Head of Security & Compliance

Head of Security & Compliance

Full-Time 70000 - 90000 £ / year (est.) Home office (partial)
Masabi

At a Glance

  • Tasks: Lead security and compliance efforts to build trust and reliability in our platform.
  • Company: Join Masabi, a diverse tech company revolutionising public transport payment systems.
  • Benefits: Enjoy 25 days holiday, private healthcare, and a £1000 training allowance.
  • Other info: Remote work available, with opportunities for personal growth and team collaboration.
  • Why this job: Make a real impact on global transport while shaping security practices.
  • Qualifications: Experience in security and compliance within fintech or regulated environments.

The predicted salary is between 70000 - 90000 £ per year.

This job is with Masabi, an inclusive employer and a member of myGwork – the largest global platform for the LGBTQ+ business community.

About Us: At Masabi, we're driving the fare payment revolution, powering the journeys of millions all over the world. We build fare collection platforms that allow riders to seamlessly buy and present tickets for public transport either on their mobile phones, from a ticket machine, or even by tapping their bank card to travel. Our Justride platform is used in over 250 locations globally, including some of the largest cities in the world. With our industry-first mobile ticketing SDK, we've partnered with large players in the transport space, including Uber, Moovit and Transit. Your own journey is important to us too. Choosing a role here means joining a network of innovators from all walks of life; a group of passionate individuals who consistently deliver. Here, you'll find the tools you need to build the career you want. Whether you're taking the direct route or trying a new path, we'll support you no matter what.

The Role: At Masabi, we're building technology that makes public transport simpler, fairer and more accessible for millions of people. That only works if our platform is secure, trusted and reliable. As our Head of Security & Compliance, you'll step into a role that is central to how we build trust with our customers and scale as a global SaaS business. You'll own security and compliance end to end, shaping how we approach it as a company and how it works in practice day to day. You'll lead a small team, bringing clarity, focus and direction as you build on solid foundations and evolve this area alongside the business. In the near term, you'll focus on understanding where we are today, strengthening our approach to key areas like audits and compliance, and helping teams move forward with confidence. You'll work closely with Engineering, Product and Legal to turn requirements into practical, well-executed outcomes. This is a senior role where you'll stay close to the work, especially in the early stages. Over time, you'll shape a more structured and scalable function, helping Masabi stay ahead of evolving standards and make thoughtful decisions around risk.

Location: This role is available on a remote basis for candidates located anywhere in the UK. Candidates based in London may also work in a hybrid model, with occasional travel to the office.

Responsibilities:

  • Take ownership of security and compliance across Masabi, creating clarity on priorities and ways of working.
  • Build a clear view of our current security posture and define a practical path to strengthen it over time.
  • Define security and compliance requirements and work closely with Engineering and IT teams to ensure they are implemented effectively.
  • Maintain existing compliance across PCI DSS, ISO27001, SOC2 and Cyber Essentials, and lead new compliance initiatives across additional standards such as ISO 27017 and ISO 27018.
  • Manage audits end to end, from preparation through to delivery and follow-up actions.
  • Work closely with Engineering and Product teams to embed security practices in a way that supports delivery.
  • Maintain a clear and actionable view of risk, helping the business prioritise what matters most.
  • Build a more scalable approach to customer assurance, including clearer processes and reusable materials for customer and audit requests.
  • Help guide decisions on which compliance standards we take on as we grow.
  • Lead and support a small team, creating focus, trust and shared direction.

About You: You've worked in security and compliance within a payments, fintech or PCI-regulated environment. You have strong, hands-on experience with PCI DSS, ISO27001 and SOC2, including preparing for and delivering audits. You've personally owned and delivered compliance programmes, not just overseen them. You understand how security and compliance connect, and how to make them work in practice across a business. You've operated in a growing or scaling company, where you've had to bring structure and prioritise effectively. You're comfortable driving work across teams without direct authority, and following through to completion. You bring sound judgement when balancing risk, delivery and commercial needs. You've supported or led a small team and know how to create clarity and accountability. You communicate clearly with both technical and non-technical audiences, helping people understand what matters and what action is needed.

Nice To Have: Experience working with additional ISO standards such as ISO 27017 and ISO 27018. Experience scaling security and compliance in a growing SaaS company, especially through periods of increased customer or regulatory demand. Relevant certifications such as CISSP, CISM, CISA or ISO27001 Lead Auditor or similar. Awareness of AI-related security and governance considerations, and how they may apply in a SaaS environment.

Some of Our Benefits: 25 days of holiday per year plus the option to buy another 5 days pro-rated. Private Healthcare via AXA, including pre-existing conditions and mental health. Life Insurance. Menopause support. Choice of workstation. Ability to work for up to 3 months per year from any country in the world (certain limitations). Pension scheme. Training allowance of up to £1000 per year. £200 annual allowance for any home office need or improvement. Enhanced family leave pay. Cycle to work scheme. Regular social gatherings with a monthly allowance for each employee. Fun and collaborative environment with a focus on making a difference in the world.

Careers at Masabi are for people going places - driven by a mission to make transit fair and accessible for all. We are a network of innovators from all walks of life, passionate about making a difference. At Masabi, we operate with openness and trust, creating an environment where everyone feels empowered to bring their whole, authentic selves to work. Whoever you are, just be yourself. We welcome applications from underrepresented groups, including disabled and neurodivergent people, and can make adjustments at any stage of the process. You're also welcome to share your pronouns whenever you feel comfortable. Together, we simplify journeys, remove barriers, and improve daily life for millions.

Why Join Masabi? Driven by Purpose - We believe in journeys made simple. The work isn't always easy, but the best things never are. Encouraged to Accelerate - Masabi is going places and our people are in the driving seat. Whether you're taking the direct route or exploring new paths, we support your journey. Advancing with Empathy - We put people first and foster a culture of learning, not blame. No matter your cargo, we share the load. We're already powering journeys - are you ready to join us?

Head of Security & Compliance employer: Masabi

At Masabi, we pride ourselves on being an inclusive employer that champions diversity and innovation. Our remote work flexibility allows you to thrive from anywhere in the UK, while our commitment to employee growth is evident through generous training allowances and a supportive work culture that prioritises collaboration and well-being. Join us in making public transport fairer and more accessible, all while enjoying a range of benefits designed to enhance your work-life balance.

Masabi

Contact Details:

Masabi Recruitment Team

StudySmarter Expert Advice🤫

We think this is how you could land Head of Security & Compliance

Tip Number 1

Network like a pro! Reach out to folks in the industry, attend events, and connect with people on LinkedIn. You never know who might have the inside scoop on job openings or can put in a good word for you.

Tip Number 2

Prepare for interviews by researching Masabi and its mission. Understand their products and how security and compliance play a role in their success. This will help you stand out and show that you're genuinely interested in the company.

Tip Number 3

Practice your responses to common interview questions, especially those related to security and compliance. Use the STAR method (Situation, Task, Action, Result) to structure your answers and highlight your achievements.

Tip Number 4

Don’t forget to apply through our website! It’s the best way to ensure your application gets seen. Plus, it shows you’re serious about joining the Masabi team and contributing to our mission of making public transport simpler and fairer.

We think you need these skills to ace Head of Security & Compliance

Security and Compliance Management
PCI DSS
ISO 27001
SOC2
Audit Management
Risk Assessment
Team Leadership

Some tips for your application 🫡

Tailor Your Application:Make sure to customise your CV and cover letter for the Head of Security & Compliance role. Highlight your experience with PCI DSS, ISO27001, and SOC2, and show how your skills align with Masabi's mission to simplify public transport.

Showcase Your Leadership Skills:Since this is a senior role, don’t forget to emphasise your experience in leading teams and driving security initiatives. Share specific examples of how you've created clarity and accountability in previous roles.

Be Clear and Concise:When writing your application, keep it straightforward and to the point. Use clear language that communicates your qualifications without unnecessary jargon. Remember, we want to understand your journey and what you can bring to Masabi!

Apply Through Our Website:We encourage you to submit your application through our website. It’s the best way for us to receive your details and ensure you’re considered for the role. Plus, it shows you’re keen on joining our innovative team!

How to prepare for a job interview at Masabi

Know Your Stuff

Make sure you brush up on your knowledge of security and compliance standards like PCI DSS, ISO27001, and SOC2. Be ready to discuss how you've implemented these in past roles, as well as any challenges you've faced and how you overcame them.

Show Your Leadership Skills

As the Head of Security & Compliance, you'll be leading a small team. Prepare examples of how you've successfully managed teams before, focusing on how you created clarity and accountability. Highlight your ability to drive work across teams without direct authority.

Understand Masabi's Mission

Familiarise yourself with Masabi's goals and values, especially their commitment to making public transport simpler and more accessible. Be ready to explain how your experience aligns with their mission and how you can contribute to their vision.

Prepare for Scenario Questions

Expect scenario-based questions that assess your problem-solving skills in real-world situations. Think about how you would approach strengthening security posture or managing audits, and be prepared to articulate your thought process clearly.