1 to 25 of 77 Permanent SOC 2 Jobs in the UK

Senior Security Engineer

Hiring Organisation
Jobleads-UK
Location
Greater London, England, United Kingdom
security design and architecture reviews, paired with the governance and process work that scales the program. You will partner on customer due‐diligence and SOC 2 evidence and turn security controls into repeatable workflows that fit how the business already works. You will apply that lens across … and DevOps to reduce risk through secure design and simplicity, not just added controls. Governance, Risk & Compliance Partner on customer due‐diligence (DDQ) and SOC 2 Type II evidence gathering, keeping compliance sustainable rather than fire‐drilled. Build repeatable security workflows that embed controls into existing engineering processes ...

Director, Compliance Audit – iLottery & Interactive

Hiring Organisation
Jobleads-UK
Location
Greater London, England, United Kingdom
security, technology, and service delivery controls.* Coordinate and lead all aspects of external audits and certifications supporting lottery customers, including but not limited to SOC 1, SOC 2, ISO 27001, WLA-SCS, PCI-DSS, and jurisdiction-specific requirements.* Maintain audit readiness throughout all iLottery regions by conducting … and customer collaborators.* Strong understanding of audit methodologies, internal controls, risk management, and governance frameworks.* Experience with recognized industry benchmarks and certifications such as SOC 1, SOC 2, ISO 27001, PCI-DSS, WLA-SCS, NIST, COBIT, or comparable frameworks.* Strong analytical, problem-solving, and decision-making capabilities. ...

Staff engineer, Security Assurance & Audit New UK

Hiring Organisation
Jobleads-UK
Location
United Kingdom
company to ensure controls are scoped, implemented, evidenced, tested, and defensible. What You’ll be Doing Assurance Program Leadership Own security assurance execution across SOC 2 Type II, the ISO family of standards, and other applicable frameworks. Lead certification and audit‐readiness planning for new sites, systems, services … customer‐specific readiness efforts. Control Framework and Evidence Quality Partner with compliance engineering and control‐mapping owners to maintain a unified control framework across SOC 2, ISO, NIST, and customer‐specific obligations. Define evidence standards for control design, operating effectiveness, sampling, retention, traceability, and audit defensibility. Review evidence ...

Head of Information Security

Hiring Organisation
Jobleads-UK
Location
City Of London, England, United Kingdom
Define and own the GRC programme, including the ISMS, policy framework, risk registers, and audit readiness Implement and maintain compliance with ISO 27001, SOC 1, SOC 2, NIST CSF, GDPR, and relevant financial services regulations Understand the GRC landscape, implement appropriate controls, and adapt as the threat … progressive experience in information security, with at least 3 years in a senior or leadership role Hands‐on experience owning ISO 27001 and SOC 1 and SOC 2 programmes, not just supporting them Demonstrated experience managing security incidents end‐to‐end, including client and regulatory communications Strong ...

Information Security Lead

Hiring Organisation
Jobleads-UK
Location
City of Edinburgh, Scotland, United Kingdom
rigorous security standards expected by our enterprise clients. Responsibilities Own the ISMS: Lead the maintenance of our ISO 27001 certification and spearhead the upcoming SOC 2 Type 2 audit processes. Endpoint & IT Security: Manage our fleet security via MDM (e.g. JumpCloud), ensuring robust encryption, patching, and access … both compliance and technical security engineering. Solid understanding of networking, encryption, and security fundamentals. Proven track record of managing ISO 27001 and successfully delivering SOC 2 audits (ideally in a startup environment). Ability to thrive in a fast-paced startup where you need to be self-directed ...

Security Lead - ISO 27001, SOC 2, Cloud & IAM

Hiring Organisation
Jobleads-UK
Location
City of Edinburgh, Scotland, United Kingdom
security roadmap, partnering with engineering to keep infrastructure secure by design and meet enterprise standards. You will own ISMS, manage ISO 27001 certification, SOC 2 Type 2 audits, and oversee cloud security for AWS and Kubernetes. The role requires 4+ years in information security and a strong ...

Information Security Manager

Hiring Organisation
Jobleads-UK
Location
City of Westminster, England, United Kingdom
engage credibly with the wider infosec team and its systems. Critically review and challenge supplier technical proposals, architectures and security testing reports (e.g. Soc 2, penetration test reports) ensuring proportionate controls are in place. Provide informed input into security testing scope (e.g. Penetration testing, configuration reviews) and review … Nist ai rmf) or developing ai use-case risk assessments. Exposure to property technology would be a distinct advantage. Experience reviewing penetration test reports, soc 2 reports, or supplier security architectures. Experience with security tooling such as siem, email security platforms or vulnerability scanning. Hands‐on experience supporting ...

Compliance Officer

Hiring Organisation
Spectrum IT Recruitment
Location
Milton Keynes, Buckinghamshire, United Kingdom
Employment Type
Permanent
Salary
£45000 - £50000/annum Benefits
Compliance Officer (ISO, SOC2, GDPR) Fully Remote £45,000 - £50,000 + Bonus & Benefits Are you a hands-on compliance professional who thrives on variety and ownership? Do you have experience delivering ISO, SOC & GDPR audit & compliance projects? Join a leading international managed services provider and become the driving … and governance is critical. You'll manage and maintain ISO 27001, ISO 9001 and ISO 22301 certifications, lead GDPR and data protection compliance, oversee SOC 2 - Type II controls, coordinate business continuity and disaster recovery activities, and support customer audits and due diligence requests. You'll also play ...

Senior IT System Engineer

Hiring Organisation
Jobleads-UK
Location
Greater London, England, United Kingdom
balance long-term strategic vision (governance frameworks, scalable architectures) with tactical quick wins that deliver immediate value Partner with Security and Legal to maintain SOC 2 compliance — owning IT controls, evidence collection, and audit readiness Ensure GDPR and data protection requirements are embedded into every system and workflow … best practices within the IT function and across the organisation Qualifications 8k+ years in IT engineering, platform engineering, or infrastructure roles — with at least 2 years leading or mentoring a technical team Strong, demonstrable coding ability in Python — not just scripting, but building well-structured, testable automation with proper ...

Senior IT Systems Engineer — Cloud, IAM & AI Tools

Hiring Organisation
Jobleads-UK
Location
Greater London, England, United Kingdom
balance long-term strategic vision (governance frameworks, scalable architectures) with tactical quick wins that deliver immediate value • Partner with Security and Legal to maintain SOC 2 compliance — owning IT controls, evidence collection, and audit readiness • Ensure GDPR and data protection requirements are embedded into every system and workflow … best practices within the IT function and across the organisation Requirements 8k+ years in IT engineering, platform engineering, or infrastructure roles — with at least 2 years leading or mentoring a technical team Strong, demonstrable coding ability in Python — not just scripting, but building well-structured, testable automation with proper ...

IT Security & Compliance Lead

Hiring Organisation
Jobleads-UK
Location
City of Edinburgh, Scotland, United Kingdom
exercises. Operate and tune security monitoring and detection tooling (EDR, DLP, SIEM, or similar) to catch and respond to threats quickly. Compliance & Certification Own SOC 2 Type II and ISO 27001/27017/27018 end‐to‐end, from policy design through to audit evidence and the audits … e.g. Okta) and cloud infrastructure security (e.g. AWS). Experience leading security incident response, from investigation through to post‐incident review. Working knowledge of SOC 2 and the ISO 27000 series. Comfortable evaluating and operating security tooling such as EDR, DLP, or SIEM platforms. A strong cross‐functional ...

GRC Consultant

Hiring Organisation
Jobleads-UK
Location
Greater London, England, United Kingdom
Consultant Seeking an experienced GRC Consultant to join a critical certification programme midway through delivery and take ownership of driving successful outcomes across SOC 2 and ISO 27001 initiatives. Day Rate: £650-£700pd IR35 Status: Inside Location: 2 days a month in London Office Duration: 6 months … initially Responsibilities Take ownership of existing SOC 2 and ISO 27001 certification programmes, rapidly assessing current status, identifying gaps, and driving remediation activities through to successful audit and certification outcomes. Recover and stabilise compliance programmes that have fallen behind schedule, establishing clear accountability, coordinating stakeholders, and ensuring delivery ...

Sole Counsel

Hiring Organisation
Jobleads-UK
Location
Greater London, England, United Kingdom
and cross‐border transfer mechanisms (UK/EU/US/SG). Work closely with our vCISO to maintain ISO 27001 and SOC 2 compliance – owning the legal and policy layer, supporting audit cycles, and closing out action items. Draft and maintain privacy notices, DPAs, and internal … improve contracts, not just mark them up. Working knowledge of UK GDPR and practical experience managing compliance programmes or certification cycles (ISO 27001/SOC 2 exposure strongly preferred). Genuine AI literacy – you use Claude or equivalent tools in your workflow; drafting without them would feel like ...

Senior Technical Programme Manager

Hiring Organisation
Jobleads-UK
Location
Greater London, England, United Kingdom
platforms or ways of working across multiple teams. Experience working in regulated environments or with strict compliance requirements (e.g., GDPR, PCI‐DSS, SOC 2, DMA, and EU AI Act). Demonstrated ability to establish programme governance and operating models from scratch in ambiguous or fast‐moving environments. Experience … Communication Leadership Skills Decision‐Making Influencing Stakeholders Navigating Complexity Certifications & Qualifications PMP Agile Project Management Certification AWS Cloud Practitioner Industry Keywords GDPR PCI‐DSS SOC 2 DMA EU AI Act Tools & Technologies Jira Confluence Smartsheet Cloud‐Native Designs Microservices #J-18808-Ljbffr ...

GRC Consultant – Lead for SOC 2 & ISO 27001 Certification

Hiring Organisation
Jobleads-UK
Location
Greater London, England, United Kingdom
Fosse-1 is seeking an experienced GRC Consultant to lead a critical certification programme focusing on SOC 2 and ISO 27001. You will take ownership of driving successful outcomes, while ensuring compliance with standards. Your role will involve recovering compliance programmes, leading engagements with auditors, and strengthening ISMS ...

Head of Security

Hiring Organisation
Jobleads-UK
Location
United Kingdom
systems. This role exists to operationalize that principle across every function of the company. You won’t be building from scratch. We already have SOC 2 Type 2 and HIPAA certifications and will soon have HITRUST R2 certification. We view these compliance items as a baseline starting ...

Head of Security - Cloud Healthcare & Compliance

Hiring Organisation
Jobleads-UK
Location
United Kingdom
take full ownership of security operations, reporting to the CEO. This role involves building and managing a comprehensive security program, ensuring compliance with SOC 2 Type 2 and HIPAA standards, and working closely with engineering and legal teams. Ideal candidates will have significant experience in cloud-native ...

Information Security Director

Hiring Organisation
Jobleads-UK
Location
City of Westminster, England, United Kingdom
against cyber threats. We operate in a highly secure global SaaS organization that holds multiple certifications such as PCI‐DSS, ISO/IEC 27001, SOC, HIPAA, IRAP and works with a large, federated customer base. Responsibilities Develop and lead a team of Security Analysts and Engineers, providing management, mentorship … latest security threats, vulnerabilities and mitigation techniques. Advantageous Skills and Experience Experience working on projects ensuring compliance with PCI DSS, ISO/IEC 27001, SOC, HIPAA, IRAP controls. Knowledge of security compliance standards relevant to the SaaS industry such as PCI, GDPR, ISO 27001, SOC 2, NIST. ...

Security Architect - London

Hiring Organisation
Jobleads-UK
Location
Greater London, England, United Kingdom
architecture across on-premises and cloud environments. Develop security policies, standards, and procedures in alignment with business and compliance requirements (e.g., ISO 27001, NIST, SOC 2, GDPR). Lead threat modeling, vulnerability assessments, and penetration testing to identify and mitigate risks. Collaborate with IT, DevOps, and application development ...

Cybersecurity Manager II

Hiring Organisation
Jobleads-UK
Location
City of Westminster, England, United Kingdom
security scanning Experience conducting threat modeling, secure design reviews, and engineering‐focused risk assessments Familiarity with industry standards and frameworks such as ISO 27001, SOC 2, OWASP, and NIST CSF Experience supporting digital product teams or client‐facing technology delivery units; knowledge of privacy and data protection regulations ...

Senior Manager, Center of Expertise

Hiring Organisation
Jobleads-UK
Location
Greater London, England, United Kingdom
software‐defined storage, disaster recovery as code, and observability stacks. Ability to engage credibly in security framework discussions—Zero Trust, NIST CSF, CIS Controls, SOC 2, and regulatory environments (GDPR, HIPAA, FedRAMP). Experience leading or owning large‐scale, complex customer onboardings with multiple stakeholders, integrated environments, and ...

Head of Cloud Architecture

Hiring Organisation
Jobleads-UK
Location
Metropolitan Borough of Solihull, England, United Kingdom
Cloud and Zero Trust principles. Own compliance across multiple jurisdictions, including data residency and sovereignty, mapping controls to relevant frameworks (e.g. ISO 27001, SOC 2, GDPR, regional equivalents) and evidencing them for audit. Govern at scale with Azure Policy, authoring definitions and initiatives, applying them across scopes, and … days holiday plus all UK bank holidays 4x life assurance Enhanced family‐friendly leave – 5 months' full pay for maternity or adoption, plus 2 weeks' fully paid paternity/adoption leave and an extra 2 weeks to use as paid annual leave within 24 months of birth ...

Senior DevSecOps Engineer

Hiring Organisation
Jobleads-UK
Location
Greater London, England, United Kingdom
mandatory security checks. Impress Us More By Having (Desirable) Proven experience working with and adhering to FinTech-related certifications, standards, or frameworks such as SOC2, ISO 27001, PCI DSS, DORA or similar regulated environments. Relevant certifications such as Google Cloud Professional Security Engineer, CKS (Certified Kubernetes Security Specialist), or CISSP. ...

Cyber GRC Consultant

Hiring Organisation
Halo Personnel
Location
Fareham, Hampshire, South East, United Kingdom
Employment Type
Permanent, Work From Home
Salary
£55,000
and information risks, and achieve or maintain compliance with recognised standards and frameworks including ISO/IEC 27001, Cyber Assessment Framework (CAF), Cyber Essentials, SOC-2, PCI, DSS, GDPR, and other relevant regulatory or contractual requirements. This is a customer-facing consultancy role, requiring confident engagement with senior stakeholders … GDPR and relevant information security standards or best practice frameworks Knowledge of additional frameworks such as CAF, NIS-2, NIST Cybersecurity Framework, CIS Controls, SOC 2, ISO 22301, ISO 27701 or PCI DSS. ExperienceusingGRC,auditmanagement,riskregisterorreporting tools. HoldSC/DVclearanceorwillingnesstoundertakesecurity vetting. MemberofCiSPoranotherrelevantprofessional community. Willingnesstostudyforandattainfurtherrelated qualifications. Experienceofimplementingandmanaging ISO 9001. ...

Software Engineer (Backend)

Hiring Organisation
Jobleads-UK
Location
Greater London, England, United Kingdom
and resolve production issues. Security & compliance aware engineering Work closely with Security and GRC teams to ensure services meet security and compliance requirements (e.g. SOC 2, ISO 27001). Implement secure coding practices, strong authentication and authorization patterns, and data protection controls. Contribute to internal documentation and standards … Opportunity to travel (if applicable) Flexible vacation policy Private Healthcare Employee stock ownership (ESOP) Flexible working and autonomy Pay it forward days - we offer 2 annual pay it forward days where you can take time to volunteer for a charitable cause that is important to you. Wellness days ...