Manager, IT Risk

Amcor Limited

Łódź

On-site

PLN 260,000 - 380,000

Full time

4 days ago
Be an early applicant
Application generator

Stand out for this role — generate a tailored resume and cover letter in about a minute.

Get past ATS filters

Job summary

Amcor is seeking a seasoned Manager, IT Risk to lead risk identification, assessment, and governance across information assets and security programs. You will coordinate risk workshops, drive remediation, and support board-level risk reporting in a global, matrixed environment.

The role emphasizes collaboration with business and technology teams, development of risk metrics, and ongoing enhancement of Amcor’s cybersecurity maturity and resilience amid evolving threats.

Qualifications

  • 12+ years of total professional experience, incl. 7+ years in IT/cyber risk mgmt, IT audit, or governance.
  • Proven experience leading enterprise IT and cybersecurity risk activities.
  • Bachelor’s degree in IT, Audit or related field; strong knowledge of risk concepts and regulatory requirements.
  • Experience in a complex global, matrixed org with senior stakeholders.
  • Certifications such as CRISC, CISA or ISO27001 LA preferred.
  • Strong knowledge of risk mgmt principles, governance frameworks, and regulatory requirements.
  • Ability to communicate business impact of IT/cyber risks clearly to leadership.
  • Excellent communication, presentation, and facilitation skills.

Responsibilities

  • Lead periodic IT and cybersecurity risk committee meetings; set agendas, prioritize risks, align stakeholders, present risks, and track actions.
  • Develop and report IT risk metrics, KRIs, trends, and risk stats to IT leadership and governance bodies.
  • Apply qualitative risk assessment methodologies to support strategic risk decisions.
  • Oversee risk assessments for new technologies, services, projects, and third parties.
  • Provide independent risk oversight and challenge to IT, cybersecurity, and business teams.
  • Drive improvements to risk posture and remediation tracking across the organization.
  • Advance the IT and cybersecurity risk management framework and reporting processes.
  • Maintain strong relationships with stakeholders involved in IT and cybersecurity risk.

Skills

IT risk management
Cybersecurity risk
GRC
Stakeholder management
Communication skills
Risk assessment methods
Regulatory compliance
Executive reporting

Education

Bachelor's degree in IT, Audit or related field

Tools

CRISC
CISA
ISO27001 LA

Job description

Accelerate the possible by joining a winning Amcor team that’s transforming the packaging industry and improving lives around the world.

At Amcor, we unpack possibility through our innovative and responsible packaging to provide solutions that benefit our customers, our people and our planet. More than 10,000 consumers worldwide encounter our products every second and rely on us for safe access to food, medicine and other goods. We value their trust by making safety our guiding principle. It’s our core value and integral to how we do business.

Beyond this core principle, our shared values and behaviors unite us as we work together to elevate customers, shape lives and protect the future. We champion our customers and help them succeed. We play to win – adapting quickly in an everchanging world – and make smart choices to safeguard our business, our communities and the people we serve for generations to come. And we invest in our world-class team, empowering our colleagues to unpack their potential, because we believe when our people grow, so does our business.

The Manager, IT Risk will play a key role in developing, leading, and overseeing initiatives to identify, assess, manage, and report IT and cybersecurity risks across Amcor. Working closely with business and technology stakeholders, the role will support risk-based decision-making and contribute to the continued enhancement of Amcor’s cybersecurity maturity and resilience in an evolving threat landscape.

The role is responsible for overseeing the effective management of risks to the organization’s information assets, facilitating internal and external risk workshops, coordinating risk assessments, and maintaining strong collaboration across relevant teams. The role will also lead the preparation of risk committee presentations and management reporting, support compliance with applicable standards and requirements, and drive the ongoing monitoring and management of IT and cybersecurity risks.

Key Job Accountabilities

Prepare, coordinate, and lead periodic IT and cybersecurity risk committee meetings, including agenda setting, risk prioritization, stakeholder alignment, presentation of key risks, and follow-up of agreed decisions and actions. Develop and report IT and cybersecurity risk metrics, key risk indicators, trends, and risk statistics to the IT Leadership Team, Audit Committee, and other relevant governance forums to support effective oversight and risk-based decision-making. Apply and continuously improve qualitative risk assessment and scoring methodologies to support strategic and tactical risk-based decision-making. Lead and oversee risk assessments relating to existing and emerging technologies, services, projects, third parties, and significant organizational changes. Provide risk oversight, independent advice, and constructive challenge to IT, cybersecurity, business teams, and risk owners. Drive improvements to the organization’s risk posture by supporting the development of appropriate risk treatment plans, monitoring remediation activities, and assessing residual risk. Lead the continuous improvement of the IT and cybersecurity risk management framework, including risk identification, assessment, treatment, monitoring, escalation, and reporting. Establish and maintain effective relationships and communication channels with stakeholders involved in managing IT and cybersecurity risks across the organization.

Qualifications/Requirements
  • Minimum of 12 years of total professional experience, including at least 7 years of relevant experience in IT and cybersecurity risk management, technology risk, IT audit and assurance, cybersecurity governance, governance, risk and compliance (GRC), cyber operations, or related consulting and advisory roles.
  • Demonstrated experience in leading or coordinating enterprise-wide IT and cybersecurity risk management activities, including risk assessments, risk treatment oversight, governance committees, and senior management reporting.
  • Bachelor’s degree in Information Technology, Audit or a related field Strong knowledge of cybersecurity and technology risk concepts, governance practices, risk assessment methodologies, and applicable regulatory, assurance, and industry requirements.
  • Proven experience working in a complex global and matrixed organization and engaging effectively with senior IT, cybersecurity, business, audit, and risk stakeholders.
  • Relevant professional certifications such as CRISC, CISA or ISO27001 LA is preferred.
  • Strong knowledge of IT and cybersecurity risk management principles, methodologies, governance frameworks, and relevant regulatory requirements.
  • Ability to identify, assess, prioritize, and clearly communicate the business impact of IT and cybersecurity risks.
  • Strong analytical judgment and the ability to balance business objectives, security requirements, and risk exposure.
  • Excellent communication, presentation, and facilitation skills, including the ability to communicate complex risk matters to senior leadership and governance committees.
  • Strong stakeholder management and influencing skills, with the ability to drive ownership and accountability without direct authority.
About Amcor

Amcor is the global leader in developing and producing responsible consumer packaging and dispensing solutions across a variety of materials for nutrition, health, beauty and wellness categories. Our global product innovation and sustainability expertise enables us to solve packaging challenges around the world every day, producing a range of flexible packaging, rigid packaging, cartons and closures that are more sustainable, functional and appealing for our customers and their consumers. We are guided by our purpose of elevating customers, shaping lives and protecting the future. Supported by a commitment to safety, over 75,000 people generate $23 billion in annualized sales from operations that span over 400 locations in more than 40 countries.

NYSE: AMCR; ASX: AMC www.amcor.com | LinkedIn | YouTube

Amcor is committed to providing a secure and reliable experience for all job seekers. If you are looking to join Amcor, please read this page to help you avoid recruitment scams.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Manager, IT Risk
Manager, IT Risk

RXinsider LTD. • Łódź

Hybrid
PLN 260,000 - 420,000
Manager, IT Risk
Manager, IT Risk

Amcor • Łódź

Hybrid
PLN 260,000 - 360,000
Information Technology
Information Technology

Amcor Limited • Łódź

Hybrid
PLN 300,000 - 420,000
IT Risk Manager: Cybersecurity Strategy Lead
IT Risk Manager: Cybersecurity Strategy Lead

Amcor Limited • Łódź

On-site
PLN 260,000 - 380,000
Senior IT Risk & Cybersecurity Lead
Senior IT Risk & Cybersecurity Lead

RXinsider LTD. • Łódź

Hybrid
PLN 260,000 - 420,000
Product Design & Innovation Analyst
Product Design & Innovation Analyst

Amcor • Otwock

Hybrid
PLN 70,000 - 110,000
R&D/Innovation Management
R&D/Innovation Management

Amcor • Łódź

On-site
PLN 120,000 - 180,000
Talent Data Analyst & Specialist
Talent Data Analyst & Specialist

Amcor • Łódź

On-site
PLN 90,000 - 130,000
Customer Service
Customer Service

Amcor Limited • Łódź

Hybrid
PLN 129,000 - 190,000
Global Talent Sourcing Manager
Global Talent Sourcing Manager

Amcor • Kruszwica

Remote
PLN 300,000 - 520,000