What we are looking for:
- Bachelor’s degree in Computer Science, Information Technology, Engineering, or a related field; a Master’s degree is a plus.
Relevant professional certifications such as:
-
IT Governance/Security: Certified Information Security Manager (CISM), Certified Information Systems Auditor (CISA), Certified in Risk and Information Systems Control (CRISC).
-
IT Service Management: ITIL v4 Expert or Master certification.
-
Compliance: Certifications or extensive practical experience with ISO standards (27001, 22301, 20000) and regulatory frameworks like PCI-DSS and GDPR
Technology Governance & Risk Execution
- Implement and maintain the Technology Risk & Governance Framework across platforms and corporate IT.
Translate standards and regulations (ISO 27001, ISO 20000, ISO 22301, ISO 27701, PCI-DSS, GDPR) into:
-
Engineering and operational standards
-
Platform and infrastructure guardrails
-
Repeatable control procedures
-
Track technology risks, audit findings, and remediation actions, escalating material risks to the CPTO.
-
Is the single DRI to spearhead internal and external audits, regulatory reviews, and assurance activities from a Technology execution perspective.
Security by Design & Control Implementation
Drive effective implementation of security controls across:
-
Identity & Access Management lifecycle
-
Endpoint and device security
-
Cloud and platform environments
-
Govern the lifecycle, adoption, and effectiveness of security tooling within Technology.
-
Coordinate technology-led incident response and post-incident reviews, ensuring remediation actions are delivered and sustained.
Operational Resilience & Service Management
-
Lead and mature IT Service Management (ITSM) processes including Incident, Problem, Change, Asset, and Capacity Management.
-
Monitor and report on service availability, reliability, MTTR, and change success rates across platforms and corporate IT.
-
Own disaster recovery planning, testing, and business continuity readiness for technology services.
-
Drive standardisation and automation to improve service quality, resilience, and operational efficiency.
Corporate Information Technology & End-User Services
-
Provide operational leadership for Corporate IT and end-user technology services across all regions.
-
Ensure secure, efficient, and auditable onboarding and offboarding processes in partnership with People & Culture.
-
Oversee collaboration tools (Google Workspace / Microsoft 365), endpoint management, and workplace technology services.
-
Standardise and optimise corporate IT services to deliver a consistent employee experience across countries.
-
Plan, implement and operate the corporate IT budget ensuring that IT provides state of the art end user services in a cost effective manner.
Vendor, Financial & Stakeholder Management
-
Manage IT vendors and service providers, ensuring SLA adherence, cost effectiveness, and service quality.
-
Own Corporate IT budgets and contribute to technology cost optimisation initiatives.
-
Partner with Finance on forecasting, spend tracking, and ROI visibility.
-
Engage senior stakeholders to align technology services, governance priorities, and business needs.
Team Leadership & Capability Building
-
Lead and develop corporate IT and governance-focused technology teams across multiple countries.
-
Foster a culture of accountability, documentation, continuous improvement, and operational discipline.
-
Build strong working relationships with Engineering, Platform, Security, and Compliance teams.
-
Contribute to the strategic evolution of technology by bringing key insight and strategic input to the wider product and technology strategy.