ISO 27001 Internal Auditor

ISO 27001 Internal Auditor

Full-Time 40000 - 50000 £ / year (est.) Working from home possible
Jobgether

At a Glance

  • Tasks: Lead internal audits and help organisations achieve ISO 27001 compliance.
  • Company: Join a remote-first partner company focused on security excellence.
  • Benefits: Flexible remote work, competitive salary, equity options, and personal development budget.
  • Other info: Enjoy mentorship opportunities and annual retreats with industry leaders.
  • Why this job: Make a real impact in security compliance while growing your expertise.
  • Qualifications: ISO 27001 Lead Auditor certification and experience in information security.

The predicted salary is between 40000 - 50000 £ per year.

This position is listed on behalf of a partner company, who manages all applications and next steps.

Our partner is looking for an ISO 27001 Internal Auditor based in United Kingdom.

We are looking for an experienced security professional to take ownership of internal audit activities and help organizations achieve and maintain industry-leading compliance standards.

This role focuses on assessing security controls, reviewing evidence, identifying gaps, and providing actionable guidance before external certification audits.

You will work independently while collaborating closely with customers to ensure their compliance readiness and long-term security maturity.

The position offers the opportunity to shape audit processes, contribute to security frameworks, and support companies navigating complex compliance requirements.

You will join a remote-first environment where ownership, expertise, and clear communication are highly valued.

This is an impactful opportunity for an auditor who enjoys solving problems, improving security practices, and helping organizations succeed.

Accountabilities

  • Own the complete internal audit lifecycle, from initial kickoff through final reporting and customer readiness for external certification audits.
  • Review and assess customer evidence against relevant ISO 27001 controls, ensuring documentation and security practices meet required standards.
  • Conduct customer discussions to explain audit findings, highlight non-conformities, and provide clear recommendations for remediation.
  • Identify critical gaps and risks that could impact certification success, ensuring customers are prepared before external assessments.
  • Create clear and actionable audit reports that explain missing requirements, business impact, and recommended next steps in accessible language.
  • Manage multiple audits simultaneously while maintaining quality, timelines, and strong customer relationships.
  • Maintain independence between auditing and implementation activities to ensure objective assessments.
  • Expand expertise across additional compliance frameworks such as TISAX and ISO 42001 while contributing to the development of repeatable audit methodologies.
  • Provide structured feedback to improve security compliance processes, platform guidance, and customer experience.

Requirements

  • Up to 2 years of professional experience in information security or related compliance fields.
  • Hands-on experience conducting ISO 27001 internal audits, with at least 10 independently completed audits.
  • ISO 27001 Lead Auditor certification from PECB or an equivalent recognized certification.
  • Practical experience auditing within modern Governance, Risk, and Compliance (GRC) platforms.
  • Strong understanding of ISO 27001 controls, security compliance practices, and audit methodologies.
  • Excellent written and verbal English communication skills, with the ability to explain complex security concepts clearly to non-technical audiences.
  • Strong organizational skills with the ability to manage multiple priorities and maintain audit schedules.
  • Independent, detail-oriented, and comfortable taking ownership of customer-facing responsibilities.
  • Nice-to-have experience with frameworks such as TISAX, ISO 42001, NIS2, or SOC 2.
  • Previous experience in a fast-growing startup environment or exposure to Saa S products and cross-functional teams is a plus.

Benefits

  • Fully remote work environment with flexibility within supported European time zones.
  • Competitive salary aligned with local market standards.
  • Equity package providing the opportunity to share in the company’s long-term success.
  • Annual personal development budget of €1,000 to support learning and professional growth.
  • Home office budget and access to coworking spaces.
  • Comprehensive health insurance coverage.
  • 26 days of annual leave plus local public holidays.
  • Access to modern technology equipment, including laptop, monitors, and professional accessories.
  • Opportunities for mentorship and professional development with experienced industry leaders.
  • Annual company retreats and team events to build relationships and collaboration.
  • Opportunity to contribute to the growth of innovative security and compliance solutions.

We appreciate your interest and wish you the best!

Data Privacy Notice

By submitting your application, you acknowledge that Jobgether will process your personal data to evaluate your candidacy and share relevant information with the hiring employer.

This processing is based on legitimate interest and pre-contractual measures under applicable data protection laws (including GDPR).

You may exercise your rights (access, rectification, erasure, objection) at any time.

#J-18808-Ljbffr

ISO 27001 Internal Auditor employer: Jobgether

At Jobgether, we pride ourselves on being an exceptional employer that fosters a collaborative and innovative work culture. Our remote working environment allows for flexibility while providing ample opportunities for professional growth and development in the tech industry. Join us to make a meaningful impact in enhancing open-source technology adoption, all while enjoying the benefits of a supportive team and a commitment to your career advancement.

Jobgether

Contact Details:

Jobgether Recruitment Team

StudySmarter Expert Advice🤫

We think this is how you could land ISO 27001 Internal Auditor

Join Compliance Communities

Get involved in compliance and risk communities — both online and offline. Look for forums, LinkedIn groups, or even local meetups where compliance pros hang out. You never know who might drop a job opportunity your way!

Attend Industry Conferences

Keep an eye out for compliance and risk management conferences and workshops in your area. These events are a goldmine for networking, and they often have job boards or recruiters on-site looking for new talent. Plus, it’s a chance to learn what's trending in the field.

Leverage Your University Career Services

If you’ve recently graduated or are still studying, head over to your university's career services. Many companies, including those in compliance, actively recruit fresh talent through these services, so make sure you tap into that resource.

Showcase Your Knowledge Online

Start writing articles or blog posts about compliance topics that interest you. Share them on platforms like LinkedIn to demonstrate your knowledge and passion. This not only builds your presence in the field but can also catch the attention of companies like Jobgether looking for candidates who are engaged and informed.

We think you need these skills to ace ISO 27001 Internal Auditor

ISO 27001 Internal Auditing
ISO 27001 Lead Auditor Certification
Information Security
Governance, Risk, and Compliance (GRC)
Audit Methodologies
Security Compliance Practices
Communication Skills

Some tips for your application 🫡

Show Your Understanding of Compliance:In the compliance-risk field, it's super important to showcase your understanding of regulations and risk management frameworks. Highlight any relevant coursework, certifications (like ICA or AML), or even projects that demonstrate your knowledge and commitment to this area. We want to see how you can navigate this complex landscape!

Quantify Your Achievements:When detailing your experience, try to quantify your achievements. For example, if you've previously worked on a project that improved compliance metrics or reduced risk exposure, give us the numbers! This data-driven approach really stands out to hiring managers in compliance-risk roles.

Tailor Your CV to Reflect Relevant Skills:Make sure your CV highlights skills that are particularly relevant to compliance, like attention to detail, analytical thinking, and report writing. Ensure these are easy to spot – consider using bullet points to break down your responsibilities and achievements for maximum impact!

Craft a Motivating Cover Letter:In your cover letter, let us know why you’re excited about the compliance-risk role at Jobgether. Share what motivates you about compliance, and how you believe you can contribute to our mission. This is your chance to showcase not only your skills but also your passion for this important field!

How to prepare for a job interview at Jobgether

Master the Regulations

Brush up on key compliance regulations relevant to the industry you're applying to. Familiarising yourself with specific laws and frameworks used in your field will give you an edge during technical questions. Show that you’re not just aware of them but can also apply them—think real-life scenarios!

Show Your Analytical Skills

Compliance roles really focus on analytical skills, so be prepared for case studies or situational questions during the interview. We've got to demonstrate how we approach risk assessments or compliance audits, possibly drawing on examples from past experiences or university projects. Bring some thoughtful case scenarios to discuss!

Know Your Tools

Get comfortable with commonly used compliance software and tools. Familiarity with platforms like RSA or MetricStream can really impress during your interview, as it shows you're ready to hit the ground running. If you’ve had any experience with them, make sure to highlight that!

Align with Company Culture

Since it's a full-time position, show your long-term commitment and interest in the company’s mission and values. Dive into how your ethics and professional philosophy align with Jobgether’s stance on compliance. A shared vision can really resonate with interviewers looking for fit as much as skill!