Skip to main content
Search roles

Director, Data & AI Risk Management

Location London, England, United Kingdom Job ID R-260176 Date posted 16/09/2026

We're building a connected, end-to-end Enterprise AI engine - uniting data foundations, AI technology, process reinvention, and business-facing AI to accelerate results across the whole value chain. Success depends on being exceptional connectors: you'll actively leverage existing capabilities, celebrate and promote reuse, export breakthrough ideas across geographies and functions, and obsess over scaling impact rather than building in isolation. If you thrive in high-collaboration environments where your role is to turn complex, cross-functional problems into reusable, enterprise-wide capabilities - and where the measure of success is adoption and scale, not just innovation - you'll have the platform (and sponsorship) to make it real.    

The Director, Data & AI Risk Management, leads and delivers enterprise risk management activities that help AstraZeneca identify, assess, govern, report, and reduce Data & AI risk. 

The role provides practical risk advisory, consulting, governance, and risk appetite support across regulatory compliance, data protection, AI governance, and related risk domains. 

Reporting to the Senior Director, Data & AI Risk Management, the Director partners across Data & AI Trust and Assurance and with business and enabling functions to translate complex risk and regulatory expectations into clear decisions, proportionate mitigations, and measurable improvements in risk posture. 

The role also leads cross-functional projects and supports enterprise governance forums and Enterprise Risk Management reporting, enabling responsible and confident use of Data & AI at scale. 

Typical Accountabilities 

  • Provide trusted risk advisory, consulting, and risk appetite support across Data & AI risks, helping stakeholders make timely, proportionate, and well-informed decisions. 

  • Provide governance and business analysis support across regulatory compliance, data protection, AI governance, and other Data & AI risk areas, translating complex requirements into clear risk positions, decisions, and actions. 

  • Lead and/or project manage priority initiatives across Data & AI Trust and Assurance, irrespective of team boundaries, including Standards and Controls rollout and regulatory compliance programmes covering requirements such as the US Data Security Program, EU AI Act, European Health Data Space, and other emerging obligations. 

  • Improve visibility of Data & AI risk posture by developing clear narratives, indicators, dashboards, and insights on material exposures, trends, mitigations, residual risk, and progress against appetite. 

  • Engage business and functional stakeholders to build relationships and understand risk exposure, challenge the adequacy of mitigations, agree pragmatic remediation, and help drive residual risk and overall risk posture down. 

  • Lead selected aspects of Data & AI risk aggregation, analysis, and reporting for Enterprise Risk Management, senior leadership, and governance bodies. 

  • Facilitate risk assessments, workshops, and decision forums for complex or novel Data & AI use cases, balancing enablement, compliance, and protection of patients, the company, and its information and intellectual property. 

  • Synthesize complex issues into concise, executive-ready narratives; anticipate stakeholder concerns; navigate ambiguity; and influence decisions in high-stakes forums. 

  • Partner with Regulatory Intelligence, Legal, Compliance, Privacy, Cyber Risk, Enterprise Risk Management, Data Offices, and risk teams in R&D, Operations, Commercial, Enabling Units, and other business functions to align risk approaches and accountabilities. 

  • Work across Data & AI Trust and Assurance teams to accomplish shared goals, resolve cross-cutting issues, and deliver integrated outcomes across policy, standards and controls, assurance, monitoring, risk, and regulatory readiness. 

  • Identify opportunities to simplify and continuously improve Data & AI risk management processes, governance, reporting, and stakeholder experience while preserving effective oversight. 

  • Promote a culture of responsible, compliant, and value-focused use of Data & AI, demonstrating AstraZeneca values in all interactions. 

Education, Qualifications, Skills, and Experience 

Essential

  • Bachelor's degree in business administration, Risk Management, Information/Data Science, Informatics, Computer Science, Economics, Law, or a related discipline, or equivalent relevant experience. 

  • Significant experience in risk management, assurance, governance, regulatory compliance, or second-line oversight within a complex, global organisation. 

  • Demonstrated experience assessing and managing data, technology, digital, and/or AI risks and translating complex issues into pragmatic business decisions. 

  • Strong project leadership and project management capability, including delivery through cross-functional and matrixed teams, such as Regulatory Compliance, areas of organisational risk, AI governance, or related disciplines. 

  • Experience providing risk advisory or consulting support, including risk appetite, mitigation, escalation, and risk acceptance discussions. 

  • Working knowledge of relevant Data & AI regulatory and compliance requirements, such as the US Data Security Program, EU AI Act, European Health Data Space, GDPR, GxP, NIS2, or comparable frameworks. 

  • Experience with governance forums, executive reporting, risk indicators, dashboards, or Enterprise Risk Management processes. 

  • Strong business analysis, facilitation, and problem-solving skills, with the ability to structure ambiguity and establish clear ownership and actions. This includes working across domains such as regulatory compliance, data protection, AI governance, or related disciplines to translate requirements into clear risk positions, decisions, accountabilities, and actions. 

  • Demonstrated experience developing risk reporting to support senior management decision-making. 

  • Proven ability to build partnerships across Legal, Compliance, Privacy, Cyber Security, Enterprise Risk Management, Data Offices, technology, and business functions. 

  • Excellent written and verbal communication, with the credibility to influence senior stakeholders and present concise, decision-oriented recommendations. 

  • Strong collaboration, negotiation, and change leadership skills, with a practical, proportionate, and enablement-focused mindset. 

Desirable

  • Master’s degree or advanced qualification in Business Administration, Risk Management, Information/Data Science, Informatics, Computer Science, Economics, Law, or a related discipline. 

  • Experience in life sciences, healthcare, or another highly regulated industry. 

  • Practical knowledge of ISO/IEC 42001, the NIST AI Risk Management Framework, or recognised enterprise risk and control frameworks. 

  • Data, AI, privacy, compliance, audit, governance, or risk management education and professional certifications. 

  • Experience implementing or assessing standards and controls and linking regulatory obligations, risks, controls, assurance, and reporting. 

  • Knowledge of key pharmaceutical business processes across R&D, Operations, Commercial, and Enabling Units.

Why AstraZeneca?   

At AstraZeneca we’re dedicated to being a Great Place to Work. Where you are empowered to push the boundaries of science and unleash your entrepreneurial spirit. There’s no better place to make a difference to medicine, patients and society. An inclusive culture that champions diversity and collaboration, and always committed to lifelong learning, growth and development. We’re on an exciting journey to pioneer the future of healthcare.   

When we put unexpected teams in the same room, we unleash bold thinking with the power to inspire life-changing medicines. In-person working gives us the platform we need to connect, work at pace and challenge perceptions. That's why we work, on average, a minimum of three days per week from the office. But that doesn't mean we're not flexible. We balance the expectation of being in the office while respecting individual flexibility. 

#EAI 

Date Posted

17-sept-2026

Closing Date

06-oct-2026

Our mission is to build an inclusive and equitable environment. We want people to feel they belong at AstraZeneca and Alexion, starting with our recruitment process. We welcome and consider applications from all qualified candidates, regardless of characteristics. We offer reasonable adjustments/accommodations to help all candidates to perform at their best. If you have a need for any adjustments/accommodations, please complete the section in the application form.

Join our Talent Network

Be the first to receive job updates and news from AstraZeneca

Sign up
Glassdoor logo Rated four stars on Glassdoor

Great culture, great work assignments, supportive management. Rotation opportunity within the company. They value our people.