CrawlJobs Logo

Principal Security Assurance & Compliance Manager

United Kingdom, Newbury Employment contract · Job Posted June 14, 2026
Apply Position
Job Link Share

Job Description

We are seeking an experienced security assurance and compliance professional to take accountability for ensuring Vodafone Cloud & Infrastructure (VCI) adheres to all relevant cyber security regulations, statutory obligations, frameworks and internal standards. This role plays a critical part in protecting Vodafone’s infrastructure, services, data and brand by identifying compliance gaps, driving remediation, and embedding a risk-based Governance, Risk and Control (GR&C) approach across VCI. The individual will operate at senior stakeholder level, managing complex audits, regulatory expectations and cross-functional dependencies in a highly regulated, international environment.

Job Responsibility

  • Identify, interpret and map applicable regulatory, statutory and security requirements (including GDPR, NIS2, AI Act and country-specific regulations) relevant to VCI
  • Govern and conduct enterprise-wide risk assessments and gap analyses to assess compliance maturity and identify non-conformities
  • Design, introduce and operate a comprehensive Governance, Risk & Compliance (GR&C) framework using a risk-led methodology
  • Drive implementation and continuous improvement of security controls, processes and policies aligned to regulatory and Vodafone Group requirements
  • Establish and manage a global repository of control requirements to streamline audit evidence, reduce duplication and enable “Audit/Evidence/Compliance as a Service”
  • Monitor ongoing compliance through continuous control evaluation and coordinate timely closure of identified gaps
  • Act as the primary point of contact for internal and external audits within the defined scope, including SOX and GDPR
  • Collaborate closely with Technology, Cyber Security, Finance, Legal and business teams to embed compliance into operational processes
  • Provide regular, clear reporting on compliance status, risks and remediation progress to senior leadership, including Group Technology leadership forums

Requirements

  • You bring over five years’ experience in cyber security compliance, regulatory assurance, risk assessments and audits
  • You have strong working knowledge of ISO 27001, NIST, GDPR and emerging EU regulations such as the Cyber Resilience Act and Post-Quantum Cryptography considerations
  • You have hands-on experience designing and operating GR&C methodologies and using compliance and risk management tools
  • You are confident developing policies, procedures and control frameworks, and coordinating across diverse international stakeholders
  • You communicate complex technical and regulatory topics clearly to both technical and non-technical audiences
  • You demonstrate analytical thinking, sound judgement and adaptability in the face of evolving regulatory and threat landscapes

What we offer

  • The opportunity to influence security and compliance strategy across a critical global technology function
  • Exposure to senior leadership and participation in high-impact regulatory and transformation initiatives
  • A collaborative, international working environment with strong cross-functional engagement
  • The ability to shape a future-focused, risk-led compliance model within Vodafone’s technology landscape

Looking for more opportunities?

Search for other job offers that match your skills and interests.

Similar Jobs for

Principal Security Assurance & Compliance Manager

8 matching positions

Principal Security Assurance Engineering Manager

Microsoft’s Specialized Cloud Team in the national security, classified, and hig...
Location
Location
United States , Reston
Salary
Salary:
139900.00 - 274800.00 USD / Year
https://www.microsoft.com/ Logo
Microsoft Corporation
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Master's Degree in Statistics, Mathematics, Computer Science, Risk Management, Cyber Security, or related field AND 4+ years experience in software development lifecycle, large scale computing, threat modeling, cyber security, or anomaly detection OR Bachelor's Degree in Statistics, Mathematics, Computer Science, Risk Management, Cyber Security, or related field AND 6+ years experience in software development lifecycle, large scale computing, threat modeling, cyber security, or anomaly detection OR equivalent experience
  • 1+ year(s) people management
  • Active U.S. Government Top Secret Clearance with access to Sensitive Compartmented Information (SCI) based on a Single Scope Background Investigation (SSBI) with Polygraph
  • Verification of U.S. citizenship
Job Responsibility
Job Responsibility
  • Enterprise Industrial Security Leadership: Interpret, operationalize, and govern requirements under NISPOM (32 CFR Part 117), SEADs, DoD Instructions, DFARS clauses, and customer specific security directives
  • Anticipate and mitigate enterprise level risks that could jeopardize Facility Clearances (FCLs), classified contracts, or customer trust
  • Cross Organizational Governance & Influence: Drive alignment across Engineering, Operations, Datacenters, Legal (CELA), HR, Physical Security, and secure/sovereign cloud teams
  • Establish clear governance models, accountability mechanisms, and escalation paths
  • Lead high risk decision making involving regulatory exposure, personnel adjudication, insider threat concerns, and facility accreditation
  • Facility Clearance & Classified Environment Management: Provide governance and oversight for the full lifecycle of classified facilities, including SCIFs and SAPF environments
  • Ensure accreditation readiness, material change management, and sustained compliance across facilities and business units
  • Protect Microsoft’s corporate and subordinate FCL posture through proactive risk management
  • Fulltime
Read More
Arrow Right

Principal Security Program Manager - Windows Security

The Microsoft Windows Security team is responsible for protecting billions of Wi...
Location
Location
United States , Redmond
Salary
Salary:
139900.00 - 274800.00 USD / Year
https://www.microsoft.com/ Logo
Microsoft Corporation
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Master's Degree in Statistics, Mathematics, Computer Science, Risk Management, Cyber Security, or related field AND 4+ years experience in software development lifecycle, large scale computing, threat modeling, cyber security, or anomaly detection
  • OR Bachelor's Degree in Statistics, Mathematics, Computer Science, Risk Management, Cyber Security, or related field AND 6+ years experience in software development lifecycle, large scale computing, threat modeling, cyber security, or anomaly detection
  • OR equivalent experience
  • Ability to meet Microsoft, customer and/or government security screening requirements are required for this role
  • Microsoft Cloud Background Check: This position will be required to pass the Microsoft Cloud background check upon hire/transfer and every two years thereafter
Job Responsibility
Job Responsibility
  • Own the Windows EnS security risk assessment framework, driving systematic identification, prioritization, and tracking of security risks across OS, firmware, silicon, drivers, and ecosystem dependencies
  • Partner with engineering, architecture, and threat intelligence teams to translate emerging threats, vulnerability trends, and attacker techniques into actionable platform investments
  • Develop and drive the security assurance process for Windows teams utilizing a shared responsibility approach that supports the scale of the Windows org while ensuring broad compliance and a risk based approach towards scaling security review and depth engagement
  • Act as virtual lead for a small security PM team by managing PM coverage across the team’s charter, leading planning and engagement with EnS security engineering, and owning key cross team partnerships
  • Fulltime
Read More
Arrow Right

Principal Security Program Manager - Windows Security

The Microsoft Windows Security team is responsible for protecting billions of Wi...
Location
Location
United States , Redmond
Salary
Salary:
139900.00 - 274800.00 USD / Year
https://www.microsoft.com/ Logo
Microsoft Corporation
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Master's Degree in Statistics, Mathematics, Computer Science, Risk Management, Cyber Security, or related field AND 4+ years experience in software development lifecycle, large scale computing, threat modeling, cyber security, or anomaly detection
  • OR Bachelor's Degree in Statistics, Mathematics, Computer Science, Risk Management, Cyber Security, or related field AND 6+ years experience in software development lifecycle, large scale computing, threat modeling, cyber security, or anomaly detection
  • OR equivalent experience
Job Responsibility
Job Responsibility
  • Own the Windows EnS security risk assessment framework, driving systematic identification, prioritization, and tracking of security risks across OS, firmware, silicon, drivers, and ecosystem dependencies
  • Partner with engineering, architecture, and threat intelligence teams to translate emerging threats, vulnerability trends, and attacker techniques into actionable platform investments
  • Develop and drive the security assurance process for Windows teams utilizing a shared responsibility approach that supports the scale of the Windows org while ensuring broad compliance and a risk based approach towards scaling security review and depth engagement
  • Act as virtual lead for a small security PM team by managing PM coverage across the team’s charter, leading planning and engagement with EnS security engineering, and owning key cross team partnerships
  • Fulltime
Read More
Arrow Right

Principal Security Assurance Engineer

The Principal Security Assurance Engineer – Data Governance (USG Cloud) is a sen...
Location
Location
United States , Reston
Salary
Salary:
139900.00 - 274800.00 USD / Year
https://www.microsoft.com/ Logo
Microsoft Corporation
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Master's Degree in Statistics, Mathematics, Computer Science, Risk Management, Cyber Security, or related field AND 4+ years experience in software development lifecycle, large scale computing, threat modeling, cyber security, or anomaly detection
  • OR Bachelor's Degree in Statistics, Mathematics, Computer Science, Risk Management, Cyber Security, or related field AND 6+ years experience in software development lifecycle, large scale computing, threat modeling, cyber security, or anomaly detection
  • OR equivalent experience
  • Active U.S. Government Top Secret Clearance with access to Sensitive Compartmented Information (SCI) based on a Single Scope Background Investigation (SSBI) with Polygraph
  • U.S. citizenship
Job Responsibility
Job Responsibility
  • Define and maintain data governance standards, policies, and operating models for USG cloud environments
  • Establish governance controls covering data classification, ownership, stewardship, lineage, retention, residency, sovereignty, and disposal
  • Ensure alignment with Microsoft enterprise data governance principles while addressing US specific government and national security requirements
  • Operationalize data governance controls to support compliance with FedRAMP, DoD SRG, NIST SP 800 53/171, ITAR, CJIS, HIPAA, and classified customer requirements
  • Partner with legal, compliance, and security teams to translate statutory and contractual requirements into enforceable and auditable governance mechanisms
  • Support audits, assessments, and ATO activities by providing governance artifacts, evidence, and subject matter expertise
  • Fulltime
Read More
Arrow Right

Principal Security Engineer

The Principal Security Engineer, under the direction of the Director of Security...
Location
Location
United States , Palo Alto
Salary
Salary:
147050.00 - 220800.00 USD / Year
wsgr.com Logo
Wilson, Sonsini, Goodrich & Rosati
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Bachelor’s degree required
  • 5+ of experience in Information Security
  • One or more of the following certifications preferred: GIAC, CISSP, CISM, CEH, CIPP
  • Focus on knowledge of direct support for Security Information and Event Management (SIEM) systems (e.g. configuration of feeds, developing alarm/report concepts), Red Teaming concepts and execution, and Linux skills including command line and operational/administrative usage
  • Extensive knowledge of traditional security controls and technologies, such as Security Information and Event Management (SIEM) systems, intrusion detection/prevention systems (IDS/IPS), public key infrastructure (PKI), identity and access management (IDAM) systems, antivirus and firewalls, in addition to newer offerings such as endpoint detection and response (EDR), threat intelligence platforms, security automation and orchestration, deception technologies and application controls
  • Experience with windows desktop, server, and database security
  • Ability to identify security technology risks and perform incident response
  • Extensive knowledge of TCP/IP networking including wireless, network monitoring/design and routing
  • Extensive understanding of the cyber kill-chain
  • Experience in cloud computing technologies, including software-, infrastructure and platform-as-a-service, as well as public, private, and hybrid environments
Job Responsibility
Job Responsibility
  • Provide subject matter expertise in information security as it relates to networks and systems
  • Manage the Firm’s security technology including but not limited to: anti-virus, vulnerability scanning, intrusion detection, content filtering, and insider threat systems
  • Review security events from all monitoring environments not integrated with the firm SIEM, and those events escalated by the SOC, on a daily basis, and follow defined incident response processes in their analysis and reporting
  • Monitor appropriate venues for threats to the security of the Wilson Sonsini Goodrich & Rosati environment. Provide notification to all impacted parties related to the actions needed to mitigate threats and manage the threat lifecycle in totality
  • Manage and lead evaluations of the firm’s environment by external 3rd parties. Produce recommendations that integrate any findings with the business needs of the firm
  • Maintain knowledge of the information security needs of firm clients and implement measures to satisfy those requirements in the most efficient manner
  • Keep abreast of emerging security technologies and discipline developments. Make appropriate recommendations that meet the firms needs
  • Design and build operational environments that scale to meet the needs of our security products and assure appropriate reliability
  • Support general troubleshooting related to information security tasks and provide support to end users as needed
  • Provide other teams with security consulting services, including responding to requests for additional information and assisting with specific projects
What we offer
What we offer
  • discretionary year-end merit bonus based on performance
  • highly competitive salary and benefits package
  • Fulltime
Read More
Arrow Right

Supplier Manager Principal

We are looking for an experienced Supplier Manager Principal to oversee supplier...
Location
Location
United States , Collierville
Salary
Salary:
Not provided
https://www.roberthalf.com Logo
Robert Half
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Bachelor’s degree or equivalent in Business Administration, Economics, Supply Chain Management, Mathematics, or a related field
  • At least six years of detail-oriented experience in supplier management, contract negotiation, inventory management, or logistics planning
  • Strong analytical skills with the ability to interpret data and recommend strategic sourcing solutions
  • Proven expertise in managing projects and proficiency in business software tools such as Microsoft Office Suite, SharePoint, and Power BI
  • Excellent interpersonal and communication skills to manage supplier relationships effectively
  • Preferred experience in aviation supply chains, particularly in Aircraft Materiel Supply Chain
  • Familiarity with systems such as ERP solutions, CRM tools, and KPI reporting
  • Demonstrated ability to drive cost efficiencies and improve supplier performance
Job Responsibility
Job Responsibility
  • Build and maintain relationships with suppliers at all management levels to secure and optimize the supply chain
  • Monitor supplier performance, ensuring adherence to contractual obligations and identifying opportunities for improvement
  • Lead cross-functional teams, including quality assurance, maintenance, engineering, and reliability, to enhance supplier outcomes
  • Analyze supplier performance data to pinpoint areas for improvement and oversee the implementation of supplier-driven improvement plans
  • Provide management with insights on market risks and opportunities to inform supplier selection and strategic decision-making
  • Facilitate business reviews with suppliers to ensure optimal inventory levels, improve service delivery, and identify cost-saving opportunities
  • Develop and implement initiatives to reduce costs, avoid unnecessary expenses, and strengthen supplier relationships
  • Ensure compliance with commercial remedies while fostering mutually beneficial partnerships with suppliers
  • Utilize data-driven strategies to enhance supplier performance and maintain a reliable supply chain
  • Perform additional duties as required to support supply chain objectives
What we offer
What we offer
  • medical, vision, dental, and life and disability insurance
  • company 401(k) plan
  • free online training
Read More
Arrow Right

Principal Engineering Manager

Are you interested in designing and coding a next-generation application used by...
Location
Location
India , Bangalore
Salary
Salary:
Not provided
https://www.microsoft.com/ Logo
Microsoft Corporation
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Bachelor's Degree in Computer Science or related technical field AND 6+ years technical engineering experience with coding in languages including, but not limited to, C, C++, C#, Java, JavaScript, or Python OR equivalent experience
  • Solid passion and proven experience delivering high quality services at scale spanning multiple systems and groups
  • Exceptional problem solving, coding & debugging skills
  • Experience developing, debugging, and shipping software products on large code bases that span platforms and tools
  • At least 3+ years experiences of being a people manager
  • Have proven track record of forming, mentoring and growing strong engineering teams
  • Thought leader and a change agent
  • Obsessed about great customer experiences and outcomes
  • Great communicator, able to convey complex issues, ideas and concepts clearly
  • Excellent collaboration skills with partners
Job Responsibility
Job Responsibility
  • Works with appropriate stakeholders (e.g., project manager, technical lead) to determine user requirements for a set of features
  • Begins to leverage a variety of feedback channels to incorporate insights into future designs or solution fixes
  • Incorporates appropriate continuous feedback loops measuring customer value, usage patterns, and other actionable metrics of value
  • Contributes to processes for the architecture of a product/solution feature and helps to create proposals for architecture by testing design hypotheses and helping to refine code and design plans, demonstrating technical leadership
  • Provides initial reactions and input to engineers in the team
  • Owns architecting of solutions, demonstrating technical leadership as applicable
  • Contributes to the development of design documents for designs or User Stories and determines the technology that will be leveraged and how it will interact
  • Escalates and shares findings from investigations with the team and owns design decisions
  • Helps to assure system architecture meets security and compliance requirements and expectations
  • Creates and implements code for a product, service, or feature, reusing code as applicable
  • Fulltime
Read More
Arrow Right

Principal Delivery Manager

As the Principal Delivery Manager, you will work with delivery, technical and de...
Location
Location
United Kingdom , Bristol; London; Manchester; Swansea
Salary
Salary:
76000.00 - 100000.00 GBP / Year
madetech.com Logo
Made Tech
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Articulate business fundamentals (USP, profitability, risks, target market)
  • Demonstrate advocacy and prioritisation of business fundamentals
  • Display accountability for managing commercial activities within deliveries
  • Be able to recall and describe key Made Tech case studies
  • Demonstrate prioritisation, delegation and consistent delivery of multiple goals simultaneously
  • Demonstrate fast remediation of performance issues
  • Support direct reports with performance remediation of indirect reports
  • Demonstrate encouragement and mentoring of high performers
  • Maintain compliance with all expectations of line management at Made Tech
  • Demonstrate planning of and implementation of risk management activities within programme of projects
Job Responsibility
Job Responsibility
  • Contribute to and deliver on Account Strategy
  • Contribute to and support quarterly / annual DMO objectives
  • Account Level Delivery Assurance
  • Accountable for ensuring delivery success
  • Report to Heads of Delivery on a weekly basis the status of quality and risk
  • Manage team resourcing to balance successful client delivery, team happiness and Made Tech commercial objectives
  • Oversee compliance and accuracy of all critical business processes (time sheeting, invoicing, forecasting, delivery assurance reporting)
  • Oversee commercial activities (Statements of Work, purchase order numbers, supplier contracts for partners, IR35 assessments for contractors, raising staffing demands)
  • Support hiring activities including interviewing and outreach
  • Management of Lead Delivery Managers including performance, progression and satisfaction
What we offer
What we offer
  • 30 days Holiday
  • Flexible Parental Leave
  • Remote Working (part time remote working for all our staff)
  • Paid counselling
  • Flexible benefit platform which includes a Smart Tech scheme, Cycle to work scheme, and an individual benefits allowance which you can invest in a Health care cash plan or Pension plan
  • Optional social and wellbeing calendar of events
  • Fulltime
Read More
Arrow Right