Compliance Manager - ENGINEERINGUK
  • Dublin, Leinster, Ireland
  • via BeBee.com
-
Job Description

Compliance Manager - Information Security: Shape and update compliance frameworks, set policies, assess risks, and execute compliance plans to foster a strong compliance culture and provide expert advice.

As a key player in our Three Lines of Defence model, you will ensure operational assurance and offer subject matter expertise to enhance compliance maturity. Your efforts will help us deliver better outcomes by embedding risk and compliance policies and engaging first-line management.

Key Activities & Responsibilities:

  • Implement Risk Frameworks: Oversee risk and group frameworks, including event reporting, emerging risks, risk appetite, risk modelling, and scenario analysis.
  • Cultivate Risk Awareness: Foster a risk-aware culture, providing assurance and consultation.
  • Monitor Compliance: Audit and ensure compliance at the first level, closing identified gaps.
  • Standardise Procedures: Develop and execute consistent regulatory procedures across Delivery and accounts.
  • Assess Compliance Maturity: Evaluate and enhance compliance maturity with Country Delivery leads and Operational Directors.
  • Support Information Security: Aid Group Heads in developing first-line capabilities for Information Security, Data Privacy, PCI DSS, and ISO27001.
  • Regulatory Changes: Review and analyse regulatory changes, providing necessary training.
  • Incident Management: Design and implement procedures for effective incident management.
  • Strategic Compliance Management: Align compliance strategies with business priorities to drive performance.
  • Monitor KPIs: Track and report risk-related KPIs at Account and Country levels.
  • Assurance: Facilitate compliance audits and risk reviews.
  • Policy: Oversee risk management at the account level and oversee policy governance.
  • Programme & Compliance: Assist the Country Delivery Head with new business and programme risk assessment and monitoring.

The Key Skills you will bring:

  • Senior Management Collaboration: Experience in designing, embedding, and monitoring compliance with senior management.
  • Risk Recognition: Identify and prioritise emerging and existing risks.
  • Support & Challenge: Effectively support and challenge senior management on compliance matters.
  • Risk Resilience Culture: Develop a culture of risk resilience through advice and constructive challenge.
  • Training & Awareness: Deliver tailored training programs on regulatory compliance.
  • ISO27001 Expertise: Strong knowledge and certification in ISO27001:2013.
  • Certifications: ISO27001 Lead Implementer/Auditor, ISO 22301 Lead Implementer/Auditor, PCI-DSS Internal Security Auditor (PCI ISA).

What we are looking for:

  • Professional Qualification: Audit or risk qualification or equivalent experience.
  • Experience: 10-15 years in risk and compliance.
  • Stakeholder Engagement: Proven experience engaging with senior stakeholders.
  • Customer-Facing: Comfortable in customer-facing roles.
  • Program Management: Excellent skills in program management.
  • International Standards: Expert knowledge of ISO27001.
  • Data-Driven: Ability to use data to draw clear conclusions.
  • Relationship Builder: Strong relationship-building skills, dynamic and decisive.
  • Hybrid Work: Able to work both remotely and on-site in the UK & Ireland.

What's in it for you:

  • Competitive salary.
  • 23 days' holiday (rising to 27) with the opportunity to buy extra leave.
  • Company matched pension, life assurance, a cycle2work scheme, 15 weeks' fully paid maternity, adoption and shared parental leave, paternity pay of two weeks.
  • Voluntary benefits designed to suit your lifestyle - from discounts on retail and socialising, to health & wellbeing, travel and technology.
  • The opportunity to take a paid day out of the office, volunteering for our charity partners or a cause of your choice.
  • Access to our Employee Network Groups, which represent every strand of diversity and allow colleagues to connect and learn from each other on an open, inclusive platform.

;