3,012 Open roles
109 Companies
81 Posted today
Jobs / Pragmatic Play / Head of IT Compliance
Posted 2026-08-27

Head of IT Compliance

Description

ARRISE is seeking an experienced IT Compliance Specialist to lead and manage its compliance programmes across ISO 27001 and SOC 2, ensuring its gaming platform and related services meet the highest standards of security, privacy, and regulatory compliance.

The role will serve as the primary liaison for both external and internal auditors for ISO 27001 certification and SOC 2 attestation, with a focus on addressing scope changes, corporate structure changes, and responding to client security questionnaires.

Responsibilities
  • Lead and maintain ARRISE’s ISO 27001 Information Security Management System (ISMS) and SOC 2 Trust Services Criteria certification programmes.
  • Serve as the primary point of contact for engaging with external and internal auditors, facilitating ISO 27001 certification and SOC 2 attestation processes.
  • Own compliance audits: plan, coordinate with auditors, collect evidence, and provide comprehensive audit responses.
  • Manage risk assessments, control testing, and remediation activities to ensure ongoing compliance.
  • Develop, maintain, and enforce IT security and compliance policies, procedures, and standards.
  • Ensure documentation aligns with ISO 27001 Annex A controls, SOC 2 requirements, and addresses evolving compliance needs due to scope or structural changes.
  • Respond to client security questionnaires with accurate and detailed information to demonstrate compliance.
  • Oversee access control, change management, incident management, and third-party/vendor risk management within the scope of ISO 27001 and SOC 2.
  • Ensure compliance across environments supporting software development, hosting platforms, and APIs.
  • Monitor the effectiveness of security controls and recommend improvements to mitigate emerging risks.
  • Act as the central liaison for external auditors, regulators, and certification bodies, ensuring clear communication and issue resolution.
  • Conduct internal compliance audits, gap assessments, and readiness reviews to maintain certification readiness.
  • Track and close compliance findings and audit issues, ensuring timely resolution and documentation.
  • Provide expert guidance on compliance implications of ISO 27001 scope changes and corporate structure changes.
  • Build awareness of compliance requirements across development, operations, and support teams.
  • Deliver targeted training on compliance obligations, including secure software development, data handling, and gaming industry standards.
  • Assess compliance of key vendors, including cloud hosting providers, content partners (e.g., Pragmatic Play), and integration providers.
  • Ensure contractual and SLA alignment with ISO 27001 and SOC 2 requirements.
  • Provide regular compliance updates, risk posture reports, and responses to client inquiries to senior management and stakeholders.
  • Support management with compliance performance metrics and KPIs.
Requirements
  • Bachelor's degree in Information Security, Computer Science, Risk Management, or a related field (required).
  • 5+ years’ experience in IT compliance, GRC, risk management, or information security, ideally in gaming, fintech, or other regulated industries (required).
  • Strong understanding of ISO 27001:2022 Information Security Management System (ISMS) (required).
  • Strong understanding of SOC 2 Trust Services Criteria (Security, Availability, Confidentiality, Processing Integrity, Privacy) (required).
  • Proven track record of leading certification and audit processes, including direct engagement with auditors (required).
  • Experience responding to client security questionnaires and communicating compliance status effectively (required).
  • Experience with SaaS/PaaS environments, APIs, and cloud-based hosting services (required).
  • Knowledge of secure SDLC, DevOps, and CI/CD compliance integration (required).
  • Professional certifications preferred (e.g., CISA, CISM, ISO 27001 Lead Implementer/Auditor, CCSK, CRISC).
Benefits
  • We offer a highly competitive salary.
  • A detailed company training on highest standards.
  • A chance to work in friendly and supportive culture.
  • Tremendous growth opportunities in a large fast moving international company.
About Pragmatic Play

Pragmatic Play is a leading content provider to the iGaming industry, delivering a multi-product portfolio of online slots, live casino, bingo and virtual sports to operators worldwide. Founded in 2015 and headquartered in Gibraltar, it releases new titles at a high cadence and is certified across numerous regulated markets. It operates as part of the ARRISE group, which runs the live-casino studios and operational hubs across Europe, the Middle East and Latin America that power its games.

Read more about Pragmatic Play →

Apply on Pragmatic Play →