SOC Analyst
Posted 2ds ago
Employment Information
Report this job
Job expired or something wrong with this job?
Job Description
Information Security & Compliance Analyst maintaining SOC 2, ISO 27001 and Cyber Essentials readiness for SyncEzy’s B2B SaaS integration platform. Owning evidence, controls, risks and audit coordination remotely.
Responsibilities:
- Maintain year-round readiness for SOC 2, ISO 27001 and Cyber Essentials
- Own routine compliance administration, evidence collection, control monitoring and follow-up
- Translate compliance requirements into practical actions for Engineering, DevOps and IT teams
- Identify gaps early, track remediation to closure and maintain clear documentation showing that controls are designed and operating effectively
- Coordinate compliance activities across SOC 2, ISO 27001 and Cyber Essentials
- Work closely with Engineering, DevOps, IT and management to keep controls operating effectively and evidence audit-ready throughout the year
- Move between policy work, evidence collection, endpoint/software compliance, risk tracking, access reviews and audit coordination
- Serve as the primary owner of routine compliance operations and follow-up, with the Senior Engineering Manager as management and escalation point
Requirements:
- 2–4 years of relevant experience in GRC, information security compliance, security assurance, IT audit or a closely related role
- Practical exposure to at least one major security/compliance framework such as SOC 2 or ISO 27001
- Experience collecting, reviewing and organizing audit evidence and working with technical control owners
- Strong documentation and policy-writing skills with attention to consistency and audibility
- Working understanding of cloud environments, identity and access management, endpoint security, vulnerability management, logging, backups and change management
- Ability to read technical evidence and ask the right questions without needing to be a software engineer or DevOps engineer
- Strong ownership, follow-up and organizational skills; comfortable tracking multiple recurring compliance activities simultaneously
- Clear written and verbal communication skills and the ability to work with both technical and non-technical stakeholders
- Familiarity with Cyber Essentials is strongly preferred
- Experience with compliance automation or GRC platforms such as Vanta, Drata, Sprinto or equivalent tools
- Experience working in a SaaS, software-development or cloud-first organization
- Familiarity with MDM / endpoint-management tooling and software inventory reviews
- Exposure to AWS, Azure or other public-cloud security controls
- Experience supporting customer security questionnaires or vendor-risk assessments
- Relevant certifications such as ISO 27001 Internal Auditor / Lead Implementer, Security+, CISA, CRISC or similar are useful but not mandatory
Benefits:
- Allowance for Internet / Phone costs
- Company Hardware provided after completing probation
- Continuous development and education allowances
- Flexible Remote work from anywhere (As long as you have good internet and communication)
- Excellent growth opportunities, growth into leadership for the right candidate
- Generous policies around leave / social and training allowances
- End of year Bonuses based on company + Individual performance
- Zero Commute, Work while you work, play while you play. Perfect Work / Life balance
- Remote job opportunities and other benefits to be discussed during the interview
- Flexible, family friendly & fun work environment














