“We needed to find solutions to a variety of issues whilst being a complex business, operating in a 24/7 environment. Stripe OLT listened and understood immediately the challenges we faced.”
Governance, Risk & Compliance Consultant
The Role
The successful candidate will have proven experience in consulting at the Board level with clients ranging from SMEs in the private sector to large public sector organisations and will be able to demonstrate the ability to build and manage a team effectively.
- Existing outsourced DPIA Management contracts – developing this into a Virtual Data Protection Officer service
- a growing pipeline of ISO 27001 Auditing and Implementation – developing this into a Virtual CISO service
- You will work closely with the Security and IT teams to implement and maintain security controls, policies, and procedures.
who we are looking for.
You will work closely with the Security and IT teams to implement and maintain security controls, policies, and procedures.
Roles and responsibilities
- Developing an ISO 27001 Implementation programme
- Managing the existing Internal Audits Managed Service offering.
- Establishing ROPA
- Establishing DPIA questionnaires and processes
- Performing DPIAs
- Designing and implementing Performing Supplier due diligence processes.
- Oversee our organization’s information security management system (ISMS) in accordance with ISO 27001 standards.
- Develop and maintain information security policies and procedures to protect the organization’s assets and data from cyber threats in accordance with industry standards and regulatory requirements.
- Conduct risk assessments, manage the company Risk Register and Risk Treatment Plan, and oversee the programme of in-house and customer-facing ISO 27001 Internal Audits.
- Prepare and present security reports for senior management and board members on the status of the organization’s information security program.
- Provide guidance and support to all business units to ensure compliance with information security policies and procedures.
- Review and approve security-related elements of vendor contracts and manage the security elements of the Supplier Onboarding and System Onboarding processes.
- Work with IT teams to ensure that all security measures are properly implemented and integrated into the organization’s IT infrastructure.
- Evaluate and report on the effectiveness of the organization’s ISMS, including identifying risks and areas for improvement.
- Assist in investigations of Security Incidents and implementing corrective actions.
- Manage relationships with external certification bodies, auditors, and other stakeholders.
- You will have overall responsibility for the internal Data Protection function at Stripe OLT.
Key Qualities
- Passion and knowledge for Data Protection
- Willingness to learn other areas such as ISO 27001
- Exceptional task management skills.
- Methodical and detail-oriented approach.
- Strong process-driven mindset.
- Confident presentation abilities.
- Outstanding interpersonal and communication skills.
- Sociable, with the ability to fluently discuss data protection with senior client staff and internal leadership.
Benefits
- Permanent role with a competitive salary
- Bonus scheme
- Training– full on-site training will be provided
- 25 days holidays, plus bank holidays
- Enhanced pension plan
- Private Healthcare (following probation)
- Regular staff socials
- Unlimited fruit, tea and coffee
- Cycle to Work Scheme
Founded in 2004, we have 18 years of extensive technology experience, specialising in secure, cloud-first Microsoft technologies.
✅ We take ownership
✅ We create strong partnerships
✅ We act with integrity
✅ We drive client success