Smurfit Kappa
Policy & Regulations Manager

How your CV stacks up
Upload your CV to see how well it fits this job role
?%
Location: Europe based - UK or Ireland
Smurfit Westrock is a global leader in sustainable paper and packaging solutions, operating in more than 40 countries and serving customers across a wide range of industries. Our purpose is simple yet ambitious: Innovate Boldly. Package Sustainably.
By combining deep industry expertise, advanced technology, and a commitment to sustainability, we help businesses solve complex challenges while creating packaging solutions that protect products, people, and the planet. Guided by our values of integrity, respect, accountability, and excellence, we are transforming the future of packaging and building a more sustainable world.
The Team
The Cybersecurity Compliance team plays a critical role in protecting Smurfit Westrock's global business operations by ensuring that cybersecurity policies, standards, and regulatory requirements are embedded across the organisation. Working closely with Legal, Privacy, IT, Internal Audit, Risk, and Security teams, the function provides expert guidance on cybersecurity compliance, governance, risk management, and regulatory obligations. The team monitors an evolving regulatory landscape, drives policy maturity, supports audit readiness, and helps ensure that cybersecurity is integrated into strategic business initiatives.
Role Summary
As our Policy & Regulations Manager, you will lead the development, governance, and continuous evolution of our cybersecurity policy framework, helping to ensure Smurfit Westrock remains compliant, secure, and prepared in an increasingly complex regulatory environment.
Reasons to use Rodeo
I’m in my final year doing Economics and I don’t know whether to apply for grad schemes now or do a masters first. What do you think?
Honest answer — it depends on where you want to end up. A lot of top grad schemes (Big 4, civil service, banking) don’t need a masters. Let’s look at the ones you’d be competitive for now, and we can decide if a masters actually adds anything.
Also worth knowing: most autumn 2026 applications are open now. Timing matters more than you think.
Start with a chat, not a search bar
Grad scheme, placement, apprenticeship? Not sure what you want yet — that's fine. Your agent talks it through with you and turns "I have no idea" into a shortlist.
Graduate Consultant — 2026 Scheme
Why you're a good match
StrongYour economics background and your summer at a regional bank line up with what PwC looks for on the consulting scheme. Applications close in four weeks.
See breakdownIt searches the market for you
Every day your agent scans the market matching roles against what actually matters to you, not just keywords on a CV.
Why you're a good match
You’ve got the grades and the economics background, and your bank internship is exactly the experience this scheme looks for. Apply soon — deadlines close within the month.
Experience fit
Your summer at the bank plus your econometrics coursework map directly to the day-one responsibilities on this scheme — client modelling, market briefings, and deal support.
Only hits
No noise. No "maybe this fits." Just roles with a clear explanation of why they're right — and where to focus when applying.
You will provide expert advice to stakeholders across the organisation while influencing strategic initiatives and strengthening the company's overall cybersecurity posture.
What You'll Be Doing
- Leading the design, implementation, maintenance, and continuous improvement of cybersecurity policies, standards, procedures, and controls.
- Monitoring emerging cybersecurity laws, regulations, and industry standards and assessing their impact on the organisation.
- Governing and maintaining a comprehensive inventory of cybersecurity regulatory, commercial, and organisational requirements.
- Providing expert guidance to business and technology stakeholders on cybersecurity compliance and risk management.
- Partnering with Legal, Privacy, IT, Security, and Risk teams to strengthen compliance practices and support remediation activities.
- Leading internal audit readiness activities and supporting external audits, regulatory assessments, and certification programmes.
- Developing and delivering cybersecurity compliance awareness and training initiatives across the organisation.
- Investigating compliance concerns, identifying root causes, and coordinating corrective actions.
- Supporting strategic cybersecurity programmes to ensure compliance requirements are integrated into project delivery and business initiatives.
- Tracking, analysing, and presenting compliance metrics, trends, findings, and risks to senior stakeholders.


Get help with your application
Your very own career expert that helps elevate your application to the next level.
Essential Qualifications & Experience
To be successful in this role, you will bring:
- Bachelor's degree in Information Technology, Cybersecurity, Risk Management, Audit, Compliance, or a related discipline.
- Significant experience in cybersecurity compliance, governance, audit, risk management, or information security.
- Strong knowledge of cybersecurity frameworks and standards such as NIST, ISO 27001, PCI DSS, SOX, and ITIL.
- Experience interpreting and implementing regulatory compliance requirements within complex organisations.
- Demonstrated experience developing policies, standards, controls, and governance processes.
- Strong stakeholder management skills with the ability to influence and collaborate across technical and non-technical teams.
- Excellent analytical, problem-solving, communication, and report-writing skills.
- Experience supporting audits, assessments, regulatory reviews, or certification programmes.
- Strong organisational skills with the ability to manage multiple priorities and deadlines.
- Professional certifications such as CISA, CIA, CPA, CISSP, CRISC, or equivalent would be advantageous.
“It took my CV and asked me questions relevant to understanding what kind of jobs to suggest for me. Suggestions were almost perfect. Jobs were exactly what I’ve been looking for.”
Jessica, London
Skills
Location