1 to 25 of 807 ISO/IEC 27001 Jobs in London

Information Security Analyst ( ISO 27001 and ISO 27018 )

Location
Greater London, England, United Kingdom
recruit an ISO 27001 and ISO 27018 Information Security Analyst to strengthen our Information Security and Audit / Compliance functions. Alfa Systems sits at the heart of some of the world's largest asset finance companies, across 26 countries which means information security … compliance with ISO 27001 and ISO 27018 on point. You'll get involved in SSAE 18 / ISAE 3402 SOC 1 Type 2 and SSAE 18 SOC 2 Type 2 assurance audits, spot opportunities to improve our security controls and processes, and contribute ...

Information Security Analyst ( ISO 27001 and ISO 27018 )

Hiring Organisation
Alfa Financial Software
Location
London, United Kingdom
Salary
£ 80 K
recruit an ISO 27001 and ISO 27018 Information Security Analyst to strengthen our Information Security and Audit / Compliance functions. Alfa Systems sits at the heart of some of the world's largest asset finance companies, across 26 countries which means information security … compliance with ISO 27001 and ISO 27018 on point. You'll get involved in SSAE 18 / ISAE 3402 SOC 1 Type 2 and SSAE 18 SOC 2 Type 2 assurance audits, spot opportunities to improve our security controls and processes, and contribute ...

Information Security Analyst ( ISO 27001 and ISO 27018 )

Location
Greater London, England, United Kingdom
recruit an ISO 27001 and ISO 27018 Information Security Analyst to strengthen our Information Security and Audit / Compliance functions. Alfa Systems sits at the heart of some of the world’s largest asset finance companies, across 26 countries which means information security … compliance with ISO 27001 and ISO 27018 on point. You’ll get involved in SSAE 18 / ISAE 3402 SOC 1 Type 2 and SSAE 18 SOC 2 Type 2 assurance audits, spot opportunities to improve our security controls and processes, and contribute ...

Security Operations Analyst- 6 month FTC

Location
Greater London, England, United Kingdom
Databricks environments. Working closely with our managed SOC, you'll investigate alerts and incidents, close monitoring gaps, and keep our ISO / IEC 27001:2022 controls backed by complete, audit-ready evidence - including running customer and client security-assurance questionnaires on the business … service levels. Close monitoring gaps by improving detection use cases, alert logic, playbooks and escalation criteria. Own the evidence cycle for ISO / IEC 27001:2022 controls - mapping, collecting and maintaining audit-ready evidence, and resolving gaps with control owners. Support internal, certification ...

Professional Services Consultant - AI Security

Hiring Organisation
Cato Networks
Location
London, United Kingdom
Salary
£ 70 K
technologyWork with customer teams to design secure AI architectures and establish governance frameworks aligned to standards such as NIST AI RMF, ISO / IEC 42001, and EU AI Act guidanceTranslate technical findings into actionable recommendations for both executive and technical audiencesServe as a subject matter … Transit Gateway, Direct Connect, Route 53, and Gateway Load Balancer – Azure VNets, VNGs, ExpressRoute, vWAN, Load Balancer, and DNS)Experience designing and securing AI / ML infrastructure including AWS SageMaker, AWS Bedrock, Azure AI Foundry, Google Vertex AI, Databricks, GPU-accelerated compute, and model inference pipelinesExposure to unique threat ...

Assistant Manager – Information Security

Location
Greater London, England, United Kingdom
events; maintain records and documentation. Support security control reviews, vulnerability assessments, security awareness and data protection training. Requirements Bachelor’s degree in Information / Cyber Security, Computer Science or a related discipline; equivalent professional experience may be considered. Relevant professional certifications are strongly preferred, for example CISM, CISSP, ISO27001 Lead Implementer / Lead Auditor. Technology-centric training and certification is an advantage. 5+ years’ experience in information and cyber security implementation, management and governance, ideally within UK financial services, covering ISMS management, risk management, and management reporting. Working knowledge of information security and data protection ...

Assurance Specialist

Location
City Of London, England, United Kingdom
tender demands evidence, or when a board realises nobody actually owns information security. What you will do Plan and deliver ISO / IEC 27001 internal audits, readiness reviews and gap assessments Support clients in building and running information security management systems — risk registers … begins and formal assurance sits — and you respect the boundaries between them What we need from you Practical working knowledge of ISO / IEC 27001, including participating in or conducting internal audits Experience with information security risk, policies, controls, evidence and remediation ...

IT GRC SOX Specialist - Regulatory Frameworks

Hiring Organisation
Aveva Group
Location
London, United Kingdom
Salary
£ 80 K
testing and feedback clearly documented (ITGCs + relevant application controls)IT teams trained and confident in operating controls, producing consistent evidence, and supporting walkthroughs / testing.Helping to drive a clear, workable SOX operating model for IT (RACI, control calendar, evidence standards, testing approach).Riskonnect configured / ready … analysis of IT controls against SOX expectations, providing guidance as necessary.Test ITGCs and supporting procedures across Access Management, Change Management, IT Operations, SDLC / Release governance.Create / refresh control documentation (narratives, flowcharts, RCMs, control procedures, evidence checklists).Upskilling and knowledge transferFacilitate structured IT SOX handover to BAU teams ...

GRC Lead

Hiring Organisation
Precise Placements
Location
London, South East England, United Kingdom
Employment Type
Full-Time
Salary
£80,000 - £95,000 per annum
Lead - ISO27001, ISO 27002, ISO 27005, ISO 31000 ISMS, Security Audits Our leading global law firm client are actively looking to take on a new GRC Lead (ISO 27001, ISO 27002, ISO 27005, ISO … broad range of security activities such as Policy Development, Risk Management, Internal & External audits & compliance etc. To be considered for this GRC Lead (ISO 27001, ISO 27002, ISO 27005, ISO 31000 ISMS, Security Audits) role, it's ideal that ...

Cloud Security & Exposure Architect — Lead Risk Reduction

Location
Greater London, England, United Kingdom
Kampagnen, SoD‐Regeln, Delegations‐ und Rezertifizierungsprozessen; Automatisierung von Kontrollen. Privileged Access & Compliance: Verzahnung mit PIM, Logging / Monitoring sowie regulatorischen Anforderungen (z.B. ISO27001, SOX, NIS2 / DORA - kundenspezifisch). Adoption & Enablement: Workshops, Guidelines, Betriebskonzepte; je nach Seniorität fachliche Führung von Workstreams, Mentoring und Qualitätssicherung (Konzept‐ / Design … Kampagnen, SoD‐Regeln, Delegations‐ und Rezertifizierungsprozessen; Automatisierung von Kontrollen. Privileged Access & Compliance: Verzahnung mit PIM, Logging / Monitoring sowie regulatorischen Anforderungen (z.B. ISO27001, SOX, NIS2 / DORA - kundenspezifisch). Adoption & Enablement: Workshops, Guidelines, Betriebskonzepte; je nach Seniorität fachliche Führung von Workstreams, Mentoring und Qualitätssicherung (Konzept‐ / Design ...

Senior Security Consultant

Location
City Of London, England, United Kingdom
testing plans. Implement and maintain information security controls aligned with applicable laws, regulations, standards and best practices, including ISO 27001 / 27002, GDPR, Cyber Assessment Framework (CAF) and NIST CSF. Develop and maintain information security policies, standards and procedures, ensuring organisational compliance. Define, coordinate … banking, energy, telecommunications and media, industrial protection, and critical infrastructure protection. Knowledge of SOC operations, digital forensics and fraud management. Experience with GRC / IRM platforms and the automation of security and compliance processes. Additional security certifications such as CGEIT, C CISO, QSA, CDPP, or Security Director certification issued ...

Sr. Security Engineer - GRC Fintech & Financial Services EU/UK

Hiring Organisation
X
Location
London, United Kingdom
Salary
£ 80 K
United Kingdom information security and financial services regulation to help scale compliance for SpaceXAI and xMoney. As we expand deeper into regulated EU / UK markets, maintaining a robust, transparent, and technically sound information security GRC program is critical. You will architect the systems and processes that automate trust … high-growth company. The ideal candidate brings hands-on experience with frameworks such as DORA, the EU AI Act, NIS2, and related EU / UK information security and operational resilience obligations, plus GRC engineering skills: Compliance-as-Code, continuous evidence collection, and deep partnership with engineering so controls ...

Senior Compliance Manager

Location
Greater London, England, United Kingdom
oversight with a meticulous, hands‐on approach. You are a self‐starter who excels in a proactive, autonomous environment, capable of steering our ISO certifications toward continuous maturity. Beyond maintenance, you will partner across departments to embed a culture of quality, driving the achievement of key performance indicators … need them. The patient is at the heart of everything we do. They are our inspiration and our ultimate beneficiary. Your mission: Support and / or lead all aspects of the IMS audit life cycle Work with stakeholders to produce IMS status reports regularly and present these to Executive ...

Head of Information Security (Deputy CISO)

Location
Greater London, England, United Kingdom
activity are focused on reducing material cyber and technology risk. Own the Information Security Management System and support continued alignment with ISO / IEC 27001:2022, the NIST Cybersecurity Framework and other recognised standards. Maintain effective security policies, standards and controls, ensuring they … Experience across security operations, governance, risk and compliance, architecture, engineering, third-party risk, assurance and operational resilience. Strong practical knowledge of ISO / IEC 27001, PCI DSS, UK GDPR, the Data Protection Act 2018 and recognised control frameworks such as NIST. A solid ...

Internal Control IT Senior Manager

Hiring Organisation
Aveva Group
Location
London, United Kingdom
Salary
£ 100 K
starterHigh professional ethics and commitment to improving risk cultureExperience of managing deficiencies and remediation activitiesComfortable giving an opinion and forming conclusionsDesired skillsExperience of IFRS / US GAAP accounting standardsQualification by relevant governing body with 5 years post qualification experience (e.g., ACA, ACCA, CIMA, CPA or equivalent)Previous experience with … policy managementPrevious experience of working with OracleExperience of driving automation / AI in a controls functionStrong data enquiry / analytics / scripting skillsExperience of managing a co-source agreementUnderstanding of other regulatory frameworks e.g. NIST, ISO 27001, EU CRAUK Benefits include:Flexible benefits ...

Cyber Security Consultant

Hiring Organisation
Circle Group
Location
London, United Kingdom
Employment Type
Permanent, Work From Home
Salary
£70,000
including vulnerability management, identity and access management, cloud security, security operations and supplier assurance. Support Secure SDLC and broader security transformation initiatives. Provide vCISO / outsourced security management support where required. Design and facilitate client workshops, discovery sessions and stakeholder interviews. Translate technical security issues into clear business risks … consultancy experience. A good understanding of information security governance, risk and technical controls. Practical experience with ISO 27001 and / or other recognised security frameworks. Experience conducting security assessments, gap analyses or risk assessments. The ability to understand a client's business and provide pragmatic ...

Cyber Risk Manager - Active Security Clearance Required

Location
Greater London, England, United Kingdom
management principles and methodologies. Experience working with recognised frameworks and standards, including: NIST Cybersecurity Framework (CSF) NCSC Cyber Assessment Framework (CAF) ISO / IEC 27001 and ISO / IEC 27005 CIS Critical Security Controls COBIT Experience analysing risk … Days) Statutory & Contributory Pension EAP with Help@Hand Gym Membership Benefits Cycle to Work and Electric Vehicle Schemes Flexible Working Annual Away Days / Company Socials Diversity and Inclusion As an equal opportunities employer, we are committed to creating a work environment that supports, celebrates, encourages and respects ...

ISMS & BCMS Internal Audit Lead

Hiring Organisation
Synapri
Location
London, United Kingdom
Employment Type
Contract
Contract Rate
£500 - £600/day
accomplished audit professional who can take ownership of developing and delivering a risk-based, multi-year internal audit programme, aligned to ISO / IEC 27001:2022 and ISO 22301:2019. The Role You will be responsible for developing the audit strategy … annual ISMS & BCMS audit model, including methodology, templates, governance, findings tracking and knowledge transfer to support future audit cycles. Key Requirements ISO / IEC 27001:2022 Lead Auditor certification ISO 22301:2019 Lead Auditor certification Demonstrable experience conducting internal audits against ...

Security Governance Audit Lead The Football Association

Location
Greater London, England, United Kingdom
management and compliance across The FA's Digital Technology function. Acting as the focal point for security governance activities, you'll lead our ISO 27001 programme, coordinate internal and external audits, drive continuous improvement initiatives, and provide meaningful reporting that enables better decision-making across … Lead the ongoing development, implementation and maturity of The FA's Information Security Management System (ISMS). Own and manage The FA's ISO 27001 compliance roadmap, ensuring the organisation maintains certification readiness and continues to improve security maturity. Chair governance forums and quarterly stakeholder meetings ...

Head of Computerized Systems Quality Assurance & Validation

Location
Greater London, England, United Kingdom
Computerized Systems Quality Assurance & Validation on a permanent full‐time capacity. Purpose of the Role: This role supports the compliant and timely design / development, testing, verification, validation, configuration, and life cycle management of computerized systems (including software) developed, purchased and / or utilised by IXICO. This role … compliance with current GCP, FDA 21 CFR Part 11, EU Annex 11, GAMP, FDA QSR Part 820 (QMSR), EU MDR (Regulation 2017 / 745), IEC 62304, GDPR, ISO 13485, ISO 27001 and ISO 42001 / EN 18286 regulatory ...

Information Security Architecture & Engineering Lead (UK-based)

Location
Greater London, England, United Kingdom
Sales. Job requirements Demonstrable and considerable experience in cloud security architecture (AWS essential and Azure), including IAM design, network segmentation, and secrets / KMS management. Hands-on DevSecOps experience: CI / CD pipeline security, Infrastructure-as-Code scanning, and policy-as-code. Strong hands-on software development … scripting capability, including Python and C# / .NET, with the ability to read, review and write secure production-quality code; familiarity with PowerShell, Bash, REST APIs and common software development tooling. Experience building security automation, API integrations, test harnesses or internal engineering tools, using source control, peer review, testing ...

Assistant Manager Information Security

Location
Greater London, England, United Kingdom
business impact analyses, business continuity and IT disaster recovery plans and their testing (including the AWS cloud environment), helping ensure recovery objectives (RTO / RPO) are documented, achievable and evidenced, with lessons learned fed into improvements. Data Protection Governance Support the Data Protection Officer in operating the bank … security awareness and data protection training to foster a strong risk awareness culture across the bank. Requirements EDUCATION & TRAINING Bachelor's degree in Information / Cyber Security, Computer Science or a related discipline; equivalent professional experience may be considered. Relevant professional certifications are strongly preferred, for example CISM, CISSP ...

Security Engineer, Compliance Focus

Location
Greater London, England, United Kingdom
here is not a paperwork exercise at the edge of the business. It is a condition of doing business. We are working toward ISO 27001 certification and SOC 2 Type II attestation across a company that is scaling quickly, operating multi-tenant infrastructure in several countries … here, not your previous salary Equity in Volta, giving you the opportunity to share in the company's long-term success Retirement / pension contributions Comprehensive health, wellbeing and insurance benefits Generous number of vacation days each year Additional Information Equal Opportunity Volta is an equal opportunity employer. ...

Solution Architect (City of London Police)

Hiring Organisation
City of London
Location
London, United Kingdom
Salary
£ 60 K
Location: City of LondonSalary: 59,060 - 66,670 per yearEmployment: Full timeCategory: ITPosted: 2026-09-03Valid to: 2026-09-17Apply: https: / / cityoflondon.jobs.hr.cloud.sap / job / Solution-Architect-(City-of-London-Police) / 1422-en_GBEmployer: City of LondonJob Title: Solution Architect … City of London Police) Posting Start Date: 02 / 09 / 2026 Posting End Date: 17 / 09 / 2026 Department: Chamberlain's Office Location: Bishopgate Police Station Level of DBS required for this role: Basic Level of vetting required?: NPPV 3 (Non police personnel ...

Deputy General Manager - Cybersecurity - Products

Hiring Organisation
Tata Communications
Location
London, United Kingdom
Salary
£ 80 K
Data Integrations and UK GDPR and India's Digital Personal Data Protection (DPDP) Act awarenessCloud SecurityAwareness of:Microsoft Azure, AWS, Google Cloud Platform, Cloud / Container / API Security / CASB High level understanding of OT / IoT SecuritySecurity IntegrationsGood understanding of integrating multiple cybersecurity platforms … including:SIEM integrationsIdentity integrationsThreat Intelligence integrationsFirewall integrationsEndpoint integrationsCloud integrationsSOAR playbooksAPI-based security integrationsGovernance & ComplianceAwareness of:ISO / IEC 27001NIST Cybersecurity FrameworkCIS ControlsPCI DSSUK GDPRDPDPLeadership & CollaborationLead technical discussions during customer engagements.Coordinate with OEMs, delivery teams, and technology specialists.Mentor junior architects and consultants.Stay current with emerging cybersecurity ...