IT GRC Specialist

Posted 17 Days Ago
Be an Early Applicant
Cambridge, Cambridgeshire, England, GBR
In-Office
Mid level
Healthtech • Pharmaceutical
The Role
Lead IT risk management and governance, establish AI risk frameworks, maintain IT policies, manage audits and remediation, administer GRC tooling and compliance training, and deliver risk and compliance reporting to IT leadership while collaborating with global stakeholders.
Summary Generated by Built In

IT GRC Specialist

Location: Cambridge, Hybrid

Department: IT

Job type: Full Time

Join us and make a difference when it matters most! 

At Mundipharma, we are proud of the work we do to bring innovative treatments to patients. We challenge ourselves constantly to deliver more for patients, healthcare professionals, our partners, and our employees. 

The Team

The IT Governance, Risk & Compliance (GRC) Specialist will join the IT team at Mundipharma ensuring the organisation understands its key risks and manages them appropriately in line with its risk appetite, while maintaining effective governance, controls, and oversight. Translating requirements into practical, proportionate controls embedded across business and technology processes, and ensures suitable evidence is maintained to demonstrate compliance and control effectiveness.

Role and Responsibilities

  • Lead the end-to-end IT risk management practice, ensuring legal obligations are met and enterprise risks are detailed, owned, mitigated, and clearly communicated to leadership.

  • AI Governance & Risk Management - Establish and oversee AI risk frameworks, ensuring the responsible, transparent, and compliant use of AI technologies across all organizational use cases.

  • Policy Framework & Governance: Maintain and review IT policies, partnering with department heads to identify documentation gaps, execute review cycles, and drive continuous policy improvement.

  • Conduct regular audits of internal IT processes to verify compliance with governance frameworks and implement structured remediation plans.

  • Act as the primary point of contact for internal and external IT audits, coordinating with system owners to deliver consistent responses while minimizing operational disruption.

  • Identify, track, and remediate potential audit risks and control weaknesses proactively to prevent formal audit findings.

  • Build and sustain strong working relationships with internal audit teams to ensure ongoing alignment between IT operations and enterprise governance goals.

  • Manage and administer IT governance, security, and policy training programs across IT and the wider business via the Global Learning Management System (LMS).

  • Support the development of engaging training content and deliver regular compliance reporting against key performance indicators.

  • Maintain macro- and micro-level risk reporting for IT leadership while collaborating with global training and compliance teams to adopt best practices.

What you’ll bring

  • University or Master’s degree in IT (or related field), backed by proven experience managing risks within an IT organisation.

  • Previous experience in an IT Governance, Risk & Compliance (GRC) related position in the Pharmaceutical industry would be advantageous but other industries would be considered.

  • Deep understanding of audit operations and a track record of successfully managing responses to both internal and external audits.

  • Sound knowledge of core GRC practices and industry frameworks, such as ISO 27001, ISO 9001, ITIL, and COBIT. 

  • Document & Quality Control - Expertise in quality management principles, policy governance, and administering Document Management Systems.

  • Experience using GRC platforms like Vanta (preferred) and creating SCORM-compliant training content with Articulate would be advantageous.

  • Practical experience implementing ITIL processes and collaborating directly with cybersecurity teams to mitigate risk.

  • Excellent negotiation and global stakeholder relationship-building skills with the ability to influence management-level stakeholders in a global environment.

  • Process-Driven Improvement: Strong process mindset with a proven ability to spot improvement opportunities and lead them through to completion.

  • Agile & Collaborative Mindset - Adaptable, solution-focused team player who enjoys learning new skills and driving a positive impact across the business.

What we offer in return

  • Flexible benefits package 

  • Opportunities for learning & development through our varied programme 

  • Collaborative, inclusive work environment

Diversity and inclusion

Building an inclusive environment where people can thrive, grow and achieve their full potential is a priority. We believe this isn’t just the right thing, but also the smart thing to do. We are on a journey and will seek to move forward together through education and awareness to build a culture that welcomes and celebrates diversity and uniqueness. We will create a workplace environment where everyone can, every day, bring their authentic selves and is treated with dignity and respect. 

About Mundipharma

Mundipharma is a global healthcare company focussing on customers across Africa, Asia Pacific, Canada, Europe, Latin America, and the Middle East.  

Mundipharma is dedicated to bringing innovative treatments to patients in the areas of pain management, infectious disease as well as other severe and debilitating disease areas. Their guiding principles, centered around Integrity and Patient-Centricity, are at the heart of everything they do. For more information visit www.mundipharma.com.  

Join our talent pool

If you’re not sure this role is right for you but you’re keen to hear about future opportunities at Mundipharma, join our talent community and be the first to hear about new roles.


Additional Job Description:

Primary Location:

GB Cambridge

Job Posting Date:

2026-07-31

Job Type:

Permanent

Skills Required

  • University or Master's degree in IT or related field
  • Proven experience managing IT risks within an IT organisation
  • Experience in IT Governance, Risk & Compliance (GRC) roles
  • Deep understanding of audit operations and experience managing internal/external audit responses
  • Knowledge of ISO 27001, ISO 9001, ITIL, and COBIT frameworks
  • Expertise in quality management, policy governance, and Document Management Systems
  • Practical experience implementing ITIL processes and working with cybersecurity teams
  • Experience with GRC platforms (experience with Vanta preferred)
  • Experience creating SCORM-compliant training content and using Articulate
  • Excellent negotiation, stakeholder management, and global influencing skills
  • Process-driven improvement mindset with ability to lead improvements
  • Agile, collaborative mindset and willingness to learn

Mundipharma Compensation & Benefits Highlights

The following summarizes recurring compensation and benefits themes identified from responses generated by popular LLMs to common candidate questions about Mundipharma and has not been reviewed or approved by Mundipharma.

  • Flexible Benefits A choice-based scheme lets people flex life insurance and income protection above core levels, indicating a tailored approach. Documented updates to benefits design show active management of options to suit individual needs.
  • Healthcare Strength Private medical coverage and critical illness options are included within a flexible package in at least one major hub. Health-focused measures and protections are highlighted alongside core benefits.
  • Leave & Time Off Breadth Paid sick leave, a solid annual holiday allowance with public holidays, and volunteering leave are described. Time-off approvals are positioned as supportive where operational cover allows.

Mundipharma Insights

Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
HQ: Cambridge
2,154 Employees
Year Founded: 1952

What We Do

Mundipharma is a global healthcare company with a presence across Africa, Asia Pacific, Canada, Europe, Latin America, and the Middle East. Mundipharma is dedicated to bringing innovative treatments to patients in the areas of Pain Management, Infectious Disease and Consumer Healthcare as well as other severe and debilitating disease areas. Our guiding principles, centred around Integrity and Patient-Centricity, are at the heart of everything we do. We encourage our people to think differently and our inclusive culture of continuous learning and collaboration make Mundipharma a great place to work. For more information visit www.mundipharma.com See our community guidelines: mundipharma.com/social-media-community-guidelines

Similar Jobs

AVEVA Logo AVEVA

IT GRC SOX Specialist - Regulatory Frameworks

Agency • Artificial Intelligence • Cloud • Internet of Things • Software • Automation
In-Office
2 Locations
6970 Employees

SharkNinja Logo SharkNinja

TTS Inventory & Planning Specialist (UK)

Beauty • Robotics • Design • Appliances • Manufacturing
In-Office
Leeds, West Yorkshire, England, GBR
4000 Employees

Rokt Logo Rokt

Strategic Account Manager

Artificial Intelligence • Digital Media • eCommerce • Marketing Tech • Software • Automation
In-Office
London, Greater London, England, GBR
800 Employees
81K-158K Annually

Zeta Global Logo Zeta Global

Talent Partner

AdTech • Artificial Intelligence • Marketing Tech • Software • Analytics
Easy Apply
Hybrid
London, Greater London, England, GBR
2429 Employees

Similar Companies Hiring

Sailor Health Thumbnail
Healthtech • Social Impact • Telehealth
New York City, NY
20 Employees
Granted Thumbnail
Artificial Intelligence • Healthtech • Insurance • Mobile • Financial Services
New York, New York
23 Employees
OneImaging Thumbnail
Healthtech
Miami, FL
62 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account