a plus Experienced with procure-to-pay processes, with a focus on intake and orchestration Exposure to procurement system architecture or ERP integration poins Understanding of compliance frameworks (e.g, SOC2, GDPR, DORA, SOX) Experience with intake workflow design and process optimisation Familiarity with API/data integration platforms Background in indirect procurement, especially IT and SaaS categories Experience supporting change More ❯
foundation, holding at least a bachelor's degree from a college or university. Ideally, your background in IT auditing includes hands-on experience with key audits like ISAE 3402, SOC2, and DigiD. Your sharp analytical skills and critical thinking make you a trusted auditor who asks the right questions and delivers thorough evaluations. Beyond technical skills, you are a generous More ❯
inspired by a vision to restore trust in internet businesses by enabling companies to improve and prove their security.From our early days automating security monitoring for compliance standards like SOC2, HIPAA and ISO 27001 to creating the world's leading Trust Management Platform, our vision remains unchanged. Now more than ever, making security continuous-not just a More ❯
with ambiguity and shifting priorities. Nice to Have Experience with tools like CharlieHR, Vanta, or Remote. Exposure to finance, legal, or IT admin workstreams. Familiarity with security frameworks like SOC2, ISO 27001, or HIPAA. A spreadsheet wizard - you love building smart, user-friendly sheets that automate tasks and surface insights. More ❯
inspired by a vision to restore trust in internet businesses by enabling companies to improve and prove their security.From our early days automating security monitoring for compliance standards like SOC2, HIPAA and ISO 27001 to creating the world's leading Trust Management Platform, our vision remains unchanged. Now more than ever, making security continuous-not just a More ❯
by a vision to restore trust in internet businesses by enabling companies to improve and prove their security. From our early days automating security monitoring for compliance standards like SOC2, HIPAA and ISO 27001 to creating the world's leading Trust Management Platform, our vision remains unchanged. Now more than ever, making security continuous-not just a More ❯
Work closely with internal and external R&D teams to integrate security best practices into new and existing features. Ensure compliance with security standards and regulations (e.g., ISO 27001, SOC2). Implement monitoring solutions to detect and respond to security incidents in real-time. Perform root cause analysis and troubleshoot infrastructure and security-related issues in production. Mentor junior engineers More ❯
third country, outside of the EEA, when it is processed by Greenhouse. Greenhouse meet the technical and organisational data security measures outlined in the GDPR Article 32, and are SOC2 Type II certified. We do not envisage that any decision will be taken about your application using automated means. More ❯
experience in a customer-facing sales or consulting role Bonus If You: Earned Cloud Solutions Architect Certifications Engaged with platform security & privacy regulatory standards like PCI DSS, HIPAA, andSOC-2 Attained an Undergraduate degree in Computer Science, Engineering or related fields Competitive compensation package, including equity. Learn and Grow - we provide mentorship and send you to events that More ❯
environment Worked on teams self-hosting Next.js on their Kubernetes (k8s) cluster Earned Cloud Solutions Architect Certifications Engaged with platform security & privacy regulatory standards like PCI DSS, HIPAA, andSOC-2 Attained an Undergraduate degree in Computer Science, Engineering or related fields Competitive compensation package, including equity. Learn and Grow - we provide mentorship and send you to events that More ❯
it. We are seeking an experienced Director of Sales Development (NA EAST/EMEA) to drive pipeline generation and new business acquisition across Velocity (20-200 employees) - Upmarket East (2,000+) segments in New York & all of EMEA. This leader will be responsible for a significant portion of our quarterly new business. You'll lead, develop, and scale a … by a vision to restore trust in internet businesses by enabling companies to improve and prove their security. From our early days automating security monitoring for compliance standards like SOC2, HIPAA and ISO 27001 to creating the world's leading Trust Management Platform, our vision remains unchanged. Now more than ever, making security continuous-not just a More ❯
technology solutions that drive productivity. Own system documentation, knowledge management, and IT governance processes. Manage licensing, vendor negotiations, and technology renewals. Security & Compliance Readiness Support enterprise security initiatives including SOC2 prep, phishing simulations, data governance, and quarterly security reviews. Qualifications 7-10+ years in IT, systems operations, or enterprise architecture roles. Strong experience with cloud-based More ❯
by a vision to restore trust in internet businesses by enabling companies to improve and prove their security. From our early days automating security monitoring for compliance standards like SOC2, HIPAA and ISO 27001 to creating the world's leading Trust Management Platform, our vision remains unchanged. Now more than ever, making security continuous-not just a More ❯
by a vision to restore trust in internet businesses by enabling companies to improve and prove their security. From our early days automating security monitoring for compliance standards like SOC2, HIPAA and ISO 27001 to creating the world's leading Trust Management Platform, our vision remains unchanged. Now more than ever, making security continuous-not just a More ❯
by a vision to restore trust in internet businesses by enabling companies to improve and prove their security. From our early days automating security monitoring for compliance standards like SOC2, HIPAA and ISO 27001 to creating the world's leading Trust Management Platform, our vision remains unchanged. Now more than ever, making security continuous-not just a More ❯
existing technology stack, including PostgreSQL, NestJS, PostgREST, and an AngularJS frontend. Define security policies, standards, procedures, and guidelines to align with industry best practices and regulatory requirements (e.g., GDPR, SOC2). Manage security incidents and breaches: Lead incident response efforts, conduct thorough investigations, and implement corrective actions. What we are looking for: 7+ years experience in a Senior/Team More ❯
existing technology stack, including PostgreSQL, NestJS, PostgREST, and an AngularJS frontend. Define security policies, standards, procedures, and guidelines to align with industry best practices and regulatory requirements (e.g., GDPR, SOC2). Manage security incidents and breaches: Lead incident response efforts, conduct thorough investigations, and implement corrective actions. What we are looking for: 7+ years experience in a Senior/Team More ❯
maintaining security measures to safeguard our information assets. We operate in a highly regulated global SaaS organization that has multiple certifications such as PCI-DSS, ISO/IEC 27001, SOC2and other standards we adhere to. In addition, we have a large, federated customer base that we strive to embed improvements for. You will collaborate with cross-functional teams to … maintaining security measures to safeguard our information assets. We operate in a highly regulated global SaaS organization that has multiple certifications such as PCI-DSS, ISO/IEC 27001, SOC2and other standards we adhere to. In addition, we have a large, federated customer base that we strive to embed improvements for. You will collaborate with cross-functional teams to … challenging projects, with multiple security tools. Have a proven track record of successes. Understanding of security compliance standards relevant to the SaaS industry, such as PCI, GDPR, ISO 27001, SOC2, NIST. An understanding of application security principals, best practices, OWASP/related standards. Knowledge of security frameworks & controls, hardening standards & security best practices. An understanding of network protocols & practices, firewalls More ❯
on-call rotations, and foster a culture of blameless post-mortems. Security & Governance Drive infrastructure security best practices across the board, playing a critical role in our journey towards SOC2 compliance. Implement and manage security controls related to IAM, network security (VPCs, security groups), vulnerability scanning, and secrets management. Skills, Knowledge and Expertise Experience: Extensive hands-on experience in a … in GitHub Actions. A strong track record of building out and improving observability stacks (monitoring, logging, tracing). Experience implementing security controlsand working within compliance frameworks (experience with SOC2 is a major plus). Proven ability to mentor and collaborate with other engineers. Technical Skills: Cloud: AWS (EKS, RDS, Lambda, etc.) IaC: Terraform (Expert) Containerisation: Kubernetes, Docker CI/… leave per year on top of annual leave allowance Regular Socials - paid socials Flexible Hours - core business hours 10am to 5pm Focus Fridays - option to WFH every Friday WFH - 2 days per month Remote Working - 5 additional days per year (can be used to WFH or for International Working) Cycle to Work Scheme More ❯
by a vision to restore trust in internet businesses by enabling companies to improve and prove their security. From our early days automating security monitoring for compliance standards like SOC2, HIPAA and ISO 27001 to creating the world's leading Trust Management Platform, our vision remains unchanged. Now more than ever, making security continuous-not just a More ❯
by a vision to restore trust in internet businesses by enabling companies to improve and prove their security. From our early days automating security monitoring for compliance standards like SOC2, HIPAA and ISO 27001 to creating the world's leading Trust Management Platform, our vision remains unchanged. Now more than ever, making security continuous-not just a More ❯
working in a rapidly evolving fluid company is vital. The successful applicant must have experience in a firm that has delivered product to external customers. Knowledge and Experience Required: 2-3 years + experience as a hands-on Technical Support Engineer/Application Support Analyst Hands on experience administering Linux and Windows estates Excellent problem-solving and communication skills … Beneficial Experience: Hands-on experience with Amazon Web Services Hands-on experience with Kubernetes/containerised environments Experience with No-Code tools such as Retool or Appsmith Experience with SOC2/ISO 27001 Certifications. Other required Skillsets/Traits: Experienced in taking ownership, responsibility and accountability of projects end to end. Excellent project management skills Strong written and verbal communication More ❯
subject area. Previously worked within LSEG. Demonstrable record of people management Strong solid understanding of information security compliance frameworks, standards, and auditing practices, such as ISO 27001, 9001, 22301, SOC 1 or 2, PCI DSS 4.0, NIST, Swift and Cyber Essentials Plus ensuring continued certification and attestation. ABOUT US: LSEG (London Stock Exchange Group) is more than a … essential and your responsibility to ensure that candidates applying to LSEG are aware of this privacy notice. Similar Jobs (5) Attestations and Client Audit Analyst D & A (DORA) locations 2 Locations time type Full time posted on Posted 30+ Days Ago Attestations and Client Audit Analyst D & A (DORA) locations 3 Locations time type Full time posted on Posted More ❯
detection, and response using cloud-native security solutions such as Microsoft Defender, Sentinel, and SIEM platforms. Ensure compliance with cloud security frameworks and regulatory requirements (ISO 27001, NIST, GDPR, SOC2, FCA). Conduct regular security risk assessments, penetration tests, and vulnerability management across cloud services. Oversee endpoint security, cloud network and API security for robust protection across all assets Define … Exchange, SharePoint, Teams), Azure cloud infrastructure, and security tools such as Microsoft Defender and Sentinel. Security & Compliance: Deep knowledge of security frameworks (ISO 27001, NIST, CIS), compliance requirements (GDPR, SOC2), and risk management best practices. Identity & Access Management (IAM): Expertise in Azure AD, MFA, Conditional Access, Single Sign-On (SSO), and Privileged Access Management (PAM). Threat Management & Incident Response More ❯
Information Security GRC Manager | ISO27001, SOC2, Azure Security | Global Trading Platform £70–80k base + 10% bonus Hybrid in London Training budget for certifications + conference attendance Strong emphasis on professional autonomy and ethical leadership A newly created opportunity to lead and shape the GRC function of a global financial group at a pivotal time, supporting the secure rollout of … U.S. banking operations, driving ISO27001 andSOC2 maturity, and mentoring an evolving InfoSec team. This is a hands-on manager-level role with real scope: oversight of policy, third-party risk, architectural reviews, and cloud compliance. You'll work closely with the Head of InfoSec to maintain audit readiness, improve security posture, and influence business-wide awareness and accountability. What … you’ll bring: 5+ years in InfoSec, IT Security or Ops within a regulated environment Certification required: CISSP, CISM, CRISC, or equivalent Strong knowledge of ISO27001:2022, SOC2 Type II, NIST CSF, PCI DSS, GDPR, DORA Confident with security risk assessments, audit responses, and policy governance Hands-on cloud security experience: ideally with Azure and the Shared Responsibility Model Comfort More ❯