 6,000,000

Full time

5 days ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Haleon is seeking a Standards & Control Framework Development Lead to develop and evolve the Digital & Technology Written Standards and the enterprise Technology Control Framework across IT and OT. You will translate regulatory obligations into practical controls, drive adoption, and ensure alignment with DTMS and global compliance requirements.

The role partners with risk, engineering, and assurance teams to design efficient, scalable standards and ensure controls are well-designed and mapped

Qualifications

  • Experience translating regulatory obligations into actionable standards.
  • Knowledge of SOx, GDPR, GxP and cybersecurity frameworks.
  • Ability to partner with risk, engineering, and assurance teams.

Responsibilities

  • Develop and maintain Written Standards across DTMS.
  • Govern control framework lifecycle with versioning and ownership.
  • Translate regulatory needs into scalable, practical controls.
  • Collaborate with risk, tooling, and assurance teams for updates.

Skills

Regulatory knowledge
Information Security
Risk management
GRC tooling
Stakeholder management

Education

Bachelor's degree in CS/IT

Tools

GRC platforms
ISO 27001

Job description

Welcome to Haleon. We're a purpose-driven, world-class consumer company putting everyday health in the hands of millions. In just three years since our launch, we've grown, evolved and are now entering an exciting new chapter - one filled with bold ambitions and enormous opportunity.

About the Role:

The Standards & Control Framework Development Lead is responsible for developing, evolving, and maintaining Haleon's Digital & Technology Written Standards and the enterprise Technology Control Framework across IT and OT environments. This role ensures that standards are clear, actionable, adoptable, and aligned with global regulatory, cybersecurity, privacy, SOx, GxP, and broader compliance requirements. It partners with domain experts, risk teams, control owners, architects, and engineering groups to translate regulatory obligations and risk expectations into practical, modern, and scalable standards and control requirements. The role governs the lifecycle of standards and supports their adoption across D&T through effective communication, alignment with tooling, and integration into the Digital & Technology Management System (DTMS). It also drives simplification, consolidation, and continuous improvement of the control framework, ensuring that controls are efficient, non-duplicative, and aligned to a unified methodology. The role acts as a key point of integration between Written Standards, control design, regulatory requirements, and the enterprise GRC platform, ensuring that master controls are well-designed, up-to-date, accurately mapped, and operationally embedded.

Roles & Responsibilities:
  • Develop, define, and maintain D&T Written Standards that incorporate regulatory, cybersecurity, privacy, SOx, GxP, and industry best-practice requirements, ensuring alignment with Haleon's technology and risk strategy.
  • Design, maintain, and continuously enhance the D&T Control Framework, ensuring controls are risk-based, clear, efficient, non-duplicative, and aligned to Written Standards and regulatory obligations.
  • Govern the lifecycle of standards and controls within the Digital & Technology Management System (DTMS), ensuring version control, ownership, review cycles, and change governance are effectively managed.
  • Translate regulatory and compliance requirements (e.g., SOx, GxP, GDPR, cybersecurity regulations, AI regulations, ESG, ABAC, sanctions) into actionable, scalable standards and control requirements.
  • Collaborate with risk, tooling, advisory, and assurance teams to ensure Written Standards and Control Framework updates flow consistently into GRC tooling, risk assessments, project assurance, and BAU operating processes.
  • Drive simplification and continuous improvement, eliminating outdated standards, redesigning complex requirements, rationalising controls, and ensuring new technologies and ways of working (e.g., cloud, DevSecOps) are reflected in standards and controls.
Business Experties:
  • Deep understanding of regulatory requirements (SOx, GxP, GDPR, cybersecurity frameworks, AI & ESG regulations) and ability to translate them into streamlined, actionable standards.
  • Strong working knowledge of Information Security and Risk Management principles, including ISO 27001, NIST, and ITGC expectations.
  • Expertise in control framework design, configuration of GRC platforms, and mapping of master controls across domains.
  • Solid understanding of D&T operating models, including engineering, architecture, and product-centric delivery, to ensure standards are practical and adoptable.
  • Awareness of technology, healthcare, and consumer-health industry trends, enabling proactive updates and alignment to emerging regulations and compliance risks.
  • Excellent ability to distil complex regulations into simplified standards that enable operational efficiency, business agility, and robust compliance.
  • Strong relationship-building and influencing skills, able to gain alignment across senior stakeholders and drive standard adoption across diverse teams.
  • Regularly addresses complex regulatory interpretation challenges, ensuring that evolving global requirements are integrated into standards and controls without adding unnecessary operational complexity.
  • Balances competing priorities across D&T, designing standards that satisfy assurance and regulatory demands while remaining realistic for product and engineering teams.
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

IT Standards & Control Framework Analyst
IT Standards & Control Framework Analyst

Haleon • Bengaluru

On-site
INR 1,200,000 - 2,100,000
Regulatory Compliance Senior Manager
Regulatory Compliance Senior Manager

HITACHI VANTARA INDIA PRIVATE LIMITED • Gurugram District

On-site
INR 3,800,000 - 7,000,000
Regulatory Compliance Senior Manager
Regulatory Compliance Senior Manager

Accenture in India • Gurugram District

On-site
INR 4,000,000 - 7,000,000
Regulatory Compliance Senior Manager
Regulatory Compliance Senior Manager

Accenture • Gurugram District

On-site
INR 4,000,000 - 7,000,000
TOOLS CONSULTANT L1
TOOLS CONSULTANT L1

Wipro • Maharashtra

On-site
INR 1,500,000 - 2,500,000
Regulatory Compliance Associate Manager
Regulatory Compliance Associate Manager

Accenture • Gurugram District

On-site
INR 1,200,000 - 2,400,000
Senior DevSecOps Engineer
Senior DevSecOps Engineer

gsknch • India

On-site
INR 1,800,000 - 2,400,000
Senior DevSecOps Engineer
Senior DevSecOps Engineer

Haleon • India

On-site
INR 1,800,000 - 3,000,000
Senior DevSecOps Engineer
Senior DevSecOps Engineer

Haleon • Bengaluru

On-site
INR 2,400,000 - 4,200,000
Third Party Security Risk Analyst
Third Party Security Risk Analyst

Haleon plc. • Bengaluru

On-site
INR 1,400,000 - 2,000,000