IT Compliance and risk manager
IT Compliance and risk manager

IT Compliance and risk manager

Northampton Full-Time 48000 - 72000 £ / year (est.) No home office possible
Go Premium
P

At a Glance

  • Tasks: Lead IT compliance and risk management, ensuring ISO certifications and regulatory alignment.
  • Company: Pluxee is a global leader in employee benefits, operating in 31 countries with over 5,000 team members.
  • Benefits: Enjoy a diverse culture, work-life balance, and opportunities for personal growth in a supportive environment.
  • Why this job: Make a real impact on employee wellbeing while working in a fast-paced, innovative team.
  • Qualifications: 5+ years in IT risk management; knowledge of ISO27001, GDPR, and strong communication skills required.
  • Other info: Join a multicultural team in Milton Keynes and help shape the future of employee benefits.

The predicted salary is between 48000 - 72000 £ per year.

Pluxee is a global player in employee benefits and engagement that operates in 31 countries. Pluxee helps companies attract, engage, and retain talent thanks to a broad range of solutions across Meal & Food, Wellbeing, Lifestyle, Reward & Recognition, and Public Benefits. Powered by leading technology and more than 5,000 engaged team members, Pluxee acts as a trusted partner within a highly interconnected B2B2C ecosystem made up of more than 500,000 clients, 36 million consumers and 1.7 million merchants. Conducting its business as a trusted partner for more than 45 years, Pluxee is committed to creating a positive impact on all its stakeholders, from driving business to local communities, to supporting wellbeing at work for employees while protecting the planet.

The IT Compliance and Risk Manager is responsible for developing, implementing and overseeing the organisation's IT compliance and risk management programmes, with a strong focus on maintaining the ISO 27001 and ISO 9001 certifications. The role ensures that IT security and operations align with global Pluxee policies & procedures as well as regulatory, legal, GDPR and industry standards while mitigating risks and enhancing overall posture.

Your next challenge:

  • Lead and manage the organisation's ISO certification and surveillance audit processes.
  • Develop and maintain policies, procedures and documentation to align with ISO and Global Pluxee standards.
  • Identify, assess and prioritise IT risk across platforms & services, processes and projects, and take appropriate actions to drive to closure.
  • Conduct regular risk assessments for core platforms, services and vendors.
  • Ensure compliance with GDPR, NIST etc.
  • Serve as a subject-matter expert for IT compliance questions.
  • Develop and enforce IT policies and procedures that support compliance and risk objectives.
  • Respond to client Information Security tenders and questionnaires.
  • Conduct training and awareness programmes.

Accountabilities:

  • Maintain ISO certification and promote the standards within the business.
  • Quarterly reporting to SLT on compliance status, IT risk posture.
  • Present findings and recommendations to COMEX and relevant stakeholders.
  • Define an annual roadmap for IT risk management and mitigations aligned to UK Portfolio, Information Security and Business Risk Roadmaps.

PLX UK holds ISO27001 (Information Security Management System) and 9001 (Quality Management System) certifications and already has a traditional framework for risk management. Globally as Pluxee expands its governance to encompass local entities, alignment of local policy and methodology is key.

Competencies:

  • Customer focus - Building strong customer relationships and delivering customer-centric solutions.
  • Collaborates - Building partnerships and working collaboratively with others to meet shared objectives.
  • Communicates effectively - Developing and delivering multi-mode communications that convey a clear understanding of the unique needs of different audiences.
  • Drives results - Consistently achieves results, even under tough circumstances.
  • Optimizes work processes - Knows the most effective and efficient processes to get things done, with a focus on continuous improvement.

Your a Match:

  • 5+ years in information security or IT risk management.
  • CRISC (Certified in Risk and Information Systems Control) would be a distinct advantage.
  • Strong organisation, administration and documentation skills.
  • Experience and knowledge of ISO27001 (Information Security Management System) and ISO 9001 (Quality Management System), ideally to Management Representative level.
  • Knowledge of GDPR (General Data Protection Regulation) rules and obligations.
  • Good knowledge of Information Security Tools, techniques and processes.
  • Good knowledge of Business Continuity strategy and planning.
  • Strong communication skills with the gravitas to influence senior leadership.
  • Energetic with initiative, drive and an enthusiastic 'can do' approach.
  • Internal audit experiences an advantage.
  • Manage relationship and organise annual external audits to maintain certification.

To get this challenge:

  • Video call Discussion with TA Partner.
  • Video call Discussion with Hiring Manager.
  • Video call Discussion with Hiring Manager & Tech Panel.
  • Video call Discussion with HRBP.

Your Team: IT Team

Your Location: Milton Keynes, UK

Happy at work:

  1. A meaningful job: Be the change! Help us build the future of employee benefits by bringing to life sustainable and personalized experiences and contribute to make a real impact on millions of lives. Our business model delivers not just for individuals but their communities too, by supporting local businesses and economies.
  2. A great culture: People matter - a lot! Be part of a multicultural team that moves as one in a fast paced and innovative environment. We respect and care authentically about our people, we embrace wellbeing and work-life balance, new ideas and we have a lot of fun!
  3. An empowering environment: Be yourself! At Pluxee we proudly embrace diversity and value the uniqueness of our talents, fostering an inclusive workplace where all abilities are celebrated, and equal learning and growing opportunities are a given.

IT Compliance and risk manager employer: Pluxee

Pluxee is an exceptional employer that prioritises meaningful work and employee wellbeing, making a real impact on millions of lives through innovative employee benefits solutions. Located in Milton Keynes, the company fosters a vibrant, multicultural environment where diversity is celebrated, and employees are empowered to grow and thrive. With a strong commitment to work-life balance and a culture that values collaboration and creativity, Pluxee offers a rewarding career path for those looking to make a difference.
P

Contact Detail:

Pluxee Recruiting Team

StudySmarter Expert Advice 🤫

We think this is how you could land IT Compliance and risk manager

✨Tip Number 1

Familiarise yourself with ISO 27001 and ISO 9001 standards. Understanding these certifications inside out will not only help you in interviews but also demonstrate your commitment to compliance and risk management.

✨Tip Number 2

Network with professionals in the IT compliance and risk management field. Attend industry events or webinars where you can connect with others who work at Pluxee or similar companies, as personal connections can often lead to job opportunities.

✨Tip Number 3

Prepare to discuss real-world scenarios where you've successfully managed IT risks or compliance issues. Having specific examples ready will showcase your experience and problem-solving skills during the interview process.

✨Tip Number 4

Stay updated on GDPR regulations and any changes in information security laws. Being knowledgeable about current legal requirements will position you as a valuable asset to the team and show your proactive approach to compliance.

We think you need these skills to ace IT Compliance and risk manager

ISO 27001 Knowledge
ISO 9001 Knowledge
GDPR Compliance
Risk Assessment and Management
Information Security Tools and Techniques
Documentation and Administration Skills
Internal Audit Experience
Strong Communication Skills
Stakeholder Engagement
Project Management
Training and Awareness Programme Development
Customer Relationship Management
Collaboration and Teamwork
Continuous Improvement Mindset

Some tips for your application 🫡

Tailor Your CV: Make sure your CV highlights relevant experience in IT compliance and risk management. Emphasise your familiarity with ISO 27001 and ISO 9001 certifications, as well as any specific projects you've led that align with the job description.

Craft a Compelling Cover Letter: In your cover letter, express your passion for IT compliance and risk management. Mention how your skills and experiences make you a perfect fit for Pluxee, and provide examples of how you've successfully managed compliance initiatives in the past.

Showcase Relevant Certifications: If you hold any relevant certifications, such as CRISC or others related to information security, be sure to include them prominently in your application. This will demonstrate your commitment to the field and enhance your credibility.

Highlight Soft Skills: Pluxee values strong communication and collaboration skills. In your application, provide examples of how you've effectively communicated complex information to different audiences and worked collaboratively to achieve shared objectives.

How to prepare for a job interview at Pluxee

✨Understand ISO Standards

Make sure you have a solid grasp of ISO 27001 and ISO 9001 standards. Be prepared to discuss how you've implemented these in previous roles, as well as any challenges you faced and how you overcame them.

✨Showcase Risk Management Experience

Highlight your experience in identifying, assessing, and prioritising IT risks. Be ready to provide examples of risk assessments you've conducted and the actions you took to mitigate those risks.

✨Demonstrate Communication Skills

Since the role requires effective communication with senior leadership, practice articulating complex compliance and risk concepts clearly. Prepare to discuss how you've influenced stakeholders in past positions.

✨Prepare for Scenario-Based Questions

Expect scenario-based questions that assess your problem-solving skills in compliance and risk management. Think of specific situations where you had to make tough decisions and how you handled them.

IT Compliance and risk manager
Pluxee
Location: Northampton
Go Premium

Land your dream job quicker with Premium

You’re marked as a top applicant with our partner companies
Individual CV and cover letter feedback including tailoring to specific job roles
Be among the first applications for new jobs with our AI application
1:1 support and career advice from our career coaches
Go Premium

Money-back if you don't land a job in 6-months

P
  • IT Compliance and risk manager

    Northampton
    Full-Time
    48000 - 72000 £ / year (est.)
  • P

    Pluxee

    50-100
Similar positions in other companies
UK’s top job board for Gen Z
discover-jobs-cta
Discover now
>