Information Security & Compliance Analyst maintaining SOC 2, ISO 27001 and Cyber Essentials readiness for SyncEzy’s B2B SaaS integration platform. Owning evidence, controls, risks and audit coordination remotely.
Responsibilities
Maintain year-round readiness for SOC 2, ISO 27001 and Cyber Essentials
Own routine compliance administration, evidence collection, control monitoring and follow-up
Translate compliance requirements into practical actions for Engineering, DevOps and IT teams
Identify gaps early, track remediation to closure and maintain clear documentation showing that controls are designed and operating effectively
Coordinate compliance activities across SOC 2, ISO 27001 and Cyber Essentials
Work closely with Engineering, DevOps, IT and management to keep controls operating effectively and evidence audit-ready throughout the year
Move between policy work, evidence collection, endpoint/software compliance, risk tracking, access reviews and audit coordination
Serve as the primary owner of routine compliance operations and follow-up, with the Senior Engineering Manager as management and escalation point
Requirements
2–4 years of relevant experience in GRC, information security compliance, security assurance, IT audit or a closely related role
Practical exposure to at least one major security/compliance framework such as SOC 2 or ISO 27001
Experience collecting, reviewing and organizing audit evidence and working with technical control owners
Strong documentation and policy-writing skills with attention to consistency and audibility
Working understanding of cloud environments, identity and access management, endpoint security, vulnerability management, logging, backups and change management
Ability to read technical evidence and ask the right questions without needing to be a software engineer or DevOps engineer
SOC analyst monitoring and responding to cyber threats for Wepoint’s digital transformation clients. Investigating escalated alerts and improving 24×7 security operations.
SOC cybersecurity analyst monitoring and responding to cyber threats for Wepoint’s digital transformation clients. Improving 24×7 detection, investigation, and incident response capabilities.
Senior Security Operations Engineer monitoring incidents and leading forensics for Samsara’s IoT - connected operations platform. Building security automation and supporting insider - threat investigations.
Senior SOC analyst leading threat detection, investigations, and incident response for Financeit, a Canadian point - of - sale financing provider. Building its new SOC’s automation, AI - threat coverage, and operational standards.
Security Operations Engineer securing Tailscale’s networking platform through device, identity, access, and vulnerability management. Supporting distributed teams and automating security operations across core business systems.
Security Operations Engineer securing Tailscale’s software for safe device and network connections. Managing endpoints, identity access, platforms, automation, and data loss prevention.