Information Security & Data Protection Officer

Hamilton Barnes 🌳 United Kingdom
Remote
Apply
AI Summary

Join a rapidly scaling tech-for-good organisation as the Information Security & Data Protection Officer, shaping strategy, driving compliance, and embedding best-practice across the business.

Key Highlights
Owning information security across the organisation
Acting as the official Data Protection Officer (DPO)
Developing, implementing, and maintaining ISO 27001-aligned policies
Technical Skills Required
GDPR ISO 27001 Cyber Essentials Plus OWASP Penetration testing
Benefits & Perks
25 days annual leave + bank holidays
Pension scheme
Health scheme & death-in-service cover
Flexible start times (8–10am)
Remote working
10-day workcation allowance
Regular social events

Job Description


🚀 Information Security & Data Protection Officer

💰 £70–75k


This is a rare opportunity to join a rapidly scaling tech-for-good organisation where security genuinely matters. You’ll take full ownership of the company’s information security posture and act as the official Data Protection Officer, shaping strategy, driving compliance, and embedding best-practice across the business.

Working closely with senior leadership, you’ll be a trusted voice on security and privacy, influencing decisions at the highest level while building robust, scalable processes to support global growth.

This role is perfect for a self-starter who wants real autonomy, visible impact, and the chance to build something meaningful in a supportive, ambitious, and values-driven company.


🔐 What you’ll be doing

  • Owning information security across the organisation
  • Acting as the official Data Protection Officer (DPO)
  • Developing, implementing, and maintaining ISO 27001-aligned policies
  • Leading Cyber Essentials Plus accreditation renewals
  • Delivering engaging security training and awareness programmes
  • Partnering with DevOps/SysOps on infrastructure, network, and systems security
  • Supporting clients with DPIAs and security requirements
  • Managing risk, incident response, and remediation processes
  • Coordinating penetration testing and OWASP assessments
  • Ensuring compliance with international legislation (UK, US, Australia, and beyond)
  • Managing vendor and third-party security assurance


🧠 What we’re looking for

  • Strong, practical understanding of GDPR
  • Solid working knowledge of ISO 27001
  • Proven experience acting as a Data Protection Officer
  • Experience owning or leading information security across an organisation
  • Excellent communication and stakeholder-management skills
  • Ability to write clear, accessible policies and procedures
  • Experience delivering training and driving security awareness
  • Confidence influencing at all levels, including senior leadership
  • Strong risk and incident management experience
  • Comfortable juggling multiple priorities in a fast-moving environment


🎁 What’s in it for you

  • 25 days annual leave + bank holidays
  • Pension scheme
  • Health scheme & death-in-service cover
  • Flexible start times (8–10am)
  • Remote working
  • Top-end tech
  • 10-day workcation allowance
  • Regular social events
  • A close-knit, supportive, and globally distributed team


Subscribe our newsletter

New Things Will Always Update Regularly