Skip to main content
AfterDuty

IT Policy and Controls Manager

Vodafone · London, Greater London

Type
Full-time
Posted
29 days ago

Overview

Your policing background gives you a strong grounding in regulatory frameworks and control environments, which maps to the governance and assurance aspects of this role. However, the position demands deep technical IT expertise and 10+ years in complex IT environments, which is a significant gap for most ex-officers. Your experience in managing risk and working to strict standards is relevant, but you would need substantial retraining to be competitive here.

About this role

Join Us

At Vodafone, we’re not just shaping the future of connectivity for our customers – we’re shaping the future for everyone who joins our team. When you work with us, you’re part of a global mission to connect people, solve complex challenges, and create a sustainable and more inclusive world. If you want to grow your career whilst finding the perfect balance between work and life, Vodafone offers the opportunities to help you belong and make a real impact.

What you’ll do

The IT Policy & Controls Manager is responsible for developing the methodology and framework for managing IT security controls to reduce risk in line with Vodafone’s tolerance. They will also oversee programmes to implement and improve these controls as part of the IT control framework, or other related programmes as required. The outcome is that the organisation is more effective t reducing risk in an agile and dynamic way.

The role holder will also support the process of wider cyber & IT controls testing for Vodafone Group Technology as part of Vodafone’s Cyber Health & Adaptive Risk Method (CHARM). This involves the alignment of controls and scope between Vodafone Group and Local Markets and managing control effectiveness throughout the year alongside continuous improvement of controls design.

  • They will be required to influence and guide colleagues from Cyber Security, wider Technology and in all markets and functions as well as collaborating with other functions including Privacy and Corporate Security.
  • They will have the primary responsibility to develop, document, and set up processes to update and enhance the IT control framework in line with our Cyber and Technology strategies. They will define criteria for control effectiveness and measurement as well as advising on tools to support the methodology.
  • Help establishing a governance model, which clarifies control ownership, scope and dependencies between Vodafone entities.
  • Work closely with risk management and assurance teams and ensure that the methodology properly supports the integration of risks, controls and assurance in order to deliver true risk reduction value.
  • Support security improvement initiatives and projects and help prioritising and delivering capabilities, which meet or surpass the requirements defined in the control framework.
  • Expected to have a strong knowledge of security risks, controls, processes / technologies / tools to mitigate these risks and Information Security Management Systems.

Key accountabilities and decision ownership

  • Maintain and develop a control framework which is fit for purpose to address the changing IT Security risk landscape.
  • Maintain the formal documentation of the methodology
  • Provide guidance to other staff on the methodology, control implementation and best practice. Identify best practice / improvement opportunities and share with control owners to improve the efficiency and effectiveness of their controls
  • Lead the implementation of the methodology and operation activities performed across Vodafone and provide a consolidated status view to management
  • Obtain and implement input from subject matter experts and operational teams for developing continuous improvement of control framework and KPIs /KRIs.
  • Work with stakeholders from other compliance and audit functions to streamline and align methodologies used and lead on audit actions.
  • Assess the effectiveness of IT Controls owned by Vodafone Technology and manage the risk of control deficiencies affecting supported business controls
  • Contribute to the maintenance of the CHARM framework.

Who you are

Core competencies, knowledge and experience

  • 10+ years technical experience in complex IT environments
  • Familiarity with security risks and controls (processes, technologies, tools) to mitigate these risks as well as hands-on experience with the design, implementation and operation of a methodology to manage the controls
  • Preferably knowledge of ITIL and ISO 27001 processes and controls
  • Attention to detail, strong analytical skills, efficient problem-solving capability
  • Strong oral and written communication skills including the ability to communicate complex matters in simple terms
  • Experienced in managing stakeholders at different levels up to senior management
  • A self-starter and good team player, used to work in a global environment and ability to adapt style to different cultures and audiences, well organised with a high degree of flexibility
  • Fluent English language skills

Must have technical / professional qualifications

  • University graduate or equivalent in business/technology studies
  • Knowledge and experience of different technologies (web applications, infrastructure, operating systems, databases, SAP and Cloud)
  • A grounding in security, risk or compliance, ideally backed up with relevant certification or qualifications, experience in working with security frameworks such as ISO 27001, ideally audit experience

Not a perfect fit?

Worried that you don’t meet all the desired criteria exactly? At Vodafone we are passionate about empowering people and creating a workplace where everyone can thrive, whatever their personal or professional background. If you’re excited about this role but your experience doesn’t align exactly with every part of the job description, we encourage you to still apply as you may be the right candidate for this role or another opportunity.

What's in it for you

  • Yearly bonus: 10%
  • Annual leave: 28 days + bank holidays
  • Charity days: 5 days/year
  • Maternity leave: 52 weeks: the first 13 weeks are fully paid, followed by 26 weeks of half pay
  • Private pension: You can contribute up to 5% of your basic pay with 2:1 matching from Vodafone up to 10%.
  • Access to: private medical, private dental, free health assessments, share save scheme
  • Additional discounts: Vodafone retail, gym, cinema, cycle to work, season ticket loan

Who we are

We are a leading international Telco, serving millions of customers. At Vodafone, we believe that connectivity is a force for good. If we use it for the things that really matter, it can improve people's lives and the world around us. Through our technology we empower people, connecting everyone regardless of who they are or where they live and we protect the planet, whilst helping our customers do the same.

Belonging at Vodafone isn't a concept; it's lived, breathed, and cultivated through everything we do. You'll be part of a global and diverse community, with many different minds, abilities, backgrounds and cultures. ;We're committed to increase diversity, ensure equal representation, and make Vodafone a place everyone feels safe, valued and included.

If you require any reasonable adjustments or have an accessibility request as part of your recruitment journey, for example, extended time or breaks in between online assessments, please refer to https://careers.vodafone.com/application-adjustments/ for guidance.

Together we can.

About compliance & regulatory roles for ex-police

Compliance, AML and regulatory roles. Working to PACE, RIPA and CPIA is a stronger regulatory grounding than most civilian applicants can offer — firms increasingly recognise this.

See all compliance & regulatory jobs in London

Why this fits a police background

  • Working to legislation & regulation

What compliance & regulatory roles pay ex-police

Advertised UK ranges, editorial estimates reviewed July 2026

Compliance analyst£32,000–£42,000
Compliance / AML officer£40,000–£55,000
Compliance manager£55,000–£80,000
Senior manager / head of compliance£80,000–£120,000+
Full compliance & regulatory salary guide →

More compliance & regulatory jobs for ex-police

  • £68,000 – £92,000Estimated

    Your investigation background maps directly onto the policy breach investigations and third-party due diligence strands of this role — the discipline of running a case from initial report to root-cause analysis is exactly what this work demands. You'll also be comfortable with the regulatory accountability frameworks and fit-and-proper assessments because you've operated within PACE, RIPA, and CPIA, which gives you a practical grounding in how regulated entities must evidence their controls. The governance reporting and risk assessment elements are new territory, but your experience managing i

    Posted Today

  • Compliance Manager: Group Regulatory Compliance

    Wise Australia Investments · London

    Full-time

    £68,000 – £92,000Estimated

    Your policing background gives you a strong foundation in regulatory frameworks, evidence handling, and conducting thorough investigations under strict protocols like PACE and CPIA. This role involves designing and enforcing compliance policies, managing conflicts of interest, and overseeing policy breach investigations—all areas where your investigative discipline and ethical grounding are directly applicable. Your ability to assess risk, manage sensitive information, and work within multi-agency environments translates well into managing third-party due diligence and enterprise-wide risk ass

    Posted Yesterday

  • Your investigative experience reading people and situations, handling evidence, and writing clear case files maps directly onto due diligence research. The role's interview and source-checking component draws on the same questioning skills you used in police investigations. Familiarity with regulatory frameworks like PACE and CPIA gives you a head start with the compliance-focused side of the work.

    Posted Yesterday

  • Compliance Officer

    Newland House School · London

    Part-time

    £42,000 – £48,000Estimated

    Your policing background gives you a strong foundation in regulatory compliance, from working within PACE and CPIA to managing sensitive information with discretion. The role's focus on safeguarding, safer recruitment, and inspection readiness directly taps into your experience with child protection procedures, evidence handling, and meticulous record-keeping. You are already accustomed to promoting a culture of accountability and following strict protocols, which makes the transition to a school compliance environment a natural step.

    Posted Yesterday