At a Glance
- Tasks: Lead the implementation of DAZN's information security management system and manage compliance audits.
- Company: Join DAZN, a dynamic and ambitious organisation focused on sports streaming and technology.
- Benefits: Enjoy 25 days annual leave, private medical insurance, flexible working, and access to DAZN.
- Why this job: Make a real impact on information security while collaborating with senior leaders in a vibrant culture.
- Qualifications: Strong background in information security governance and experience with ISO27001 and PCI DSS certifications.
- Other info: This is a fixed-term 14-month maternity cover role based in Leeds.
The predicted salary is between 36000 - 60000 £ per year.
Are you ready to take the challenge to educate all employees in a young and ambitious organisation about their role in making information security a core part of their modus operandi and conduct to appropriate behaviour change? DAZN is looking to hire an experienced Head of Risk & Compliance to join their Technology Governance team as a Fixed Term 14-month maternity cover role. The successful candidate will lead a team overseeing the global strategic implementation of DAZN's information security management system (ISMS). They will be responsible for delivering annual workstream activities that ensure continued conformity with standards such as ISO27001 and PCI DSS.
What you’ll be doing:
- Leading the implementation and maintenance of DAZN’s information security management system (ISMS) in accordance with ISO27001.
- Managing and delivering annual workstreams to successfully complete audits against ISO27001 and PCI DSS.
- Providing expertise in information security risk, business continuity, and supplier risk management, including third-party risk activities.
- Maintaining standards and procedures related to information security management.
- Collaborating with senior leadership across departments to identify and implement solutions considering customer needs, operational requirements, and costs.
- Facilitating the identification and assessment of information security risks and documenting them in the Information Security Risk Register.
- Coordinating security education and awareness initiatives for all employees, including targeted role-based training.
You’ll have:
- A strong background in information security governance, risk, and compliance.
- Experience achieving ISO27001 and PCI DSS 4.0 certification/attestation.
- Understanding of business continuity, data protection, and risk management standards like ISO22301 and ISO27005.
- Excellent communication skills, with the ability to convey strategic security information to both technical and non-technical audiences.
- Knowledge of IT infrastructure and cloud services.
- Experience working with C-level executives (e.g., CTO, CIO).
- Ability to deliver presentations and discussions effectively using collaborative tools such as Microsoft Teams.
- Proactiveness, confidence, prioritization skills, and accountability.
- Experience leading security training and awareness programs in large organizations is advantageous.
- Strong influencing skills, a bias for action, and a collaborative mindset.
Benefits
Benefits include access to DAZN, 25 days’ annual leave (increasing by 3 days after 3 years), private medical insurance, life assurance, pension contributions up to 5%, family-friendly policies including enhanced parental leave, electric vehicle benefit options, free access for you and one other to our workplace mental health platform (Unmind), learning and development resources, flexible working opportunities, and access to internal speaker series and events.
Security Risk & Compliance Specialist employer: DAZN
Contact Detail:
DAZN Recruiting Team
StudySmarter Expert Advice 🤫
We think this is how you could land Security Risk & Compliance Specialist
✨Tip Number 1
Familiarise yourself with ISO27001 and PCI DSS standards. Understanding these frameworks will not only help you in interviews but also demonstrate your commitment to the role and your proactive approach to compliance.
✨Tip Number 2
Network with professionals in the information security field, especially those who have experience with risk management and compliance. Engaging with industry peers can provide insights and potentially lead to referrals.
✨Tip Number 3
Prepare to discuss your experience in leading security training and awareness programmes. Highlight specific examples where you've successfully influenced behaviour change within an organisation, as this is crucial for the role.
✨Tip Number 4
Showcase your communication skills by being ready to explain complex security concepts in simple terms. This will be key when discussing strategies with both technical and non-technical stakeholders during the interview process.
We think you need these skills to ace Security Risk & Compliance Specialist
Some tips for your application 🫡
Tailor Your CV: Make sure your CV highlights your experience in information security governance, risk, and compliance. Include specific examples of how you've achieved ISO27001 and PCI DSS certifications in previous roles.
Craft a Compelling Cover Letter: In your cover letter, emphasise your ability to educate employees about information security and your experience in leading security training initiatives. Mention your communication skills and how you can convey complex information to diverse audiences.
Showcase Relevant Skills: Clearly outline your skills related to business continuity, data protection, and risk management standards. Highlight any experience working with C-level executives and your proficiency in using collaborative tools like Microsoft Teams.
Proofread and Edit: Before submitting your application, thoroughly proofread your documents for any spelling or grammatical errors. Ensure that your application is clear, concise, and free of jargon, making it easy for the hiring team to understand your qualifications.
How to prepare for a job interview at DAZN
✨Understand the Standards
Familiarise yourself with ISO27001 and PCI DSS standards, as these are crucial for the role. Be prepared to discuss how you have implemented or maintained compliance with these standards in your previous positions.
✨Showcase Your Communication Skills
Since the role involves conveying complex security information to both technical and non-technical audiences, practice explaining key concepts clearly and concisely. Use examples from your past experiences to demonstrate your ability to communicate effectively.
✨Prepare for Scenario-Based Questions
Expect questions that assess your problem-solving skills in real-world scenarios. Think of specific instances where you identified and mitigated security risks, and be ready to explain your thought process and the outcomes.
✨Highlight Your Leadership Experience
As this position involves leading a team, be sure to discuss your leadership style and any relevant experience managing teams or projects. Share examples of how you've motivated others and driven initiatives related to security training and awareness.