won't need experience in all of these areas, their current accreditations are as follows: ISO 9001, 27001, 27701, 27017, 22301, 14001, (phone number removed), 42001, 13485, PCI-DSS, SOC2 Type 2, CE+. The company work on a hybrid model typically involving 2-3 days a week in the office. Examples of responsibilities: Coordination of More ❯
Milton Keynes, Buckinghamshire, United Kingdom Hybrid / WFH Options
Deloitte LLP
evaluation of risk, as well as using GRC tools and guidance developed for Risk mitigation. Practical knowledge of information security standards and risk assessment frameworks such as ISO 27001, SOC2, NIST 800-32. Strong knowledge of cyber controls, policies, and procedures. Experience of delivering metrics for senior level audiences. Demonstrate analytical and problem-solving skills. Ability More ❯
large, complex technology programmes involving multiple concurrent projects with significant experience of delivering through offshore/nearshore strategic vendors. Knowledge of security frameworks & standards (ISO 27001, NIST, CIS, GDPR, SOC2) Be experienced in 'hands on' technology software delivery from initiation to implementation. Have knowledge of programme and project management methodology and managing full lifecycle of programmes from More ❯
identify and mitigate risks. Work closely with the security team to integrate best practices into new and existing features. Ensure compliance with security standards and regulations (e.g., ISO 27001, SOC2). Implement monitoring solutions to detect and respond to real-time security incidents. Troubleshoot infrastructure and security issues, performing root cause analysis in production. Mentor junior engineers More ❯
and thought leadership within the Practice by defining standards, sharing knowledge, and mentoring peers Influence customer outcomes through expert knowledge of DevSecOps tools and compliance frameworks like NIST, CIS, SOC2, and PCI DSS You'll travel to client sites across the UK, working directly with business and technical stakeholders to drive real business value What you'll More ❯
SLAs) are met or exceeded. Manage relationships with key vendors and contractors. Compliance & Audits: Ensure the facility operates in strict adherence to industry standards and regulations (e.g., ISO 27001, SOC2, etc.). Prepare for and lead internal and external audits. Health & Safety: Be the on-site safety champion, enforcing strict health and safety protocols and conducting regular … efficiency, reduce costs, and enhance the overall performance of the facility. Candidate Requirements Proven Experience: A minimum of 5 years of experience in data centre operations, with at least 2-3 years in a lead, management or supervisory role. Technical Expertise: Strong understanding of data centre infrastructure, including high-voltage power distribution, UPS systems, generators, CRAC/CRAH units More ❯
SLAs) are met or exceeded. Manage relationships with key vendors and contractors. Compliance & Audits: Ensure the facility operates in strict adherence to industry standards and regulations (e.g., ISO 27001, SOC2, etc.). Prepare for and lead internal and external audits. Health & Safety: Be the on-site safety champion, enforcing strict health and safety protocols and conducting regular … efficiency, reduce costs, and enhance the overall performance of the facility. Candidate Requirements Proven Experience: A minimum of 5 years of experience in data centre operations, with at least 2-3 years in a lead, management or supervisory role. Technical Expertise: Strong understanding of data centre infrastructure, including high-voltage power distribution, UPS systems, generators, CRAC/CRAH units More ❯
slough, south east england, united kingdom Hybrid / WFH Options
BoardOutlook
process Location Why join BoardOutlook? About this role About you Compensation 1. Hiring process We keep our process fast and human. You can expect: A short screening call 1–2 interviews with team members A short written or practical exercise Final interview and references We aim to provide feedback quickly after each stage. 1.1 How to apply: Please send … legal experience, ideally including in-house experience in a SaaS or tech business. Strong working knowledge of privacy and data protection laws (especially GDPR). Familiarity with ISO 27001, SOC2, or similar frameworks. Skills & Attributes Strong commercial judgment, drafting skills, and attention to detail. Practical, solutions-focused approach to balancing risk and business outcomes. Excellent communication andMore ❯
Maidenhead, Berkshire, South East, United Kingdom Hybrid / WFH Options
Oscar Associates (UK) Limited
Swagger/OpenAPI documentation for Open APIs Familiarity with Azure services and automation tools like Power Automate or Zapier Exposure to IoT or Telematics platforms Awareness of ISO 27001, SOC2, or GDPR compliance standards Benefits: Competitive base salary Hybrid working Private healthcare Exciting and unique projects Pension scheme If you are a Senior .NET Developer experienced in More ❯
Work closely with internal and external R&D teams to integrate security best practices into new and existing features. Ensure compliance with security standards and regulations (e.g., ISO 27001, SOC2). Implement monitoring solutions to detect and respond to security incidents in real-time. Perform root cause analysis and troubleshoot infrastructure and security-related issues in production. Mentor junior engineers More ❯
Reading, Berkshire, South East, United Kingdom Hybrid / WFH Options
Halian Technology Limited
building resilient cloud infrastructure? Join our growing team as a Senior Cyber Security Engineer , and help us protect critical platforms while enabling innovation at scale. ?? Location: Berkshire, UK (Hybrid 2-3 days onsite) About the Role As a Senior Cyber Security Engineer, youll be a key member of our security team, responsible for designing, implementing, and maintaining robust security … into CI/CD pipelines Monitor and respond to security incidents, coordinating investigation and remediation efforts Drive security automation and infrastructure-as-code initiatives Support compliance efforts (ISO 27001, SOC2, etc.) through technical controlsand documentation What Were Looking For Proven experience as a security engineer with a strong background in cloud security (AWS, Azure, or GCP) Solid understanding of More ❯
pipelines. Working experience of the above concepts in the context of at least one major public cloud provider (AWS, GCP, or Azure). Understanding of global security standards (like SOC2 or ISO 27001) and regulatory requirements and experience in maintaining compliance with these. A desire to teach others and share knowledge. We want you to coach other team members on … Infrastructure penetration testing (OWASP top 10, OWASP ASVS). Understanding of security vulnerabilities and remediation options in codebases & containers. Working knowledge of methods for authentication and authorization (ODIC, OAuth 2, FIDO 2, etc) Don't worry if you don't meet all the criteria - your unique skills and experiences are valued, and we encourage you to apply! What More ❯
Information Security GRC Manager | ISO27001, SOC2, Azure Security | Global Trading Platform £70–80k base + 10% bonus Hybrid in London Training budget for certifications + conference attendance Strong emphasis on professional autonomy and ethical leadership A newly created opportunity to lead and shape the GRC function of a global financial group at a pivotal time, supporting the secure rollout of … U.S. banking operations, driving ISO27001 andSOC2 maturity, and mentoring an evolving InfoSec team. This is a hands-on manager-level role with real scope: oversight of policy, third-party risk, architectural reviews, and cloud compliance. You'll work closely with the Head of InfoSec to maintain audit readiness, improve security posture, and influence business-wide awareness and accountability. What … you’ll bring: 5+ years in InfoSec, IT Security or Ops within a regulated environment Certification required: CISSP, CISM, CRISC, or equivalent Strong knowledge of ISO27001:2022, SOC2 Type II, NIST CSF, PCI DSS, GDPR, DORA Confident with security risk assessments, audit responses, and policy governance Hands-on cloud security experience: ideally with Azure and the Shared Responsibility Model Comfort More ❯
Milton Keynes, Buckinghamshire, United Kingdom Hybrid / WFH Options
Allica Bank Limited
vendor relationships, ensuring long-term value creation. Champion vendor compliance through regular audits and assessments, ensuring adherence to internal policies, external regulations, and industry standards. Review and evaluate the SOC 1 Type 2 reports to ensure robust change control processes are in place, verifying vendor compliance with contractual and operational requirements. Stay at the forefront of industry developments … Gatekeeper preferred), contract management (including systems), and performance monitoring software. Certifications in Vendor Management (e.g., CPO, CPSM and CIPS) are a plus. Knowledge and experience in maintaining and reviewing SOC 1 Type 2 Reports, along with other certifications and disaster recovery (DR) outputs. Knowledge of fintech regulatory environments and compliance frameworks (e.g., PSD2, GDPR, PCI-DSS) preferred. Working More ❯
latest AI/ML research and industry developments. Additionally, you will have a solid understanding of non-functional requirements and governance models for cloud-based AI systems, such as SOC2and ISO 42001. Your ability to efficiently handle the demands of a dynamic, fast-paced research and development environment will be key to your success. In return, you will be … Strong experience with AWS services, particularly ECS, EC2, Lambda, and AWS Identity and Access Management (IAM). Governance Understanding: Understanding of governance for cloud-based and AI solutions (e.g., SOC2, ISO 42001, EU AI Act). ML Frameworks: Experience with ML frameworks for data preparation and training at a large scale. Learn More About Autodesk Welcome to Autodesk! Amazing things More ❯
on change impacts, project risks, and dependencies to senior stakeholders. Facilitate cross-functional meetings/communications between internal teams and customers as applicable. Ensure regulatory and industry compliance (e.g., SOC, ISO) when implementing changes and releases Key Skills & Experience Proven experience in ITIL Change Management within an infrastructure or IT environment, ideally in the automotive or software industry. Strong … DevOps environments. Strong stakeholder management, able to work across multiple levels across multiple functions. Experience with Service Management tooling and/or project management tools. Knowledge of SOC1/2and ISO is an advantage. Qualifications ITIL Foundation (v3 or v4) required; ITIL Intermediate/Expert preferred. Project Management certification (PMP, PRINCE2, or Agile/SAFe) is beneficial. Further More ❯