Apply

Ready to go for it?

AI Apply speeds things up—apply directly if you prefer.

FREE ACCESS
5,000–10,000 jobs/day
JobTailor Logo

See all jobs on JobTailor

Search thousands of fresh jobs every day.

Discover
  • Fresh listings
  • Fast filters
  • No subscription required
Create a free account and start exploring right away.
Sokin

Security Governance, Risk, Compliance Lead

Sokin

Security GRC Lead managing compliance across multiple frameworks in a fintech environment. Ensuring governance, risk, and compliance with industry standards while collaborating with engineering teams.

Posted 8/3/2026full-timeLondon • 🇬🇧 United KingdomSeniorWebsite

Core Competencies

Role fit
Core Competencies

Use this summary to align your resume positioning with the role.

Demonstrates expertise in managing compliance programs across SOC 2, ISO 27001, PCI DSS, and GDPR, with hands-on experience in GRC automation platforms like Vanta. Proficient in risk assessment, audit coordination, and maintaining compliance documentation in tools such as Jira and Confluence.

Highest-signal resume keywords
GRC Compliance ManagementSOC 2 AuditsISO 27001 AuditsVanta Automation PlatformRisk Assessment

ATS Keywords

Tailor your resume
Applicant Tracking System Keywords

Tip: use these terms in your resume and cover letter to boost ATS matches.

Hard Skills
Compliance Program ManagementControl MappingAutomated Evidence ReviewRemediation TrackingRisk Register MaintenanceVendor Risk AssessmentExternal Audit CoordinationControl Failure InvestigationSecurity Questionnaire ResponsesPayments-Specific Risk Understanding
Tools & Technologies
VantaJiraConfluence
Industry Keywords
SOC 2ISO 27001PCI DSSGDPRInformation SecurityGRC

About the role

Key responsibilities & impact
  • Own and mature our compliance program across SOC 2, ISO 27001, PCI DSS, and GDPR
  • Run Vanta day to day: control mapping, automated evidence review, remediation tracking
  • Build and maintain the risk register
  • Maintain the policy and procedure library in Confluence
  • Design and run vendor/third-party risk assessments
  • Lead external audits and pen test coordination
  • Investigate control failures and monitoring alerts directly
  • Own security questionnaire responses for customer and partner due diligence
  • Report risk posture, audit status, and control health to the CISO

Requirements

What you’ll need
  • 4+ years in GRC, information security, or compliance
  • Direct experience running SOC 2 and/or ISO 27001 audits from the compliance side
  • Working technical literacy
  • Hands-on experience with Vanta or an equivalent GRC automation platform
  • Comfortable working daily in Jira and Confluence
  • Understanding of payments-specific risk

Benefits

Comp & perks
  • Flexible working arrangements
  • Professional development opportunities