1 to 25 of 30 Permanent SOC 2 Jobs in London

Global Risk and Compliance Manager

Hiring Organisation
Elixirr International
Location
London, UK
Employment Type
Full-time
including horizon scanning across jurisdictions.Reduce cyber risk exposure and strengthen cybersecurity governance in partnership with the CISO, aligning to global standards e.g. ISO 27001, SOC 2.Contribute to Board, Audit Committee and Annual Report risk disclosures.Risk & Compliance OperationsLead the Group's risk and compliance programme, ensuring controls are well-designed … operational and scalable, particularly for SOC 2 Type 2 and ISO 27001.Maintain a centralised, audit-ready evidence repository and coordinate internal/external audits, client reviews and due diligence.Oversee remediation plans and ensure continuous evidence collection.Develop consistent, lightweight playbooks for vendor intake, audit readiness and control testing ...

Senior Trust Security Analyst

Hiring Organisation
NICE Systems
Location
London, UK
Employment Type
Full-time
track remediation activities across engineering and security teams, ensuring alignment with agreed timelines and compliance requirements.AuditAudit Interpretation: Read and interpret third-party audit reports (SOC 2 Type II, ISO 27001, penetration test summaries) and represent findings to customers in questionnaires and security responses.Communication & Stakeholder ManagementInformation Translation: Gather detailed … Hands-on experience responding to SIG, CAIQ, VSA, and bespoke enterprise/government security questionnaires.Compliance Knowledge: Working knowledge of Cyber Essentials Plus, ISO 27001, SOC 2 Type II, and at least one of PCI DSS, GDPR/UK GDPR, HIPAA, or FedRAMP.Technical Expertise: Strong technical understanding of security ...

Senior Vulnerability Management Engineer

Hiring Organisation
HCLTech
Location
London Area, United Kingdom
Data Center, Network, and Application Infrastructure domains. The role is responsible for scanner architecture and tuning, risk-based prioritisation, integration with patch management and SOC functions, automation of VM workflows, and executive reporting. The engineer acts as the primary SME for vulnerability risk decisions and drives continuous improvement … escalation for L1 analysts; mentor team members and review scan configurations and reports. • Lead or support internal VM audits and contribute to ISO 27001, SOC 2, or regulatory compliance evidence. TECHNICAL SKILLS & KNOWLEDGE • Deep expertise in enterprise VM platforms: Qualys VMDR (including TruRisk), Tenable Security Centre/Tenable.io ...

GRC Analyst

Hiring Organisation
Rise Technical Recruitment
Location
London, United Kingdom
Employment Type
Permanent
Salary
£45000 - £55000/annum
across modern cloud environments. The ideal candidate will have experience across governance, risk and compliance activities, strong knowledge of frameworks such as ISO 27001, SOC 2, GDPR and DORA, and a solid understanding of cloud platforms including AWS, Azure and GCP. Strong communication skills and a customer-focused … clients to improve security programmes and regulatory compliance The Person: Good years of experience within cybersecurity, technology or GRC Strong understanding of ISO 27001, SOC 2, GDPR, DORA and related frameworks Experience with AWS, Azure and/or GCP environments Degree qualified in Cyber Security ...

Information Security Analyst ( ISO 27001 and ISO 27018 )

Hiring Organisation
Alfa Financial Software
Location
London, UK
Employment Type
Full-time
and procedures sharp and our compliance with ISO 27001 and ISO 27018 on point. You'll get involved in SSAE 18/ISAE 3402 SOC 1 Type 2 and SSAE 18 SOC 2 Type 2 assurance audits, spot opportunities to improve our security controls and … organisational skills. You write clear documentation and reports, and you can translate complex requirements for stakeholders at every level. You'll have at least 2 years' experience in a related role. Experience in a regulated industry, familiarity with other information security frameworks and assurance reports, and exposure to Jira ...

Senior Endpoint & Security Engineer, London office

Hiring Organisation
8x8
Location
London, UK
Employment Type
Full-time
office. You handledevice provisioning, AV, asset management, and general on-site support.If you like the idea of setting the endpoint security direction for a 2,000-person global company while also being the person a colleague can walk up to when their laptop won't behave, this role … laptop backup coverage, policy, and periodic recovery testing.• Partner with 8x8's Security team on EDR/XDR endpoint tuning and incident triage• Produce SOC 2 and ISO 27001 evidence for endpoint controls during audit cyclesLondon Site Support• Provide walk-up and desk-side support for London office ...

Program Manager

Hiring Organisation
Morson Talent
Location
City of London, London, United Kingdom
helping the business get real value out of what it already owns. Running alongside this is a wider compliance programme, including a move toward SOC 2, which the identity workstreams feed directly into. You would be working closely with a newly appointed senior security leader and, because … comparable IGA and PAM tooling, with enough technical grounding to hold credibility with engineering teams Exposure to compliance and audit-driven change, with SOC 2 or ISO 27001 experience a distinct advantage Available at short notice and able to commit to two days a week on site ...

Security Engineer - Security Operations

Hiring Organisation
Perk
Location
London, UK
Employment Type
Full-time
evolving security best practices.Secure SaaS applications and infrastructure by implementing security best practices, access controls, and continuous monitoring.Ensure compliance with security frameworks (ISO 27001, SOC 2, PCI-DSS) by developing governance, implementing necessary controls, and securing business processes.Collaborate with both non-engineering teams and IT to drive improvements … Technology, or a related field.You're an accomplished Security Operations Engineer with a track record of threat detection engineering within a security operations center (SOC) or similar environment.You bring hands-on experience with SIEM solutions, EDR, intrusion detection/prevention systems, and other security tools.You're proficient in scripting ...

Senior Cloud Security Engineer

Hiring Organisation
AlphaSense
Location
London, UK
Employment Type
Full-time
enterprise customers, including a majority of the S&P 500. Founded in 2011, AlphaSense is headquartered in New York City with more than 2,000 employees across the globe and offices in the U.S., U.K., Finland, India, Singapore, Canada, and Ireland. Come join us!Location: Remote, within UKAbout … engineering teams, and embed them into CI/CD and GitOps workflows.Work with compliance teams to ensure adherence to frameworks such as ISO 27001, SOC 2, and GDPR, translating requirements into practical technical controls.Conduct architecture reviews, threat modeling, and code reviews to identify security risks, collaborating closely with ...

Senior DevSecOps Engineer

Hiring Organisation
Yapily
Location
London, UK
Employment Type
Full-time
integrate mandatory security checks.Impress Us More By Having (Desirable)Proven experience working with and adhering to FinTech-related certifications, standards, or frameworks such as SOC2, ISO 27001, PCI DSS, DORA or similar regulated environments.Relevant certifications such as Google Cloud Professional Security Engineer, CKS (Certified Kubernetes Security Specialist), or CISSP.BenefitsWhy ...

Python Technical Lead FinTech

Hiring Organisation
Run-Time Group Ltd
Location
City of London, London, United Kingdom
Employment Type
Permanent
design, data modelling, and integration with internal and external financial systems. Security & Compliance Ensure systems meet regulatory, security, and audit standards (PCI-DSS, SOC2, GDPR). ...

Forward Deployed Team Lead

Hiring Organisation
C3 IoT
Location
London, UK
Employment Type
Full-time
systems, and cloud environments (AWS, Azure, GCP).Enterprise readiness. Ensure the platform is configured, secured, and monitored to meet enterprise security and compliance requirements (SOC 2, ISO 27001, data residency, etc.).Bridge field back to product. Push field learnings into the core platform so the next deployment ...

Security Engineer - Cloud Migration to AWS

Hiring Organisation
Version 1
Location
London, UK
Employment Type
Full-time
encryption standards (at rest and in transit) using KMS, ACM, and TLS policy. Support compliance and audit requirements (e.g. CIS Benchmarks, NIST, ISO 27001, SOC 2, PCI-DSS as applicable) and produce evidence. Partner with migration, platform, and application teams to unblock security issues without slowing delivery. Contribute ...

Lead - Cybersecurity

Hiring Organisation
Freshworks
Location
London Area, United Kingdom
trust center platforms (e.g., Loopio, Responsive, SafeBase) and GRC tools (e.g., Drata, Vanta). Ability to read and interpret security documentation, penetration test reports, SOC 2 audit reports, and architecture diagrams. Comfort with process automation concepts—scripting, workflow builders, or no-code/low-code tools to reduce ...

Crowdstrike Technical Consultant

Hiring Organisation
Accenture
Location
London, UK
Employment Type
Full-time
and have a genuine desire to outsmart the bad guys. You have experience in leading discovery conversations with client security teams (CISO, SOC leads, architects) to understand the current state, identify gaps, and map Falcon platform capabilities to business outcomes. You have designed and delivered compelling technical demonstrations … amount of travel will vary from 0 to 100% depending on business need and client requirements. Job Qualifications Here's what you need Minimum 2 years hands-on experience with the CrowdStrike Falcon platform (endpoint protection, EDR, or adjacent modules), either in a vendor, partner, or customer capacity Minimum ...

Director of Security & Compliance

Hiring Organisation
Oscar
Location
London, UK
Employment Type
Full-time
newly created senior leadership position, reporting directly to the CTO. With Cyber Essentials Plus already achieved and a 24/7 outsourced SOC in place, the organisation is now focused on achieving ISO 27001 certification, strengthening its governance and compliance framework, and ensuring the secure adoption of a rapidly … business continuity, AI security and governance, and information security - acting as the authoritative voice on cyber and security matters across the organisation.Location: London, hybrid (2-3 days onsite) Package: 110,000-140,000 + excellent benefits Key Responsibilities: Own security monitoring, incident response and security tooling, working closely with ...

Crowdstrike Technical Consulting Manager

Hiring Organisation
Accenture
Location
London, UK
Employment Type
Full-time
and have a genuine desire to outsmart the bad guys. You have experience in leading discovery conversations with client security teams (CISO, SOC leads, architects) to understand the current state, identify gaps, and map Falcon platform capabilities to business outcomes. You have designed and deliveredcompelling technical demonstrations … global teamsExperience with CTEM (Cyber Threat Exposure Management), vulnerability prioritization platforms (Qualys, Tenable, Rapid7), or attack surface managementWorking knowledge of compliance frameworks: NIST CSF, SOC 2, ISO 27001, DORA, HIPAA, or FedRAMPFamiliarity with threat intelligence operationalization (CrowdStrike CAO/Intel, MITRE ATT&CK, adversary tracking)#LI-EUAbout AccentureAccenture ...

Senior Detection & Threat Engineer

Hiring Organisation
Checkout.com
Location
London, UK
Employment Type
Full-time
escalation playbooksDriving the transition of advanced detection capability into Cyber Security ownershipWhat we're looking forProven experience in detection engineering, threat hunting, or advanced SOC rolesDeep understanding of modern attacker tradecraft and intrusion techniques across the attack lifecycleHands-on experience buidling detection logic in modern SIEM platforms (e.g Sentinel … build detection pipelines and automationWillingness to challenge bad detections, weak assumptions, and vanity metricsPragmatic mindset: precision and impact beat coverage theatreExperience operating beyond traditional SOC or MSSP modelsHands-on cloud detection experience (identity, control plane, SaaS)Familiarity with threat intelligence platforms and frameworks such as PCI DSS, NIST ...

Senior Application Security Engineer

Hiring Organisation
TripAdvisor
Location
London, UK
Employment Type
Full-time
improve security posture.4+ years experience working as a Security Engineer/Application Security AnalystPreferred Qualifications:Experience with regulatory frameworks (e.g., GDPR, PCI-DSS, SOC 2) and their integration into security processes.Industry-recognised security certifications (e.g., OSCP, OSCE, or similar).Familiarity with the latest security tools and frameworks ...

Senior IT Manager, Contractor

Hiring Organisation
Beamery
Location
London, UK
Employment Type
Full-time
global team of 100+ across EMEA & NORAM to work securely, efficiently, and confidently, while crushing top-tier compliance standards like ISO 27001 and SOC 2.WHAT AN IT MANAGER DOES AT BEAMERYStrategic Management & Business AlignmentDevelop and drive a forward-thinking IT roadmap and own the annual IT budget.Align tech investments … including contract negotiation and SLA enforcement.Expert troubleshooter passionate about ITSM and operational excellence, ready to support critical issues anytime.Knowledge of - ISO 27001/27002, SOC 2, GDPR frameworksMaster of endpoint management (MDM) across Windows, macOS, and Linux.Skilled in cloud platforms (Google Cloud, Azure) and SaaS apps (Atlassian, Zoom ...

Security Compliance Engineer

Hiring Organisation
eBay
Location
Greater London, United Kingdom
Employment Type
Full Time
bring: 7+ years of experience in security and compliance, ideally within eCommerce, payments, or technology environments Familiarity with industry frameworks such as PCI DSS, SOC 2, ISO 27001, NIST, or similar Experience managing third-party audits, including coordinating evidence collection across teams Solid grasp of security measures, threats ...

Cyber Security Auditor

Hiring Organisation
DGH Recruitment
Location
City of London, London, United Kingdom
Employment Type
Permanent
Salary
£50,000
team, within tight timescales, to budget and a high level of quality. - Experience preparing, supporting, or auditing certification audits (e.g., ISO 27001, SOC 2, Cyber Essentials). Cyber Security Auditor In accordance with the Employment Agencies and Employment Businesses Regulations 2003, this position is advertised based upon ...

Security Compliance Engineer

Hiring Organisation
eBay
Location
London, UK
Employment Type
Full-time
will bring:7+ years of experience in security and compliance, ideally within eCommerce, payments, or technology environmentsFamiliarity with industry frameworks such as PCI DSS, SOC 2, ISO 27001, NIST, or similarExperience managing third-party audits, including coordinating evidence collection across teamsSolid grasp of security measures, threats, and regulatory ...

IT Operations and Security Lead

Hiring Organisation
Nexus Jobs
Location
London, UK
Employment Type
Full-time
native security solutions such as Microsoft Defender, Sentinel, and SIEM platforms. Ensure compliance with cloud security frameworks and regulatory requirements (ISO 27001, NIST, GDPR, SOC2, FCA). Conduct regular security risk assessments, penetration tests, and vulnerability management across cloud services. Oversee endpoint security, cloud network and API security for robust … infrastructure, and security tools such as Microsoft Defender and Sentinel. Security & Compliance: Deep knowledge of security frameworks (ISO 27001, NIST, CIS), compliance requirements (GDPR, SOC2), and risk management best practices. Identity & Access Management (IAM): Expertise in Azure AD, MFA, Conditional Access, Single Sign-On (SSO), and Privileged Access Management ...

Head of Legal

Hiring Organisation
Heriot Brown In-House Legal Recruitment
Location
City of London, London, United Kingdom
design. Advising Product and Engineering on data ownership, data usage, intellectual property and the development of new AI products. Partnering with Security on SOC 2, customer security requirements, DPIAs and information security matters. About You Admitted to the US Bar – this is an absolute must. 7 - 12 years ...