top of page

Data Governance & Assurance Manager

London, UK

Data Governance & Assurance Manager

London | Hybrid | Permanent

£65,000-£73,000


About the role


We are working with an established UK organisation that is looking to appoint a senior information governance professional to take organisation-wide responsibility for data protection, information risk and governance.


This is a broad leadership position combining regulatory compliance with risk management, security assurance and business continuity. You will provide trusted advice to senior stakeholders while ensuring governance frameworks remain practical, robust and embedded across the organisation.


A key part of the role will be acting as the organisation's Data Protection Officer, providing independent oversight and expert guidance across privacy and information management matters.


The remit will include:


  • Leading the organisation's approach to data protection and information governance.

  • Overseeing Freedom of Information requests, Subject Access Requests, DPIAs and information-related incidents.

  • Maintaining and developing risk management processes, including organisational risk registers and assurance activity.

  • Taking responsibility for ISO 27001 compliance, audit preparation and ongoing certification requirements.

  • Ensuring appropriate controls are in place around data sharing, information retention and records management.

  • Leading business continuity planning and supporting organisational resilience.

  • Providing clear reporting and recommendations to executive and senior governance stakeholders.


You will also play an important role in improving understanding of information risk across the wider organisation, helping teams move beyond compliance and build good governance into everyday decision-making.


About you


  • You will have substantial experience within data protection, information governance or risk and assurance, ideally including previous experience acting as a DPO or working closely with one.

  • Strong practical knowledge of ISO 27001, privacy legislation, information rights and organisational risk management will be important, together with experience of audits, risk registers and compliance programmes.

  • You will be comfortable dealing with complex or sensitive information matters and able to translate technical and regulatory issues into clear recommendations for senior audiences.

  • A recognised ISO 27001 auditing qualification would be highly desirable, while additional risk management qualifications would be advantageous.


This is an opportunity to take significant ownership of governance and assurance within a complex organisation and influence how information risk is understood and managed at every level.


Send your CV through to cv@franklinbates.com for consideration.

bottom of page