At a Glance
- Tasks: Lead our Policy & Compliance function, managing Cyber Essentials and GDPR compliance.
- Company: Join a dynamic tech company in Middlesbrough with a focus on innovation.
- Benefits: Competitive salary, professional development, and a chance to shape compliance services.
- Other info: Fast-paced environment with opportunities for personal and professional growth.
- Why this job: Make a real impact by leading compliance initiatives and working with cutting-edge technology.
- Qualifications: Strong technical background with experience in Cyber Essentials and GDPR compliance.
The predicted salary is between 30000 - 35000 £ per year.
Department: Technical
Reports to: Head of Technical
Location: Middlesbrough
Salary: £30,000 - £35,000
Contract: Permanent, full time
The role: We are looking for someone to take ownership of our Policy & Compliance function and lead it. You'll sit in the Technical Department, alongside Service Desk, Networks, Projects and Infrastructure, reporting into the Head of Technical. The job blends hands-on technical credibility with compliance leadership. You'll hold our Cyber Essentials and GDPR positions internally, and build both into priced, revenue-generating service offerings for our client base, alongside penetration testing. You'll need to be comfortable standing by your decisions, confident in front of clients as well as colleagues, and happy to roll your sleeves up on technical work when the Desk needs a hand.
What you'll own:
- Cyber Essentials: Internal and client-facing. Project manage Cyber Essentials and Cyber Essentials Plus certification, for us and for clients. Own scoping, evidence gathering, remediation planning, submission and renewal cycles. Build it into a structured, priced product offering.
- GDPR and data protection: Including DPO services. Own the GDPR roadmap: define milestones, close gaps, keep us compliant. Apply ICO knowledge practically across registration, breach reporting, DSARs and records of processing activity. Write customer data policies, IT acceptable use policies and IT business continuity plans. Act as Data Protection Officer for clients who buy the service.
- Compliance tooling: Within our Kaseya stack. Own and administer Kaseya Compliance Manager, or an equivalent platform. Use it to evidence and report on compliance posture, for us and for clients.
- Penetration testing: A new commercial line. Lead and coordinate pen testing engagements, internally and for clients. Build it into a commercial offering alongside Cyber Essentials.
- Policy and internal controls: The underlying discipline. Apply change management when drafting and revising policy. Create and maintain sound internal controls, and monitor adherence to them. Audit policy, practices and documents proactively to find weaknesses before anyone else does. Train and educate employees and clients, and field their compliance questions.
- Service desk support: Occasional, not your day job. Flex into Service Desk support when it's needed. Keep enough technical grounding, and enough understanding of desk SLAs, to help efficiently without being a primary desk resource.
One thing to be clear about: This is not a developmental role with extensive training and a long runway. We need someone who can pick it up and run with it from day one. That means you already have the technical grounding and the compliance exposure to take ownership quickly, and you're comfortable operating with minimal supervision. If that's you, you'll have a function to shape and real commercial ownership of it.
What you'll need:
- A strong technical background, ready to step up.
- Demonstrable experience with Cyber Essentials and Cyber Essentials Plus certification.
- Knowledge of GDPR, ICO compliance and general compliance controls such as the DPA.
- Experience with Kaseya Compliance Manager or a similar GRC tool.
- Pen testing exposure, whether scoping, coordinating or delivering.
- Experience writing and implementing company policy, plus business continuity work.
- The confidence to lead internal and customer meetings.
- Project management skills, and the drive to take an initiative to completion on your own.
- A commercial mindset that treats compliance and security as a product, not a cost centre.
- Excellent communication, integrity, professional ethics and close attention to detail.
- Nice to have: MSP experience, time spent in a compliance environment, full or part time, health or education sector experience, general cyber security experience, professional certification such as CCEP. We'll support the right candidate through certification.
Technical skills we'll expect:
- Windows Server administration: AD, Group Policy, DNS and DHCP.
- Microsoft 365 and Azure AD administration.
- Networking fundamentals: VLANs, firewalls, routing and switching.
- Backup and disaster recovery concepts.
- RMM and PSA tooling, ideally the Kaseya stack.
- Troubleshooting across desktop, server and network estates.
Technical Policy & Compliance Manager in London employer: Nextech Group Limited
Join a dynamic team in Warwickshire, where creativity meets strategy! As a Social Media & Content Manager, you'll thrive in a supportive work culture that values innovation and collaboration. With opportunities for professional growth and a focus on employee well-being, this role offers a chance to make a meaningful impact while working with exciting brands.
StudySmarter Expert Advice🤫
We think this is how you could land Technical Policy & Compliance Manager in London
✨Join Compliance Communities
Get involved in compliance and risk communities — both online and offline. Look for forums, LinkedIn groups, or even local meetups where compliance pros hang out. You never know who might drop a job opportunity your way!
✨Attend Industry Conferences
Keep an eye out for compliance and risk management conferences and workshops in your area. These events are a goldmine for networking, and they often have job boards or recruiters on-site looking for new talent. Plus, it’s a chance to learn what's trending in the field.
✨Leverage Your University Career Services
If you’ve recently graduated or are still studying, head over to your university's career services. Many companies, including those in compliance, actively recruit fresh talent through these services, so make sure you tap into that resource.
✨Showcase Your Knowledge Online
Start writing articles or blog posts about compliance topics that interest you. Share them on platforms like LinkedIn to demonstrate your knowledge and passion. This not only builds your presence in the field but can also catch the attention of companies like Nextech Group Limited looking for candidates who are engaged and informed.
We think you need these skills to ace Technical Policy & Compliance Manager in London
Some tips for your application 🫡
Show Your Understanding of Compliance:In the compliance-risk field, it's super important to showcase your understanding of regulations and risk management frameworks. Highlight any relevant coursework, certifications (like ICA or AML), or even projects that demonstrate your knowledge and commitment to this area. We want to see how you can navigate this complex landscape!
Quantify Your Achievements:When detailing your experience, try to quantify your achievements. For example, if you've previously worked on a project that improved compliance metrics or reduced risk exposure, give us the numbers! This data-driven approach really stands out to hiring managers in compliance-risk roles.
Tailor Your CV to Reflect Relevant Skills:Make sure your CV highlights skills that are particularly relevant to compliance, like attention to detail, analytical thinking, and report writing. Ensure these are easy to spot – consider using bullet points to break down your responsibilities and achievements for maximum impact!
Craft a Motivating Cover Letter:In your cover letter, let us know why you’re excited about the compliance-risk role at Nextech Group Limited. Share what motivates you about compliance, and how you believe you can contribute to our mission. This is your chance to showcase not only your skills but also your passion for this important field!
How to prepare for a job interview at Nextech Group Limited
✨Master the Regulations
Brush up on key compliance regulations relevant to the industry you're applying to. Familiarising yourself with specific laws and frameworks used in your field will give you an edge during technical questions. Show that you’re not just aware of them but can also apply them—think real-life scenarios!
✨Show Your Analytical Skills
Compliance roles really focus on analytical skills, so be prepared for case studies or situational questions during the interview. We've got to demonstrate how we approach risk assessments or compliance audits, possibly drawing on examples from past experiences or university projects. Bring some thoughtful case scenarios to discuss!
✨Know Your Tools
Get comfortable with commonly used compliance software and tools. Familiarity with platforms like RSA or MetricStream can really impress during your interview, as it shows you're ready to hit the ground running. If you’ve had any experience with them, make sure to highlight that!
✨Align with Company Culture
Since it's a full-time position, show your long-term commitment and interest in the company’s mission and values. Dive into how your ethics and professional philosophy align with Nextech Group Limited’s stance on compliance. A shared vision can really resonate with interviewers looking for fit as much as skill!