WHO YOU ARE
- You have a degree in Computer Science, Information Security, or a related field.
- You have a background in software development or systems administration.
- You have more than 4 years of experience in a similar Information Security, GRC, Risk, or Compliance role.
- You have a good understanding of network protocols, design, and operations.
- You have working knowledge of Information Security principles, techniques, and technologies.
- You have experience with Information Security governance frameworks and standards, such as COBIT and ISO 27001.
- You have experience reviewing security policies and procedures, managing documentation, and performing gap analyses.
- You have a good understanding of risk assessment methodologies, such as OCTAVE and NIST SP 800-30.
- Certifications in Information Security, such as CRISC, CISA, CEH, or similar, are a plus.
- Experience with Data Privacy Impact Assessments (DPIAs) is a plus.
- Experience working on AI and Data Governance projects is a plus.
- You have strong English communication skills, both written and verbal.
- You're self-motivated, proactive, and comfortable working with minimal supervision
WHAT YOU'LL DO
- Support the development, implementation, and continuous improvement of Farfetch's Information Security governance framework.
- Recommend and implement changes to strengthen security controls and reduce the risk of unauthorized access.
- Review, maintain, and audit Information Security policies, procedures, and related documentation.
- Monitor compliance with applicable legal, regulatory, and industry standards and requirements.
- Perform Information Security risk assessments and other security reviews, identifying gaps and supporting the definition of appropriate mitigation actions.
- Support audits, compliance assessments, and gap analyses across the Information Security landscape.
- Coordinate and monitor company-wide Information Security controls to help protect the integrity of Farfetch's assets.
- Contribute to increasing Information Security awareness across the business.
- Collaborate with internal stakeholders to ensure security risks, controls, policies, and compliance requirements are effectively managed.
- Contribute to Information Security initiatives involving areas such as Data Privacy, AI Governance, and Data Governance.
REWARDS & BENEFITS
- Health insurance for the whole family, flexible working environment and well-being support and tools
- Extra days off, sabbatical program and days for you to give back for the community
- Training opportunities and free access to Udemy
- Flexible benefits program
EQUAL OPPORTUNITIES STATEMENT
- Farfetch is an equal opportunities employer ensuring that all applicants are treated equally and fairly throughout our recruitment process. We are determined that no applicant experiences discrimination on the basis of sex, race, ethnicity, religion or belief, disability, age, gender identity, ancestry, sexual orientation, veteran status, marriage and civil partnership, pregnancy and maternity, or any other basis prohibited by applicable law.
SCAM DISCLAIMER
- It has come to our attention that there may be fraudulent activities involving individuals or organizations falsely claiming to represent Farfetch in order to attract candidates to a SCAM. Please be aware that Farfetch does not conduct recruitment processes through messaging apps or any unofficial communication channels, other than our official careers website. Additionally, Farfetch will never ask candidates for any form of payment during the recruitment process.
Skills Required
- Degree in Computer Science, Information Security, or a related field
- Background in software development or systems administration
- More than four years of experience in Information Security, GRC, risk, or compliance
- Understanding of network protocols, design, and operations
- Working knowledge of Information Security principles, techniques, and technologies
- Experience with Information Security governance frameworks and standards, including COBIT and ISO 27001
- Experience reviewing security policies and procedures, managing documentation, and performing gap analyses
- Understanding of risk assessment methodologies, including OCTAVE and NIST SP 800-30
- Strong written and verbal English communication skills
- Self-motivated, proactive, and comfortable working with minimal supervision
- Information Security certification such as CRISC, CISA, CEH, or similar
- Experience with Data Privacy Impact Assessments
- Experience working on AI Governance and Data Governance projects
What We Do
FARFETCH is the leading global platform for the luxury fashion industry. Our mission is to be the global platform for luxury fashion, connecting creators, curators and consumers. Founded in 2007 by José Neves for the love of fashion, and launched in 2008, FARFETCH began as an e-commerce marketplace for luxury boutiques around the world. Today the FARFETCH Marketplace connects customers in over 190 countries and territories with items from more than 50 countries and over 1,300 of the world’s best brands, boutiques and department stores, delivering a truly unique shopping experience and access to the most extensive selection of luxury on a single platform. FARFETCH’s additional businesses include Browns and Stadium Goods, which offer luxury products to consumers, and New Guards Group, a platform for the development of global fashion brands. FARFETCH offers its broad range of consumer-facing channels and enterprise level solutions to the luxury industry under its Luxury New Retail initiative. The Luxury New Retail initiative also encompasses FARFETCH Platform Solutions, which services enterprise clients with e-commerce and technology capabilities, and innovations such as Store of the Future, its connected retail solution.









