Certification Operations
Lead Auditor — Information Security (ISO 27001)
Audit ISMS implementations against ISO/IEC 27001:2022. We are specifically looking for people who have operated security controls, not only assessed them.
What you will do
- Conduct ISO 27001:2022 and ISO 27701 certification and surveillance audits
- Evaluate risk assessments, risk treatment plans and Statements of Applicability for genuine risk linkage
- Assess technical controls including access management, logging, vulnerability management and cloud configuration
- Support scope determination for complex, cloud-hosted and multi-entity organisations
- Contribute to technical guidance and internal auditor calibration
What you bring
- ISO 27001 Lead Auditor certification (2022 version)
- Practical background in security operations, infrastructure or GRC
- Familiarity with cloud shared responsibility models across major providers
- CISA, CISSP or equivalent is an advantage
- Ability to challenge an all-controls-applicable SoA constructively
Apply for this role
It takes about three minutes. Fields marked * are required.