Information Security Compliance and Governance Lead

3 months ago


London, Greater London, United Kingdom Currys plc Full time

Information Security Compliance & Governance Lead

Location: Hybrid

Employment Type: Permanent

Full Time
Grade Level: 5

At Currys, we share a common goal: to empower everyone to enjoy exceptional technology. As the UK's premier technology retailer, we take pride in the outstanding service our customers receive, thanks to our dedicated team of 25,000 compassionate and committed individuals. Together, we foster a collaborative environment, learning and growing as one team, while celebrating both significant and minor achievements that make each day remarkable.

The Information Security Compliance and Governance Lead will play a crucial role in ensuring the effective implementation of our internal security best practices and adherence to regulatory compliance requirements, which are essential for minimizing security risks and enhancing security maturity throughout Currys.

Role Overview:

In this position, your responsibilities will include:


• Conducting assessments across all security processes. Where compliance is confirmed, collaborating with stakeholders to ensure ongoing maintenance of controls.

• Building and nurturing relationships across Currys to promote the security agenda and remain informed about industry developments.

• Supporting security governance initiatives throughout the organization, while proposing and collaborating with stakeholders on continuous improvement efforts.

• Governance and control is an increasingly vital focus within the Currys technology team. This role will be responsible for advancing the governance agenda within Information Security:

• Performing maturity and capability assessments in alignment with NIST and ISO27001/2, and effectively presenting the findings to the technology senior leadership team.

• Developing business cases for key compliance objectives (NIST/ISO/PCI) and assisting in the project management of these initiatives.

• Documenting controls that operate within Information Security, ensuring they are updated as capabilities and processes evolve over time.

• Managing the policy and standards exceptions process. Collaborating with subject matter experts in Information Security and technology risk functions to connect exceptions to risk. Working with experts to ensure that policies and standards align with hardening standards for various technologies.

• Owning Information Security policies and standards, collaborating with subject matter experts to keep these updated.

This role requires the individual to cultivate beneficial internal and external relationships while managing one or more work streams within the information security function, ensuring delivery aligns with agreed-upon scope, quality, timelines, and budget criteria. Proactivity in managing associated risks and issues is essential, alongside active engagement with business and technical stakeholders across the organization.

Required Qualifications:


• Extensive knowledge of PCI DSS is essential, as a significant portion of this role will concentrate on this standard.

• A solid understanding of ISO27001 and/or NIST CSF frameworks, with the ability to conduct audits and familiarity with auditing techniques.

• Strong relationship-building skills and effective communication with technical, commercial, and customer stakeholders.

• Proficient in both verbal and written communication, with the ability to present well-reasoned arguments.

• Familiarity with key security technologies, including vulnerability management, security information and event management, intrusion detection, and access auditing.

We recognize that our people are the cornerstone of our success. That's why we continuously seek ways to reward exceptional performance. In addition to 30 days of annual leave (including bank holiday entitlement) and a competitive pension scheme (for permanent employees), we offer a range of benefits designed to meet your needs:


• Company bonus

• Hybrid Working

• Company Pension

Why Join Us:

By joining our team, you'll receive support at every step of your journey, enabling you to develop the career you desire through new opportunities, ongoing training, and lifelong skills.

Not only can you shape your own future, but you can also help us take charge of ours. As the largest recycler and repairer of technology in the UK, we are positioned to make a significant impact on both people and the planet.



  • London, Greater London, United Kingdom Currys plc Full time

    Information Security Compliance & Governance Lead Location: Hybrid Working Employment Type: Permanent Full Time Grade Level: 5 At Currys, we share a common goal: to enable everyone to experience exceptional technology. As the leading technology retailer in the UK, we take pride in the service our customers receive, thanks to our dedicated...


  • London, Greater London, United Kingdom Currys plc Full time

    Information Security Compliance & Governance Lead Location: Hybrid Working Employment Type: Permanent Full Time Grade Level: 5 At Currys, we share a common goal: to enable everyone to experience exceptional technology. As the leading technology retailer in the UK, we take pride in the service our customers receive, thanks to our dedicated...


  • London, Greater London, United Kingdom Currys plc Full time

    Information Security Compliance & Governance Lead Location: Hybrid Employment Type: Permanent Full Time Grade Level: 5 At Currys, we share a common goal: to empower everyone to experience outstanding technology. As the UK's leading tech retailer, we take pride in the exceptional service our customers receive, thanks to our dedicated team of...


  • London, Greater London, United Kingdom Currys plc Full time

    Information Security Compliance & Governance Lead Permanent Position - Hybrid Work Model Full-Time Role Grade Level 5 At Currys, we share a common goal: to empower everyone to experience outstanding technology. As the leading technology retailer in the UK, we take pride in the exceptional service our customers receive, thanks to our dedicated...


  • London, Greater London, United Kingdom Currys plc Full time

    Information Security Compliance & Governance Lead Location: Hybrid Employment Type: Permanent Full Time Grade Level: 5 At Currys, we share a common goal: to empower everyone to experience outstanding technology. As the UK's leading tech retailer, we take pride in the exceptional service our customers receive, thanks to our dedicated team of...


  • London, Greater London, United Kingdom Currys plc Full time

    Information Security Compliance & Governance Lead Permanent Position - Hybrid Work Model Full-Time Role Grade Level 5 At Currys, we share a common goal: to empower everyone to experience outstanding technology. As the leading technology retailer in the UK, we take pride in the exceptional service our customers receive, thanks to our dedicated...


  • London, Greater London, United Kingdom Currys plc Full time

    Information Security Compliance & Governance Lead Location: Hybrid Employment Type: Permanent Work Schedule: Full Time Grade Level: 5 At Currys, we share a common goal: to enable everyone to experience exceptional technology. As the leading technology retailer in the UK, we take pride in the outstanding service our customers receive, thanks...


  • London, Greater London, United Kingdom Currys plc Full time

    Information Security Compliance & Governance Lead Location: Hybrid Employment Type: Permanent Work Schedule: Full Time Grade Level: 5 At Currys, we share a common goal: to enable everyone to experience exceptional technology. As the leading technology retailer in the UK, we take pride in the outstanding service our customers receive, thanks...


  • London, Greater London, United Kingdom Camden and Islington NHS Foundation Trust Full time

    Job Title: Information Governance Compliance ManagerAbout the Role:The Information Governance Compliance Manager will be responsible for ensuring compliance with the Information Governance and Data Protection agenda across the North London Mental Health Partnership. This includes developing, implementing, monitoring, and auditing Information Governance...


  • London, Greater London, United Kingdom Camden and Islington NHS Foundation Trust Full time

    Job Title: Information Governance Compliance ManagerAbout the Role:The Information Governance Compliance Manager will be responsible for ensuring compliance with the Information Governance and Data Protection agenda across the North London Mental Health Partnership. This includes developing, implementing, monitoring, and auditing Information Governance...


  • London, Greater London, United Kingdom Camden and Islington NHS Foundation Trust Full time

    Job Title: Information Governance Compliance ManagerAbout the Role:The Information Governance Compliance Manager will be responsible for ensuring compliance with the Information Governance and Data Protection agenda across the North London Mental Health Partnership. This includes developing, implementing, monitoring, and auditing Information Governance...


  • London, Greater London, United Kingdom Camden and Islington NHS Foundation Trust Full time

    Job Title: Information Governance Compliance ManagerAbout the Role:The Information Governance Compliance Manager will be responsible for ensuring compliance with the Information Governance and Data Protection agenda across the North London Mental Health Partnership. This includes developing, implementing, monitoring, and auditing Information Governance...


  • London, Greater London, United Kingdom Camden and Islington NHS Foundation Trust Full time

    Job SummaryThe successful candidate will be responsible for managing compliance with the Information Governance and Data Protection agenda across the North London Mental Health Partnership. This will involve taking the lead in the development and management of compliance with the Information Governance Framework, incorporating Data Protection,...


  • London, Greater London, United Kingdom Camden and Islington NHS Foundation Trust Full time

    Job SummaryThe successful candidate will be responsible for overseeing compliance with the Information Governance and Data Protection agenda across the North London Mental Health Partnership. This role will involve leading the development and management of compliance with the Information Governance Framework, ensuring that all relevant policies and...


  • London, Greater London, United Kingdom Camden and Islington NHS Foundation Trust Full time

    Job Title: Information Governance Compliance ManagerAbout the Role:The Information Governance Compliance Manager will be responsible for ensuring compliance with the Information Governance and Data Protection agenda across the North London Mental Health Partnership. This includes developing, implementing, monitoring, and auditing Information Governance...


  • London, Greater London, United Kingdom Camden and Islington NHS Foundation Trust Full time

    Job Title: Information Governance Compliance ManagerAbout the Role:The Information Governance Compliance Manager will be responsible for ensuring compliance with the Information Governance and Data Protection agenda across the North London Mental Health Partnership. This includes developing, implementing, monitoring, and auditing Information Governance...


  • London, Greater London, United Kingdom Camden and Islington NHS Foundation Trust Full time

    Job SummaryThe post holder will be responsible for managing compliance with the Information Governance and Data Protection agenda across the North London Mental Health Partnership. This includes taking the lead in the development and management of compliance with the Information Governance Framework, as well as developing, implementing, monitoring, and...


  • London, Greater London, United Kingdom Camden and Islington NHS Foundation Trust Full time

    Job SummaryThe post holder will be responsible for managing compliance with the Information Governance and Data Protection agenda across the North London Mental Health Partnership. This includes taking the lead in the development and management of compliance with the Information Governance Framework, as well as developing, implementing, monitoring, and...


  • London, Greater London, United Kingdom Camden and Islington NHS Foundation Trust Full time

    Job SummaryThe post holder will be responsible for managing compliance with the Information Governance and Data Protection agenda across the North London Mental Health Partnership. This includes taking the lead in the development and management of compliance with the Information Governance Framework, as well as developing, implementing, monitoring, and...


  • London, Greater London, United Kingdom Camden and Islington NHS Foundation Trust Full time

    Job SummaryThe post holder will be responsible for managing compliance with the Information Governance and Data Protection agenda across the North London Mental Health Partnership. This includes taking the lead in the development and management of compliance with the Information Governance Framework, as well as developing, implementing, monitoring, and...