×
Register Here to Apply for Jobs or Post Jobs. X

Information Security and Compliance Engineer

Job in Greater London, London, Greater London, W1B, England, UK
Listing for: Engineered Arts
Full Time position
Listed on 2026-02-16
Job specializations:
  • IT/Tech
    Cybersecurity, IT Consultant, Systems Engineer
  • Engineering
    Cybersecurity, Systems Engineer
Salary/Wage Range or Industry Benchmark: 80000 - 100000 GBP Yearly GBP 80000.00 100000.00 YEAR
Job Description & How to Apply Below
Location: Greater London

Engineered Arts is seeking an Information Security and Compliance Engineer to own the technical and operational execution of information security and cybersecurity compliance across products, cloud infrastructure, internal systems, and Robot-as-a-Service (RaaS) platforms.

Reporting to the Head of Compliance, this role is responsible for implementing, operating, and maintaining security controls, supporting certification to ISO 27001, SOC 2, and other relevant security frameworks, and embedding security‑by‑design into engineering, IT, and product operations as the business scales globally.

This is a hands‑on role with clear operational ownership of information security BAU, working closely with engineering, Dev Ops and IT, product management, and external auditors.

This job can be worked remotely with bi‑monthly visits to the London (Farringdon) office

Key Responsibilities Information Security and ISMS Operations
  • Implement, operate, and maintain the Information Security Management System (ISMS) aligned to ISO 27001.
  • Maintain risk assessments, risk registers, Statements of Applicability, and control mappings.
  • Collect, manage, and present evidence for ISO 27001 certification and surveillance audits.
  • Support SOC 2 readiness, control operation, evidence gathering, and audit coordination.
Security Controls and Engineering Integration
  • Implement and maintain security controls across:
  • Cloud infrastructure and internal IT systems
  • Robotics platforms, operating systems, and supporting services
  • eCommerce, RaaS, and customer‑facing platforms
  • Work with engineering teams to embed security‑by‑design into system architecture, development pipelines, and operational workflows.
  • Support secure configuration, logging, monitoring, and access control practices.
Vulnerability and Incident Management
  • Operate vulnerability management processes including:
  • CVE monitoring and triage
  • Patch management coordination
  • Tracking and closure of remediation actions
  • Coordinate penetration testing and security assessments across products, platforms, and infrastructure.
  • Maintain incident response documentation, support tabletop exercises, and assist with post‑incident reviews.
Identity, Access and Data Security
  • Support identity and access management (IAM) compliance including:
  • Role‑based access control
  • Quarterly access reviews
  • MFA/2FA enforcement
  • Support encryption, key management, backup, and recovery controls.
  • Work with compliance and legal stakeholders on data protection and privacy‑related security controls.
Supplier and Third‑Party Security
  • Conduct security assessments of suppliers, cloud providers, and third parties.
  • Review security documentation, certifications, and contractual security requirements.
  • Track third‑party security risks and remediation activities.
Audits, Documentation and Governance
  • Maintain security policies, procedures, standards, and technical evidence.
  • Support internal audits, external certification audits, and customer security due diligence requests.
  • Ensure security documentation remains current, controlled, and audit‑ready.
Security Awareness and Compliance Culture
  • Support delivery of security awareness and role‑specific training.
  • Act as a trusted security partner to engineering, IT, and product teams.
  • Promote pragmatic security that enables innovation while managing risk.
Essential Experience and Expertise
  • Hands‑on experience in information security engineering, security operations, or security compliance roles.
  • Practical experience operating an ISO 27001 aligned ISMS, including risk management and audit evidence.
  • Working knowledge of cloud, infrastructure, and application security controls.
  • Experience with vulnerability management and incident response.
  • Ability to translate security and compliance requirements into practical technical controls.
  • Experience working with engineering, IT, non‑technical stakeholders, and external auditors.
  • Strong documentation and evidence management skills.
Desirable Experience and Expertise
  • Experience with SOC 2 or multi‑framework security environments.
  • Exposure to product, platform, or robotics/embedded security.
  • Familiarity with IAM, data protection, and privacy‑related controls.
  • Experience with supplier and third‑party…
Note that applications are not being accepted from your jurisdiction for this job currently via this jobsite. Candidate preferences are the decision of the Employer or Recruiting Agent, and are controlled by them alone.
To Search, View & Apply for jobs on this site that accept applications from your location or country, tap here to make a Search:
 
 
 
Search for further Jobs Here:
(Try combinations for better Results! Or enter less keywords for broader Results)
Location
Increase/decrease your Search Radius (miles)

Job Posting Language
Employment Category
Education (minimum level)
Filters
Education Level
Experience Level (years)
Posted in last:
Salary