Job Description
Role Overview
The IT Governance, Risk & Compliance (GRC) Officer is a key member of the EMEA IT
function, providing day-to-day IT governance administration and back-office support to the
Head of Regional IT Governance, Risk & Compliance.
The role is both operational and enabling. It supports the effective execution of IT governance,
risk, and compliance activities across the EMEA region, while also contributing to the ongoing
maturity of the regional IT operating model. A core focus of the role is the production of clear,
practical, and business-facing documentation and reporting—including standard operating
procedures (SOPs), end-user guides, service reports, and operating roadmaps—enabling
consistent execution, informed decision-making, and strong stakeholder outcomes.
The role also provides direct support to regulatory compliance activities for Luxembourg and
other regulated entities, under the direction of Regional IT Governance. This includes IT
governance obligations relating to DORA, the EU Data Act, and IT outsourcing and third-party
oversight.
Success in the role requires strong attention to detail, advanced proficiency with Microsoft
productivity tools, and the ability to translate complex IT processes into clear, professional
materials for both technical and non-technical audiences.
Key Responsibilities
IT Business Administration & GRC Back-Office Support
- Provide day-to-day IT business administration support for EMEA IT governance, risk, and compliance activities.
- Act as a trusted back-office partner to the Head of Regional IT GRC, supporting planning, coordination, reporting, and follow-up of governance activities.
- Coordinate inputs from IT and business stakeholders across multiple countries and time zones.
- Maintain governance artefacts, records, registers, and documentation to ensure information remains accurate, current, and audit-ready.
- Support the coordination and maintenance of regulatory governance artefacts for regulated entities, including registers, evidence sets, and management reporting required under DORA, the EU Data Act, and IT outsourcing frameworks.
IT Operating Model Maturity & Documentation
- Create, maintain, and continuously enhance standard operating procedures (SOPs), end-user guides, and business-facing documentation to support consistent IT processes and decision-making.
- Develop clear, professional service documentation, process flows, roadmaps, and operating model artefacts that enable teams to work effectively and independently.
- Ensure all documentation is practical, accessible, and aligned to IT governance frameworks, policies, and standards.
- Use Microsoft 365 tools—including Loop and SharePoint Online—to structure, publish, and maintain collaborative documentation and knowledge repositories.
IT Governance Frameworks & Standards
- Support the implementation and day-to-day operation of regional IT governance frameworks across EMEA, aligned with global policies and standards.
- Monitor adherence to IT policies, standards, and best practices, identifying and escalating risks or gaps where appropriate.
- Support the consistent application of governance processes across countries, services, and teams.
Governance Reporting & Communications
- Prepare, consolidate, and maintain recurring and ad-hoc governance and service reporting for senior management, clients, and boards.
- Produce high-quality written materials and presentations, including:
- Executive and Board-level reports
- Country-specific IT performance reports
- Client-facing ITSM and service governance reports
- Ensure reporting related to IT performance, risk, compliance, and change is accurate, consistent, traceable, and fit for purpose.
- Support regulatory and management reporting obligations arising from DORA, the EU Data Act, and IT outsourcing oversight, including evidence tracking and status reporting.
IT Project, Change, Risk & Compliance Support
- Track and report on IT change-related risks, issues, and outcomes across the EMEA region.
- Support IT managers in identifying, assessing, and managing IT risks.
- Maintain the EMEA IT Risk Register, ensuring risks and mitigation actions are clearly documented and actively tracked.
- Assist with IT risk assessments, audits, and compliance activities, including GDPR and other applicable regional regulations.
- Support regulatory compliance activities for in-scope entities, including DORA Register of Information inputs, third-party and outsourcing governance, and tracking of remediation actions.
Continuous Improvement
- Identify opportunities to improve governance processes, documentation quality, reporting standards, and operational efficiency.
- Support the implementation of agreed governance, risk, and compliance improvements.
- Promote consistency, accuracy, and professionalism across all IT governance deliverables.
- Contribute to the ongoing maturity of IT governance and regulatory compliance practices in response to evolving regulatory requirements.
Key Competencies
- Strong organisational and administrative capability
- Excellent attention to detail and quality
- High level of ownership and accountability
- Ability to work effectively across multi-country and multicultural teams
- Strong prioritisation skills in a fast-paced regional environment
- Integrity, professionalism, and reliability
Expected Behaviours
In addition to demonstrating the Group Values (Authentic, Bold, and Collaborative), the role
holder is expected to demonstrate:
- Strong teamwork and relationship-building skills
- Ownership and follow-through
- Clear, structured, and professional communication
- Proactive problem-solving
- Flexibility and adaptability
- Confidence when engaging with senior stakeholders
Key Skills & Tools
- Advanced proficiency in PowerPoint (executive-level presentations and reporting)
- Practical experience with Microsoft Loop and SharePoint Online for documentation and collaboration
- Ability to produce clear, structured written content for both technical and non-technical audiences
Qualifications
Education / Professional Qualifications
- Bachelor’s degree in Information Technology, Business Administration, or a related discipline
- ITIL or similar certifications are an advantage
Background Experience
- 3–5 years’ experience in IT governance, IT operations, risk management, or compliance
- Proven experience producing structured management and board-level reports
- Exposure to governance and regulatory requirements in a regional or international (EMEA) context is an advantage
- Strong analytical, organisational, and independent working capability
- Proficiency in IT service management and reporting tools
- Strong written and verbal communication skills
Company, Product & Market Knowledge
- Experience working in a complex, multi-country organisation (professional services, financial services, or BPO environment preferred)
- Comfortable operating in a global, fast-paced environment
Language Requirements
- Fully proficient in spoken and written English
Additional Notes
- The role is based in the Manila GCD and requires close alignment with EMEA time zones to support the IT Governance, Risk & Compliance function.
Additional information
OUR COMMITMENT TO YOU AND THE ENVIRONMENT
Sustainability is integral to our strategy and operations. Our sustainability depends on us building and maintaining long-term relationships with all our stakeholders – including our employees, clients, and local communities – while also reducing our impact on our natural environment.
There is always more we can, and should do, to improve – whether in relation to our people, our clients, our planet, or our governance. Our ongoing success as a business depends on our sustainability and agility in a changing and challenging global landscape. We’re committed to fostering an inclusive, equitable and diverse culture for our people, led by our Diversity, Equity, and Inclusion steering committee.
Our learning and development programmes and systems (including PowerU and MyCampus) enable us to invest in growing our employees’ careers, while our hybrid working approach supports our employees in achieving balance and flexibility while remaining connected to their colleagues. We want to empower our 6,500+ employees - from 94 nationalities, across 24 countries - to each achieve their potential. Through IQ-EQ Launchpad we support women managers launching their first fund, in an environment where only 15% of all private equity and venture capital firms are gender balanced.
We’re committed to growing relationships with our clients and supporting them in achieving their objectives. We understand that our clients’ sustainability and success lead to our sustainability and success. We’re emotionally invested in our clients right from the beginning.
Company description
We’re a leading Investor Services group offering end-to-end services in administration, accounting, reporting, regulatory and compliance needs of the investment sector worldwide. We employ a global workforce of 6,500+ people across 24 jurisdictions and have assets under administration (AUA) exceeding US$857 billion. We work with 13 of the world’s top-15 private equity firms.
Our services are underpinned by a Group-wide commitment to ESG and best-in-class technology including a global data platform and innovative proprietary tools supported by in-house experts.
Above all, what makes us different is our people. Operating as trusted partners to our clients, we deliver intelligent solutions through a combination of technical expertise and strong relationships based on deep client understanding.
We’re driven by our Group purpose, to power people and possibilities.
< Back to search results