Reading, Oxfordshire, United Kingdom Hybrid / WFH Options
Deloitte LLP
lead every decision wemake and action we take, guiding us to deliver impact how and where it mattersmost . Connect to your opportunity The SOC2 Manager, Audit & Certification will be perform the following: Lead SOC2 audits and related projects for Deloitte Technology Liaise with … SOC2 external auditors to scope and facilitate SOC2 audits gathering and presenting evidence as required to support DT's SOC2 audits. Understand technology controls, testing of controls, and supporting evidence to meet SOC2 Trust Service Criteria. Understand technology … the confidentiality, integrity, and availability of the information technology environment for on premises as well as cloud hosted IT applications and infrastructure meet the SOC2 Trust Service Criteria. Manage audit findings; identify and track remediation activities to meet target dates for closure, and track/report progress. More ❯
Guildford, Surrey, United Kingdom Hybrid / WFH Options
Deloitte LLP
lead every decision wemake and action we take, guiding us to deliver impact how and where it mattersmost . Connect to your opportunity The SOC2 Manager, Audit & Certification will be perform the following: Lead SOC2 audits and related projects for Deloitte Technology Liaise with … SOC2 external auditors to scope and facilitate SOC2 audits gathering and presenting evidence as required to support DT's SOC2 audits. Understand technology controls, testing of controls, and supporting evidence to meet SOC2 Trust Service Criteria. Understand technology … the confidentiality, integrity, and availability of the information technology environment for on premises as well as cloud hosted IT applications and infrastructure meet the SOC2 Trust Service Criteria. Manage audit findings; identify and track remediation activities to meet target dates for closure, and track/report progress. More ❯
london, south east england, United Kingdom Hybrid / WFH Options
Ownera
product roadmap priorities based on client feedback. Respond to technical sections of RFPs, RFIs, and security questionnaires, ensuring alignment with regulatory standards (e.g., ISO27001, SOC2, GDPR). Act as a trusted advisor to clients and internal teams, bridging the gap between commercial goals and technical feasibility. Stay … managers, or exchanges. Proven experience supporting long sales cycles and navigating enterprise procurement processes. Familiarity with industry standards and frameworks such as ISO 27001, SOC2, MiFID II, GDPR, or cloud governance in regulated industries. Skills & Competencies: Excellent communication and presentation skills, with the ability to simplify complex More ❯
london, south east england, United Kingdom Hybrid / WFH Options
Tenth Revolution Group
on security performance metrics to senior leadership on a monthly basis. Ensure compliance with key frameworks including ISO 27001:2022, ISO 27701:2019, andSOC2 across multiple international offices. Lead internal audits and manage responses to external security assessments. Support third-party risk management, including vendor due … organisational threat awareness. Champion secure behaviours through awareness training and internal communication. Essential: Hands-on experience with ISO 27001, ISO 27701 and/or SOC2 standards. Strong grasp of global data protection laws, particularly GDPR and CCPA. Able to work independently and coordinate with a wide range More ❯
london (city of london), south east england, United Kingdom Hybrid / WFH Options
Tenth Revolution Group
on security performance metrics to senior leadership on a monthly basis. Ensure compliance with key frameworks including ISO 27001:2022, ISO 27701:2019, andSOC2 across multiple international offices. Lead internal audits and manage responses to external security assessments. Support third-party risk management, including vendor due … organisational threat awareness. Champion secure behaviours through awareness training and internal communication. Essential: Hands-on experience with ISO 27001, ISO 27701 and/or SOC2 standards. Strong grasp of global data protection laws, particularly GDPR and CCPA. Able to work independently and coordinate with a wide range More ❯
london (west end), south east england, United Kingdom Hybrid / WFH Options
Tenth Revolution Group
on security performance metrics to senior leadership on a monthly basis. Ensure compliance with key frameworks including ISO 27001:2022, ISO 27701:2019, andSOC2 across multiple international offices. Lead internal audits and manage responses to external security assessments. Support third-party risk management, including vendor due … organisational threat awareness. Champion secure behaviours through awareness training and internal communication. Essential: Hands-on experience with ISO 27001, ISO 27701 and/or SOC2 standards. Strong grasp of global data protection laws, particularly GDPR and CCPA. Able to work independently and coordinate with a wide range More ❯
expand globally, there’s significant scope to evolve this role into a leadership or specialist path. Real Autonomy : Drive the roadmap for frameworks like SOC2and FedRAMP. Lead audits. Own the processes — not just maintain them. High-Caliber Team : You’ll be joining a mission-led organisation … deep expertise in cybercrime disruption and a reputation for punching far above its weight. Core Responsibilities: Architect, manage, and continuously evolve compliance frameworks (e.g., SOC2, Cyber Essentials, FedRAMP). Lead the end-to-end audit lifecycle — from evidence gathering to external walkthroughs. Work closely with legal to More ❯
analysis, and post‑mortems. Security & Compliance Embed DevSecOps practices—secrets management, container image hardening, zero‑trust networking, vulnerability management, and compliance automation (ISO 27001, SOC2). Collaborate with ML/AI Teams Package and deploy large‑language‑model (LLM) training jobs on distributed GPU clusters (Slurm, Ray More ❯
CD: Knowledge of Kubernetes, Docker, Terraform, Ansible , and other infrastructure automation tools. Security & Compliance: Understanding of cloud security, identity management, and regulatory compliance (GDPR, SOC2, ISO 27001, etc.) . Programming & Frameworks: Proficiency in languages like React, Python, Go, or Node.js , with a strong understanding of modern frameworks . Experience Requirements More ❯
Crawley, Sussex, United Kingdom Hybrid / WFH Options
Spectrum IT Recruitment
Desirable but not essential): Exposure to Microsoft Azure. Kubernetes and container orchestration. Knowledge of cloud security best practices and regulatory compliance (e.g., ISO 27001, SOC2). What You'll Get: Salary up to 110,000 plus bonus and a comprehensive benefits package. Hybrid working model (1 day More ❯
Crawley, West Sussex, United Kingdom Hybrid / WFH Options
Spectrum IT Recruitment
Desirable but not essential): Exposure to Microsoft Azure. Kubernetes and container orchestration. Knowledge of cloud security best practices and regulatory compliance (e.g., ISO 27001, SOC2). What You'll Get: Salary up to £110,000 plus bonus and a comprehensive benefits package. Hybrid working model (1 day More ❯
Employment Type: Permanent
Salary: £100000 - £110000/annum Life Insurance/Health Care
AWS, or GCP), containerization (Docker/Kubernetes), and hybrid cloud models. Security & Compliance Awareness: Understanding of financial services security frameworks, data privacy regulations (GDPR, SOC2, etc.), and risk management principles. Business & Technology Alignment: Ability to translate business needs into technology solutions, balancing innovation with operational stability. Stakeholder More ❯
Reading, Oxfordshire, United Kingdom Hybrid / WFH Options
Computer Futures / SThree Group
Specialty. Multi-Cloud Experience: Familiarity with Azure and GCP. Serverless Architectures: Experience with AWS Lambda and serverless design. Compliance Standards: Expertise in GDPR, HIPAA, SOC2, ISO 27001. Advanced Security Practices: Knowledge of zero-trust architecture and security incident response. Why Apply? Influence: Leadership role with the power to shape key More ❯
Specialty. Multi-Cloud Experience: Familiarity with Azure and GCP. Serverless Architectures: Experience with AWS Lambda and serverless design. Compliance Standards: Expertise in GDPR, HIPAA, SOC2, ISO 27001. Advanced Security Practices: Knowledge of zero-trust architecture and security incident response. Why Apply? Influence: Leadership role with the power to shape key More ❯
Loughton, Essex, South East, United Kingdom Hybrid / WFH Options
Profile 29
Microsoft Defender for Cloud, and Microsoft Sentinel for advanced security monitoring. Threat Detection & SOAR Automation: Oversee Security Orchestration, Automation, and Response (SOAR) solutions including SOC Prime. Network & Application Security: Manage Web Application Firewalls (WAF) and Intrusion Prevention Systems (IPS). Vulnerability & Penetration Testing: Review Penetration Testing, vulnerability assessments, and … Security Engineer Associate, CISSP, OSCP (Offensive Security Certified Professional), CCSP, or equivalent. Experience with container security (Docker, Kubernetes). Knowledge of NIST, ISO 27001, SOC2 compliance frameworks. Familiarity with Zero Trust security principles. Other Stuff Please only apply if you are able to work from their Debden More ❯
Employment Type: Contract, Work From Home
Rate: From £500 to £700 per day (direct contract with the client)
Loughton, Essex, South East, United Kingdom Hybrid / WFH Options
Profile 29
Microsoft Defender for Cloud, and Microsoft Sentinel for advanced security monitoring. Threat Detection & SOAR Automation: Oversee Security Orchestration, Automation, and Response (SOAR) solutions including SOC Prime. Network & Application Security: Manage Web Application Firewalls (WAF) and Intrusion Prevention Systems (IPS). Vulnerability & Penetration Testing: Review Penetration Testing, vulnerability assessments, and … Security Engineer Associate, CISSP, OSCP (Offensive Security Certified Professional), CCSP, or equivalent. Experience with container security (Docker, Kubernetes). Knowledge of NIST, ISO 27001, SOC2 compliance frameworks. Familiarity with Zero Trust security principles. Other Stuff Please only apply if you are able to work from their Debden More ❯
related to IAM and access control solutions. Support audit, compliance, and governance initiatives, ensuring adherence to standards such as ISO 27001, NIST, CIS, andSOC 2. Requirements Requirements Good hands-on experience with IAM tools such as Entra ID (Azure AD), Okta, AWS IAM, GCP IAM, CyberArk, and SailPoint. More ❯
london, south east england, United Kingdom Hybrid / WFH Options
GL Global
as EC2, S3, Lambda, RDS, Aurora, EKS, and more. Develop secure cloud infrastructure aligned with regulatory and compliance requirements (e.g., PCI DSS, ISO 27001, SOC2, GDPR). Enforce best practices for identity and access management, data protection, and incident response. Collaborate with business units, software developers, DevOps More ❯
Guildford, Surrey, United Kingdom Hybrid / WFH Options
Sycurio
The Information Security Director develops, shapes, and maintains Sycurio's information security capability, driving the attainment and maintenance of the ISO27001, PCI-DSS, andSOC2 compliance. They are the subject matter expert on all things regarding security and compliance, owning the information risk management processes. They are the thought leader More ❯
london, south east england, United Kingdom Hybrid / WFH Options
Merlin Entertainments
. Familiarity with systems like Oracle Simphony and Opera, and open API architectures. Understanding of cloud governance, security frameworks, and compliance (GDPR, ISO 27001, SOC2). Proficiency in DevOps and CI/CD practices. Excellent leadership, communication, and stakeholder management skills. Interview Process: Recruiter Call Hiring Manager More ❯
london, south east england, United Kingdom Hybrid / WFH Options
Noir
led business before. Bonus points if you’ve helped shape DevOps roadmaps, mentored others, or worked with cost optimisation, security, or compliance frameworks (ISO, SOC2, etc.). This is more than just another DevOps role — it’s a chance to join a company at the perfect stage: profitable, scaling, tech More ❯
and Compliance: Establish and enforce security policies, procedures, and best practices. Ensure continued compliance with industry standards, regulations, and certifications (e.g., ISO 27001, GDPR, SOC2). Incident Response and Management: Maintain and where needed develop incident response plans. Lead investigations and response efforts for security incidents and … Science, Information Technology, or a related field. Azure knowledge desirable. 5+ years of experience in information security or a related role, with at least 2 years in a managerial capacity. Strong knowledge of cybersecurity frameworks, standards, and best practices. Proficiency with security technologies and tools (e.g., SIEM, vulnerability scanners More ❯
reading, south east england, United Kingdom Hybrid / WFH Options
ServQual - Security
growing UK team. This internship offers hands-on exposure to the world of cybersecurity consulting, risk assessments, compliance frameworks (such as ISO 27001, NIST, SOC2), and security operations. Ideal for a recent graduate or student from a technology or cybersecurity background, this role provides the perfect launchpad into the cybersecurity More ❯
london, south east england, United Kingdom Hybrid / WFH Options
Cure Talent
availability using load balancing, failover strategies, and automated scaling. Implement and maintain security best practices and compliance with industry standards (e.g., GDPR, ISO 27001, SOC2). Collaborate with developers, QA, and product teams to streamline deployments and provide mentorship on DevOps best practices. We’re seeking a More ❯