1 to 25 of 46 ISO/IEC 27001 Jobs in the City of London

Senior Security Consultant

Location
City Of London, England, United Kingdom
testing plans. Implement and maintain information security controls aligned with applicable laws, regulations, standards and best practices, including ISO 27001 / 27002, GDPR, Cyber Assessment Framework (CAF) and NIST CSF. Develop and maintain information security policies, standards and procedures, ensuring organisational compliance. Define, coordinate … banking, energy, telecommunications and media, industrial protection, and critical infrastructure protection. Knowledge of SOC operations, digital forensics and fraud management. Experience with GRC / IRM platforms and the automation of security and compliance processes. Additional security certifications such as CGEIT, C CISO, QSA, CDPP, or Security Director certification issued ...

Information Security Manager - Fintech - Hybrid

Location
City Of London, England, United Kingdom
Engineering and Technology teams to embed security into the software development lifecycle, including secure design reviews, threat modelling, secure coding standards, dependency scanning, SAST / DAST tooling, secrets management, application / API penetration testing, vulnerability remediation tracking and release security governance. Support DORA‐related client and contractual obligations … agreed financial controls. Operate a risk‐based third‐party security assurance framework covering supplier onboarding, periodic reassessment, critical supplier classification, contractual security controls, subcontractor / sub‐processor oversight, supplier incident monitoring and exit arrangements. Own the client security assurance process, including security questionnaires, RFP / RFI responses, client ...

Senior Cloud Security Engineer (GCP) - Engine by Starling

Location
City Of London, England, United Kingdom
distance of one of our offices so that we're able to interact and collaborate in person. About Engineering at Engine by Starling - https: / / enginebystarling.com / careers / engineering / As a Security Engineer at Engine, you'll be working on helping … Manager (EKM) and Secret Manager - including cryptographic key ceremonies Experience with Workload Identity and Workload Identity Federation for keyless authentication of workloads and CI / CD Experience configuring and utilising cloud-native security logging, monitoring and detection services Strong programming skills - in security we write our own scripts ...

Cyber Security Controls Tester (Assurance)

Location
City Of London, England, United Kingdom
Evaluate the effectiveness of technical, procedural, and physical security controls against documented security requirements and standards. Assess security controls against recognised frameworks including ISO 27001 , NIST CSF , NIST 800-53 , and CIS Controls . Review security documentation, including High-Level Designs (HLDs), Low-Level Designs (LLDs … Required Skills & Experience Proven experience testing and assessing the effectiveness of security controls within complex enterprise environments. Strong knowledge of security frameworks including: ISO 27001 NIST Cyber Security Framework (CSF) NIST 800-53 CIS Controls Experience reviewing and testing: Network security controls Firewall configurations and rule ...

OT Cyber Security Senior Manager

Location
City Of London, England, United Kingdom
Accenture's thought leadership in OT security through publications, presentations, and client engagements What You'll Need Essential 10+ years of experience in OT / ICS cybersecurity or critical infrastructure security Proven track record leading complex security programmes in regulated industrial environments Deep understanding of Industrial Control Systems (SCADA … across multiple sectors: Energy, Utilities, Manufacturing, Aerospace, Defence, or Critical National Infrastructure Knowledge of security standards including NERC‐CIP, IEC 62443, ISA / IEC 62443 Background in both advisory and hands‐on technical implementation What We Offer Work on prestigious projects spanning critical national infrastructure ...

Security Client Solutions & Growth Manager (Microsoft Security)

Location
City Of London, England, United Kingdom
Security Advisory & Client Solutions Associate Manager / Manager (Microsoft Security) The Security Advisory & Client Solutions Manager is a senior, client-facing cyber security professional responsible for leading security advisory engagements, shaping strategic security opportunities, and driving growth across Microsoft-first clients. The role combines deep security consulting experience with … delivery teams to convert opportunities into successful security engagements. The role requires a strong understanding of Microsoft's security ecosystem, including Microsoft 365 E3 / E5 / E7, Entra ID, Defender, Sentinel, Purview, Copilot and emerging technologies such as Agent 365. While primarily advisory and client-focused ...

InfoSec Manager: ISO 27001 & Client‐Focused Compliance

Location
City Of London, England, United Kingdom
Group is seeking a skilled Information Security Officer to strengthen our SOC2 compliance and ISO 27001 governance within our Financial services clientele. The role focuses on policy development, audits, and serving as the main point of contact for client inquiries. The ideal … candidate has a Bachelor's degree, at least five years in a compliance role in finance, and strong communication skills. Certifications such as CISA / CISM / CISSP are a plus, and the ability to work both independently and #J-18808-Ljbffr ...

Third Party Cyber Risk Lead

Hiring Organisation
Hays Technology
Location
City of London, London, Cheap, United Kingdom
Employment Type
Permanent
Salary
£80000 - £90000/annum Up to 90k, plus bonus
Develop meaningful risk reporting, dashboards and management information for senior stakeholders. Ensure alignment with regulatory and industry frameworks including DORA, NIS2, NIST and ISO 27001. Act as the subject matter expert for third-party cyber risk across the organisation. What We're Looking For We are particularly interested … experience engaging both technical and non-technical audiences. Relevant certifications such as CISSP, CISM, CRISC or ISO 27001 Lead Auditor / Implementer. Suitable Backgrounds May Include Third Party Cyber Risk Manager Cyber Risk Manager Technology Risk Manager Supplier Assurance Lead Vendor Risk Manager Operational Resilience ...

Operational Technology (OT) Architect

Hiring Organisation
Tria
Location
City, London, United Kingdom
Employment Type
Contract
Contract Rate
GBP 700 - 750 Daily
environments Industrial Ethernet Network segmentation Firewalls Remote access solutions Zero Trust principles Knowledge of industrial protocols such as: Modbus DNP3 OPC-UA Profinet EtherNet / IP Experience with OT cyber security frameworks and standards including: IEC 62443 NIST NIS2 ISO 27001 Experience working … Azure or AWS). Industrial IoT (IIoT) technologies. Experience with OT monitoring and threat detection platforms. Relevant certifications such as: GICSP CISSP TOGAF ISA / IEC 62443 certifications Azure Security certifications IR35 Status: Inside IR35 If you are an experienced OT Architect with a strong background ...

Cyber Security Engineer

Location
City Of London, England, United Kingdom
Information Security Management System (ISMS). Conduct security risk assessments and maintain risk registers. Assist with internal and external audits, including ISO 27001, Cyber Essentials, and client assurance reviews. Ensure security policies, standards, and procedures are reviewed and updated. AI Security & Governance Support the secure adoption … controls and reducing risk. WHAT YOU'LL BRING: Strong experience in a cyber security, information security, or security operations role. Good understanding of: ISO 27001 NIST Cyber Security Framework Cyber Essentials Plus Risk Management Methodologies Experience investigating security incidents. Knowledge of Microsoft 365 security technologies. Understanding ...

Solution Architect (Principal Consultant)

Location
City Of London, England, United Kingdom
Azure, AWS, and Oracle Cloud. Apply Service-Oriented Architecture (SOA) and Domain-Driven Design (DDD) principles. Design event-driven systems using Kafka and Pub / Sub. Lead API design, integration strategies, and legacy modernization to microservices. Contribute to Disaster Recovery planning and platform resilience. Implement Identity and Access Management … cataloging, and lineage. Ensure compliance with ISO 27001, GDPR, PCI DSS, and other security standards. Embed DevSecOps principles into CI / CD pipelines and platform delivery. Produce High-Level and Low-Level Designs (HLD / LLD) and Solution Architecture Documents (SAD). Competitive Salary ...

Privacy and Compliance Analyst

Location
City Of London, England, United Kingdom
authorized to work in the United Kingdom; it is not eligible for relocation or sponsorship. Hours: Core hours are typically 8:00 / 9:00 am to 17:00 / 18:00 with flexibility to support international team needs. Travel: Less than 5% annually, may include international trips. … Legal on privacy notices, consent, data retention, and contractual commitments Support audits and compliance programs through evidence collection and remediation tracking Contribute to ISO 27001, SOC 2, and other compliance initiatives Support privacy, security, and third-party risk assessments and maintain risk registers Support privacy incident ...

MICROSOFT PURVIEW SECURITY CONSULTANT

Hiring Organisation
Adecco
Location
City of London, Greater London, United Kingdom
Employment Type
Permanent
Salary
£45000 - £52000/annum Benefits
Microsoft Purview Security Consultant - Purview, Security, Location: London / Hybrid Working Salary: £45,000 - £52,000 (Depending on Experience) + Benefits + potential bonus ________________________________________ About the Company Our client is a forward-thinking and entrepreneurial cloud consultancy that partners with major organisations across the UK. They help businesses maximise … solutions. * Willingness to travel to client sites as required. * Microsoft Security, Compliance or Azure certifications. * Experience with Microsoft Defender technologies. * Understanding of GDPR, ISO 27001 and other compliance frameworks. * Knowledge of Zero Trust security principles. * Experience delivering Microsoft 365 transformation or migration projects. Pre-Sales Experience ...

Information Security Manager

Location
City Of London, England, United Kingdom
adheresto regulatory requirements and maintaints the trsut of our clients. Key Responsibilities: Develop, implement, and maintain compliance policies and procedures in accordance with ISO 27001 standards. Knowledge of SOC2 is beneficial. Conduct regular audits and assessments to ensure compliance and certifications are maintained. Serve … Qualifications: Bachelor's degree Minimum of 5 years of experience in a compliance role within the financial industry. In-depth knowledge of ISO 27001 standards and requirements. Proven experience in a client-facing role, with excellent communication and interpersonal skills. Strong analytical and problem-solving abilities. ...

Senior IT Manager

Location
City Of London, England, United Kingdom
sites, including Microsoft 365, hardware, user lifecycle management and business systems. Leading the organisation's IT security and governance, including Cyber Essentials certification, ISO 27001 alignment, risk management and data protection requirements. Managing technology vendors, contracts, licences and renewals, ensuring strong commercial control and avoiding unnecessary … outsourced IT managed service provider and holding suppliers accountable for service and commercial performance. A working knowledge of Microsoft 365 alongside Cyber Essentials, ISO 27001 principles, GDPR and data protection requirements. Experience managing IT contracts, licences, renewals, budgets and vendor relationships. The ability to manage technology ...

GRC & Security Compliance Leader — ISO 27001 Expert

Location
City Of London, England, United Kingdom
governance, risk and compliance programme under the Head of Information Security. You will drive policy, training, risk assessments and reporting, while maintaining ISO 27001 certification and embedding security across products and services. Lead a team, partner with Legal, Privacy, Procurement and IT, and influence executives with ...

Enterprise Security Architect

Location
City Of London, England, United Kingdom
Identity Security: Identity and access architecture across workforce, privileged, service, application and machine identities; identity governance, modern authentication, access lifecycle management, conditional access, PAM / PIM, federation, SSO, MFA, identity threat detection, and zero trust identity control design. AI & Blockchain Architecture: Secure architecture and governance for AI, machine learning … distributed ledger technologies and blockchain-enabled platforms; including model and data protection, AI risk controls, prompt and output security, smart contract assurance, tokenization, wallet / key management, privacy, auditability, regulatory alignment, and integration with enterprise identity, data, cloud and application security controls. Cloud & Infrastructure Security: Secure deployment and integration ...

Senior Data Privacy & BigID Consultant

Location
City Of London, England, United Kingdom
reports, and automated policy workflows Manage project timelines, deliverables, and escalations with minimal oversight Regulatory & Compliance Map client data flows to GDPR, DPDP, CCPA / CPRA, HIPAA, and ISO 27001 obligations Support RoPA, DPIA, and PIA documentation for client compliance programs Advise on data retention … deletion, and breach notification protocols TECHNICAL SKILLS BigID Platform Data discovery & scanning (structured, unstructured, cloud) Classification policies, labeling, and tagging DSR / DSAR automation workflows Risk & privacy modules — correlation, remediation BigID Open SDK, APIs, and custom app development Data & Cloud SQL / NoSQL databases — Snowflake Cloud platforms ...

SOC and Incident Response Lead

Location
City Of London, England, United Kingdom
identify root causes, lessons learned, and recommend measures for prevention or improvement. Conduct periodic threat simulation activities to evaluate the adequacy of deployed detective / preventative controls. About you Proficiency in incident response tooling, including SIEM, EDR, cloud security, threat intelligence and forensic analysis platforms. Demonstrable experience leading … make effective decisions under pressure whilst managing multiple incidents, priorities and stakeholders simultaneously. Experience working with cloud security technologies and environments, particularly Azure and / or AWS. Experience building, tuning and improving security monitoring, detection engineering and threat detection capabilities. Strong stakeholder management and communication skills, with the ability ...

Internal Audit Manager - IT

Location
City Of London, England, United Kingdom
culture. It’s what sets us apart, and the reason our employees have been turning down headhunters for years. Whatever your priorities – work / life balance, career progression, sustainability, volunteering – you’ll find like-minded people driving change at Howden. We are hiring for an Internal Audit Manager … what sets us apart, and the reason our employees have been turning down disappointed head-hunters for years. Whatever your priorities – work / life balance, career progression, sustainability, volunteering – you’ll find like-minded people driving change at Howden. What is the role? Internal audit is an independent, objective ...

Senior Security Architect - Senior Manager

Hiring Organisation
Anson Mccade
Location
City of London, London, United Kingdom
Employment Type
Permanent, Work From Home
role . Experience within a technology consultancy, systems integrator or professional services environment . Strong understanding of security frameworks and standards such as ISO 27001, NIST or CIS . Experience with threat … modelling and risk assessment . Strong knowledge of network security, encryption, authentication and access control. Experience across security technologies such as firewalls, SIEM, IDS / IPS and vulnerability assessment tools. Understanding of cloud security across AWS, Azure or GCP . Experience with DevSecOps, CI / CD and automated ...

IT and IS Oversight Manager

Location
City Of London, England, United Kingdom
Risk, IT Audit or a related discipline.• Practical knowledge of information security controls, cyber risk, data protection and technology risk frameworks such as ISO 27001 or NIST.• Experience operating within a regulated environment, ideally Financial Services.• A solid understanding of risk management, governance and control frameworks ...

Chief Security Architect

Hiring Organisation
Anson Mccade
Location
City of London, London, United Kingdom
Employment Type
Permanent, Work From Home
Bonus Onsite WORKING Location: Central London, Greater London - United Kingdom Type: Permanent Chief Security Architect Location: UK - Hybrid / Remote Salary: Up to £110,000 + senior consultancy / leadership package Clearance: Active DV clearance essential Sector: Defence, Government, National Security & Critical National Infrastructure The Opportunity … looking for an exceptional Chief Security Architect / NCSC Head Consultant to take senior technical ownership of Security Architecture across a high-assurance cyber security consultancy. This is a senior, client-facing architecture role where you will act as a technical authority for security architecture , leading complex engagements across ...

Infrastructure Engineer - Zero Trust & M365 Lead (SC Cleared)

Hiring Organisation
Infosec
Location
City of London, London, United Kingdom
Employment Type
Permanent
Salary
£75000 - £85000/annum
baselines in line with organisational and regulatory requirements Automate infrastructure and security processes using PowerShell, Microsoft Graph API and Terraform Support compliance with ISO 27001, GDPR and Cyber Essentials requirements while mentoring junior engineers Job Requirements: Significant experience in Microsoft 365 administration, infrastructure engineering or cyber ...

Cyber Defence Network Engineer

Location
City Of London, England, United Kingdom
perimeter firewall estates. Conducting firewall security assessments across multiple vendor platforms: rule base review, management plane exposure, VPN and remote access configuration, IPS / IDS posture, logging, and firmware currency. Assessing cloud configuration against CIS Benchmarks and NIST using tooling including Prowler, ScubaGear and PingCastle, and turning technical findings … Designing network segmentation across cloud and on-premise environments: Azure Network Security Groups and subnet‐level control, VLAN segregation, DMZ isolation, and layer 2 / layer 3 access control. Designing data classification and DLP policy, working with client data and business process owners to define label sets and handling ...