
How your CV stacks up
Upload your CV to see how well it fits this job role
?%
EMEA Assurance Lead
Scale is powering the generative AI wave by providing the data and infrastructure for companies to build large-scale foundation models. AI is rapidly changing the world, and Scale is growing to meet that demand across global markets, including accelerating public sector business across EMEA.
Scale seeks an EMEA Assurance Lead to drive assurance programs across Scale’s EMEA public sector and commercial business. Reporting to the Head of Global Assurance, this is a hands-on individual contributor role with significant autonomy.
About the Role
You will independently design and own EMEA-specific controls within Scale's global assurance framework, staying tightly aligned with the global controls library and reporting cadences. This role involves leading region-specific authorizations, certifications, and customer assurance outcomes across EMEA, with a focus on the GCC, UK, and EU markets.
As part of the Global GRC team, you will collaborate with Global Public Sector, Enterprise, Security, Engineering, Product, and Legal to deliver regional compliance and certification objectives.
Key Responsibilities
Regional Assurance Program Leadership
- Lead assurance programs for the GCC (Qatar NCSA NIA, KSA NCA ECC, UAE DESC ISR) and UK (Cyber Essentials Plus, Defence Cyber Certification, NCSC Secure by Design).
- Own controls mapping, evidence collection, gap analysis, certification timelines, and submission management, liaising with accredited external assessors as needed.
Global Certification Maintenance & Expansion
- Work with the global GRC team to maintain and renew existing certifications (SOC 2, ISO 27001, ISO 42001, ISO 9001).
- Extend these certifications to EMEA international operations, including NATO-aligned defence tenders.
EMEA-Specific Controls & Compliance Adaptation
- Design and maintain EMEA-specific controls, adapting Scale’s global framework to meet sovereign regulatory and customer requirements (e.g., data residency, health sector standards).
- Identify where existing controls align with local standards and determine gaps requiring new controls or evidence artifacts.
Reasons to use Rodeo
I’m in my final year doing Economics and I don’t know whether to apply for grad schemes now or do a masters first. What do you think?
Honest answer — it depends on where you want to end up. A lot of top grad schemes (Big 4, civil service, banking) don’t need a masters. Let’s look at the ones you’d be competitive for now, and we can decide if a masters actually adds anything.
Also worth knowing: most autumn 2026 applications are open now. Timing matters more than you think.
Start with a chat, not a search bar
Grad scheme, placement, apprenticeship? Not sure what you want yet — that's fine. Your agent talks it through with you and turns "I have no idea" into a shortlist.
Graduate Consultant — 2026 Scheme
Why you're a good match
StrongYour economics background and your summer at a regional bank line up with what PwC looks for on the consulting scheme. Applications close in four weeks.
See breakdownIt searches the market for you
Every day your agent scans the market matching roles against what actually matters to you, not just keywords on a CV.
Why you're a good match
You’ve got the grades and the economics background, and your bank internship is exactly the experience this scheme looks for. Apply soon — deadlines close within the month.
Experience fit
Your summer at the bank plus your econometrics coursework map directly to the day-one responsibilities on this scheme — client modelling, market briefings, and deal support.
Only hits
No noise. No "maybe this fits." Just roles with a clear explanation of why they're right — and where to focus when applying.
Workflow & Deadline Management
- Set priorities and operating cadences for EMEA assurance workflows, including:
- Intake and evidence collection
- Control owner follow-up & remediation tracking
- Deadline management
- Reporting progress via global assurance dashboards
Public Sector & Customer Assurance Support
- Support EMEA public sector customer assurance activities, including:
- Security questionnaires & compliance due diligence responses
- Customer-facing assurance discussions
- Bid/capture process compliance input (where assurance readiness is a procurement gate)
Regulatory & Legal Partnerships
- Partner with Legal on:
- Contract-driven assurance obligations
- Data protection & AI governance intersections (e.g., GDPR, Qatar PDPPL, EU AI Act)
- Sensitive escalations involving sovereign regulators
External Assessor & Auditor Relationships
- Manage relationships with:
- EMEA-based external auditors
- Assessors & certification bodies
- Regulatory counterparts
Audit & Program Oversight
- Support internal and external audits across EMEA.
- Report to the Head of Global Assurance on:
- Program health & key risks
- Certification timelines
- Emerging regulatory developments
Ideal Candidate Profile
Essential Requirements
- 7+ years of experience in cybersecurity compliance, GRC, public sector assurance, IT audit, cloud security, or a related role, with meaningful exposure to EMEA markets.
- Experience executing government/public sector assurance programs in UK, EU, or GCC, including:
- Working with external certification bodies, government assessors, or authorizing officials.
- Deep familiarity with one or more of:
- UK Cyber Essentials/Cyber Essentials+
- ISO 27001, ISO 9001, ISO 42001
- SOC 2
- Sovereign security regimes (e.g., Qatar NCSA NIA, KSA SCCC/NCA, UAE DESC/NESA)
- Knowledge of EMEA data protection and AI governance (e.g., GDPR, PDPPL, EU AI Act) and their translation into technical & organisational controls.
- Experience managing:
- Controls mapping
- Evidence collection
- Remediation tracking
- Audit coordination across distributed teams.
- Experience with cloud environments (AWS, Azure, Google Cloud) and evaluating cloud architectures against compliance requirements.
- Strong communication skills, autonomous decision-making, and judgment for escalations.


Get help with your application
Your very own career expert that helps elevate your application to the next level.
Preferred (Nice to Have)
- Relevant certifications, such as:
- CISSP, CISM, CISA, ISO 27001 Lead Auditor, ISO 42001 Internal Auditor, or CCSP.
- Experience with NATO information assurance standards or defence procurement prerequisites.
- Familiarity with EMEA health-sector or medical-device regulations (particularly in GCC & UK).
- Arabic language proficiency (working knowledge).
- UK SC or DV clearance or eligibility for equivalent EMEA government security clearances.
- Background from a Big 4 firm or a high-growth tech company.
PLEASE NOTE: Our policy requires a 90-day waiting period before reconsidering candidates for the same role. This ensures a fair and thorough evaluation of all applicants.
About Scale
Our mission is to develop reliable AI systems for the world’s most critical decisions. Our products provide high-quality data and full-stack technologies that power leading models, helping enterprises and governments build, deploy, and govern AI applications.
We collaborate with industry leaders like Meta, EY, Mayo Clinic, Time Inc., the Government of Qatar, and U.S. agencies (Army, Air Force). Our team is expanding to accelerate AI application development.
We are an inclusive workplace committed to equal employment opportunity and supporting applicants with disabilities. If you require accommodations during the application or recruiting process, please contact us at accommodations@scale.com.
Scale Complies with the U.S. Department of Labor’s Pay Transparency Provision.
Personal Data Policy: We collect, retain, and use personal data for professional business purposes, including sharing job opportunities aligned with your profile. For full details, see our privacy policy.
“It took my CV and asked me questions relevant to understanding what kind of jobs to suggest for me. Suggestions were almost perfect. Jobs were exactly what I’ve been looking for.”
Jessica, London
Skills
Location