Enable job alerts via email!

GRC Security Analyst - ISO27001 / SOC 2 / PCI DSS

Starling Bank

City Of London

Hybrid

GBP 50,000 - 70,000

Full time

30+ days ago

Generate a tailored resume in minutes

Land an interview and earn more. Learn more

Job summary

A leading financial institution in the UK is looking for an experienced information security professional to support compliance management for ISO 27001, SOC 2, and PCI DSS. This role involves risk assessment, policy maintenance, and collaboration with various teams. Candidates should have a minimum of 3 years of experience in information security and strong organizational skills. An inclusive workplace is promoted, and all applications are encouraged.

Qualifications

  • Minimum of 3 years of experience in an information security role.
  • Proven experience in supporting and managing compliance for ISO 27001, SOC 2, and PCI DSS.
  • Strong skills in security metrics and reporting.

Responsibilities

  • Support day‑to‑day management of compliance programs focusing on ISO 27001, SOC 2, and PCI DSS.
  • Act as a liaison for internal and external auditors.
  • Participate in risk assessment, identifying and documenting security risks.
  • Develop, update, maintain information security policies.
  • Automate evidence collection for compliance frameworks.
  • Work with Engineering, Product and Security Operations to embed security.

Skills

ISO 27001 compliance
SOC 2 compliance
PCI DSS compliance
Security metrics and reporting
Audit processes
Organization and detail-oriented

Education

CompTIA Security+
Certified Information Systems Auditor (CISA)
Certified in Risk and Information Systems Control (CRISC)
Certified Information Systems Security Professional (CISSP)

Tools

GRC software
Job description
A leading financial institution in the UK is looking for an experienced information security professional to support compliance management for ISO 27001, SOC 2, and PCI DSS. This role involves risk assessment, policy maintenance, and collaboration with various teams. Candidates should have a minimum of 3 years of experience in information security and strong organizational skills. An inclusive workplace is promoted, and all applications are encouraged.
Get your free, confidential resume review.
or drag and drop a PDF, DOC, DOCX, ODT, or PAGES file up to 5MB.