Security Governance & Policy Lead - London/Krakow

Synechron

OtherseniorLondon Area, United KingdomhybridfulltimeBanking and Financial Servicesposted
Unlock apply linkApply links and the original listing are a Pro feature: £4.99/mo or £25 once.
Job Role: Security Governance \& Policy Lead Job Location: London, UK/Krakow, Poland Experience: 6+ years in information security governance, risk, and compliance (GRC). Work Type: Hybrid Note: Not open for sponsorship case. About Company: At Synechron, we believe in the power of digital to transform businesses for the better. Our global consulting firm combines creativity and innovative technology to deliver industry-leading digital solutions. Synechron’s progressive technologies and optimization strategies span end-to-end Artificial Intelligence, Consulting, Digital, Cloud \& DevOps, Data, and Software Engineering, servicing an array of noteworthy financial services and technology firms. Through research and development initiatives in our FinLabs we develop solutions for modernization, from Artificial Intelligence and Blockchain to Data Science models, Digital Underwriting, mobile-first applications and more. Over the last 20+ years, our company has been honored with multiple employer awards, recognizing our commitment to our talented teams. With top clients to boast about, Synechron has a global workforce of 14,700+ and has 55 offices in 20 countries within key global markets. For more information on the company, please visit our website or LinkedIn community . Diversity, Equity, and Inclusion Diversity \& Inclusion are fundamental to our culture, and Synechron is proud to be an equal opportunity workplace and an affirmative-action employer. Our Diversity, Equity, and Inclusion (DEI) initiative ‘Same Difference’ is committed to fostering an inclusive culture – promoting equality, diversity and an environment that is respectful to all. We strongly believe that a diverse workforce helps build stronger, successful businesses as a global company. We encourage applicants from across diverse backgrounds, race, ethnicities, religion, age, marital status, gender, sexual orientations, or disabilities to apply. We empower our global workforce by offering flexible workplace arrangements, mentoring, internal mobility, learning and development programs, and more. All employment decisions at Synechron are based on business needs, job requirements and individual qualifications, without regard to the applicant’s gender, gender identity, sexual orientation, race, ethnicity, disabled or veteran status, or any other characteristic protected by law. Purpose: Own the policy, governance, and compliance framework for Claude Code. Ensure the deployment meets regulatory obligations and that users understand and follow their responsibilities. Key Responsibilities: * Draft, maintain, and enforce Claude Code Acceptable Use Policy, Data Classification Policy (AI), and Agentic Action Policy. * Lead regulatory compliance assessments (GDPR, EU AI Act, sector-specific requirements) for Claude Code. * Manage third-party risk assessment and ongoing monitoring of Anthropic as a vendor. * Develop and deliver mandatory security awareness training for Claude Code users. * Report on AI security risk posture to CISO and AI Governance Committee. * Coordinate annual policy reviews and incorporate lessons learned from incidents and audits. Required Skills: * 6+ years in information security governance, risk, and compliance (GRC). * Deep knowledge of GDPR, and awareness of EU AI Act obligations. * Experience writing enterprise security policies and managing their lifecycle. * Third-party risk management methodology. * Strong communication and stakeholder management skills. Desirable Skills/Experience: * CISM, CRISC, or ISO 27001 Lead Implementer certification. * Experience with AI governance frameworks (NIST AI RMF). * Background in a regulated industry (financial services, healthcare, defense).