the EMEA EIT department to all relevant legislation and regulations, including but not limited to Health and Safety, Financial and Privacy laws. Main duties / responsibilities: Conduct information security, information system, and compliance-based risk assessments, evaluate responses and recommend risk treatment actions Develop and execute risk mitigation plans … in conjunction with relevant internal and external stakeholders / groups and to agreed timescales, following through to completion Support the creation, implementation and maintenance of information security policies and standards, in accordance with ISO27001 other relevant frameworks and standards (NIST CSF, IEC … relevant Support information security and compliance audits conducted in the department Qualifications and Experience required: Degree level qualified or equivalent - highly desirable. CISM and / or CRISC or other relevant certification is highly desirable ISO27001:2022 Lead Implementer / Auditor certification is essential. More ❯
hertford, east anglia, United Kingdom Hybrid / WFH Options
Zoocha
building out new creative, strategic and experience capabilities to complement our industry-leading Drupal design and build offering. We are looking for seasoned UX / CX and strategy practitioners to join the team and help us realise our vision and shape the future of experience design at a vibrant … application will be disregarded. Must-have skills and experience: Minimum of 5 years’ agency experience, you’ll currently be in a senior UX design / consultancy role and looking for your next step up Exceptional UX design craft paired with a strategic, consultative mindset Passionate about all things UX … studies Solid proficiency of analysing and interpreting data (e.g. GA4, Hotjar) and experience of conversion rate optimisation approaches and tools Significant experience creating UX / CX deliverables such as wireframes, prototypes, journey / experience maps, user flows, personas, information architecture etc. Experienced creating user stories and product backlogs More ❯
Ely, Cambridgeshire, East Anglia, United Kingdom Hybrid / WFH Options
IT Governance Limited, a GRC Solutions Company
with clients of all merchant levels and service providers across various industries. Career Growth: Enhance your expertise with exposure to frameworks like PCI DSS, ISO27001, SWIFT CSF, and CIS18. Collaborative Culture: Join a team that values innovation, client success, and your professional development. Key Responsibilities: Conducting comprehensive security assessments, including … PCI DSS, ISO27001/ 27002, SWIFT Security, and Cloud compliance. Preparing executive and technical reports detailing findings, security gaps, and actionable recommendations. Leading PCI DSS Gap Assessments, Risk Assessments, and Reports on Compliance (ROCs) across various industries. Creating roadmaps for compliance, with prioritised remediation steps and timelines. Communicating effectively … for an experienced and proactive QSA Consultant with: Essential: PCI QSA certification, supported by one or more of the following: CISSP, CISA, CISM, or ISO27001 Lead Auditor + Lead Implementer certifications. Experience: Minimum 2 years in cybersecurity, with strong technical knowledge to conduct complex security assessments. Familiarity with technologies such More ❯
cambridge, east anglia, United Kingdom Hybrid / WFH Options
Client Server
Backend Software Engineer / Developer (Java Spring API Security) Cambridge / WFH to £55k Are you a backend focussed Java technologist looking for an opportunity to progress your career whilst working on complex and interesting systems with continual learning opportunities? You could be joining a market leading software … stack. There are challenges around scalability and robustness, you'll be continually learning and progressing your career within a supportive Agile team environment. Location / WFH: There's a friendly and supportive team environment, you'll be able to work from home most of the time, meeting up with … strong knowledge of Computer Science fundamentals such as OOP, Design Patterns, Data Structures You have a good understanding of networking technologies, protocols e.g. TCP / IP, UDP, multicast and security principles You have an appreciation of security and ideally have worked in an ISO27001More ❯
transformation. Prior experience with Data warehousing and Data modelling (Star Schema or Snowflake Schema). Skilled in security frameworks such as GDPR, HIPAA, ISO27001, NIST, SOX, and PII, with expertise in IAM, KMS, and RBAC implementation. Cloud automation and orchestration tools like Terraform and Airflow. More ❯
Cambridge, Cambridgeshire, East Anglia, United Kingdom Hybrid / WFH Options
Client Server
Java Developer / Backend Software Engineer (Java Spring API Security) Cambridge / WFH to £55k Are you a backend focussed Java technologist looking for an opportunity to progress your career whilst working on complex and interesting systems with continual learning opportunities? You could be joining a market leading … stack. There are challenges around scalability and robustness, you'll be continually learning and progressing your career within a supportive Agile team environment. Location / WFH: There's a friendly and supportive team environment, you'll be able to work from home most of the time, meeting up with … strong knowledge of Computer Science fundamentals such as OOP, Design Patterns, Data Structures You have a good understanding of networking technologies, protocols e.g. TCP / IP, UDP, multicast and security principles You have an appreciation of security and ideally have worked in an ISO27001More ❯
Ely, Cambridgeshire, East Anglia, United Kingdom Hybrid / WFH Options
IT Governance Limited, a GRC Solutions Company
with operating systems (Windows, Linux, MacOS, Android, iOS). Familiarity with cloud services (IaaS, SaaS, PaaS) and networking protocols. Knowledge of industry standards like ISO27001 and PCI DSS. Perks & Benefits: Competitive salary package based on experience and qualifications. Opportunities for professional development and certifications. Work from anywhere in the UK. More ❯
and pseudonymisation. Detailed understanding of the information lifecycle and the self assurance framework for Records Management. Experience of implementing data security standards such as ISO27001, PCI DSS, NIST CSF, CAA CAF etc. Ability to effectively manage cyber security risks and can clearly communicate with key stakeholders to minimise the risk … COMPETENCIES Ownership and Delivery . Has a clear focus to deliver results, working to targets, reviewing progress and adapting their plans accordingly, motivating themselves / the team to achieve. Customer and Shareholder Value . Understands who their customers are and seeks to exceed their needs, focussing on the importance More ❯
safeguard and manage Road Tech’s data assets, supporting the development, documentation, and implementation of robust data protection policies and procedures in line with ISO27001 standards. Your core responsibilities will include monitoring compliance, delivering training, and driving continuous improvement in information security practices. Key responsibilities: Implementing, documenting and maintaining ISO27001 … are clearly documented, trained on, and routinely monitored. Drafting responses to tender / customer / supplier survey requests relating to data protection, ISO27001 and GDPR. Ensuring any contractual negotiations and agreements align with our ISO and other security policies and procedures. Providing accurate, relevant and timely … strong focus on Governance, Risk, and Compliance (GRC), ideally with 3 to 5 years in a similar role Strong understanding and practical experience with ISO27001 implementation. Basic understanding of IT networks and software development. Understanding of system hardening methods and best practices Excellent attention to detail Strong stakeholder engagement and More ❯
Newport, east anglia, united kingdom Hybrid / WFH Options
Intellectual Property Office
for ensuring that the team test and build activities follow agreed governance and processes Proactively apply HMG IA technical security controls according to ISO27001 & the Security Policy Framework (SPF) Essential criteria Has been a key player in delivering technical solutions as part of large projects More ❯
in the control environment and putting into place actions to correct. Key Responsibilities and Accountabilities: Review and log all IT risks according to the ISO27001 framework, updating the Information Security Management System risk registers accordingly. Prepare a monthly report for the CIO on highlighting a prioritised set of current risks … risk events in accordance with the procedures from the Risk Function. This includes initial logging, root cause analysis and identifying actions to implement and / or enhance controls to final reporting to the CIO on status. Review remediation plans following any risk events Provide assurance post remediation Reviewing environmental … working in Financial Services / regulated environments Demonstrated experience in disaster recovery planning and business continuity Familiarity with regulatory compliance standards e.g. GDPR, ISO27001 Proactive approach to identifying and addressing potential IT risks Relevant experience within an audit, and / or risk management role. Soft Skills Excellent written More ❯
and long-term product vision • Foster a culture of technical excellence, leading our Software, DevOps, and IT teams to deliver high-quality products • Champion ISO27001 compliance, ensuring our security practices are practical, effective, and customer-friendly • Drive product delivery, working closely with Product and Commercial teams to define the product More ❯