Formal certification (ISACA: Certified Information Security Manager (CISM). CISSP, or CRISC) and/or formal training in information security standards and best practice (e.g.: ISO 27001/2, COBIT), or equivalent work experience demonstrating understanding of the same. Experience Essential Extensive experience of developing and delivering an Information Security service to a large complex organisation using confidential and/ More ❯
Formal certification (ISACA: Certified Information Security Manager (CISM). CISSP, or CRISC) and/or formal training in information security standards and best practice (e.g.: ISO 27001/2, COBIT), or equivalent work experience demonstrating understanding of the same. Desirable Professional Enterprise Architecture Qualification e.g. SABSA (Sherwood Applied Business Security Architecture), TOGAF (The Open Group Architecture Framework) or equivalent. Experience More ❯
to demonstrate stakeholder management at most levels, including management, InformationTechnology colleagues and business representatives. You should have awareness of common Information Security management frameworks such as ISO 27001, COBIT, Information Security Forum and NIST. More ❯
as Oracle Risk Management Cloud (RMC) or third-party SoD solutions. Compliance Knowledge Demonstrated experience with SOX (Sarbanes–Oxley) compliance , ITGCs , and access control frameworks . Understanding of COSO , COBIT , or similar internal control frameworks. Professional Skills Strong analytical and problem-solving skills with a detail-oriented approach. Excellent stakeholder communication — able to bridge IT, audit, and business perspectives. Proven More ❯
and business representatives. Explaining to and communicating with both non-technical and very technical audiences You should have awareness of common Information Security management frameworks such as ISO 27001, COBIT, Information Security Forum and NIST. If you are available and interested, please apply today More ❯
and business representatives. Explaining to and communicating with both non-technical and very technical audiences You should have awareness of common Information Security management frameworks such as ISO 27001, COBIT, Information Security Forum and NIST. If you are available and interested, please apply today More ❯
and business representatives. Explaining to and communicating with both non-technical and very technical audiences You should have awareness of common Information Security management frameworks such as ISO 27001, COBIT, Information Security Forum and NIST. If you are available and interested, please apply today More ❯
as Build vs Buy, On-premise vs Cloud, In-house vs Outsourced Development, and Intra-group vs Local Service Delivery. Familiarity with technology standards and frameworks such as ITIL, COBIT, and NIST, and working knowledge of relevant regulatory expectations. Excellent written and verbal communication skills, with the ability to articulate risk topics clearly to both technical and non-technical audiences. More ❯
milton keynes, south east england, united kingdom Hybrid / WFH Options
MIB
testing involves strong vendor collaboration and management. • Strong background in test planning, execution, and defect management in Agile and Waterfall environments. • Proven experience with formal governance models (e.g., ITIL, COBIT) or working within structured change frameworks. • Skilled in using Jira or similar tools for test management and reporting, including reporting dashboards and the ability to interpret and present test data. More ❯
Security Consultant (Governance, Risk, Compliance) Reading, UK (Hybrid with some travel) £30.00–£40.00 per hour (Inside IR35) 6-month contract. Potential to extend up to 2 years We are seeking an experienced Cyber Security Consultant (GRC) to join a leading More ❯
Security Consultant (Governance, Risk, Compliance) Reading, UK (Hybrid with some travel) £30.00–£40.00 per hour (Inside IR35) 6-month contract. Potential to extend up to 2 years We are seeking an experienced Cyber Security Consultant (GRC) to join a leading More ❯
Reading, Berkshire, England, United Kingdom Hybrid / WFH Options
Certain Advantage
delivering Governance, Risk and Compliance (GRC) projects for major enterprise clients — including risk management, cloud security governance, and compliance frameworks such as ISO27001, NIST CSF, CIS Top 18 andCOBIT .You’ll play a key role in engaging with senior stakeholders, assessing cyber maturity, and driving best-practice improvements across a range of industries. Key Responsibilities Deliver Cyber GRC consulting … Required 4+ years’ experience in a professional consulting role, ideally within enterprise IT security, governance, or risk management. Proven delivery experience using frameworks such as ISO27001, NIST CSF, CIS, COBIT , or equivalent. Strong client-facing skills, with the ability to communicate technical concepts to non-technical audiences. Relevant industry certifications such as CISSP, CISA, CRISC, CISM, or CISMP . Excellent More ❯
Tangent International are urgently looking for GRC Security Consultant to work a 6 month extendable contract based in Reading (Hybrid) My client is growing its EMEA Cyber Security consulting practice and building its Cyber Security Centre of Excellence in Prague. More ❯
Tangent International are urgently looking for GRC Security Consultant to work a 6 month extendable contract based in Reading (Hybrid) My client is growing its EMEA Cyber Security consulting practice and building its Cyber Security Centre of Excellence in Prague. More ❯
The position therefore requires strong interpersonal and technical skills and the ability to effectively identify business issues and propose compelling solutions from technical to Director-level stakeholders. Your success will be measured primarily on quality of delivery and overall client More ❯
The position therefore requires strong interpersonal and technical skills and the ability to effectively identify business issues and propose compelling solutions from technical to Director-level stakeholders. Your success will be measured primarily on quality of delivery and overall client More ❯