Head of Security & Compliance

Company: Masabi
Apply for the Head of Security & Compliance
Location: London
Job Description:

About Us

At Masabi, we’re driving the fare payment revolution, powering the journeys of millions around the world. We build fare collection platforms that enable riders to buy and present tickets for public transport on their mobile phones, from a ticket machine, or by tapping a bank card.

The Role

At Masabi, we’re building technology that makes public transport simpler, fairer and more accessible for millions of people—only possible if our platform is secure, trusted, and reliable.

As Head of Security & Compliance, you’ll play a central role in building trust with customers and scaling our global SaaS business.

Location

This role is available on a remote basis for candidates located anywhere in the UK. Candidates based in London may also work in a hybrid model, with occasional travel to the office.

Responsibilities

  • Take ownership of security and compliance across Masabi, creating clarity on priorities and ways of working
  • Build a clear view of our current security posture and define a practical path to strengthen it over time
  • Define security and compliance requirements and work closely with Engineering and IT teams to ensure they are implemented effectively
  • Maintain existing compliance across PCI DSS, ISO27001, SOC2 and Cyber Essentials, and lead new compliance initiatives across additional standards such as ISO 27017 and ISO 27018
  • Manage audits end to end, from preparation through to delivery and follow-up actions
  • Work closely with Engineering and Product teams to embed security practices in a way that supports delivery
  • Maintain a clear and actionable view of risk, helping the business prioritise what matters most
  • Build a more scalable approach to customer assurance, including clearer processes and reusable materials for customer and audit requests
  • Help guide decisions on which compliance standards we take on as we grow
  • Lead and support a small team, creating focus, trust and shared direction

About You

  • You’ve worked in security and compliance within a payments, fintech or PCI‑regulated environment
  • You have strong, hands‑on experience with PCI DSS, ISO27001 and SOC2, including preparing for and delivering audits
  • You’ve personally owned and delivered compliance programmes, not just overseen them
  • You understand how security and compliance connect, and how to make them work in practice across a business
  • You’ve operated in a growing or scaling company, where you’ve had to bring structure and prioritise effectively
  • You’re comfortable driving work across teams without direct authority, and following through to completion
  • You bring sound judgement when balancing risk, delivery and commercial needs
  • You’ve supported or led a small team and know how to create clarity and accountability
  • You communicate clearly with both technical and non‑technical audiences, helping people understand what matters and what action is needed

Nice To Have

  • Experience working with additional ISO standards such as ISO 27017 and ISO 27018
  • Experience scaling security and compliance in a growing SaaS company, especially through periods of increased customer or regulatory demand
  • Relevant certifications such as CISSP, CISM, CISA or ISO27001 Lead Auditor or similar
  • Awareness of AI‑related security and governance considerations, and how they may apply in a SaaS environment

Benefits

  • 25 days of holiday per year plus the option to buy another 5 days pro‑rated
  • Private Healthcare via AXA, including pre‑existing conditions and mental health
  • Life Insurance
  • Menopause support
  • Choice of workstation
  • Ability to work for up to 3 months per year from any country in the world (certain limitations)
  • Pension scheme
  • Training allowance of up to £1,000 per year
  • £200 annual allowance for any home office need or improvement
  • Enhanced family leave pay
  • Cycle to work scheme
  • Regular social gatherings with a monthly allowance for each employee
  • Fun and collaborative environment with a focus on making a difference in the world

We welcome applications from underrepresented groups, including disabled and neurodivergent people, and can make adjustments at any stage of the process.

#J-18808-Ljbffr…

Posted: June 2nd, 2026