SOC 2 Jobs in London

1 to 25 of 79 SOC 2 Jobs in London

Sr. Cloud Security Architect

london, south east england, united kingdom
Cognizant Technology Solutions
mitigate threats in real-time, conducting post-incident analysis and documentation. Risk and Compliance Management Conduct regular security assessments and audits to ensure compliance with industry standards (ISO 27001, SOC 2, etc.). Develop strategies to address vulnerabilities and mitigate risks. Collaboration and Integration Work closely with IT and development teams to integrate security services into CI/… Security – Specialty or AWS Certified Solutions Architect Checkpoint Certified Security Expert (CCSE) or similar certification Experience with scripting (Python, PowerShell, or Bash) Familiarity with compliance frameworks (ISO 27001, GDPR, SOC 2, PCI-DSS) At Cognizant you will experience an exciting mix of innovation by design, creativity, collaboration, and efficiency within a framework of stimulating objectives and a passion More ❯
Posted:

InfoSec and IT Manager

london (harrow), south east england, united kingdom
Reflection AI
and company builders come from DeepMind, OpenAI, Google Brain, Meta, Character.AI, Anthropic and beyond. What You'll Do Develop and maintain company-wide information security policies and frameworks (US: SOC 2, NIST, GDPR; UK: ISO 27001, Cyber Essentials, GDPR) Oversee IT operations across our three offices (London, New York, San Francisco), ensuring systems, devices, and networks remain secure … experience, including leadership in high-growth or tech-driven environments Strong knowledge of network, cloud, and endpoint security (AWS/GCP/Azure) Familiarity with key compliance frameworks (US: SOC 2, NIST; UK: ISO 27001, Cyber Essentials) Experience implementing MDM, SSO, and IAM systems Excellent communication skills and the ability to translate technical risk into practical action Certifications More ❯
Posted:

GRC Consultant - SaaS

London Area, United Kingdom
Lex Dinamica
growth. Key Responsibilities Own and manage governance, risk, and compliance initiatives for our SaaS platforms. Monitor, review, and improve internal policies, procedures, and controls in line with ISO 27001, SOC 2, GDPR, and other regulatory frameworks. Conduct risk assessments and recommend mitigation strategies for SaaS operations and customer data protection. Collaborate with product, engineering, and IT teams to … Compliance, or related field. 2+ years of experience in GRC, risk management, or compliance (preferably within SaaS or technology companies). Strong knowledge of SaaS compliance frameworks (ISO 27001, SOC 2, GDPR, NIS2, or similar). Ability to interpret regulations and translate them into practical, business-friendly processes. Excellent written and verbal communication skills (German or English; both More ❯
Posted:

GRC Consultant - SaaS

City of London, London, United Kingdom
Lex Dinamica
growth. Key Responsibilities Own and manage governance, risk, and compliance initiatives for our SaaS platforms. Monitor, review, and improve internal policies, procedures, and controls in line with ISO 27001, SOC 2, GDPR, and other regulatory frameworks. Conduct risk assessments and recommend mitigation strategies for SaaS operations and customer data protection. Collaborate with product, engineering, and IT teams to … Compliance, or related field. 2+ years of experience in GRC, risk management, or compliance (preferably within SaaS or technology companies). Strong knowledge of SaaS compliance frameworks (ISO 27001, SOC 2, GDPR, NIS2, or similar). Ability to interpret regulations and translate them into practical, business-friendly processes. Excellent written and verbal communication skills (German or English; both More ❯
Posted:

DACH Customer Success Manager

London, United Kingdom
Vanta Inc
and expansion opportunities within your book of business Become a product expert on Vanta and how our platform can be used to improve security posture through our compliance offerings (SOC 2, ISO 27001, GDPR, HIPAA, USDP and Custom Frameworks), Trust Reports, and Risk Management solution. Guide implementation, configuration, and optimization of Vanta Trust Management Platform Provide professional advice … by a vision to restore trust in internet businesses by enabling companies to improve and prove their security. From our early days automating security monitoring for compliance standards like SOC 2, HIPAA and ISO 27001 to creating the world's leading Trust Management Platform, our vision remains unchanged. Now more than ever, making security continuous-not just a More ❯
Employment Type: Permanent
Salary: GBP Annual
Posted:

Head of Information Security

City of London, London, United Kingdom
MCG Talent
provide actionable feedback to internal teams to enhance documentation and control readiness. Perform security due diligence and ongoing monitoring of Web3/blockchain vendors, including assessing control maturity, reviewing SOC reports, and identifying residual risks. Facilitate external audit activities, coordinating walkthroughs, evidence collection, and response tracking. Identify and analyze gaps in current and new processes, developing and tracking remediation … Hardware Security Modules (HSMs), and Key Management Systems (KMS). Solid understanding of cloud and network security architecture and configurations. Demonstrated experience supporting external audits and assessments, such as SOC 1, SOC 2, ISO 27001, or PCI DSS. Hands-on experience with major cloud platforms (AWS, GCP, Azure) and infrastructure-as-code practices. Proficiency in preparing client More ❯
Posted:

Head of Information Security

London Area, United Kingdom
MCG Talent
provide actionable feedback to internal teams to enhance documentation and control readiness. Perform security due diligence and ongoing monitoring of Web3/blockchain vendors, including assessing control maturity, reviewing SOC reports, and identifying residual risks. Facilitate external audit activities, coordinating walkthroughs, evidence collection, and response tracking. Identify and analyze gaps in current and new processes, developing and tracking remediation … Hardware Security Modules (HSMs), and Key Management Systems (KMS). Solid understanding of cloud and network security architecture and configurations. Demonstrated experience supporting external audits and assessments, such as SOC 1, SOC 2, ISO 27001, or PCI DSS. Hands-on experience with major cloud platforms (AWS, GCP, Azure) and infrastructure-as-code practices. Proficiency in preparing client More ❯
Posted:

CLOUD SECURITY ENGINEER / SECOPS

North London, London, United Kingdom
Hybrid/Remote Options
Secure Recruitment Ltd
that protect Fortune 500 Companies & Critical Infrastructure Providers, helping them Outrun Real-World Threats in Real-Time. Role Overview: We're looking to speak with ambitious Information Security/SOC Engineers to Build & Continuously Evolve Internal Cyber Security Capability. You will secure the Internal Environment, Ensure Compliance with Leading Security Frameworks & Support Secure IT Operations across the Global Team. … Workflows, Enhance Monitoring & Support Incident Response Experience with Security Frameworks, Promoting Best-Practice & Operating Autonomously to Own End-to-End Security Nice to Have: Experience Supporting Incident Response or SOC, (CISSP, CISM, AWS/Azure Security, ISO 27001), familiarity with DevSecOps & CI/CD Security Models, Exposure to Regulated Industries (Finance, Healthcare, etc) Responsibilities of Information Security Engineer role … Identity, Access & Endpoint Security, Administering Azure AD (RBAC, MFA, SSO), Managing Intune Device Compliance, Enforcing Least-Privilege Access & Overseeing Endpoint Hardening & Patching Support Compliance & Governance Programmes, Maintaining ISO 27001 & SOC 2 Readiness, Contributing to Audits & Evidence Collection, alongside Managing Security Policies, Standards & Documentation Automate & Enable Secure Operations, Building Scripts & Internal Tooling, Streamlining Security Workflows & Delivering Awareness & Training to More ❯
Employment Type: Permanent, Work From Home
Salary: £90,000
Posted:

Global Platform Team Lead and Senior Director

london, south east england, united kingdom
Boston Consulting Group (BCG)
Define service level objectives (SLOs) and key performance indicators (KPIs) for all security services. Compliance, Governance & Risk Management: Ensure alignment with global compliance requirements such as ISO 27001, NIST, SOC 2, GDPR, and others. Partner with governance, legal, and ISRM teams to implement enforceable policies and standards across identity, endpoint, and data domains. Operationalize policy enforcement through automated More ❯
Posted:

Global Delivery Director - Secure Data

London, United Kingdom
Boston Consulting Group
Define service level objectives (SLOs) and key performance indicators (KPIs) for all security services. Compliance, Governance & Risk Management: Ensure alignment with global compliance requirements such as ISO 27001, NIST, SOC 2, GDPR, and others. Partner with governance, legal, and ISRM teams to implement enforceable policies and standards across identity, endpoint, and data domains. Implement automated compliance controls and … to your base salary, your total compensation will include a bonus of up to 30% and a generous retirement contribution that starts at 5% and moves to 10% after 2 years. All of our plans provide best in class coverage: Zero dollar ($0) health insurance premiums for BCG employees, spouses, and children Low $10 (USD) copays for trips to More ❯
Employment Type: Permanent
Salary: GBP Annual
Posted:

Director of Engineering (Cybersecurity)

London Area, United Kingdom
RemoteStar
or partner engagements when needed. Security, Compliance & Reliability: Lead the adoption of secure coding standards , vulnerability management, and security-by-design practices. Ensure compliance with relevant frameworks (ISO 27001, SOC 2, GDPR). Drive observability, monitoring, and incident response strategies to ensure reliability and uptime. Work closely with InfoSec and Data teams to embed security at every stage More ❯
Posted:

Director of Engineering (Cybersecurity)

City of London, London, United Kingdom
RemoteStar
or partner engagements when needed. Security, Compliance & Reliability: Lead the adoption of secure coding standards , vulnerability management, and security-by-design practices. Ensure compliance with relevant frameworks (ISO 27001, SOC 2, GDPR). Drive observability, monitoring, and incident response strategies to ensure reliability and uptime. Work closely with InfoSec and Data teams to embed security at every stage More ❯
Posted:

Network Security Engineer

City of London, London, United Kingdom
AGS
asset inventories and ensure patching and configuration baselines are followed. Security Governance & Compliance Contribute to maintaining security standards and aligning with frameworks such as ISO 27001, NIST, CIS, or SOC 2. Support audits, evidence collection, and compliance reporting (e.g., GDPR, PCI-DSS). Develop and maintain documentation for policies, procedures, architecture, and runbooks. Collaboration & Knowledge Sharing Work with IT More ❯
Posted:

Network Security Engineer

London Area, United Kingdom
AGS
asset inventories and ensure patching and configuration baselines are followed. Security Governance & Compliance Contribute to maintaining security standards and aligning with frameworks such as ISO 27001, NIST, CIS, or SOC 2. Support audits, evidence collection, and compliance reporting (e.g., GDPR, PCI-DSS). Develop and maintain documentation for policies, procedures, architecture, and runbooks. Collaboration & Knowledge Sharing Work with IT More ❯
Posted:

Network Security Engineer

Feltham, Middlesex, England, United Kingdom
Ascent Sourcing Ltd
asset inventories and ensure patching and configuration baselines are followed. Security Governance & Compliance Contribute to maintaining security standards and aligning with frameworks such as ISO 27001, NIST, CIS, or SOC 2. Support audits, evidence collection, and compliance reporting (e.g., GDPR, PCI-DSS). Develop and maintain documentation for policies, procedures, architecture, and runbooks. Collaboration & Knowledge Sharing Work with IT More ❯
Employment Type: Full-Time
Salary: £45,000 - £55,000 per annum
Posted:

DevOps Engineer

London Area, United Kingdom
Finalto
. Proficiency in scripting (Bash, Python, or PowerShell). Experience with monitoring and observability tools (Prometheus, Grafana, ELK, or equivalent). Understanding of compliance/security frameworks (e.g., GDPR, SOC2, PCI DSS). Soft Skills Strong problem-solving and troubleshooting mindset. Excellent communication and collaboration skills across distributed teams. Ability to work independently in a fast-paced environment. Detail-oriented More ❯
Posted:

DevOps Engineer

City of London, London, United Kingdom
Finalto
. Proficiency in scripting (Bash, Python, or PowerShell). Experience with monitoring and observability tools (Prometheus, Grafana, ELK, or equivalent). Understanding of compliance/security frameworks (e.g., GDPR, SOC2, PCI DSS). Soft Skills Strong problem-solving and troubleshooting mindset. Excellent communication and collaboration skills across distributed teams. Ability to work independently in a fast-paced environment. Detail-oriented More ❯
Posted:

Head of Product Engineering

Uxbridge, England, United Kingdom
Pepper Advantage
Mortgage origination and servicing, Payments, core banking, or lending domain expertise. Production experience with Kubernetes, IaC (Terraform), service meshes, and GitOps (Argo CD/Flux). Navigated PCI DSS, SOC 2, ISO 27001, GDPR; partnered with Risk/Compliance and auditors and delivered audit-ready evidence. Privacy engineering (GDPR, data residency) Experience leading across multiple geographies/time More ❯
Posted:

Identity & Access Management Senior Architect

East London, London, United Kingdom
Hybrid/Remote Options
A&O Shearman
with mature or evolving capability across all areas of digital security and cyber defence. We align our efforts to the NIST framework and other recognised certifications including ISO27001 and SOC2 and strive to keep pace with the continually evolving threat landscape, in support of A&O Shearmans strategy to lead where global complexity creates opportunity. In addition, you will have More ❯
Employment Type: Permanent, Work From Home
Posted:

CISO

London, United Kingdom
Remepy
security requirements in digital health, life sciences, or FDA-regulated software environments Proven track record managing security and compliance under HIPAA, FDA, and NIST Knowledge of GDPR, ISO 27001, SOC 2 and international security standards Experience with cloud-native environments (e.g., AWS), data encryption, identity management, and secure software development practices Strong communicator who can translate security priorities More ❯
Employment Type: Permanent
Salary: GBP Annual
Posted:

Platform Support Operations Engineer

Central London, London, United Kingdom
McCabe & Barton
Azure Security Center/Microsoft Defender for Cloud, encryption using Azure Key Vault, network security with NSGs and Azure Firewall, Azure Policy for governance, and compliance frameworks (ISO 27001, SOC 2, GDPR). Experience conducting security assessments using Microsoft Secure Score, implementing security hardening, and responding to security incidents. Backup & Disaster Recovery - Experience implementing and managing Backup for More ❯
Employment Type: Permanent
Posted:

Senior Cyber GRC Consultant (Relocate to Tax Fee Abu Dhabi)

London Area, United Kingdom
Discovered MENA
simplifying regulatory challenges, designing pragmatic governance models, and influencing security strategy at scale this could be your next move. Key Responsibilities Translate international standards (NIST CSF, ISO 27001, GDPR, SOC 2, PCI DSS, CSA CCM) into actionable policies and controls. Design and implement unified compliance frameworks across cloud, hybrid, and enterprise systems. Lead internal and external audits, certification More ❯
Posted:

Senior Cyber GRC Consultant (Relocate to Tax Fee Abu Dhabi)

City of London, London, United Kingdom
Discovered MENA
simplifying regulatory challenges, designing pragmatic governance models, and influencing security strategy at scale this could be your next move. Key Responsibilities Translate international standards (NIST CSF, ISO 27001, GDPR, SOC 2, PCI DSS, CSA CCM) into actionable policies and controls. Design and implement unified compliance frameworks across cloud, hybrid, and enterprise systems. Lead internal and external audits, certification More ❯
Posted:

DevSecOps Specialist

London, South East, England, United Kingdom
Robert Walters
testing, code reviews, and vulnerability remediation Drive secure DevOps culture through training, playbooks, and developer champions Strengthen cloud & container security (AWS, Azure, GCP, Kubernetes, Docker) What you'll bring: 2-4 years' experience in AppSec/DevSecOps Hands-on with tools like Checkmarx, Veracode, SonarQube, OWASP ZAP Strong coding skills (Java, Python, JavaScript, Go, .NET) Familiar with CI/… CD (Jenkins, GitHub Actions, Azure DevOps) and IaC (Terraform) Knowledge of OWASP Top 10, API security, and compliance (ISO 27001, SOC 2) Eligibility for SC clearance is mandatory (UK nationals only) Robert Walters Operations Limited is an employment business and employment agency and welcomes applications from all candidates More ❯
Employment Type: Full-Time
Salary: £40,000 - £55,000 per annum
Posted:

Azure Cloud DevOps Engineer

London Area, United Kingdom
McCabe & Barton
Analytics, Application Insights, and dashboards (KQL and Datadog experience desirable). Ensure compliance and security through Microsoft Defender for Cloud, Azure Policy, Key Vault, and accepted frameworks (ISO 27001, SOC 2, GDPR). Conduct backup and disaster recovery operations using Azure Backup, Site Recovery, and geo-redundant storage for business continuity. Collaborate effectively across DevOps, infrastructure, security, and More ❯
Posted:
SOC 2
London
10th Percentile
£53,750
25th Percentile
£60,000
Median
£80,000
75th Percentile
£90,000
90th Percentile
£107,500