26 to 50 of 186 SOC 2 Jobs in London

Information Security Analyst ( ISO 27001 and ISO 27018 )

Hiring Organisation
Alfa Financial Software
Location
London, United Kingdom
Salary
£ 80 K
and procedures sharp and our compliance with ISO 27001 and ISO 27018 on point. You'll get involved in SSAE 18/ISAE 3402 SOC 1 Type 2 and SSAE 18 SOC 2 Type 2 assurance audits, spot opportunities to improve our security controls and … organisational skills. You write clear documentation and reports, and you can translate complex requirements for stakeholders at every level. You'll have at least 2 years' experience in a related role. Experience in a regulated industry, familiarity with other information security frameworks and assurance reports, and exposure to Jira ...

Infrastructure/DevOps Engineer

Hiring Organisation
Jobleads-UK
Location
Greater London, England, United Kingdom
ready and high-performing. In this senior role, you’ll lead DevOps, observability, and compliance. Tasks include architecting cloud infrastructure for growth, prepping for SOC 2/ISO 27001 audits, and setting up CI/CD pipelines for all services. You’ll also manage logging, metrics, tracing, alerts … Security best practices knowledge. Networking concepts (VPCs, DNS, load balancers, VPNs, firewalls). Database management (PostgreSQL, MySQL, NoSQL) and storage. Python or Bash skills. SOC 2, ISO 27001, or GDPR exposure. Report directly to the founders with a chance to shape their future. Got what it takes? Apply ...

InfoSec Engineer

Hiring Organisation
Jobleads-UK
Location
Greater London, England, United Kingdom
work closely with Engineering, Product, Legal, and Leadership to embed security into everything we build, while evolving our compliance posture across ISO-27001 and SOC-2 (including expansion into additional controls). What you’ll do: Own and execute Valarian’s end-to-end information security strategy Lead and … mature our security posture across compliance frameworks, including ISO-27001, SOC 2, and expansion into additional control frameworks Design and implement scalable security architecture across cloud, infrastructure, and applications Partner with Engineering to embed secure‐by‐design principles into development workflows Build, manage, and continuously improve security policies ...

Senior Manager – Application Security

Hiring Organisation
Miro
Location
London, United Kingdom
Salary
£ 100 K
metrics for secure development adoption, vulnerability resolution, and developer engagement.Collaborate with Privacy, Legal, and Compliance teams to ensure alignment with regulatory requirements (ISO 27001, SOC 2, GDPR, and emerging AI regulations).Foster a strong team culture based on collaboration, learning, and continuous improvement.What you’ll need10+ years … scaling developer engagement.Experience leading offensive security programs (penetration testing, red teaming, bug bounty).Practical understanding of governance and assurance frameworks such as ISO 27001, SOC 2, and OWASP SAMM.Familiarity with AI/LLM tooling (e.g., Cursor, GitHub Copilot, custom LLM integrations) and the associated security and governance considerations.Experience ...

Senior Information Security Specialist

Hiring Organisation
Jobleads-UK
Location
Greater London, England, United Kingdom
DoorDash’s risk register, compliance reporting, dashboards, metrics and executive-level risk communications. Support control mapping and harmonisation across frameworks such as ISO 27001, SOC 2, NIST CSF, PCI DSS, GDPR, UK GDPR, NIS2, DORA, and emerging AI governance requirements. Promote a risk-based, pragmatic compliance culture that … control self‐assessments and remediation planning with cross‐functional stakeholders. You have strong working knowledge of security and privacy frameworks such as ISO 27001, SOC 2, GDPR or CCPA, and you can quickly assess applicability of new frameworks or regulatory requirements. You understand how security and privacy controls ...

HIPAA Security Engineer

Hiring Organisation
Flo Health
Location
London, United Kingdom
Salary
£ 80 K
Security Architecture team, you will lead the design and operation of our US Healthcare security controls. You will own the roadmap for HIPAA compliance and SOC2 Type II certification, partnering with Engineering and Legal to build a secure, compliant platform for millions of users.Key ResponsibilitiesCompliance Leadership: Lead annual SOC2 and HIPAA certifications, managing interfaces with external auditors and professional services.Policy & Risk: Define and maintain security policies; embed risk assessment activities within engineering processes and vendor management.Operational Excellence: Partner with control owners to automate evidence gathering and ensure controls reduce friction rather than creating it.Stakeholder Management: Serve ...

Applied AI Security Architect

Hiring Organisation
Humanloop
Location
London, United Kingdom
Salary
> £ 150 K
architects, compliance teams, and DPOs to understand their security requirements and design solutions that meet European regulatory standards (GDPR, EU AI Act, DORA, NIS2, SOC 2, PCI-DSS, and national regulator expectations).Lead technical deep-dives on network architecture, EU data residency, data retention and Zero Data Retention … familiarity with the EU AI Act as it applies to foundation models.Experience navigating compliance frameworks relevant to European financial services and insurance (DORA, NIS2, SOC 2, PCI-DSS, and national regulators' guidance on AI/ML such as FCA/PRA, BaFin, ACPR, FINMA).A track record ...

GRC Consultant

Hiring Organisation
Jobleads-UK
Location
Greater London, England, United Kingdom
compliance framework across the business Leading PCI DSS compliance initiatives Developing and improving GDPR processes and documentation Supporting security standards such as ISO 27001, SOC 2 and/or Cyber Essentials Creating policies, procedures and governance documentation Building and maintaining risk registers Preparing the business for future audits … roadmap to get everything where it needs to be. Ideally you'll have experience with: Governance, Risk & Compliance (GRC) PCI DSS GDPR ISO 27001, SOC 2 and/or Cyber Essentials Security governance and audit preparation Policy creation and documentation Risk management frameworks Working independently with multiple stakeholders ...

Head of Security

Hiring Organisation
Jobleads-UK
Location
Greater London, England, United Kingdom
security engineering, thoughtful governance and AI-first operations to ensure our customers, employees and partners can confidently rely on Geordie as we scale. With SOC 2 Type II and ISO 27001 already in place, your mission is to build an effective AI-native security programme that keeps certifications … hands-on individual contributor while building security functions from first principles. Experience maintaining security programs aligned to frameworks such as ISO 27001 and SOC 2. Strong understanding of modern software development, cloud infrastructure and secure engineering practices. Experience partnering closely with engineering organisations to build secure-by-design systems. ...

Senior Technical Programme Manager

Hiring Organisation
Jobleads-UK
Location
Greater London, England, United Kingdom
platforms or ways of working across multiple teams. Experience working in regulated environments or with strict compliance requirements (e.g., GDPR, PCI‐DSS, SOC 2, DMA, and EU AI Act). Demonstrated ability to establish programme governance and operating models from scratch in ambiguous or fast‐moving environments. Experience … Communication Leadership Skills Decision‐Making Influencing Stakeholders Navigating Complexity Certifications & Qualifications PMP Agile Project Management Certification AWS Cloud Practitioner Industry Keywords GDPR PCI‐DSS SOC 2 DMA EU AI Act Tools & Technologies Jira Confluence Smartsheet Cloud‐Native Designs Microservices #J-18808-Ljbffr ...

Senior Security & Compliance Engineer (ISO 27001 / SOC 2)

Hiring Organisation
Jobleads-UK
Location
Greater London, England, United Kingdom
Volta is seeking a Senior Manager, Cyber Security Engineering to lead the ISO 27001 and SOC 2 Type II program across a fast-growing, security‐minded infrastructure platform. You will own controls, evidence, and ISMS documentation while collaborating with platform engineers and external auditors. You’ll drive audit ...

Senior Manager, ITGC SOX & Internal Controls

Hiring Organisation
Jobleads-UK
Location
Greater London, England, United Kingdom
controls, support remediation, and build organisational capability. You will also help drive alignment between ITGC/SOX requirements and Volta's broader ISO and SOC 2 compliance efforts. What You Will Be Doing Develop and maintain the scope of IT applications covered under SOX, and the ITGC workstream … controls and remediation efforts Deliver training and guidance to process owners and Heads of Department on key SOX requirements Support implementation of ISO and SOC 2 compliance requirements in collaboration with IT teams What You Bring 6-8 years' experience working on and leading SOX ITGC programmes Experience ...

IT Auditor & Controls Analyst

Hiring Organisation
DGH Recruitment
Location
City of London, London, United Kingdom
Employment Type
Permanent
Salary
£40,000
Auditor & Controls Analyst Key Experience: IT Audit, Technology Risk, ITGC, IT Application Controls, ISA 315, SOC 1, SOC 2. Required Skills/Experience: - Deliver testing over ITGCs, IT application controls, interface controls, automated controls and IPE with limited supervision. - Support ISA 315-aligned IT understanding and risk assessment … and risks arising from IT. * Prepare clear, review-ready workpapers, testing templates, issue summaries and RACMs. * Support financial statement audit-related technology controls assurance, SOC 1, SOC 2 and regulatory assurance engagements as required. Required Skills/Experience: - Experience in IT audit, technology risk, controls assurance ...

Senior Endpoint & Security Engineer, London office

Hiring Organisation
Jobleads-UK
Location
Greater London, England, United Kingdom
handle device provisioning, AV, asset management, and general on‐site support. If you like the idea of setting the endpoint security direction for a 2,000-person global company while also being the person a colleague can walk up to when their laptop won't behave, this role … laptop backup coverage, policy, and periodic recovery testing. Partner with 8x8's Security team on EDR/XDR endpoint tuning and incident triage Produce SOC 2 and ISO 27001 evidence for endpoint controls during audit cycles London Site Support Provide walk‐up and desk‐side support for London ...

Senior Endpoint & Security Engineer, London office

Hiring Organisation
8x8
Location
London, United Kingdom
Salary
£ 80 K
office. You handledevice provisioning, AV, asset management, and general on-site support.If you like the idea of setting the endpoint security direction for a 2,000-person global company while also being the person a colleague can walk up to when their laptop won't behave, this role … laptop backup coverage, policy, and periodic recovery testing.• Partner with 8x8's Security team on EDR/XDR endpoint tuning and incident triage• Produce SOC 2 and ISO 27001 evidence for endpoint controls during audit cyclesLondon Site Support• Provide walk-up and desk-side support for London office ...

AI Security Engineer

Hiring Organisation
Jobleads-UK
Location
Greater London, England, United Kingdom
Build and implement controls, not writing recommendations for others to action. Own AWS security posture including account structure, IAM, RBAC, logging, and monitoring. Manage SOC 2 Type II controls and evidence for the Greenfield Product on AWS. Handle application-level hardening including authentication, API rate limiting, web security … and implementing controls, not just advising Strong AWS security knowledge: IAM, account structure, Well-Architected Framework, CloudTrail, GuardDuty, Config, Security Hub Driven a real SOC 2 Type II engagement: controls, evidence collection, and audit preparation, not just policy documentation Application security experience: auth, RBAC, common web vulnerabilities, ability ...

Security Engineer

Hiring Organisation
Jobleads-UK
Location
Greater London, England, United Kingdom
among others. In addition, you will own and continuously improve Intigriti’s threat detection capabilities. This includes running day-to-day Security Operations Centre (SOC) activities, expanding log coverage, and building high-quality detections in our SIEM. You will use frameworks such as MITRE ATT&CK and MITRE D3FEND … availability of company data. Collaborate with the IT System Administrator to manage and enhance the overall network and system security. Incident Response, Threat Detection & SOC Operations Develop, maintain, and run incident response plans to address security incidents promptly and effectively. Run day-to-day SOC operations, including monitoring ...

Product Security Specialist for Medical Devices (Cyber Security)

Hiring Organisation
PA Consulting
Location
London, United Kingdom
Salary
£ 80 K
align with what you want to do. Hybrid working - our approach is to be in the office or on client site a minimum of 2 days per week. Work on a broad variety of projects and tech stacks for clients across seven sectors - no project is ever the same … residual risk after applying compensating security controls Experience implementing and demonstrating compliance to security frameworks such as NIST, IEC, HITRUST, HIPAA, GDPR, ISO 27001, SOC 2 Type 2 and familiarity working with Quality Management Systems Experience working with teams in a structured software development lifecycle process Excellent ...

Incident Management

Hiring Organisation
Bounteous
Location
London, United Kingdom
Salary
£ 70 K
LondonOperations – Operations/Contract/RemoteIncident Manager/Commander with SOC 1 or SOC 2 Audit experienceJob Description – Incident CommanderUK - RemoteDepartment: Service Management/Technology Operations.About the RoleWe are seeking a highly skilled Incident Commander to join our Fintech operations team. This role is critical in ensuring … processes, policies, runbooks, standard operating procedures (SOPs), and control frameworks (e.g., Risk Control Matrices).• Actively participate in internal and external audit cycles, including SOC Type 1 & Type 2 audits and regulatory examinations (e.g., CFTC, where applicable).• Join audit calls and walkthroughs with auditors, providing evidence, clarifications ...

Security Engineer - Security Operations

Hiring Organisation
Perk
Location
London, United Kingdom
Salary
£ 80 K
evolving security best practices.Secure SaaS applications and infrastructure by implementing security best practices, access controls, and continuous monitoring.Ensure compliance with security frameworks (ISO 27001, SOC 2, PCI-DSS) by developing governance, implementing necessary controls, and securing business processes.Collaborate with both non-engineering teams and IT to drive improvements … Technology, or a related field.You’re an accomplished Security Operations Engineer with a track record of threat detection engineering within a security operations center (SOC) or similar environment.You bring hands-on experience with SIEM solutions, EDR, intrusion detection/prevention systems, and other security tools.You're proficient in scripting ...

Business Security Director

Hiring Organisation
WPP
Location
London, United Kingdom
Salary
£ 80 K
innovation and business objectives.Nice to HaveExperience securing AI-enabled products, platforms or digital services.Familiarity with recognised security frameworks such as ISO 27001, ISO 42001, SOC2, NIST AI RMF or OWASP AI Top 10.Experience working with cloud environments including Azure, AWS or Google Cloud.Security certifications such as CISSP, CISM, CCSP ...

Professional Services Consultant - AI Security

Hiring Organisation
Cato Networks
Location
London, United Kingdom
Salary
£ 70 K
observability and monitoring stacks (e.g., CloudWatch, Prometheus, Grafana, Datadog)Knowledge of data sovereignty, residency requirements and compliance frameworks relevant to AI workloads (e.g., FedRAMP, SOC 2, ISO 27001, NIST 800-53, HIPPA, PCI, HITRUST, GDPR)Familiarity with data protection regulations and AI Security frameworks (e.g., GDPR, NIST ...

Senior Cloud Security Engineer

Hiring Organisation
Checkout.com
Location
London, United Kingdom
Salary
£ 80 K
alert triage.Map detection coverage against MITRE ATT&CK tactics and techniques. Identify and close visibility gaps across the cloud estate.Maintain alignment to PCI DSS, SOC2, ISO27001 NIST, and CIS frameworks. Produce documentation and evidence to support audit and assurance activities.AI SecurityDesign and implement guardrails for AI/LLM systems, covering … and frameworks: OWASP LLM Top 10, NIST AI RMF.Scripting proficiency in Python, PowerShell, or Bash for security automation.Strong grasp of PCI DSS, NIST CSF, SOC 2, ISO27001, CIS Benchmarks, and MITRE ATT&CK for Cloud.Nice to haveAZ-500, AWS Certified Security – Specialty, or equivalent cloud security certification.Experience integrating ...

Cloud Platform Security Engineer Software engineering London

Hiring Organisation
Jobleads-UK
Location
Greater London, England, United Kingdom
detection coverage against MITRE ATT&CK tactics and techniques. Identify and close visibility gaps across the cloud estate. Maintain alignment to PCI DSS, SOC2, ISO27001 NIST, and CIS frameworks. Produce documentation and evidence to support audit and assurance activities. AI Security Design and implement guardrails for AI/LLM systems … OWASP LLM Top 10, NIST AI RMF. Scripting proficiency in Python, PowerShell, or Bash for security automation. Strong grasp of PCI DSS, NIST CSF, SOC 2, ISO27001, CIS Benchmarks, and MITRE ATT&CK for Cloud. Nice to have AZ-500, AWS Certified Security – Specialty, or equivalent cloud security ...

Information Security Director

Hiring Organisation
Jobleads-UK
Location
City of Westminster, England, United Kingdom
against cyber threats. We operate in a highly secure global SaaS organization that holds multiple certifications such as PCI‐DSS, ISO/IEC 27001, SOC, HIPAA, IRAP and works with a large, federated customer base. Responsibilities Develop and lead a team of Security Analysts and Engineers, providing management, mentorship … latest security threats, vulnerabilities and mitigation techniques. Advantageous Skills and Experience Experience working on projects ensuring compliance with PCI DSS, ISO/IEC 27001, SOC, HIPAA, IRAP controls. Knowledge of security compliance standards relevant to the SaaS industry such as PCI, GDPR, ISO 27001, SOC 2, NIST. ...