Head of Information Security & Compliance in Westminster

Head of Information Security & Compliance in Westminster

Westminster Full-Time 72000 - 108000 £ / year (est.) Home office (partial)
Beamery Inc

At a Glance

  • Tasks: Lead the security program for our AI-powered talent platform and ensure data protection.
  • Company: Join Beamery, a leading AI platform in HR technology, transforming talent decisions.
  • Benefits: Competitive salary, flexible working options, and opportunities for professional growth.
  • Other info: Collaborative culture focused on trust, empathy, and honesty.
  • Why this job: Make a real impact on security and compliance in a fast-paced tech environment.
  • Qualifications: 10-15 years in information security with leadership experience, preferably in B2B SaaS.

The predicted salary is between 72000 - 108000 £ per year.

As Beamery's Head of Information Security & Compliance, you will lead the security program for our AI-powered talent platform, ensuring protection of our infrastructure and customer data while maintaining compliance with information security and data protection regulations globally.

Reporting to the Head of Legal, you will partner closely with HR to ensure alignment between information security requirements and internal HR compliance needs.

AI Platform Security & ISO 42001
  • Maintain Beamery's ISO/IEC 42001 certification, ensuring responsible AI governance, transparency, and bias mitigation across TalentGPT and Workforce Intelligence Suite.
  • Lead AI risk assessments and impact evaluations for systems processing candidate and employee data, ensuring compliance with EU AI Act and emerging US state AI regulations.
  • Embed security‐by‐design principles in AI development, including model security, training data protection, and secure AI deployment.
Information Security Program
  • Design and maintain an enterprise security program aligned with ISO 27001 and SOC 2 Type II for multi‐tenant SaaS architecture.
  • Lead security operations including vulnerability management, penetration testing, SIEM monitoring, incident response, and business continuity planning.
  • Oversee cloud security for AWS, Google Cloud, and Azure environments, including IAM, network security, encryption, and API security.
  • Manage vendor security assessments and third‐party risk management.
  • Build security awareness culture through training and ongoing education programs.
Data Protection & Privacy Compliance
  • Ensure compliance with GDPR, CCPA/CPRA, UK DPA, and emerging global privacy regulations for platform operations.
  • Oversee DPIAs for high‐risk processing activities, data breach procedures, and data subject rights fulfillment.
  • Implement privacy controls including data minimization, purpose limitation, and lawful basis documentation.
  • Manage DPAs with customers and Standard Contractual Clauses for international data transfers.
Employment Technology Compliance
  • Partner with HR to align information security controls with internal HR compliance requirements, addressing gaps between InfoSec and HR domains.
  • Ensure platform compliance with AI hiring regulations (NYC Local Law 144, EU AI Act) including bias audits and transparency requirements for customer‐facing features.
  • Collaborate with Product to build transparency and explainability into AI‐powered screening tools.
Audit & Regulatory Management
  • Lead external audits including SOC 2 Type II, ISO 27001, ISO 42001, and customer security assessments.
  • Maintain audit‐ready documentation and monitor evolving regulatory landscape.
  • Serve as primary contact for regulatory inquiries and customer security questionnaires.
  • Report security and compliance status to Board and executive leadership.
Cross‐Functional Collaboration
  • Support Sales with security expertise to accelerate deal closure through RFP responses and security reviews.
  • Partner with Engineering and Product to translate compliance requirements into scalable technical controls.
  • Build security and compliance into M&A readiness planning.
Qualifications
  • 10–15 years information security and compliance experience with 5+ years in leadership roles, preferably in B2B SaaS or HR technology.
  • Deep expertise in ISO 27001, SOC 2, GDPR, and CCPA with proven track record achieving and maintaining certifications.
  • Strong understanding of AI governance and emerging AI regulations (ISO 42001, EU AI Act) as applied to employment technology.
  • Hands‐on experience with cloud security architecture and DevSecOps practices across AWS, Google Cloud, or Azure.
  • Demonstrated success building security and compliance programs including policy development, control implementation, and team building.
  • Experience managing external audits and supporting enterprise sales cycles with security/compliance expertise.
  • Exceptional communication skills with ability to translate technical concepts for executives, board members, and customers.
  • Strong business acumen to balance security requirements with business objectives in fast‐paced environments.
Certifications & Education
  • CISSP required; CISM, CRISC, or CISA strongly preferred.
  • CIPM or CIPP/E highly desirable.
  • Bachelor's degree in Computer Science, Information Security, or related technical field; Master's degree preferred.

About Beamery: We are a leading transformational AI platform in the HR technology industry, enabling enterprise companies to create better and fairer talent decisions by accelerating recruiting processes, unlocking successful internal mobility opportunities, enabling smarter upskilling initiatives, and facilitating agile workforce planning. We are helping our clients hire and redeploy over a million people annually.

Future Direction: Deepening native integrations with SAP, Workday, Microsoft, and LinkedIn to embed our skills intelligence into the platforms where critical workforce decisions are made; embedding agentic AI to help customers plan smarter for the future—powering workforce strategies, internal mobility, and skills forecasting; advancing proprietary LLMs and knowledge graph technology to unlock broader talent pools, make fairer decisions, and expand access to opportunity at scale. We value a culture built on trust, empathy & honesty, ensuring our workforce can bring their full selves to work.

Head of Information Security & Compliance in Westminster employer: Beamery Inc

Beamery is an exceptional employer that prioritises a culture of trust, empathy, and honesty, fostering an environment where employees can thrive both personally and professionally. As the Head of Information Security & Compliance, you will have the opportunity to lead critical initiatives in AI governance and data protection while collaborating with cross-functional teams in a dynamic and innovative setting. With a strong commitment to employee growth and development, Beamery offers unique advantages such as comprehensive training programs and the chance to work on cutting-edge technology that shapes the future of HR.

Beamery Inc

Contact Details:

Beamery Inc Recruitment Team

StudySmarter Expert Advice🤫

We think this is how you could land Head of Information Security & Compliance in Westminster

Tip Number 1

Network like a pro! Reach out to folks in your industry on LinkedIn or at events. A personal connection can often get you a foot in the door faster than any application.

Tip Number 2

Prepare for interviews by researching the company and its culture. Tailor your answers to show how your experience aligns with their values and needs, especially around security and compliance.

Tip Number 3

Showcase your expertise! Bring examples of past projects or challenges you've tackled in information security and compliance. This will help you stand out as a candidate who can hit the ground running.

Tip Number 4

Don’t forget to apply through our website! It’s the best way to ensure your application gets seen by the right people. Plus, it shows you're genuinely interested in joining our team.

We think you need these skills to ace Head of Information Security & Compliance in Westminster

Information Security Management
Compliance with GDPR
ISO 27001
SOC 2 Type II
AI Governance
Risk Assessment
Cloud Security (AWS, Google Cloud, Azure)

Some tips for your application 🫡

Tailor Your Application:Make sure to customise your CV and cover letter to highlight your experience in information security and compliance. We want to see how your skills align with the specific requirements of the Head of Information Security & Compliance role.

Showcase Your Achievements:Don’t just list your responsibilities; share your successes! Use metrics and examples to demonstrate how you’ve maintained certifications like ISO 27001 or led successful audits. This helps us see the impact you've made in previous roles.

Be Clear and Concise:Keep your application straightforward and to the point. We appreciate clarity, so avoid jargon unless it’s relevant to the role. Make it easy for us to understand your qualifications and experiences.

Apply Through Our Website:We encourage you to submit your application directly through our website. It’s the best way for us to receive your details and ensures you’re considered for the role. Plus, it’s super easy!

How to prepare for a job interview at Beamery Inc

Know Your Stuff

Make sure you brush up on your knowledge of ISO 27001, SOC 2, and GDPR. Be ready to discuss how you've applied these standards in previous roles, especially in a B2B SaaS or HR tech context. This will show that you’re not just familiar with the regulations but have practical experience implementing them.

Showcase Your Leadership Skills

As the Head of Information Security & Compliance, you'll need to demonstrate your leadership capabilities. Prepare examples of how you've built and led teams in the past, particularly in developing security programs or managing audits. Highlight your ability to communicate complex concepts to non-technical stakeholders.

Understand AI Regulations

Given the focus on AI governance, make sure you can articulate your understanding of emerging AI regulations like the EU AI Act. Discuss any experience you have with risk assessments related to AI systems, and be prepared to share your thoughts on responsible AI practices.

Collaborative Mindset

Beamery values cross-functional collaboration, so be ready to talk about how you've partnered with other departments, like HR or Engineering, to align security measures with business objectives. Share specific instances where your collaboration led to successful outcomes, especially in compliance or security initiatives.