Head of Information Security & Compliance
Listed on 2026-01-13
-
IT/Tech
Cybersecurity, Information Security, Data Security, IT Consultant
Head of Information Security & Compliance
Join to apply for the Head of Information Security & Compliance role at Beamery
.
We are a leading transformational AI platform in the HR technology industry, enabling enterprise companies to create better and fairer talent decisions – by accelerating their recruiting processes, unlocking successful internal mobility opportunities, enabling smarter upskilling initiatives, and facilitating agile workforce planning. We are helping our clients hire and redeploy over a million people annually.
What’s Ahead — and why it’s an exciting time to join the team- Deepening our native integrations with SAP, Workday, Microsoft, and Linked In to seamlessly embed our skills intelligence into the platforms where critical workforce decisions are made.
- Embedding our agentic AI to help customers plan smarter for the future—powering workforce strategies, internal mobility, and skills forecasting.
- Advancing our use of proprietary LLMs and knowledge graph technology to help organizations unlock broader talent pools, make fairer decisions, and expand access to opportunity at scale.
- But it’s not all about creating high-quality products; we also very much value the company culture we have worked hard to create; built on trust, empathy & honesty ensuring our workforce is able to bring their full selves to work.
As Beamery's Head of Information Security & Compliance, you will lead the security program for our AI-powered talent platform, ensuring protection of our infrastructure and customer data while maintaining compliance with information security and data protection regulations globally. Reporting to the Head of Legal, you will partner closely with HR to ensure alignment between information security requirements and internal HR compliance needs.
AIPlatform Security & ISO 42001
- Maintain Beamery's ISO/IEC 42001 certification, ensuring responsible AI governance, transparency, and bias mitigation across Talent
GPT and Workforce Intelligence Suite. - Lead AI risk assessments and impact evaluations for systems processing candidate and employee data, ensuring compliance with EU AI Act and emerging US state AI regulations.
- Embed security-by-design principles in AI development, including model security, training data protection, and secure AI deployment.
- Design and maintain enterprise security program aligned with ISO 27001 and SOC 2 Type II for multi-tenant SaaS architecture.
- Lead security operations including vulnerability management, penetration testing, SIEM monitoring, incident response, and business continuity planning.
- Oversee cloud security for AWS, Google Cloud, and Azure environments, including IAM, network security, encryption, and API security.
- Manage vendor security assessments and third‑party risk management.
- Build security awareness culture through training and ongoing education programs.
- Ensure compliance with GDPR, CCPA/CPRA, UK DPA, and emerging global privacy regulations for platform operations.
- Oversee DPIAs for high-risk processing activities, data breach procedures, and data subject rights fulfillment.
- Implement privacy controls including data minimization, purpose limitation, and lawful basis documentation.
- Manage DPAs with customers and Standard Contractual Clauses for international data transfers.
- Partner with HR to align information security controls with internal HR compliance requirements, addressing gaps between Info Sec and HR domains.
- Ensure platform compliance with AI hiring regulations (NYC Local Law 144, EU AI Act) including bias audits and transparency requirements for customer-facing features.
- Collaborate with Product to build transparency and explainability into AI-powered screening tools.
- Lead external audits including SOC 2 Type II, ISO 27001, ISO 42001, and customer security assessments.
- Maintain audit-ready documentation and monitor evolving regulatory landscape.
- Serve as primary contact for regulatory inquiries and customer security questionnaires.
- Report security and compliance status to Board and executive leadership.
To Search, View & Apply for jobs on this site that accept applications from your location or country, tap here to make a Search: