1 to 25 of 73 Permanent SOC 2 Jobs in the UK excluding London

Information Security Lead

Hiring Organisation
Hackajob Ltd
Location
Wallingford, Oxfordshire, South East, United Kingdom
Employment Type
Permanent
hackajob is partnering directly with Dexory to hire for this role. Information Security Lead/ISO27001/SOC/GRC/Location: Wallingford - Oxfordshire (Hybrid) onsite circa 3 days minimum per week Permanent At Dexory, we are transforming the warehousing and logistics industry through data intelligence. Were currently recruiting … Information Security Lead to own and drive our compliance programmes (ISO 27001, SOC 1 Type 2, SOC 2 Type 2), act as the primary responder to customer security due diligence, and build the systems and knowledge base that allow Dexory to scale securely without friction. ...

Sr. Manager, Site Reliability

Location
Manchester, England, United Kingdom
services; others are fully SaaS. Some customers access us over private circuits, others over the public internet. We operate in a regulated environment — HIPAA, SOC 2, and in some engagements FedRAMP — which means reliability, security, and auditability are not separable concerns. The person we hire will be comfortable … measurable value; resist the hype where it does not. Ensure AI-assisted operations meet the auditability and explainability bar required in a HIPAA and SOC 2 environment. Coaching and team-building Coach one Engineer III SRE who joins shortly after you do. Pair on incidents. Review their design ...

GRC Engineer

Location
Belfast City District, Northern Ireland, United Kingdom
oriented skills like API integrations, data querying, and control automation. You’ll be a key player in maintaining our compliance posture across frameworks like SOC 2, NIST CSF, and ISO 27001, while also helping modernize how we monitor and evidence controls using platforms like Anecdotes. This role suits … pull evidence out of a data pipeline. What You’ll Do Audits & Framework Management Own or co‐own preparation for and execution of SOC 2 (Type I/II) audits, working directly with external auditors to scope, evidence, and remediate findings Lead or support NIST CSF assessments and ...

SecOps Engineer

Hiring Organisation
WeDo Technology Solutions Limited
Location
London, South East England, United Kingdom
Employment Type
Full-Time
Salary
£70,000 - £75,000 per annum
reducing technical debt and strengthening the overall cloud platform. Security currently sits within the DevOps/Platform function, and with the business working towards SOC 2 compliance by Q1 2027, they’re looking for someone who can bring together strong DevOps fundamentals with a security-first mindset. Responsibilities … processes Supporting ongoing client migrations into AWS and Azure Working alongside the wider Platform/DevOps and Compliance functions as the business progresses towards SOC 2 compliance Helping shift security further left within the engineering lifecycle Required Skills You don't need to be a career Security Engineer. ...

GRC Lead

Location
City of Edinburgh, Scotland, United Kingdom
Leads own security and compliance at Wordsmith end-to-end — setting the strategy for IT and infrastructure security, running our certification program across SOC 2, ISO 27001, and ISO 42001, embedding responsible-AI practices into how we build and ship product, and making sure privacy and regulatory obligations … corporate IT and infrastructure — identity & access management, endpoint protection, and cloud/network security — and lead incident response when issues arise. Compliance & Certification Own SOC 2 Type II, ISO 27001/27017/27018, and ISO 42001 end-to-end — policies, controls, audit evidence, and the audits themselves. ...

Head of Business Systems & Security New Manchester, England, United Kingdom

Location
Manchester, England, United Kingdom
that keeps the company working. That covers NetSuite, Salesforce, Workato and DealHub among others, the integration layer and data definitions beneath them, SOC 2 and access control, and the full device and application estate across our UK, US and Portugal teams. It is a broad, senior remit with … integrations that connect them, and the data governance underneath. Set the architecture, operating model and roadmap for how Reachdesk uses its systems. Own the SOC 2 Type II programme, the security policy set and the risk register as the accountable business owner. Own identity and access management, joiner ...

Head of Business Systems & Security New Birmingham, England, United Kingdom

Location
Birmingham, England, United Kingdom
that keeps the company working. That covers NetSuite, Salesforce, Workato and DealHub among others, the integration layer and data definitions beneath them, SOC 2 and access control, and the full device and application estate across our UK, US and Portugal teams. It is a broad, senior remit with … integrations that connect them, and the data governance underneath. Set the architecture, operating model and roadmap for how Reachdesk uses its systems. Own the SOC 2 Type II programme, the security policy set and the risk register as the accountable business owner. Own identity and access management, joiner ...

Support Engineer

Location
Manchester, England, United Kingdom
triage, and evaluate and integrate AI tooling for deflection, agent assist and auto triage, with data handling and vendor risk requirements in mind for SOC 2 Manage customer onboarding and KYC flows (iDenfy) for the best possible UX, including manual review queues, edge cases such as document mismatches … points back into product and roadmap decisions Document support procedures and runbooks, and follow change management and access review practices in line with our SOC 2 attestation efforts Requirements, must have Based in or able to commute to Manchester. This is an in‐person role at our Manchester ...

Security & Compliance Lead: ISO27001/SOC Expert – Hybrid

Location
Wallingford, England, United Kingdom
Dexory is transforming warehousing and logistics with data intelligence in the UK. We seek an Information Security Lead to own ISO 27001, SOC 1 Type 2, and SOC 2 Type 2 programmes, and to respond to customer security due diligence across engineering, product and operations. ...

Compliance Enablement Technical Program Manager

Location
Oxford, England, United Kingdom
program and project management skills, with a track record of delivering across multiple teams. Solid knowledge of cybersecurity frameworks (NIST 800-53, ISO 27001, SOC 2, and/or FedRAMP) and hands‐on audit experience. Enough technical depth to be the team's technical point of contact: comfortable … engineering, cloud security, or security engineering. Prior experience as a technical SME, or as a bridge between compliance and engineering teams. Experience leading a SOC 2 Type II, ISO 27001, FedRAMP, or NIST 800-53 audit end‐to‐end, and familiarity with OSCAL or other compliance‐automation tooling. ...

Security & Network Engineer - 12 months Fixed term

Location
Maidenhead, England, United Kingdom
disaster recovery strategies aligned with business continuity requirements Security Policy & Governance: Develop and maintain network security policies, baseline configurations, and compliance frameworks (ISO 27001, SOC 2, regulatory if applicable) Build and socialise governance frameworks: RACI matrices for infrastructure decisions, policy approval workflows, change controls Create runbooks, decision trees … teams Desirable Experience CISSP, CEH, OSCP, AWS Solutions Architect Professional, or similar security certification (or equivalent practical expertise) Experience with regulatory frameworks (ISO 27001, SOC 2, GDPR, NIS Regulations, or industry-specific compliance) Background in manufacturing, retail, or distributed operations environments (warehouse infrastructure, multi-site logistics) Exposure ...

Security & Network Engineer - 12 months Fixed term

Hiring Organisation
Techtronic Industries - Europe HQ
Location
Maidenhead, Berkshire, United Kingdom
Employment Type
Full-Time
Salary
Competitive salary
disaster recovery strategies aligned with business continuity requirements Security Policy & Governance: Develop and maintain network security policies, baseline configurations, and compliance frameworks (ISO 27001, SOC 2, regulatory if applicable) Build and socialise governance frameworks: RACI matrices for infrastructure decisions, policy approval workflows, change controls Create runbooks, decision trees … teams Desirable Experience CISSP, CEH, OSCP, AWS Solutions Architect Professional, or similar security certification (or equivalent practical expertise) Experience with regulatory frameworks (ISO 27001, SOC 2, GDPR, NIS Regulations, or industry-specific compliance) Background in manufacturing, retail, or distributed operations environments (warehouse infrastructure, multi-site logistics) Exposure ...

DevOps Engineer

Location
Leicester, England, United Kingdom
security monitoring and remediation activities. Help implement DevSecOps principles throughout the software delivery lifecycle. Assist with compliance and governance initiatives, including ISO 27001 and SOC 2 controls. Contribute to platform engineering standards, architecture discussions and operational best practices. Promote automation-first thinking and continuous improvement across the engineering … organisation. You will bring: 2-4 years of commercial experience in a DevOps, Cloud Engineer, Infrastructure Engineer or similar role. Hands-on experience with Azure DevOps, CI/CD practices and release management. Experience designing, implementing and maintaining CI/CD pipelines using YAML and Git-based source control. ...

Senior Security, Trust & Compliance Lead

Location
Royal Leamington Spa, England, United Kingdom
compliance initiatives across cloud-based and regulated environments Driving audit readiness, compliance programs and evidence-based assurance across frameworks such as ISO 27001, GDPR, SOC 2 and GxP Providing leadership on risk management, governance and security strategy Partnering with customers, auditors and key stakeholders on security reviews, assurance … with experience in several of the following areas: Security leadership, governance, risk and compliance (GRC) Cloud security architecture and security strategy ISO 27001, GDPR, SOC 2, GxP, 21 CFR Part 11 or similar regulated frameworks Audit leadership, customer assurance and certification programs Healthcare technology, pharmaceutical, biotechnology or regulated ...

Head of Compliance

Location
Manchester, England, United Kingdom
and Operations on incident governance, escalation, and post-incident remediation tracking. Controls, Certifications & Audit Oversee GRC readiness for external assurance frameworks and certifications, including SOC 2, ISO 27001, and related control programmes. Coordinate internal and external audits and ensure effective follow-through on findings and corrective actions. Maintain … with banking, financial-services, or insurance-sector customers. Familiarity with DORA, EBA outsourcing expectations, or equivalent financial-sector third-party governance requirements. Experience with SOC 2, ISO 27001, and related assurance frameworks. Experience across both Europe and the US. Relevant certifications such as CIPP/E, CRISC, CRCM ...

Employee Platform Engineer

Location
City of Edinburgh, Scotland, United Kingdom
coding agent workflows that remove manual steps, so the function scales on automation, not headcount Secure and audit-ready: the fleet stays managed and SOC 2 evidence generates itself, rather than being assembled by hand before an audit Who you might be We're not hiring a traditional … Edinburgh and hands-on with real hardware Bonus: Exposure to identity and device tooling such as Okta, Google Workspace or Jamf Experience with SOC 2 or security compliance Having run or automated onboarding, endpoints or internal tools before How we work This role is on-site in Edinburgh ...

Principal Data Architect

Location
Glasgow, Scotland, United Kingdom
tenancy and partitioning models that guarantee strict IP isolation for enterprise clients, secure sharing patterns for research partners, and the architectural groundwork for SOC 2 and ISO 27001 readiness. We'll agree concrete deliverables and milestones with you up front, so success is clearly defined on both sides. … Familiarity with modern data stacks: lakehouses, streaming, batch and real-time pipelines High-throughput telemetry, loT, or industrial time-series systems Prior involvement in SOC 2 or ISO 27001 programmes Exposure to scientific, chemical, or manufacturing data Chemistry or AI drug-discovery knowledge Why Join Chemify? Impact ...

Security & Compliance Analyst for SaaS Trust

Location
Harrogate, England, United Kingdom
report to the Head of Information Security. You will help respond to customer security questionnaires, support audits, and maintain a controls library aligned to SOC 1, SOC 2, ISO 27001, ISO 42001, and FedRAMP. This is a global role working with teams across time zones. #J ...

Senior DevOps Solutions Engineer - London & Edinburgh, United Kingdom

Location
City of Edinburgh, Scotland, United Kingdom
Cloud platforms: AWS, Azure, GCP. A background in financial services or similar regulated industries. Familiarity with compliance frameworks and security requirements (e.g., ISO 27001, SOC 2, SOX, PCI DSS, FedRAMP, FFIEC, NYDFS, SEC). A track record in consulting, solutions architecture, or technical coaching. Interest in technical sales ...

Security Infrastructure Systems Engineer

Location
Wood Street, England, United Kingdom
with containers and orchestration platforms such as Docker and Kubernetes. Understanding of security frameworks and standards such as NIST, CIS Benchmarks, ISO 27001, or SOC 2. Ability to conduct threat modelling, infrastructure risk assessments, and architecture reviews. Strong troubleshooting, documentation, and cross-functional communication skills. Personal Team player with ...

Security Infrastructure Engineer

Hiring Organisation
4Square Recruitment Ltd
Location
Guildford, Surrey, United Kingdom
Employment Type
Full-Time
Salary
£40,000 - £60,000 per annum
with containers and orchestration platforms such as Docker and Kubernetes. Understanding of security frameworks and standards such as NIST, CIS Benchmarks, ISO 27001 or SOC 2. Ability to conduct threat modelling, infrastructure risk assessments and architecture reviews. Strong troubleshooting, documentation and cross-functional communication skills. Personal Strong team player ...

Application Developer

Location
Sheffield, England, United Kingdom
. Familiarity with Kubernetes (GKE RBAC + workload identity). Experience using Secret Manager, Vault, or other secrets management tools. Knowledge of compliance frameworks (SOC2, ISO 27001, PCI, HIPAA). Education * Bachelor's degree in computer science, Engineering, Information Security, or equivalent hands‐on experience. #J-18808-Ljbffr ...

Senior Consultant - Data & AI Architecture

Location
Manchester, England, United Kingdom
cloud environments – evaluate cloud environments and provide recommendations for performance optimisation, security, cost reduction and resource efficiency. Ensure compliance with industry standards (GDPR, HIPAA, SOC2) and implement best practices for security, IAM, encryption and data protection. INNOVATE with data-driven solutions – create Proof of Concepts and Minimum Viable Products ...

Senior Consultant - Data & AI Architecture

Location
Manchester, England, United Kingdom
evaluate cloud environments and provide recommendations for performance optimisation, security, cost reduction and resource efficiency. You will ensure compliance with industry standards (GDPR, HIPAA, SOC2) and implement best practices for security, IAM, encryption and data protection.We **INNOVATE** with data-driven solutions – You will create Proof of Concepts and Minimum Viable ...

HR & AI Systems Architect Fortive Greater Manchester, United Kingdom + 2 more Posted 2 months ago

Location
Manchester, England, United Kingdom
/file-based flows — connecting Oracle HCM to Eightfold, LMS, payroll, benefits, and IT/ERP systems.* Maintain data integrity, auditability, and compliance (GDPR, SOC 2, HIPAA) across all integration flows.* Supervise and guide integration developers through the full development lifecycle, including code reviews, design reviews, and documentation ...