Information Security Lead
Core
Lead and drive compliance programmes (ISO 27001, SOC 1 Type 2, SOC 2 Type 2) and act as the primary responder to customer security due diligence for a warehouse intelligence and robotics company.
Role type
Senior GRC/Information Security Lead
Builds
Centralized security knowledge base, compliance evidence, and risk management frameworks
Domain
Logistics, Autonomous Robotics, Cloud Security (AWS)
Deliverable
Production ML models | product features | dashboards & analysis | client delivery | infrastructure
Required skills
ISO 27001 implementation/auditing, SOC 1/SOC 2 frameworks, GRC platform management, vendor security assessments, incident response, vulnerability management, security awareness training, cloud security principles
Preferred skills
Robotics/OT/IoT security knowledge, experience in B2B SaaS or startup environments
Technologies
AWS, Thoropass, Vanta, Drata
Responsibilities
Own day-to-day execution of ISO 27001, SOC 1, and SOC 2 programmes including evidence collection and auditor liaison; Maintain GRC platform controls and risk registers; Drive continuous improvement of policies and controls; Serve as primary contact for customer security questionnaires; Partner with Sales to unblock deals where security is a gate; Conduct vendor security assessments; Contribute to incident response and vulnerability management; Monitor threat landscape for autonomous robotics business; Develop and run security awareness training and phishing simulations
Seniority
Senior, hands-on IC