About BirdieAt Birdie, we're reimagining care for older adults. We're building the technology that powers the future of home healthcare, empowering care teams with tools to deliver better, more dignified care, and enabling older people to thrive in their own homes for longer. Our all-in-one solution powers millions of care visits every month, equipping care providers with the tools they need to deliver exceptional, efficient care. That's why we've built an all-in-one platform that supported over 60 million care visits and enabled care for 116,000 individuals in 2025, and we continue to grow our impact. That's why we're proud to be a B Corp, using business as a force for good.
In 2023, we ranked #6 in the Deloitte Fast 50, making us one of the fastest-growing tech companies in the UK. Your missionAs Birdie's Risk & Compliance Manager, you will be responsible for defining, embedding, and monitoring Birdie's compliance frameworks across data protection, information security, and health system governance.
You will lead our compliance programs for critical health-sector standards—including the NHS Data Security and Protection Toolkit (DSPT) and Digital Social Care Record (DSCR) compliance—and assure all requirements for core NHS service integrations such as GP Connect and the Patient Demographic Service (PDS).You will work closely with our engineering, product, legal, and operational teams, and will be supported by our General Counsel and external Data Protection Officer (DPO). How you will contributeOwn data protection compliance across product and operations, working with our external DPO on DPIAs, RoPA and information rights processesLead the annual NHS DSPT submission and keep us at "Standards Met" year-round, alongside DSCR and clinical risk alignment (DCB0129/0160) where applicableAssure our NHS interoperability connections - GP Connect, PDS, and future health data integrations - meet compliance and data flow standardsMaintain Birdie's risk register and control frameworks, running third-party risk assessments and internal audit cyclesLead incident response for data protection and compliance breaches, from root-cause analysis through remediationBuild KRIs/KPIs for leadership and the board, and champion a proactive, risk-aware culture across tech, product and go-to-market teams You'll thrive here if...You have strong familiarity with NHS DSPT, DSCR, and NHS API assurance frameworks (GP Connect, PDS)You know UK GDPR and the Data Protection Act 2018 inside out, and can apply it practically in a fast-moving SaaS environmentYou've led or played a major role in risk assessments, control design, and managing a business risk register - ideally alongside an external DPO or legal counselYou can turn complex legal and health-system regulations into clear, actionable requirements for engineers and product teamsYou write and speak with clarity, whether it's a policy, an executive report, or team trainingYou have sound judgment and the confidence to challenge while keeping strong working relationships; a relevant certification (CIPP/E, CIPM, CISM, CISA, or similar) or familiarity with ISO 27001/Cyber Essentials/SOC 2 is a plusImposter syndrome is real — and we don't expect you to tick every box.
CompensationCompetitive base salary, reviewed against benchmarks annuallyGenerous stock options - because we're building this togetherBi-annual performance cycles with individual compensation reviewsLearning & GrowthAnnual personal learning budget and access to training, coaching and mentorshipTime and space for growth - you set your development goals, we back themFlexible WorkingHybrid working - up to 3 days per week in our incredible London HQBudget to set up your home workspaceRegular in-person meet-ups, socials and offsitesTime Off33 days holiday (25 days + public holidays)Extra day off on your birthday (use it whenever you like!)Company shutdown between Christmas and New Year2 volunteering days each year to give back to causes that matterFamily-first PoliciesIndustry leading paid primary and secondary caregiver leave5 paid days for fertility treatments for those who need itPrivate health insurance with AXAWellbeing perks via Happl (gym discounts, mental health support, and more)Other PerksCycle to work scheme4% employer pension contribution when you contribute 5% (UK)A deeply human, radically transparent cultureWhy Birdie?
We're building more than a product - we're building a movement. Join us to shape the future of care, work alongside ambitious, kind people, and help reimagine how society cares for its older adults. Equal Opportunities StatementWe're committed to building a diverse team and inclusive culture. We're here to help.
Compensation
We benchmark all salaries annually and ensure every employee is a shareholder with meaningful equity in our two opportunities per year to review individual compensation. We don't play negotiation games; we use transparent, data-driven salary bands to ensure equal pay for equal work.
We’re Hiring: Senior Risk and Compliance Manager in London employer: Birdie Care Services
At Birdie, we pride ourselves on being an exceptional employer dedicated to reimagining care for older adults through innovative technology. Our vibrant London HQ fosters a deeply human and transparent culture, offering generous benefits such as competitive salaries, stock options, and a strong focus on personal growth with annual learning budgets and flexible working arrangements. Join us in making a meaningful impact while enjoying a supportive environment that values work-life balance and inclusivity.