Prada IT Governance Specialist
Closed The candidacy window for this position at Prada has closed.
While this position is no longer receiving submissions as of May 14, 2026, we invite you to explore further opportunities at Prada or browse all open roles.
Continue Your Search
We invite you to review more currently available roles:
- Seniority
- Mid-Level
- Department
- IT & Technology Systems
- Industry
- Fashion, Apparel & Leather Goods
- Posted
- May 14, 2026
About Prada
A Milan-based luxury fashion house operating across retail, wholesale and digital channels. The employer combines artisanal heritage with ongoing digital transformation, requiring best-in-class IT governance to protect brand assets, customer data and omnichannel operations. The role is likely aligned with a global luxury group or an established maison with international reach.
Confidential luxury house — Milan: IT Governance Specialist to lead IT risk, compliance and GRC for a Milan-based fashion maison.
Role & Responsibilities
- Define, maintain and govern IT policies, standards and procedures aligned with corporate IT strategy and regulatory requirements.
- Lead enterprise IT risk assessments, identify control gaps and coordinate remediation plans with IT and business stakeholders.
- Operate and configure GRC tooling to track risks, controls, remediation activities and audit findings.
- Coordinate internal and external IT audits (including ISO 27001, PCI-DSS and third-party assessments) and prepare executive-level reporting.
- Develop and deliver governance-related training, awareness campaigns and control self-assessments for IT and business teams.
- Support change control, supplier security reviews and security-by-design activities for new IT projects and third-party integrations.
- Produce regular management reporting and KPIs on IT risk posture, compliance status and remediation progress.
Qualifications
- Proven track record in IT governance, risk management or IT compliance within complex, multi-channel organisations.
- Strong knowledge of governance and security frameworks such as COBIT, ITIL and ISO 27001.
- Practical experience with GRC platforms (e.g., RSA Archer, ServiceNow GRC, SAP GRC) or comparable tooling.
- Excellent stakeholder management and communication skills, able to liaise across IT, legal, data protection and business functions.
- Professional certifications preferred: CISA, CISSP, ISO 27001 Lead Implementer/Auditor or COBIT certification.
- Fluent business-level English; Italian preferred for local stakeholder engagement.
Skills
Experience
Typically 3–6 years of progressive experience in IT governance, IT risk, information security or IT compliance, ideally in retail, fashion or a consumer-facing enterprise with regulated data processing and multi‑channel IT environments.
Education
Bachelor’s degree in Computer Science, Information Systems, Information Security, Engineering or a related discipline; equivalent professional experience accepted.
Workplace
The role is situated in Milan, Lombardy, Italy.
Culture
The workplace blends a respect for creative heritage with a pragmatic drive for digital maturity; teams are cross‑functional, fast‑paced and quality‑obsessed. Employees are expected to combine technical rigour with diplomatic stakeholder engagement to protect the brand while enabling business initiatives.
About Cerulean
Cerulean is the definitive career portal for the global luxury industry. We match exceptional professionals with exclusive opportunities at the world's most prestigious brands. From haute couture and fine watchmaking to prestige beauty, hospitality, and boutique retail, Cerulean centralises luxury employment to help you find the career for which you were destined.
Frequently Asked Questions
The luxury industry is characterised by a diverse and nuanced nomenclature. Esteemed houses frequently employ proprietary terminology, and even within a single organisation like Prada, titles may vary across global markets to reflect local conventions. To ensure absolute clarity, Cerulean assigns a standardised, industry-coherent canonical title to every listing. However, it is worth noting that this role is functionally synonymous with «IT Governance Analyst», «IT Risk & Compliance Specialist», «GRC (IT) Specialist», «IT Compliance Analyst», and other variations. Our sophisticated search architecture anticipates these variations, ensuring that inquiries using related terms will seamlessly yield the exact roles you desire.