identify and mitigate risks. Work closely with the security team to integrate best practices into new and existing features. Ensure compliance with security standards and regulations (e.g., ISO 27001, SOC2). Implement monitoring solutions to detect and respond to real-time security incidents. Troubleshoot infrastructure and security issues, performing root cause analysis in production. Mentor junior engineers More ❯
with basic incident response workflows. •Comfort representing engineering in external calls with auditors, pentesters and security vendors; able to explain infrastructure decisions in security terms. •Familiarity with compliance standards (SOC2, ISO 27001, etc) and cloud security postures in AWS, Azure or GCP would be preferable but not essential. Salary & Benefits •Competitive salary and equity grants •Employer pension More ❯
Central London, London, United Kingdom Hybrid / WFH Options
Invitise Ltd
Microsoft Purview, Compliance Manager and related compliance tools - essential Entra ID (Azure AD), Conditional Access and Identity Governance Data Loss Prevention, sensitivity labels and insider risk management ISO 27001, SOC2, GDPR and NIS2 frameworks PowerShell scripting and use of Microsoft Graph API Working across cloud, infrastructure and application teams Certifications required: AZ-500 SC-100 (or working More ❯
large, complex technology programmes involving multiple concurrent projects with significant experience of delivering through offshore/nearshore strategic vendors. Knowledge of security frameworks & standards (ISO 27001, NIST, CIS, GDPR, SOC2) Be experienced in 'hands on' technology software delivery from initiation to implementation. Have knowledge of programme and project management methodology and managing full lifecycle of programmes from More ❯
and scaling strategies. Train and mentor junior team members and client staff on Splunk usage and management. Assist with security monitoring, incident detection, and compliance initiatives (eg, PCI, HIPAA, SOC2). Required Skills and Experience: Minimum 10 years of total IT experience with 7+ years dedicated to Splunk . Splunk Consultant-level certification (eg, Splunk Certified Consultant I/II More ❯
risks and deploy effective remediation measures. Monitor systems, networks, and logs then Investigate security breaches, incidents, and other cybersecurity events. Oversight of compliance for regulatory compliance requirements, such as SOC2, HIPAA, ISO 27001, GDPR etc, and ensure our systems adhere to these standards Conduct security awareness training sessions, enabling the business. Who you are Cloud security enthusiast - You're comfortable More ❯
procedures or guidelines acrossthe organisation. • Development of new organizational processes within the organization. • Ensure the organization's internal regulatory compliance. • Monitor compliance with regulations such as ISO27001, NIST, NIS2, SOC2, ENS, or ANSSI. • Maintenance of Information Security KPIs for the maintenance of existing certifications. • Analysis and management of the authorization of HR, IT, TECH and business processes. • Identify and manage … French (B2). Ability to speak Spanish to C1 level desired. Ability to communicate clearly with technical and non-technical stakeholders at all levels of the business. Experience supporting SOC2,NIS2, ISO 27001, or GDPR compliance programs. Knowledge of SaaS architecture and cloud platforms (e.g., AWS, Azure, GCP). Familiarity with penetration testing methodologies and remediation workflows. More ❯
security requirements in digital health, life sciences, or FDA-regulated software environments Proven track record managing security and compliance under HIPAA, FDA, and NIST Knowledge of GDPR, ISO 27001, SOC2and international security standards Experience with cloud-native environments (e.g., AWS), data encryption, identity management, and secure software development practices Strong communicator who can translate security priorities More ❯
Telford, England, United Kingdom Hybrid / WFH Options
Vallum Associates
in PAM technologies (e.g., CyberArk Defender/Sentry, BeyondTrust Certified). • Experience with scripting (PowerShell, Bash, Python) for automation and discovery. • Knowledge of compliance frameworks such as ISO 27001, SOC2, PCI-DSS, or NIST. Priyanka Sharma Senior Delivery Consultant Office: 02033759240 Email: psharma@vallumassociates.com More ❯
East London, London, United Kingdom Hybrid / WFH Options
A&O Shearman
access control mechanisms implemented on the firms AI products to ensure they are fit for purpose. Compliance & Governance Ensure compliance with relevant security standards and regulations (e.g., ISO 27001, SOC2) and any emerging AI regulations (e.g., ISO 42001, EU AI Act, UK AI Code of Conduct, GDPR) and ethical guidelines. Standardise a control framework for any AI More ❯
control mechanisms implemented on the firm's AI products to ensure they are fit for purpose. Compliance & Governance Ensure compliance with relevant security standards and regulations (e.g., ISO 27001, SOC2) and any emerging AI regulations (e.g., ISO 42001, EU AI Act, UK AI Code of Conduct, GDPR) and ethical guidelines. Standardise a control framework for any AI More ❯
building reusable and maintainable modules for our teams. Embedding security best practices into the platform by designing and implementing network policies, RBAC, and automated checks to meet enterprise andSOC2 compliance standards. Mentoring other engineers, providing insightful code and design reviews, and documenting platform features and architectural decisions to foster a culture of collaboration and knowledge sharing. … Alex from our People team 30 min technical background call with one of our engineers. Following this, you might receive a small take home assignment/programming task (max 2 - 3h effort) related to our open source platform. This is your chance to prove your skill! Complete the assignment and review together with the CTO Meet the founders Culture … fit call with team members Offer Our process also includes reference and background checks. We aim to respond or provide feedback in 2 or 3 days between each stage of the process. We're usually hiring through Deel as our Employer of Record, except for Germany or Florida where we're hiring directly. WunderGraph is an equal opportunity workplace More ❯
comfortable getting into the code, and knows how to scale quality operations across both onshore and offshore teams . Work full time on a hybrid basis with 1 or 2 days per week in our Swinton - Manchester office. We're looking for a driven self-starter who wants to lead a team as well as still get their hands … Bonus Skills Experience in the HR, Payroll, or workforce management software domain. Familiarity with performance testing tools (e.g., JMeter, Gatling). Experience with security, audit, or compliance testing (e.g., SOC2, GDPR). ISTQB or similar QA certification. Benefits & culture Part of the Zellis Group,Moorepayisa team ofover500friendly professionalsacross four offices in Swinton (Manchester), Sheffield, Birmingham and Kochi More ❯
Hemel Hempstead, Hertfordshire, United Kingdom Hybrid / WFH Options
Eckoh
with message-based architectures and tools like RabbitMQ, Kafka, or Kinesis Demonstrable experience building LLM backed systems and applications Understanding of regulatory and compliance frameworks (e.g., PCI, ISO 27001, SOC2, GDPR) and how to apply them in software and cloud system design AWS certifications (e.g., Developer Associate, Data Analytics Specialty) Please click the APPLY button to send More ❯
Hemel Hempstead, Hertfordshire, South East, United Kingdom Hybrid / WFH Options
Eckoh PLC
with message-based architectures and tools like RabbitMQ, Kafka, or Kinesis Demonstrable experience building LLM backed systems and applications Understanding of regulatory and compliance frameworks (e.g., PCI, ISO 27001, SOC2, GDPR) and how to apply them in software and cloud system design AWS certifications (e.g., Developer Associate, Data Analytics Specialty) Please click the APPLY button to send More ❯
and non-technical stakeholders. Adaptive, proactive, and grounded in high-integrity problem solving. Bonus Qualifications Understanding of European regulations (e.g. MiFID II, GDPR, CASS). Familiarity with ISO 27001, SOC2, or similar frameworks. Experience with Agile, Scrum, MSP, or software product lifecycle knowledge. Enhanced leave - 38 days inclusive of 8 UK Public Holidays Private Health Care including More ❯
OSCP. Experience in cloud and mobile application security testing. Familiarity with EASM, threat intelligence, and cyber risk research. Understanding of compliance frameworks (GDPR, NIST, Cyber Essentials+, PCI-DSS, OWASP, SOC2). Global Impact: Your work will help protect the systems that support veterinary care across continents. Cutting-Edge Challenges: Tackle real-world threats in a complex, distributed business environment. Collaborative More ❯
London, South East, England, United Kingdom Hybrid / WFH Options
Addition
from day one. Advising on risks, vulnerabilities and mitigation strategies across the tech estate. Shaping and maintaining internal security standards and governance frameworks. Ensuring compliance with ISO 27001, GDPR, SOC2, PCI-DSS and similar regulations. Collaborating with IT, business stakeholders, and third parties to drive secure delivery. Supporting incident response and proactively planning for emerging threats. Translating More ❯
team Good numeracy and organisational skills, with attention to detail Critical competencies – technical fit Good understanding of at least one audit framework; PCI DSS, ISO 27001, Cyber Essentials, NIST, SOC2, NIS2, Microsoft 365 Certification, etc. Ability to deliver, without supervision/support, at least one Cyber Practice GRC service Aptitude for understanding, interpreting, and applying objective standards More ❯
in SaaS architecture, especially as it relates to multi-tenancy, secure integrations, or search infrastructure. Previous work on global or multi-region product rollouts with compliance considerations (e.g., GDPR, SOC2, ISO 27001). Why You'll Love Working at Actionstep Build products that power the world's most impactful legal work. Work in a collaborative, mission-driven More ❯
XDR, Purview, Entra ID, Azure Policy. - Hands-on experience integrating or piloting AI agents or LLMs in operational workflows. - Knowledge of compliance standards such as NIST, HIPAA, FedRAMP, PCI, SOC2, or HITRUST. - Security certifications such as SC-200, GCSA, or equivalent. Microsoft is an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to age, ancestry More ❯
IT Compliance Auditor In the United Kingdom - London Simon-Kucher is a global consultancy with more than 2,000employees in 30+ countries. Our sole focus is on unlocking better growth thatdrives measurable revenue and profit for our clients. We achieve this by optimizingevery lever of their commercial strategy - product, price, innovation,marketing, and sales - based on deep insights into … cybersecurity. Have at least 4-5 years of experience in similar audit roles within international organizations. Have hands-on experience with auditing of either ISO 2700x standards, BSI Grundschutz, SOC2 Type II, or similar standards covering information security and information security management. Certifications in information security auditing are a plus. Experienced in audit planning, including scope definition More ❯
or data engineering roles-especially in settings that integrate governance tightly into data platform design. Familiarity with privacy-by-design , data minimization , and regulatory standards including GDPR, ISO 27001, SOC2, and PCI DSS. Strong analytical and communication skills - capable of translating technical, regulatory, and business requirements into actionable solutions across teams. What We Offer: Fully remote andMore ❯
Fleet, Hampshire, United Kingdom Hybrid / WFH Options
Minutes To Seconds
ELK/EFK) stacks Preferred Qualifications Experience integrating Kubernetes with OpenStack and Magnum Knowledge of Rancher add-ons: Fleet, Longhorn, CIS Scanning Familiarity with compliance-driven infrastructure (PCI, FedRAMP, SOC2) Certifications: CKA, CKS, or Rancher Kubernetes Administrator Strategic thinker with strong technical judgment and execution ability Calm and clear communicator, especially during incidents or reviews Mentorship-oriented; supports team learning More ❯
least two backend languages i.e. Python, Node.js, Go - Familiar with frontend frameworks i.e. React, Angular, Vue.js - Strong knowledge of security scanning, secrets management, IAM policies, and compliance frameworks (ISO27001, SOC2, CIS Benchmarks). - Proven ability to lead technical initiatives, mentor others, and collaborate with distributed teams. Experience Requirements Deep experience with infrastructure-as-code (Terraform, Pulumi), CI More ❯