CrawlJobs Logo

Information and Technology Governance & Risk Lead

dssmith.com Logo

DS Smith

Location Icon

Location:
United Kingdom , Milton Keynes

Category Icon

Job Type Icon

Contract Type:
Not provided

Salary Icon

Salary:

Not provided

Job Description:

Reporting to Head of I&T GRC, Governance and Risk Lead will be responsible for driving information and cyber security awareness, delivering security awareness training including phishing and facilitation of cyber scenario desktop simulations across central and manufacturing site teams. You will review, manage and where required prepare responses to internal and external customer enquiries in relation to information and cyber security arrangements. You will support IT, procurement, legal, data protection and digital security and business stakeholder in relation to supplier information and cyber security due diligence and requirements. As the successful candidate you will also lead risk-based party security assurance, management, and continuous improvement activities. In addition, facilitate and coordinate IT risk management risk register, tools, process, reporting and review. You will take responsibility for managing a subset of aspects of ISO 27001 related documentation and control activities. As the I&T Governance and Risk Lead you will have the responsibility of aspects of the I&T GRC scope, delegated and assigned by the Head of I&T GRC.

Job Responsibility:

  • Driving information and cyber security awareness
  • Delivering security awareness training including phishing and facilitation of cyber scenario desktop simulations across central and manufacturing site teams
  • Reviewing, managing and where required preparing responses to internal and external customer enquiries in relation to information and cyber security arrangements
  • Supporting IT, procurement, legal, data protection and digital security and business stakeholder in relation to supplier information and cyber security due diligence and requirements
  • Leading risk-based party security assurance, management, and continuous improvement activities
  • Facilitating and coordinating IT risk management risk register, tools, process, reporting and review
  • Managing a subset of aspects of ISO 27001 related documentation and control activities
  • Managing and continuously improving I&T and Security risks processes in accordance with company risk appetite and tolerance
  • Engaging risk review and assurance activities across existing suppliers
  • Providing IT and business advice on aspects of security standards and regulations
  • Engaging with I&T system owners to provide training in relation to information security, cyber resilience, phishing, and facilitation of cyber scenario desktop simulations

Requirements:

  • Working knowledge of technology and security standards, controls and consequences across both IT and manufacturing environments in manufacturing or similar industries
  • Experience working with information security standards and frameworks such as and regulations such as ISO27001, NIST CSF, PCI DSS, NISD and NIS2
  • Proven analytical, problem-solving, planning, project delivery and supplier work packages management skills
  • Demonstrable experience of engaging across all levels of a company in relation to information and cyber security risks
  • Working towards or achieved professional certifications (ISO27001 lead, ISC2, CISM or CRISC) advantageous

Nice to have:

Working towards or achieved professional certifications (ISO27001 lead, ISC2, CISM or CRISC)

What we offer:
  • Competitive salary
  • Company bonus
  • Pension scheme
  • Life assurance
  • Income protection
  • 25 days holiday plus bank holidays
  • Electric Car / Bike to Work schemes

Additional Information:

Job Posted:
February 17, 2026

Employment Type:
Fulltime
Job Link Share:

Looking for more opportunities? Search for other job offers that match your skills and interests.

Briefcase Icon

Similar Jobs for Information and Technology Governance & Risk Lead

Legal Third-Party Management and Information Security Risk Lead

As part of the Legal Outside Counsel, Third Party Management and Operations team...
Location
Location
United Kingdom , Belfast
Salary
Salary:
Not provided
https://www.citi.com/ Logo
Citi
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Ability to assess residual risk in complex vendor environments and make sound defensible recommendations
  • Experience applying risk-based frameworks to prioritize issues and mitigation efforts
  • Strong interpersonal skills for engaging legal, compliance, technology, procurement and senior risk stakeholders
  • Proficiency in creating clear and concise reports dashboards and governance experience
  • Leading or supporting cross functional projects, ability to support risk transformation initiatives, and integrate evolving legal tech and regulatory guidance into assessment methodologies
  • Bachelor’s degree or equivalent
Job Responsibility
Job Responsibility
  • Manage and oversee a set of complex initiatives that span multiple lines of business in the Cyber Security (CS), Information Security (IS) and Third-Party Risk Management (TPRM) space for Global Legal Solutions
  • Assess the risks and effectiveness of Third Party IS processes and controls based on enterprise requirements ensuring the IS risk is within tolerance
  • Evaluate the design and execution of the Legal IS Program, identifies potential enhancements and drives implementation of governance, methodologies and tools required for the effective oversight of Third-Party Management IS risk to continually strengthen the Program
  • Assist the day-to-day activities within the TPM Risk and Info Sec group
  • Monitor, track and control outcomes to resolve issues, conflicts, dependencies and critical path deliverables related to issues and gaps found in the TPISA process
  • Drive implementation of enterprise Third Party Management controls required to be assessed as part of the Managers Control Assessment, reviews results, and determines if remediation actions are appropriate
  • Document control design, testing methodology, and evidence for effectiveness reviews in compliance with Citi's Risk and Control Standards
  • Contribute to quarterly control certifications, issue management processes and audit engagements
What we offer
What we offer
  • Generous holiday allowance starting at 27 days plus bank holidays
  • increasing with tenure
  • A discretional annual performance related bonus
  • Employee Assistance Program
  • Pension Plan
  • Paid Parental Leave
  • Special discounts for employees, family, and friends
  • Access to an array of learning and development resources
  • Private medical insurance packages to suit your personal circumstances
  • Fulltime
Read More
Arrow Right

Technology Risk Governance Manager

Help us deliver a better tomorrow. Australia Post is delivering for all Australi...
Location
Location
Australia , Richmond
Salary
Salary:
Not provided
auspost.com.au Logo
Australia Post
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Strong background in Technology Risk and IT Governance within large, complex organisations
  • Proven experience in risk management supporting technology or digital functions
  • Expertise in technology, digital and information governance, security risk, and operational frameworks such as ISO27001/2, ITIL, E8, NIST, and COBIT
  • Familiarity with APRA CPS 230/234, ISO 31000, or similar standards
  • Ability to translate and present complex technical and operational information into simple business language to engage business stakeholders
  • Demonstrated ability to influence, challenge, and engage senior business and technology leaders
  • Maintaining strong objective relationships beyond span of control
  • Excellent analytical, problem-solving, and communication skills
Job Responsibility
Job Responsibility
  • Support the proactive identification, assessment, and facilitate mitigation of technology risks across operational environments and transformation programs
  • Plan and execute regular and ad-hoc reviews into areas of significant technology risks to the organisation, including deep dives, and facilitating commercial solutions for any issues that may arise
  • Partner with delivery teams, architects, and operational leaders to integrate risk management into business-as-usual processes and project lifecycles
  • Maintain a current risk register reflecting emerging threats, system dependencies, and control effectiveness
  • Facilitate regular risk and control assessments and timely remediation of identified gaps
  • Support the Technology & Cyber Controls Assurance function in undertaking reviews against the minimum policy, standard and control requirements
  • Undertake targeted reviews of the effectiveness of key Technology controls and provide reporting & insights
  • Develop and implement risk management processes, libraries and documentation that will help improve transparency and management of enterprise and business unit technology risks and associated compliance and operational requirements
  • Provide risk advisory support for technology operations and systems within transformation projects
  • Review and challenge technology designs, change management processes, and vendor engagements from a risk perspective
What we offer
What we offer
  • Career Development: opportunities for professional growth and development
  • Work-Life Balance: flexible working arrangements
  • Employee Wellbeing: resources and support to ensure a healthy and safe work environment
  • Fulltime
Read More
Arrow Right

Technology Risk Manager

Help us deliver a better tomorrow. Australia Post is delivering for all Australi...
Location
Location
Australia , Richmond
Salary
Salary:
Not provided
auspost.com.au Logo
Australia Post
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Extensive experience in Technology Risk or IT Governance within large, complex organisations
  • Proven track record in risk management supporting technology or digital functions
  • Expertise in technology, digital and information governance, security risk, and operational frameworks such as ISO27001/2, ITIL, E8, NIST, and COBIT
  • Familiarity with APRA CPS 230/234, ISO 31000, or equivalent risk standards
  • Ability to translate and present complex technical and operational information into simple business language
  • Demonstrated ability to influence, challenge, and engage senior business and technology leaders
  • Maintaining strong objective relationships beyond span of control
  • Excellent analytical, problem-solving, and communication skills
Job Responsibility
Job Responsibility
  • Lead proactive identification, assessment, and facilitate mitigation of technology risks across operational environments and transformation programs
  • Plan and execute regular and ad-hoc reviews into areas of significant technological risks
  • Partner with delivery teams, architects, and operational leaders to integrate risk management into business-as-usual processes and project lifecycles
  • Lead the development of BU level risk profiles
  • Embed the enterprise risk management (ERM) framework for technology and digital operations within Line 1
  • Facilitate regular risk and control assessments and timely remediation of identified gaps
  • Develop and implement risk management processes, libraries and documentation
  • Support continuous improvement and consistency in governance processes, reporting, and escalation pathways
  • Provide risk advisory support for technology operations and systems within transformation projects
  • Review and challenge technology designs, change management processes, and vendor engagements from a risk perspective
What we offer
What we offer
  • Career Development opportunities
  • Flexible working arrangements for work-life balance
  • Employee Wellbeing resources and support
  • Inclusive and barrier-free recruitment process and workplace
  • Fulltime
Read More
Arrow Right

Application Management Lead - FX Technology

The Application Management Lead will build and manage a team of Application Mana...
Location
Location
India , Pune
Salary
Salary:
Not provided
https://www.citi.com/ Logo
Citi
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • IT experience essential, with relevant experience in Apps Development or production support role
  • Financial services experience highly desirable, with Foreign Exchange or Markets knowledge preferred
  • Experience in / knowledge of information security, or risk management
  • Excellent knowledge of legacy and emerging technologies such as Mainframes, Cloud technologies, and more
  • Understanding of SDLC and DevOps tools
  • Bachelor's degree or equivalent
  • Excellent interpersonal, written, and verbal communication skills
  • Ability to handle pressure and prioritize within tight deadlines while maintaining total accuracy
  • Ability to negotiate and influence outcomes while adhering to organizational policies
Job Responsibility
Job Responsibility
  • Build and manage a team of Application Management Analysts
  • Establish strong processes and governance
  • Work across the FX Technology function with all Development Leads
  • Partner with key areas such as infrastructure, security, application development, architecture, PMO
  • Interface with senior stakeholders in front office FX
  • Manage and maintain applications by filtering out the right work efforts for the developers
  • Carry out administrative responsibilities
  • Project manage applications’ response to technology risk and control issues
  • Fulltime
Read More
Arrow Right

Finance Liaison and Governance Lead

The Finance Liaison & Governance Lead will manage the financial, regulatory, and...
Location
Location
Mexico , Ciudad De Mexico
Salary
Salary:
Not provided
https://www.citi.com/ Logo
Citi
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Bachelor's degree in Engineering, Computer Science, Information Technology, or a related field
  • Master's degree or MBA preferred
  • Expertise in financial reporting in Technology Areas
  • Strong project management and organizational skills
  • Excellent stakeholder management and communication skills
  • Highly fluent in Spanish and English (written and verbal)
  • Proven track record of managing complex, multi-stakeholder roles in a global banking environment
  • Ability to manage multiple priorities in a high-pressure environment
  • 5 year experience in Financial reporting or Chief of staff roles coordinating activities along large technology related areas
Job Responsibility
Job Responsibility
  • Ensure data is summarized from across the business to provide critical information to executive team
  • Partner directly with various players across decision management groups
  • Analyze data and evaluate multiple sources to develop recommendations on high-priority strategic initiatives
  • Formulate and shepherd cross-franchise initiatives and programs from conception to completion
  • Help to manage executable strategies, partnering across the organization
  • Establish best practices and principles for the decision management organization globally
  • Financial control - understand the complexities of the department Profit and Loss (P&L)
  • Program/Project Management - provide oversight of the Business Critical Milestone Reporting process
  • Work on communication strategy for the department
  • Facilitate development of communication materials and presentations for senior management
  • Fulltime
Read More
Arrow Right

Information Systems Lead Program Manager

The ideal candidate will have a proven track record of managing technology proje...
Location
Location
United States , Denver
Salary
Salary:
125000.00 - 145000.00 USD / Year
benchmarkmakers.com Logo
Benchmark Makers
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • University degree in Computer Science, Information Technology, Business Administration, or a related field
  • Minimum of 7-10 years of experience in project management, particularly focusing on technology projects
  • Proven experience managing projects in a global law firm or professional services environment
  • Project Management Professional (PMP) certification
  • Certified ScrumMaster (CSM) or equivalent Agile certification
  • ITIL Foundation certification, Six Sigma Green Belt or Black Belt certification preferred
  • Strong understanding of project management methodologies, including Agile and Waterfall
  • Significant experience in implementing ITSM and ITIL best practices
  • Successful history of executing against a clear Target Operating Model (TOM) to optimize project delivery
  • Extensive and demonstrable understanding of cloud technologies, including Microsoft 365, Azure, Teams, IntApp Cloud, and iManage 10 Cloud, with specific evidence of successful project delivery
Job Responsibility
Job Responsibility
  • Leading and managing technology projects, ensuring delivery on time, within scope, and within budget
  • Collaborating with stakeholders to define project objectives, scope, and deliverables
  • Developing and maintaining detailed project plans, schedules, and budgets
  • Identifying and mitigating project risks and issues
  • Ensuring effective communication and coordination among project team members and stakeholders
  • Monitoring project progress and providing regular status updates to senior management
  • Conducting post-project evaluations and implementing lessons learned
  • Fostering a culture of continuous improvement and innovation within the project management team
  • Fulltime
Read More
Arrow Right

Information Systems Lead Program Manager

The ideal candidate will have a proven track record of managing technology proje...
Location
Location
United States , Manhattan, New York
Salary
Salary:
125000.00 - 145000.00 USD / Year
benchmarkmakers.com Logo
Benchmark Makers
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • University degree in Computer Science, Information Technology, Business Administration, or a related field
  • Minimum of 7-10 years of experience in project management, particularly focusing on technology projects
  • Proven experience managing projects in a global law firm or professional services environment
  • Project Management Professional (PMP) certification
  • Certified ScrumMaster (CSM) or equivalent Agile certification
  • ITIL Foundation certification, Six Sigma Green Belt or Black Belt certification preferred
  • Strong understanding of project management methodologies, including Agile and Waterfall
  • Significant experience in implementing ITSM and ITIL best practices
  • Successful history of executing against a clear Target Operating Model (TOM) to optimize project delivery
  • Extensive and demonstrable understanding of cloud technologies, including Microsoft 365, Azure, Teams, IntApp Cloud, and iManage 10 Cloud, with specific evidence of successful project delivery
Job Responsibility
Job Responsibility
  • Leading and managing technology projects, ensuring delivery on time, within scope, and within budget
  • Collaborating with stakeholders to define project objectives, scope, and deliverables
  • Developing and maintaining detailed project plans, schedules, and budgets
  • Identifying and mitigating project risks and issues
  • Ensuring effective communication and coordination among project team members and stakeholders
  • Monitoring project progress and providing regular status updates to senior management
  • Conducting post-project evaluations and implementing lessons learned
  • Fostering a culture of continuous improvement and innovation within the project management team
  • Fulltime
Read More
Arrow Right

Information Systems Lead Program Manager

The ideal candidate will have a proven track record of managing technology proje...
Location
Location
United States , San Francisco
Salary
Salary:
125000.00 - 145000.00 USD / Year
benchmarkmakers.com Logo
Benchmark Makers
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • University degree in Computer Science, Information Technology, Business Administration, or a related field
  • Minimum of 7-10 years of experience in project management, particularly focusing on technology projects
  • Proven experience managing projects in a global law firm or professional services environment
  • Project Management Professional (PMP) certification
  • Certified ScrumMaster (CSM) or equivalent Agile certification
  • ITIL Foundation certification, Six Sigma Green Belt or Black Belt certification preferred
  • Strong understanding of project management methodologies, including Agile and Waterfall
  • Significant experience in implementing ITSM and ITIL best practices
  • Successful history of executing against a clear Target Operating Model (TOM) to optimize project delivery
  • Extensive and demonstrable understanding of cloud technologies, including Microsoft 365, Azure, Teams, IntApp Cloud, and iManage 10 Cloud, with specific evidence of successful project delivery
Job Responsibility
Job Responsibility
  • Leading and managing technology projects, ensuring delivery on time, within scope, and within budget
  • Collaborating with stakeholders to define project objectives, scope, and deliverables
  • Developing and maintaining detailed project plans, schedules, and budgets
  • Identifying and mitigating project risks and issues
  • Ensuring effective communication and coordination among project team members and stakeholders
  • Monitoring project progress and providing regular status updates to senior management
  • Conducting post-project evaluations and implementing lessons learned
  • Fostering a culture of continuous improvement and innovation within the project management team
  • Fulltime
Read More
Arrow Right