ISMS & BCMS Internal Audit Lead
ISMS & BCMS Internal Audit Lead
Contract | Outside IR35 | Remote with occasional travel to London
We are looking for an experienced ISMS & BCMS Internal Audit Lead to provide independent specialist assurance across a Group Information Security Management System (ISMS) and Business Continuity Management System (BCMS).
This is a key assignment for an accomplished audit professional who can take ownership of developing and delivering a risk-based, multi-year internal audit programme, aligned to ISO/IEC 27001:2022 and ISO 22301:2019.
The Role
You will be responsible for developing the audit strategy and detailed 2026 audit plan, as well as independently planning and delivering three internal audits. You will assess control effectiveness, review evidence, conduct stakeholder interviews and walkthroughs, and produce clear, evidence-based reports with practical remediation recommendations.
A key part of the assignment will also be establishing a repeatable annual ISMS & BCMS audit model, including methodology, templates, governance, findings tracking and knowledge transfer to support future audit cycles.
Key Requirements
- ISO/IEC 27001:2022 Lead Auditor certification
- ISO 22301:2019 Lead Auditor certification
- Demonstrable experience conducting internal audits against both standards
- Experience developing risk-based ISMS and BCMS audit programmes
- Strong understanding of information security and business continuity governance, controls and assurance
Experience working within complex or multi-entity organisations, supporting ISO certification audits is required.
This is an excellent opportunity for an independent and experienced audit professional to deliver a high-impact piece of work and establish a sustainable audit framework for the future.
Perform a fresh search...
-
Create your ideal job search criteria by
completing our quick and simple form and
receive daily job alerts tailored to you!