26 to 50 of 320 SOC 2 Jobs in England

Head of Business Systems & Security New Manchester, England, United Kingdom

Location
Manchester, England, United Kingdom
that keeps the company working. That covers NetSuite, Salesforce, Workato and DealHub among others, the integration layer and data definitions beneath them, SOC 2 and access control, and the full device and application estate across our UK, US and Portugal teams. It is a broad, senior remit with … integrations that connect them, and the data governance underneath. Set the architecture, operating model and roadmap for how Reachdesk uses its systems. Own the SOC 2 Type II programme, the security policy set and the risk register as the accountable business owner. Own identity and access management, joiner ...

Head of Business Systems & Security New Birmingham, England, United Kingdom

Location
Birmingham, England, United Kingdom
that keeps the company working. That covers NetSuite, Salesforce, Workato and DealHub among others, the integration layer and data definitions beneath them, SOC 2 and access control, and the full device and application estate across our UK, US and Portugal teams. It is a broad, senior remit with … integrations that connect them, and the data governance underneath. Set the architecture, operating model and roadmap for how Reachdesk uses its systems. Own the SOC 2 Type II programme, the security policy set and the risk register as the accountable business owner. Own identity and access management, joiner ...

IT Operations Manager

Location
Greater London, England, United Kingdom
when necessary to support them. You will own the IT strategy and roadmap, service performance, vendor procurement outcomes, and the IT control environment, including SOC 2, Cyber Essentials, and GDPR-related IT controls. You will plan and manage the project portfolio, hold vendors and the team to account … outcome, the Indeed relationship, and vendor performance Security, Risk & Compliance: Own the IT control environment and security posture, including policy, access standards, SOC 2, Cyber Essentials, GDPR-related IT controls, and audit outcomes. Direct the team's evidence gathering and control maintenance, and represent IT on security and ...

SOC Lead

Location
Farnborough, England, United Kingdom
Defence and National Security missions. Our teams work on complex problems where reliability, security, and speed of innovation matter. We’re looking for a SOC Lead who enjoys solving difficult technical challenges and wants their work to have real operational impact. What You’ll Do As a SOC … Lead, you’ll lead the everyday operation, development, and continuous improvement of the 24/7 Consolidated Security Operations Centre (SOC). You will be responsible for overseeing all Consolidated SOC functions, managing a team, and ensuring the delivery of high-quality SOC services including ...

Remote Associate, SOC Assessment

Hiring Organisation
Coalfire
Location
Merseyside, United Kingdom
team members to effectively manage project timelines and deliverables. This team focuses on assessments for hyperscale cloud providers, and has a particular expertise in SOC 1, SOC 2, C5, and DSA assessments. This role will evaluate the design and effectiveness of technology controls throughout the business cycle … technology controls throughout the business cycle What You'll Bring Introductory understanding of audit procedures and IT security especially as it relates to SOC 1 and SOC 2 or other regulatory frameworks Experience and demonstrated ability to independently research a technical topic and develop logical testing approaches ...

Remote Associate, SOC Assessment

Hiring Organisation
Coalfire
Location
Gloucestershire, United Kingdom
team members to effectively manage project timelines and deliverables. This team focuses on assessments for hyperscale cloud providers, and has a particular expertise in SOC 1, SOC 2, C5, and DSA assessments. This role will evaluate the design and effectiveness of technology controls throughout the business cycle … technology controls throughout the business cycle What You'll Bring Introductory understanding of audit procedures and IT security especially as it relates to SOC 1 and SOC 2 or other regulatory frameworks Experience and demonstrated ability to independently research a technical topic and develop logical testing approaches ...

Remote Associate, SOC Assessment

Hiring Organisation
Coalfire
Location
Kent, United Kingdom
team members to effectively manage project timelines and deliverables. This team focuses on assessments for hyperscale cloud providers, and has a particular expertise in SOC 1, SOC 2, C5, and DSA assessments. This role will evaluate the design and effectiveness of technology controls throughout the business cycle … technology controls throughout the business cycle What You'll Bring Introductory understanding of audit procedures and IT security especially as it relates to SOC 1 and SOC 2 or other regulatory frameworks Experience and demonstrated ability to independently research a technical topic and develop logical testing approaches ...

Remote Associate, SOC Assessment

Hiring Organisation
Coalfire
Location
Shropshire, United Kingdom
team members to effectively manage project timelines and deliverables. This team focuses on assessments for hyperscale cloud providers, and has a particular expertise in SOC 1, SOC 2, C5, and DSA assessments. This role will evaluate the design and effectiveness of technology controls throughout the business cycle … technology controls throughout the business cycle What You'll Bring Introductory understanding of audit procedures and IT security especially as it relates to SOC 1 and SOC 2 or other regulatory frameworks Experience and demonstrated ability to independently research a technical topic and develop logical testing approaches ...

Remote Associate, SOC Assessment

Hiring Organisation
Coalfire
Location
Cambridgeshire, United Kingdom
team members to effectively manage project timelines and deliverables. This team focuses on assessments for hyperscale cloud providers, and has a particular expertise in SOC 1, SOC 2, C5, and DSA assessments. This role will evaluate the design and effectiveness of technology controls throughout the business cycle … technology controls throughout the business cycle What You'll Bring Introductory understanding of audit procedures and IT security especially as it relates to SOC 1 and SOC 2 or other regulatory frameworks Experience and demonstrated ability to independently research a technical topic and develop logical testing approaches ...

Remote Associate, SOC Assessment

Hiring Organisation
Coalfire
Location
West yorkshire, United Kingdom
team members to effectively manage project timelines and deliverables. This team focuses on assessments for hyperscale cloud providers, and has a particular expertise in SOC 1, SOC 2, C5, and DSA assessments. This role will evaluate the design and effectiveness of technology controls throughout the business cycle … technology controls throughout the business cycle What You'll Bring Introductory understanding of audit procedures and IT security especially as it relates to SOC 1 and SOC 2 or other regulatory frameworks Experience and demonstrated ability to independently research a technical topic and develop logical testing approaches ...

Remote Associate, SOC Assessment

Hiring Organisation
Coalfire
Location
Bracknell forest, United Kingdom
team members to effectively manage project timelines and deliverables. This team focuses on assessments for hyperscale cloud providers, and has a particular expertise in SOC 1, SOC 2, C5, and DSA assessments. This role will evaluate the design and effectiveness of technology controls throughout the business cycle … technology controls throughout the business cycle What You'll Bring Introductory understanding of audit procedures and IT security especially as it relates to SOC 1 and SOC 2 or other regulatory frameworks Experience and demonstrated ability to independently research a technical topic and develop logical testing approaches ...

Digital Third Party Assurance Assistant Manager

Location
Greater London, England, United Kingdom
will support organisations in building trust and confidence with their customers, regulators and business partners. You will have the opportunity to work on SOC 1, SOC 2, ISAE 3402 and ISAE 3000 engagements, certification programmes such as ISO 27001 and ISO 42001, and assurance projects focused … relating to technology, cybersecurity, privacy or operational controls. Strong ITGC testing understanding. Strong understanding of assurance frameworks and standards, including one or more of: SOC 1/ISAE 3402, SOC 2, ISAE 3000, ISO 27001, PCI DSS, HITRUST or other recognised assurance or certification frameworks Understanding ...

Head of Security

Location
Greater London, England, United Kingdom
and close the coverage gaps where some products are today outside the standard tooling. Governance, risk and compliance and vendor management Own ISO 27001, SOC 1, SOC 2 and PCI DSS compliance, the audit calendar, the compliance automation platform and the relationship with our auditors. Work with … software or SaaS company serving regulated enterprise customers, and of facing those customers on security matters. Working knowledge of ISO 27001 and SOC 2, and experience of being accountable for audits and certifications. PCI DSS experience is an advantage. Practical understanding of cloud security on AWS and Azure ...

Senior GRC Content Engineer

Location
Greater London, England, United Kingdom
auditors ask for, how evidence is collected and presented, findings and management responses Familiarity with third‐party/vendor risk: due‐diligence questionnaires, reading SOC 2 reports, contractual security requirements A solid understanding of the technical side of security (networks, systems, cloud, common attack patterns) — enough to keep … taught this material to real audiences (workshops, bootcamps, internal training, university teaching) Experience designing or facilitating tabletop exercises or crisis simulations Exposure to SOC 2 (Type 2) readiness or audit support, PCI‐DSS, or sector frameworks (HIPAA, CMMC, Cyber Essentials) Familiarity with GRC platforms (Drata, Vanta, OneTrust ...

VP of Security & Infrastructure

Location
Greater London, England, United Kingdom
search indexes. Regulatory & Compliance Engineering: Deliver and oversee the performance of technical controls, automated evidence extraction, and ongoing compliance for ISO 27001, ISO 27701, SOC 2 Type 2, HIPAA, EU AI Act, and Cyber Resilience Act. Third-Party & Supply-Chain Risk: Establish evaluation criteria and ongoing governance … and Mobile/Backend Engineering teams to ship user-facing features to roadmap. Audit Track Record: Successful execution and ongoing maintenance of ISO 27001, SOC 2, HIPAA, or equivalent certification frameworks through external audits. Data Privacy Systems: Deep technical experience implementing GDPR, automated data deletion, retention policies, DPIAs ...

Senior GRC & Compliance Lead (SOC 2 Focus)

Location
Greater London, England, United Kingdom
Preply is seeking a Senior GRC Analyst to join our Cybersecurity team. You will shape and scale the governance, risk, and compliance program, ensuring SOC 2 Type 2 readiness and expanding into ISO 27001. You’ll partner with Legal, Engineering, Security, Product, and Finance to translate regulations ...

Staff Cloud Security Engineer (GCP) - Engine by Starling

Hiring Organisation
Starling Bank
Location
London, UK
Employment Type
Full-time
and Access Transparency, relevant to deploying per-market for different banks' regulatorsHands-on experience taking a company through security and compliance frameworks like NIST, SOC 2, ISO 27001 and PCI DSSExperience automating security controls and compliance checks against standards and frameworks including SOC 2 ...

Senior Cloud Security Engineer (GCP) - Engine by Starling

Location
City Of London, England, United Kingdom
Access Transparency, relevant to deploying per-market for different banks' regulators Hands‐on experience taking a company through security and compliance frameworks like NIST, SOC 2, ISO 27001 and PCI DSS Experience automating security controls and compliance checks against standards and frameworks including SOC 2 ...

Staff Cloud Security Engineer (GCP) - Engine by Starling

Location
Greater London, England, United Kingdom
Access Transparency, relevant to deploying per-market for different banks' regulators Hands-on experience taking a company through security and compliance frameworks like NIST, SOC 2, ISO 27001 and PCI DSS Experience automating security controls and compliance checks against standards and frameworks including SOC 2 ...

Security & Compliance Lead: ISO27001/SOC Expert – Hybrid

Location
Wallingford, England, United Kingdom
Dexory is transforming warehousing and logistics with data intelligence in the UK. We seek an Information Security Lead to own ISO 27001, SOC 1 Type 2, and SOC 2 Type 2 programmes, and to respond to customer security due diligence across engineering, product and operations. ...

Senior Trust Security Analyst

Location
Greater London, England, United Kingdom
activities across engineering and security teams, ensuring alignment with agreed timelines and compliance requirements. Audit Audit Interpretation: Read and interpret third-party audit reports (SOC 2 Type II, ISO 27001, penetration test summaries) and represent findings to customers in questionnaires and security responses. Communication & Stakeholder Management Information Translation … experience responding to SIG, CAIQ, VSA, and bespoke enterprise/government security questionnaires. Compliance Knowledge: Working knowledge of Cyber Essentials Plus, ISO 27001, SOC 2 Type II, and at least one of PCI DSS, GDPR/UK GDPR, HIPAA, or FedRAMP. Technical Expertise: Strong technical understanding of security ...

Senior Cybersecurity Consultant

Location
Greater London, England, United Kingdom
creating operational friction. Responsibilities Lead penetration testing and vulnerability assessment engagements Design security architectures for cloud-native and hybrid environments Develop security compliance programs (SOC 2, ISO 27001, GDPR) Conduct incident response planning and tabletop exercises Advise C-level executives on security strategy and risk management Requirements 8+ … years in information security with consulting experience Deep expertise in penetration testing, vulnerability management, and threat modeling Knowledge of compliance frameworks: SOC 2, ISO 27001, GDPR, PCI-DSS Experience with cloud security (AWS Security Hub, Azure Defender, or GCP Security Command Center) CISSP, OSCP, or equivalent certification Nice ...

Compliance Enablement Technical Program Manager

Location
Oxford, England, United Kingdom
program and project management skills, with a track record of delivering across multiple teams. Solid knowledge of cybersecurity frameworks (NIST 800-53, ISO 27001, SOC 2, and/or FedRAMP) and hands‐on audit experience. Enough technical depth to be the team's technical point of contact: comfortable … engineering, cloud security, or security engineering. Prior experience as a technical SME, or as a bridge between compliance and engineering teams. Experience leading a SOC 2 Type II, ISO 27001, FedRAMP, or NIST 800-53 audit end‐to‐end, and familiarity with OSCAL or other compliance‐automation tooling. ...

Head of Information Security

Location
Greater London, England, United Kingdom
assessments, and executive reporting for leadership and the board. Lead Compliance & Certifications: Own end‐to‐end audit readiness for enterprise and defense frameworks, including SOC 2 Type II, ISO 27001, Cyber Essentials Plus, and NIST 800‐53. Partner with Product & Engineering: Embed DevSecOps and secure SDLC practices into … cloud security (AWS/GCP), container isolation, cryptography, and network security. Audit & Compliance Track Record: Proven experience taking a high‐growth technology company through SOC 2 Type II or ISO 27001 certifications from start to finish. Stakeholder Management: Exceptional ability to bridge technical security requirements with business strategy ...

Cyber Security Lead

Hiring Organisation
Oscar Technology
Location
London, South East England, United Kingdom
Employment Type
Full-Time
Salary
£115,000 - £135,000 per annum
network segmentation, encryption, logging and monitoring Own security controls around identity, permissions, tenant isolation, audit trails and incident response Lead security assurance activity covering SOC 2, ISO 27001 and wider customer security requirements Support enterprise customer security reviews, questionnaires and due diligence while helping shape security standards across … experience across threat modelling, OWASP and secure software development Good understanding of cloud security, identity, access controls, encryption and monitoring Experience delivering or implementing SOC 2 and/or ISO 27001 programmes Experience supporting enterprise security reviews, questionnaires, audits or customer due diligence Strong communication skills with ...