At a Glance
- Tasks: Lead compliance and information security initiatives in a fast-growing tech company.
- Company: Join Sona, an innovative AI-native workforce management platform making waves globally.
- Benefits: Enjoy a competitive salary, share options, 35 days leave, and comprehensive health insurance.
- Why this job: Make a real impact by shaping compliance strategies in a dynamic environment.
- Qualifications: 5+ years in information security or compliance, with hands-on experience in certifications.
- Other info: Be part of a small team with big ambitions and excellent career growth opportunities.
The predicted salary is between 75000 - 85000 £ per year.
3 billion people across the world work in frontline jobs. Yet, despite rising costs and staff shortages, frontline organisations are still left to choose between paper, Excel, and WhatsApp, or decade-old workforce management solutions to take care of the most important part of their businesses - their people.
Enter Sona: the next generation of AI-native, frontline workforce management. We’ve built an end-to-end platform covering Scheduling, HR, Payroll, and Communications that gives the largest frontline organisations everything they need to staff more intelligently and empower their teams.
In 4 years, we’ve already made a deep impact on the lives of over 100k frontline workers and the operation of their organisations, grown the team to 120+, and secured over $50M in funding from notable VC’s, including Felicis, Northzone, Gradient Ventures (Google), SpeedInvest, Antler, and Notion Capital, plus notable angels like Tom Blomfield (Monzo). It’s a hugely exciting time to be joining the team as we’re still small enough that you’ll have a significant impact on the company’s growth trajectory and culture, yet large enough to have a great structure, experienced leaders and world-class benefits in place.
As we scale across the UK and US, we’re looking for a hands-on Compliance Manager with a strong information security background to own and evolve our security and compliance foundations. This role is InfoSec-led, with ISO 27001 as an immediate priority and SOC 2 likely in the medium term. You’ll work closely with Product, Engineering, Legal and Leadership to translate compliance requirements into practical, working systems that support growth rather than slow it down.
As this is our first full-time compliance hire, it is a fantastic opportunity to fully own and craft a robust, scalable compliance programme in a fast-growing software business. If this idea sounds exciting - we want to hear from you!
This role will sit in our Legal & Compliance function, reporting into our General Counsel. We are happy to consider candidates based anywhere in the UK, if you are happy with some occasional travel to our London office (Soho).
Responsibilities- Own and lead information security across the business, including policies, controls and risk management
- Lead external certifications and audits (e.g. ISO 27001, GDPR, SOC 2, Cyber Essentials)
- Work cross-functionally to advise teams on risk and data security, supporting them with use of new tools and AI adoption
- Translate security and compliance requirements into concrete systems, tools and processes
- Own or lead implementation of technical controls (e.g. access management, logging, monitoring, incident response, device management)
- Act as the point of contact for RFPs, customer security reviews, questionnaires and audits
- Support and develop AML compliance, extending depth over time where needed
- 5+ years’ experience in information security, compliance or closely related roles
- Hands-on experience leading or materially contributing to external certificates (e.g. ISO 27001, GDPR, SOC 2, Cyber Essentials)
- Experience in a SaaS or technology environment, ideally a startup or scale-up
- Strong understanding of security controls and how to implement them in practice (not just on paper)
- Experience working directly with tools, vendors and configurations (not purely advisory)
- A pragmatic, risk-based mindset with the ability to push back clearly and constructively
- Exposure to US customers or US compliance expectations
- Familiarity with AML or adjacent compliance areas, with willingness to deepen expertise
- Salary: £75,000-£85,000
- Share options
- 35 days annual leave (25 days standard plus 10 flexible public holiday days)
- Extra day of leave for every year of service
- Pension contributions matched up to 5%
- Comprehensive health insurance
- Enhanced parental leave & pay
- Co-working space stipend for those based outside London
- Annual all expenses paid team retreats
- The latest Macbook and equipment budget for your home office
- Professional development budget
- Unlimited free books
Note: this represents a typical benefits package for a UK-based, full-time employee. Exact details may vary based on location and employment type but we try to be as fair as possible to all of our team members. Please ask your contact in the Talent team to clarify the available benefits for you.
Compliance Manager in London employer: Sona
Contact Detail:
Sona Recruiting Team
StudySmarter Expert Advice 🤫
We think this is how you could land Compliance Manager in London
✨Tip Number 1
Network like a pro! Reach out to people in the industry, attend events, and connect on LinkedIn. You never know who might have the inside scoop on job openings or can put in a good word for you.
✨Tip Number 2
Prepare for interviews by researching the company and its culture. Understand their products and how they operate. This will help you tailor your answers and show that you're genuinely interested in joining the team.
✨Tip Number 3
Practice makes perfect! Conduct mock interviews with friends or use online platforms. This will help you get comfortable with common questions and refine your responses, making you more confident when it counts.
✨Tip Number 4
Don’t forget to apply through our website! It’s the best way to ensure your application gets seen. Plus, we love seeing candidates who are proactive about joining our amazing team at Sona.
We think you need these skills to ace Compliance Manager in London
Some tips for your application 🫡
Tailor Your CV: Make sure your CV is tailored to the Compliance Manager role. Highlight your experience in information security and compliance, especially any hands-on work with ISO 27001 or SOC 2. We want to see how your skills align with what we're looking for!
Craft a Compelling Cover Letter: Your cover letter is your chance to shine! Use it to explain why you're excited about joining Sona and how you can contribute to our compliance programme. Be genuine and let your personality come through – we love that!
Showcase Relevant Experience: When filling out your application, make sure to showcase any relevant experience you've had in SaaS or tech environments. We’re particularly interested in how you've implemented security controls in practice, so don’t hold back on those details!
Apply Through Our Website: We encourage you to apply directly through our website. It’s the best way for us to receive your application and ensures you’re considered for the role. Plus, it shows us you’re keen to be part of the Sona team!
How to prepare for a job interview at Sona
✨Know Your Compliance Stuff
Make sure you brush up on ISO 27001, SOC 2, and GDPR before the interview. Be ready to discuss how you've implemented these standards in past roles, as this will show your hands-on experience and understanding of compliance in a tech environment.
✨Show Your Cross-Functional Skills
This role involves working closely with various teams like Product and Engineering. Prepare examples of how you've successfully collaborated across departments to implement compliance measures or security protocols. Highlighting your teamwork skills will be key!
✨Be Ready for Practical Scenarios
Expect scenario-based questions where you'll need to demonstrate your problem-solving skills. Think about how you would translate compliance requirements into actionable systems and processes. Practising these scenarios can help you articulate your thought process clearly.
✨Ask Insightful Questions
At the end of the interview, don’t forget to ask questions that show your interest in the company’s growth and compliance culture. Inquire about their current compliance challenges or how they envision the role evolving. This shows you're not just interested in the job, but also in contributing to their success.