1 to 25 of 106 Permanent SOC 2 Jobs in London

Senior Security & Compliance Engineer

Location
Greater London, England, United Kingdom
Salary
100.000 - 125.000
sophisticated. Our stack spans Kubernetes on Azure, mobile and embedded AR, REST APIs, real-time collaboration and AI-powered data pipelines. We already hold SOC 2 Type II and ISO 27001, but as our product, customers and use of AI continue to evolve, we now need dedicated security … opportunity to become our first dedicated security specialist, with genuine ownership and influence across the business. While we already have established compliance activity and SOC 2 Type II and ISO 27001 certifications, security responsibilities currently sit across different teams. We’re now looking for someone who can bring ...

Senior Security Engineer

Location
Greater London, England, United Kingdom
Salary
100.000 - 125.000
security design and architecture reviews, paired with the governance and process work that scales the program. You will partner on customer due‐diligence and SOC 2 evidence and turn security controls into repeatable workflows that fit how the business already works. You will apply that lens across … and DevOps to reduce risk through secure design and simplicity, not just added controls. Governance, Risk & Compliance Partner on customer due‐diligence (DDQ) and SOC 2 Type II evidence gathering, keeping compliance sustainable rather than fire‐drilled. Build repeatable security workflows that embed controls into existing engineering processes ...

SecOps Engineer

Hiring Organisation
WeDo Technology Solutions Limited
Location
London, South East England, United Kingdom
Employment Type
Full-Time
Salary
£70,000 - £75,000 per annum
reducing technical debt and strengthening the overall cloud platform. Security currently sits within the DevOps/Platform function, and with the business working towards SOC 2 compliance by Q1 2027, they’re looking for someone who can bring together strong DevOps fundamentals with a security-first mindset. Responsibilities … processes Supporting ongoing client migrations into AWS and Azure Working alongside the wider Platform/DevOps and Compliance functions as the business progresses towards SOC 2 compliance Helping shift security further left within the engineering lifecycle Required Skills You don't need to be a career Security Engineer. ...

Director, Compliance Audit – iLottery & Interactive

Location
Greater London, England, United Kingdom
Salary
100.000 - 125.000
security, technology, and service delivery controls.* Coordinate and lead all aspects of external audits and certifications supporting lottery customers, including but not limited to SOC 1, SOC 2, ISO 27001, WLA-SCS, PCI-DSS, and jurisdiction-specific requirements.* Maintain audit readiness throughout all iLottery regions by conducting … and customer collaborators.* Strong understanding of audit methodologies, internal controls, risk management, and governance frameworks.* Experience with recognized industry benchmarks and certifications such as SOC 1, SOC 2, ISO 27001, PCI-DSS, WLA-SCS, NIST, COBIT, or comparable frameworks.* Strong analytical, problem-solving, and decision-making capabilities. ...

Security Engineer, Compliance Focus

Location
Greater London, England, United Kingdom
Salary
150.000 - 200.000
paperwork exercise at the edge of the business. It is a condition of doing business. We are working toward ISO 27001 certification and SOC 2 Type II attestation across a company that is scaling quickly, operating multi-tenant infrastructure in several countries, and deploying into partner data centers. … actually working or only described. What You Will Be Doing Compliance Execution Implement and maintain the control set defined for our ISO 27001 and SOC 2 Type II programs, tracking status, owners, and gaps against the certification timeline. Operate our GRC platform (Vanta) day to day: configure and ...

Senior Security & Compliance Engineer

Location
Greater London, England, United Kingdom
Salary
100.000 - 125.000
sophisticated. Our stack spans Kubernetes on Azure, mobile and embedded AR, REST APIs, real-time collaboration and AI-powered data pipelines. We already hold SOC 2 Type II and ISO 27001, but as our product, customers and use of AI continue to evolve, we now need dedicated security … opportunity to become our first dedicated security specialist, with genuine ownership and influence across the business. While we already have established compliance activity and SOC 2 Type II and ISO 27001 certifications, security responsibilities currently sit across different teams. We're now looking for someone who can bring ...

Sr. Security Engineer - GRC EU/UK Regulation & Data Protection

Location
Greater London, England, United Kingdom
Salary
80.000 - 100.000
improve information security policies, standards, and procedures aligned to DORA, the EU AI Act, NIS2 where in scope, and complementary frameworks (e.g., ISO 27001, SOC 2) where they overlap. Champion pragmatic governance — prioritize issues that represent real security or business risk over checkbox compliance. BASIC QUALIFICATIONS: Bachelor … logging and monitoring, encryption, network segmentation, infrastructure hardening) and integrating compliance checks into CI/CD pipelines. Experience supporting ISO 27001 and/or SOC 2 programs alongside EU/UK regulatory obligations. Familiar with GDPR concepts that commonly intersect with information security (e.g., security of processing, breach ...

Senior Cybersecurity Consultant

Location
Greater London, England, United Kingdom
Salary
80.000 - 100.000
creating operational friction. Responsibilities Lead penetration testing and vulnerability assessment engagements Design security architectures for cloud-native and hybrid environments Develop security compliance programs (SOC 2, ISO 27001, GDPR) Conduct incident response planning and tabletop exercises Advise C-level executives on security strategy and risk management Requirements 8+ … years in information security with consulting experience Deep expertise in penetration testing, vulnerability management, and threat modeling Knowledge of compliance frameworks: SOC 2, ISO 27001, GDPR, PCI-DSS Experience with cloud security (AWS Security Hub, Azure Defender, or GCP Security Command Center) CISSP, OSCP, or equivalent certification Nice ...

Solutions Engineer (Upmarket, Pre-Sales) - EMEA

Location
Greater London, England, United Kingdom
Salary
80.000 - 100.000
demonstrations that showcase how Vanta solves the customer's specific problem, including how Vanta automates and operationalises their GRC programmes across frameworks such as SOC 2, ISO 27001, and HIPAA. Validate the feasibility of standard and semi‐complex integrations and confirm alignment with customer environments, workflows, and architectures. … trust in internet businesses by enabling companies to improve and prove their security. From our early days automating security monitoring for compliance standards like SOC 2, HIPAA and ISO 27001 to creating the world's leading Trust Management Platform, our vision remains unchanged. Now more than ever, making ...

GRC Pre-Sales Consultant / Solutions Engineer – EMEA

Location
Greater London, England, United Kingdom
Salary
80.000 - 100.000
showcase how the company solves the customer's specific problem, including how the company automates and operationalises their GRC programmes across frameworks such as SOC 2, ISO 27001, and HIPAA. Validate the feasibility of standard and semi-complex integrations and confirm alignment with customer environments, workflows, and architectures. … trust in internet businesses by enabling companies to improve and prove their security. From our early days automating security monitoring for compliance standards like SOC 2, HIPAA and ISO 27001 to creating the world's leading Trust Management Platform, our vision remains unchanged. Now more than ever, making ...

Platform Engineer

Location
Greater London, England, United Kingdom
Salary
80.000 - 100.000
available, and optimized for both performance and cost. Key Responsibilities Architect, implement, and maintain cloud infrastructure to support rapid product growth. Prepare infrastructure for SOC 2/ISO 27001 audits, aligning with customer expectations. Build and maintain CI/CD pipelines for backend, frontend, and data services … Experience implementing reliability, security, and compliance measures ahead of scale‐up or audit readiness. History of driving cost efficiency while enabling growth. Exposure to SOC 2, ISO 27001, or GDPR compliance processes. What We Offer You will be reporting directly to the founders, who have two successful venture ...

GRC Analyst

Hiring Organisation
Rise Technical Recruitment
Location
London, United Kingdom
Employment Type
Permanent
Salary
£45000 - £55000/annum
across modern cloud environments. The ideal candidate will have experience across governance, risk and compliance activities, strong knowledge of frameworks such as ISO 27001, SOC 2, GDPR and DORA, and a solid understanding of cloud platforms including AWS, Azure and GCP. Strong communication skills and a customer-focused … clients to improve security programmes and regulatory compliance The Person: Good years of experience within cybersecurity, technology or GRC Strong understanding of ISO 27001, SOC 2, GDPR, DORA and related frameworks Experience with AWS, Azure and/or GCP environments Degree qualified in Cyber Security ...

Information Security Governance Specialist

Location
Greater London, England, United Kingdom
Salary
100.000 - 125.000
informed decisions while supporting commercial success. You'll drive the day‐to‐day operation and continuous improvement of our compliance programs, including ISO 27001, SOC 2, TISAX, and emerging regulatory requirements. You'll serve as the subject matter expert during audits and ensure our control environment remains effective … experience in information security governance, GRC, or technology risk within a SaaS or cloud environment. You've been the subject matter expert in SOC 2 and/or ISO 27001 audits — not just supporting them, but working directly on controls and partnering with auditors. Experience with additional frameworks ...

Infrastructure/DevOps Engineer

Location
Greater London, England, United Kingdom
Salary
80.000 - 100.000
ready and high-performing. In this senior role, you’ll lead DevOps, observability, and compliance. Tasks include architecting cloud infrastructure for growth, prepping for SOC 2/ISO 27001 audits, and setting up CI/CD pipelines for all services. You’ll also manage logging, metrics, tracing, alerts … Security best practices knowledge. Networking concepts (VPCs, DNS, load balancers, VPNs, firewalls). Database management (PostgreSQL, MySQL, NoSQL) and storage. Python or Bash skills. SOC 2, ISO 27001, or GDPR exposure. Report directly to the founders with a chance to shape their future. Got what it takes? Apply ...

HIPAA Security Engineer

Location
Greater London, England, United Kingdom
Salary
125.000 - 150.000
Security Architecture team, you will lead the design and operation of our US Healthcare security controls. You will own the roadmap for HIPAA compliance and SOC2 Type II certification , partnering with Engineering and Legal to build a secure, compliant platform for millions of users. Key Responsibilities Compliance Leadership: Lead annual … SOC 2 and HIPAA certifications, managing interfaces with external auditors and professional services. Policy & Risk: Define and maintain security policies; embed risk assessment activities within engineering processes and vendor management. Operational Excellence: Partner with control owners to automate evidence gathering and ensure controls reduce friction rather than creating ...

GRC Consultant

Location
Greater London, England, United Kingdom
Salary
80.000 - 100.000
compliance framework across the business Leading PCI DSS compliance initiatives Developing and improving GDPR processes and documentation Supporting security standards such as ISO 27001, SOC 2 and/or Cyber Essentials Creating policies, procedures and governance documentation Building and maintaining risk registers Preparing the business for future audits … roadmap to get everything where it needs to be. Ideally you'll have experience with: Governance, Risk & Compliance (GRC) PCI DSS GDPR ISO 27001, SOC 2 and/or Cyber Essentials Security governance and audit preparation Policy creation and documentation Risk management frameworks Working independently with multiple stakeholders ...

Head of Security

Location
Greater London, England, United Kingdom
Salary
150.000 - 200.000
security engineering, thoughtful governance and AI-first operations to ensure our customers, employees and partners can confidently rely on Geordie as we scale. With SOC 2 Type II and ISO 27001 already in place, your mission is to build an effective AI-native security programme that keeps certifications … hands-on individual contributor while building security functions from first principles. Experience maintaining security programs aligned to frameworks such as ISO 27001 and SOC 2. Strong understanding of modern software development, cloud infrastructure and secure engineering practices. Experience partnering closely with engineering organisations to build secure-by-design systems. ...

Senior Technical Programme Manager

Location
Greater London, England, United Kingdom
Salary
100.000 - 125.000
platforms or ways of working across multiple teams. Experience working in regulated environments or with strict compliance requirements (e.g., GDPR, PCI‐DSS, SOC 2, DMA, and EU AI Act). Demonstrated ability to establish programme governance and operating models from scratch in ambiguous or fast‐moving environments. Experience … Communication Leadership Skills Decision‐Making Influencing Stakeholders Navigating Complexity Certifications & Qualifications PMP Agile Project Management Certification AWS Cloud Practitioner Industry Keywords GDPR PCI‐DSS SOC 2 DMA EU AI Act Tools & Technologies Jira Confluence Smartsheet Cloud‐Native Designs Microservices #J-18808-Ljbffr ...

Senior Security & Compliance Engineer (ISO 27001 / SOC 2)

Location
Greater London, England, United Kingdom
Salary
150.000 - 200.000
Volta is seeking a Senior Manager, Cyber Security Engineering to lead the ISO 27001 and SOC 2 Type II program across a fast-growing, security‐minded infrastructure platform. You will own controls, evidence, and ISMS documentation while collaborating with platform engineers and external auditors. You’ll drive audit ...

Senior Manager, ITGC SOX & Internal Controls

Location
Greater London, England, United Kingdom
Salary
100.000 - 125.000
controls, support remediation, and build organisational capability. You will also help drive alignment between ITGC/SOX requirements and Volta's broader ISO and SOC 2 compliance efforts. What You Will Be Doing Develop and maintain the scope of IT applications covered under SOX, and the ITGC workstream … controls and remediation efforts Deliver training and guidance to process owners and Heads of Department on key SOX requirements Support implementation of ISO and SOC 2 compliance requirements in collaboration with IT teams What You Bring 6-8 years' experience working on and leading SOX ITGC programmes Experience ...

Senior Endpoint & Security Engineer, London office

Location
Greater London, England, United Kingdom
Salary
100.000 - 125.000
handle device provisioning, AV, asset management, and general on‐site support. If you like the idea of setting the endpoint security direction for a 2,000-person global company while also being the person a colleague can walk up to when their laptop won't behave, this role … laptop backup coverage, policy, and periodic recovery testing. Partner with 8x8's Security team on EDR/XDR endpoint tuning and incident triage Produce SOC 2 and ISO 27001 evidence for endpoint controls during audit cycles London Site Support Provide walk‐up and desk‐side support for London ...

Security Engineer

Location
Greater London, England, United Kingdom
Salary
80.000 - 100.000
among others. In addition, you will own and continuously improve Intigriti’s threat detection capabilities. This includes running day-to-day Security Operations Centre (SOC) activities, expanding log coverage, and building high-quality detections in our SIEM. You will use frameworks such as MITRE ATT&CK and MITRE D3FEND … availability of company data. Collaborate with the IT System Administrator to manage and enhance the overall network and system security. Incident Response, Threat Detection & SOC Operations Develop, maintain, and run incident response plans to address security incidents promptly and effectively. Run day-to-day SOC operations, including monitoring ...

Delivery Lead

Hiring Organisation
Leo Technology Limited
Location
London, South East England, United Kingdom
Employment Type
Full-Time
Salary
£70,000 - £90,000 per annum
Role: Technical Delivery Lead (Platform) Salary: £70,000-£90,000 p/a + discretionary annual bonus of up to 7.5% Location: Hybrid - London 2 days per week The Opportunity: Our client, an innovative medical technology business is looking for an experienced Platform Delivery Lead to join its growing … training or qualifications in Agile, Lean, Six Sigma, PRINCE2 or a similar discipline Knowledge of GCP, ISO13485, ISO27001 or similar quality frameworks Familiarity with SOC 2/SOC 3 and secure, compliant software delivery An engineering or technical background Experience working with structured delivery lifecycle or process ...

Senior Security Engineer

Location
Greater London, England, United Kingdom
Salary
125.000 - 150.000
information security principles and cybersecurity frameworks relevant to cloud environments: MITRE ATT&CK for Cloud, CIS Benchmarks, AWS Well‐Architected Security Pillar, NIST CSF, SOC 2, ISO 27001. Willingness and ability to participate in an on‐call rotation, including after‐hours response. Ability to produce clear, comprehensive, and ...

Cloud Platform Security Engineer Software engineering London

Location
Greater London, England, United Kingdom
Salary
80.000 - 100.000
detection coverage against MITRE ATT&CK tactics and techniques. Identify and close visibility gaps across the cloud estate. Maintain alignment to PCI DSS, SOC2, ISO27001 NIST, and CIS frameworks. Produce documentation and evidence to support audit and assurance activities. AI Security Design and implement guardrails for AI/LLM systems … OWASP LLM Top 10, NIST AI RMF. Scripting proficiency in Python, PowerShell, or Bash for security automation. Strong grasp of PCI DSS, NIST CSF, SOC 2, ISO27001, CIS Benchmarks, and MITRE ATT&CK for Cloud. Nice to have AZ-500, AWS Certified Security – Specialty, or equivalent cloud security ...