Search

Head of Risk & Compliance

DAZN
locationUnited Kingdom
PublishedPublished: Published 1 week ago
Risk Modelling
Fixed Term Contract
Head of Risk & Compliance

Department: 61-543 - Technology Operations - Technology Governance

Employment Type: Fixed Term Contract

Location: UK - Leeds

Reporting To: Finlay Stannard

Description
Are you ready to take the challenge to educate all employees in a young and ambitious organisation about their role in making information security a core part of their modus operandi and conduct to appropriate behaviour change?

DAZN is looking to hire an experienced Head of Risk & Compliance to join their Technology Governance team as a Fixed Term 14-month maternity cover role. Leading a team role overseeing the global strategic implementation of DAZN information security management system (ISMS), the chosen candidate will be responsible for delivering annual workstream activities that form the ISMS programme to ensure continued conformity with standards such as ISO27001 and PCI DSS.

What you'll be doing:
  • Leading the implementation and continued maintenance of DAZN's information security management system (ISMS) in conformity with ISO27001.
  • Managing and delivering annual workstreams for the successful completion of audits against ISO27001 and PCI DSS.
  • Providing subject matter expertise within the area of information security risk, business continuity, and supplier risk management, including managing third party risk management activities.
  • Maintain standards and procedures in relation to information security management.
  • Work closely with DAZNs senior team across business functions to identify and implement appropriate solutions that account for customers, operational need and cost.
  • Facilitating the identification and assessment of information security risk within the organisation and documenting it accordingly in the Information Security Risk Register
  • Work with internal departments to coordinate the delivery of continual security education and awareness for all employees, including targeted role-based training.
You'll have:
  • Strong background in information security governance, risk and compliance
  • Practical experience of achieving ISO27001 and PCI DSS 4.0 certification/attestation
  • Sound understanding of business continuity, data protection and risk management standards, including ISO22301 and ISO27005
  • Excellent written and verbal communication skills, interpersonal and collaborative skills, and the ability to communicate strategic information security topics, policies and standards as well as security-related concepts to technical and nontechnical audiences at various hierarchical levels
  • An understanding of IT Infrastructure and Cloud Services
  • Experience interacting, presenting and working with C-level executives (CTO, CIO, etc.)
  • Ability to deliver context directly to the business both in-person and online using collaborative tools such as Microsoft Teams
  • Proactiveness, confidence, prioritization, accountability
  • Experience in leading security training and awareness programmes within a large organisation is an advantage
  • Influencing skills, strong bias for action, natural collaborator and enabler
Benefits
Benefits include access to DAZN, 25 days' annual leave (increasing by 3 days after 3 years), private medical insurance, life assurance, pension contributions up to 5%, family friendly community including enhanced parental leave, electric vehicle benefit option, free access for you and one other to our workplace mental health platform app (Unmind), learning and development resources, opportunity for flexible working, and access to our internal speaker series and events.