and enforce comprehensive cloud security policies, standards, and procedures that govern cloud infrastructure, services, and containerised workloads. Drive compliance initiatives for security frameworks such as CIS Benchmarks, NIST, andSOC2, ensuring policies are consistently applied across the organization. Cloud Migration & Native Infrastructure Support : Provide expert guidance and hands on support to teams migrating workloads and applications to cloud-native infrastructure … and cloud security policies, identifying areas for improvement and optimizing the security infrastructure. More information: Enjoy fantastic perks like private healthcare & dental insurance, a generous work from abroad policy, 2-for-1 share purchase plans, extra festive time off, and excellent family-friendly benefits. We prioritise career growth with clear career paths, transparent pay bands, personal learning budgets, andMore ❯
infrastructure and software delivery. Automate audit evidence collection, change tracking, and access management (e.g., HashiCorp Vault, OPA, AWS IAM). Ensure all systems meet internal and regulatory audit requirements (SOC2, GDPR, etc.). Infrastructure & Automation Champion infrastructure-as-code (IaC) using Terraform, Helm, and Kubernetes for scalable cloud and hybrid deployments. Optimise infrastructure cost, elasticity, and resilience through autoscaling, canary … tools, and automation frameworks. Excellent leadership, communication, and stakeholder management skills. Certifications: AWS Certified Solutions Architect, CKA/CKAD, or relevant DevOps/SRE certs. Familiarity with ISO/SOC2/GDPR compliance frameworks and evidence collection automation. Unless explicitly requested or approached by SS&C Technologies, Inc. or any of its affiliated companies, the company will not accept unsolicited More ❯
for scalable, secure, and efficient software delivery and monitoring. Security is critical to our application, used by large enterprise customers; this role will be responsible for enhancing our standards (SOC2and ISO27001) to maintain a secure environment and protect customer data, as well as maintaining best practices for the cloud. We are looking for someone who can … solid technical skills. Responsibilities: Lead and mentor the platform engineering team, fostering growth, collaboration, and best practices Work with the security team to maintain a secure infrastructure aligned with SOC2and ISO27001 standards Optimize the cloud environment to reduce costs Extend automation solutions for infrastructure and application deployment and monitoring Improve our CI/CD pipeline (TeamCity More ❯
you apart Experience with multiple cloud platforms OpenShift administration and automation experience Industry-recognized cloud and security certifications Hands-on experience implementing technical controls for compliance frameworks such as SOC2and ISO-27001 Experience with serverless architectures and function-as-a-service implementations Knowledge of security scanning and testing tools for infrastructure code Familiarity with secret management solutions Background in More ❯
Swindon, England, United Kingdom Hybrid / WFH Options
Opus Recruitment Solutions
container technologies and orchestration (e.g., Docker, ECS, or EKS) Understanding of network security concepts and protocols Experience with security automation and scripting (Python, Bash) Knowledge of compliance frameworks (e.g., SOC2, ISO 27001, NIST) Relevant certifications are a plus (e.g., AWS Certified Security, CCSP, CISSP) Location and Work Arrangement: - In Swindon Office once a week Compensation: - Competitive salary More ❯
automating and supporting B2B technology like Magento, VTEX, CommerceTools, etc. Good understanding of payments/banking ecosystem (Africa/LatAm). Experience working within compliance environments such as ISO27001, SOC2, PCI-DSS. Even if you don't meet every requirement, we still encourage you to apply. Your unique experiences and perspectives might be just what we're looking for. Benefits More ❯
Loughton, Essex, South East, United Kingdom Hybrid / WFH Options
Profile 29
Implementation: Leverage Azure Security Centre, Microsoft Defender for Cloud, and Microsoft Sentinel for advanced security monitoring. Threat Detection & SOAR Automation: Oversee Security Orchestration, Automation, and Response (SOAR) solutions including SOC Prime. Network & Application Security: Manage Web Application Firewalls (WAF) and Intrusion Prevention Systems (IPS). Vulnerability & Penetration Testing: Review Penetration Testing, vulnerability assessments, and security scanning to proactively identify … security operations. Desirable Certifications: Azure Security Engineer Associate, CISSP, OSCP (Offensive Security Certified Professional), CCSP, or equivalent. Experience with container security (Docker, Kubernetes). Knowledge of NIST, ISO 27001, SOC2 compliance frameworks. Familiarity with Zero Trust security principles. Other Stuff Please only apply if you are able to work from their Debden offices Monday-Friday. Hybrid or More ❯
Loughton, Essex, South East, United Kingdom Hybrid / WFH Options
Profile 29
Implementation: Leverage Azure Security Centre, Microsoft Defender for Cloud, and Microsoft Sentinel for advanced security monitoring. Threat Detection & SOAR Automation: Oversee Security Orchestration, Automation, and Response (SOAR) solutions including SOC Prime. Network & Application Security: Manage Web Application Firewalls (WAF) and Intrusion Prevention Systems (IPS). Vulnerability & Penetration Testing: Review Penetration Testing, vulnerability assessments, and security scanning to proactively identify … security operations. Desirable Certifications: Azure Security Engineer Associate, CISSP, OSCP (Offensive Security Certified Professional), CCSP, or equivalent. Experience with container security (Docker, Kubernetes). Knowledge of NIST, ISO 27001, SOC2 compliance frameworks. Familiarity with Zero Trust security principles. Other Stuff NB: Please only apply if you are able to work from their Debden (IG10) offices Monday-Friday. More ❯
London, England, United Kingdom Hybrid / WFH Options
Starling Bank
particularly in SRE practices and deployment automation, and share your knowledge with the team. Maintaining Compliance: Contribute to ensuring our platform adheres to relevant industry standards such as ISO27001, SOC2, and PCI-DSS. Collaborating and Learning: Work closely with cross-functional teams, share your expertise, and contribute to our vibrant learning culture. Aiming for Greatness: Strive for excellence in everything … technologies, particularly Postgres. Familiarity with observability and monitoring systems, and a solid understanding of database monitoring, analysis, disaster recovery, and performance tuning. Familiarity with compliance standards such as ISO27001, SOC2, and PCI-DSS is a plus. Our Interview process Interviewing is a two way process and we want you to have the time and opportunity to get to know us More ❯
serving) for both Diffusion- and LLM pipelines. Familiarity with data lake architectures and tools like Delta Lake , LakeFS , or Databricks . Knowledge of security and compliance best practices (e.g., SOC2, ISO 27001). Exposure to MLOps platforms or frameworks (e.g., MLflow, Kubeflow, Vertex AI). What We Offer Competitive salary + equity Flexible work environment and remote-friendly culture Opportunities More ❯
London, England, United Kingdom Hybrid / WFH Options
NMI
of the full software development lifecycle (SDLC) and agile methodologies. Experience with relational databases (e.g., MySQL, SQL Server, Oracle). Strong knowledge of security best practices (e.g. OWASP, PCI, SOC2, HIPAA). Proficiency with Google Cloud Platform (GCP), Amazon Web Services (AWS), or similar cloud environments. Demonstrated experience applying modern software development practices in a collaborative, agile environment. Excellent communication More ❯
London, England, United Kingdom Hybrid / WFH Options
CLS-Group
and compliant technology environment. Develop, maintain security remediation oversight, and conduct reviews across all CLS environments, services, and assets, ensuring compliance with industry standards (e.g., CIS, NIST, ISO 27001, SOC 1/2) and internal security policies across all platforms and environments. Lead the security governance mechanism for capturing and managing security baseline adherence to rectify any policy … principles, to reduce risk to an acceptable level. Experience with GRC tools and best practices. RSA Archer is preferred. Proficiency in security frameworks (e.g., NIST CSF, ISO 27001, SOC1,2). Expert knowledge of security assurance practices such as audit, risk assessing, associated lifecycles and key management practices. In an ever-changing cyber landscape to be able to lead … employees have access to our inclusive benefits, including: Holiday - UK/Asia: 25 holiday days and 3 'life days' (in addition to bank holidays). US: 23 holiday days. 2 paid volunteer days so that you can actively support causes within your community that are important to you. Generous parental leave policies to ensure you can enjoy valuable time More ❯
engineering and security engineering in collaboration with security operations teams to drive security measures. Experience in the IAM domain in a cloud-based infrastructure environment. Practical experience of SOX, SOC2, NIST, PCI, ISO, and other security regulations. Experience in analytical and problem-solving skills, including a basic understanding of data analysis techniques. About Meta Meta builds technologies that help people More ❯
Forter is looking for a Senior SOC Engineer to enhance our security operations and ensure robust protection against sophisticated threats. This role is crucial for maintaining our Security Operations as a high-performing and resilient hub that can quickly adapt to emerging security challenges in the fintech industry. You will take the lead in refining our SOC capabilities … by monitoring network traffic, analyzing security incidents, managing security tools, automating processes, and providing expertise to SOC analysts, without having direct management responsibilities. The Senior SOC Engineer collaborates with cross-functional teams to build defenses, respond to incidents, and design strategies for robust cybersecurity posture. Why should you join us? At Forter, you’ll play a critical role … learning mindset with an eagerness to stay updated on cybersecurity trends. It’d be cool if you also: [NOT A MUST] Familiar with industry frameworks (ISO 27001, PCI-DSS, SOC2, NIST, etc.) and regulatory requirements. Have one or more certifications: GCIH, GIAC, CSA, CompTIA CySA+, or other relevant certifications. About us: Digital commerce is built on trust. At every point More ❯
Platform & Security, you'll take a leading role in evolving and maturing our security and compliance posture while building robust infrastructure for our cell manufacturing platform. Mytos is already SOC2 Type 2 audited, but as our customers move from research into production of cell therapies, they need our technology to be suitable for GMP environments. In … and on-premise hardware. Represent Mytos to customers' executive, security, and quality teams, effectively communicating our approach to security, compliance and risk management. Own Mytos' information security program (e.g., SOC2, ISO 27001) and work cross-discipline to bring the business and product into GMP environments. Develop automated testing and validation strategies that build quality into our development … concepts to non-technical stakeholders and interface directly with vendors and customers. At least one of these areas Compliance framework experience : Implementation or maintenance of ISO 27001, ISO 9001, SOC2, or similar frameworks. Regulated industry background : Experience in healthcare, finance, or other regulated domains that required balancing innovation with compliance. Lifecycle management expertise : Experience designing systems that More ❯
Glasgow, Scotland, United Kingdom Hybrid / WFH Options
iO Associates - UK/EU
drive DevOps best practices. Automate infrastructure provisioning and management using Infrastructure as Code (IaC) tools such as Terraform or CloudFormation . Responsibilities Deploy updates and fixes and provide Level 2 technical support. Build tools to reduce the occurrence of errors and improve customer experience. Develop software to integrate with internal back-end systems (data). Perform root cause analysis … production environment. Nice to Have Knowledge of data pipeline and event-driven architectures. Experience with serverless computing (AWS Lambda, Fargate). Familiarity with compliance and security frameworks (ISO 27001, SOC2, etc.). Experience working in an Agile/Scrum environment. Seniority level Entry level Employment type Full-time Job function Information Technology Industries Software Development #J-18808-Ljbffr More ❯
client security teams in implementing and managing security controls. Assist clients with compliance requirements related to various regulations (GDPR, CCPA, HIPAA, PCI DSS, etc.) and standards (e.g., ISO 27001, SOC2). Manage security risk committees to support client cyber risk management practices. Track and manage remediation of security audit and compliance findings for clients. Review security metrics More ❯
you apart Experience with multiple cloud platforms OpenShift administration and automation experience Industry-recognized cloud and security certifications Hands-on experience implementing technical controls for compliance frameworks such as SOC2and ISO-27001 Experience with serverless architectures and function-as-a-service implementations Knowledge of security scanning and testing tools for infrastructure code Familiarity with secret management solutions Background in … Kingdom 1 month ago London, England, United Kingdom 1 week ago London, England, United Kingdom 3 months ago London, England, United Kingdom 3 weeks ago London, England, United Kingdom 2 weeks ago London, England, United Kingdom 3 weeks ago Bexley, England, United Kingdom 1 month ago Isleworth, England, United Kingdom 4 days ago London, England, United Kingdom 4 days … ago London, England, United Kingdom 1 week ago Graduate Software Engineer – ML Data Platform London, England, United Kingdom 2 weeks ago London, England, United Kingdom 1 week ago London, England, United Kingdom 3 weeks ago London, England, United Kingdom 1 week ago London, England, United Kingdom 1 week ago Platform Engineer (Remote within the UK) London, England, United Kingdom More ❯
operations. As a Senior Security Engineer , you will play a pivotal role in safeguarding our systems, networks, and data while ensuring compliance with industry-leading security certifications such as SOC2, HIPAA, and ISO 27001. Your expertise will directly contribute to maintaining trust with our customers and securing their critical information assets. This role sits within the Platform … resolution. Collaborate with cross-functional teams to design, implement, and maintain security controlsand configurations across various systems and platforms. Oversight of compliance for regulatory compliance requirements, such as SOC2, HIPAA, ISO 27001, GDPR etc., and ensure our systems adhere to these standards. Stay updated with the latest industry trends, emerging threats, and security technologies to proactively identify and address More ❯
tools such as firewalls, SIEMs, IDS/IPS, endpoint protection, and encryption solutions. Develop and maintain security policies, standards, and procedures. Support compliance with regulatory requirements (e.g., ISO 27001, SOC2, HIPAA, GDPR). Collaborate with DevOps and IT teams to integrate security into CI/CD pipelines. Research and recommend security enhancements and technologies. Educate staff on More ❯
be a part of a company that simplifies and enhances financial opportunities using state-of-the-art technology. This is a hybrid role (3 days in the office/2 days remote). About your team: Interactive Brokers (IBKR) is seeking a Senior Security Engineer to join our cybersecurity team. In this role, you will be responsible for strengthening … manage cloud security controls in AWS and other cloud environments * Conduct security risk assessments and vulnerability management activities * Ensure compliance with financial industry regulations and frameworks including PCI DSS, SOC2, and other relevant standards * Develop and maintain security documentation, including policies, procedures, and technical guidelines * Lead security awareness initiatives and provide guidance to technical teams on security More ❯
maintain the organization's information security strategy, policies, and procedures, aligning them with business objectives and risk tolerance. Oversee the maintenance and expansion of existing security certifications (ISO 27001, SOC2) and drive initiatives for future certifications (e.g., ISO 22301, DORA). Direct regular security audits, risk assessments, and vulnerability analyses, ensuring that findings are addressed effectively and … security architecture, technologies, best practices and IT-regulations that apply to financial institutions or its outsourcing partners. In-depth knowledge of relevant regulatory requirements and industry standards (ISO 27001, SOC2, GDPR, DORA, etc.). Experience with cloud security (AWS, Google etc.), application security, and DevSecOps practices is a significant plus. Proven experience in developing and implementing security More ❯
pipeline: Integrate security practices into the development pipeline (DevSecOps), ensuring vulnerabilities are identified early. Maintain compliance: Ensure infrastructure and processes comply with industry regulations and standards (e.g., GDPR, ISO, SOC2). Cloud Management Cloud architecture and management: Design, implement, and maintain infrastructure on AWS. Cost management: Monitor cloud costs and optimize resource utilization to control run-rate. More ❯
maintaining security measures to safeguard our information assets. We operate in a highly regulated global SaaS organization that has multiple certifications such as PCI-DSS, ISO/IEC 27001, SOC2and other standards we adhere to. In addition, we have a large, federated customer base that we strive to embed improvements for. You will collaborate with cross-functional teams to … maintaining security measures to safeguard our information assets. We operate in a highly regulated global SaaS organization that has multiple certifications such as PCI-DSS, ISO/IEC 27001, SOC2and other standards we adhere to. In addition, we have a large, federated customer base that we strive to embed improvements for. You will collaborate with cross-functional teams to … challenging projects, with multiple security tools. Have a proven track record of successes. Understanding of security compliance standards relevant to the SaaS industry, such as PCI, GDPR, ISO 27001, SOC2, NIST. An understanding of application security principals, best practices, OWASP/related standards. Knowledge of security frameworks & controls, hardening standards & security best practices. An understanding of network protocols & practices, firewalls More ❯
London, England, United Kingdom Hybrid / WFH Options
Smart Communications, Inc
maintaining security measures to safeguard our information assets. We operate in a highly regulated global SaaS organization that has multiple certifications such as PCI-DSS, ISO/IEC 27001, SOC2and other standards we adhere to. In addition, we have a large, federated customer base that we strive to embed improvements for. You will collaborate with cross-functional teams to … challenging projects, with multiple security tools. Have a proven track record of successes. Understanding of security compliance standards relevant to the SaaS industry, such as PCI, GDPR, ISO 27001, SOC2, NIST. An understanding of application security principals, best practices, OWASP/related standards. Knowledge of security frameworks & controls, hardening standards & security best practices. An understanding of network protocols & practices, firewalls More ❯