to design, implement, and enforce security policies . Key Responsibilities: Ensure compliance with GDPR, Cyber Essentials Plus, PCI-DSS, and other applicable standards. Align ISMS activities with ISO 27001 framework. Develop and implement security policies, controls, and procedures. Conduct security risk assessments & compliance audits. Manage incident response & data breach reporting More ❯
and mitigating risks, enforcing appropriate security controls, and ensuring alignment with established security frameworks and industry regulations. Key Responsibilities: Develop, manage, and continuously improve ISMS documentation, ensuring alignment with governance frameworks and ISO27001:2022 standards. Respond to security-related inquiries, prepare management reports, and oversee third-party security due diligence More ❯
and mitigating risks, enforcing appropriate security controls, and ensuring alignment with established security frameworks and industry regulations. Key Responsibilities: Develop, manage, and continuously improve ISMS documentation, ensuring alignment with governance frameworks and ISO27001:2022 standards. Respond to security-related inquiries, prepare management reports, and oversee third-party security due diligence More ❯
desirable. Candidate Characteristics: Exceptional communication and interpersonal skills. Analytical mindset with the ability to identify, assess, and mitigate risks. Good project management skills with ISMS and control implementation experience. Knowledge of GRC software tools and technology. Attention to detail and commitment to high-quality deliverables that meet business and compliance More ❯
and audit concepts accurately Deep, demonstrable understanding and practical knowledge of ISO 27001 (InformationSecurityManagement Systems). Must be able to explain the ISMS structure, risk assessment process, and Annex A controls accurately Strong familiarity and understanding of ISO 42001 (Artificial Intelligence Management Systems) and its core principles/ More ❯
Environmental ManagementSystem with guidance for use", OHSAS 18001:2017 Occupational Health and Safety Management Systems and ISO/IEC 27001:2013 InformationSecurityManagementSystem, Policies, Plans, Procedures and Processes, and statutory requirements as they affect the Joint Venture 's operations and ensure that the requirements, as applicable within More ❯
Assessments, Design reviews, and Upgrades. This role requires a deep understanding of GRC cybersecurity, with secondary skills in a domain area of cyber securityISMS, whilst working with cross-functional teams to enhance the security posture of clients' Cyber Security strategy at both operational and tactical levels, as well as More ❯
to internal and external stakeholders, ensuring transparency and accountability. Collaborate with cross-functional security teams to maintain and communicate our InformationSecurityManagementSystem (ISMS). Maintain clear and accurate GRC documentation. Drive continuous improvement in our GRC processes, ensuring they meet regulatory expectations. Provide strategic insights to senior leadership More ❯
its global footprint and develops sensitive technology solutions. Key Responsibilities Security Strategy & Governance Lead the continued development of Prevail's InformationSecurityManagementSystem (ISMS) in alignment with ISO 27001, driving forward maturity and integration with wider business goals. Serve as the lead advisor on informationsecurity, ensuring risk-based … Support leadership in meeting regulatory, contractual, and reputational requirements in relation to information security. Qualifications Demonstrable experience leading or managing an ISO 27001-aligned ISMS, with a track record of successful implementation or certification. Strong understanding of informationsecurity risk management, governance, and technical controls. Knowledge of UK data protection More ❯
Due to expansion and increased strategic focus, they are looking for an experienced InformationSecurity Manager to take ownership of their ISO 27001-aligned ISMS, build out governance frameworks and lead security strategy across a global footprint. The role is based out of their Victoria office in London, with an More ❯
Due to expansion and increased strategic focus, they are looking for an experienced InformationSecurity Manager to take ownership of their ISO 27001-aligned ISMS, build out governance frameworks and lead security strategy across a global footprint. The role is based out of their Victoria office in London, with an More ❯
the Framework used by thousands of organisations, including developing a relationship between the controls framework and contemporary contextual cybersecurity risks. Developing and operating our ISMS, and all that this entails: You will also be responsible for maintaining our ISO 27001 and Cyber Essentials certifications-and other security-related compliance accreditations More ❯
team in developing and implementing group-wide cybersecurity strategies. Proactive monitoring: Continuously monitor the technology estate to ensure compliance and maintain a strong security posture. ISMSmanagement: Coordinate the improvement and maintenance of the InformationSecurityManagementSystem (ISMS) in line with ISO 27001 and Cyber Essentials. Experience Required: Information … SecurityManagement: Extensive experience in implementing and maintaining ISMS and achieving ISO 27001 certification. Proven track record managing security accreditations (Cyber Essentials, Cyber Essentials Plus). Strong expertise in informationsecurity risk management, data protection, and compliance frameworks (GDPR). Technical Expertise: Solid understanding of IT architecture, organisational governance, and More ❯
in a related field (e.g., Computer Science, Computer Security) Knowledge of ISO/IEC 27000 InformationSecurity standards and experience working with a compliant ISMS Experience in IT problem management and root cause analysis At Trayport, we encourage applications from all backgrounds and walks of life, and we are committed More ❯
in a related field (e.g., Computer Science, Computer Security) Knowledge of ISO/IEC 27000 InformationSecurity standards and experience working with a compliant ISMS Experience in IT problem management and root cause analysis At Trayport, we encourage applications from all backgrounds and walks of life, and we are committed More ❯
Environmental ManagementSystem with guidance for use", OHSAS 18001:2017 Occupational Health and Safety Management Systems and ISO/IEC 27001:2013 InformationSecurityManagementSystem, Policies, Plans, Procedures and Processes, and statutory requirements as they affect the Joint Venture 's operations and ensure that the requirements, as applicable within More ❯
lead HowNow's informationsecurity function, working cross-functionally to align with business needs. Maintain and evolve our ISO 27001 certification and manage the ISMS lifecycle. Governance, Risk & Compliance: Perform regular risk assessments, manage remediation plans, and conduct internal audits. Ensure compliance with data protection laws (e.g., GDPR) and customer More ❯
Security Analyst , you'll support governance, lead audits, and build security resilience across multiple jurisdictions. What You'll Be Doing Maintain and improve the ISMS, including policies, procedures, and guidelines Ensure ongoing ISO 27001:2022 alignment across UK and international offices Conduct internal audits, lead remediation efforts, and support third More ❯
effectiveness. Prepare regulatory submissions and provide assurance for UK Power Networks policy compliance within IT which includes main performance metrics and management reporting. InformationSecurityManagementSystem Support: Operate and maintain the informationsecuritymanagementsystem and artefacts, in compliance with ISO 27001/27002 including the governance forum agenda … have some relevant training or experience of cyber security risk assessment. Detailed knowledge and experience in defining, implementing, operating, maintaining, and improving informationsecuritymanagement systems (ISMS). Experience of internal and external audit engagements, orchestrating and delivering cyber security risk and control assessments and a good working knowledge of More ❯
programs are in place to meet capacity demands. Work with Head of Compliance and Head of IT to ensure the maintenance of our InformationSecurityManagementSystem meets the expectations of the business and external stakeholders. Monitor team annual leave to ensure that appropriate team capacity and capability is available More ❯
Security: the successful candidate will have to comply with CHAMP Security Requirements (including but not limited to CHAMP’s IT Security Policies, especially the ISMS Policy and the Acceptable Use Policy, mandatory courses, confidentiality and data protection, use of company assets, and incident reporting). CHAMP Cargosystems is an equal More ❯
Security: the successful candidate will have to comply with CHAMP Security Requirements (including but not limited to CHAMP’s IT Security Policies, especially the ISMS Policy and the Acceptable Use Policy, mandatory courses, confidentiality and data protection, use of company assets, and incident reporting). CHAMP Cargosystems is an equal More ❯
Security: the successful candidate will have to comply with CHAMP Security Requirements (including but not limited to CHAMP’s IT Security Policies, especially the ISMS Policy and the Acceptable Use Policy, mandatory courses, confidentiality and data protection, use of company assets, and incident reporting). CHAMP Cargosystems is an equal More ❯
Location: London (Hybrid - 2 Days Onsite a Week) Start: ASAP Responsibilities: Security Leadership: Own and lead info security, align with business. ISO 27001 & ISMS: Maintain/evolve certification and ISMS. Risk & Compliance: Risk assessments, remediation, audits, GDPR compliance. Policies & Training: Create/manage policies, deliver security training. Security Operations: Implement More ❯
london, south east england, united kingdom Hybrid / WFH Options
Premier Group
Location: London (Hybrid - 2 Days Onsite a Week) Start: ASAP Responsibilities: Security Leadership: Own and lead info security, align with business. ISO 27001 & ISMS: Maintain/evolve certification and ISMS. Risk & Compliance: Risk assessments, remediation, audits, GDPR compliance. Policies & Training: Create/manage policies, deliver security training. Security Operations: Implement More ❯