Information Security Compliance Lead

The Rank Group

Rank Group Logo

Job Description

Job Description

Are you a highly organised and proactive information security professional with a passion for compliance and audit management? Do you thrive in a fast-paced environment, ensuring businesses meet critical security standards? If so, Rank Group is looking for an Information Security Compliance Lead to oversee our security maturity initiatives and audit processes.

About the Role:

As the Information Security Compliance Lead, you will play a pivotal role in maintaining and enhancing Rank Group’s security posture. Working within the IT Security Team, you will ensure alignment with internal controls, regulatory requirements, and industry-leading security standards such as ISO 27001 and PCI DSS. Your responsibilities will include:

  • Leading the planning and execution of IT security audits, including ad-hoc assessments and recurring external audits (e.g., UK Gambling Commission audits).
  • Managing an annual audit roadmap, driving stakeholder engagement and achieving key milestones.
  • Updating and maintaining control matrices and compliance reports, providing strategic recommendations to senior management.
  • Translating complex technical security concepts into clear, actionable insights for business stakeholders.
  • Collaborating closely with internal teams, auditors, and regulatory bodies to ensure full compliance and continuous improvement.

Qualifications

  • Proven experience leading audit preparation activities for ISO 27001, PCI DSS, and GDPR compliance.
  • Degree in IT, Information Security, or Cyber Security (or equivalent). 
  • Strong project leadership and team management skills; project management certification is beneficial but not required.
  • Familiarity with ISMS ticketing systems (e.g., ServiceNow, Confluence, Jira).
  • Experience developing remediation plans and resolving senior stakeholder concerns.
  • Knowledge of Data Protection, Privacy, Governance, Risk, and Compliance principles.
  • Desirable but not essential: industry-recognised certifications (CISM, CISA, ISO 27001 Lead Implementer, PCI DSS ISA, PCI-P).
  • Expertise in UK Gambling Commission Remote Technical Standards. 
  • Strong foundation in Governance, Risk Management, and Compliance.
  • Project management experience, handling budgets exceeding £250K.

     

    Additional Information

    #LI-IZ1 #LI-Hybrid

    Join us to unlock benefits and opportunities that will boost your career journey in a vibrant, inclusive and fulfilling work environment – so you can #BeYourself

    Wellbeing@Rank is important... From hybrid working and colleague support networks to menopause support and weekly PepTalks, we’re here for you.  

    We’ll also invest in your growth by providing development opportunities, leadership training and cutting-edge industry certifications so you have the tools and resources to help you work, win and grow with us. 

    Immerse yourself in new cultures and gain international exposure through our global business. Collaborate with colleagues from around the globe.  

    From pensions to bonus schemes, and private medical insurance to life insurance – we've got you covered. 

    *Our benefits vary by brand and/or location. Please have a chat with your local Talent Acquisition specialist to find out what’s in place in your location.    

    The Rank Group are committed to being an inclusive employer, ensuring that we better understand and meet the needs and requirements of our candidates and customers. 

    We aim to do this by facilitating fair and equal access to our services. If you require a reasonable adjustment to be made, please reach out to let us know ahead of your interview. 

    Start application