Information Security Compliance and Governance Lead

3 months ago


London, Greater London, United Kingdom Currys plc Full time

Information Security Compliance & Governance Lead

Permanent Position - Hybrid Work Model

Full-Time Role
Grade Level 5

At Currys, we share a common goal: to empower everyone to experience outstanding technology. As the leading technology retailer in the UK, we take pride in the exceptional service our customers receive, thanks to our dedicated team of 25,000 passionate colleagues. Together, we foster a collaborative environment where we learn and grow, celebrating both significant achievements and everyday successes.

The Information Security Compliance and Governance Lead will oversee the effective implementation of our internal security best practices and regulatory compliance requirements, aimed at minimizing security risks and enhancing security maturity across Currys.

Role Overview:

In this position, your responsibilities will include:


• Conducting evaluations across all security processes. Where compliance is met, collaborate with stakeholders to ensure ongoing maintenance of controls.

• Building and nurturing relationships throughout Currys to promote the security agenda and remain informed about developments.

• Supporting security governance initiatives across the organization. Propose and collaborate with stakeholders to foster continuous improvement.

• Governance and control are increasingly vital within the Currys technology team. This role will be accountable for advancing the governance agenda within Information Security:

• Conducting maturity and capability assessments against NIST and ISO27001/2, effectively presenting the outcomes of these evaluations to the technology senior leadership team.

• Developing business cases for key compliance objectives (NIST/ISO/PCI) and assisting in the project management of these initiatives.

• Documenting controls implemented across Information Security, ensuring these are updated as capabilities and processes evolve over time.

• Managing the policy and standards exceptions process. Collaborate with subject matter experts in Information Security and technology risk functions to link exceptions to risk. Ensure alignment of policies and standards with hardening standards for various technologies.

• Overseeing Information Security policies and standards, working with subject matter experts to keep these current.

This role necessitates the ability to maintain productive internal and external relationships while managing one or more work streams within the information security domain, ensuring delivery aligns with agreed-upon scope, quality, timelines, and budget criteria. The individual must proactively manage associated risks and issues while actively engaging with business and technical stakeholders across the organization.

Required Qualifications:


• In-depth knowledge of PCI DSS is essential, as a significant portion of this role will concentrate on this standard.

• A solid understanding of ISO27001 and/or NIST CSF frameworks, with the ability to conduct audits and familiarity with auditing techniques.

• Proficiency in building relationships and communicating effectively with technical, commercial, and customer stakeholders.

• Strong verbal and written communication skills, with the ability to articulate well-reasoned arguments.

• Familiarity with key security technologies, including vulnerability management, security information and event management, intrusion detection, and access auditing.

We recognize that our people are the cornerstone of our success. That's why we continuously seek ways to reward outstanding performance. In addition to 30 days of annual leave (including bank holiday entitlement) and a competitive pension scheme (for permanent employees), we offer a range of benefits tailored to meet your needs:


• Company Bonus


• Hybrid Working Arrangement


• Company Pension Plan

Why Join Us:

Become part of our team, and we will support you every step of the way, helping you develop the career you aspire to with new opportunities, ongoing training, and skills for life.

Not only can you shape your own future, but you can also contribute to ours. As the largest recycler and repairer of technology in the UK, we are positioned to make a meaningful impact on both people and the planet.



  • London, Greater London, United Kingdom Currys plc Full time

    Information Security Compliance & Governance Lead Location: Hybrid Employment Type: Permanent Full Time Grade Level: 5 At Currys, we share a common goal: to empower everyone to experience outstanding technology. As the UK's leading tech retailer, we take pride in the exceptional service our customers receive, thanks to our dedicated team of...


  • London, Greater London, United Kingdom Currys plc Full time

    Information Security Compliance & Governance Lead Location: Hybrid Employment Type: Permanent Full Time Grade Level: 5 At Currys, we share a common goal: to empower everyone to experience outstanding technology. As the UK's leading tech retailer, we take pride in the exceptional service our customers receive, thanks to our dedicated team of...


  • London, Greater London, United Kingdom Currys plc Full time

    Information Security Compliance & Governance Lead Location: Hybrid Working Employment Type: Permanent Full Time Grade Level: 5 At Currys, we share a common goal: to enable everyone to experience exceptional technology. As the leading technology retailer in the UK, we take pride in the service our customers receive, thanks to our dedicated...


  • London, Greater London, United Kingdom Currys plc Full time

    Information Security Compliance & Governance Lead Location: Hybrid Working Employment Type: Permanent Full Time Grade Level: 5 At Currys, we share a common goal: to enable everyone to experience exceptional technology. As the leading technology retailer in the UK, we take pride in the service our customers receive, thanks to our dedicated...


  • London, Greater London, United Kingdom Currys plc Full time

    Information Security Compliance & Governance Lead Location: Hybrid Employment Type: Permanent Work Schedule: Full Time Grade Level: 5 At Currys, we share a common goal: to enable everyone to experience exceptional technology. As the leading technology retailer in the UK, we take pride in the outstanding service our customers receive, thanks...


  • London, Greater London, United Kingdom Currys plc Full time

    Information Security Compliance & Governance Lead Location: Hybrid Employment Type: Permanent Work Schedule: Full Time Grade Level: 5 At Currys, we share a common goal: to enable everyone to experience exceptional technology. As the leading technology retailer in the UK, we take pride in the outstanding service our customers receive, thanks...


  • London, Greater London, United Kingdom Currys plc Full time

    Information Security Compliance & Governance Lead Location: Hybrid Employment Type: Permanent Full Time Grade Level: 5 At Currys, we share a common goal: to empower everyone to enjoy exceptional technology. As the UK's premier technology retailer, we take pride in the outstanding service our customers receive, thanks to our dedicated team...


  • London, Greater London, United Kingdom Currys plc Full time

    Information Security Compliance & Governance Lead Location: Hybrid Employment Type: Permanent Full Time Grade Level: 5 At Currys, we share a common goal: to empower everyone to enjoy exceptional technology. As the UK's premier technology retailer, we take pride in the outstanding service our customers receive, thanks to our dedicated team...


  • London, Greater London, United Kingdom Camden and Islington NHS Foundation Trust Full time

    Job Title: Information Governance Compliance ManagerAbout the Role:The Information Governance Compliance Manager will be responsible for ensuring compliance with the Information Governance and Data Protection agenda across the North London Mental Health Partnership. This includes developing, implementing, monitoring, and auditing Information Governance...


  • London, Greater London, United Kingdom Camden and Islington NHS Foundation Trust Full time

    Job Title: Information Governance Compliance ManagerAbout the Role:The Information Governance Compliance Manager will be responsible for ensuring compliance with the Information Governance and Data Protection agenda across the North London Mental Health Partnership. This includes developing, implementing, monitoring, and auditing Information Governance...


  • London, Greater London, United Kingdom Camden and Islington NHS Foundation Trust Full time

    Job Title: Information Governance Compliance ManagerAbout the Role:The Information Governance Compliance Manager will be responsible for ensuring compliance with the Information Governance and Data Protection agenda across the North London Mental Health Partnership. This includes developing, implementing, monitoring, and auditing Information Governance...


  • London, Greater London, United Kingdom Camden and Islington NHS Foundation Trust Full time

    Job Title: Information Governance Compliance ManagerAbout the Role:The Information Governance Compliance Manager will be responsible for ensuring compliance with the Information Governance and Data Protection agenda across the North London Mental Health Partnership. This includes developing, implementing, monitoring, and auditing Information Governance...


  • London, Greater London, United Kingdom Camden and Islington NHS Foundation Trust Full time

    Job SummaryThe successful candidate will be responsible for managing compliance with the Information Governance and Data Protection agenda across the North London Mental Health Partnership. This will involve taking the lead in the development and management of compliance with the Information Governance Framework, incorporating Data Protection,...


  • London, Greater London, United Kingdom Camden and Islington NHS Foundation Trust Full time

    Job SummaryThe successful candidate will be responsible for overseeing compliance with the Information Governance and Data Protection agenda across the North London Mental Health Partnership. This role will involve leading the development and management of compliance with the Information Governance Framework, ensuring that all relevant policies and...


  • London, Greater London, United Kingdom Camden and Islington NHS Foundation Trust Full time

    Job Title: Information Governance Compliance ManagerAbout the Role:The Information Governance Compliance Manager will be responsible for ensuring compliance with the Information Governance and Data Protection agenda across the North London Mental Health Partnership. This includes developing, implementing, monitoring, and auditing Information Governance...


  • London, Greater London, United Kingdom Camden and Islington NHS Foundation Trust Full time

    Job Title: Information Governance Compliance ManagerAbout the Role:The Information Governance Compliance Manager will be responsible for ensuring compliance with the Information Governance and Data Protection agenda across the North London Mental Health Partnership. This includes developing, implementing, monitoring, and auditing Information Governance...


  • London, Greater London, United Kingdom Camden and Islington NHS Foundation Trust Full time

    Job SummaryThe post holder will be responsible for managing compliance with the Information Governance and Data Protection agenda across the North London Mental Health Partnership. This includes taking the lead in the development and management of compliance with the Information Governance Framework, as well as developing, implementing, monitoring, and...


  • London, Greater London, United Kingdom Camden and Islington NHS Foundation Trust Full time

    Job SummaryThe post holder will be responsible for managing compliance with the Information Governance and Data Protection agenda across the North London Mental Health Partnership. This includes taking the lead in the development and management of compliance with the Information Governance Framework, as well as developing, implementing, monitoring, and...


  • London, Greater London, United Kingdom Camden and Islington NHS Foundation Trust Full time

    Job SummaryThe post holder will be responsible for managing compliance with the Information Governance and Data Protection agenda across the North London Mental Health Partnership. This includes taking the lead in the development and management of compliance with the Information Governance Framework, as well as developing, implementing, monitoring, and...


  • London, Greater London, United Kingdom Camden and Islington NHS Foundation Trust Full time

    Job SummaryThe post holder will be responsible for managing compliance with the Information Governance and Data Protection agenda across the North London Mental Health Partnership. This includes taking the lead in the development and management of compliance with the Information Governance Framework, as well as developing, implementing, monitoring, and...