7 часов назад
Senior Manager, Cyber Security Engineering
100 000 - 125 000GBP
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
Текст:
TL;DR
Senior Manager, Cyber Security Engineering (ISO 27001/SOC 2): Building and operating security compliance programs for large-scale GPU infrastructure with an accent on control implementation, audit evidence, GRC operations, and engineering collaboration. Focus on automating evidence collection, mapping customer and regulatory obligations, assessing cloud and third-party risks, and closing audit findings.
Location: Hybrid in Palo Alto, California, US, or London, UK
Salary: £100K–£125K in the UK or $200K–$260K in California, plus equity and bonus opportunities.
Company
is building a vertically integrated AI infrastructure platform that operates large-scale GPU compute infrastructure for frontier AI customers.
What you will do
- Implement and maintain controls for ISO 27001 certification and SOC 2 Type II attestation.
- Operate and maintain the Vanta GRC platform, including integrations, automated checks, evidence collection, and control remediation.
- Prepare audit evidence packages, support auditor fieldwork, and track findings through verified closure.
- Map customer contract obligations to security controls and prepare customer, lender, and investor due-diligence materials.
- Conduct risk assessments, vendor reviews, exception management, and physical security control activities across sites and offices.
- Partner with platform and infrastructure engineers to schedule compliance work, automate evidence collection, and maintain incident, business continuity, and disaster recovery records.
Requirements
- At least 3 years of information security experience, including compliance, GRC, or audit-facing work.
- Hands-on experience with an ISO 27001 or SOC 2 program, including evidence preparation and external audits.
- Working knowledge of technical controls in cloud or infrastructure environments and the ability to assess whether controls operate effectively.
- Experience maintaining a GRC platform such as Vanta or Drata, including integrations.
- Practical experience with risk assessments, documentation, evidence management, and customer-facing security responses.
- Strong organization, persistence, writing skills, and the ability to work effectively with engineering teams.
Nice to have
- Familiarity with NIS2, national authorities such as BSI, or GDPR-related documentation.
- Experience with cloud, IaaS, HPC, data center, colocation, or physical security environments.
- Python or similar scripting experience for evidence collection and reporting.
- Awareness of ISO 42001 or other AI-specific assurance frameworks.
- Certifications such as ISO 27001 Lead Implementer, ISO 27001 Lead Auditor, CISA, or CISM.
Culture & Benefits
- Hybrid work across London and Palo Alto.
- Equity participation and performance bonus opportunities.
- Retirement or pension contributions.
- Health, wellbeing, and insurance benefits.
- Generous annual vacation allowance and support for work-life balance.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →
Похожие вакансии
8 часов назад
Head of GRC (AI)
220 000 - 260 000$
30 минут назад
Security Governance Risk & Compliance (GRC) Analyst (Cybersecurity)
130 000 - 170 000$
3 часа назад
Senior IT Security & Compliance Lead (AI)
6 часов назад
GRC Manager (AI)
6 часов назад
IT Security Engineer
116 000 - 159 000$
27 минут назад
Security GRC Specialist
230 000 - 275 000$