Security Regulatory Compliance Manager

Reading
1 week ago
Create job alert

Security Regulatory Compliance Manager

Permanent

Reading - Hybrid-working

MBNL's mission is to create maximum value for our shareholders by delivering and managing their best network experiences at the lowest cost. The Information Security department aims to minimize the impact of security events on MBNL business outcomes and protect the value of the business.

Context:

Reporting to the Head of Information Security, the Security Regulatory Compliance Manager is integral to safeguarding the organization's assets, ensuring smooth operations, and maintaining a positive reputation with key stakeholders, regulators, and the wider industry. This role ensures MBNL's compliance with security regulations such as TSA, DPA, and CSR, supporting program delivery, security teams, and managed service providers.

This role is also fundamental in ensuring MBNL meets its regulatory obligations under TSA by maintaining its ISO27001 certification.

What you can expect to be doing:

Deliver security regulatory compliance and manage associated governance and risk activities.
Manage the overall compliance programme for TSA, CSR, and DPA regulations as well as assembling evidence for continuous compliance activities such as S135 returns.
Balance regulatory compliance with business impact, ensuring controls are effective without hindering business operations.
Oversee Managed Service Providers (MSPs) who manage IT and security for MBNL. Ensure they meet security regulatory compliance and MBNL security requirements.
Chair and manage various governance forums. Gain agreements, understand and communicate issues, and guide stakeholders to agreeable positions.
Co-operate with other members of the security, commercial teams as well as the wider business to drive supply chain eco-system to improved compliance.
Effectively maintain and improve the compliance platform (SureCloud), the workflow process and data, ensure this stays up to date with the evolving compliance and framework landscape.
Liaise with shareholder compliance and risk teams.

What we are looking for:

Strong understanding of key Information Security frameworks and industry standards/regulations (CSF 2, CAF, ISO27001, TSA).
Experience of initiating, overseeing, and managing compliance programmes and interacting with regulators and compliance teams.
Proven relationship management of diverse teams of retained resource and key partners to deliver compliance objectives and outcomes.
Experience of formal regulatory and standards compliance in a technology industry (mobile telecommunications desirable but not essential).
A background of assuring a wide range of security solutions and services such as SIEM, IDS, SOC, IAM, PAM, TVM.
A history of bringing industry best practice into an organisation and using this to drive continuous improvement.
Demonstrable experience of managing and developing compliance programmes

Nice to have:

ISO27001 audit experience, cloud security and budget management experience
Experience working in telco or related environment such as, SCADA and ICS or similar background also applicable.MBNL - building strength through inclusion.

At MBNL we embrace equality, diversity, and inclusion. People are at the heart of everything we do and collectively we strive to create an environment where everyone can flourish. By fostering an inclusive environment, we are championing each other's uniqueness. Inclusion & Diversity within MBNL will unlock innovation and continue to evolve how we work, to help us deliver world class infrastructure for our Shareholders and their customers.

We will work creatively to offer flexible working arrangements, (like non-standard hours, part-time, remote working). We want to support you to build your career without sacrificing your personal priorities.

MBNL are proud recipients of the Armed Forces Covenant Gold Award, and Disability Confident accredited.

To apply for the Security Regulatory Compliance Manager please send your CV to

Project People is acting as an Employment Agency in relation to this vacancy

Related Jobs

View all jobs

IT Governance Analyst

Senior AWS DevOps Engineer

QA Engineer

Snr Infrastructure & Automations Engineer

Cyber Security Consultant

Cybersecurity Solutions Engineer

Get the latest insights and jobs direct. Sign up for our newsletter.

By subscribing you agree to our privacy policy and terms of service.

Industry Insights

Discover insightful articles, industry insights, expert tips, and curated resources.

Cloud Computing Job Interview Warm‑Up: 30 Real Coding & System‑Design Questions

The world of cloud computing has rapidly evolved into a critical backbone for modern businesses. From running microservices on containerised infrastructure and automating continuous deployments, to architecting highly available, secure solutions at global scale—the cloud domain offers endless career opportunities. Whether you aim to become an AWS Solutions Architect, an Azure DevOps Engineer, or a GCP Cloud Developer, your expertise in designing, coding, and managing cloud‑native services can open doors across every industry. However, cloud job interviews can be challenging. Employers typically probe a wide array of topics, from traditional software engineering and system design to security, scalability, and cost optimisation in cloud environments. For many candidates, this means a broad but in-depth skillset, along with hands‑on demonstrations of your knowledge. In this guide, we’ll walk you through 30 real coding & system-design questions you might face when interviewing for cloud roles. Each question or scenario is designed to test both fundamental programming skills and the architectural insight needed for building, deploying, and maintaining cloud platforms. If you’re seeking new opportunities in the UK’s thriving cloud sector, www.cloud-jobs.co.uk is an excellent place to start. You’ll find roles spanning everything from core infrastructure engineering to hybrid cloud consulting. Let’s begin your interview prep journey now.

Negotiating Your Cloud Job Offer: Equity, Bonuses & Perks Explained

How to Secure a Compensation Package That Reflects Your Value in the UK’s Booming Cloud Computing Sector Introduction Cloud computing has become the backbone of modern enterprise infrastructure. From small start-ups deploying microservices to multinational corporations scaling complex data analytics, the demand for cloud-savvy professionals continues to accelerate. If you’re working in cloud architecture, DevOps, infrastructure security, or any other mid‑senior role in the cloud domain, your expertise is in high demand—and so is your ability to negotiate a well-rounded compensation package. While an attractive base salary is essential, limiting your focus to that figure alone can mean missing out on substantial financial and lifestyle gains. Cloud-focused employers, including both tech giants (AWS, Microsoft Azure, Google Cloud) and smaller cloud-native consultancies, often layer their offers with equity, bonuses, and a host of perks to stand out in a competitive market. By delving deeper into these compensation components, you can maximise your earnings and ensure your new role supports both your career growth and personal well-being. In this comprehensive guide, we’ll explore every dimension of negotiating a cloud job offer. Whether you’re an established Cloud Solutions Architect eyeing a role at a cutting-edge start-up or a mid‑senior DevOps engineer seeking a leadership position at a global corporation, you’ll find insights on how to evaluate, compare, and negotiate all elements—from salary and equity to perks like flexible working and training budgets. Read on to discover how to turn a standard job offer into a holistic package that truly reflects your impact in the cloud computing arena.

Cloud Jobs in the Public Sector: Exploring Opportunities Across GDS, NHS, MOD, and More

Cloud computing has become a cornerstone of modern IT infrastructure, reshaping how organisations store data, run applications, and manage complex workloads. While the private sector has long embraced this shift, the UK public sector is now catching up at an accelerated pace. From the Government Digital Service (GDS) to the National Health Service (NHS), and even the Ministry of Defence (MOD), major public sector bodies are migrating critical systems to cloud platforms like AWS, Azure, and Google Cloud. For IT professionals and aspiring technologists, cloud jobs in the public sector offer a unique blend of technical challenge, job stability, and the opportunity to make a tangible impact on society. In this blog post, we’ll explore why cloud computing is so vital to government and healthcare, the types of roles available, the skills and qualifications you’ll need, and how to stand out in a competitive recruitment landscape.