Leave us your email address and we'll send you all the new jobs according to your preferences.

SOC 2 Manager, Audit & Certification

Posted 11 hours 38 minutes ago by Deloitte LLP

Permanent
Not Specified
I.T. & Communications Jobs
South Glamorgan, Cardiff, United Kingdom
Job Description

Cardiff, Gatwick, Manchester, Reading, St Albans

Business Line

Enabling Functions

Date published

07-May-2025

18791

Connect to your Industry

Deloitte Technology works at the forefront of technology development and processes to support and protect Deloitte around the world. In this truly global environment, we operate not in "what is" but rather "what can be" to help Deloitte deliver and connect with its clients, its communities, and one another in ways not previously conceived.

Connect to your career at Deloitte

Deloitte drives progress. Using our vast range of expertise, we help our clients' become leaders wherever they choose to compete. To do this, we invest in outstanding people. We build teams of future thinkers, with diverse talents and backgrounds, and empower them all to reach for and achieve more.

What brings us all together at Deloitte?It'show we approach the thousands of decisions we make everyday. How we behave, our beliefs and our attitudes. In other words: our values. Whatever we do, whereverwe arein the world, welead the way,serve with integrity, take care of each other ,fosterinclusion, andcollaborate for measurable impact. These five shared values lead every decision wemake and action we take, guiding us to deliver impact how and where it mattersmost .

Connect to your opportunity

The SOC 2 Manager, Audit & Certification will be perform the following:

  • Lead SOC 2 audits and related projects for Deloitte Technology
  • Liaise with SOC 2 external auditors to scope and facilitate SOC 2 audits gathering and presenting evidence as required to support DT's SOC 2 audits.
  • Understand technology controls, testing of controls, and supporting evidence to meet SOC 2 Trust Service Criteria.
  • Understand technology controls that impact on-premises and cloud technology, operational risk to the Deloitte Technology organization as well as related laws, regulations, and industry standards, specifically related to internal and cloud technology solutions.
  • Assess technology and operational risks related to internal and cloud technology solutions providing input to DT personnel on appropriate controls to address audit risks
  • Recommend policies, standards, procedures, and controls to assure the confidentiality, integrity, and availability of the information technology environment for on premises as well as cloud hosted IT applications and infrastructure meet the SOC 2 Trust Service Criteria.
  • Manage audit findings; identify and track remediation activities to meet target dates for closure, and track/report progress.
  • Work with the appropriate Information Security, Office of General Counsel, Risk Management, and leadership to determine scope of SOC 2 audits.
  • Develop and recommend appropriate information security policies, standards, procedures, checklists, and guidelines using generally recognized security concepts tailored to meet the requirements of the organization for on premises as well as cloud hosted IT applications and infrastructure.
  • Clearly, concisely and effectively communicate to DT leadership and stakeholders.
  • Make decisions on day-to-day task assignments to the team.
  • Participate in appropriate opportunities for continuing education, seminars, and participation in field-related professional organizations to remain current on developments as an information security professional.

Connect to your skills and professional experience

Do you possess the following?:

  • Bachelor's degree in computer science, business administration, information systems, accounting or equivalent educational or professional experience and/or qualifications.
  • Proven directly related experience in the following: managing information technology audits, assessments, remediation management, creating, leading, and managing risk assessment programs.
  • Experience with SSAE 18 SOC 2 and various other industry standard frameworks such as: NIST, HITRUST, CSA, CCM.
  • Experience leading IT internal audit, external audits, and or service organization control reporting and activities.
  • Solid understanding of IT general controls and activities.
  • Excellent written and verbal communication, listening, and facilitation skills.
  • Excellent time management and related organizational skills, including appropriate sense of urgency, a proactive approach, and a suitable ability to anticipate and manage project lifecycle events, issues, and obstacles (preferred).
  • Strong understanding of and experience with cloud technologies and security controls.

Connect to your business -Enabling Functions

Collaboration is central to everything we do at Deloitte. From IT to HR, marketing and more, our teams help to support the wider business in everything they do. Bringing your individual skills and specialist knowledge, you can make a far-reaching impact. Come join us.

Personal independence

Regulation and controls are standard practice in our industry and Deloitte is no exception. These controls provide important legal protection for both you and the firm. We are subject to a number of audit regulations, one of which requires that certain colleagues abide by specific personal independence constraints (e.g., in relation to any financial interests and employment relationships). This can mean that you and your "Immediate Family Members" are not permitted to hold certain financial interests (shares, funds, bonds etc.) with audit clients of the firm, and also prohibitions on certain employment relationships (e.g., you are not permitted to hold a secondary employment role with SEC audit clients of the firm whilst being employed by the firm). The recruitment team will provide further detail as you progress through the recruitment process or you can contact the Independence team upon request.

Connect with your colleagues

"Everyone at Deloitte builds relationships with their peers and puts in effort to get to know one another, making the work more enjoyable."

Our hybrid working policy

You'll be based in one of our UK locations with hybrid working.

At Deloitte we understand the importance of balancing your career alongside your home life.That's why we'll support you to work flexibly through our hybrid working policy. Depending on the requirements of your role, you'll have the opportunity to work in your local office, virtual collaboration spaces, client sites and remotely. You'll get the chance to meet face to face when needed, while you collaborate and learn from colleagues, share your experiences, and build the relationships that will fuel your career and prioritiseyour wellbeing. Please check with your recruiter for the specific working requirements that may apply for your role.

Our commitment to you

Making an impact is more than just what we do: it's why we're here. So we work hard to create an environment where you can experience a purpose you believe in, the freedom to be you, and the capacity to go further than ever before.

We want you. The true you. Your own strengths, perspective and personality. So we're nurturing a culture where everyone belongs, feels supported and heard, and is empowered to make a valuable, personal contribution. You can be sure we'll take your wellbeing seriously, too. Because it's only when you're comfortable and at your best that you can make the kind of impact you, and we, live for.

Your expertise is our capability, so we'll make sure it never stops growing. Whether it's from the complex work you do, or the people you collaborate with, you'll learn every day. Through world-class development, you'll gain invaluable technical and personal skills. Whatever your level, you'll learn how to lead.

Connect to your next step

A career at Deloitte is an opportunity to develop in any direction you choose. Join us and you'll experience a purpose you can believe in and an impact you can see. You'll be free to bring your true self to work every day. And you'll never stop growing, whatever your level.

Discover more reasons to connect with us, our people and purpose-driven culture at deloitte.co.uk/careers

Email this Job