ISO 27001 Internal Auditor in Puuek (Pu Uk) at Jobgether
Explore Related Opportunities
Job Description
This position is listed on behalf of a partner company, who manages all applications and next steps. Our partner is looking for an ISO 27001 Internal Auditor based in United Kingdom.
We are looking for an experienced security professional to take ownership of internal audit activities and help organizations achieve and maintain industry-leading compliance standards.
This role focuses on assessing security controls, reviewing evidence, identifying gaps, and providing actionable guidance before external certification audits.
You will work independently while collaborating closely with customers to ensure their compliance readiness and long-term security maturity.
The position offers the opportunity to shape audit processes, contribute to security frameworks, and support companies navigating complex compliance requirements.
You will join a remote-first environment where ownership, expertise, and clear communication are highly valued.
This is an impactful opportunity for an auditor who enjoys solving problems, improving security practices, and helping organizations succeed.
- Own the complete internal audit lifecycle, from initial kickoff through final reporting and customer readiness for external certification audits.
- Review and assess customer evidence against relevant ISO 27001 controls, ensuring documentation and security practices meet required standards.
- Conduct customer discussions to explain audit findings, highlight non-conformities, and provide clear recommendations for remediation.
- Identify critical gaps and risks that could impact certification success, ensuring customers are prepared before external assessments.
- Create clear and actionable audit reports that explain missing requirements, business impact, and recommended next steps in accessible language.
- Manage multiple audits simultaneously while maintaining quality, timelines, and strong customer relationships.
- Maintain independence between auditing and implementation activities to ensure objective assessments.
- Expand expertise across additional compliance frameworks such as TISAX and ISO 42001 while contributing to the development of repeatable audit methodologies.
- Provide structured feedback to improve security compliance processes, platform guidance, and customer experience.
- Up to 2 years of professional experience in information security or related compliance fields.
- Hands-on experience conducting ISO 27001 internal audits, with at least 10 independently completed audits.
- ISO 27001 Lead Auditor certification from PECB or an equivalent recognized certification.
- Practical experience auditing within modern Governance, Risk, and Compliance (GRC) platforms.
- Strong understanding of ISO 27001 controls, security compliance practices, and audit methodologies.
- Excellent written and verbal English communication skills, with the ability to explain complex security concepts clearly to non-technical audiences.
- Strong organizational skills with the ability to manage multiple priorities and maintain audit schedules.
- Independent, detail-oriented, and comfortable taking ownership of customer-facing responsibilities.
- Nice-to-have experience with frameworks such as TISAX, ISO 42001, NIS2, or SOC 2.
- Previous experience in a fast-growing startup environment or exposure to SaaS products and cross-functional teams is a plus.
- Fully remote work environment with flexibility within supported European time zones.
- Competitive salary aligned with local market standards.
- Equity package providing the opportunity to share in the company’s long-term success.
- Annual personal development budget of €1,000 to support learning and professional growth.
- Home office budget and access to coworking spaces.
- Comprehensive health insurance coverage.
- 26 days of annual leave plus local public holidays.
- Access to modern technology equipment, including laptop, monitors, and professional accessories.
- Opportunities for mentorship and professional development with experienced industry leaders.
- Annual company retreats and team events to build relationships and collaboration.
- Opportunity to contribute to the growth of innovative security and compliance solutions.