slough, south east england, united kingdom Hybrid / WFH Options
McCabe & Barton
80k base + £5k car allowance and other benefits. What You'll Do Assess compliance with internal security policies and industry standards (eg, ISO/IEC 27001/2, PCI-DSS). Conduct supplier risk assessments and third-party due diligence. Support vulnerability assessments, incident investigations, and operational resilience activities. Monitor the effectiveness of security controls to ensure … analysis. A knowledge of the data protection act (UK GDPR) and how it applies to information and cyber security A knowledge of cardpayment system security as defined in PCI-DSS V4.0 Qualifications A security certification such as CISM, CISMP, CISSP or equivalent would be desirable. A relevant IT or security-based degree or equivalent practical experience. More ❯
. Security, Compliance & Governance Partner with Information Security teams to enhance network security posture , addressing vulnerabilities and implementing intrusion detection/prevention systems. Ensure ongoing compliance with ISO 27001, PCI-DSS , and other relevant regulatory standards. Drive a proactive approach to incident response, monitoring, and continuous threat detection . Oversee audit readiness and maintain comprehensive network documentation and … configuration (Cisco ASA, Palo Alto, Fortinet, etc.) , and telephony (SIP/VoIP) systems. Familiarity with cloud and hybrid networking (Azure, AWS, GCP) environments preferred. Strong understanding of ISO 27001, PCI-DSS , and ITIL-aligned service delivery processes. Leadership & Soft Skills Strategic thinker with the ability to balance technical depth and business acumen . Exceptional stakeholder management and communication More ❯
be doing: • Leading and supporting all aspects of security governance activities – from policy and exception management to risk and vendor assessments • Managing compliance and audit activities (ISO 27001, NIST, PCIDSS, NYDFS, etc.) and working closely with tech, legal, and audit teams • Overseeing major projects to ensure security is baked in from inception to implementation • Coaching and developing … strategy, delivery, and stakeholder engagement What you’ll bring: • Strong background in GRC (Governance, Risk, and Compliance) within cybersecurity • Practical experience with frameworks such as ISO 27001, NIST, and PCIDSS • Proven ability to design, implement, and maintain security policies and procedures • Confident in managing audits, vendor assessments, and compliance remediation • Leadership skills that balance mentorship, accountability, and More ❯
slough, south east england, united kingdom Hybrid / WFH Options
YQN Pay
observability frameworks. Contribute directly to business growth through hands-on architecture while mentoring junior engineers as the team scales. Align technology designs with compliance, regulatory, and security requirements (e.g., PCIDSS). What You Bring 5+ years’ experience architecting, building, and/or integrating POS platforms or payment processing systems in fintech, SaaS, or related high-growth environments. … Hands-on experience working with SDKs, SaaS platforms, and third-party system vendors. Strong grasp of payments technology (account-to-account, card acquiring/issuing, tokenization, real-time processing, PCIDSS compliance). Ability to collaborate effectively in cross-functional teams (product, external developers, compliance). Willingness to drive change, iterate quickly, and grow with business needs, including More ❯
Governance & Compliance Contribute to maintaining security standards and aligning with frameworks such as ISO 27001, NIST, CIS, or SOC 2. Support audits, evidence collection, and compliance reporting (e.g., GDPR, PCI-DSS). Develop and maintain documentation for policies, procedures, architecture, and runbooks. Collaboration & Knowledge Sharing Work with IT operations, cloud, and development teams to embed security in system More ❯
Wokingham, Berkshire, England, United Kingdom Hybrid / WFH Options
KBC Technologies UK LTD
VPNs, and WAFs. Develop and manage firewall policies, network access controls, IAM solutions, MFA, RBAC, and privilege management . Ensure alignment of security measures with compliance standards (GDPR, HIPAA, PCIDSS). Conduct regular security audits and assessments to identify and remediate risks. Apply industry frameworks such as NIST Cybersecurity Framework, ISO 27001, CIS Controls . Oversee and More ❯
slough, south east england, united kingdom Hybrid / WFH Options
Acumin
IAM, encryption, API security, and application security. Experience performing threat modelling, security risk assessments, and control design validation. In-depth knowledge of industry standards and frameworks (ISO27001, NIST CSF, PCIDSS, CIS Controls). Minimum of 5 years’ experience in information security roles, ideally within financial services or large-scale digital environments. Professional certifications such as CISSP, SABSA More ❯
slough, south east england, united kingdom Hybrid / WFH Options
TECEZE
compliance: Build security-by-design into solution proposals; incorporate best practices for data protection, vulnerability management, IAM, SOC/IR readiness, and regulatory requirements relevant to SMBs (e.g., HIPAA, PCI-DSS, GDPR nuances as applicable). Customer engagement and discovery: Conduct customer workshops, requirements gathering, current-state assessments, risk analyses, ROI/tco analysis, and roadmaps that translate More ❯
challenges, designing pragmatic governance models, and influencing security strategy at scale this could be your next move. Key Responsibilities Translate international standards (NIST CSF, ISO 27001, GDPR, SOC 2, PCIDSS, CSA CCM) into actionable policies and controls. Design and implement unified compliance frameworks across cloud, hybrid, and enterprise systems. Lead internal and external audits, certification readiness, and More ❯
email. Understanding of encryption algorithms, hash functions, and key management practices. Experience in designing secure architectures in hybrid or cloud environments. Knowledge of compliance and regulatory standards such as PCIDSS, HIPAA, SOX, GDPR, NIST 800-53. Preferred Qualifications: Certifications: CISSP, CISM, CEH, GIAC, Microsoft Certified: Identity and Access, or other IDAM equivalent Technologies. Experience with Zero More ❯
Reading, Berkshire, England, United Kingdom Hybrid / WFH Options
Proactive Appointments
A security professional qualification such as CISSP, CISM, CCSP, CISA, ISO27001 Lead Implementor/Auditor, CEH or equivalent Cloud Computing experience from multiple vendors (O365, Azure, AWS, Google, etc.) PCI-DSS GRC Cyber Security Analyst Due to the volume of applications received for positions, it will not be possible to respond to all applications and only applicants who More ❯
slough, south east england, united kingdom Hybrid / WFH Options
Travelfusion
ll have ● Minimum of 5 years experience in leading and implementing security measures: protocols, datasecurity, cyber and information security ● Qualifications: Certification/experience in ISO 27001, GDPR, NIST, PCIDSS, SOX ● Knowledge of GRC platforms; strong analytical and communication skills ● Governance qualifications valued ● Knowledge of regulations with a deep understanding of GDPR and other data protection laws More ❯
Systems (KMS). Solid understanding of cloud and network security architecture and configurations. Demonstrated experience supporting external audits and assessments, such as SOC 1, SOC 2, ISO 27001, or PCI DSS. Hands-on experience with major cloud platforms (AWS, GCP, Azure) and infrastructure-as-code practices. Proficiency in preparing client assurance materials, including RFP/RFI/DDQ responses More ❯
slough, south east england, united kingdom Hybrid / WFH Options
DVF Recruitment
What You Bring Deep hands-on expertise across EDR, SIEM, NAC, MFA, PAM, and cloud security environments. Proven experience with security frameworks such as ISO 27001, NIST, CIS, and PCI-DSS. Certifications like CISSP, CPSA, or Palo Alto Certified Security Operations Professional. A collaborative mindset, a passion for innovation, and the confidence to take the lead in a high More ❯
slough, south east england, united kingdom Hybrid / WFH Options
Sanderson
through challenges calmly and driving meaningful improvement. Collaborate with global engineering and product teams to align architectural standards and deliver strategic initiatives. Embed regulatory and operational resilience requirements (GDPR, PCI-DSS, Outsourcing, Incident Response) into every layer of delivery. Mentor and coach engineers to build a strong, reliable, and forward-looking backend function. What You’ll Bring 10+ More ❯
consultations and conduct vulnerability assessments. The IT Project Engineer will oversee and direct Penetration Testing exercises. The IT Project Engineer will be familiar with Cyber Essentials, Microsoft Copilot and PCI-DSS. The IT Project Engineer will be network-savvy. Think firewalls, switches, routers, VPNs, vLANs. The IT Project Engineer will be cloud-savvy. Think primarily Azure and AWS. But More ❯
testing methodologies and forensic analysis techniques. Experience in writing content/polices for monitoring in line with MITRE ATT&CK framework Familiarity with regulatory requirements such as GDPR, HIPAA, PCIDSS, and industry standards like NIST Cybersecurity Framework. More ❯
slough, south east england, united kingdom Hybrid / WFH Options
X4 Technology
solutions Experience with REST APIs, SQL, and modern web technologies (JavaScript/React/Python/Postman API preferred) Familiarity with payment gateways, transaction routing and compliance frameworks (e.g. PCIDSS, PSD2, or Open Banking) is a strong plus If you’re passionate about empowering enterprise clients and partners through innovative payments technology and technical excellence, apply now More ❯
Maidenhead, England, United Kingdom Hybrid / WFH Options
Solas IT Recruitment
Management. Experience with scripting and automation (PowerShell preferred). Networking skills, with good understanding of switch configuration and firewall rule sets. Familiarity with Barracuda platform, Cisco ASA firewalls, and PCI-DSS (desirable). Excellent communication skills (written and verbal, in English). Detail-oriented, organised, and adaptable to a fast-paced environment. More ❯
reading, south east england, united kingdom Hybrid / WFH Options
Solas IT Recruitment
Management. Experience with scripting and automation (PowerShell preferred). Networking skills, with good understanding of switch configuration and firewall rule sets. Familiarity with Barracuda platform, Cisco ASA firewalls, and PCI-DSS (desirable). Excellent communication skills (written and verbal, in English). Detail-oriented, organised, and adaptable to a fast-paced environment. More ❯
OIDC, WebAuthn and identity auth patterns 🎯 Bonus Points For Security engineering experience in FinTech, payments or regulated domains Delivered secure coding training or scaled security champion programs Knowledge of PCI-DSS, PSD2, SCA or financial compliance frameworks 💡 What’s In It For You Huge impact: secure products used globally Ownership in a modern, engineering-led culture Budget for More ❯
slough, south east england, united kingdom Hybrid / WFH Options
La Fosse
service reviews and senior stakeholder meetings with actionable insights Ensure data accuracy and completeness within the ITSM platform (e.g., ServiceNow) Validate and reconcile data for regulatory and audit reporting (PCIDSS, DORA, ACPR, GDPR) Assist in control evidence and audit response materials related to ITSM process adherence Support process owners with ad-hoc reporting, metrics tracking, and trend More ❯