At a Glance
- Tasks: Lead compliance and risk governance, ensuring regulatory integrity as we scale.
- Company: Join Onsi, a rapidly growing company backed by top investors like Zurich Insurance.
- Benefits: Enjoy competitive salary, pension contributions, and unique perks like early wage access.
- Why this job: Make a real impact in a dynamic environment while shaping compliance strategies.
- Qualifications: Senior experience in compliance or risk within regulated sectors is essential.
- Other info: Be part of a small, high-impact team with excellent career growth opportunities.
The predicted salary is between 36000 - 60000 ÂŁ per year.
Onsi operates in a highly regulated environment where trust, security, and regulatory integrity are foundational to our growth. As we scale our enterprise partnerships and insurance operations across markets, maintaining a robust, scalable compliance and risk framework is critical—not just to meet regulatory expectations, but to enable the business to move with confidence. This role exists to own enterprise risk, compliance, and legal governance across the business; ensuring we remain compliant, audit-ready, and resilient as we grow across markets.
Why this role matters
As Compliance Lead, you will be a senior steward of Onsi’s regulatory posture. You’ll provide governance, oversight, and assurance—ensuring that compliance, security and legal-related requirements are consistently met across the organisation.
Reporting line & team
- Reports to: COO
- Line management: 1 direct report (Compliance Specialist)
- Operating model: You set strategy, priorities, governance and assurance; your Compliance Specialist runs day-to-day programme execution (e.g., control testing coordination, evidence collection, documentation maintenance, audit preparation support), working cross-functionally with Product, Engineering, Ops and InfoSec.
Key Responsibilities
- Enterprise Risk and Compliance Framework: Own and evolve a group-wide compliance and risk framework that supports regulatory compliance, operational resilience, and scale. Define risk appetite/thresholds (where appropriate), maintain the enterprise risk register, and ensure clear escalation and decision-making pathways.
- Regulatory Engagement & Horizon Scanning (FCA, AFM, DFSA): Act as Onsi's primary compliance interface with regulators (e.g., UK FCA, Dutch AFM and Danish FSA), as appropriate to our operating model and permissions. Lead horizon scanning, regulatory change management, and early response to new or evolving obligations—translating requirements into practical controls and delivery expectations.
- Policy, Controls & Governance Oversight: Ensure clear, practical compliance, legal, and security policies are in place, understood, and operating effectively across the business. Establish a governance cadence (forums, reporting, attestations) that provides leadership with clear visibility of compliance posture and issues.
- Audit, Assurance & Due Diligence (Carriers / Lloyd’s / Enterprise / Regulatory): Own readiness for audits and reviews by insurance carriers and Lloyd’s, and support other assurance activity (enterprise security reviews, regulatory reviews, customer due diligence). Set the standard for documentation quality and evidence expectations; ensure controls are demonstrably operating and issues are remediated with pace and rigour. Oversee third-party and partner risk governance from a compliance, cyber, and legal risk perspective (including outsourced service considerations).
- Insurance Operations Governance: Oversee compliance standards, governance protocols, and regulatory obligations relating to insurance operations and partners. Ensure partner expectations and delegated requirements (where applicable) are met and evidenced.
- Delivery Compliance & KYC Oversight: Provide oversight of KYC, onboarding, and delivery-side compliance requirements, ensuring proportionate controls without slowing execution. Ensure ownership is clear across teams and that compliance requirements are embedded early in delivery, not bolted on at the end.
- GDPR & Data Protection Governance: Own oversight of GDPR compliance, ensuring appropriate governance around privacy‑by‑design, DPIAs/assessments where required, incident readiness, and third‑party processing risk. Partner with Product, Engineering, and InfoSec to ensure privacy and security controls remain effective and auditable.
- ISO 27001 Oversight & Certification Maintenance: Provide senior ownership of ISO 27001 certification maintenance and audit readiness, ensuring governance, internal assurance, management review inputs, and corrective actions are operating effectively. Work closely with InfoSec and Engineering while maintaining independence of oversight and assurance.
- Team Leadership & Capability Building: Line manage and develop the Compliance Specialist, setting priorities, coaching on execution, and ensuring high-quality programme outputs. Build scalable ways of working—tooling, templates, playbooks, and reporting—that reduce friction and improve consistency over time.
- Compliance Training & Culture: Set direction for compliance training and promote a practical, values‑led compliance culture across Onsi. Enable teams to understand requirements and make good decisions without creating bottlenecks.
The successful candidate is expected to follow all Onsi security policies and procedures.
What you bring
- A recognised professional qualification in compliance, data protection, risk, or security governance (or equivalent senior experience delivering these outcomes in practice).
- Senior experience in compliance, risk, and/or legal governance within regulated environments (financial services, insurance, fintech, or adjacent).
- Strong working knowledge of regulatory, legal, cybersecurity, and data protection frameworks, including UK GDPR, ISO 27001, Cyber Essentials, and operational resilience expectations.
- Experience designing and operating regulatory and legal risk frameworks, including horizon scanning and regulatory change management.
- Credible experience preparing organisations for audits, regulatory reviews, enterprise due diligence, and legal scrutiny—and engaging confidently with regulators, insurers, auditors, and external stakeholders.
- Experience overseeing third‑party and partner risk, including compliance, cyber, and legal risk assessments.
- Strong judgement and communication skills, with the confidence to challenge constructively and elevate when needed, while staying pragmatic and delivery‑oriented.
What will you get in return
- Pension contributions (UK) with matching up to 7%
- Access to Onsi ODP & Marketplace: Get hands‑on with our own product including early wage access and savings plus exclusive offers through Onsi Marketplace.
- CycleSaver subscription: save up to 47% on shared cycles (Lime, Forest, Beryl, Dott, Voi, Santander) with flexible salary sacrifice.
- Cycle to Work scheme: buy a bike or e‑bike via salary sacrifice and save on tax.
- 25 days annual leave + UK bank holidays.
Compliance Lead in London employer: Onsi
Contact Detail:
Onsi Recruiting Team
StudySmarter Expert Advice 🤫
We think this is how you could land Compliance Lead in London
✨Tip Number 1
Network like a pro! Reach out to people in the compliance and risk space, especially those at Onsi. A friendly chat can open doors that applications alone can't.
✨Tip Number 2
Prepare for interviews by brushing up on your knowledge of regulatory frameworks and compliance standards. Show us you know your stuff and can talk confidently about how you'd tackle challenges in the role.
✨Tip Number 3
Don’t just wait for job postings—be proactive! If you think you’d be a great fit for Onsi, reach out directly through our website. Sometimes, the best opportunities come from showing initiative.
✨Tip Number 4
Follow up after interviews with a thank-you note. It’s a simple gesture that shows your enthusiasm for the role and keeps you top of mind as we make our decisions.
We think you need these skills to ace Compliance Lead in London
Some tips for your application 🫡
Tailor Your Application: Make sure to customise your CV and cover letter for the Compliance Lead role. Highlight your relevant experience in compliance, risk management, and legal governance, and show how it aligns with Onsi's needs.
Showcase Your Skills: Don’t just list your qualifications—demonstrate how your skills can benefit Onsi. Use specific examples from your past roles that illustrate your ability to manage compliance frameworks and engage with regulators.
Be Clear and Concise: Keep your application straightforward and to the point. Use clear language and avoid jargon where possible. This will help us quickly understand your fit for the role and your communication style.
Apply Through Our Website: We encourage you to submit your application through our website. It’s the best way for us to receive your details and ensures you’re considered for the role. Plus, it’s super easy!
How to prepare for a job interview at Onsi
✨Know Your Regulations
Familiarise yourself with the key regulations relevant to Onsi, such as UK GDPR and ISO 27001. Be prepared to discuss how these frameworks impact compliance and risk management in a practical sense.
✨Showcase Your Experience
Highlight your previous experience in compliance and risk governance, especially within regulated environments like financial services or insurance. Use specific examples to demonstrate how you've successfully navigated audits or regulatory reviews.
✨Prepare for Scenario Questions
Expect scenario-based questions that assess your judgement and decision-making skills. Think about past situations where you had to challenge compliance issues or engage with regulators, and be ready to explain your thought process.
✨Emphasise Team Leadership Skills
As a Compliance Lead, you'll be managing a team. Be sure to discuss your leadership style and how you plan to develop your Compliance Specialist. Share examples of how you've built effective teams and fostered a culture of compliance in previous roles.