Bristol, Avon, South West, United Kingdom Hybrid / WFH Options
Hargreaves Lansdown
Management System remains effective in protecting HL critical information assets within risk appetite. Lead assurance activities against Information Security Compliance frameworks, including but not limited to: PCI, NIST, SWIFT, GDPR Conducting analysis of cloud-based assets pertaining to information security incidents, audits, and testing while adhering to best practices. Lead engagement of Cloud Audits and remediation activities. Leading in the More ❯
level objectives (SLOs) and key performance indicators (KPIs) for all security services. Compliance, Governance & Risk Management: Ensure alignment with global compliance requirements such as ISO 27001, NIST, SOC 2, GDPR, and others. Partner with governance, legal, and ISRM teams to implement enforceable policies and standards across identity, endpoint, and data domains. Operationalize policy enforcement through automated controls and continuous More ❯
incident monitoring, detection, response via SOC and MSSPs. Manage security tools like SIEM and endpoint protection. Lead incident response and post-incident analysis. Enforce policies for data privacy (GDPR & NIST). Conduct regular security audits. Manage vendor relationships and negotiate contracts. Report service performance to stakeholders. Coordinate with other Tosca functions for effective implementation. Other relevant responsibilities as required. More ❯
incident monitoring, detection, response via SOC and MSSPs. Manage security tools like SIEM and endpoint protection. Lead incident response and post-incident analysis. Enforce policies for data privacy (GDPR & NIST). Conduct regular security audits. Manage vendor relationships and negotiate contracts. Report service performance to stakeholders. Coordinate with other Tosca functions for effective implementation. Other relevant responsibilities as required. More ❯
ICT services. Manage incident response planning, investigations, and reporting. Deliver engaging training to build a strong security culture. Collaborate with Legal and DataProtection teams to ensure GDPR compliance. Stay ahead of evolving threats and technologies to drive continuous improvement. Opportunity to influence at board level without people management responsibilities What we are looking for What matters most More ❯
ICT services. Manage incident response planning, investigations, and reporting. Deliver engaging training to build a strong security culture. Collaborate with Legal and DataProtection teams to ensure GDPR compliance. Stay ahead of evolving threats and technologies to drive continuous improvement. Opportunity to influence at board level without people management responsibilities What we are looking for What matters most More ❯
ICT services. Manage incident response planning, investigations, and reporting. Deliver engaging training to build a strong security culture. Collaborate with Legal and DataProtection teams to ensure GDPR compliance. Stay ahead of evolving threats and technologies to drive continuous improvement. Opportunity to influence at board level without people management responsibilities What we are looking for What matters most More ❯
london (city of london), south east england, united kingdom
TPP Recruitment
ICT services. Manage incident response planning, investigations, and reporting. Deliver engaging training to build a strong security culture. Collaborate with Legal and DataProtection teams to ensure GDPR compliance. Stay ahead of evolving threats and technologies to drive continuous improvement. Opportunity to influence at board level without people management responsibilities What we are looking for What matters most More ❯
ICT services. Manage incident response planning, investigations, and reporting. Deliver engaging training to build a strong security culture. Collaborate with Legal and DataProtection teams to ensure GDPR compliance. Stay ahead of evolving threats and technologies to drive continuous improvement. Opportunity to influence at board level without people management responsibilities What we are looking for What matters most More ❯
and reports in a timely manner to external stakeholders, including NHS England, Hospice UK, and other relevant organisations. Ensure adherence to data governance standards, confidentiality policies, and GDPR regulations. Liaise with hospice staff and external partners to gather data and information for service evaluation and improvement. Deliver dataprotection and system security briefings to new More ❯
Knowledge of C# , Logic Apps , or Azure Integration Services. Experience with NoSQL or unstructured datasets. Familiarity with Power BI for dashboarding and reporting. Previous exposure to regulated environments (e.g., GDPR, ISO27001). If you’re passionate about using modern cloud data technologies to deliver business impact — and want a role where you can directly influence data strategy — we More ❯
Knowledge of C# , Logic Apps , or Azure Integration Services. Experience with NoSQL or unstructured datasets. Familiarity with Power BI for dashboarding and reporting. Previous exposure to regulated environments (e.g., GDPR, ISO27001). If you’re passionate about using modern cloud data technologies to deliver business impact — and want a role where you can directly influence data strategy — we More ❯
Knowledge of C# , Logic Apps , or Azure Integration Services. Experience with NoSQL or unstructured datasets. Familiarity with Power BI for dashboarding and reporting. Previous exposure to regulated environments (e.g., GDPR, ISO27001). If you’re passionate about using modern cloud data technologies to deliver business impact — and want a role where you can directly influence data strategy — we More ❯
london (city of london), south east england, united kingdom
MBN Solutions
Knowledge of C# , Logic Apps , or Azure Integration Services. Experience with NoSQL or unstructured datasets. Familiarity with Power BI for dashboarding and reporting. Previous exposure to regulated environments (e.g., GDPR, ISO27001). If you’re passionate about using modern cloud data technologies to deliver business impact — and want a role where you can directly influence data strategy — we More ❯
Knowledge of C# , Logic Apps , or Azure Integration Services. Experience with NoSQL or unstructured datasets. Familiarity with Power BI for dashboarding and reporting. Previous exposure to regulated environments (e.g., GDPR, ISO27001). If you’re passionate about using modern cloud data technologies to deliver business impact — and want a role where you can directly influence data strategy — we More ❯
not share any of your data with other parties. All data will be held securely, (as stated within the DataProtection Act 2018 and UK GDPR) and will be reported to HS2. It is an SCSJV requirement that all employees, Design House, and Supply Chains must implement and comply with the requirements of ISO More ❯
in InfoSec, IT Security or Ops within a regulated environment Certification required: CISSP, CISM, CRISC, or equivalent Strong knowledge of ISO27001:2022, SOC2 Type II, NIST CSF, PCI DSS, GDPR, DORA Confident with security risk assessments, audit responses, and policy governance Hands-on cloud security experience: ideally with Azure and the Shared Responsibility Model Comfort with complexity: able to analyze More ❯
in InfoSec, IT Security or Ops within a regulated environment Certification required: CISSP, CISM, CRISC, or equivalent Strong knowledge of ISO27001:2022, SOC2 Type II, NIST CSF, PCI DSS, GDPR, DORA Confident with security risk assessments, audit responses, and policy governance Hands-on cloud security experience: ideally with Azure and the Shared Responsibility Model Comfort with complexity: able to analyze More ❯
in InfoSec, IT Security or Ops within a regulated environment Certification required: CISSP, CISM, CRISC, or equivalent Strong knowledge of ISO27001:2022, SOC2 Type II, NIST CSF, PCI DSS, GDPR, DORA Confident with security risk assessments, audit responses, and policy governance Hands-on cloud security experience: ideally with Azure and the Shared Responsibility Model Comfort with complexity: able to analyze More ❯
london (city of london), south east england, united kingdom
Prism Digital
in InfoSec, IT Security or Ops within a regulated environment Certification required: CISSP, CISM, CRISC, or equivalent Strong knowledge of ISO27001:2022, SOC2 Type II, NIST CSF, PCI DSS, GDPR, DORA Confident with security risk assessments, audit responses, and policy governance Hands-on cloud security experience: ideally with Azure and the Shared Responsibility Model Comfort with complexity: able to analyze More ❯
audits.- Strong knowledge of information security frameworks and standards.- Excellent analytical and problem-solving skills.- Strong communication and interpersonal skills.**Preferred Qualifications:**- Experience with regulatory compliance requirements such as GDPR, HIPAA, or SOX.- Familiarity with security tools and technologies such as SIEM, DLP, and endpoint protection. CISA / CISSP / CCSP MCSA-Microsoft Windows Server MCSE- Microsoft Certified Solution Expert More ❯
concepts, technologies and best practices for delivering security across IaaS, PaaS, SaaS and Serverless architectures Implementing Information Security and Privacy Standards and Frameworks (e.g. ISO 27k, NIST800-53, CIS, GDPR) Leading security working groups and external security testing (ITHC, Penetration Testing, etc) of cloud solutions at high HMG classification levels (OFFICIAL required, SECRET desirable) or equivalent in other industries Designing More ❯
and knowledge sharing Contribute to business development by producing high-quality proposals and identifying growth opportunities Skills & Experience ? Extensive expertise in threat intelligence, risk management, incident response, compliance (e.g. GDPR, ISO 27001), and security architecture ? Proficiency with tools such as Rapid7 InsightIDR / InsightVM, SentinelOne, Fortinet, Netskope, SOAR automation (Rapid7 InsightConnect), and cloud security (AWS / CNAPP) ? Proven experience leading More ❯
Wallington, Surrey, England, United Kingdom Hybrid / WFH Options
Newmarket Holidays
technologies Strong understanding of networking protocols, cloud security, and secure software development principles. Experience with incident response, risk management, and vulnerability assessment. Familiarity with regulatory compliance and standards (e.g., GDPR, ISO 27001). Excellent problem-solving and analytical skills, with the ability to handle complex security challenges. Strong communication and collaboration skills, able to work cross-functionally with IT, business More ❯
privacy and data governance practices, and support the organization's privacy and dataprotection goals. Are you the right person for the job? Extensive knowledge of GDPR, UK GDPR, and other regional privacy and data governance regulations, including those related to central banks Strong leadership skills with the ability to influence and collaborate across all levels … privacy representative for the EMEA region, ensuring alignment with the client's global privacy and data governance standards and objectives. Applying comprehensive knowledge of regional privacy regulations, including GDPR, UK GDPR, and relevant local laws including central bank regulations, to support privacy and dataprotection compliance initiatives Leading the strategic development and implementation of the EMEA Privacy … and oversee privacy assessments for vendor engagements Regulatory and Legal Compliance: Ensuring compliance on a risk basis with EMEA privacy and data governance laws and regulations, such as GDPR, while monitoring updates to global privacy and data governance legislation Collaborating with legal and compliance colleagues to review and promote understanding of privacy and related laws and regulations Participating More ❯