Full-Time

IT – Security Controls

Risk & Compliance Manager

Posted on 4/25/2024

WPP

WPP

10,001+ employees

AI-driven creative transformation for marketing

Consulting
Fintech

Senior

London, UK

Requirements
  • Certifications in security (i.e. CISA, CRISC, CISSP, CISM) desirable but not essential
  • Degree or equivalent (i.e. BSc, BEng, MSc) desirable but not essential
  • Comprehensive knowledge about Information Security risk standards, frameworks and best practices (i.e., ISO27K1, NIST, CIS, SOC:1-2 Cyber Essentials, GDPR)
  • Strong and deep background in cyber / information security in complex global organisations
  • Track record of building / leading diverse, high performing, operations teams from the ground up and comfortable working with autonomy
  • Ability to provide leadership on complex and unfamiliar situations, often involving risk and emotion
  • Expert communicator with a track record of operating, partnering with and influencing up to and including exec-level stakeholders
  • Able to lead highly complex programmes across multiple units and geographies with high-pressure deliverable
  • Risk and Compliance subject-matter-expert with in-depth knowledge of security governance in the cloud and on-prem IT technologies
  • Good knowledge of qualitative, quantitative information security risk methodologies, and/or experience working with ISO31000 enterprise risk management standard
  • Good understanding of managing internal and external audits (i.e., SOC:1-2, SOX) and assurance activities, including testing the design and operational effectiveness of security controls
  • Ability to operate and lead in a fast-paced organizational transformation and able to navigate and champion change across organisational / geographical complexity
  • A genuine desire to lead, develop, coach and mentor direct reports/team members
Responsibilities
  • Work closely with and assist OA department head in developing a risk and compliance strategy for the S&H archetype
  • Establish security, risk & compliance community across the range of S&H agencies
  • Drive the Archetype’s DR strategy and approach
  • Drive Business Continuity (BC) planning
  • Conduct and support IT Risk Assessments
  • Respond to tracking and reporting from Internal, External or Client Audit findings
  • Conduct S&H Archetype self-certification and self-monitoring for IT controls
  • Support S&H Archetype-wide input into the WPP IT Asset Register and CMDB
  • Be S&H point of contact for relevant business stakeholder escalations
  • Work closely with the IT Ops and CSO security teams
  • Drive engagement, comms and adoption for all risk, compliance and security tasks
  • Design and deliver a range of educational activities and material
  • Build strong relationships with external stakeholders
  • Ensure S&H remains compliant with national legislative, regulatory, contractual and WPP security governance obligations
  • Support OpCo’s and Agencies in the S&H Archetype during client pitch
  • Be responsible for managing a team of risk and compliance analysts

As a leader in the creative transformation domain, this company boasts a deep integration of AI technologies to enhance marketing creativity and personalization significantly. This approach not only sets new industry standards but also fosters a culture of innovative collaboration among its teams. Its emphasis on technology-driven solutions positions it ideally for those eager to work in a forward-thinking environment that continuously pushes the envelope in effective marketing strategies.

Company Stage

N/A

Total Funding

N/A

Headquarters

, United Kingdom

Founded

2015

Growth & Insights
Headcount

6 month growth

-12%

1 year growth

-15%

2 year growth

-24%