Head of Information Security Engineering
Bournemouth, Dorset, United Kingdom
Hybrid / WFH Options
Hybrid / WFH Options
Nourish Care
to our commercial practices. You'll play a pivotal role in meeting the expectations of enterprise customers, regulators, and auditors alike - guiding the business through certifications like ISO 27001, Cyber Essentials Plus, and SOC 2 , while partnering with engineering and product teams to ensure security is treated as a product feature, not a compliance tick-box. Key … cloud-native architecture and tooling (we primarily use AWS, GitHub Actions, and Terraform) Compliance & Assurance Lead ongoing readiness and evidence for ISO 27001, SOC 2 Type I & II , and Cyber Essentials Plus Maintain and evolve the ISMS in line with business growth and operational maturity Maintain the security risk register, treatment plans, and internal audit programme Collaborate … security risks, and evolving regulation to inform strategy Drive a strong security culture across the business through storytelling, education, and leadership Key Deliverables Successful recertification of ISO 27001 and Cyber Essentials Plus SOC 2 Type I and II : audit readiness, gap closure, and ongoing assurance Up-to-date ISMS documentation and live security risk register Completion of More ❯
Employment Type: Permanent
Salary: GBP Annual
Posted: