CT
Captavio Technologies Limited
SOC2 Consultant (Outside IR35)
Description
Captavio Technologies Limited
Headquartered in London, is a Cyber Security Solutions company with expertise in GRC and SecDevOps.
Role Description
This is a contract role for a SOC2 Consultant (Outside IR35) at Captavio Technologies Limited. The consultant will be responsible for planning, executing, and monitoring programs aligned with clients' business goals.
Key Responsibilities:
• Initial Assessment:
Evaluate the existing policies, procedures, and controls against the SOC 2 Trust Service Criteria (Security, Availability, Processing Integrity, Confidentiality, Privacy).
Identify gaps and areas for improvement in our current practices.
• Develop a Roadmap:
Create a comprehensive action plan with timelines for closing identified gaps and achieving compliance.
Provide recommendations for necessary changes to policies, tools, and technologies.
• Implement Controls:
Assist in implementing the required controls and procedures to meet SOC 2 standards.
Provide guidance on risk management, access control, data encryption, incident response, and monitoring.
• Documentation and Evidence Collection:
Ensure all required documentation, evidence of controls, and process changes are in place to support the audit process.
• Audit Preparation and Support:
Support the organization in preparing for the SOC 2 audit, ensuring readiness for the audit team.
Serve as a liaison between our team and the auditors during the examination process.
• Training and Awareness:
Provide training sessions for key personnel on SOC 2 compliance including best practices for maintaining continuous compliance post-audit.
Desired Experience and Skills:
• Extensive experience in SOC 2 assessments and compliance.
• In-depth understanding of the Trust Service Criteria and relevant security frameworks (e.g., ISO 27001, NIST).
• Proven track record in guiding organizations through the SOC 2 process.
• Strong communication and project management skills.
Remuneration:
Seniority level
• Mid-Senior level
Employment type
• Contract
Job function
• Consulting , Information Technology , Sales
Industries
• IT Services , IT Consulting