Jobgether
ISO 27001 Internal Auditor

How your CV stacks up
Upload your CV to see how well it fits this job role
?%
Job Description: ISO 27001 Internal Auditor
This position is listed on behalf of a partner company, who manages all applications and next steps. Our partner is looking for an ISO 27001 Internal Auditor based in United Kingdom.
We are looking for an experienced security professional to take ownership of internal audit activities and help organizations achieve and maintain industry-leading compliance standards.
This role focuses on assessing security controls, reviewing evidence, identifying gaps, and providing actionable guidance before external certification audits.
You will work independently while collaborating closely with customers to ensure their compliance readiness and long-term security maturity.
The position offers the opportunity to shape audit processes, contribute to security frameworks, and support companies navigating complex compliance requirements.
You will join a remote-first environment where ownership, expertise, and clear communication are highly valued.
This is an impactful opportunity for an auditor who enjoys solving problems, improving security practices, and helping organizations succeed.
Accountabilities
- Own the complete internal audit lifecycle, from initial kickoff through final reporting and customer readiness for external certification audits.
- Review and assess customer evidence against relevant ISO 27001 controls, ensuring documentation and security practices meet required standards.
- Conduct customer discussions to explain audit findings, highlight non-conformities, and provide clear recommendations for remediation.
- Identify critical gaps and risks that could impact certification success, ensuring customers are prepared before external assessments.
- Create clear and actionable audit reports that explain missing requirements, business impact, and recommended next steps in accessible language.
- Manage multiple audits simultaneously while maintaining quality, timelines, and strong customer relationships.
- Maintain independence between auditing and implementation activities to ensure objective assessments.
- Expand expertise across additional compliance frameworks such as TISAX and ISO 42001 while contributing to the development of repeatable audit methodologies.
- Provide structured feedback to improve security compliance processes, platform guidance, and customer experience.
Reasons to use Rodeo
I’m in my final year doing Economics and I don’t know whether to apply for grad schemes now or do a masters first. What do you think?
Honest answer — it depends on where you want to end up. A lot of top grad schemes (Big 4, civil service, banking) don’t need a masters. Let’s look at the ones you’d be competitive for now, and we can decide if a masters actually adds anything.
Also worth knowing: most autumn 2026 applications are open now. Timing matters more than you think.
Start with a chat, not a search bar
Grad scheme, placement, apprenticeship? Not sure what you want yet — that's fine. Your agent talks it through with you and turns "I have no idea" into a shortlist.
Graduate Consultant — 2026 Scheme
Why you're a good match
StrongYour economics background and your summer at a regional bank line up with what PwC looks for on the consulting scheme. Applications close in four weeks.
See breakdownIt searches the market for you
Every day your agent scans the market matching roles against what actually matters to you, not just keywords on a CV.
Why you're a good match
You’ve got the grades and the economics background, and your bank internship is exactly the experience this scheme looks for. Apply soon — deadlines close within the month.
Experience fit
Your summer at the bank plus your econometrics coursework map directly to the day-one responsibilities on this scheme — client modelling, market briefings, and deal support.
Only hits
No noise. No "maybe this fits." Just roles with a clear explanation of why they're right — and where to focus when applying.
Requirements
- Up to 2 years of professional experience in information security or related compliance fields.
- Hands-on experience conducting ISO 27001 internal audits, with at least 10 independently completed audits.
- ISO 27001 Lead Auditor certification from PECB or an equivalent recognized certification.
- Practical experience auditing within modern Governance, Risk, and Compliance (GRC) platforms.
- Strong understanding of ISO 27001 controls, security compliance practices, and audit methodologies.
- Excellent written and verbal English communication skills, with the ability to explain complex security concepts clearly to non-technical audiences.
- Strong organizational skills with the ability to manage multiple priorities and maintain audit schedules.
- Independent, detail-oriented, and comfortable taking ownership of customer-facing responsibilities.
- Nice-to-have experience with frameworks such as TISAX, ISO 42001, NIS2, or SOC 2.
- Previous experience in a fast-growing startup environment or exposure to SaaS products and cross-functional teams is a plus.
Benefits
- Fully remote work environment with flexibility within supported European time zones.
- Competitive salary aligned with local market standards.
- Equity package providing the opportunity to share in the company’s long-term success.
- Annual personal development budget of €1,000 to support learning and professional growth.
- Home office budget and access to coworking spaces.
- Comprehensive health insurance coverage.
- 26 days of annual leave plus local public holidays.
- Access to modern technology equipment, including laptop, monitors, and professional accessories.
- Opportunities for mentorship and professional development with experienced industry leaders.
- Annual company retreats and team events to build relationships and collaboration.
- Opportunity to contribute to the growth of innovative security and compliance solutions.


Get help with your application
Your very own career expert that helps elevate your application to the next level.
How Jobgether Works
We use an AI-powered matching process to ensure your application is reviewed quickly, objectively, and fairly against the role's core requirements. Our system identifies the top-fitting candidates, and this shortlist is then shared directly with the hiring company. The final decision and next steps (interviews, assessments) are managed by their internal team.
We appreciate your interest and wish you the best!
Why Apply Through Jobgether?
Data Privacy Notice: By submitting your application, you acknowledge that Jobgether will process your personal data to evaluate your candidacy and share relevant information with the hiring employer. This processing is based on legitimate interest and pre-contractual measures under applicable data protection laws (including GDPR). You may exercise your rights (access, rectification, erasure, objection) at any time.
We may use artificial intelligence (AI) tools to support parts of the hiring process, such as reviewing applications, analyzing resumes, or assessing responses and identifying potential inconsistencies or verification signals in application materials based on available information. These tools assist our recruitment team but do not replace human judgment. Final hiring decisions are ultimately made by humans. If you would like more information about how your data is processed, please contact us.
“It took my CV and asked me questions relevant to understanding what kind of jobs to suggest for me. Suggestions were almost perfect. Jobs were exactly what I’ve been looking for.”
Jessica, London
Skills
Location