SOC 2 Manager, Audit & Certification
SOC 2 Manager, Audit & Certification

SOC 2 Manager, Audit & Certification

Cardiff Full-Time 43200 - 72000 £ / year (est.) Home office (partial)
Go Premium
D

At a Glance

  • Tasks: Lead SOC 2 audits and manage technology controls for Deloitte Technology.
  • Company: Deloitte is a global leader in technology development, empowering diverse teams to drive progress.
  • Benefits: Enjoy hybrid working, flexible hours, and a supportive culture focused on wellbeing.
  • Why this job: Join a purpose-driven team where your contributions make a real impact on technology and security.
  • Qualifications: Bachelor's degree in relevant fields and experience in IT audits and risk management required.
  • Other info: Embrace continuous learning and professional growth in a collaborative environment.

The predicted salary is between 43200 - 72000 £ per year.

Cardiff, Gatwick, Manchester, Reading, St Albans

Deloitte Technology works at the forefront of technology development and processes to support and protect Deloitte around the world. In this truly global environment, we operate not in "what is" but rather "what can be" to help Deloitte deliver and connect with its clients, its communities, and one another in ways not previously conceived.

Deloitte drives progress. Using our vast range of expertise, we help our clients become leaders wherever they choose to compete. To do this, we invest in outstanding people. We build teams of future thinkers, with diverse talents and backgrounds, and empower them all to reach for and achieve more.

What brings us all together at Deloitte? It’s how we approach the thousands of decisions we make every day. How we behave, our beliefs and our attitudes. In other words: our values. Whatever we do, wherever we are in the world, we lead the way, serve with integrity, take care of each other, foster inclusion, and collaborate for measurable impact. These five shared values lead every decision we make and action we take, guiding us to deliver impact how and where it matters most.

The SOC 2 Manager, Audit & Certification will perform the following:

  • Lead SOC 2 audits and related projects for Deloitte Technology.
  • Liaise with SOC 2 external auditors to scope and facilitate SOC 2 audits gathering and presenting evidence as required to support DT’s SOC 2 audits.
  • Understand technology controls, testing of controls, and supporting evidence to meet SOC 2 Trust Service Criteria.
  • Understand technology controls that impact on-premises and cloud technology, operational risk to the Deloitte Technology organization as well as related laws, regulations, and industry standards, specifically related to internal and cloud technology solutions.
  • Assess technology and operational risks related to internal and cloud technology solutions providing input to DT personnel on appropriate controls to address audit risks.
  • Recommend policies, standards, procedures, and controls to assure the confidentiality, integrity, and availability of the information technology environment for on premises as well as cloud hosted IT applications and infrastructure meet the SOC 2 Trust Service Criteria.
  • Manage audit findings; identify and track remediation activities to meet target dates for closure, and track/report progress.
  • Work with the appropriate Information Security, Office of General Counsel, Risk Management, and leadership to determine scope of SOC 2 audits.
  • Develop and recommend appropriate information security policies, standards, procedures, checklists, and guidelines using generally recognized security concepts tailored to meet the requirements of the organization for on premises as well as cloud hosted IT applications and infrastructure.
  • Clearly, concisely and effectively communicate to DT leadership and stakeholders.
  • Make decisions on day-to-day task assignments to the team.
  • Participate in appropriate opportunities for continuing education, seminars, and participation in field-related professional organizations to remain current on developments as an information security professional.

Do you possess the following?

  • Bachelor’s degree in computer science, business administration, information systems, accounting or equivalent educational or professional experience and/or qualifications.
  • Proven directly related experience in managing information technology audits, assessments, remediation management, creating, leading, and managing risk assessment programs.
  • Experience with SSAE 18 SOC 2 and various other industry standard frameworks such as: NIST, HITRUST, CSA, CCM.
  • Experience leading IT internal audit, external audits, and or service organization control reporting and activities.
  • Solid understanding of IT general controls and activities.
  • Excellent written and verbal communication, listening, and facilitation skills.
  • Excellent time management and related organizational skills, including appropriate sense of urgency, a proactive approach, and a suitable ability to anticipate and manage project lifecycle events, issues, and obstacles (preferred).
  • Strong understanding of and experience with cloud technologies and security controls.

Collaboration is central to everything we do at Deloitte. From IT to HR, marketing and more, our teams help to support the wider business in everything they do. Bringing your individual skills and specialist knowledge, you can make a far-reaching impact. Come join us.

Regulation and controls are standard practice in our industry and Deloitte is no exception. These controls provide important legal protection for both you and the firm. We are subject to a number of audit regulations, one of which requires that certain colleagues abide by specific personal independence constraints (e.g., in relation to any financial interests and employment relationships). This can mean that you and your "Immediate Family Members" are not permitted to hold certain financial interests (shares, funds, bonds etc.) with audit clients of the firm, and also prohibitions on certain employment relationships (e.g., you are not permitted to hold a secondary employment role with SEC audit clients of the firm whilst being employed by the firm). The recruitment team will provide further detail as you progress through the recruitment process or you can contact the Independence team upon request.

Everyone at Deloitte builds relationships with their peers and puts in effort to get to know one another, making the work more enjoyable.

You’ll be based in one of our UK locations with hybrid working. At Deloitte we understand the importance of balancing your career alongside your home life. That’s why we’ll support you to work flexibly through our hybrid working policy. Depending on the requirements of your role, you’ll have the opportunity to work in your local office, virtual collaboration spaces, client sites and remotely. You’ll get the chance to meet face to face when needed, while you collaborate and learn from colleagues, share your experiences, and build the relationships that will fuel your career and prioritise your wellbeing.

Making an impact is more than just what we do: it’s why we’re here. So we work hard to create an environment where you can experience a purpose you believe in, the freedom to be you, and the capacity to go further than ever before. We want you. The true you. Your own strengths, perspective and personality. So we’re nurturing a culture where everyone belongs, feels supported and heard, and is empowered to make a valuable, personal contribution. You can be sure we’ll take your wellbeing seriously, too. Because it’s only when you’re comfortable and at your best that you can make the kind of impact you, and we, live for. Your expertise is our capability, so we’ll make sure it never stops growing. Whether it’s from the complex work you do, or the people you collaborate with, you’ll learn every day. Through world-class development, you’ll gain invaluable technical and personal skills. Whatever your level, you’ll learn how to lead.

A career at Deloitte is an opportunity to develop in any direction you choose. Join us and you’ll experience a purpose you can believe in and an impact you can see. You’ll be free to bring your true self to work every day. And you’ll never stop growing, whatever your level.

D

Contact Detail:

Deloitte LLP Recruiting Team

StudySmarter Expert Advice 🤫

We think this is how you could land SOC 2 Manager, Audit & Certification

✨Tip Number 1

Familiarise yourself with SOC 2 compliance and the Trust Service Criteria. Understanding these concepts will not only help you in interviews but also demonstrate your commitment to the role and your ability to lead SOC 2 audits effectively.

✨Tip Number 2

Network with professionals in the field of information security and audit. Attend relevant seminars or webinars, and engage with industry groups on platforms like LinkedIn. This can provide insights into the role and may even lead to referrals.

✨Tip Number 3

Prepare to discuss your experience with cloud technologies and security controls in detail. Be ready to share specific examples of how you've managed risks and implemented controls in previous roles, as this is crucial for the SOC 2 Manager position.

✨Tip Number 4

Showcase your leadership skills by discussing past experiences where you've led teams or projects. Highlight your ability to communicate effectively with stakeholders and manage audit findings, as these are key responsibilities for the role.

We think you need these skills to ace SOC 2 Manager, Audit & Certification

Knowledge of SOC 2 Trust Service Criteria
Experience with SSAE 18 SOC 2 audits
Understanding of IT general controls
Proficiency in risk assessment and remediation management
Familiarity with industry standards such as NIST, HITRUST, CSA, CCM
Strong communication and facilitation skills
Ability to manage audit findings and track remediation activities
Experience leading IT internal and external audits
Solid understanding of cloud technologies and security controls
Excellent time management and organisational skills
Ability to liaise with external auditors effectively
Proactive approach to problem-solving
Ability to develop information security policies and procedures
Experience in managing technology and operational risks

Some tips for your application 🫡

Tailor Your CV: Make sure your CV highlights relevant experience in managing information technology audits and risk assessment programs. Use specific examples that align with the responsibilities of the SOC 2 Manager role.

Craft a Compelling Cover Letter: Write a cover letter that not only outlines your qualifications but also demonstrates your understanding of Deloitte's values and how you can contribute to their mission. Mention your experience with SOC 2 and other industry frameworks.

Highlight Communication Skills: Since excellent communication is crucial for this role, provide examples in your application that showcase your written and verbal communication skills. This could include leading meetings, presenting findings, or collaborating with teams.

Showcase Continuous Learning: Mention any relevant certifications or ongoing education related to information security and audit practices. This shows your commitment to staying current in the field, which is important for the SOC 2 Manager position.

How to prepare for a job interview at Deloitte LLP

✨Understand the SOC 2 Framework

Make sure you have a solid grasp of the SOC 2 framework and its Trust Service Criteria. Be prepared to discuss how your experience aligns with these criteria, especially in relation to technology controls and risk management.

✨Showcase Your Communication Skills

As a SOC 2 Manager, you'll need to communicate effectively with various stakeholders. Practice articulating complex technical concepts in a clear and concise manner, as this will be crucial during your interview.

✨Demonstrate Leadership Experience

Highlight your experience in leading audits and managing teams. Be ready to provide examples of how you've successfully guided projects and resolved issues, showcasing your ability to lead and collaborate.

✨Prepare for Scenario-Based Questions

Expect scenario-based questions that assess your problem-solving skills and decision-making process. Think of specific situations from your past experiences where you had to navigate challenges related to audits or compliance.

SOC 2 Manager, Audit & Certification
Deloitte LLP
Go Premium

Land your dream job quicker with Premium

You’re marked as a top applicant with our partner companies
Individual CV and cover letter feedback including tailoring to specific job roles
Be among the first applications for new jobs with our AI application
1:1 support and career advice from our career coaches
Go Premium

Money-back if you don't land a job in 6-months

D
  • SOC 2 Manager, Audit & Certification

    Cardiff
    Full-Time
    43200 - 72000 £ / year (est.)

    Application deadline: 2027-05-25

  • D

    Deloitte LLP

Similar positions in other companies
UK’s top job board for Gen Z
discover-jobs-cta
Discover now
>