Technology Standards & Control Framework Development Lead (Bengaluru)

Technology Standards & Control Framework Development Lead (Bengaluru)

26 Aug
|
Haleon
|
Bengaluru

26 Aug

Haleon

Bengaluru

Job Summary

The Standards Control Framework Development Lead is responsible for developing, evolving, and maintaining Haleon's Digital Technology Written Standards and the enterprise Technology Control Framework across IT and OT environments. This role ensures that standards are clear, actionable, adoptable, and aligned with global regulatory, cybersecurity, privacy, SOx, GxP, and broader compliance requirements. It partners with domain experts, risk teams, control owners, architects, and engineering groups to translate regulatory obligations and risk expectations into practical, modern, and scalable standards and control requirements. The role governs the lifecycle of standards and supports their adoption across DT through effective communication, alignment with tooling, and integration into the Digital Technology Management System (DTMS). It also drives simplification, consolidation, and continuous improvement of the control framework, ensuring that controls are efficient, non-duplicative, and aligned to a unified methodology. The role acts as a key point of integration between Written Standards, control design, regulatory requirements, and the enterprise GRC platform, ensuring that master controls are well-designed, up-to-date, accurately mapped, and operationally embedded.

Responsibilities

- Develop, define, and maintain DT Written Standards that incorporate regulatory, cybersecurity, privacy, SOx, GxP, and industry best-practice requirements, ensuring alignment with Haleon s technology and risk strategy.
- Design, maintain, and continuously enhance the DT Control Framework, ensuring controls are risk-based, clear, productive, non-duplicative, and aligned to Written Standards and regulatory obligations.
- Govern the lifecycle of standards and controls within the Digital Technology Management System (DTMS), ensuring version control, ownership, review cycles, and change governance are effectively managed.
- Translate regulatory and compliance requirements (e.g., SOx, GxP, GDPR, cybersecurity regulations, AI regulations, ESG, ABAC, sanctions) into actionable, scalable standards and control requirements.
- Collaborate with risk, tooling, advisory, and assurance teams to ensure Written Standards and Control Framework updates flow consistently into GRC tooling, risk assessments, project assurance,



and BAU operating processes.
- Drive simplification and continuous improvement, eliminating outdated standards, redesigning complex requirements, rationalising controls, and ensuring new technologies and ways of working (e.g., cloud, DevSecOps) are reflected in standards and controls.

Business Expertise

- Deep understanding of regulatory requirements (SOx, GxP, GDPR, cybersecurity frameworks) and ability to translate them into streamlined, actionable standards.
- Strong working knowledge of Information Security and Risk Management principles, including ISO 27001, NIST, and ITGC expectations.
- Expertise in control framework design, configuration of GRC platforms, and mapping of master controls across domains.
- Solid understanding of DT operating models, including engineering, architecture, and product-centric delivery, to ensure standards are practical and adoptable.
- Awareness of technology, healthcare, and consumer-health industry trends, enabling proactive updates and alignment to emerging regulations and compliance risks.
- Excellent ability to distil complex regulations into simplified standards that enable operational efficiency, business agility, and robust compliance.
- Strong relationship-building and influencing skills, able to gain alignment across senior stakeholders and drive standard adoption across diverse teams.
- Regularly addresses complex regulatory interpretation challenges, ensuring that evolving global requirements are integrated into standards and controls without adding unnecessary operational complexity.
- Balances competing priorities across DT, designing standards that satisfy assurance and regulatory demands while remaining realistic for product and engineering teams.
- Requires innovative thinking to simplify and streamline standards, remove redundant requirements, and redesign controls to be more automated, preventative, or integrated into technology processes.




- Tackles cross-functional misalignments and integrates multiple frameworks (SOx, GxP, cybersecurity, privacy) into a harmonised DT-wide standard set.
- Navigates a dynamic landscape of regulatory updates, emerging technologies, and evolving risk exposure, requiring proactive and strategic updates to standards and frameworks.
- Enterprise-wide impact across Haleon s Digital Technology organisation, as Written Standards and the Control Framework drive how compliance and risk governance are operationalised globally.
- Ensures the business can maintain regulatory adherence, meet external audit expectations, and avoid compliance breaches or operational disruptions.
- Influences how technology teams design, deliver, and operate digital solutions by embedding high-quality, consistent standards.
- Supports the broader risk and compliance strategy, ensuring effective control governance and alignment across multiple assurance and oversight functions.
- Impacts strategic decision-making related to technology design, cloud adoption, engineering approaches, and enterprise controls.
- Engages with auditors and regulators to demonstrate robust risk governance and compliance readiness.

Interactions / Interpersonal Skills

- Extensive interaction with architects, engineering teams, security, privacy, quality, internal audit, and risk compliance stakeholders.
- Collaborates closely with Risk Oversight Management teams to ensure risks inform standards and the control framework.
- Collaborates closely with Control Assurance Advisory teams to ensure controls derived from standards are testable, efficient, and aligned.
- Collaborates closely with Risk Compliance Tooling teams to ensure master controls and mappings are maintained and accurately reflected in GRC tooling.
- Collaborates closely with Security Training teams to cascade standards and drive adoption.
- Strong communication, negotiation, and influence required to drive alignment and adoption across global, multidisciplinary stakeholders.

Disclaimer: This job posting has been aggregated from external source. Role details, content, and availability are subject to change. Applicants are advised to confirm the latest information directly on the company website before applying.

📌 Technology Standards & Control Framework Development Lead (Bengaluru)
🏢 Haleon
📍 Bengaluru

Reply to this offer

Impress this employer describing Your skills and abilities, fill out the form below and leave Your personal touch in the presentation letter.

Subscribe to this job alert:

Get the latest job offers by email for: technology standards & control framework development lead (bengaluru) / bengaluru

Subscribe to this job alert:

Get the latest job offers by email for: technology standards & control framework development lead (bengaluru) / bengaluru