Information Security Lead

Dexory

Verdalsøra

On-site

NOK 1,151,000 - 1,662,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

Private healthcare
Life insurance
Income protection
Pension: 4+% employee with 5% employer
Employee Assistance Programme
25 days holiday
Meals onsite
Team events

Job summary

Dexory is seeking an Information Security Lead to own ISO 27001, SOC 1 Type 2, and SOC 2 Type 2 programmes. You’ll respond to customer security due diligence, build scalable security knowledge, and partner with Sales to unblock deals. Hybrid onsite in Wallingford, with 3 days minimum on site.

Experience in GRC/compliance within B2B SaaS or technology is preferred; robotics/startup background a plus. You will contribute to incident response and risk management while advancing Dexory’s information

Qualifications

  • Hands-on with ISO 27001 as an implementer or internal auditor; ownership, not just participation.
  • Maintains audits-ready controls, evidence, and risk registers in the GRC platform.
  • Drives policy, procedures, and controls improvements across the business.
  • Manages customer security questionnaires (SIG, CAIQ, VSAQ, bespoke RFP sections).
  • Develops a central security knowledge base to speed responses at scale.
  • Collaborates with Sales and Customer Success to unblock deals on security gates.

Responsibilities

  • Own daily execution of ISO 27001, SOC 1 Type 2, and SOC 2 Type 2 programmes including evidence collection and tester liaison.
  • Maintain and update GRC platform with controls, evidence and risk registers.
  • Drive continuous policy and control improvements across the business.
  • Respond to customer security questionnaires and assist with security RFP sections.
  • Build and continually improve a centralised security knowledge base.
  • Support security incident response and vulnerability management processes.
  • Conduct vendor and third-party security assessments during procurement/onboarding.
  • Monitor threat landscape relevant to autonomous robotics and warehouse intelligence.
  • Deliver security awareness training and phishing simulations.

Skills

ISO 27001
SOC 1 Type 2
SOC 2 Type 2
GRC
auditor liaison
policy development
risk management
security incident response
vendor assessments

Tools

Thoropass
Vanta
Drata
AWS

Job description

Information Security Lead / ISO27001 / SOC / GRC /
Location: Wallingford - Oxfordshire (Hybrid) onsite circa 3 days minimum per week
Permanent

At Dexory, we are transforming the warehousing and logistics industry through data intelligence.

We’re currently recruiting for an Information Security Lead to own and drive our compliance programmes (ISO 27001, SOC 1 Type 2, SOC 2 Type 2), act as the primary responder to customer security due diligence, and build the systems and knowledge base that allow Dexory to scale securely without friction.

You’ll work closely with the Head of IT & Security, embedding good security practice across engineering, product, and operations.

Offices based in Wallingford, Oxford and looking for someone who can do 3 days minimum on site ideally more.

Any experience within robotics or start up / scale up environments highly desirable.

Responsibilities / Skills
  • Own the day-to-day execution of Dexory's ISO 27001, SOC 1 Type 2, and SOC 2 Type 2 programmes, including evidence collection, control testing, policy maintenance, and auditor liaison
  • Maintain our GRC platform - keeping controls, evidence, and risk registers current and audit-ready at all times
  • Drive continuous improvement of policies, procedures, and controls across the business
  • Serve as the primary point of contact for all inbound customer security questionnaires (SIG, CAIQ, VSAQ, bespoke RFP security sections)
  • Build, own, and continuously improve a centralised security knowledge base to enable faster, consistent, and accurate responses at scale
  • Partner closely with Sales and Customer Success to unblock deals where security is a gate, providing timely responses and where needed, direct engagement with customer security teams
  • Support the development and maintenance of Dexory's information security policies and risk management framework
  • Conduct vendor and third-party security assessments as part of the procurement and onboarding process
  • Contribute to Dexory's incident response and vulnerability management processes
  • Monitor the threat landscape for risks relevant to an autonomous robotics and warehouse intelligence business
  • Develop and run security awareness training and phishing simulation programmes across the business
  • Experience in an information security, GRC, or compliance role, ideally within a B2B SaaS or technology business
  • Hands-on experience with ISO 27001 as an implementer or internal auditor; genuine ownership, not just process participation
  • Solid working knowledge of SOC 1 and SOC 2 frameworks (AICPA Trust Services Criteria)
  • Familiarity with cloud security principles, particularly AWS
  • Nice to Have Certs (ISO 27001 Lead Implementer, CISM, CISA, CISSP, or CompTIA Security+)
  • Experience with GRC/compliance platforms such as Thoropass, Vanta, or Drata (nice to have)
  • Knowledge of OT, IoT, or robotics security considerations - a genuine differentiator given what we build
Benefits

Starting from the interview process and continuing into your career with us, you will be working by our four Operating Principles:

  • Performance: High standards, outstanding results,
  • Impact: Big challenges, bigger results
  • Commitment: All in, every time
  • One team: One mission, shared success

Joining our team and company isn't just about expertise; it's about embracing uncertainty with ambition. We're crafting world-changing solutions, fuelled by a passion to redefine what's possible. We will look for you to help create and shape the future of logistics solutions through our products, our culture and our shared vision.

You will also receive:

  • Private healthcare via Bupa with 24/7 medical helpline
  • Life insurance
  • Income protection
  • Pension: 4+% employee with option to opt into salary exchange, 5% employer
  • Employee Assistance Programme - mental wellbeing, financial and legal advice/support
  • 25 days holiday per year + bank holidays
  • Full meals onsite in Wallingford
  • Fun team events on and offsite, snacks of all kinds in the office
AAP/EEO Statement

Dexory provides equal employment opportunities to all employees and applicants for employment. It prohibits discrimination and harassment of any type without regard to race, colour, religion, age, sex, national origin, disability status, genetics, protected veteran status, or any other characteristic protected by local laws. This policy applies to all terms and conditions of employment, including recruiting, hiring, placement, promotion, termination, layoff, recall, transfer, leaves of absence, compensation and training.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior Infrastructure Engineer
Senior Infrastructure Engineer

Dexory • Verdalsøra

Hybrid
NOK 650,000 - 850,000
Private healthcare via Bupa
Life insurance
Income protection
+5
Full Stack Platform Engineer
Full Stack Platform Engineer

Dexory • Verdalsøra

Hybrid
NOK 767,000 - 1,151,000
Private healthcare via Bupa
Life insurance
Income protection
+5
Forward Deployed Engineer
Forward Deployed Engineer

Dexory • Verdalsøra

On-site
NOK 60,000 - 80,000
Private healthcare via Bupa
Life insurance
Income protection
+5
Information Security Lead - ISO27001 & SOC Expert (Hybrid)
Information Security Lead - ISO27001 & SOC Expert (Hybrid)

Dexory • Verdalsøra

On-site
NOK 1,151,000 - 1,662,000
Private healthcare
Life insurance
Income protection
+5
Senior Security Consultant
Senior Security Consultant

10x Banking • London

Hybrid
NOK 1,141,000 - 1,521,000
Remote-enabled working
Private health insurance
Pension scheme
+2
Application Support Engineer (Third Party Systems), London
Application Support Engineer (Third Party Systems), London

Isomorphic Labs • London

Hybrid
NOK 883,000 - 1,262,000
Security Engineer
Security Engineer

StackOne • London

Hybrid
NOK 1,141,000 - 1,648,000
Share options (EMI)
Lunch budget London office
Private health insurance
Workplace Experience Manager
Workplace Experience Manager

Orbital • London

On-site
NOK 761,000 - 1,141,000
Office manager
Office manager

Diffractive Labs • London

On-site
NOK 444,000 - 609,000
Premium benefits
Generous paid time off
Workplace Experience Manager
Workplace Experience Manager

Orbital Witness • London

On-site
NOK 634,000 - 1,015,000