Head of Risk and Compilance

Posted 4 Hours Ago
Be an Early Applicant
Hiring Remotely in European Union
Remote or Hybrid
Senior level
Information Technology • Software • Consulting
The Role
Lead and evolve the company's Risk & Compliance function: own the company-wide risk register, run annual risk assessments, manage IT security risk, lead incident response, maintain ISO 27001/Cyber Essentials and GDPR compliance across multiple EU entities, monitor emerging EU regulation (NIS2, AI frameworks), manage external relationships, and build a proactive compliance culture while directly advising the COO and C-suite.
Summary Generated by Built In
The company and our mission: 

Zartis is a global AI transformation and technology consulting partner where talented engineers and technologists work on cutting edge innovation. We partner with ambitious organizations to design, build, and scale technology solutions that deliver real impact.

Our teams bring deep expertise in AI driven platforms, secure API architectures, and cloud native engineering. You will work on meaningful projects that accelerate the adoption of advanced technologies, from strategy and discovery through to full product delivery, helping turn complex challenges into measurable outcomes.

With engineering hubs across EMEA and LATAM, and long term partnerships in financial services, healthcare and life sciences, and energy and climate, we offer opportunities to work on projects that truly matter. Here, you will not just build technology, you will drive business impact and grow your career alongside industry leaders.

We are looking for a Head of Risk and Compliance to work on a project in the Tech Company industry.

The project:

We are looking for a Head of Risk & Compliance to lead and evolve our Risk & Compliance function. This is a senior leadership role designed for someone who can own the strategic risk agenda, drive a proactive compliance culture, and provide direct decision-making support to the COO. You will manage an internal R&C team, act as the primary accountable owner across all compliance domains, and bring the technical depth in information security and IT infrastructure that bridges the gap between governance frameworks and real-world implementation. 

What you will do:
  • Own the company-wide risk register: maintain, prioritise, and drive resolution across all risk domains (legal, operational, data, information security).

  • Develop and lead the annual risk assessment cycle; translate outputs into concrete mitigation plans with owners and deadlines.

  • Act as the accountable owner for IT security risk, working with internal technical stakeholders and external providers to ensure vulnerabilities, access controls, and infrastructure risks are identified, assigned, and addressed.

  • Act as the primary escalation point for risk and compliance matters.

  • Design and maintain the governance framework across 8 EU jurisdictions, ensuring policies are current, proportionate, and consistently applied.

  • Lead incident response: own the end-to-end process from detection to resolution, including client notification, root cause analysis, and lessons learned.

  • Own ongoing ISO 27001 and Cyber Essentials certifications and lead future certifications (SOC 2 or equivalent) as the business requires.

  • Lead GDPR compliance across all entities: DPIAs, records of processing, data subject requests, breach management, and DPA relationships.

  • Monitor and interpret emerging EU regulation, including NIS2 and upcoming frameworks, and translate requirements into operational action plans before deadlines.

  • Manage relationships with external legal counsel, auditors, and regulatory bodies.

  • Directly manage the Risk & Compliance Manager and any future hires within the function.

  • Set clear performance expectations; develop the team's capability to operate with minimal escalation.

  • Act as an internal advisor to other business functions such as Business, Operations and Finance.


What you will bring:
  • 7+ years in risk, compliance, or information security roles, with at least 3 in a leadership capacity.

  • Direct ownership of ISO 27001; hands-on experience with GDPR compliance operations across multiple jurisdictions.

  • Track record of building or significantly maturing a compliance function, not just maintaining one.

  • Experience working in a tech, consulting, or professional services environment.

  • Demonstrated ability to engage C-suite and clients on risk topics with clarity and commercial awareness.

 
Nice to have:
  • Exposure to AI governance frameworks or emerging EU regulation in the AI space.

  • Familiarity with multi-entity structures across EU jurisdictions (Spain, Ireland, Portugal, Germany, UK).

 
What we offer: 
  • 100% Remote Work

  • WFH allowance: Monthly payment as financial support for remote working.

  • Career Growth: We have established a career development program accessible for all employees with a 360º feedback that will help us to guide you in your career progression.

  • Training: For Tech training at Zartis, you have time allocated during the week at your disposal. You can request from a variety of options, such as online courses (from Pluralsight and Educative.io, for example), English classes, books, conferences, and events.

  • Mentoring Program: You can become a mentor in Zartis or you can receive mentorship, or both.

  • Zartis Wellbeing Hub (Kara Connect): A platform that provides sessions with a range of specialists, including mental health professionals, nutritionists, physiotherapists, fitness coaches, and webinars with such professionals as well.

  • Multicultural working environment: We organize tech events, webinars, parties, and activities to do online team-building games and contests.

Skills Required

  • 7+ years in risk, compliance, or information security roles
  • At least 3 years in a leadership capacity
  • Direct ownership and hands-on experience with ISO 27001
  • Hands-on GDPR compliance operations across multiple jurisdictions (DPIAs, records of processing, breach management)
  • Technical depth in information security and IT infrastructure (vulnerability, access control, infrastructure risk management)
  • Track record building or significantly maturing a compliance function
  • Experience working in a tech, consulting, or professional services environment
  • Ability to engage C-suite and clients on risk topics with commercial awareness
  • Ownership or experience with Cyber Essentials and readiness to lead SOC 2 or equivalent certification efforts
  • Experience leading incident response end-to-end (detection to client notification and lessons learned)
  • Exposure to AI governance frameworks or emerging EU AI regulation
  • Familiarity with multi-entity EU structures (Spain, Ireland, Portugal, Germany, UK)
Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
HQ: Cork, Ireland
237 Employees
Year Founded: 2009

What We Do

WHO WE ARE: Zartis is a digital solutions provider and Deloitte Fast50 company working across technology consulting, team augmentation and product development. We know good code. And we know tech outsourcing, which can be risky when you don't know who to trust. Deep technical experience and hard-earned know-how are our secret ingredients to help you build game-changing software technology, while avoiding unnecessary time and budget-wasting engineering shortfalls. We pride ourselves on the expertise of our engineers and the quality of the work we deliver. We are a diverse company, with team members drawn from over thirty different nationalities. WHAT WE DO: Zartis partners with firms across financial services, medtech, media, logistics technology, renewable energy, edtech, e-commerce, and more. Our teams of talented engineers are based across EMEA and LATAM and focus on delivering business success and digital improvement across application development, software architecture, DevOps and CI/CD, business intelligence, QA automation and technology integrations. OUR EXPERTISE: Zartis engineers are uniquely skilled in a broad array of technologies such as Javascript/Typescript (Angular, React, Vue, Node.js), .NET, Java, Python, Scala, Ruby, Go, and cloud-based architectures like AWS, Azure, and GCP. Whether you need expert consulting on improving your existing technology and processes or additional hands-on help with your development, we will adapt our services to best meet your needs.

Similar Jobs

Deepgram Logo Deepgram

Solutions Engineer

Artificial Intelligence • Machine Learning • Natural Language Processing • Software • Conversational AI
Remote
EU
150 Employees

Deepgram Logo Deepgram

Senior Solutions Architect

Artificial Intelligence • Machine Learning • Natural Language Processing • Software • Conversational AI
Remote
EU
150 Employees

Algoquant Logo Algoquant

Quant Trade Researcher

Fintech • Financial Services
In-Office or Remote
5 Locations
14 Employees

Algoquant Logo Algoquant

Options Execution Researcher

Fintech • Financial Services
In-Office or Remote
5 Locations
14 Employees

Similar Companies Hiring

Golden Pet Brands Thumbnail
Digital Media • eCommerce • Information Technology • Marketing Tech • Pet • Retail • Social Media
El Segundo, California
178 Employees
Kepler  Thumbnail
Fintech • Software
New York, New York
6 Employees
Onshore Thumbnail
Artificial Intelligence • Fintech • Software • Financial Services
New York, New York
60 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account