Compliance Officer
Carnall Farrar
| Company | Carnall Farrar |
| Category | Legal & Compliance |
| Location | London |
| Remote | On-site (inferred) |
| Employment | Full-time |
| Level | Not stated |
| Salary | Not stated by the employer |
| Posted | 9 Jun 2026 |
| Last verified | 10 Aug 2026 |
| Source | Employer ATS (workable) |
Description
About us We are a leading consultancy with a purpose to make an enduring impact on health and healthcare. We work with leaders and frontline teams to improve health, transform healthcare, drive adoption of innovation and create value through investment. Our consultancy serves the entire healthcare sector, from payors and providers of care, to life science companies, health tech and sector suppliers and health investors. We provide end-to-end services, from strategy through implementation, accelerated by data, digital and AI. We shape opinion through evidence-based thought leadership on key issues affecting health. With unmatched ability to access and use health data, our consultants are a driving force for delivering positive and meaningful change. About the role The Compliance Officer sits within the Data Operations team and reports directly to the Director of Data, Analytics and Intelligence. The role is the operational coordinator for information governance (IG), data protection, and regulatory compliance across CF. It is also an enabling role within Data Operations, responsible for the workflow management and project coordination that allows the team to operate efficiently. The Compliance Officer provides day-to-day coverage of the DPO responsibilities that sit beneath the Director of Data, Analytics and Intelligence, who holds the statutory Data Protection Officer designation. The Compliance Officer will undertake recognised DPO training and certification, enabling them to act as the primary point of contact for all compliance-related queries across the business. The role primarily spans three interconnected business functions — IT, People, and Data Operations — with additional support to the wider corporate team as needed. The Compliance Officer is responsible for reducing regulatory risk, maintaining audit readiness, and providing structured assurance to the Board and Executive Committee. Responsibilities include information governance and data protection, ISO certification coordination, data breach compliance and incident response, people and employment compliance, regulatory monitoring, and legal and IP query management. As with all corporate functions, the role will span compliance obligations across existing and emerging geographies (UK, Middle East and Europe). This is an excellent opportunity for a graduate with a legal background — or someone early in their compliance career — to develop a broad and substantive compliance portfolio within a dynamic, data-rich healthcare consultancy. Full training and professional development support will be provided. Responsibilities The requirements, responsibilities and duties of the role will include, but are not limited to: Policy Development and Maintenance Develop, maintain and regularly review internal compliance policies to ensure staff are equipped to meet regulatory obligations, including: Data protection and privacy policies, including employee and candidate privacy notices Employment contracts Associate agreements and Statements of Work (SoWs) Anti-bribery and conflicts of interest policies Information security policies aligned to ISO 27001 Identify and flag compliance issues, deviations from standard terms, or matters with wider legal or commercial implications, escalating to the People team and legal advisors as appropriate Own the annual policy review cycle, coordinating with relevant function leads to ensure policies remain current and fit for purpose Develop accessible plain-English guidance and FAQs to support staff understanding and day-to-day compliance Data Protection Officer Act as the operational Data Protection Officer