- Company Name
- Computappoint
- Job Title
- Cyber Security Assurance Manager
- Job Description
-
Job Title: Cyber Security Assurance Manager
Role Summary:
Drive and maintain SOC security certifications, manage customer assurance activities and audits, embed assurance standards into SOC operations, and advise leadership on regulatory changes to sustain compliance and governance.
Expectations:
- Deliver and sustain ISO 27001, SOC 2 Type II, Cyber Essentials Plus, and CREST certifications.
- Lead customer-facing assurance, audit readiness and regulatory monitoring.
- Provide training, documentation and continuous improvement of assurance processes.
Key Responsibilities:
- Act as primary contact for customer assurance, responding to RFIs, RFPs and audit requests.
- Conduct internal SOC assurance training and awareness sessions.
- Develop and maintain assurance documentation demonstrating security posture.
- Lead the delivery and ongoing maintenance of SOC‑related certifications (SOC 2 Type II, SOC 3, ISO/IEC 27001, Cyber Essentials Plus, CREST).
- Embed certification requirements into SOC governance, processes and operations.
- Ensure continuous monitoring, evidence collection and audit readiness for internal and external assessments.
- Monitor and interpret evolving cybersecurity regulations and frameworks (NIST CSF, UK NCSC guidance, EU NIS2, GDPR).
- Oversee sector‑specific assurance requirements (PCI DSS, NCSC CIR/CHECK where applicable).
- Advise leadership on regulatory changes impacting SOC assurance strategy.
- Drive continuous improvement in assurance processes and evidence collection efficiency.
- Produce regular certification status reports, audit outcomes and assurance dashboards.
- Collaborate with SOC operations, Information Security, Risk & Compliance, and Commercial teams.
Required Skills:
- Proven experience delivering and maintaining ISO 27001, SOC 2 Type II, Cyber Essentials Plus, and CREST certifications.
- Strong understanding of SOC operations and security assurance frameworks.
- Experience with customer‑facing assurance activities, including audits, RFIs and RFPs.
- In‑depth knowledge of NIST CSF, GDPR, UK NCSC guidance and related regulatory frameworks.
- Expertise in liaising with external auditors, regulators and certification bodies.
- Strong documentation, audit evidence preparation and compliance record‑keeping skills.
- Excellent organisational and project‑management abilities, managing multiple certification and assurance initiatives simultaneously.
Required Education & Certifications:
- Bachelor’s degree in Information Technology, Computer Science, Cyber Security or a related field (preferred).
- Demonstrated experience or completion of ISO 27001 Lead Implementer, SOC 2 Practitioner, Cyber Essentials Plus or equivalent certifications is highly desirable.
Portsmouth, United kingdom
Hybrid
10-12-2025