Bristol, Gloucestershire, United Kingdom Hybrid / WFH Options
Duel
Engineer to join our growing engineering team. As a company, we are ISO 27001-certified and need to maintain this certification while preparing for SOC2 compliance. Security responsibilities currently sit across different teams, but as compliance requirements increase, a dedicated security engineer is needed to support ongoing … improve Duel's overall security posture. The focus of this role is to help maintain our compliance responsibilities through Secureframe, support ISO 27001 andSOC2 audits, manage security vulnerabilities, and work within engineering to introduce security best practices into development, infrastructure, and operations. We're Looking for … Assist in managing ISO 27001 renewals by maintaining compliance documentation and ensuring key security practices are followed. Help support the company's transition towards SOC2 certification by tracking requirements and implementing necessary security measures. Work within Secureframe to maintain compliance records, ensuring a structured and organised approach More ❯
product roadmap priorities based on client feedback. Respond to technical sections of RFPs, RFIs, and security questionnaires, ensuring alignment with regulatory standards (e.g., ISO27001, SOC2, GDPR). Act as a trusted advisor to clients and internal teams, bridging the gap between commercial goals and technical feasibility. Stay … managers, or exchanges. Proven experience supporting long sales cycles and navigating enterprise procurement processes. Familiarity with industry standards and frameworks such as ISO 27001, SOC2, MiFID II, GDPR, or cloud governance in regulated industries. Skills & Competencies: Excellent communication and presentation skills, with the ability to simplify complex More ❯
london, south east england, United Kingdom Hybrid / WFH Options
Ownera
product roadmap priorities based on client feedback. Respond to technical sections of RFPs, RFIs, and security questionnaires, ensuring alignment with regulatory standards (e.g., ISO27001, SOC2, GDPR). Act as a trusted advisor to clients and internal teams, bridging the gap between commercial goals and technical feasibility. Stay … managers, or exchanges. Proven experience supporting long sales cycles and navigating enterprise procurement processes. Familiarity with industry standards and frameworks such as ISO 27001, SOC2, MiFID II, GDPR, or cloud governance in regulated industries. Skills & Competencies: Excellent communication and presentation skills, with the ability to simplify complex More ❯
our global security posture and ensure regulatory compliance across our AWS and Azure cloud environments. This role involves managing security frameworks, maintaining compliance with SOC2, GDPR, ISO 9001, ISO 27001, and other standards, while implementing best practices to protect our infrastructure, applications, and data. The ideal candidate … and external auditors to maintain a robust security foundation in a rapidly evolving environment. Key Responsibilities Security & Compliance Management Lead and maintain compliance with SOC2, GDPR, ISO 27001, and ISO 9001 by implementing, managing, and improving security controls, policies, and processes, while addressing any compliance gaps to More ❯
Manchester, Lancashire, United Kingdom Hybrid / WFH Options
Taxually
our global security posture and ensure regulatory compliance across our AWS and Azure cloud environments. This role involves managing security frameworks, maintaining compliance with SOC2, GDPR, ISO 9001, ISO 27001, and other standards, while implementing best practices to protect our infrastructure, applications, and data. The ideal candidate … and external auditors to maintain a robust security foundation in a rapidly evolving environment. Key Responsibilities Security & Compliance Management Lead and maintain compliance with SOC2, GDPR, ISO 27001, and ISO 9001 by implementing, managing, and improving security controls, policies, and processes, while addressing any compliance gaps to More ❯
the establishment and implementation of policies and procedures. The CISO is also usually responsible for information-related compliance (e.g. ISO/IEC 27001 andSOC2 certification). What you'll be doing Develop, implement and monitor a strategic, comprehensive enterprise information security and IT risk management program. … of risk management, information security and IT jobs. Knowledge of common regulatory and information security management frameworks, such as ISO/IEC 27001, NIST, SOC2and GDPR. Excellent written and verbal communication skills and high level of personal integrity. Innovative thinking and leadership with an ability to More ❯
Lead the development and execution of the overall security strategy Own and manage risk across infrastructure, applications, and data Drive compliance efforts (ISO 27001, SOC2, etc.) and support audit readiness Build security awareness across the company, including training and best practices Work closely with engineering to embed … scaling business Hands-on knowledge of cloud (AWS, GCP or Azure), application security, and security tooling Familiarity with compliance frameworks such as ISO 27001, SOC2, and GDPR Excellent communication skills with the ability to influence both technical and non-technical stakeholders A strategic mindset, but comfortable working More ❯
london, south east england, United Kingdom Hybrid / WFH Options
Maxwell Bond
Lead the development and execution of the overall security strategy Own and manage risk across infrastructure, applications, and data Drive compliance efforts (ISO 27001, SOC2, etc.) and support audit readiness Build security awareness across the company, including training and best practices Work closely with engineering to embed … scaling business Hands-on knowledge of cloud (AWS, GCP or Azure), application security, and security tooling Familiarity with compliance frameworks such as ISO 27001, SOC2, and GDPR Excellent communication skills with the ability to influence both technical and non-technical stakeholders A strategic mindset, but comfortable working More ❯
book of business. Become a product expert on Vanta and how our platform can be used to improve security posture through our compliance offerings (SOC2, ISO 27001, GDPR, HIPAA, USDP, and Custom Frameworks), Trust Reports, and Risk Management solution. Guide implementation, configuration, and optimization of Vanta Trust … trust in internet businesses by enabling companies to improve and prove their security. From our early days automating security monitoring for compliance standards like SOC2, HIPAA, and ISO 27001 to creating the world's leading Trust Management Platform, our vision remains unchanged. Now more than ever, making More ❯
design, build and maintain solutions in collaboration with our System Architects and Systems Security Officer, ensuring we adhere to our existing ISO 27001 andSOC2 Type 2 obligations. In performing this role your core duties and responsibilities will include, but will not be limited to: Line More ❯
Reading, Oxfordshire, United Kingdom Hybrid / WFH Options
Computer Futures / SThree Group
Specialty. Multi-Cloud Experience: Familiarity with Azure and GCP. Serverless Architectures: Experience with AWS Lambda and serverless design. Compliance Standards: Expertise in GDPR, HIPAA, SOC2, ISO 27001. Advanced Security Practices: Knowledge of zero-trust architecture and security incident response. Why Apply? Influence: Leadership role with the power to shape key More ❯
Specialty. Multi-Cloud Experience: Familiarity with Azure and GCP. Serverless Architectures: Experience with AWS Lambda and serverless design. Compliance Standards: Expertise in GDPR, HIPAA, SOC2, ISO 27001. Advanced Security Practices: Knowledge of zero-trust architecture and security incident response. Why Apply? Influence: Leadership role with the power to shape key More ❯
Loughton, Essex, South East, United Kingdom Hybrid / WFH Options
Profile 29
Microsoft Defender for Cloud, and Microsoft Sentinel for advanced security monitoring. Threat Detection & SOAR Automation: Oversee Security Orchestration, Automation, and Response (SOAR) solutions including SOC Prime. Network & Application Security: Manage Web Application Firewalls (WAF) and Intrusion Prevention Systems (IPS). Vulnerability & Penetration Testing: Review Penetration Testing, vulnerability assessments, and … Security Engineer Associate, CISSP, OSCP (Offensive Security Certified Professional), CCSP, or equivalent. Experience with container security (Docker, Kubernetes). Knowledge of NIST, ISO 27001, SOC2 compliance frameworks. Familiarity with Zero Trust security principles. Other Stuff Please only apply if you are able to work from their Debden More ❯
Employment Type: Contract, Work From Home
Rate: From £500 to £700 per day (direct contract with the client)
Engineer , you will play a pivotal role in safeguarding our systems, networks, and data while ensuring compliance with industry-leading security certifications such as SOC2, HIPAA, and ISO 27001. Your expertise will directly contribute to maintaining trust with our customers and securing their critical information assets. This … teams to design, implement, and maintain security controlsand configurations across various systems and platforms. Oversight of compliance for regulatory compliance requirements, such as SOC2, HIPAA, ISO 27001, GDPR etc., and ensure our systems adhere to these standards. Stay updated with the latest industry trends, emerging threats, and security technologies More ❯
and enforce cloud security best practices, including identity and access management (IAM), data encryption, network security, and compliance with industry regulations (e.g., GDPR, SEC, SOC2). What we look for Bachelor's degree or equivalent experience in Computer Science or related field Proven experience (3 years) as a cloud engineer More ❯
and training from senior security leads. About You: Bachelor's degree in Computer Science, Engineering, or a related field, or equivalent hands-on experience. 2-5 years in a client-facing technical role such as Solutions Consulting, Sales Engineering, or Technical Account Management. Comfort working with APIs, SaaS platforms … patents, journals, bioinformatics). Familiarity with AI/ML applications or data transformation pipelines. Basic understanding of IT security frameworks and cloud compliance (e.g., SOC2, ISO 27001). Examples of past technical prototypes, side projects, or client-facing deliverables. You'll Thrive Here If You: Love solving … Benefits & Perks: 25 days annual leave allowance + bank holidays (Additional time off based on service up to a maximum of 5 extra days) 2 company paid volunteering days Eyecare voucher scheme Private healthcare with Axa Healthcare Private pension with Scottish Widows Parental leave policies Perkbox benefit scheme, we More ❯
Guildford, Surrey, United Kingdom Hybrid / WFH Options
Sycurio
The Information Security Director develops, shapes, and maintains Sycurio's information security capability, driving the attainment and maintenance of the ISO27001, PCI-DSS, andSOC2 compliance. They are the subject matter expert on all things regarding security and compliance, owning the information risk management processes. They are the thought leader More ❯
. Familiarity with systems like Oracle Simphony and Opera, and open API architectures. Understanding of cloud governance, security frameworks, and compliance (GDPR, ISO 27001, SOC2). Proficiency in DevOps and CI/CD practices. Excellent leadership, communication, and stakeholder management skills. Interview Process: Recruiter Call Hiring Manager More ❯
london, south east england, United Kingdom Hybrid / WFH Options
Merlin Entertainments
. Familiarity with systems like Oracle Simphony and Opera, and open API architectures. Understanding of cloud governance, security frameworks, and compliance (GDPR, ISO 27001, SOC2). Proficiency in DevOps and CI/CD practices. Excellent leadership, communication, and stakeholder management skills. Interview Process: Recruiter Call Hiring Manager More ❯
led business before. Bonus points if you’ve helped shape DevOps roadmaps, mentored others, or worked with cost optimisation, security, or compliance frameworks (ISO, SOC2, etc.). This is more than just another DevOps role — it’s a chance to join a company at the perfect stage: profitable, scaling, tech More ❯
london, south east england, United Kingdom Hybrid / WFH Options
Noir
led business before. Bonus points if you’ve helped shape DevOps roadmaps, mentored others, or worked with cost optimisation, security, or compliance frameworks (ISO, SOC2, etc.). This is more than just another DevOps role — it’s a chance to join a company at the perfect stage: profitable, scaling, tech More ❯
security issues in code and applications. Compliance and Governance: Develop and manage Azure policies to ensure compliance with security standards and regulations (ISO 27001, SOC2, GDPR) across our infrastructure. Collaboration: Work closely with development, operations, and security teams to build a culture of security and ensure it More ❯
of Email and Instant Messaging systems and networking technologies. Experience with the ITIL Service Management framework. Experience with audit controls such as COSO, COBIT, SOC2, and DORA 2022. Experience and knowledge of ISO 27001. What you can expect: At Global Relay, there's no ceiling to what More ❯
Experience with other cloud platforms (eg, Azure, GCP). Familiarity with serverless architectures and AWS Lambda. Expertise in compliance standards such as GDPR, HIPAA, SOC2, and ISO 27001. Experience with advanced security practices such as zero-trust architecture, encryption key management, and security incident response. Legacy application migration/transformation More ❯