Own Elliptic’s Risk and Compliance strategy, frameworks, and annual plan
Maintain risk taxonomy, registers, and assessment cadence across business, product, data, third‑party, and operational risks
Facilitate risk identification with domain owners, evaluate inherent/residual risk, and drive treatment plans
Identify applicable obligations and industry standards for a SaaS provider and maintain a single control framework mapped to them
Plan and run a risk‑based assurance programme to test control design and effectiveness
Partner with Platform, SRE, and Security to validate backup, recovery, continuity, and disaster recovery capabilities
Set methodology and thresholds for vendor and product risk, partnering with Procurement, Legal, and Product to embed controls in lifecycle workflows
Coordinate external audits and certifications as needed; ensure our evidence strategy is efficient and reusable
Enable teams through guidance, training, and practical tooling; make compliance easy and transparent
Requirements
Proven ownership of an ERMF or equivalent risk programme in a SaaS or technology business
Designing and operating a unified control framework mapped to multiple obligations or standards
Knowledge of data protection and data governance practices relevant to SaaS
Planning and executing risk‑based assurance and control testing, and managing CAPA to closure
Partnering with engineering and product teams to embed quality and compliance controls into their operations
Clear, concise written communication and executive risk reporting
Strong stakeholder management across technical and non‑technical teams
Nice to have
Experience with ISO 27001, SOC 2, or similar certifications, and familiarity with ISO 9001/22301/14001 as contributing inputs
Exposure to model risk governance or validation practices
Experience with evidence automation or compliance tooling
Benefits
Hybrid working and the option to work from almost anywhere for up to 90 days per year
£500 Remote working budget to set up your home office space
$1,000 Learning & Development budget to use on anything (agreed with your manager) that contributes to your growth and development
Holidays: 25 days of annual leave + bank holidays
An extra day for your birthday
Enhanced parental leave: we provide eligible employees, regardless of gender or whether they become a parent by birth or adoption, 16 weeks fully-paid leave
Compliance Analyst responsible for operational execution of licensing program for Nuvei. Handling regulatory reporting, license maintenance, and governance metrics.
Partner Commercial Manager focusing on license compliance strategies for AVEVA’s software revenues in India. Collaborate with sales and legal teams to ensure compliance and drive growth.
Compliance Assistant Manager supporting FTSE Russell operations and compliance frameworks at LSEG. Driving regulatory excellence with key responsibilities in risk management and governance.
Legal Compliance Officer at juris GmbH focusing on central compliance requirements and legal standards. Engaging with management to strengthen legal security and implement compliance in processes.
Compliance Officer supporting implementation of compliance frameworks in TRATON Financial Services. Collaborating across departments and focusing on AML and GDPR compliance in Romanian and Bulgarian markets.
Manager of Privacy & Data Compliance at Constellation Brands overseeing privacy operations and ensuring data protection across teams. Collaborating with business units to maintain regulatory compliance and manage risks.
Intern assisting in packaging development for major food industry company. Contributing to compliance analysis and audits while collaborating with engineering teams.
Compliance Manager responsible for quality assurance and compliance at Nestlé's Marton Factory. Leading a team to uphold food safety and hygiene standards in a key manufacturing role.
EUDR Compliance Coordinator ensuring Kafea Terra’s compliance with EU Deforestation Regulation. Role involves collaboration across Operations, IT, Legal, Finance, Supply Chain, and Marketing teams.
Compliance Data Specialist role focused on data extraction and analysis for regulatory compliance at Kantox. Collaborating with IT and compliance teams to ensure data accuracy and support regulatory obligations.