Назад
Company hidden
7 часов назад

Senior Manager, Cyber Security Engineering

100 000 - 125 000GBP
Формат работы
hybrid
Тип работы
fulltime
Грейд
senior
Английский
b2
Страна
UK/US
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Senior Manager, Cyber Security Engineering (ISO 27001/SOC 2): Building and operating security compliance programs for large-scale GPU infrastructure with an accent on control implementation, audit evidence, GRC operations, and engineering collaboration. Focus on automating evidence collection, mapping customer and regulatory obligations, assessing cloud and third-party risks, and closing audit findings.

Location: Hybrid in Palo Alto, California, US, or London, UK

Salary: £100K–£125K in the UK or $200K–$260K in California, plus equity and bonus opportunities.

Company

hirify.global is building a vertically integrated AI infrastructure platform that operates large-scale GPU compute infrastructure for frontier AI customers.

What you will do

  • Implement and maintain controls for ISO 27001 certification and SOC 2 Type II attestation.
  • Operate and maintain the Vanta GRC platform, including integrations, automated checks, evidence collection, and control remediation.
  • Prepare audit evidence packages, support auditor fieldwork, and track findings through verified closure.
  • Map customer contract obligations to security controls and prepare customer, lender, and investor due-diligence materials.
  • Conduct risk assessments, vendor reviews, exception management, and physical security control activities across sites and offices.
  • Partner with platform and infrastructure engineers to schedule compliance work, automate evidence collection, and maintain incident, business continuity, and disaster recovery records.

Requirements

  • At least 3 years of information security experience, including compliance, GRC, or audit-facing work.
  • Hands-on experience with an ISO 27001 or SOC 2 program, including evidence preparation and external audits.
  • Working knowledge of technical controls in cloud or infrastructure environments and the ability to assess whether controls operate effectively.
  • Experience maintaining a GRC platform such as Vanta or Drata, including integrations.
  • Practical experience with risk assessments, documentation, evidence management, and customer-facing security responses.
  • Strong organization, persistence, writing skills, and the ability to work effectively with engineering teams.

Nice to have

  • Familiarity with NIS2, national authorities such as BSI, or GDPR-related documentation.
  • Experience with cloud, IaaS, HPC, data center, colocation, or physical security environments.
  • Python or similar scripting experience for evidence collection and reporting.
  • Awareness of ISO 42001 or other AI-specific assurance frameworks.
  • Certifications such as ISO 27001 Lead Implementer, ISO 27001 Lead Auditor, CISA, or CISM.

Culture & Benefits

  • Hybrid work across London and Palo Alto.
  • Equity participation and performance bonus opportunities.
  • Retirement or pension contributions.
  • Health, wellbeing, and insurance benefits.
  • Generous annual vacation allowance and support for work-life balance.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →