SOC Analyst

Posted 2ds ago

Employment Information

Education
Salary
Experience
Job Type

Report this job

Job expired or something wrong with this job?

Job Description

Information Security & Compliance Analyst maintaining SOC 2, ISO 27001 and Cyber Essentials readiness for SyncEzy’s B2B SaaS integration platform. Owning evidence, controls, risks and audit coordination remotely.

Responsibilities:

  • Maintain year-round readiness for SOC 2, ISO 27001 and Cyber Essentials
  • Own routine compliance administration, evidence collection, control monitoring and follow-up
  • Translate compliance requirements into practical actions for Engineering, DevOps and IT teams
  • Identify gaps early, track remediation to closure and maintain clear documentation showing that controls are designed and operating effectively
  • Coordinate compliance activities across SOC 2, ISO 27001 and Cyber Essentials
  • Work closely with Engineering, DevOps, IT and management to keep controls operating effectively and evidence audit-ready throughout the year
  • Move between policy work, evidence collection, endpoint/software compliance, risk tracking, access reviews and audit coordination
  • Serve as the primary owner of routine compliance operations and follow-up, with the Senior Engineering Manager as management and escalation point

Requirements:

  • 2–4 years of relevant experience in GRC, information security compliance, security assurance, IT audit or a closely related role
  • Practical exposure to at least one major security/compliance framework such as SOC 2 or ISO 27001
  • Experience collecting, reviewing and organizing audit evidence and working with technical control owners
  • Strong documentation and policy-writing skills with attention to consistency and audibility
  • Working understanding of cloud environments, identity and access management, endpoint security, vulnerability management, logging, backups and change management
  • Ability to read technical evidence and ask the right questions without needing to be a software engineer or DevOps engineer
  • Strong ownership, follow-up and organizational skills; comfortable tracking multiple recurring compliance activities simultaneously
  • Clear written and verbal communication skills and the ability to work with both technical and non-technical stakeholders
  • Familiarity with Cyber Essentials is strongly preferred
  • Experience with compliance automation or GRC platforms such as Vanta, Drata, Sprinto or equivalent tools
  • Experience working in a SaaS, software-development or cloud-first organization
  • Familiarity with MDM / endpoint-management tooling and software inventory reviews
  • Exposure to AWS, Azure or other public-cloud security controls
  • Experience supporting customer security questionnaires or vendor-risk assessments
  • Relevant certifications such as ISO 27001 Internal Auditor / Lead Implementer, Security+, CISA, CRISC or similar are useful but not mandatory

Benefits:

  • Allowance for Internet / Phone costs
  • Company Hardware provided after completing probation
  • Continuous development and education allowances
  • Flexible Remote work from anywhere (As long as you have good internet and communication)
  • Excellent growth opportunities, growth into leadership for the right candidate
  • Generous policies around leave / social and training allowances
  • End of year Bonuses based on company + Individual performance
  • Zero Commute, Work while you work, play while you play. Perfect Work / Life balance
  • Remote job opportunities and other benefits to be discussed during the interview
  • Flexible, family friendly & fun work environment