Victoria James • 03 February 2025 We are looking for an experienced Data and Security Compliance Manager to lead and maintain our compliance with ISO 9001, IS0 14001, ISO 27001, CyberEssentials Plus, MOD-level SAQs, FSQS and GDPR regulations. The role is crucial in ensuring our agency adheres to best practices and legislation in data protection, information security … and regulatory requirements. Key responsibilities Compliance and certification management Ensure we have the processes and infrastructure in place to maintain and oversee compliance with: ISO 9001, 14001 and 27001 CyberEssentials Plus certification MOD-level SAQs FSQS (Financial Services Qualification System) GDPR and UK Data Protection Law PCI-DSS compliance New requirements as applicable Manage our internal and … contracts and project teams to ensure we are meeting our commitments Supplier/vendor management including vendor specific assessments and flow down policy control and compliance Information security and CyberEssentials Plus Oversee CyberEssentials Plus compliance ensuring security controls are in place Work closely with the IT team to assess vulnerabilities, manage risk and implement More ❯
Victoria James • 03 February 2025 We are looking for an experienced Data and Security Compliance Manager to lead and maintain our compliance with ISO 9001, IS0 14001, ISO 27001, CyberEssentials Plus, MOD-level SAQs, FSQS and GDPR regulations. The role is crucial in ensuring our agency adheres to best practices and legislation in data protection, information security … and regulatory requirements. Key responsibilities Compliance and certification management Ensure we have the processes and infrastructure in place to maintain and oversee compliance with: ISO 9001, 14001 and 27001 CyberEssentials Plus certification MOD-level SAQs FSQS (Financial Services Qualification System) GDPR and UK Data Protection Law PCI-DSS compliance New requirements as applicable Manage our internal and … contracts and project teams to ensure we are meeting our commitments Supplier/vendor management including vendor specific assessments and flow down policy control and compliance Information security and CyberEssentials Plus Oversee CyberEssentials Plus compliance ensuring security controls are in place Work closely with the IT team to assess vulnerabilities, manage risk and implement More ❯
performance, and security of core services. The System Administrator will contribute to the implementation of secure, scalable solutions and ensure alignment with compliance standards such as ISO 27001 and CyberEssentials Plus. This role supports multiple office locations and data centres and is expected to actively troubleshoot issues, optimize systems, and maintain service continuity throughout the engagement. Accountabilities … availability of on-premises Windows-based infrastructure and Azure cloud services. Supporting the implementation and enforcement of security controls aligned with organizational policies and compliance standards (e.g., ISO 27001, CyberEssentials Plus, GDPR). Overseeing Active Directory, Group Policy, DNS, DHCP, and other core infrastructure services. Managing system configuration, performance tuning, and incident/problem resolution across both … systems that provide visibility into infrastructure health and support timely issue resolution. Systems and processes maintained in compliance with regulatory and security standards such as ISO 27001, GDPR, and CyberEssentials Plus. Disaster recovery and incident response plans developed, documented, and tested to ensure readiness and business continuity. Effective collaboration with other technical teams to troubleshoot and resolve More ❯
performance, and security of core services. The System Administrator will contribute to the implementation of secure, scalable solutions and ensure alignment with compliance standards such as ISO 27001 and CyberEssentials Plus. This role supports multiple office locations and data centres and is expected to actively troubleshoot issues, optimize systems, and maintain service continuity throughout the engagement. Accountabilities … availability of on-premises Windows-based infrastructure and Azure cloud services. Supporting the implementation and enforcement of security controls aligned with organizational policies and compliance standards (e.g., ISO 27001, CyberEssentials Plus, GDPR). Overseeing Active Directory, Group Policy, DNS, DHCP, and other core infrastructure services. Managing system configuration, performance tuning, and incident/problem resolution across both … systems that provide visibility into infrastructure health and support timely issue resolution. Systems and processes maintained in compliance with regulatory and security standards such as ISO 27001, GDPR, and CyberEssentials Plus. Disaster recovery and incident response plans developed, documented, and tested to ensure readiness and business continuity. Effective collaboration with other technical teams to troubleshoot and resolve More ❯
PentenAmio is a multi-award winning cyber technology company dedicated to strengthening our nation’s security and prosperity through new and innovative technology. Our advanced hardware and software products and services support our clients with Secure Mobility, Applied Artificial Intelligence and Innovation and Technical Services Solutions. To find out more visit our website at pentenamio.com. Typical Activities Working in … development and continuous improvement including updating policies, procedures, controls and guidelines for Information Security. Maintaining the Information Security Management System, including supporting internal & external audits for ISO 27001 and CyberEssentials Plus. Proactively identifying IT needs, proposing solutions and acting on them. Identifying risks and taking steps to mitigate them. Provide risk-based direction for future system enhancements. … in line with internal and external SLAs. Experience of Information Security and controls to mitigate threats within secure IT environments. Experience of working to CIS, Microsoft, NCSC, ISO27001 and CyberEssentials Plus frameworks. Networking knowledge and concepts including switching, routing, firewalls, load balancing, TCP/IP, VPN/VLAN, Routing, Enterprise Wi-Fi, DHCP, DNS, IP Addressing, WAN More ❯
Bristol, England, United Kingdom Hybrid / WFH Options
Capgemini UK
requirements vary from client to client and so there is an element of flexibility required, from which you’ll be rewarded through exposure to new challenges and opportunities. The Cyber Delivery Team sits within a wider Managed Services function, residing in the Cloud Infrastructure Services (CIS) UK business line. You will have the opportunity to interact with our global … or immigration status, employment history going back 3 continuous years, and unspent criminal record check (known as Disclosure and Barring Service) Your role As a part of our fantastic Cyber Delivery team, comprising of 45+ security professionals, you will aid in delivering crucial security services and be accountable for the end-to-end management of security issues and incidents … GSLC (GIAC), CCP (ISSM), ISO27001, GIS A working knowledge of ISO standards (e.g. ISO 27001) Working knowledge of other security frameworks/standards/regulations, such as PCI-DSS, CyberEssentials, NIST, NIS, GDPR Your security clearance To be successfully appointed to this role, it is a requirement to obtain Security Check (SC) clearance. To obtain SC clearance, the successful applicant More ❯
Cheltenham, England, United Kingdom Hybrid / WFH Options
Bailie Group
and consultancies with the collective mission to improve people's lives by sharing knowledge. CDS DS is an industry leading technical consultancy delivering world class services in Support Engineering, Cyber Security & Information Assurance, Training & Leadership Development and Communications. We exist to make the world a safer place and do this by providing sophisticated training solutions, operational support, information assurance … legislation, including: HMG/NCSC Information Assurance Policies, Standards and Guidelines Cross-government security accreditation and secure by design processes JSP440 (plus other standard MoD IA methods) DCPP's Cyber Security Model List X, List N CyberEssentials Office for Nuclear Regulation (ONR) Security Assessment Principles (SyAPs) NIST GDPR, DPA, Computer Misuse Act, Official Secrets Act NIS … to clients. A proactive interest in maintaining and enhancing technical and consultancy skills. Examples of Professional Qualifications, Certifications and Security Clearances Full Member of CIISec and/or UK Cyber Security Council (Security and Information Risk Advisor, Auditor or Security Architect) or the agreement and ability to achieve such certification within 6 months of employment. Holder of current key More ❯
Azure and cybersecurity. Familiarity with data backup, ODBC, SQL DB, MS Defender stack. Experience with PowerShell and SharePoint Online. Understanding of IT and cybersecurity standards such as ITIL, ISO27001, CyberEssentials Plus, or experience in regulated environments. Personal Qualities: Strong customer service ethos. Excellent communication skills. Ability to prioritize workload effectively. Strong problem-solving skills and technical knowledge. More ❯
Bristol, England, United Kingdom Hybrid / WFH Options
Ripjar
our mission of delivering secure, resilient technology to governments and enterprises around the world. As Chief Information Security Officer (CISO), you will be responsible for developing and executing our cyber risk strategy, driving alignment with international frameworks such as ISO27001, SOC2, DORA and regional frameworks like CyberEssentials, and leading executive team engagement on security governance, regulatory … and compliance posture to support international expansion and customer growth. Manage and own the Information Security budget, investments, and ROI. Governance, Risk, and Compliance Maintain compliance with ISO27001, SOC2, CyberEssentials and evolving DORA regulations. Lead internal risk assessments, security audits, and regulatory readiness efforts. Oversee third-party and supply chain security due diligence and assurance processes. Operational … security and its practical application to our organisation as it scales. Ideally, you will have: Proven leadership in high-growth scale-up environments. Expertise in ISO27001, SOC2, NIST CSF, CyberEssentials, and DORA. Experience with modern cloud infrastructure and security (AWS, Azure, GCP, PaaS/IaaS/SaaS). Familiarity with IAM, DLP, and Linux-based environments. Strong More ❯
Bristol, England, United Kingdom Hybrid / WFH Options
Cyber UK
Forces Recruitment Service (AFRS) team and take operational ownership and accountability for information security management processes for Defence opportunities. In this role, you will deliver, manage, and audit the cyber security aspects of contracts in accordance with MOD Secure by Design standards. You will oversee the extensive security arrangements for Serco partners and subcontractors, ensuring their compliance with MOD … ISO 27001. Advise on technical requirements and compliance with formal contract security schedules (Security Aspects Letters) and recommend security technologies and controls. Provide advice and guidance to maintain existing cyber security compliances (e.g., ISO 27001, CyberEssentials Plus), MOD certifications, and HMG security controls. Adopt a proactive approach to security management and assurance coordination, ensuring smooth running … using recognised frameworks like NIST. Experience in creating and delivering security awareness training. Ability to work effectively with stakeholders to support contract and business unit needs. Clear communication of cyber security concepts to senior stakeholders, with the ability to escalate issues promptly. Capability to work independently, make sound decisions, and meet deadlines. Logical and methodical approach to problem-solving. More ❯
Trusted Disruptor in the defense industry. With customers' mission-critical needs always in mind, our employees deliver end-to-end technology solutions connecting the space, air, land, sea and cyber domains in the interest of national security. Job Title - Senior IT Infrastructure Engineer (EMEA) Job Location - Bristol, UK Job ID - 22794 About this opportunity and L3Harris UK From … UK sites, our team of nearly 1,000 people delivers unique capabilities across space, air, land, sea and cyber for military, security and commercial customers across the UK and worldwide. Reporting to the IT Business Services Manager for EMEA the role providing local and regional IT support across the UK, EMEA, and US teams as needed in a secure … MCP) VMware/VCP, or Nutanix certifications are highly desirable Experience with Nutanix and Cohesity Experience with Linux Workstation and Server Support Working to standards in accordance with ISO27001, CyberEssentials Plus, UK Government MoD framework Knowledge and application of ITIL concepts, or an ITIL v3 certification Business Continuity/Disaster Recovery Testing, Planning and Upkeep Ability to manage and implement More ❯
MSCE, VMware VCP, Cisco, Apple ACMT, and ITIL V3/V4. Cloud migration/project experience (Azure, Oracle, M365, server-to-cloud). Experience with AutoTask, Datto RMM, and CyberEssentials compliance. Containerisation know-how (Docker, Kubernetes). Excellent communication skills and proven leadership potential with an interest in stepping up to Team Lead roles What We Offer More ❯
programs as required. Work closely with developers to support secure coding practices and help embed security considerations early in the development process. Professional Development: Maintain knowledge of the latest cyber threats and security technologies. Stay informed about industry best practices and emerging security trends. Continuously improve skills and knowledge through training and professional development. What We re Looking for … automation for security tasks (e.g. Python, PowerShell). Information Security Frameworks: Working knowledge of common frameworks and standards, such as ISO 27001/2/5, NIST800-53, and Cyber Essentials. Risk Management and Compliance: Thorough understanding of Information Security Risk Management and Compliance frameworks, including ability to assess information risks and select appropriate controls. Data Protection: Understanding of More ❯
Gloucester, Gloucestershire, United Kingdom Hybrid / WFH Options
Morson Talent
Junior Cyber Security Analyst - £350 per day - Inside IR35 - Hybrid working with 2 days a week near Gloucester - contract until year end with potential for extension. My client, one of the UKs biggest producers or zero carbon electricity, is looking for a motivated and detail-oriented Junior Cyber Security Analyst to support their information security and compliance functions. … This role is ideal for someone starting their cyber security career who wants hands-on experience across a variety of security frameworks, data analysis, and stakeholder engagement. You’ll work closely with internal teams and external partners to maintain security standards, support audit readiness, and help protect sensitive data. Key responsibilities - Provide administrative and operational support to the cyber … including pivot tables, charts, and data cleaning Proficient in Power BI for creating dashboards and reporting security metrics Working knowledge of international standards and frameworks, including: ISO27001, ISO27017, GDPR, CyberEssentials Plus High attention to detail and a structured, analytical approach to problem-solving Ability to communicate clearly and professionally with both technical and non-technical stakeholders Ability More ❯
City Of Bristol, England, United Kingdom Hybrid / WFH Options
Alexander Mae Recruitment
forward thinking organising in Bristol. This role will be to lead their information security compliance efforts, specifically in line with ISO/IEC 27001 , ISO/IEC 42001 and CyberEssentials PLUS standards. In this role you will be responsible for maintaining, auditing, and continuously improving their Information Security Management System (ISMS), overseeing compliance initiatives, coordinating with internal … the building of a new Team to deliver CaaS and supporting services. Develop, implement, and maintain the Information Security Management System (ISMS) aligned with ISO/IEC 27001 and CyberEssentials PLUS standards. Lead internal audits, gap assessments, and risk assessments for ISO 27001 and CyberEssentials PLUS. Coordinate and manage external audits and certifications, including … Identify compliance gaps and lead remediation activities. Oversee incident management, business continuity, and data protection processes as part of ISMS requirements. Stay current on changes to ISO 27001 and CyberEssentials PLUS frameworks, regulatory expectations, and cybersecurity threats. Develop and deliver security and compliance awareness training across the organisation. Collaborate with IT, Legal, HR, and other departments to More ❯
Bristol, Avon, South West, United Kingdom Hybrid / WFH Options
Alexander Mae (Bristol) Ltd
and forward thinking organising in Bristol. This role will be tolead their information security compliance efforts, specifically in line with ISO/IEC 27001 , ISO/IEC 42001 and CyberEssentials PLUS standards. In this role you will be responsible for maintaining, auditing, and continuously improving their Information Security Management System (ISMS), overseeing compliance initiatives, coordinating with internal … the building of a new Team to deliver CaaS and supporting services. Develop, implement, and maintain the Information Security Management System (ISMS) aligned with ISO/IEC 27001 and CyberEssentials PLUS standards. Lead internal audits, gap assessments, and risk assessments for ISO 27001 and CyberEssentials PLUS. Coordinate and manage external audits and certifications, including … Identify compliance gaps and lead remediation activities. Oversee incident management, business continuity, and data protection processes as part of ISMS requirements. Stay current on changes to ISO 27001 and CyberEssentials PLUS frameworks, regulatory expectations, and cybersecurity threats. Develop and deliver security and compliance awareness training across the organisation. Collaborate with IT, Legal, HR, and other departments to More ❯
and forward thinking organising in Bristol. This role will be tolead their information security compliance efforts, specifically in line with ISO/IEC 27001 , ISO/IEC 42001 and CyberEssentials PLUS standards. In this role you will be responsible for maintaining, auditing, and continuously improving their Information Security Management System (ISMS), overseeing compliance initiatives, coordinating with internal … the building of a new Team to deliver CaaS and supporting services. Develop, implement, and maintain the Information Security Management System (ISMS) aligned with ISO/IEC 27001 and CyberEssentials PLUS standards. Lead internal audits, gap assessments, and risk assessments for ISO 27001 and CyberEssentials PLUS. Coordinate and manage external audits and certifications, including … Identify compliance gaps and lead remediation activities. Oversee incident management, business continuity, and data protection processes as part of ISMS requirements. Stay current on changes to ISO 27001 and CyberEssentials PLUS frameworks, regulatory expectations, and cybersecurity threats. Develop and deliver security and compliance awareness training across the organisation. Collaborate with IT, Legal, HR, and other departments to More ❯
Cheltenham, England, United Kingdom Hybrid / WFH Options
Ripjar
our mission of delivering secure, resilient technology to governments and enterprises around the world. As Chief Information Security Officer (CISO), you will be responsible for developing and executing our cyber risk strategy, driving alignment with international frameworks such as ISO27001, SOC2, DORA and regional frameworks like CyberEssentials, and leading executive team engagement on security governance, regulatory … and compliance posture to support international expansion and customer growth. Manage and own the Information Security budget, investments, and ROI. Governance, Risk, and Compliance Maintain compliance with ISO27001, SOC2, CyberEssentials and evolving DORA regulations. Lead internal risk assessments, security audits, and regulatory readiness efforts. Oversee third-party and supply chain security due diligence and assurance processes. Operational … security and its practical application to our organisation as it scales. Ideally, you will have: Proven leadership in high-growth scale-up environments. Expertise in ISO27001, SOC2, NIST CSF, CyberEssentials, and DORA. Experience with modern cloud infrastructure and security (AWS, Azure, GCP, PaaS/IaaS/SaaS). Familiarity with IAM, DLP, and Linux-based environments. Strong More ❯
projects. Support release and deployment activities, including upgrades, patching, and changes, reviewing impact, and developing test plans. Manage and maintain application licenses. Work with Information Asset Owners, Compliance, and Cyber Security to ensure data security measures align with policies, maintaining supportability for CyberEssentials certification. Represent application services in the Change Advisory Board. Qualifications and Experience 2+ More ❯
Gloucester, Gloucestershire, United Kingdom Hybrid / WFH Options
Morson Talent
Nice to Have/Preferred Knowledge Awareness or hands-on experience with key security and data standards: ISO27001 (Information Security Management) ISO27017 (Cloud Security) GDPR (General Data Protection Regulation) CyberEssentials Plus Exposure to SQL, Python, or other analytical or scripting tools Familiarity with risk management or ticketing systems used in compliance or security environments More ❯
MSCE, VMware VCP, Cisco, Apple ACMT, and ITIL V3/V4. Cloud migration/project experience (Azure, Oracle, M365, server-to-cloud). Experience with AutoTask, Datto RMM, and CyberEssentials compliance. Containerisation know-how (Docker, Kubernetes). Excellent communication skills and proven leadership potential with an interest in stepping up to Team Lead roles What We Offer More ❯
Bristol, England, United Kingdom Hybrid / WFH Options
Stripe Olt
for an experienced SOC Analyst that’s spent time working within the Microsoft security stack, specifically with Sentinel, KQL and Defender. SOC First Responders form the bulwark of our cyber defences and are responsible for the rapid triage of security alerts and for the initial response to legitimate security incidents. In addition to their primary tasks, First Responders assist … customer cloud infrastructure & security posture. Monitoring and resolution of key security metrics. Identify emerging security trends. IOC creation based on emerging threats. Acting as a key part of the cyber incident response team. Completion of proactive security reports. 24/7 Shift Work – 4 on 4 off pattern. This role will require working within a close-knit team to … help build Stripe OLT as a global leader in cyber security – focused specifically on defensive domains. The role requires a self-starter, an ideal team player who wants to be part of a truly team driven environment. As a First Responder, you must display excellent outside-the-box thinking and communication skills. DESIRABLE EXPERIENCE. Vulnerability Assessment experience. Knowledge of More ❯
and the ability to understand quickly & resolve issues Ability to engage with end users to support the school’s IT infrastructure Working knowledge of effective service management methodologies (ITIL, CyberEssentials or Similar) Position Remuneration Monday to Friday 8am – 16:30pm in term (hour for lunch) Monday to Friday 8am – 15:30pm in school holidays 25 days holiday More ❯
MSCE, VMware VCP, Cisco, Apple ACMT, and ITIL V3/V4. Cloud migration/project experience (Azure, Oracle, M365, server-to-cloud). Experience with AutoTask, Datto RMM, and CyberEssentials compliance. Containerisation know-how (Docker, Kubernetes). Excellent communication skills and proven leadership potential with an interest in stepping up to Team Lead roles ? What We Offer More ❯
MSCE, VMware VCP, Cisco, Apple ACMT, and ITIL V3/V4. Cloud migration/project experience (Azure, Oracle, M365, server-to-cloud). Experience with AutoTask, Datto RMM, and CyberEssentials compliance. Containerisation know-how (Docker, Kubernetes). Excellent communication skills and proven leadership potential with an interest in stepping up to Team Lead roles ? What We Offer More ❯