Verda
Compliance Analyst

How your CV stacks up
Upload your CV to see how well it fits this job role
?%
At Verda, we're building a full-stack AI cloud, covering everything from data centers and hardware to our own cloud platform that the world's leading AI teams use to do serious AI work.
We strive to make a positive mark on the world through the infrastructure we build and give leading teams a service they can truly depend on. Headquartered in Helsinki, we operate globally with offices in London and San Francisco.
Join Verda while it’s still being built - not once it’s finished.
About the role
You will help strengthen the security, privacy, and regulatory foundations behind Verda’s growing AI cloud business.
You will support our existing certifications and assurance programs, improve our readiness for evolving requirements. Working closely with teams across the company, you will turn complex requirements into practical policies, controls, and ways of working that support continued growth.
Your responsibilities
- Assist in monitoring and reporting on our activities and ensure compliance with existing certifications (ISO27001/27017/27018/27701 and C5), reports SOC 2 Type II and for any future certifications.
- Review and suggest updates to internal policies, procedures, and documentation to raise them to best-practice standards, while adhering to and supporting our ways of working and culture.
- Assist with regulatory compliance with GDPR, NIS2, AI Act, and other identified regulations.
- Support internal compliance reviews, audits, vendor risk management, and risk assessments, including coordination with cross-functional teams.
- Maintain and update compliance-related logs, registers, controls, and databases, ensuring accurate and accessible documentation.
- Assist in developing internal documentation and training materials to increase compliance awareness throughout the company.
- Stay up to date with current and emerging regulations and best practices to support continuous improvement of our compliance posture.
Reasons to use Rodeo
I’m in my final year doing Economics and I don’t know whether to apply for grad schemes now or do a masters first. What do you think?
Honest answer — it depends on where you want to end up. A lot of top grad schemes (Big 4, civil service, banking) don’t need a masters. Let’s look at the ones you’d be competitive for now, and we can decide if a masters actually adds anything.
Also worth knowing: most autumn 2026 applications are open now. Timing matters more than you think.
Start with a chat, not a search bar
Grad scheme, placement, apprenticeship? Not sure what you want yet — that's fine. Your agent talks it through with you and turns "I have no idea" into a shortlist.
Graduate Consultant — 2026 Scheme
Why you're a good match
StrongYour economics background and your summer at a regional bank line up with what PwC looks for on the consulting scheme. Applications close in four weeks.
See breakdownIt searches the market for you
Every day your agent scans the market matching roles against what actually matters to you, not just keywords on a CV.
Why you're a good match
You’ve got the grades and the economics background, and your bank internship is exactly the experience this scheme looks for. Apply soon — deadlines close within the month.
Experience fit
Your summer at the bank plus your econometrics coursework map directly to the day-one responsibilities on this scheme — client modelling, market briefings, and deal support.
Only hits
No noise. No "maybe this fits." Just roles with a clear explanation of why they're right — and where to focus when applying.
Your key competencies
- 2+ years of experience in compliance, information security, or a closely related field
- Degree in a related field to data privacy and compliance. Equivalent work experience may be considered.
- Strong written and verbal communication skills in English, and the ability to convey complex information clearly to both technical and non-technical audiences.
- Project management and organizational skills, with the ability to handle multiple tasks in a startup environment.
- Familiarity with two or more of the following frameworks: ISO27001, ISO27701, ISO27017, ISO27018, SOC2 Type I or Type II, and C5.
- Hands-on experience working with data privacy regulations (e.g., GDPR).
- Technical aptitude and willingness to learn how security and compliance requirements intersect with cloud providers.


Get help with your application
Your very own career expert that helps elevate your application to the next level.
Practicalities
- Work mode: On-site in Helsinki or London office
- Start date: Immediate start is available.
- Level of expertise: Experienced
- Employment type: Full-time and permanent.
What's next
We're building fast and this role needs the right person behind it. There's no artificial deadline, but when we find who we're looking for, we move. If this sounds like your next move, apply now.
Please submit your application through our Careers page. We don't accept applications sent by email.
“It took my CV and asked me questions relevant to understanding what kind of jobs to suggest for me. Suggestions were almost perfect. Jobs were exactly what I’ve been looking for.”
Jessica, London