Security Assurance Support Specialist (ISO 27001)

Security Assurance Support Specialist (ISO 27001)

City of London (hybrid)

£55,000 - £60,000 per annum + Excellent benefits

On behalf of a dynamic and fast-growing business within the advertising sector, I'm looking for a Security Assurance Support Specialist to support their London and New York teams with a very strong emphasis on the maintenance and development of their ISO 27001 Information Security Management System in a fast-paced, cloud-first environment.

The role would suit someone with solid IT support experience who is ready to take real ownership of a function. You'll have worked in or alongside an ISO 27001 certified environment and understand what maintaining an ISMS looks like in practice.

The organisation is pleased to offer this role on a hybrid working basis with 3 days per week in their City of London offices, therefore you must be within a reasonable commute of this location.

Responsibilities:

  • Manage IT onboarding and offboarding, including inductions, account setup, access provisioning, and device handover
  • Provide day-to-day IT support to colleagues across our London and New York teams, troubleshooting hardware, software, access, and connectivity issues
  • Administer and support core IT services, ensuring systems remain reliable, secure, and fit for purpose
  • Maintain and improve IT procedures, documentation, and internal processes as the business grows
  • Deliver technical guidance and user support to help staff follow established IT and security standards
  • Monitor IT support and security mailboxes, ensuring issues are responded to or escalated appropriately
  • Act as an initial point of contact for security events and incidents, following defined processes and escalating where needed
  • Administer Google Workspace at an organisational level, including user life cycle management, access controls, security settings, DLP, audit logging, and third-party app governance
  • Support the management of the SaaS estate, helping to maintain appropriate security controls across cloud-based systems
  • Coordinate device procurement, MDM, and remote troubleshooting for a distributed team across London and New York
  • Support the ongoing maintenance of the ISO 27001 Information Security Management System, including evidence collection, audit preparation, corrective action tracking, and management review support
  • Help maintain security and compliance processes, working with teams across the business to support agreed standards and controls
  • Support IT-related risk management and business continuity/disaster recovery activities, including coordinating testing and follow-up actions
  • Liaise with suppliers, service providers, and internal stakeholders to support the effective running of IT and security operations.

Experience/Skills required:

  • Experience working in or alongside an ISO 27001 certified environment, with at least a practical understanding of ISMS maintenance
  • Proven experience in an internal IT support, IT administration, or workplace technology role
  • Strong hands-on experience supporting Mac and Windows environments
  • Deep working knowledge of Google Workspace administration, including the Admin Console, security settings, access controls, DLP, Vault, Meet, and Drive sharing controls
  • Confidence operating as a sole or primary internal IT resource, with good judgement on when to resolve issues directly and when to escalate
  • A strong understanding of cloud-first, SaaS-heavy environments and the security considerations they introduce, including IAM, MFA, SSO, and related controls
  • A practical, proactive approach to troubleshooting and problem solving.

Job Details

Company
Spencer Rose Ltd
Location
London, United Kingdom
Hybrid / Remote Options
Employment Type
Permanent
Salary
GBP 55,000 - 60,000 Annual
Posted