Let’s get started
By clicking ‘Next’, I agree to the Terms of Service
and Privacy Policy
Jobs / Job page
Technical Compliance Lead (Must be in UK) image - Rise Careers
Job details

Technical Compliance Lead (Must be in UK)

PolyAI builds enterprise voice assistants that carry on natural conversations with customers to solve their problems. Our voice assistants understand customers, regardless of what they say or how they say it. We serve enterprises where customer conversation is an important part of doing business. Our customers include some of the leading names in banking, hospitality, insurance, retail, and telecommunications.
Our enterprise clients deploy PolyAI voice assistants to cut down on wait times and free up live staff to focus on calls requiring empathy and judgment. As a result, our enterprise clients see improved customer satisfaction, employee retention and operational efficiency.

We are looking for a passionate, motivated, process oriented person to join our Compliance team in a fast growing AI company. You will be working alongside the IT, DevSecOps and Compliance teams. Your main responsibility will be to enforce Compliance and Security processes across the company, supporting the Engineering team and contributing to the further development of a robust and compliant Security posture at PolyAI.

  • 3-5 years experience in a technical role at a company with heavy Compliance requirements
  • Knowledge and experience maintaining a high level of security in AWS or other cloud environments
  • Experience of compliance certification audits, like ISO27001, SOC-2 Type 2 and PCI-DSS
  • Working with technical teams (Development and Product) in a security-focused role
  • Previous experience with vulnerability management tools and patching
  • Secure Coding knowledge is preferred
  • Excellent written and verbal communication skills.
  • Experience in the use and administration of a Cloud Security platform
  • Providing guidance to the Engineering team around Compliance and Security requirements for projects and change management
  • Keeping our Production environment secure, working with the DevSecOps team, ensure our client data is safely processed and stored
  • Patch and security vulnerability remediation. Working on a Cloud security platform to identify and secure all vulnerabilities and weaknesses in our Production environment
  • Helping us develop our processes by contributing to the writing and revision of technical documentation, Cloud Security, and Compliance policies and Operating Procedures.
  • Working with the IT team to review and implement security measures to keep our IT assets secure
  • Assisting with client security questionnaires and queries
  • Working as an integral part of our internal Compliance team for audits and internal processes/reviews
  • Ensuring high availability and resilience of our platform via planning and testing (DR, BCP, backup testing)

What will you be working with:

  • AWS
  • GCP
  • Azure
  • GitHub
  • Cloud Security platform such as Orca or Wiz
  • Vanta or other Compliance management platform
  • Intruder.io
  • Tenable

💰 Participation in the company’s employee share options plan

🏝 25 days holiday, plus bank holidays

🏡 Flexible working from home policy plus a one-off WFH allowance when you join

🌎 Work from outside of the UK for up to 6 months each year

🧡 Enhanced parental leave

📚 Yearly learning budget

🚲 Bike2Work scheme

📚 Annual learning and development allowance

🏡 One-off WFH allowance when you join

👨‍👩‍👧 Company-funded fertility and family-forming programmes

🌸 Menopause care programme with Maven

🏥 Private healthcare and dental cover, discounts on gym members and relaxation apps, and access to a range of mental health programs

Equal Opportunity Statement:

PolyAI is proud to be an equal opportunity employer. We celebrate diversity and are committed to creating an inclusive environment for all employees.

All employment decisions at PolyAI will be based on the business needs without attention to ethnicity, religion, sexual orientation, gender identity, family or parental status, national origin, neurodiversity status or disability status.

PolyAI Glassdoor Company Review
4.1 Glassdoor star iconGlassdoor star iconGlassdoor star iconGlassdoor star icon Glassdoor star icon
PolyAI DE&I Review
4.2 Glassdoor star iconGlassdoor star iconGlassdoor star iconGlassdoor star icon Glassdoor star icon
CEO of PolyAI
PolyAI CEO photo
Unknown name
Approve of CEO

Average salary estimate

$70000 / YEARLY (est.)
min
max
$60000K
$80000K

If an employer mentions a salary or salary range on their job, we display it as an "Employer Estimate". If a job has no salary data, Rise displays an estimate if available.

What You Should Know About Technical Compliance Lead (Must be in UK), PolyAI

At PolyAI, we're on a mission to create enterprise voice assistants that empower natural conversations with customers, helping them solve their problems seamlessly. We're looking for a Technical Compliance Lead to join our passionate team dedicated to maintaining high standards of security and compliance in an AI company that’s experiencing rapid growth. In this role, you'll collaborate with our IT, DevSecOps, and Compliance teams to ensure our compliance and security processes are robust and effective. If you have 3 to 5 years of experience in a technical role with a focus on compliance within heavily regulated environments, this could be the perfect opportunity for you! Your expertise in maintaining security in AWS and other cloud environments will be invaluable as you support our Engineering team. You'll play a crucial role in implementing compliance certification audits such as ISO27001 and SOC-2 Type 2, contributing to patch and vulnerability management, and developing documentation related to security and compliance policies. At PolyAI, your ability to communicate effectively—both verbally and in writing—will help you guide the engineering team and keep our production environment secure. Plus, you'll have the flexibility to work from home and enjoy various benefits like a yearly learning budget, enhanced parental leave, and even participation in the company’s employee share options plan. If you're excited about honing your skills in a vibrant, supportive atmosphere, we want to hear from you!

Frequently Asked Questions (FAQs) for Technical Compliance Lead (Must be in UK) Role at PolyAI
What are the main responsibilities of a Technical Compliance Lead at PolyAI?

The Technical Compliance Lead at PolyAI is responsible for enforcing Compliance and Security processes across the company. Main duties include supporting the Engineering team, conducting compliance certification audits, and ensuring the security of production environments. This entails collaborating with IT and DevSecOps teams, managing vulnerabilities, and contributing to technical documentation related to security and compliance policies.

Join Rise to see the full answer
What qualifications are needed for the Technical Compliance Lead position at PolyAI?

To be successful as a Technical Compliance Lead at PolyAI, candidates should possess 3-5 years of experience in a technical role with compliance requirements. Familiarity with compliance audits such as ISO27001 and SOC-2 Type 2 is essential, as is experience in maintaining security in cloud environments like AWS. Excellent communication skills and knowledge of secure coding are preferred.

Join Rise to see the full answer
What tools and technologies will a Technical Compliance Lead use at PolyAI?

As a Technical Compliance Lead at PolyAI, you will work with a variety of tools and technologies, including AWS, GCP, Azure, GitHub, and cloud security platforms like Orca or Wiz. Experience with compliance management platforms such as Vanta, along with vulnerability management tools and patching solutions, will also be part of your day-to-day responsibilities.

Join Rise to see the full answer
What benefits does PolyAI offer to its Technical Compliance Lead?

PolyAI provides a comprehensive benefits package to its Technical Compliance Lead, including flexible working options, a yearly learning budget, enhanced parental leave, and the opportunity to participate in the company's employee share options plan. Additionally, employees enjoy a generous holiday allowance and wellness programs including private healthcare and mental health support.

Join Rise to see the full answer
How does the Technical Compliance Lead contribute to customer satisfaction at PolyAI?

The Technical Compliance Lead at PolyAI plays a key role in ensuring that the company's voice assistants operate securely and effectively. By maintaining compliance with industry standards and managing vulnerabilities, this position directly supports the production environment, which helps enhance customer satisfaction by delivering a reliable service that protects client data.

Join Rise to see the full answer
Common Interview Questions for Technical Compliance Lead (Must be in UK)
How do you ensure that compliance requirements are met in a technical project?

To ensure compliance requirements are met, I would start by thoroughly understanding applicable regulations and best practices. During project planning, I would collaborate with the team to integrate compliance checkpoints and regularly review documentation to make adjustments as needed. Regular audits and communication with stakeholders also play a key role.

Join Rise to see the full answer
Can you describe a time when you handled a compliance audit?

In my previous role, I was responsible for leading an ISO27001 compliance audit. This involved organizing documentation, coordinating meetings with internal teams, and addressing findings. I maintained open lines of communication with auditors to clarify requirements and subsequently implemented corrective actions to enhance our compliance posture.

Join Rise to see the full answer
What experience do you have with cloud security platforms?

I have hands-on experience with several cloud security platforms like Orca and Wiz. I utilized these tools to identify vulnerabilities, conduct risk assessments, and implement security measures that align with our compliance requirements. I appreciated how these platforms automated many processes, enhancing our efficiency and overall security.

Join Rise to see the full answer
How do you stay updated with compliance regulations and security best practices?

Staying updated is crucial in my role. I regularly follow trusted industry publications, attend webinars, and participate in professional associations focused on compliance and security. Networking with peers also provides insightful perspectives on emerging trends and actionable strategies.

Join Rise to see the full answer
What do you consider to be the biggest challenge in technical compliance?

One of the biggest challenges is managing the balance between innovation and compliance. It’s essential to adopt new technologies while ensuring they meet established guidelines. I focus on proactive communication with stakeholders to address compliance concerns early in the development process.

Join Rise to see the full answer
How do you communicate compliance requirements to technical teams?

Effective communication involves clarity and collaboration. I break down complex compliance requirements into actionable tasks and share them during team meetings or huddles. I also ensure to provide documentation that outlines expectations and offer training sessions to enhance understanding.

Join Rise to see the full answer
What tools do you recommend for vulnerability management?

For vulnerability management, I recommend tools like Tenable or Intruder.io due to their comprehensive scanning capabilities and user-friendly interfaces. They help identify vulnerabilities promptly, allowing teams to prioritize remediation efforts effectively.

Join Rise to see the full answer
How do you handle findings from a compliance audit that requires remediation?

Upon receiving audit findings, I prioritize them based on risk and impact. I work closely with the relevant teams to develop action plans that involve timely remediation. It’s important to establish a tracking mechanism to ensure accountability and follow-through.

Join Rise to see the full answer
Can you explain the importance of secure coding practices?

Secure coding practices are vital to mitigate risks associated with software vulnerabilities. By implementing security measures from the outset, we can prevent potential attacks and data breaches. I promote secure coding through training and code reviews to raise awareness among development teams.

Join Rise to see the full answer
What strategies would you employ to enhance our security posture at PolyAI?

To enhance PolyAI's security posture, I would implement a continuous monitoring system, regular training for employees on security awareness, and a robust incident response plan. I would also advocate for regular penetration testing to assess vulnerabilities proactively.

Join Rise to see the full answer
Similar Jobs
Photo of the Rise User
Posted 14 days ago
Vista Group Remote No location specified
Posted 13 days ago
Photo of the Rise User
Posted 6 days ago
Photo of the Rise User
Umbra Hybrid No location specified
Posted 11 days ago
MATCH
Calculating your matching score...
FUNDING
SENIORITY LEVEL REQUIREMENT
TEAM SIZE
EMPLOYMENT TYPE
Full-time, hybrid
DATE POSTED
December 4, 2024

Subscribe to Rise newsletter

Risa star 🔮 Hi, I'm Risa! Your AI
Career Copilot
Want to see a list of jobs tailored to
you, just ask me below!