City of London, London, United Kingdom Hybrid / WFH Options
TDA TELECOM LIMITED
security architectures across network, endpoint, identity, cloud, and data protection domains. Ensure alignment with industry frameworks such as NIST, ISO, and CIS, and compliance with regulatory standards (PCI-DSS, HIPAA, etc.). Produce proposals, Bills of Materials (BOMs), high-level designs, and Statements of Work (SOWs). Vendor & Partner Engagement Work with leading vendors (Palo Alto, Fortinet, Cisco, Microsoft, CrowdStrike More ❯
to gather requirements and translate them into secure technical designs. Evaluate and recommend security products, tools, and technologies. Ensure solutions meet compliance, data privacy, and regulatory requirements (e.g., GDPR, HIPAA, ISO 27001). Support solution implementation teams with architecture guidance and technical documentation. Maintain up-to-date knowledge of emerging security threats and best practices to continuously enhance solution designs. More ❯
london (city of london), south east england, united kingdom
Persistent Systems
to gather requirements and translate them into secure technical designs. Evaluate and recommend security products, tools, and technologies. Ensure solutions meet compliance, data privacy, and regulatory requirements (e.g., GDPR, HIPAA, ISO 27001). Support solution implementation teams with architecture guidance and technical documentation. Maintain up-to-date knowledge of emerging security threats and best practices to continuously enhance solution designs. More ❯
City of London, London, United Kingdom Hybrid / WFH Options
TECEZE
and compliance: Build security-by-design into solution proposals; incorporate best practices for data protection, vulnerability management, IAM, SOC/IR readiness, and regulatory requirements relevant to SMBs (e.g., HIPAA, PCI-DSS, GDPR nuances as applicable). Customer engagement and discovery: Conduct customer workshops, requirements gathering, current-state assessments, risk analyses, ROI/tco analysis, and roadmaps that translate business More ❯
london (city of london), south east england, united kingdom Hybrid / WFH Options
TECEZE
and compliance: Build security-by-design into solution proposals; incorporate best practices for data protection, vulnerability management, IAM, SOC/IR readiness, and regulatory requirements relevant to SMBs (e.g., HIPAA, PCI-DSS, GDPR nuances as applicable). Customer engagement and discovery: Conduct customer workshops, requirements gathering, current-state assessments, risk analyses, ROI/tco analysis, and roadmaps that translate business More ❯
City of London, London, United Kingdom Hybrid / WFH Options
Anson McCade
as EC2, S3, Lambda, RDS, API Gateway, IAM, CloudFormation/Terraform, and more. Proven experience in cloud migration, DevOps tooling (Git, Jenkins, Docker, Kubernetes), and security frameworks (CIS, SOC2, HIPAA). Strong ability to lead, communicate, and deliver results in a fast-paced, global environment. Set yourself apart with: Multi-cloud experience (AWS, Azure, Google Cloud). Familiarity with hybrid More ❯
in core cloud services (e.g. EC2, S3, RDS, Lambda, API Gateway, VPC, Route 53, IAM, CloudFormation, or Terraform). Familiarity with security and compliance frameworks (e.g. CIS, SOC 2, HIPAA). Proven success in leading cloud migration projects using tools such as AWS Server Migration Service or AWS Database Migration Service. Hands-on experience with DevOps tools (e.g. Git, Jenkins More ❯
london (city of london), south east england, united kingdom
Anson McCade
in core cloud services (e.g. EC2, S3, RDS, Lambda, API Gateway, VPC, Route 53, IAM, CloudFormation, or Terraform). Familiarity with security and compliance frameworks (e.g. CIS, SOC 2, HIPAA). Proven success in leading cloud migration projects using tools such as AWS Server Migration Service or AWS Database Migration Service. Hands-on experience with DevOps tools (e.g. Git, Jenkins More ❯
ingestion, transformation, and AI model deployment aligned with data governance policies. Develop technical specifications and blueprints that support scalable AI development. Ensure compliance with healthcare industry standards (HL7 FHIR, HIPAA, and related frameworks). Technical Oversight & Collaboration Oversee technical aspects of AI product design, development, and deployment. Collaborate with data science, product, and engineering teams to ensure seamless integration of More ❯
london (city of london), south east england, united kingdom
Astek Middle East
ingestion, transformation, and AI model deployment aligned with data governance policies. Develop technical specifications and blueprints that support scalable AI development. Ensure compliance with healthcare industry standards (HL7 FHIR, HIPAA, and related frameworks). Technical Oversight & Collaboration Oversee technical aspects of AI product design, development, and deployment. Collaborate with data science, product, and engineering teams to ensure seamless integration of More ❯
IAM solution across all aspects of the SDLC (Analyse, Design, Develop/Configure, Test, Deploy, Document) Understanding of regulatory frameworks, and their application to IAM, e.g. SOx, ISO27001, NIST, HIPAA, GDPR, PSD2, etc. Ideally, an education in Business, IT, IT security or related field Advantageous: Professional certifications such as CISSP, CISA, ITIL, etc. Product certifications from SailPoint, or other IAM More ❯
london (city of london), south east england, united kingdom
Hyerhub
IAM solution across all aspects of the SDLC (Analyse, Design, Develop/Configure, Test, Deploy, Document) Understanding of regulatory frameworks, and their application to IAM, e.g. SOx, ISO27001, NIST, HIPAA, GDPR, PSD2, etc. Ideally, an education in Business, IT, IT security or related field Advantageous: Professional certifications such as CISSP, CISA, ITIL, etc. Product certifications from SailPoint, or other IAM More ❯
penetration testing methodologies and forensic analysis techniques. Experience in writing content/polices for monitoring in line with MITRE ATT&CK framework Familiarity with regulatory requirements such as GDPR, HIPAA, PCI DSS, and industry standards like NIST Cybersecurity Framework. More ❯
london (city of london), south east england, united kingdom
RiverSafe
penetration testing methodologies and forensic analysis techniques. Experience in writing content/polices for monitoring in line with MITRE ATT&CK framework Familiarity with regulatory requirements such as GDPR, HIPAA, PCI DSS, and industry standards like NIST Cybersecurity Framework. More ❯
with business goals and technical feasibility. Governance & Risk Management Establish best practices for prompt engineering, model safety, bias mitigation, and responsible AI. Ensure compliance with data privacy regulations (GDPR, HIPAA, etc.) and internal governance policies. Define monitoring and observability strategies for GenAI systems in production. Stakeholder Engagement Translate business requirements into technical specifications and solution blueprints. Present architectural decisions andMore ❯
london (city of london), south east england, united kingdom
Capgemini
with business goals and technical feasibility. Governance & Risk Management Establish best practices for prompt engineering, model safety, bias mitigation, and responsible AI. Ensure compliance with data privacy regulations (GDPR, HIPAA, etc.) and internal governance policies. Define monitoring and observability strategies for GenAI systems in production. Stakeholder Engagement Translate business requirements into technical specifications and solution blueprints. Present architectural decisions andMore ❯
catalog platforms ( data.world, Collibra, Alation, Informatica EDC, etc.). Hands-on expertise with data.world at scale. Deep understanding of metadata modeling, lineage capture , and data governance frameworks (GDPR, CCPA, HIPAA). Proficiency in APIs, RESTful services, automation , and cloud data ecosystems ( AWS, Azure, GCP ). Strong communication and stakeholder engagement skills — translating complex technical concepts into business outcomes. 💡 Bonus Points More ❯
london (city of london), south east england, united kingdom
Luxoft
catalog platforms (data.world, Collibra, Alation, Informatica EDC, etc.). Hands-on expertise with data.world at scale. Deep understanding of metadata modeling, lineage capture , and data governance frameworks (GDPR, CCPA, HIPAA). Proficiency in APIs, RESTful services, automation , and cloud data ecosystems (AWS, Azure, GCP). Strong communication and stakeholder engagement skills — translating complex technical concepts into business outcomes. 💡 Bonus Points More ❯
as NIST 800-53 r5, NIST CSF2.0, CIS, ISO27K • Designing solutions related to advisory & consulting engagements around regulatory risk & compliances such as DORA, NIS2, GDPR, SOX ITGC, PCI-DSS, HIPAA, Data Privacy, NHS, FFIEC etc. • Develop knowledge base, re-usable components for GRC advisory services. • Responsible for development and enhancements of GRC services, team and delivery capabilities. • Manage local partners … technology risk assessments. ISO 27K, NIST, AI Governance, CIS etc. • Good compliance understanding of industry domains such as BFSI – (SOX, FFIEC, PCI-DSS, BASEL, MAS etc.), Healthcare & Life-sciences – (HIPAA, Hi-Trust, FDA CFR, GxP Compliance), Telecom, Retail, Data Privacy (GDPR, CCPA) Energy & Utilities (NERC, FERC) Information Security (ISO 27000, NIST, CIS) TPRM • Business Resiliency & Cyber Recovery, ZTA • GRC Project More ❯
City of London, London, United Kingdom Hybrid / WFH Options
Crimson
collaborating with technical and business teams, and supporting security and compliance initiatives within the organization. The position requires development and maintenance of security policies aligned with ISO 27001, GDPR, HIPAA, and OWASP, as well as leading risk assessments and managing the risk register. Key skills and responsibilities, Comprehensive knowledge of ISO 27001, NIST CSF, GDPR, HIPAA, SOC 2, and OWASP … Lead Auditor, and hands-on experience with GRC tools (e.g., Vanta, Drata) are highly desirable. Responsible for developing and maintaining security policies in alignment with ISO 27001, GDPR, HIPAA, and OWASP standards. Lead risk assessments and oversee the management of the organization’s risk register. Support efforts to prepare for audits and maintain certification readiness. Collaborate with engineering and operations More ❯
City of London, London, United Kingdom Hybrid / WFH Options
Crimson
collaborating with technical and business teams, and supporting security and compliance initiatives within the organization. The position requires development and maintenance of security policies aligned with ISO 27001, GDPR, HIPAA, and OWASP, as well as leading risk assessments and managing the risk register. Key skills and responsibilities, Comprehensive knowledge of ISO 27001, NIST CSF, GDPR, HIPAA, SOC 2, and OWASP … Lead Auditor, and hands-on experience with GRC tools (e.g., Vanta, Drata) are highly desirable. Responsible for developing and maintaining security policies in alignment with ISO 27001, GDPR, HIPAA, and OWASP standards. Lead risk assessments and oversee the management of the organization's risk register. Support efforts to prepare for audits and maintain certification readiness. Collaborate with engineering and operations More ❯
the firm, including General Counsel, Information Security, and Emerging Tech Risk teams, helping to shape best practices and ensure compliance with regulations such as UK/EU GDPR, DORA, HIPAA, and EU AI Act. The role offers a dynamic mix of hands-on risk management, internal auditing, and strategic input into global processes. It’s ideal for someone with a … General Counsel on data sourcing and best practice Ideal Profile: 2–5 years’ experience in data protection, risk, or compliance Strong working knowledge of UK/EU GDPR, DORA, HIPAA, and ISO27001 Experience in professional services (law firm experience is a plus) Confident stakeholder engagement and communication skills *Visa sponsorship is not available for this position More ❯
london (city of london), south east england, united kingdom
Taylor Root
the firm, including General Counsel, Information Security, and Emerging Tech Risk teams, helping to shape best practices and ensure compliance with regulations such as UK/EU GDPR, DORA, HIPAA, and EU AI Act. The role offers a dynamic mix of hands-on risk management, internal auditing, and strategic input into global processes. It’s ideal for someone with a … General Counsel on data sourcing and best practice Ideal Profile: 2–5 years’ experience in data protection, risk, or compliance Strong working knowledge of UK/EU GDPR, DORA, HIPAA, and ISO27001 Experience in professional services (law firm experience is a plus) Confident stakeholder engagement and communication skills *Visa sponsorship is not available for this position More ❯