💼Jobs 📝Blog 🧮Salary Calc 🌍Cost of Living 📋Tax Guide
👤Sign In Post a Job — from $99
Scale AI

EMEA Assurance Lead

OtherContractLead
Location
Europe
Job Type
Contract
Experience
Lead
Apply Now

Job Description

ABOUT THE ROLE Scale is a leading provider of data and infrastructure for companies to build large-scale foundation models, empowering the generative AI wave. As the company expands across global markets, including accelerating public sector business across EMEA, we are seeking an experienced EMEA Assurance Lead to drive assurance programs across our EMEA public sector and commercial business. WHAT YOU'LL DO As the EMEA Assurance Lead, you will be responsible for designing and owning EMEA-specific controls within Scale's global assurance framework. You will work closely with the global GRC team to maintain and renew existing certifications, obtain new ones, and extend them to EMEA and international operations. Your key responsibilities will include: - Leading region-specific assurance programs across the GCC and UK, including Qatar NCSA National Information Assurance (NIA), KSA NCA Essential Cybersecurity Controls (ECC), UAE DESC Information Security Regulation (ISR), and UK Cyber Essentials Plus, Defence Cyber Certification (DCC), and NCSC Secure by Design (SdB). - Maintaining and renewing existing certifications, such as SOC 2, ISO 27001, ISO 42001, and ISO 9001, and extending them to EMEA and international operations. - Designing and maintaining EMEA-specific controls, adapting Scale's global controls framework to sovereign regulatory and customer requirements. - Setting priorities and operating cadences for EMEA assurance workflows, including intake, evidence collection, control owner follow-up, remediation tracking, and deadline management. - Supporting EMEA public sector customer assurance activities, including security questionnaires, compliance due diligence responses, customer-facing assurance discussions, and compliance input to bid and capture processes. - Partnering with Legal on EMEA contract-driven assurance obligations, data protection and AI governance compliance intersections, and sensitive escalations involving sovereign regulators. - Managing relationships with EMEA-based external auditors, assessors, certification bodies, and regulatory counterparts. - Supporting internal and external audits across EMEA and reporting into the Head of Global Assurance on program health, key risks, certification timelines, and regional regulatory developments. WHAT YOU'LL NEED To succeed in this role, you will need: - 7+ years of experience in cybersecurity compliance, GRC, public sector assurance, IT audit, cloud security, or related roles, with meaningful exposure to EMEA markets. - Experience executing government or public sector assurance programs in the UK, EU, or GCC, including working with external certification bodies, government assessors, or authorizing officials. - Deep familiarity with one or more of: UK Cyber Essentials/Cyber Essentials+, ISO 27001, ISO 9001, ISO 42001, SOC 2, or equivalent frameworks, and with sovereign security regimes in the GCC (e.g., Qatar NCSA NIA, KSA SCCC/NCA, UAE DESC/NESA). - Familiarity with relevant EMEA data protection and AI governance requirements (e.g., GDPR, PDPPL, EU AI Act) and how they translate into technical and organisational controls. - Experience managing controls mapping, evidence collection, remediation tracking, and audit coordination across distributed engineering and infrastructure teams. - Experience with cloud environments (one or more of: AWS, Azure