Information Technology Compliance Manager
Corporate IT & Cloud Compliance Manager
Location: UK-based remote initially, with travel to London (up to 2 days per week after c.12 months, potentially 3 days as the business scales)Salary c £35 - £45 k pa + bens,
The Opportunity
We're supporting a cloud-native SaaS business operating in the private equity and financial services space, as they look to appoint their first dedicated Corporate IT & Cloud Compliance Manager.
This is a genuinely hands-on, hybrid role that combines corporate IT administration with cloud security and compliance ownership. The business is moving from an early-stage setup into its next phase of growth and wants a pragmatic, capable individual to take ownership of internal IT, security tooling and audit readiness — without introducing unnecessary bureaucracy.
You'll be working in a modern, Microsoft-first Azure PaaS environment, supporting a distributed team of ~30 people (growing to ~45), with high visibility and direct access to senior stakeholders.
The Role
This role sits at the intersection of IT operations, cloud security and compliance. You'll own day-to-day corporate IT, while also coordinating SOC and ISO activity, supporting audits, and acting as a trusted technical point of contact for both internal teams and external clients when needed.
It is not a DevOps or product engineering role — but you will need to be technically confident, comfortable with scripting and automation, and able to explain infrastructure and security concepts clearly to non-technical audiences.
Key Responsibilities
Corporate IT & Identity Management
- Own and manage the Microsoft 365 estate (Entra ID / Azure AD, Exchange, Teams, SharePoint)
- Manage joiners, movers and leavers across systems
- Enforce MFA, conditional access and security best practice
- Manage endpoint security and device policies using Intune
- Laptop procurement, asset tracking and logistics for a remote workforce
Cloud Security & Monitoring
- Configure and manage Microsoft Defender for Cloud and Microsoft Sentinel
- Maintain security policies and alerting
- Review logs, alerts and recommendations, working with engineering teams on remediation
- Support access management across Azure subscriptions, ensuring separation between prod and non-prod environments
Compliance & Audit Coordination
- Own and coordinate SOC 1 / SOC 2 and ISO 27001 activity
- Manage certificate renewals and ongoing compliance obligations
- Use compliance tooling (e.g. Drata or similar) to collect and manage audit evidence
- Act as the primary point of contact for auditors and client security due diligence
- Maintain policies, procedures and audit-ready documentation
SaaS & Vendor Governance
- Maintain an inventory of internal SaaS tools and third-party vendors
- Manage licences, permissions and access reviews
- Collect vendor SOC reports, ISO certificates and security questionnaires
- Support vendor risk assessments and client due-diligence requests
Stakeholder & Client Engagement
- Liaise with external customers on access configuration and platform security queries
- Join client calls where needed to explain infrastructure and security design to technical stakeholders
- Provide clear reporting and updates to senior leadership
- Reporting & Insight
- Build and maintain Power BI dashboards covering security posture, compliance status and IT KPIs
- Provide visibility of risks, readiness and improvement areas
Nice to Have (Not Essential)
- Exposure to Azure cost monitoring / FinOps
- Coordination of penetration testing
- Security awareness training
- Business continuity and disaster recovery documentation
What We're Looking For
- 3–5 years' experience in a hands-on IT, cloud security or compliance-focused role
- Strong experience with Microsoft 365 and Azure
- Practical exposure to SOC 1 / SOC 2, ISO 27001 or similar frameworks
- Experience in a startup or scale-up SaaS environment
- Comfortable doing some scripting / shell / low-code automation
- Excellent communication skills — able to engage with customers and senior internal stakeholders
- Proactive, pragmatic and delivery-focused mindset
- Degree-educated (BSc Computer Science or related technical / mathematical discipline preferred)
Why Apply?
- High ownership role with real influence across the business
- Modern, Azure-first cloud environment
- Minimal bureaucracy — common-sense approach to security and compliance
- Opportunity to shape and grow the role as the company scales
- Remote-first culture with sensible, planned office collaboration in London
If you're looking for a role where you can combine IT operations, cloud security and compliance, make a visible impact, and grow with a SaaS business at the right stage of its journey, this is well worth a conversation. Please email your CV to Simon at sdunscombe@itecopeople.co.uk
Services Advertised are those of an Employment Agency.