boards (CAB) to review infrastructure and application changes from a security perspective. Support internal and external compliance audits by gathering evidence, ensuring policy alignment, and reporting findings. Collaborate with SOC, DevOps, and IT operations teams to integrate security automation and build secure-by-design practices. Support the IT helpdesk with complex application andsystem security issues. Patch and secure … Entra ID, Intune, and AWS IAM/Security Services. Strong background in cloud security (AWS/Azure), including the shared responsibility model. Familiarity with compliance frameworks (ISO 27001, GDPR, SOC2, NIST). Hands-on experience with EDR tools (CrowdStrike, Defender for Endpoint) and SIEM/SOAR platforms. Basic scripting for automation and reporting using PowerShell or Python. … and vulnerability remediation. Desirable Qualifications Certifications such as CISSP, CISM, Security+, AWS Security Specialty, AZ-500, or MS-500 . Experience working in or with a Security Operations Centre (SOC) . Familiarity with DevSecOps , infrastructure-as-code, or cloud-native security practices. Competitive basic salary Pension and life assurance Enviable discounts Gym Discounts Summer Hours - 3pm Friday finish Half More ❯
London, England, United Kingdom Hybrid / WFH Options
RemoFirst
ability to align engineering initiatives with business goals. What you'll be doing: Compliance & Security: Lead and support the organization's efforts to maintain and expand ISO 27001 andSOC2 Type I & II compliance Own IT security practices across infrastructure, product, and corporate environments Oversee IT support operations, access provisioning, device management, and related systems Engineering Excellence … you’ll need: 10+ years of experience in engineering leadership roles, with a strong track record of building and scaling engineering teams Proven experience leading companies through ISO 27001 andSOC2 Type I & II compliance processes Strong knowledge of modern software development practices, cloud infrastructure (preferably AWS), and DevOps culture Experience managing IT operations and security functions within a remote … your chances of interviewing at RemoFirst by 2x Sign in to set job alerts for “Vice President of Engineering” roles. Vice President of Engineering - ThriveCart London, England, United Kingdom 2 months ago Northern Ireland, United Kingdom £100,000.00-£125,000.00 17 hours ago Director of Engineering – Core Services, Platform & Developer Experience London, England, United Kingdom 2 weeks ago More ❯
London, England, United Kingdom Hybrid / WFH Options
RemoFirst
ability to align engineering initiatives with business goals. What you'll be doing: Compliance & Security: Lead and support the organization's efforts to maintain and expand ISO 27001 andSOC2 Type I & II compliance Own IT security practices across infrastructure, product, and corporate environments Oversee IT support operations, access provisioning, device management, and related systems Engineering Excellence … you’ll need: 10+ years of experience in engineering leadership roles, with a strong track record of building and scaling engineering teams Proven experience leading companies through ISO 27001 andSOC2 Type I & II compliance processes Strong knowledge of modern software development practices, cloud infrastructure (preferably AWS), and DevOps culture Experience managing IT operations and security functions within a remote … Engineering jobs in United Kingdom . Vice President of Engineering - ThriveCart London, England, United Kingdom 3 months ago London, England, United Kingdom 1 week ago Northern Ireland, United Kingdom 2 days ago United Kingdom $180,000 - $220,000 2 days ago London, England, United Kingdom 2 weeks ago Product & Services Marketing Director EMEA Senior Director Analyst, AI More ❯
evaluation of risk, as well as using GRC tools and guidance developed for Risk mitigation. Practical knowledge of information security standards and risk assessment frameworks such as ISO 27001, SOC2, NIST 800-32 Strong knowledge of cyber controls, policies, and procedures. Experience of delivering metrics for senior level audiences. Demonstrate analytical and problem-solving skills. Ability to More ❯
St. Albans, Hertfordshire, United Kingdom Hybrid / WFH Options
Deloitte LLP
evaluation of risk, as well as using GRC tools and guidance developed for Risk mitigation. Practical knowledge of information security standards and risk assessment frameworks such as ISO 27001, SOC2, NIST 800-32 Strong knowledge of cyber controls, policies, and procedures. Experience of delivering metrics for senior level audiences. Demonstrate analytical and problem-solving skills. Ability to More ❯
Reading, Berkshire, United Kingdom Hybrid / WFH Options
Deloitte LLP
evaluation of risk, as well as using GRC tools and guidance developed for Risk mitigation. Practical knowledge of information security standards and risk assessment frameworks such as ISO 27001, SOC2, NIST 800-32 Strong knowledge of cyber controls, policies, and procedures. Experience of delivering metrics for senior level audiences. Demonstrate analytical and problem-solving skills. Ability to More ❯
Guildford, Surrey, United Kingdom Hybrid / WFH Options
Deloitte LLP
evaluation of risk, as well as using GRC tools and guidance developed for Risk mitigation. Practical knowledge of information security standards and risk assessment frameworks such as ISO 27001, SOC2, NIST 800-32 Strong knowledge of cyber controls, policies, and procedures. Experience of delivering metrics for senior level audiences. Demonstrate analytical and problem-solving skills. Ability to More ❯
Information Security; Excellent interpersonal, written and oral communication skills, and ability to assimilate easily into teams; Strong technical skills and a working knowledge of SOX IT General Controls, COSO, SOC 1, andSOC2; Awareness of ISO 27001, NIST standards, HIPAA, FAIR, and other relevant standards; Effective analytical and critical thinking abilities; Entrepreneurial nature, self-motivated, ethical More ❯
agency group. Cybersecurity & Compliance Own the organization’s cybersecurity end-to-end strategy— tech platforms, monitor, assess, and mitigate risks. Ensure compliance with data protection regulations (e.g., GDPR, ISO, SOC2). Develop and enforce IT policies, disaster recovery, and business continuity plans. Service Management & Support Manage IT support functions, ensuring responsive and high-quality service to employees. … notified about new Director of Information Technology jobs in London Area, United Kingdom . Harrow, England, United Kingdom 12 hours ago Director - Cloud Strategy & Transformation London, England, United Kingdom 2 weeks ago Solutions Director (Hospitality and F&B) London, England, United Kingdom 2 weeks ago London, England, United Kingdom 5 days ago Mergers and Acquisitions Director - Up To … Kingdom 1 month ago London, England, United Kingdom 1 month ago London, England, United Kingdom 1 day ago Senior Director of Governance, Risk, Compliance & Privacy London, England, United Kingdom 2 weeks ago Assistant Director-Finance and Business Services Harlow, England, United Kingdom 6 months ago London, England, United Kingdom 1 day ago Senior Director, Head of IT Service Delivery More ❯
London, England, United Kingdom Hybrid / WFH Options
Starling Bank
Go and other languages while contributing to open-source tools so we can utilise them Experience in automating security controlsand compliance checks against standards and frameworks which include SOC2, ISO 27001, PCI DSS/3DS Thorough understanding … of the incident response process (preparation, identification, containment, eradication, recovery, lessons learned) What skills are desirable: Hands on experience taking your company through security and compliance frameworks like NIST, SOC2, ISO27001, PCI-DSS Experience with Infrastructure as Code and infrastructure provisioning tools (Cloudformation, Terraform) Expertise in Kubernetes, securing clusters and meshes (Cilium is preferable), networking best practices and RBAC implementation More ❯
of security frameworks such as ISO/IEC 27001, NIST CSF, and others as required. Certifications & Audits: Oversee and drive certification and re-certification efforts for Cyber Essentials Plus, SOC2 Type 2, and other relevant regional or industry-specific standards across EMEA, Americas and Asia. Compliance & Regulation: Analyse global laws and regulatory requirements to ensure the … RFPs and security-related queries. Qualifications 5+ years of hands-on experience in information security governance, risk, and compliance. Deep experience leading and maintaining ISO 27001, NIST CSF, andSOC2 Type 2 programs. Proven track record with certification efforts like Cyber Essentials Plus and local/regional compliance standards across EMEA, Americas and Asia. Strong understanding … Drata, OneTrust) Familiarity with regulatory frameworks like EU GDPR and DORA Background in customer trust, sales enablement, or due diligence support Additional Information Contributory personal pension plan: - Minimum: Employee 2% and Employer 7%. Employer matches contributions in 1% increments to a maximum of: Employee 5% and Employer 10% Life Assurance – 4 times annual salary Group Income Protection Private More ❯
service integration. Experience with test approaches for large-scale system deliveries. Demonstrable architecture skills and experience to an industry benchmarked level. Expertise in compliance standards such as GDPR, HIPAA, SOC2, and ISO 27001. Key Responsibilities: Provide technical leadership and mentorship to client technical teams, guiding them through complex technical challenges and architectural decisions. Develop solutions that conform to organisational standards More ❯
Liverpool, England, United Kingdom Hybrid / WFH Options
MFK Recruitment
are still with the company and really enjoying their roles! As an IT Systems Specialist, the role will ensure seamless onboarding, lead IT infrastructure projects, and support compliance initiatives (SOC2 Type II and ISO 27001 audits). You will manage our core tools (Google Workspace, JumpCloud, HubSpot, 1Password, Jira) while collaborating across teams to optimize workflows and security. IT Systems … ensure compliance with access policies. Project Leadership: Migrate systems (e.g., email groups, Jira → HubSpot), implement SSO via JumpCloud, and manage tool integrations. Compliance Support: Partner with Vanta to maintain SOC2/ISO 27001 readiness; document controls, remediate findings, and prepare audit materials. IT Operations: Troubleshoot issues, manage device inventory, and enforce security policies (MFA, endpoint protection). Process Improvement: Automate … Requirements: 3-5 years in IT support, systems administration, or compliance-focused roles. Hands-on experience with Google Workspace, Jira, SSO tools (e.g., JumpCloud), and MDM solutions. Familiarity with SOC2 Type II and ISO 27001 frameworks (audit processes, control implementation). Strong project management skills; ability to prioritize tasks across multiple stakeholders. Excellent communication skills for translating technical concepts to More ❯
City of London, London, United Kingdom Hybrid / WFH Options
Ultimate Asset
agency group. Cybersecurity & Compliance Own the organization’s cybersecurity end-to-end strategy— tech platforms, monitor, assess, and mitigate risks. Ensure compliance with data protection regulations (e.g., GDPR, ISO, SOC2). Develop and enforce IT policies, disaster recovery, and business continuity plans. Service Management & Support Manage IT support functions, ensuring responsive and high-quality service to employees. More ❯
agency group. Cybersecurity & Compliance Own the organization’s cybersecurity end-to-end strategy— tech platforms, monitor, assess, and mitigate risks. Ensure compliance with data protection regulations (e.g., GDPR, ISO, SOC2). Develop and enforce IT policies, disaster recovery, and business continuity plans. Service Management & Support Manage IT support functions, ensuring responsive and high-quality service to employees. More ❯
South East London, England, United Kingdom Hybrid / WFH Options
Ultimate Asset
agency group. Cybersecurity & Compliance Own the organization’s cybersecurity end-to-end strategy— tech platforms, monitor, assess, and mitigate risks. Ensure compliance with data protection regulations (e.g., GDPR, ISO, SOC2). Develop and enforce IT policies, disaster recovery, and business continuity plans. Service Management & Support Manage IT support functions, ensuring responsive and high-quality service to employees. More ❯
hard multi-tenant isolation of sandboxed environments, implementing least-privilege IAM principles, establishing secret-less CI/CD pipelines, and generating auditable Software Bill of Materials (SBOMs) to meet SOC2and GDPR requirements. The ideal Senior Platform Engineer will have experience with the following: Deep and practical knowledge of AWS services. A strong product-centric approach to … United Kingdom 3 weeks ago London, England, United Kingdom 3 weeks ago London, England, United Kingdom 1 week ago Graduate Software Engineer – ML Data Platform London, England, United Kingdom 2 weeks ago London, England, United Kingdom 1 week ago London, England, United Kingdom 6 days ago London, England, United Kingdom 5 days ago London, England, United Kingdom 1 day … ago London, England, United Kingdom 2 weeks ago Watford, England, United Kingdom 1 month ago Isleworth, England, United Kingdom 22 hours ago Platform Engineer (Remote within the UK) London, England, United Kingdom 1 month ago London, England, United Kingdom 1 week ago London, England, United Kingdom 1 month ago London, England, United Kingdom 1 week ago London, England, United More ❯
SR2 | Socially Responsible Recruitment | Certified B Corporation™
through Series A or B funding rounds. You should be comfortable driving technical direction while supporting and scaling high-performing teams. Experience navigating security and compliance standards such as SOC2 is a strong plus. 👩💻 Key Responsibilities of the Role: Oversee infrastructure operations, prioritising stability, system visibility, and efficient resource usage Take ownership of cloud environments (primarily AWS More ❯
Stevenage, England, United Kingdom Hybrid / WFH Options
JR United Kingdom
through Series A or B funding rounds. You should be comfortable driving technical direction while supporting and scaling high-performing teams. Experience navigating security and compliance standards such as SOC2 is a strong plus. ?? Key Responsibilities of the Role: Oversee infrastructure operations, prioritising stability, system visibility, and efficient resource usage Take ownership of cloud environments (primarily AWS More ❯
Doncaster, England, United Kingdom Hybrid / WFH Options
JR United Kingdom
through Series A or B funding rounds. You should be comfortable driving technical direction while supporting and scaling high-performing teams. Experience navigating security and compliance standards such as SOC2 is a strong plus. ?? Key Responsibilities of the Role: Oversee infrastructure operations, prioritising stability, system visibility, and efficient resource usage Take ownership of cloud environments (primarily AWS More ❯
Coventry, England, United Kingdom Hybrid / WFH Options
JR United Kingdom
through Series A or B funding rounds. You should be comfortable driving technical direction while supporting and scaling high-performing teams. Experience navigating security and compliance standards such as SOC2 is a strong plus. ?? Key Responsibilities of the Role: Oversee infrastructure operations, prioritising stability, system visibility, and efficient resource usage Take ownership of cloud environments (primarily AWS More ❯
Edinburgh, Scotland, United Kingdom Hybrid / WFH Options
JR United Kingdom
through Series A or B funding rounds. You should be comfortable driving technical direction while supporting and scaling high-performing teams. Experience navigating security and compliance standards such as SOC2 is a strong plus. ?? Key Responsibilities of the Role: Oversee infrastructure operations, prioritising stability, system visibility, and efficient resource usage Take ownership of cloud environments (primarily AWS More ❯
Chester, England, United Kingdom Hybrid / WFH Options
JR United Kingdom
through Series A or B funding rounds. You should be comfortable driving technical direction while supporting and scaling high-performing teams. Experience navigating security and compliance standards such as SOC2 is a strong plus. ?? Key Responsibilities of the Role: Oversee infrastructure operations, prioritising stability, system visibility, and efficient resource usage Take ownership of cloud environments (primarily AWS More ❯
Plymouth, England, United Kingdom Hybrid / WFH Options
JR United Kingdom
through Series A or B funding rounds. You should be comfortable driving technical direction while supporting and scaling high-performing teams. Experience navigating security and compliance standards such as SOC2 is a strong plus. ?? Key Responsibilities of the Role: Oversee infrastructure operations, prioritising stability, system visibility, and efficient resource usage Take ownership of cloud environments (primarily AWS More ❯
Bath, England, United Kingdom Hybrid / WFH Options
JR United Kingdom
through Series A or B funding rounds. You should be comfortable driving technical direction while supporting and scaling high-performing teams. Experience navigating security and compliance standards such as SOC2 is a strong plus. ?? Key Responsibilities of the Role: Oversee infrastructure operations, prioritising stability, system visibility, and efficient resource usage Take ownership of cloud environments (primarily AWS More ❯