51 to 75 of 401 SOC 2 Jobs in England

Compliance Enablement Technical Program Manager

Location
Oxford, England, United Kingdom
program and project management skills, with a track record of delivering across multiple teams. Solid knowledge of cybersecurity frameworks (NIST 800-53, ISO 27001, SOC 2, and/or FedRAMP) and hands‐on audit experience. Enough technical depth to be the team's technical point of contact: comfortable … engineering, cloud security, or security engineering. Prior experience as a technical SME, or as a bridge between compliance and engineering teams. Experience leading a SOC 2 Type II, ISO 27001, FedRAMP, or NIST 800-53 audit end‐to‐end, and familiarity with OSCAL or other compliance‐automation tooling. ...

Head of Information Security

Location
Greater London, England, United Kingdom
assessments, and executive reporting for leadership and the board. Lead Compliance & Certifications: Own end‐to‐end audit readiness for enterprise and defense frameworks, including SOC 2 Type II, ISO 27001, Cyber Essentials Plus, and NIST 800‐53. Partner with Product & Engineering: Embed DevSecOps and secure SDLC practices into … cloud security (AWS/GCP), container isolation, cryptography, and network security. Audit & Compliance Track Record: Proven experience taking a high‐growth technology company through SOC 2 Type II or ISO 27001 certifications from start to finish. Stakeholder Management: Exceptional ability to bridge technical security requirements with business strategy ...

Cyber Security Lead

Hiring Organisation
Oscar Technology
Location
London, South East England, United Kingdom
Employment Type
Full-Time
Salary
£115,000 - £135,000 per annum
network segmentation, encryption, logging and monitoring Own security controls around identity, permissions, tenant isolation, audit trails and incident response Lead security assurance activity covering SOC 2, ISO 27001 and wider customer security requirements Support enterprise customer security reviews, questionnaires and due diligence while helping shape security standards across … experience across threat modelling, OWASP and secure software development Good understanding of cloud security, identity, access controls, encryption and monitoring Experience delivering or implementing SOC 2 and/or ISO 27001 programmes Experience supporting enterprise security reviews, questionnaires, audits or customer due diligence Strong communication skills with ...

Senior GRC Analyst - Central or Eastern time, US or Canada

Location
Boston, England, United Kingdom
Impact Assessments (DPIAs) for new products and initiatives. Compliance & Audits Manage and coordinate internal and external audits for certifications such as ISO 27001 and SOC 2 Type II. Perform analysis and compile documentation and evidence to demonstrate the compliance level of systems, services, and controls. Work with internal … formal audit and certification processes from start to finish. Knowledge & Frameworks Deep knowledge of security and privacy frameworks is required (e.g., ISO 27001, ISO27701, SOC 2 Type II, HITRUST, NIST CSF) Strong knowledge of global privacy and healthcare regulations (e.g., GDPR, HIPAA) Working knowledge of AI regulations, frameworks ...

Security & Network Engineer - 12 months Fixed term

Location
Maidenhead, England, United Kingdom
disaster recovery strategies aligned with business continuity requirements Security Policy & Governance: Develop and maintain network security policies, baseline configurations, and compliance frameworks (ISO 27001, SOC 2, regulatory if applicable) Build and socialise governance frameworks: RACI matrices for infrastructure decisions, policy approval workflows, change controls Create runbooks, decision trees … teams Desirable Experience CISSP, CEH, OSCP, AWS Solutions Architect Professional, or similar security certification (or equivalent practical expertise) Experience with regulatory frameworks (ISO 27001, SOC 2, GDPR, NIS Regulations, or industry-specific compliance) Background in manufacturing, retail, or distributed operations environments (warehouse infrastructure, multi-site logistics) Exposure ...

Security & Network Engineer - 12 months Fixed term

Hiring Organisation
Techtronic Industries - Europe HQ
Location
Maidenhead, Berkshire, United Kingdom
Employment Type
Full-Time
Salary
Competitive salary
disaster recovery strategies aligned with business continuity requirements Security Policy & Governance: Develop and maintain network security policies, baseline configurations, and compliance frameworks (ISO 27001, SOC 2, regulatory if applicable) Build and socialise governance frameworks: RACI matrices for infrastructure decisions, policy approval workflows, change controls Create runbooks, decision trees … teams Desirable Experience CISSP, CEH, OSCP, AWS Solutions Architect Professional, or similar security certification (or equivalent practical expertise) Experience with regulatory frameworks (ISO 27001, SOC 2, GDPR, NIS Regulations, or industry-specific compliance) Background in manufacturing, retail, or distributed operations environments (warehouse infrastructure, multi-site logistics) Exposure ...

Cyber Security Consultant

Hiring Organisation
Circle Group
Location
London, United Kingdom
Employment Type
Permanent, Work From Home
Salary
£70,000
implementation, maintenance and audit preparation. Advise clients against recognised frameworks including ISO 27001, NIST CSF and CIS Controls, as well as supporting SOC 2 and other compliance requirements. Develop and improve security policies, procedures and governance frameworks. Establish and maintain risk registers and support security governance forums. Support … reports and recommendations. Knowledge or experience in areas such as the following would be beneficial: ISO 27001/ISO 27005 NIST CSF CIS Controls SOC 2 NIS2/DORA Risk management and governance Security operations and monitoring Incident response Vulnerability management Cloud security, particularly Microsoft Azure and Microsoft ...

IT Operations & Cyber Lead

Location
Greater London, England, United Kingdom
Engineering on network separation and integration. Define and enforce IT and security standards, policies, and backup/recovery procedures that meet ISO 27001/SOC 2/GDPR expectations. Monitor and report IT and security health, highlighting risks, incidents, and KPIs to the IT Director, and feed improvements … and non-technical audiences. Comfortable in a start-up/scale-up environment — pragmatic, adaptable, and ownership-driven. Desirable Experience supporting ISO 27001 or SOC 2 certification efforts. Experience automating IT workflows via scripting (PowerShell, Python, or equivalent). Exposure to robotics, IoT, or AI product environments. Knowledge ...

GRC Pre-Sales Consultant / Solutions Engineer – EMEA

Location
Greater London, England, United Kingdom
demonstrations that showcase how Vanta solves the customer's specific problem, including how Vanta automates and operationalises their GRC programmes across frameworks such as SOC 2, ISO 27001, and HIPAA. Validate the feasibility of standard and semi-complex integrations and confirm alignment with customer environments, workflows, and architectures. … trust in internet businesses by enabling companies to improve and prove their security. From our early days automating security monitoring for compliance standards like SOC 2, HIPAA and ISO 27001 to creating the world's leading Trust Management Platform, our vision remains unchanged. Now more than ever, making ...

Platform Engineer

Location
Greater London, England, United Kingdom
available, and optimized for both performance and cost. Key Responsibilities Architect, implement, and maintain cloud infrastructure to support rapid product growth. Prepare infrastructure for SOC 2/ISO 27001 audits, aligning with customer expectations. Build and maintain CI/CD pipelines for backend, frontend, and data services … Experience implementing reliability, security, and compliance measures ahead of scale‐up or audit readiness. History of driving cost efficiency while enabling growth. Exposure to SOC 2, ISO 27001, or GDPR compliance processes. What We Offer You will be reporting directly to the founders, who have two successful venture ...

Security Engineer

Location
Greater London, England, United Kingdom
lasting improvement to systems and controls AI security , including prompt injection, unsafe tool execution, retrieved data and sensitive information disclosure Evidence and assurance for SOC 2, enterprise security reviews and customer due diligence, plus the reusable security patterns engineering teams adopt as standard What We’re Looking … code, and enterprise identity integrations such as OAuth, OIDC and SAML Detection engineering, SIEM or cloud security monitoring, incident response or digital forensics SOC 2, ISO 27001 or enterprise customer security reviews Penetration testing or working with external security researchers What We Offer Competitive salary with regular appraisals ...

DevOps Engineer

Location
Manchester, England, United Kingdom
sizing, spot and reserved capacity, and spend visibility. Security and compliance. You bring expertise in secrets management, least-privilege access and patching. Experience with SOC 2, pen testing, and enterprise security reviews is valued. Our stack Cloud: AWS as primary — multi-account (management/dev/staging/… optimisation with results you can point to. Windows build agents, or game/graphics build pipelines (Unreal, Perforce). GPU workloads and render infrastructure. SOC 2/ISO 27001 support, penetration test coordination, or compliance automation (Vanta or similar). Datadog specifically. Location, setup and comp Working ...

Senior Security, Trust & Compliance Lead

Location
Royal Leamington Spa, England, United Kingdom
compliance initiatives across cloud-based and regulated environments Driving audit readiness, compliance programs and evidence-based assurance across frameworks such as ISO 27001, GDPR, SOC 2 and GxP Providing leadership on risk management, governance and security strategy Partnering with customers, auditors and key stakeholders on security reviews, assurance … with experience in several of the following areas: Security leadership, governance, risk and compliance (GRC) Cloud security architecture and security strategy ISO 27001, GDPR, SOC 2, GxP, 21 CFR Part 11 or similar regulated frameworks Audit leadership, customer assurance and certification programs Healthcare technology, pharmaceutical, biotechnology or regulated ...

IT Director

Location
Reading, England, United Kingdom
Help Desk services, assets and software licensing. Strengthening information security and resilience , developing the Information Security roadmap and driving compliance with ISO 27001 and SOC 2 alongside robust backup, disaster recovery and business continuity capabilities. Leading technology transformation , identifying opportunities to simplify the technology landscape, improve information flows … encompassing infrastructure, networking, IT support, cloud technology, information security and business systems . Proven experience implementing and operating against ISO 27001 and/or SOC 2 security frameworks, with strong knowledge of cybersecurity, data protection and technology risk management. Strong technical understanding across networking technologies including TCP/ ...

Information Security Governance Specialist

Location
Greater London, England, United Kingdom
informed decisions while supporting commercial success. You'll drive the day‐to‐day operation and continuous improvement of our compliance programs, including ISO 27001, SOC 2, TISAX, and emerging regulatory requirements. You'll serve as the subject matter expert during audits and ensure our control environment remains effective … experience in information security governance, GRC, or technology risk within a SaaS or cloud environment. You've been the subject matter expert in SOC 2 and/or ISO 27001 audits — not just supporting them, but working directly on controls and partnering with auditors. Experience with additional frameworks ...

Information Security Analyst ( ISO 27001 and ISO 27018 )

Location
Greater London, England, United Kingdom
and procedures sharp and our compliance with ISO 27001 and ISO 27018 on point. You’ll get involved in SSAE 18/ISAE 3402 SOC 1 Type 2 and SSAE 18 SOC 2 Type 2 assurance audits, spot opportunities to improve our security controls and … excellent organisational skills. You write clear documentation and reports, and can translate complex requirements for stakeholders at every level You’ll have at least 2 years’ experience in a related role Experience in a regulated industry, familiarity with other information security frameworks and assurance reports, and exposure to Jira ...

Information Security Analyst ( ISO 27001 and ISO 27018 )

Hiring Organisation
Alfa Financial Software
Location
London, UK
Employment Type
Full-time
and procedures sharp and our compliance with ISO 27001 and ISO 27018 on point. You'll get involved in SSAE 18/ISAE 3402 SOC 1 Type 2 and SSAE 18 SOC 2 Type 2 assurance audits, spot opportunities to improve our security controls and … organisational skills. You write clear documentation and reports, and you can translate complex requirements for stakeholders at every level. You'll have at least 2 years' experience in a related role. Experience in a regulated industry, familiarity with other information security frameworks and assurance reports, and exposure to Jira ...

Information Security Analyst ( ISO 27001 and ISO 27018 )

Location
Greater London, England, United Kingdom
and procedures sharp and our compliance with ISO 27001 and ISO 27018 on point. You'll get involved in SSAE 18/ISAE 3402 SOC 1 Type 2 and SSAE 18 SOC 2 Type 2 assurance audits, spot opportunities to improve our security controls and … organisational skills.* You write clear documentation and reports, and you can translate complex requirements for stakeholders at every level.* You'll have at least 2 years' experience in a related role.* Experience in a regulated industry, familiarity with other information security frameworks and assurance reports, and exposure to Jira ...

Head of Information Security

Hiring Organisation
MOO
Location
London, UK
Employment Type
Full-time
reviews. Plan, facilitate and participate directly in tabletop cyber exercises and live cyber simulations at least quarterly. For any incident classified Severity 1 or 2, act as deputy incident decision-maker, holding delegated authority from the CFO to make time-critical operational decisions. Data Privacy & RegulatoryPartner with Legal … Privacy by Design and data minimisation into discovery, design and delivery processes. Own the roadmap towards enterprise assurance frameworks, including UK Cyber Essentials and SOC 2 readiness. Prepare for external audits and assessments and ensure customer security questionnaire responses reflect actual control status. Third-Party & Cloud SecurityEstablish and ...

Infrastructure/DevOps Engineer

Location
Greater London, England, United Kingdom
ready and high-performing. In this senior role, you’ll lead DevOps, observability, and compliance. Tasks include architecting cloud infrastructure for growth, prepping for SOC 2/ISO 27001 audits, and setting up CI/CD pipelines for all services. You’ll also manage logging, metrics, tracing, alerts … Security best practices knowledge. Networking concepts (VPCs, DNS, load balancers, VPNs, firewalls). Database management (PostgreSQL, MySQL, NoSQL) and storage. Python or Bash skills. SOC 2, ISO 27001, or GDPR exposure. Report directly to the founders with a chance to shape their future. Got what it takes? Apply ...

Privacy and Compliance Analyst

Location
Greater London, England, United Kingdom
privacy notices, consent, data retention, and contractual commitments Support audits and compliance programs through evidence collection and remediation tracking Contribute to ISO 27001, SOC 2, and other compliance initiatives Support privacy, security, and third-party risk assessments and maintain risk registers Support privacy incident investigations and remediation activities … Experience with privacy assessments, documentation, supplier reviews, and customer questionnaires Understanding of cloud technology, information security principles, and frameworks such as ISO 27001 and SOC 2 Strong research, critical thinking, and problem-solving skills Clear communication skills with the ability to explain complex topics simply Organised, detail-oriented ...

Head of Compliance

Location
Manchester, England, United Kingdom
and Operations on incident governance, escalation, and post-incident remediation tracking. Controls, Certifications & Audit Oversee GRC readiness for external assurance frameworks and certifications, including SOC 2, ISO 27001, and related control programmes. Coordinate internal and external audits and ensure effective follow-through on findings and corrective actions. Maintain … with banking, financial-services, or insurance-sector customers. Familiarity with DORA, EBA outsourcing expectations, or equivalent financial-sector third-party governance requirements. Experience with SOC 2, ISO 27001, and related assurance frameworks. Experience across both Europe and the US. Relevant certifications such as CIPP/E, CRISC, CRCM ...

Head of DevOps

Location
Greater London, England, United Kingdom
same agreed standards Ensuring our infrastructure meets the security and compliance bar our clients and regulators expect, and that we can evidence it (e.g. SOC 2) Giving the business clear, reliable visibility into infrastructure cost, attributed by client and project Building a self-service platform so engineering teams … Kubernetes, CI/CD and infrastructure-as-code at scale Experience running a cloud estate that has to stand up to external audit (e.g. SOC 2) and give the business real cost visibility Clear communication — comfortable explaining architectural trade-offs to technical and non-technical stakeholders alike Familiarity ...

Security GRC Analyst

Hiring Organisation
FundApps
Location
Greater London, United Kingdom
Employment Type
Full Time
Salary
60000 to 65000 GBP Annually
Information Security Management System. As an Information Security Analyst, you will help operate and improve the controls that support our ISO 27001 and SOC 2 programmes, while also getting involved in the real security work that happens across a growing SaaS business. You will not be expected … through on details and help make security easier for everyone at FundApps. What you will own Support the operation of FundApps’ ISO 27001 and SOC 2 controls, contributing to every stage from initial evidence collection and control checks through to remediation tracking and comprehensive audit preparation. Assessing ...

Data Platform SRE

Location
Greater London, England, United Kingdom
runbooks. Contribute to the broader platform/infrastructure SRE community at Outerlimit, sharing tooling and practices across teams. Support compliance and audit requirements (e.g. SOC 2, data governance) as they relate to data platform reliability, access control, and change management. Nice to have Experience with a cloud data … jobs and configure tooling. Prior experience formally introducing SRE practices to a team that didn't previously have them. Relevant compliance/security exposure (SOC 2, ISO 27001, or similar frameworks). What we offer Hybrid working — London office, 2+ days per week, with flexibility around core hours. ...