won't need experience in all of these areas, their current accreditations are as follows: ISO 9001, 27001, 27701, 27017, 22301, 14001, (phone number removed), 42001, 13485, PCI-DSS, SOC2 Type 2, CE+. The company work on a hybrid model typically involving 2-3 days a week in the office. Examples of responsibilities: Coordination of More ❯
identify and mitigate risks. Work closely with the security team to integrate best practices into new and existing features. Ensure compliance with security standards and regulations (e.g., ISO 27001, SOC2). Implement monitoring solutions to detect and respond to real-time security incidents. Troubleshoot infrastructure and security issues, performing root cause analysis in production. Mentor junior engineers More ❯
Reading, Berkshire, United Kingdom Hybrid / WFH Options
Deloitte LLP
evaluation of risk, as well as using GRC tools and guidance developed for Risk mitigation. Practical knowledge of information security standards and risk assessment frameworks such as ISO 27001, SOC2, NIST 800-32 Strong knowledge of cyber controls, policies, and procedures. Experience of delivering metrics for senior level audiences. Demonstrate analytical and problem-solving skills. Ability to More ❯
large, complex technology programmes involving multiple concurrent projects with significant experience of delivering through offshore/nearshore strategic vendors. Knowledge of security frameworks & standards (ISO 27001, NIST, CIS, GDPR, SOC2) Be experienced in 'hands on' technology software delivery from initiation to implementation. Have knowledge of programme and project management methodology and managing full lifecycle of programmes from More ❯
and thought leadership within the Practice by defining standards, sharing knowledge, and mentoring peers Influence customer outcomes through expert knowledge of DevSecOps tools and compliance frameworks like NIST, CIS, SOC2, and PCI DSS You'll travel to client sites across the UK, working directly with business and technical stakeholders to drive real business value What you'll More ❯
Work closely with internal and external R&D teams to integrate security best practices into new and existing features. Ensure compliance with security standards and regulations (e.g., ISO 27001, SOC2). Implement monitoring solutions to detect and respond to security incidents in real-time. Perform root cause analysis and troubleshoot infrastructure and security-related issues in production. Mentor junior engineers More ❯
pipelines. Working experience of the above concepts in the context of at least one major public cloud provider (AWS, GCP, or Azure). Understanding of global security standards (like SOC2 or ISO 27001) and regulatory requirements and experience in maintaining compliance with these. A desire to teach others and share knowledge. We want you to coach other team members on … Infrastructure penetration testing (OWASP top 10, OWASP ASVS). Understanding of security vulnerabilities and remediation options in codebases & containers. Working knowledge of methods for authentication and authorization (ODIC, OAuth 2, FIDO 2, etc) Don't worry if you don't meet all the criteria - your unique skills and experiences are valued, and we encourage you to apply! What More ❯
Milton Keynes, Buckinghamshire, United Kingdom Hybrid / WFH Options
Allica Bank Limited
vendor relationships, ensuring long-term value creation. Champion vendor compliance through regular audits and assessments, ensuring adherence to internal policies, external regulations, and industry standards. Review and evaluate the SOC 1 Type 2 reports to ensure robust change control processes are in place, verifying vendor compliance with contractual and operational requirements. Stay at the forefront of industry developments … Gatekeeper preferred), contract management (including systems), and performance monitoring software. Certifications in Vendor Management (e.g., CPO, CPSM and CIPS) are a plus. Knowledge and experience in maintaining and reviewing SOC 1 Type 2 Reports, along with other certifications and disaster recovery (DR) outputs. Knowledge of fintech regulatory environments and compliance frameworks (e.g., PSD2, GDPR, PCI-DSS) preferred. Working More ❯
latest AI/ML research and industry developments. Additionally, you will have a solid understanding of non-functional requirements and governance models for cloud-based AI systems, such as SOC2and ISO 42001. Your ability to efficiently handle the demands of a dynamic, fast-paced research and development environment will be key to your success. In return, you will be … Strong experience with AWS services, particularly ECS, EC2, Lambda, and AWS Identity and Access Management (IAM). Governance Understanding: Understanding of governance for cloud-based and AI solutions (e.g., SOC2, ISO 42001, EU AI Act). ML Frameworks: Experience with ML frameworks for data preparation and training at a large scale. Learn More About Autodesk Welcome to Autodesk! Amazing things More ❯
Reading, Berkshire, United Kingdom Hybrid / WFH Options
Deloitte LLP
Gatwick, Leeds, London, Manchester, Reading Business Line Enabling Functions Date published 29-May-2025 18437 Connect to your Industry Deloitte Technology works at the forefront of technology development and processes to support and protect Deloitte around the world. In this More ❯
on change impacts, project risks, and dependencies to senior stakeholders. Facilitate cross-functional meetings/communications between internal teams and customers as applicable. Ensure regulatory and industry compliance (e.g., SOC, ISO) when implementing changes and releases Key Skills & Experience Proven experience in ITIL Change Management within an infrastructure or IT environment, ideally in the automotive or software industry. Strong … DevOps environments. Strong stakeholder management, able to work across multiple levels across multiple functions. Experience with Service Management tooling and/or project management tools. Knowledge of SOC1/2and ISO is an advantage. Qualifications ITIL Foundation (v3 or v4) required; ITIL Intermediate/Expert preferred. Project Management certification (PMP, PRINCE2, or Agile/SAFe) is beneficial. Further More ❯