Edinburgh, Scotland, United Kingdom Hybrid / WFH Options
Kosli
Anchore) Programming and scripting languages (Python, Go, YAML, JSON etc.) A background in financial services or similar regulated industries. Familiarity with compliance frameworks, and security requirements (e.g., ISO 27001, SOC2, SOX, PCI DSS, FedRAMP, FFIEC, NYDFS, and SEC compliance requirements) A track record in consulting , solutions architecture , or technical coaching . Interest in technical sales and supporting More ❯
helping to triage and remediate findings. Security Champion Enablement: Collaborate with engineering teams to build security awareness and develop a network of Security Champions. Incident & Response Readiness: Support Smarsh SOCand security incident response, including root cause analysis and post-mortem reviews for your product(s). Security Compliance & Governance: Ensure alignment with regulatory requirements (SOC2 … Terraform, CloudFormation) and cloud security posture management. Strong understanding of identity & access management (OAuth, OIDC, SAML, JWT) and API security. Knowledge of industry frameworks like NIST, ISO 27001, andSOC 2. Experience driving developer enablement and security training initiatives. Excellent communication and collaboration skills to engage with engineering, product, and leadership teams. Preferred Qualifications Security certifications such as OSCP More ❯
fixing, code maintenance. Ensure that our services communicate with each other seamlessly, have minimal downtime, and recover quickly. Make sure we respect any software security norms (Kiln is a SOC2 Type 1 and Type 2 company). Actively suggest continuous improvement of Kiln's platform and engineering practices. Communicate with other Kiln teams to help them … and smart contracts - check our Tech Blog and Open-Source Contribution Fluent (written and spoken) in French and English. Nice-to-have: Previous experience working within a certified environment (SOC2, ISO 27001, PCI DSS, HIPAA ) Genuine interest in Web3, blockchain, cryptocurrency and smart contracts - check our Tech Blog and Open-Source Contribution About Kiln: Kiln is the leading enterprise-grade More ❯
. ITIL Processes: Knowledge of ITIL processes, particularly asset and configuration management. Compliance Frameworks: Experience working in environments subject to compliance frameworks such as ISO/IEC 27001 or SOC2 is highly valued. Soft Skills: Strong analytical and problem-solving skills, excellent communication and interpersonal skills, and strong leadership and project management skills. What we offer? Competitive … salary commensurate with experience Highly attractive bonus scheme Hybrid model and flexible working with up to 2 days at home Initial 22 days annual leave with future increases, complemented by a flexible buying and selling holiday program Company pension with generous employer contribution Wellbeing Unmind app - puts you in control of your mental health A flexible benefits platform with More ❯
East London, London, United Kingdom Hybrid / WFH Options
A&O Shearman
with mature or evolving capability across all areas of digital security and cyber defence. We align our efforts to the NIST framework and other recognised certifications including ISO27001 andSOC2and strive to keep pace with the continually evolving threat landscape, in support of A&O Shearmans strategy to lead where global complexity creates opportunity. In addition, you will have More ❯
with mature or evolving capability across all areas of digital security and cyber defence. We align our efforts to the NIST framework and other recognised certifications including ISO27001 andSOC2and strive to keep pace with the continually evolving threat landscape, in support of A&O Shearman's strategy to lead where global complexity creates opportunity. In addition, you will More ❯
or a related field. Proven track record in technology risk, third-party risk management, or IT audit. Strong understanding of regulatory frameworks and standards (e.g., ISO 27001, NIST, DORA, SOC2). Evidence of ability to handle complex vendor relationships and risk assessments. Excellent analytical, organisational, and problem-solving skills. Strong written and verbal communication skills, with experience More ❯
security incident history reviews and thorough evaluations of supplier policies and procedures, current security controls, third party pen testing reports, vulnerability management reports, and information security reports such as SOC2 Reports, NIST or ISO 27001 reports, PCI DSS etc). Manage relationships with large third-party suppliers involved in transformative, high-impact projects and Business as usual activities. This included More ❯
interactions and market trends. What Sets You Apart: Experience designing and deploying enterprise security solutions at scale. Understanding of regulatory and compliance frameworks such as NIST, ISO 27001, andSOC2 . Prior experience in a pre-sales or consulting role within cybersecurity or identity security domains. Hands-on scripting knowledge (e.g., PowerShell, Python, Bash) for automation and integration purposes. Additional More ❯
CI/CD processes, bug fixing, and code maintenance. Interact with customers for debugging purposes and product discovery. Make sure we respect any software security norms (Kiln is a SOC2 Type 1 and Type 2 company). Actively suggest continuous improvement of Kiln's platform and engineering practices. Communicate with other Kiln teams to help them More ❯
evaluation of risk, as well as using GRC tools and guidance developed for Risk mitigation. Practical knowledge of information security standards and risk assessment frameworks such as ISO 27001, SOC2, NIST 800-32 Strong knowledge of cyber controls, policies, and procedures. Experience of delivering metrics for senior level audiences. Demonstrate analytical and problem-solving skills. Ability to More ❯
St. Albans, Hertfordshire, United Kingdom Hybrid / WFH Options
Deloitte LLP
evaluation of risk, as well as using GRC tools and guidance developed for Risk mitigation. Practical knowledge of information security standards and risk assessment frameworks such as ISO 27001, SOC2, NIST 800-32 Strong knowledge of cyber controls, policies, and procedures. Experience of delivering metrics for senior level audiences. Demonstrate analytical and problem-solving skills. Ability to More ❯
Reading, Berkshire, United Kingdom Hybrid / WFH Options
Deloitte LLP
evaluation of risk, as well as using GRC tools and guidance developed for Risk mitigation. Practical knowledge of information security standards and risk assessment frameworks such as ISO 27001, SOC2, NIST 800-32 Strong knowledge of cyber controls, policies, and procedures. Experience of delivering metrics for senior level audiences. Demonstrate analytical and problem-solving skills. Ability to More ❯
Guildford, Surrey, United Kingdom Hybrid / WFH Options
Deloitte LLP
evaluation of risk, as well as using GRC tools and guidance developed for Risk mitigation. Practical knowledge of information security standards and risk assessment frameworks such as ISO 27001, SOC2, NIST 800-32 Strong knowledge of cyber controls, policies, and procedures. Experience of delivering metrics for senior level audiences. Demonstrate analytical and problem-solving skills. Ability to More ❯
TechOps. Responsibilities Security Strategy & Governance - Define and continuously refine the technical security roadmap that aligns with business objectives, industry best practice (e.g., NIST CSF, OWASP SAMM), and compliance frameworks (SOC2, ISO 27001, GDPR). Secure SDLC & DevSecOps - Build and maintain guardrails for static/dynamic analysis, container and IaC scanning, SBOM management, and supply-chain security; automate More ❯
modelling) Conduct vulnerability assessments and coordinate remediation efforts. Collaborate with DevOps and IT teams to integrate security into infrastructure and application design and development lifecycles. Support compliance efforts (e.g., SOC2, ISO 27001, etc.) through documentation and control testing. Knowledge sharing with team members and promote a culture of security awareness. Skills & Experience 7+ years of experience in More ❯
authentication, authorization, TLS, and encryption Exposure to Kubernetes (administering, deploying, or developing apps on K8s clusters) Understanding of compliance andsystem hardening in regulated environments (e.g., HIPAA, PCI-DSS, SOC2) Visa is an EEO Employer. Qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, sexual orientation, gender identity, disability or More ❯
Knutsford, Cheshire, United Kingdom Hybrid / WFH Options
Experis - ManpowerGroup
solutions using Terraform to automate provisioning and configuration of Azure resources. Build and maintain secure, scalable, and resilient cloud environments aligned with financial services compliance standards (e.g., ISO 27001, SOC2, PCI-DSS). Collaborate with DevOps, Security, and Application teams to support CI/CD pipelines, monitoring, and incident response. Optimize cloud costs and performance through resource More ❯
East London, London, United Kingdom Hybrid / WFH Options
A&O Shearman
with mature or evolving capability across all areas of digital security and cyber defence. We align our efforts to the NIST framework and other recognised certifications including ISO27001 andSOC2and strive to keep pace with the continually evolving threat landscape, in support of A&O Shearmans strategy to lead where global complexity creates opportunity. In addition, you will have More ❯
effective use of GCP services. DevOps & Security: Maintain robust CI/CD pipelines, collaborating with development teams to streamline deployment. Enhance our security posture, ensuring compliance with standards like SOC-2 and ISO 27001. Diagnose and resolve infrastructure outages and incidents promptly. Documentation & Best Practices: Document infrastructure, systems, and processes comprehensively. Promote DevOps and SRE best practices across the More ❯
fixing, code maintenance. Ensure that our services communicate with each other seamlessly, have minimal downtime, and recover quickly. Make sure we respect any software security norms (Kiln is a SOC2 Type 1 and Type 2 company). Actively suggest continuous improvement of Kiln's platform and engineering practices. Communicate with other Kiln teams to help them … architectural choices and code, and to share software best practices. Fluent (written and spoken) in both French and English. Nice-to-haves: Previous experience working within a certified environment (SOC2, ISO 27001, PCI DSS, HIPAA ) Genuine interest in Web3, blockchain, cryptocurrency and smart contracts - check our Tech Blog and Open-Source Contribution About Kiln: Kiln is the leading enterprise-grade More ❯
operations. Expereince : Essential Prior experience in cybersecurity, risk management, compliance, or governance. Strong understanding of regulatory requirements, security frameworks, and standards such as ISO 27001, NIST CSF, CIS, andSOC 2. Hands-on experience with ISO 27001 implementation and audit readiness. Experience supporting SOC2 readiness and evidence collection. Proficient with risk assessment methodologies and control frameworks More ❯
privacy, and compliance. This role is responsible for driving core activities across quality, risk management, Information Security, data protection, and audit readiness to ensure the organization meets ISO, PCI, SOC2, and other relevant standards. The position helps deliver assurance to stakeholders that PSI prioritizes the security and privacy of its data and systems. This is a full … improvement of GRC processes and tools. Generate and present GRC-related metrics and reports to internal stakeholders and executive leadership. Support and coordinate internal and external audits (e.g., ISO27001, SOC2, etc.), including gathering evidence and managing responses. Assist in third-party and entity-level risk assessments, identifying and mitigating risks through effective controls. Build and maintain cross-functional relationships with More ❯