Back to all jobs

- Employment
- Permanent Full Time
About the role
What you'll be responsible for:
- Own and maintain the Information Governance Policy (Tier 1), presenting updates to the Board and CIO.
- Develop, review, and publish all Tier 2 standards annually.
- Maintain a governance register of standards and controls.
- Lead or contribute to governance forums and committees.
- Lead UK GDPR compliance, including ROPA, DPIAs, data breaches, and DSARs.
- Support or act as DPO and liaise with the ICO.
- Strengthen data protection controls across systems and the data platform.
- Provide direction to cyber security activities and controls.
- Own the Cyber Incident Response Plan, including escalation procedures.
- Maintain Cyber Essentials Plus and support future ISO 27001 readiness.
- Lead response to major cyber or data incidents.
- Develop and embed AI governance standards.
- Enforce data governance (classification, quality, access) within Unity Catalog.
- Support assessment and onboarding of third-party AI tools.
- Lead, coach, and develop the cyber and data protection team.
- Deliver employee awareness and training programmes.
- Oversee supplier security assessments and risk registers.
- Engage with regulators and external bodies.
- Identify and manage information governance and cyber risks.
- Ensure alignment with FCA requirements and strong customer outcomes.
What you'll need:
- Strong expertise in UK GDPR and practical experience with DPIAs, DSARs, and breaches.
- Experience implementing cyber or data governance frameworks (e.g. Cyber Essentials Plus, ISO 27001).
- Proven people management within technical or compliance teams.
- Ability to translate complex risk into clear, board-level communication.
- Experience creating governance policies, standards, and frameworks from scratch.
- Strong stakeholder management across business, legal, and technology.
- Experience with incident response planning, risk management, and audit readiness.
- Understanding of AI governance and data platform controls (ideally Databricks).
- Experience managing supplier security risk.
- Knowledge of FCA expectations within financial services.
- Excellent communication, organisation, and prioritisation skills.
Our Benefits
- Hybrid working – 2 days in the office and 3 days working from home
- 25 days annual leave, rising to 27 days over 2 years’ service and 30 days after 5 years’ service. Plus bank holidays!
- Discretionary annual bonus
- Pension scheme – 5% employee, 6% employer
- Flexible working – we will always consider applications for those who require less than the advertised hours
- Flexi-time
- Healthcare Cash Plan – claim cashback on a variety of everyday healthcare costs
- Electric vehicle – salary sacrifice scheme
- 100’s of exclusive retailer discounts
- Professional wellbeing, health & fitness app - Wrkit
- Enhanced parental leave, including time off for IVF appointments
- Religious bank holidays – if you don’t celebrate Christmas and Easter, you can use these annual leave days on other occasions throughout the year.
- Life Assurance - 4 times your salary
- 25% Car Insurance Discount
- 20% Travel Insurance Discount
- Cycle to Work Scheme
- Employee Referral Scheme
- Community support day
755,000+ hidden jobs like this
Somerset Bridge Group and thousands of companies post here first — often days before LinkedIn or Indeed. Your first 5 applications are free; go Pro to apply without limits.
Everything Pro unlocks:
- Unlimited applications — free stops at 5
- Track every application in one place
- Apply straight to the source, one click
- Save & organize roles you love
- Roles pulled from company boards before the big sites