Sr. Director GRC - GP&T Tech
GSKAbout the role
With our new CDTO mandate to elevate the GRC Tech function to lead across all Tech, providing active Governance, Risk Management and Compliance Management and set modern strategies, policies and build capabilities to enable Tech to accelerate our pivot to be more Business focused, Digital enabled and Cloud-first organization.
The Sr. Director, GRC shall provide thought leadership and shape the future and set the right risk tone & tolerance aligned to GSK enterprise risks and frame risk as both opportunities to exploit and risks to be mitigated.
The Sr. Director GRC will need to have equal and credible Leadership capability, standing shoulder to shoulder with GSK Tech LT members and their direct reports, Business partners in Quality management, GSK Legal & Compliance, Audit & Assurance, Finance Controller and GSK’s external auditor.
Executive Leadership, Teamwork, Agility, and negotiating & influencing skills will be critical to transform GRC, Tech and advancing GSK into Digital Enterprise with the right risk framework, tolerance, and tone, managed effectively
Key Responsibilities
1) Global Products and Technology (GP&T) BU Business Partner – provide the leadership and management of GRC initiatives and be recognized as a critical leader to the Global Products and Technology (GP&T) Business Unit (BU) leadership and staff. Through a deep understanding of the various business strategies and needs, deliver GRC Services to enable the GP&T Tech BU to achieve their goals. Provide expert consultation to the GP&T Tech BU on best practices in the execution of ITMS, Smart Controls, and Software Development Methodologies.
2) Governance of Risk and Compliance - lead the GP&T Tech BU Risk Management Compliance Board (RMCB). Ensure GP&T Tech BU RMCB is aligned to the Global Tech RMCB and operates effectively. Ensures priority actions, findings and Corrective and Preventive Actions (CAPAs) for the Global Products and Technology is managed with clear accountabilities and tracking.
3) Risk Management – aligned with Enterprise Risks and ROCC; identify, mitigate, and manage all critical and major risks across GP&T Tech BU both strategic and operational. Provide Risk and Compliance Consultancy on strategic GP&T programs.
4) Compliance – enable GP&T Tech BU through clear and simplified policies and methods to ensure compliance with all world-wide internal & external regulatory, legal, and corporate policies. Responsible for oversight of all Privacy laws impacting GP&T. Provide GRC support and oversight during application development and maintenance. Partner with Business Quality Assurance teams to ensure GxP compliance across all GP&T related systems, platforms, and infrastructure.
5) Accountable for developing and managing GSK Global Digital & Tech Policies, SOPs, Standards - GRC is the owner and custodian of GSK Global Tech Policies, SOPs, standards, and controls (ITMS, et al). Partner with VP of GRC and peers to execute on authoring and publishing of new and modified Global Tech policies, SOPs, Standards and Risk Processes including incorporating all Security Policies and standards into Tech ITMS/Master Controls, then deploy, train and change manage across the Global Products and Technology Tech BU.
6) Quality – Accountable for developing and integrating Quality by design into Tech ITMS and Ways of Working. Develop, publish, and promote Tech-wide Quality metrics, ensure process adherence and compliant state of operations.
7) Training & Awareness – Train the GP&T Tech BU on all applicable external Regulation, SOX, GxP and Enterprise Policies and Risk. Build a culture within GP&T Tech BU of continuous Learning and agile adoption of new SOPs and smart controls.
8) Digital & Cloud – build capability to pivot Tech ways of working, including risk oversight into a cloud-first, Digital ML/AI capable function, using data & analytics and automation to enable appropriate posture in an environment of agile ways of working. Ability to evaluate and recommend appropriate usage of modern digital tools.
9) Leadership - provide leadership and motivation to the team of GRC professionals to deliver work effectively across geographies across employees and service providers.
Grow the next generation of GRC talent with appropriate succession planning and digital expertise. Develop strong relationship with the following internal and external organizations: Business Quality organizations, Finance Controller for SOX, Corp Compliance & Legal and GSK Privacy Officer – Be an active enterprise leader in all Quality / Compliance matters. Develop Partnership and influence to drive reasonable findings and outcomes with the GSK external auditor.
Knowl
Apply for this role
Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.
Apply Now →Generate Application KitFree account required — sign up in 30s