Job description
Quality & Compliance Officer
Are you a detail-oriented professional with a passion for quality management, information security, and data protection? We are seeking a dynamic and experienced Quality & Compliance Officer to play a pivotal role in ensuring this organisation’s compliance and operational excellence.
Overview
As the Quality & Compliance Officer, you will take ownership of the Quality Management System, Information Security Management System, and data protection compliance. This is a unique opportunity to make a significant impact by driving continuous improvement, ensuring compliance with ISO standards, and fostering a culture of quality and security across the organisation.
Benefits
• Salary £35,000 - £45,000
• 1k annual bonus
• Full-time or part-time with 1 day from home
• 25 days holiday plus bank holiday (increases with service)
• Group Life Assurance
• Company paid dental, health and optical schemes
• Opportunities for career growth and development
**Please note - this is not a remote role. You must live locally to York despite the role being hybrid.**
Responsibilities
• Develop and manage audit schedules to ensure compliance with ISO 9001:2015 standards.
• Conduct internal audits across locations and departments, identifying areas for improvement.
• Analyse customer feedback and complaint data to prioritise risk areas and implement corrective actions.
• Standardise and maintain Quality Procedures (QPs) and documentation across the organisation.
• Deliver auditor training and provide updates to enhance audit effectiveness.
• Collaborate with managers to review Risk Registers and Quality Objectives, driving continuous improvement.
• Oversee audit schedules to ensure compliance with ISO/IEC 27001:2013 standards.
• Collaborate with the Technology Director to monitor, evaluate, and improve system security.
• Serve as the organisation’s Data Protection Officer (DPO), ensuring compliance with GDPR and other data protection regulations.
• Maintain and review data protection policies and procedures, promoting awareness across the organisation.
• Apply ISO/IEC 27001 best practices to strengthen data protection controls and processes.
Qualifications
• Proven experience in quality management, information security, and data protection.
• In-depth knowledge of ISO 9001:2015 and ISO/IEC 27001 standards preferred
• Strong understanding of GDPR and data protection regulations desirable
• Exceptional organisational and analytical skills with a keen eye for detail.
• Excellent communication and interpersonal skills to engage with stakeholders at all levels.
• Ability to lead audits, implement corrective actions, and drive continuous improvement initiatives.
• Relevant certifications in quality management, information security, or data protection are highly desirable.