At a Glance
- Tasks: Lead governance, risk, and compliance initiatives in a dynamic clinical research environment.
- Company: Join Perceptive, a trailblazer in biopharmaceutical innovation.
- Benefits: Enjoy 25 days holiday, health plans, and a generous pension scheme.
- Why this job: Make a real impact on healthcare by ensuring compliance and security.
- Qualifications: Experience in GRC, strong communication skills, and relevant certifications.
- Other info: Be part of a diverse team with opportunities for growth and development.
The predicted salary is between 36000 - 60000 £ per year.
We are on a mission to change the future of clinical research. At Perceptive, we help the biopharmaceutical industry bring medical treatments to the market, faster. Our mission is to change the world but to do this, we need people like you.
What can we offer you? Apart from job satisfaction, we can offer you:
- 25 days' holiday (with the option to buy more)
- Health Cash Plan
- Optional private health, dental insurance, and health screens
- Cycle to work scheme
- Generous pension scheme with up to 10% employer contribution
- Life assurance
- Season ticket loan
About the role:
Job Purpose: The Manager, Governance Risk & Compliance (GRC) is responsible for developing, implementing and maintaining governance, risk and compliance frameworks within Perceptive's security function. Managing a small team, this role ensures adherence to ISO 27001 standards, manages internal and external audits and reviews contractual agreements (MSAs) for compliance with security and regulatory requirements.
Key Responsibilities:
- Governance & Framework Management: Maintain and enhance the organization's Information Security Management System (ISMS) aligned with ISO 27001. Develop and update security policies, standards, and procedures. Ensure compliance with regulatory and contractual obligations.
- Risk Management: Identify, assess, and monitor information security risks. Maintain risk registers and ensure mitigation plans are in place. Support business units in risk treatment and reporting.
- Compliance & Audits: Plan and execute internal audits for ISO 27001 and other relevant frameworks. Coordinate external certification audits and liaise with auditors. Track and manage audit findings and corrective actions.
- Contractual Reviews: Review Master Service Agreements (MSAs), Statements of Work (SOWs), and vendor contracts for security and compliance clauses. Collaborate with Legal and Procurement teams to ensure security requirements are embedded in agreements. Advise on third-party risk management processes.
- Training & Awareness: Conduct security awareness sessions related to governance and compliance. Provide guidance to stakeholders on compliance obligations. Manage Cyber awareness and phishing simulation platforms.
- Reporting & Metrics: Prepare regular compliance and risk reports for senior management. Monitor key performance indicators (KPIs) for GRC activities.
Functional Competencies (Technical knowledge/Skills): Ability to manage internal and external audits as they relate to cyber security. Excellent interpersonal, verbal and written communication skills. A flexible attitude with respect to work assignments and new learning. Ability to manage multiple and varied tasks with enthusiasm and prioritise workload with attention to detail. Ability to identify and implement process improvements. Ability to manage a globally distributed team, including motivating, developing and coordinating team members. Maintains an up-to-date awareness of trends, tools, technology, techniques and processes that affect cyber security GRC within the Life sciences domain.
Experience, Education, and Certifications: Proven experience of leading and mentoring colleagues. Experience of regulated environments (GxP, Financial, etc.). Professional certifications such as ISO 27001 Lead Implementer/Auditor, CISM, CRISC, or similar. Strong understanding of ISO 27001, risk management frameworks, and audit processes. Experience reviewing contracts and MSAs for security compliance. Background in IT security governance within a global organization. Knowledge and understanding of regulations and frameworks relating to data protection and cyber security (GDPR, SOC 2, NIS2, etc.). Experience with GRC tools and platforms. Bachelor's degree or Engineering in IT/computer science/electronics. English: Fluent.
Come as you are. We are proud to be an Equal Employment Opportunity employer. We do not discriminate based upon race, religion, colour, national origin, gender (including pregnancy, childbirth, or related medical conditions), sexual orientation, gender identity, gender expression, age, status as a protected veteran, status as an individual with a disability, or other applicable legally protected characteristics.
Manager Governance Risk & Compliance (GRC) employer: Calyx
Contact Detail:
Calyx Recruiting Team
StudySmarter Expert Advice 🤫
We think this is how you could land Manager Governance Risk & Compliance (GRC)
✨Tip Number 1
Network like a pro! Reach out to people in the industry, especially those already working at Perceptive. A friendly chat can give you insider info and maybe even a referral!
✨Tip Number 2
Prepare for the interview by brushing up on your knowledge of ISO 27001 and risk management frameworks. We want to see that you’re not just familiar with the terms but can also discuss how they apply in real-world scenarios.
✨Tip Number 3
Show off your leadership skills! Be ready to share examples of how you've managed teams or projects in the past. We love candidates who can inspire and motivate others.
✨Tip Number 4
Don’t forget to apply through our website! It’s the best way to ensure your application gets seen by the right people. Plus, it shows you’re genuinely interested in joining our mission.
We think you need these skills to ace Manager Governance Risk & Compliance (GRC)
Some tips for your application 🫡
Tailor Your CV: Make sure your CV is tailored to the Manager, Governance Risk & Compliance role. Highlight your experience with ISO 27001 and any relevant audits you've managed. We want to see how your skills align with our mission!
Craft a Compelling Cover Letter: Your cover letter is your chance to shine! Share your passion for governance, risk, and compliance, and explain why you’re excited about joining us at Perceptive. Let your personality come through!
Showcase Your Team Management Skills: Since this role involves managing a small team, be sure to highlight your leadership experience. Talk about how you've motivated and developed colleagues in the past. We love seeing strong team players!
Apply Through Our Website: Don’t forget to apply through our website! It’s the best way for us to receive your application and ensures you’re considered for the role. We can’t wait to hear from you!
How to prepare for a job interview at Calyx
✨Know Your GRC Stuff
Make sure you brush up on your knowledge of governance, risk, and compliance frameworks, especially ISO 27001. Be ready to discuss how you've implemented these in past roles and how they relate to the job at Perceptive.
✨Showcase Your Leadership Skills
As a Manager, you'll be leading a team, so highlight your experience in mentoring and developing colleagues. Prepare examples of how you've motivated teams and managed diverse tasks effectively.
✨Prepare for Audit Scenarios
Expect questions about managing internal and external audits. Think of specific instances where you've successfully navigated audits or improved compliance processes, and be ready to share those stories.
✨Understand the Bigger Picture
Demonstrate your understanding of how GRC fits into the broader context of clinical research and biopharmaceuticals. Show that you’re not just focused on compliance but also on how it impacts the company's mission to bring medical treatments to market faster.