1 to 25 of 87 Remote/Hybrid SOC 2 Jobs in England

Senior Information Security Analyst (GRC)

Hiring Organisation
Checkout.com
Location
London, United Kingdom
Salary
£ 80 K
while shaping how the function evolves.You will take ownership of Checkout's most complex and high-stakes compliance programmes — PCI DSS v4.0.1, ISO 27001, SOC 2, DORA, and emerging obligations across our global licensed entities — while providing expert guidance to engineering, product, legal, and compliance teams … audit, or a closely related function, ideally within payments, financial services, or fintech.- Deep working knowledge of PCI DSS (v4.0.1 required), ISO 27001, and SOC 2. Practical experience with DORA, NIST CSF, the EU AI Act, or FCA/PRA obligations is strongly preferred.- Demonstrated track record of leading ...

Information Security Analyst II (GRC)

Hiring Organisation
Checkout.com
Location
London, United Kingdom
Salary
£ 80 K
trusted point of contact for internal teams and external assessors.You will work across Checkout's core compliance frameworks including PCI DSS v4.0.1, ISO 27001, SOC 2, and emerging regulatory obligations such as DORA and the EU AI Act, supporting our global footprint across Europe, MENA, APAC, and … audit, or a closely related function, ideally within payments, financial services, or fintech.Practical working knowledge of PCI DSS (v4.0.1 preferred), ISO 27001, and SOC 2. Familiarity with DORA, NIST CSF, or the EU AI Act is a plus.Experience supporting or directly managing external audits and assessments, including evidence collation ...

Senior Security Engineer

Hiring Organisation
Jobleads-UK
Location
Greater London, England, United Kingdom
security design and architecture reviews, paired with the governance and process work that scales the program. You will partner on customer due‐diligence and SOC 2 evidence and turn security controls into repeatable workflows that fit how the business already works. You will apply that lens across … and DevOps to reduce risk through secure design and simplicity, not just added controls. Governance, Risk & Compliance Partner on customer due‐diligence (DDQ) and SOC 2 Type II evidence gathering, keeping compliance sustainable rather than fire‐drilled. Build repeatable security workflows that embed controls into existing engineering processes ...

Information Security Analyst II

Hiring Organisation
Checkout.com
Location
London, United Kingdom
Salary
£ 80 K
solutions, and take them through to completion.How You'll Make an ImpactGovernance, Risk and ComplianceSupport workstreams within Checkout's GRC programme, including ISO 27001, SOC 2, and relevant regulatory obligations across our global licensed entities.Coordinate control evidence collection activities across internal teams, ensuring continuous audit readiness rather than … with credible breadth across the others is the target profile.Practical experience with one or more major compliance frameworks: PCI DSS (v4.0.1 preferred), ISO 27001, SOC 2, DORA, NIST CSF, or equivalent.Experience supporting or managing external audits, assessments, or regulatory engagements including evidence collation and assessor liaison.Demonstrated ability ...

Senior Cybersecurity Consultant

Hiring Organisation
Jobleads-UK
Location
Greater London, England, United Kingdom
creating operational friction. Responsibilities Lead penetration testing and vulnerability assessment engagements Design security architectures for cloud-native and hybrid environments Develop security compliance programs (SOC 2, ISO 27001, GDPR) Conduct incident response planning and tabletop exercises Advise C-level executives on security strategy and risk management Requirements 8+ … years in information security with consulting experience Deep expertise in penetration testing, vulnerability management, and threat modeling Knowledge of compliance frameworks: SOC 2, ISO 27001, GDPR, PCI-DSS Experience with cloud security (AWS Security Hub, Azure Defender, or GCP Security Command Center) CISSP, OSCP, or equivalent certification Nice ...

Information Security Analyst

Hiring Organisation
Checkout.com
Location
London, United Kingdom
Salary
£ 70 K
programme ownership at L3 and beyond.How You'll Make ImpactGovernance, Risk and Compliance- Support workstreams within Checkout's GRC programme, including ISO 27001, SOC 2, PCI DSS, and applicable regulatory obligations across our global licensed entities.- Assist with control evidence collection activities, coordinating with internal teams to gather … updated on changes and project progress.- Contribute to security awareness initiatives, promoting a security-conscious culture across Checkout.What We're Looking forExperience- 1 to 2 years of experience in information security, IT audit, or a closely related function, ideally within payments, financial services, or fintech.- Working knowledge ...

Security & Infrastructure Engineer

Hiring Organisation
Jobleads-UK
Location
Chalfont St. Peter, England, United Kingdom
seeking a hands-on **Security & Infrastructure Engineer** to support and improve our cloud, identity, endpoint and security operations capabilities.This is not a pure SOC role. The successful candidate will work across Microsoft cloud security, endpoint management, vulnerability management, infrastructure support and compliance activities, helping to strengthen the organisation … identity, networking, resilience and platform improvements.* Provide technical escalation support for security and infrastructure-related issues.## ## Governance, Risk & Compliance* Assist with ISO 27001, SOC 2 and similar audit and compliance activities.* Support evidence collection, access reviews, control validation and audit remediation actions.* Contribute to security standards, procedures ...

Information Security & Compliance Manager

Hiring Organisation
Jobleads-UK
Location
Greater London, England, United Kingdom
and compliance posture to leadership in clear, business-oriented terms. Compliance and certifications Drive certification and attestation efforts (e.g., ISO 27001 and/or SOC 2): design and maintain the control framework, own the documentation and evidence, and lead internal and external audits. Build a sustainable, “always-audit … . Strong, practical knowledge of GDPR and UK GDPR and day-to-day data protection. Hands‐on experience with ISO 27001 and/or SOC 2 implementation and audits. Working familiarity with the Microsoft security stack (Entra ID, Defender, Purview, Intune). Experience responding to client/customer ...

Information Security & Compliance Lead (GRC)

Hiring Organisation
Tank Recruitment
Location
Oxfordshire, United Kingdom
Employment Type
Permanent
Salary
£45000 - £55000/annum
Information Security & Compliance Lead (GRC) Job Title: Information Security & Compliance Lead Location: Oxfordshire - Hybrid 2 days per week on site Industry: Enterprise SaaS/Technology Solutions About the Role We are partnering with a fast-growing, globally active software and data solutions enterprise looking to appoint an experienced Lead … . In this position, you will drive the operational security initiatives necessary to achieve and maintain formal security frameworks and attestation standards (including SOC 2 Type I/II lifecycles). You will translate complex trust criteria into practical, sustainable controls, bridge operational gaps, coordinate external audits, and ...

Security GRC Analyst

Hiring Organisation
Lendable
Location
London, United Kingdom
Salary
£ 80 K
organisation.What You’ll Be DoingFramework & Regulatory Alignment: Help maintain, improve, and scale our security compliance programmes, ensuring ongoing alignment with standards such as SOC 2, ISO 27001, and PCI-DSS, as well as regulator expectations and UK GDPR.Risk & Mitigation: Collaborate on identifying security risks across the business - including … Expertise: A strong, foundational understanding of security risk management principles and hands-on experience working with compliance frameworks (e.g. ISO 27001, PCI-DSS, or SOC 2).Risk-First & Pragmatic Mindset: A natural tendency to start with the "why" (the risk) rather than the checklist. You possess the ability ...

Senior Security, Trust & Compliance Lead

Hiring Organisation
Jobleads-UK
Location
Royal Leamington Spa, England, United Kingdom
compliance initiatives across cloud-based and regulated environments Driving audit readiness, compliance programs and evidence-based assurance across frameworks such as ISO 27001, GDPR, SOC 2 and GxP Providing leadership on risk management, governance and security strategy Partnering with customers, auditors and key stakeholders on security reviews, assurance … with experience in several of the following areas: Security leadership, governance, risk and compliance (GRC) Cloud security architecture and security strategy ISO 27001, GDPR, SOC 2, GxP, 21 CFR Part 11 or similar regulated frameworks Audit leadership, customer assurance and certification programs Healthcare technology, pharmaceutical, biotechnology or regulated ...

Compliance Officer

Hiring Organisation
Spectrum IT Recruitment
Location
Milton Keynes, Buckinghamshire, United Kingdom
Employment Type
Permanent
Salary
£45000 - £50000/annum Benefits
Compliance Officer (ISO 27001, SOC2, GDPR) Fully Remote (Visit to the Milton Keynes Office once a month) £45,000 - £50,000 + Bonus & Benefits Are you a hands-on compliance professional who thrives on variety and ownership? Do you have experience delivering ISO, SOC & GDPR audit & compliance projects? Join … and governance is critical. You'll manage and maintain ISO 27001, ISO 9001 and ISO 22301 certifications, lead GDPR and data protection compliance, oversee SOC 2 - Type II controls, coordinate business continuity and disaster recovery activities, and support customer audits and due diligence requests. You'll also play ...

Information Security Analyst ( ISO 27001 and ISO 27018 )

Hiring Organisation
Alfa Financial Software
Location
London, United Kingdom
Salary
£ 80 K
and procedures sharp and our compliance with ISO 27001 and ISO 27018 on point. You'll get involved in SSAE 18/ISAE 3402 SOC 1 Type 2 and SSAE 18 SOC 2 Type 2 assurance audits, spot opportunities to improve our security controls and … organisational skills. You write clear documentation and reports, and you can translate complex requirements for stakeholders at every level. You'll have at least 2 years' experience in a related role. Experience in a regulated industry, familiarity with other information security frameworks and assurance reports, and exposure to Jira ...

InfoSec Engineer

Hiring Organisation
Jobleads-UK
Location
Greater London, England, United Kingdom
work closely with Engineering, Product, Legal, and Leadership to embed security into everything we build, while evolving our compliance posture across ISO-27001 and SOC-2 (including expansion into additional controls). What you’ll do: Own and execute Valarian’s end-to-end information security strategy Lead and … mature our security posture across compliance frameworks, including ISO-27001, SOC 2, and expansion into additional control frameworks Design and implement scalable security architecture across cloud, infrastructure, and applications Partner with Engineering to embed secure‐by‐design principles into development workflows Build, manage, and continuously improve security policies ...

Senior Manager – Application Security

Hiring Organisation
Miro
Location
London, United Kingdom
Salary
£ 100 K
metrics for secure development adoption, vulnerability resolution, and developer engagement.Collaborate with Privacy, Legal, and Compliance teams to ensure alignment with regulatory requirements (ISO 27001, SOC 2, GDPR, and emerging AI regulations).Foster a strong team culture based on collaboration, learning, and continuous improvement.What you’ll need10+ years … scaling developer engagement.Experience leading offensive security programs (penetration testing, red teaming, bug bounty).Practical understanding of governance and assurance frameworks such as ISO 27001, SOC 2, and OWASP SAMM.Familiarity with AI/LLM tooling (e.g., Cursor, GitHub Copilot, custom LLM integrations) and the associated security and governance considerations.Experience ...

GRC Consultant

Hiring Organisation
Jobleads-UK
Location
Greater London, England, United Kingdom
compliance framework across the business Leading PCI DSS compliance initiatives Developing and improving GDPR processes and documentation Supporting security standards such as ISO 27001, SOC 2 and/or Cyber Essentials Creating policies, procedures and governance documentation Building and maintaining risk registers Preparing the business for future audits … roadmap to get everything where it needs to be. Ideally you'll have experience with: Governance, Risk & Compliance (GRC) PCI DSS GDPR ISO 27001, SOC 2 and/or Cyber Essentials Security governance and audit preparation Policy creation and documentation Risk management frameworks Working independently with multiple stakeholders ...

Security Engineer

Hiring Organisation
Jobleads-UK
Location
Greater London, England, United Kingdom
among others. In addition, you will own and continuously improve Intigriti’s threat detection capabilities. This includes running day-to-day Security Operations Centre (SOC) activities, expanding log coverage, and building high-quality detections in our SIEM. You will use frameworks such as MITRE ATT&CK and MITRE D3FEND … availability of company data. Collaborate with the IT System Administrator to manage and enhance the overall network and system security. Incident Response, Threat Detection & SOC Operations Develop, maintain, and run incident response plans to address security incidents promptly and effectively. Run day-to-day SOC operations, including monitoring ...

Product Security Specialist for Medical Devices (Cyber Security)

Hiring Organisation
PA Consulting
Location
London, United Kingdom
Salary
£ 80 K
align with what you want to do. Hybrid working - our approach is to be in the office or on client site a minimum of 2 days per week. Work on a broad variety of projects and tech stacks for clients across seven sectors - no project is ever the same … residual risk after applying compensating security controls Experience implementing and demonstrating compliance to security frameworks such as NIST, IEC, HITRUST, HIPAA, GDPR, ISO 27001, SOC 2 Type 2 and familiarity working with Quality Management Systems Experience working with teams in a structured software development lifecycle process Excellent ...

Senior DevOps Solutions Engineer

Hiring Organisation
Kosli
Location
England, United Kingdom
Cloud platforms (AWS, Azure, GCP) A background in financial services or similar regulated industries Familiarity with compliance frameworks, and security requirements (e.g., ISO 27001, SOC 2, SOX, PCI DSS, FedRAMP, FFIEC, NYDFS, and SEC compliance requirements) A track record in consulting, solutions architecture, or technical coaching. Interest ...

Senior Cloud Security Engineer

Hiring Organisation
Checkout.com
Location
London, United Kingdom
Salary
£ 80 K
alert triage.Map detection coverage against MITRE ATT&CK tactics and techniques. Identify and close visibility gaps across the cloud estate.Maintain alignment to PCI DSS, SOC2, ISO27001 NIST, and CIS frameworks. Produce documentation and evidence to support audit and assurance activities.AI SecurityDesign and implement guardrails for AI/LLM systems, covering … and frameworks: OWASP LLM Top 10, NIST AI RMF.Scripting proficiency in Python, PowerShell, or Bash for security automation.Strong grasp of PCI DSS, NIST CSF, SOC 2, ISO27001, CIS Benchmarks, and MITRE ATT&CK for Cloud.Nice to haveAZ-500, AWS Certified Security – Specialty, or equivalent cloud security certification.Experience integrating ...

Information Security Director

Hiring Organisation
Jobleads-UK
Location
City of Westminster, England, United Kingdom
against cyber threats. We operate in a highly secure global SaaS organization that holds multiple certifications such as PCI‐DSS, ISO/IEC 27001, SOC, HIPAA, IRAP and works with a large, federated customer base. Responsibilities Develop and lead a team of Security Analysts and Engineers, providing management, mentorship … latest security threats, vulnerabilities and mitigation techniques. Advantageous Skills and Experience Experience working on projects ensuring compliance with PCI DSS, ISO/IEC 27001, SOC, HIPAA, IRAP controls. Knowledge of security compliance standards relevant to the SaaS industry such as PCI, GDPR, ISO 27001, SOC 2, NIST. ...

Infrastructure Security Engineer

Hiring Organisation
Blockchain
Location
London, United Kingdom
Salary
£ 80 K
Github Actions, Concourse, CircleCI)Familiarity with maintaining HIDS systems (Wazuh preferred).NICE TO HAVEKnowledge of security standards and governance frameworks (e.g., CIS Benchmarks, NIST, SOC2, ISO 27001, PCI DSS) and how to operationalize them.Hands-on experience with building and maintaining a SIEM comprised of open-source and hosted componentsExperience securing ...

Principal Technology Architect Hybrid Cloud Platforms -Germany, UK, Netherlands

Hiring Organisation
Infosys Technologies
Location
London, United Kingdom
Salary
£ 80 K
Security, Zero Trust & ComplianceEmbed Zero Trust principles across hybrid cloud—identity, segmentation, encryption, and posture control.Align infrastructure with regulatory and compliance frameworks (ISO 27001, SOC2, CIS, NIST).Define security integration patterns across cloud and on‐prem: IAM, PAM, KMS, certificates, secrets management.Partner with security architects to ensure platform designs meet ...

Head of Cloud Architecture

Hiring Organisation
Jobleads-UK
Location
Metropolitan Borough of Solihull, England, United Kingdom
Cloud and Zero Trust principles. Own compliance across multiple jurisdictions, including data residency and sovereignty, mapping controls to relevant frameworks (e.g. ISO 27001, SOC 2, GDPR, regional equivalents) and evidencing them for audit. Govern at scale with Azure Policy, authoring definitions and initiatives, applying them across scopes, and … days holiday plus all UK bank holidays 4x life assurance Enhanced family‐friendly leave – 5 months' full pay for maternity or adoption, plus 2 weeks' fully paid paternity/adoption leave and an extra 2 weeks to use as paid annual leave within 24 months of birth ...

Senior DevSecOps Engineer

Hiring Organisation
Jobleads-UK
Location
Greater London, England, United Kingdom
mandatory security checks. Impress Us More By Having (Desirable) Proven experience working with and adhering to FinTech-related certifications, standards, or frameworks such as SOC2, ISO 27001, PCI DSS, DORA or similar regulated environments. Relevant certifications such as Google Cloud Professional Security Engineer, CKS (Certified Kubernetes Security Specialist), or CISSP. ...