Skip to content

Open nowPosted 65 days ago

Global Director - IT Governance, Risk & Compliance

Workable (global search)108,016 open roles

Where
Prague, Czechia
Get the CV for this job

From $25 per CV, paid once. No subscription.

Your applicationOpen nowGlobal Director - IT Governance, Risk & ComplianceWorkable (global search) · Prague, Czechia
  1. YouYes, apply to this one.

  2. CV RocketCV written for this posting.

  3. 25 readersRecruiter, hiring manager, skeptic. Round after round.

  4. CV RocketApplied on Workable (global search)'s own form.

The reply lands in your private mailbox

3×more interviews than doing it yourself with ChatGPT.

The clock on this job

Early applications get read.

7.9% of postings close within 7 days. Measured by our own scanner across the market. Workable (global search) postings stay open a median of 7 days.

Share of postings closed within
  1. 1.6%1 day
  2. 3.6%3 days
  3. 7.9%7 days
  4. 14.9%14 days
  5. 34.0%30 days
This job: posted 65 days ago

Workable (global search) median: 7 days open

The posting

D-ploy is a dynamic IT and Engineering Solutions company operating across the EMEA region, including Switzerland, Germany, Czech Republic, Austria, the UK, and the USA. We are committed to delivering reliable and efficient services to our clients through strong partnerships and a people-focused culture.

We are seeking an experienced Global Director – IT Governance, Risk & Compliance to lead and further develop the organization’s global IT governance, compliance and risk management function.

The ideal candidate will have extensive experience in IT governance, regulatory compliance, internal controls, risk management, audit programs and continuous improvement, preferably within a pharmaceutical, life sciences or similarly regulated environment.

As Global Director – IT Governance, Risk & Compliance, you will define and implement the global IT governance, risk and compliance strategy. You will work closely with senior IT leadership and stakeholders across Quality, Validation, Information Security, Legal, Data Privacy, Internal Audit, Engineering and other business functions.

You will be responsible for ensuring that IT processes, systems and services are aligned with business objectives, internal policies, regulatory requirements and recognized control frameworks.

Responsibilities

IT Governance Strategy

  • Develop and implement the global IT governance, risk and compliance strategy.
  • Define and maintain relevant policies, procedures, objectives, functional plans and budgets.
  • Establish and continuously improve the IT governance framework across global IT operations.
  • Ensure IT governance activities remain aligned with business priorities and organizational objectives.

IT Risk and Compliance Management

  • Lead IT compliance, governance and risk management activities across the organization.
  • Develop and maintain effective IT risk management and compliance programs.
  • Identify potential IT risks, control weaknesses and areas of non-compliance.
  • Define and coordinate corrective actions and continuous improvement initiatives.
  • Work closely with IT, Quality, Validation, Engineering, Information Security, Legal, Data Privacy, Internal Audit and external audit teams.

Regulatory and Framework Compliance

  • Support compliance with applicable pharmaceutical, GxP, nuclear, cybersecurity and IT control requirements.
  • Ensure the appropriate implementation of relevant standards and frameworks, including GAMP 5, 21 CFR Part 11, CSV, CSA, ISO 27001, ITIL, COBIT and NIS2, where applicable.
  • Maintain awareness of regulatory and industry developments that may affect IT governance and compliance activities.
  • Ensure IT processes and systems comply with internal policies, quality requirements and applicable regulations.

Audits and Assessments

  • Plan and oversee IT compliance reviews, internal audits, health checks and risk assessments.
  • Coordinate gap assessments, control reviews and audit-readiness activities.
  • Support internal and external audits and ensure identified findings are addressed appropriately.
  • Monitor the implementation and effectiveness of remediation and improvement plans.

Performance Management and Reporting

  • Define and monitor relevant KPIs, SLAs, metrics and reporting processes.
  • Evaluate the performance and effectiveness of IT governance, compliance and risk management activities.
  • Prepare reports, recommendations and updates for senior management.
  • Use performance data and audit findings to support decision-making and continuous improvement.

IT Communications

  • Develop and oversee the IT communications approach.
  • Ensure IT-related information is accurate, consistent and aligned with organizational objectives.
  • Support effective knowledge sharing and communication across global IT teams and business functions.
  • Ensure communications comply with relevant legal, regulatory and internal requirements.

Supplier and Service Provider Management

  • Manage relationships with external suppliers and service providers.
  • Support supplier selection, contract negotiations and outsourcing activities.
  • Oversee service-level agreements and monitor supplier performance.
  • Identify and manage risks associated with third-party IT services.

Team Leadership

  • Lead, coach and develop the IT governance, risk and compliance team.
  • Allocate responsibilities and ensure effective workload management.
  • Manage employee performance, development and career progression.
  • Support succession planning and long-term capability development within the team.

General Management Responsibilities

  • Manage departmental priorities, objectives and budgets.
  • Support organizational transformation and continuous improvement initiatives.
  • Ensure activities are performed in accordance with relevant quality, safety, health, environmental and company requirements.
  • Promote a strong culture of compliance, accountability and risk awareness throughout the organization.

Requirements

  • Higher vocational education, university degree or equivalent professional experience.
  • At least 10 years of relevant professional experience in IT governance, risk management, compliance, internal controls, audit or a related area.
  • Proven experience in a senior leadership or management role.
  • At least 5 years of experience managing and developing teams.
  • Strong experience with IT governance, IT compliance, risk management, audit programs, internal controls and continuous improvement.
  • Strong understanding of IT infrastructure, IT processes, IT systems and service management environments.
  • Experience working within pharmaceutical, life sciences or another highly regulated industry.
  • Knowledge of GMP compliance and relevant control frameworks or industry standards, such as GAMP 5 and PIC/S.
  • Knowledge of Computer System Validation and assurance methodologies, including CSV and CSA.
  • Experience implementing or managing compliance programs, control frameworks, risk assessments and audit activities.
  • Strong understanding of KPIs, SLAs, performance reporting and budget management.
  • Experience working with internal and external auditors.
  • Excellent analytical, diagnostic and problem-solving skills.
  • Ability to assess complex risks and translate them into practical actions and recommendations.
  • Strong leadership, strategic thinking, planning and organizational skills.
  • Ability to manage change, competing priorities and unexpected or sensitive situations.
  • Excellent communication, collaboration and stakeholder management skills.
  • Ability to influence and work effectively with stakeholders at different organizational levels.
  • Fluent written and spoken English.
  • Willingness to provide a recent criminal record extract (not older than three months).

Desirable Experience

  • Experience with NIS2, PCI DSS, ISO 27001, ITIL or COBIT.
  • Knowledge of SSAE 16, ISAE 3402, SOC 1 or SOC 2.
  • Experience with FDA-related requirements, including 21 CFR Part 11.
  • Experience preparing control narratives, self-assessment documentation or audit evidence.
  • Experience managing outsourcing activities and third-party service providers.
  • Experience supporting automation, digitalization or IT transformation projects.
  • Experience leading change across global or matrix-based organizations.

Benefits

  • Broad range of activities, tasks, and projects
  • Flexible working conditions
  • Paid sick days
  • Vouchers (B-day voucher, wedding, and new born surprise)
  • Contributions to wellness programs (multisport card)
  • Fishing for Friends program – our referral program
  • Further development and professional advancement
  • Friendly and international working environment
  • Company-sponsored events
  • Competitive salary and various benefits

Is IT in your DNA?

From $25, paid onceGet the CV for this job

What happens when you press

One press. We do the rest.

  1. A CV for this posting

    Written against Workable (global search)'s own wording, from every piece of relevant proof in your profile.

  2. 25 readers review it

    Recruiter, hiring manager, skeptic and more read every draft, round after round. You get the best round.

    The review screen in CV Rocket: how each CV was read, round by round.
  3. We apply on Workable (global search)'s form

    Our application engine gets through the hardest forms there are. Where a question needs you, AI suggests the best answer. Don't want us applying from our IP addresses? Use our Chrome extension: we apply straight from your own browser.

    An application in CV Rocket: every answer filled in on the employer's form.
  4. Every reply, sorted

    Workable (global search)'s answer lands in your private mailbox, and we classify it on arrival: interview, question, rejection.

    The CV Rocket inbox: each employer reply classified as an interview, an action or a rejection.
  5. Reply with AI

    AI helps you write the email, checks it and sends it. We show you whether the recruiter read it.

  6. The interview in your calendar

    Full integration with your calendar. The invitation goes straight in.

    An interview invitation in the CV Rocket inbox, added to the candidate's calendar.
Get the CV for this job

From $25 per CV, paid once. No subscription.

Why it works

3×

more interviews than doing it yourself with ChatGPT.

ChatGPT writes a CV and never learns what happened to it. We see every reply. For each CV we know:

  • How it was written, and how the review scored it
  • When we applied, and how long after the posting went up
  • Which posting, which company, which city
  • Who got the interview, and who heard nothing

That is how we know which CVs get called.

Get the CV for this job

From $25 per CV, paid once. No subscription.

The numbers game

More applications. More interviews.

Every application goes out with its own CV, written for that posting and paid once. Send enough of them and the law of large numbers finds you the job.

By hand5–10
With CV Rocket100
applications a day

Nearby

Live postings like this one

Same employer first, then the same role elsewhere.

Before you press

Straight answers

Get the CV for this job

From $25 per CV, paid once. No subscription.

What if my background isn't good enough?

We make the most of the background you have. The CV uses every piece of relevant proof your profile holds, and one of the 25 readers reads your whole profile and flags what the CV left out.

Do you really apply for me?

Yes, on the employer's own form, the hardest ones included. Where a question needs you, you answer it right there and AI suggests the best answer. Don't want us applying from our IP addresses? Use our Chrome extension: we apply straight from your own browser.

Is it a subscription?

No. You pay once per CV, from $25. Every application goes out with its own CV, written for that posting.

One job. One CV.
Paid once.

Pick the posting you want. We write for it, apply for you and catch the reply.

Get the CV for this job

From $25 per CV, paid once. No subscription.