Reading, Oxfordshire, United Kingdom Hybrid / WFH Options
Deloitte LLP
lead every decision wemake and action we take, guiding us to deliver impact how and where it mattersmost . Connect to your opportunity The SOC2 Manager, Audit & Certification will be perform the following: Lead SOC2 audits and related projects for Deloitte Technology Liaise with … SOC2 external auditors to scope and facilitate SOC2 audits gathering and presenting evidence as required to support DT's SOC2 audits. Understand technology controls, testing of controls, and supporting evidence to meet SOC2 Trust Service Criteria. Understand technology … the confidentiality, integrity, and availability of the information technology environment for on premises as well as cloud hosted IT applications and infrastructure meet the SOC2 Trust Service Criteria. Manage audit findings; identify and track remediation activities to meet target dates for closure, and track/report progress. More ❯
Manchester, Lancashire, United Kingdom Hybrid / WFH Options
Deloitte LLP
lead every decision wemake and action we take, guiding us to deliver impact how and where it mattersmost . Connect to your opportunity The SOC2 Manager, Audit & Certification will be perform the following: Lead SOC2 audits and related projects for Deloitte Technology Liaise with … SOC2 external auditors to scope and facilitate SOC2 audits gathering and presenting evidence as required to support DT's SOC2 audits. Understand technology controls, testing of controls, and supporting evidence to meet SOC2 Trust Service Criteria. Understand technology … the confidentiality, integrity, and availability of the information technology environment for on premises as well as cloud hosted IT applications and infrastructure meet the SOC2 Trust Service Criteria. Manage audit findings; identify and track remediation activities to meet target dates for closure, and track/report progress. More ❯
Cardiff, South Glamorgan, United Kingdom Hybrid / WFH Options
Deloitte LLP
lead every decision wemake and action we take, guiding us to deliver impact how and where it mattersmost . Connect to your opportunity The SOC2 Manager, Audit & Certification will be perform the following: Lead SOC2 audits and related projects for Deloitte Technology Liaise with … SOC2 external auditors to scope and facilitate SOC2 audits gathering and presenting evidence as required to support DT's SOC2 audits. Understand technology controls, testing of controls, and supporting evidence to meet SOC2 Trust Service Criteria. Understand technology … the confidentiality, integrity, and availability of the information technology environment for on premises as well as cloud hosted IT applications and infrastructure meet the SOC2 Trust Service Criteria. Manage audit findings; identify and track remediation activities to meet target dates for closure, and track/report progress. More ❯
Guildford, Surrey, United Kingdom Hybrid / WFH Options
Deloitte LLP
lead every decision wemake and action we take, guiding us to deliver impact how and where it mattersmost . Connect to your opportunity The SOC2 Manager, Audit & Certification will be perform the following: Lead SOC2 audits and related projects for Deloitte Technology Liaise with … SOC2 external auditors to scope and facilitate SOC2 audits gathering and presenting evidence as required to support DT's SOC2 audits. Understand technology controls, testing of controls, and supporting evidence to meet SOC2 Trust Service Criteria. Understand technology … the confidentiality, integrity, and availability of the information technology environment for on premises as well as cloud hosted IT applications and infrastructure meet the SOC2 Trust Service Criteria. Manage audit findings; identify and track remediation activities to meet target dates for closure, and track/report progress. More ❯
St. Albans, Hertfordshire, United Kingdom Hybrid / WFH Options
Deloitte LLP
lead every decision wemake and action we take, guiding us to deliver impact how and where it mattersmost . Connect to your opportunity The SOC2 Manager, Audit & Certification will be perform the following: Lead SOC2 audits and related projects for Deloitte Technology Liaise with … SOC2 external auditors to scope and facilitate SOC2 audits gathering and presenting evidence as required to support DT's SOC2 audits. Understand technology controls, testing of controls, and supporting evidence to meet SOC2 Trust Service Criteria. Understand technology … the confidentiality, integrity, and availability of the information technology environment for on premises as well as cloud hosted IT applications and infrastructure meet the SOC2 Trust Service Criteria. Manage audit findings; identify and track remediation activities to meet target dates for closure, and track/report progress. More ❯
Bristol, Gloucestershire, United Kingdom Hybrid / WFH Options
Duel
Engineer to join our growing engineering team. As a company, we are ISO 27001-certified and need to maintain this certification while preparing for SOC2 compliance. Security responsibilities currently sit across different teams, but as compliance requirements increase, a dedicated security engineer is needed to support ongoing … improve Duel's overall security posture. The focus of this role is to help maintain our compliance responsibilities through Secureframe, support ISO 27001 andSOC2 audits, manage security vulnerabilities, and work within engineering to introduce security best practices into development, infrastructure, and operations. We're Looking for … Assist in managing ISO 27001 renewals by maintaining compliance documentation and ensuring key security practices are followed. Help support the company's transition towards SOC2 certification by tracking requirements and implementing necessary security measures. Work within Secureframe to maintain compliance records, ensuring a structured and organised approach More ❯
london, south east england, United Kingdom Hybrid / WFH Options
Ownera
product roadmap priorities based on client feedback. Respond to technical sections of RFPs, RFIs, and security questionnaires, ensuring alignment with regulatory standards (e.g., ISO27001, SOC2, GDPR). Act as a trusted advisor to clients and internal teams, bridging the gap between commercial goals and technical feasibility. Stay … managers, or exchanges. Proven experience supporting long sales cycles and navigating enterprise procurement processes. Familiarity with industry standards and frameworks such as ISO 27001, SOC2, MiFID II, GDPR, or cloud governance in regulated industries. Skills & Competencies: Excellent communication and presentation skills, with the ability to simplify complex More ❯
london, south east england, United Kingdom Hybrid / WFH Options
Maxwell Bond
Lead the development and execution of the overall security strategy Own and manage risk across infrastructure, applications, and data Drive compliance efforts (ISO 27001, SOC2, etc.) and support audit readiness Build security awareness across the company, including training and best practices Work closely with engineering to embed … scaling business Hands-on knowledge of cloud (AWS, GCP or Azure), application security, and security tooling Familiarity with compliance frameworks such as ISO 27001, SOC2, and GDPR Excellent communication skills with the ability to influence both technical and non-technical stakeholders A strategic mindset, but comfortable working More ❯
SENIOR SOC ANALYST Up to £80,000/Bonus + Excellent Staff Benefits Strong Career Growth Opportunities 2 Days Onsite/3 Days Remote No Shift Work (Normal 09:00-17:30pm) Working Hours An interesting opportunity has presented itself within one of the UKs largest Independent Software … Tools & Onboard New Functionality. You will also work with colleagues in the Governance & Compliance Functions to ensure appropriate usage of Data. As a Senior SOC Analyst you will use Leading, Enterprise-Led Tools & take Responsibility for Tuning & Maintaining Security Platforms to Deliver the Best Capability to other Information Security … Strong Verbal & Written Communication Skills Leadership, Coaching & Mentoring Skills. Strong Team Player Ideally Familiarity with Industry Standard Security Frameworks such as ISO 27001 or SOC2 Understanding of Common Network Protocols & Technologies such as TCP/IP, DNS & DHCP Searches: SOC Analyst/Lead SOC Analyst/Principle SOCMore ❯
locations. Drive continuous IT system improvements and updates across the group. Lead and maintain Cyber Security accreditation's including Cyber Essentials , ISO 27001 , andSOC2 . Implement, enforce, and maintain IT policies, standards, and processes company-wide. Monitor, administer, and maintain infrastructure and critical systems proactively. Transition … Windows Server , Active Directory , and LAN/WAN networking. Proven experience securing and maintaining Cyber Security accreditation's (Cyber Essentials mandatory; ISO 27001/SOC2 preferred). Deep familiarity with Microsoft 365 , and ideally some exposure to an ERP Tenacious, resilient, and goal-oriented approach with excellent More ❯
expand globally, there’s significant scope to evolve this role into a leadership or specialist path. Real Autonomy : Drive the roadmap for frameworks like SOC2and FedRAMP. Lead audits. Own the processes — not just maintain them. High-Caliber Team : You’ll be joining a mission-led organisation … deep expertise in cybercrime disruption and a reputation for punching far above its weight. Core Responsibilities: Architect, manage, and continuously evolve compliance frameworks (e.g., SOC2, Cyber Essentials, FedRAMP). Lead the end-to-end audit lifecycle — from evidence gathering to external walkthroughs. Work closely with legal to More ❯
Dundee, Angus, United Kingdom Hybrid / WFH Options
Ivanti
Administration Linux Administration Software engineering disciplines Proficiency developing for serverless frameworks such as Azure Functions or AWS Lambda Experience with compliance frameworks such as SOC2 Type 2, ISO-27001, FedRAMP, or IRAP and privacy regulations such as GDPR and PIPEDA Roadmap for Success 90 Days: Onboarding More ❯
analysis, and post‑mortems. Security & Compliance Embed DevSecOps practices—secrets management, container image hardening, zero‑trust networking, vulnerability management, and compliance automation (ISO 27001, SOC2). Collaborate with ML/AI Teams Package and deploy large‑language‑model (LLM) training jobs on distributed GPU clusters (Slurm, Ray More ❯
degree in Computer Science, Information Security, or related field; or equivalent experience. Proven experience (5+ years) in IT and security management, with at least 2 years in a leadership role. Strong understanding of operating systems (Windows, macOS), productivity tools (Google Workspace, Microsoft 365), security frameworks (NIST, ISO 27001, SOC2, GDPR, PCI DSS), and DevOps practices. Proficiency with monitoring platforms like Datadog, New Relic, or similar. Familiarity with ITSM tools, endpoint management, and asset tracking. Strong leadership, analytical, problem-solving, and communication skills. Ability to collaborate in a dynamic environment. Willingness to travel to branch offices as More ❯
CD: Knowledge of Kubernetes, Docker, Terraform, Ansible , and other infrastructure automation tools. Security & Compliance: Understanding of cloud security, identity management, and regulatory compliance (GDPR, SOC2, ISO 27001, etc.) . Programming & Frameworks: Proficiency in languages like React, Python, Go, or Node.js , with a strong understanding of modern frameworks . Experience Requirements More ❯
gaps and control weaknesses. Conduct assessments of cybersecurity frameworks, including access management, vulnerability management, incident response, and endpoint protection. Review and assess vendor-provided SOC 1 andSOC2 reports, evaluating vendor risk and control sufficiency across critical outsourced functions. Audit the full software development lifecycle (SDLC More ❯
AWS, or GCP), containerization (Docker/Kubernetes), and hybrid cloud models. Security & Compliance Awareness: Understanding of financial services security frameworks, data privacy regulations (GDPR, SOC2, etc.), and risk management principles. Business & Technology Alignment: Ability to translate business needs into technology solutions, balancing innovation with operational stability. Stakeholder More ❯
Reading, Oxfordshire, United Kingdom Hybrid / WFH Options
Computer Futures / SThree Group
Specialty. Multi-Cloud Experience: Familiarity with Azure and GCP. Serverless Architectures: Experience with AWS Lambda and serverless design. Compliance Standards: Expertise in GDPR, HIPAA, SOC2, ISO 27001. Advanced Security Practices: Knowledge of zero-trust architecture and security incident response. Why Apply? Influence: Leadership role with the power to shape key More ❯
Specialty. Multi-Cloud Experience: Familiarity with Azure and GCP. Serverless Architectures: Experience with AWS Lambda and serverless design. Compliance Standards: Expertise in GDPR, HIPAA, SOC2, ISO 27001. Advanced Security Practices: Knowledge of zero-trust architecture and security incident response. Why Apply? Influence: Leadership role with the power to shape key More ❯
Loughton, Essex, South East, United Kingdom Hybrid / WFH Options
Profile 29
Microsoft Defender for Cloud, and Microsoft Sentinel for advanced security monitoring. Threat Detection & SOAR Automation: Oversee Security Orchestration, Automation, and Response (SOAR) solutions including SOC Prime. Network & Application Security: Manage Web Application Firewalls (WAF) and Intrusion Prevention Systems (IPS). Vulnerability & Penetration Testing: Review Penetration Testing, vulnerability assessments, and … Security Engineer Associate, CISSP, OSCP (Offensive Security Certified Professional), CCSP, or equivalent. Experience with container security (Docker, Kubernetes). Knowledge of NIST, ISO 27001, SOC2 compliance frameworks. Familiarity with Zero Trust security principles. Other Stuff Please only apply if you are able to work from their Debden More ❯
Employment Type: Contract, Work From Home
Rate: From £500 to £700 per day (direct contract with the client)
findings. Security Champion Enablement: Collaborate with engineering teams to build security awareness and develop a network of Security Champions. Incident & Response Readiness: Support Smarsh SOCand security incident response, including root cause analysis and post-mortem reviews for your product(s). Security Compliance & Governance: Ensure alignment with regulatory … requirements (SOC2, ISO 27001, etc.) and support audit activities. What will you bring? 7+ years of experience in Product Security, Application Security, or a related security engineering role. Deep expertise in secure software development, secure coding practices, and OWASP Top 10/CWE 25. Strong technical proficiency … posture management. Strong understanding of identity & access management (OAuth, OIDC, SAML, JWT) and API security. Knowledge of industry frameworks like NIST, ISO 27001, andSOC 2. Experience driving developer enablement and security training initiatives. Excellent communication and collaboration skills to engage with engineering, product, and leadership teams. Preferred Qualifications More ❯
related to IAM and access control solutions. Support audit, compliance, and governance initiatives, ensuring adherence to standards such as ISO 27001, NIST, CIS, andSOC 2. Requirements Requirements Good hands-on experience with IAM tools such as Entra ID (Azure AD), Okta, AWS IAM, GCP IAM, CyberArk, and SailPoint. More ❯
Guildford, Surrey, United Kingdom Hybrid / WFH Options
Sycurio
The Information Security Director develops, shapes, and maintains Sycurio's information security capability, driving the attainment and maintenance of the ISO27001, PCI-DSS, andSOC2 compliance. They are the subject matter expert on all things regarding security and compliance, owning the information risk management processes. They are the thought leader More ❯