At a Glance
- Tasks: Protect CloudNC's information assets and support IT operations with proactive security initiatives.
- Company: Join a pioneering tech company transforming global manufacturing with AI.
- Benefits: Enjoy stock options, generous leave, and a leading medical plan.
- Other info: Diverse and inclusive workplace with excellent career growth opportunities.
- Why this job: Make a real impact in cybersecurity while working with cutting-edge technology.
- Qualifications: 2-3 years in IT support or information security; familiarity with security frameworks.
The predicted salary is between 40000 - 50000 ÂŁ per year.
CloudNC is transforming global manufacturing with AI that accelerates CAM programming, maximises factory output, and empowers machinists to deliver more. Our core product, CAM Assist, speeds up CNC machining by tackling the most time‑consuming and repetitive parts of the process, from machining strategy to toolpath generation. It enables machinists to create effective programs in minutes, unlocking their full potential and helping shops increase throughput and improve consistency. Today, CAM Assist is trusted by hundreds of machine shops around the world to enhance their teams’ productivity, resolving skills shortages and helping them to deliver efficiently for their customers. Founded in 2015, CloudNC consists of a world‑class team combining expertise in computer science and physical manufacturing.
The IT & Security Associate plays a critical role in protecting CloudNC’s information assets by supporting day‑to‑day IT operations and leading proactive security initiatives. This role is responsible for maintaining a secure IT infrastructure, mitigating risks, ensuring policy and regulatory compliance, and collaborating across the organisation to embed security best practices. Working closely with IT Support, Infrastructure, Engineering and external vendors, the IT & Security Associate ensures CloudNC maintains a robust security posture aligned with frameworks such as ISO 27001, SOC2, Cyber Essentials and other relevant standards.
Job Requirements
- Security Monitoring & Incident Response
- Monitor security events across systems, networks and applications, triaging, classifying and responding to potential threats.
- Conduct security incident investigations and support mitigation and recovery.
- Perform regular vulnerability assessments, lead mitigation planning and, where appropriate, carry out remediation.
- Operate and maintain security controls and monitoring tools to ensure ongoing compliance with standards and policies.
- Information Security Risk & Compliance Management
- Identify, assess and document information security risks, working with stakeholders to plan and track mitigations.
- Support internal and external security audits and compliance activities (e.g., ISO 27001, SOC2, Cyber Essentials, Cyber Essentials+).
- Collaborate with audit partners to manage and deliver audits from planning through execution.
- Carry out periodic access reviews of all users across CloudNC systems to ensure compliance with least privilege principles.
- Policy, Procedures & Documentation
- Draft, revise and maintain information security policies in response to evolving business needs and regulatory requirements.
- Develop and implement procedures that support policies (e.g., change control, vulnerability management, access control), in collaboration with relevant stakeholders.
- Operate controlled documentation in line with ISO 27001 standards, including versioning, approvals and secure storage of policies, procedures and records.
- Vendor Security & Customer Engagement
- Assess and document third‑party vendors to ensure compliance with CloudNC’s security standards.
- Maintain evidence of vendor security assurance and conduct periodic reviews.
- Respond to information security queries from Sales, Partnerships and customers, ensuring prompt, clear and accurate communication.
- Infrastructure & End‑User Device Security
- Work with IT Support to ensure all end‑user devices are securely configured, asset‑managed and protected at all times.
- Collaborate with infrastructure teams to monitor and maintain secure cloud environments, identifying and mitigating potential risks.
- Security Awareness & Continuous Improvement
- Organise and deliver periodic, role‑based security awareness training to maintain a security‑conscious culture across CloudNC.
- Keep up to date with security trends and emerging threats; recommend improvements to processes, controls and tooling.
- Promote continuous improvement in security operations, governance and compliance.
Job Responsibilities
- Essential: 2-3 years of experience in IT support and/or information security roles.
- Experience working with security and compliance frameworks (e.g., ISO 27001, SOC2, GDPR).
- Solid understanding of risk management and security principles.
- Familiarity with firewalls, VPNs, endpoint protection and security monitoring tools.
- Experience managing secure cloud environments and identity/access management.
- Strong documentation and communication skills.
- Desirable: Experience with GovCloud, FedRAMP or CMMC 2.
- IT/security certifications (e.g., Security+, CISSP).
- Exposure to infrastructure automation tools (e.g., Terraform).
- Familiarity with SOC processes, encryption and secure data handling.
Job Benefits
- Stock Options
- Annual Performance Equity Award
- 28 days of annual leave
- Leading medical plan
- Life Insurance
- Sabbatical leave
- Enhanced primary, secondary and adoption parental pay & leave (maternity/paternity)
Equal Opportunities Statement
We are proud to be an equal opportunity employer, valuing individuality and embracing all people. The success of CloudNC is a result of diversity of thought. We recognise this comes from people truly belonging. We encourage different perspectives and skills to collaborate towards our mission – disrupting the manufacturing industry. We celebrate diversity and continually improve our inclusivity efforts.
IT and Security Associate in London employer: CloudNC
Contact Detail:
CloudNC Recruiting Team
StudySmarter Expert Advice 🤫
We think this is how you could land IT and Security Associate in London
✨Tip Number 1
Network like a pro! Reach out to folks in the industry on LinkedIn or at events. A friendly chat can lead to opportunities that aren’t even advertised yet.
✨Tip Number 2
Show off your skills! Create a portfolio or GitHub repo showcasing your projects and achievements. This gives potential employers a taste of what you can do beyond your CV.
✨Tip Number 3
Prepare for interviews by researching CloudNC and its products. Understand how CAM Assist works and think about how your skills can contribute to their mission. Tailor your answers to show you’re a perfect fit!
✨Tip Number 4
Don’t forget to apply through our website! It’s the best way to ensure your application gets seen. Plus, it shows you’re genuinely interested in being part of the CloudNC team.
We think you need these skills to ace IT and Security Associate in London
Some tips for your application 🫡
Tailor Your CV: Make sure your CV is tailored to the IT and Security Associate role. Highlight relevant experience, especially with security frameworks like ISO 27001 and SOC2. We want to see how your skills align with what we’re looking for!
Craft a Compelling Cover Letter: Your cover letter is your chance to shine! Use it to explain why you’re passionate about IT security and how your background makes you a great fit for CloudNC. Let us know what excites you about our mission!
Showcase Your Skills: Don’t just list your skills; demonstrate them! If you’ve worked with security monitoring tools or have experience in risk management, give us examples. We love seeing real-world applications of your expertise.
Apply Through Our Website: We encourage you to apply directly through our website. It’s the best way to ensure your application gets into the right hands. Plus, it shows us you’re serious about joining our team at CloudNC!
How to prepare for a job interview at CloudNC
✨Know Your Security Frameworks
Familiarise yourself with the key security frameworks mentioned in the job description, like ISO 27001 and SOC2. Be ready to discuss how your experience aligns with these standards and how you can contribute to maintaining compliance at CloudNC.
✨Showcase Your Incident Response Skills
Prepare examples of past experiences where you've monitored security events or responded to incidents. Highlight your ability to triage threats and conduct investigations, as this will demonstrate your hands-on expertise in security operations.
✨Communicate Clearly and Confidently
Strong communication skills are essential for this role. Practice explaining complex security concepts in simple terms, as you'll need to engage with various stakeholders across the organisation. Clear communication will show that you can bridge the gap between technical and non-technical teams.
✨Stay Updated on Security Trends
Research current trends and emerging threats in the cybersecurity landscape. Being knowledgeable about recent developments will not only impress your interviewers but also show your commitment to continuous improvement in security practices at CloudNC.