Senior Information Security Specialist

Deliveroo
London
Workplace: OnsiteFull timeFunction: CybersecurityExperience: 6+ yearsSkills: ["Communication","Writing","Facilitation","Stakeholder management","Problem solving"]

Senior Information Security Specialist to mature global security and privacy compliance risk programs across a technology-driven company. Build and operationalise a global compliance change management framework, translate regulatory requirements into actionable controls, lead risk workshops with cross-functional teams, maintain obligation inventories, and drive remediation to ensure audit readiness and ongoing risk management.

Loading

Loading job details...

Preparing the role view and application actions.

FursaFursa
Deliveroo
Deliveroo
2 months ago

Senior Information Security Specialist

✓ Verified Job

Canonical indexed version, validated from employer's careers page.

Source: Company careers pageValidated by: Fursa AI
Last checked: 2 hours agoStatus: Live

Job Summary

Senior Information Security Specialist to mature global security and privacy compliance risk programs across a technology-driven company. Build and operationalise a global compliance change management framework, translate regulatory requirements into actionable controls, lead risk workshops with cross-functional teams, maintain obligation inventories, and drive remediation to ensure audit readiness and ongoing risk management.
Location: London
Workplace: Onsite
Employment Type: Full time
Job Function: Cybersecurity
Seniority: Sr. Manager level

Key Responsibilities

  • •Design and operate a global compliance change management framework to identify new or changing security, privacy, regulatory, contractual and framework obligations across markets and products.
  • •Maintain a structured view of the compliance landscape, including obligation inventories, control mappings, ownership models, risk decisions and remediation status.
  • •Lead compliance-impact assessments for new regulations, framework updates, product launches, market expansions, vendor changes and major technology initiatives.
  • •Facilitate compliance risk workshops with Engineering, Legal, Privacy, Product, Procurement, IT, Internal Audit and business stakeholders.
  • •Translate complex regulatory, security, and privacy requirements into practical control expectations and specifications that technical and non-technical teams can implement.

Pay and Benefits

Perks:Health InsurancePensionAnnual Leave

Key Requirements

  • •6+ years of experience in GRC, security compliance, technology risk, privacy compliance, IT audit, or related field in a global technology environment (preferred in SaaS/fintech/payments)
  • •Managed or materially contributed to a global compliance framework or security/privacy compliance program
  • •Built, operated or significantly improved a compliance change management, obligations management, control mapping or regulatory-change process
  • •Hands-on experience facilitating risk assessments, compliance risk workshops, control self-assessments and remediation planning with cross-functional stakeholders
  • •Strong working knowledge of security and privacy frameworks such as ISO 27001, SOC 2, GDPR or CCPA; ability to assess applicability of new frameworks/regulatory requirements
Experience:6+ yearsTechnologySaaSFintechPaymentsMarketplace
Skills:CommunicationWritingFacilitationStakeholder managementProblem solving
Tech Stack:ISO 27001SOC 2GDPRCCPACloudIAMSDLCIncident responseVendor riskRisk management

Company Brief

Deliveroo
Deliveroo is a multinational online food and grocery delivery marketplace connecting consumers, restaurants, retailers and riders via its app and platform, operating across multiple countries with fast local delivery and logistics services.
Industry: Online Marketplaces
Company Size: Enterprise (1,001+ employees)
Revenue: USD 1B+
Growth: Public Company
Valuation: Unicorn (USD 1B+)
Funding: IPO / Publicly Listed
Headquarters: London, United Kingdom
Founded: 2013
Glassdoor
Glassdoor: 3.4
WebsiteLinkedInGlassdoor