compliance effectiveness, you'll work across functions to support operational resilience and maintain alignment with global security and regulatory frameworks including: - ISO/IEC27001:2022 - NIST Cybersecurity Framework - PCI-DSS 4.0.1 - UK GDPR, NIS2 Directive, CAP1753, and related sector obligations . This … their ongoing security posture meets Virgin Atlantic requirements Conduct internal reviews against ISO, NIST, PCI, UK GDPR, and emerging requirements Support internal / external audits, evidence readiness, and corrective action tracking Maintain the policy and control framework, identifying non-compliance and advising on remediation or risk acceptance … and reliable protective security measures to effectively limit opportunities for attackers to compromise networks and systems is incorporated in project design. About you CRISC / CISA / CISM certification through ISACA or an equivalent professional body. ISO27001 Lead Implementer / Auditor certification More ❯
and business leadership to ensure seamless program execution and operational buy-in. Lead program governance and execution frameworks, including risk assessment, remediation planning, KPI / OKR reporting, and change control processes. Ensure cybersecurity controls and program components align with leading industry frameworks (e.g., ISO/IEC … regulatory compliance Fluency in German and English (written and spoken) is required Deep knowledge of security frameworks and methodologies (e.g., NIST, ISO/IEC27001, CIS Controls, BSI, MITRE ATT&CK) Demonstrated ability to lead cross-functional teams and manage large-scale cybersecurity … initiatives Relevant certifications such as PMP, CISM, CISSP, ISO27001 Lead Implementer / Auditor are highly desirable Bachelor's or Master’s degree in Cybersecurity, Information Systems, Engineering, or related field Understanding of cloud platforms (e.g., AWS, Azure, GCP) and modern enterprise IT environments is More ❯
Southampton, Hampshire, United Kingdom Hybrid / WFH Options
NICE
all about? The Information Security Analyst is primarily responsible for ensuring compliance with information security frameworks such as Cyber Essentials, Cyber Essentials Plus, ISO27001, ISO 27701, ISO 42001, GDPR, and DORA. This role focuses on internal audits, regulatory compliance, and readiness … standards, and risk management processes. Audit Preparation: Assist internal control owners in scoping appropriate evidence and preparing for external audits. Gap Assessments: Facilitate and / or conduct internal gap assessments and audit readiness evaluations for frameworks such as ISO27001, GDPR, and DORA. Framework Tracking … sexual orientation or any other category protected by law. Apply for this job indicates a required field First Name Last Name Email Phone Resume / CV Enter manually Accepted file types: pdf, doc, docx, txt, rtf LinkedIn Profile Do you have any first-degree relatives (spouse, parent, child, sibling More ❯
Cyber Security Architect SC or DV Cleared (DV Eligible) £65,000 – £95,000 DOE + Excellent Benefits London (Hybrid) Secure Government Projects DevSecOps / SIEM /ISO27001/ Azure / CISSP Permanent Apply by emailing luke.parry@searchability.com Are you a Cyber … implementing secure architectures across complex environments Leading technical teams and advising on security controls and risk management Shaping cloud and DevSecOps security strategies (AWS / Azure / GCP) Supporting accreditation and compliance with security frameworks (ISO27001, NIST, JSP 440, Secure by Design) What … role: Strong experience in a Security Architecture role Knowledge of frameworks such as ISO27001, NIST, CIS Familiarity with TOGAF / SABSA methodology Understanding of SIEM, firewalls, IDS / IPS, vulnerability management Cloud security expertise – AWS, Azure, or Google Cloud DevSecOps knowledge, CI /More ❯
london, south east england, United Kingdom Hybrid / WFH Options
Natcap
implement security procedures and policies Support audit readiness and ISO27001 compliance What You Bring: Proven track record delivering infrastructure / security projects in fast-paced environments Experience with cloud platforms (AWS, GCP) and tools like Jira Knowledge of ISO27001 … and / or SOC 2 certification processes Excellent communication skills, including reporting to senior stakeholders A collaborative, problem-solving mindset Nice to Have: Direct experience supporting ISO27001 certification Familiarity with internal IT systems and Google Workspace Policy writing or compliance documentation experience What We … and trust in how you deliver Flexible working and hybrid setup (London-based) Potential for contract extension or longer-term opportunity 🔗 Apply now : https: // careers.natcapresearch.com / jobs / 5796067-technical-project-manager-contract More ❯
years+ experience leading Cyber Security Defense and Operations teams. Bachelor's Degree in Cybersecurity, Computer Science, Information Systems, related field or equivalent training and / or experience. Hold an industry recognised information security qualification such as GIAC / GCIA / GCIH, CISSP or CompTIA Advanced Security Practitioner … CASP+) and / or SIEM-specific training and certification. An understanding and knowledge of compliance and regulatory frameworks such as National Cyber Security Centre (NCSC) Cyber Assessment Framework (CAF) and ISA /IEC 62443, ISO/IEC27001/ 27002, GDPR. Working knowledge of security technologies including but not limited to SIEM, SOAR, EDR, AV, IDS / IPS, NAC, AD, DLP, Web Filtering, Email Filtering, Behavioural Analytics. Knowledge of adversarial tactics, techniques, procedures (TTPs) and industry standard frameworks (Mitre ATT&CK). Practical experience of incident response More ❯
to go above and beyond to ensure their needs are met. Listed multiple times on Gartner Market Guides for Managed Security Services. Job Role / Responsibilities Assisting our clients in securing their information systems (defining target objectives, developing action plans, implementing actions (organizational or technical), coordination, monitoring and managing … ISO 27005, EBIOS RM). Even better if you’re certified! You're curious and have already read cybersecurity frameworks and methodologies (ISO27001/ 2, IEC 62443, ANSSI, NIS, NIST…) Soft Skills Required: Mindset is key: you’re motivated, dynamic, and autonomous You enjoy teamwork … English (you can understand conversations, lead meetings, and write reports…) Other Requirements: Master’s degree or equivalent Certifications such as IEC 62443, ISO27001/ 2 / 5, EBIOS EM, ISC2 are a plus! Driver's license (B), useful for some travel Integrity360 Employee Benefits (UK) At More ❯
Head of Information Security required for online retail business. The role will initially be focused on ISO27001 & ISO9001 recertifications. Responsibilities Lead on information security strategy and implementation of security roadmap Develop security KPIs and track their progress Advise senior management on risk levels and any changes impacting security posture, including … Conduct risk assessments, maintain risk registers, and design risk treatment plans. Support oversight of vulnerability tooling & processes, assess risk and prioritise remediation. Lead internal / external audits (ISO27001 and ISO 9001) and ensure compliance with regulations (GDPR). Support wider IT project … defined gates, provision of guidance and assessment of controls. As an ideal candidate, you will have a proven track record of bringing organisations through ISO27001 & ISO 9001 accreditations. ISO27001 lead implementer or auditor qualifications are essential. More ❯
london, south east england, United Kingdom Hybrid / WFH Options
55 Exec Search
posture. You’ll work with industry-leading frameworks like Cyber Essentials (CE), Cyber Essentials Plus (CE+), NIST 2, ISO27001/ 223001, DORA , and more. This is the perfect opportunity if you’re looking for more autonomy, rapid career growth, and a dynamic environment —far … and principal consultants as needed. Lead and contribute to diverse security projects, including third-party risk management, mergers and acquisitions, security policy development, ISO27001 implementation, audits and compliance (NIS 2, DORA), risk assessments, remediation programs, and more. Lead, manage, and deliver full cyber security engagements … Bring as a Senior Cyber Security Consultant: 2+ years of information security consulting Experience of Governance, Risk, and Compliance (GRC) frameworks such as ISO27001, ISO 223001, NIST, DORA and other regulatory standards. Experience conducting Cyber Essentials and Cyber Essentials Plus assessments and guiding More ❯
if you require a different format of this document, please get in touch with at UKI.recruitment@tcs.com or call TCS London Office number 02031552100 / +44 204 520 2575 with the subject line: “Application Support Request”. Role: Lead DevOps Job Type: Permanent Location: London / Newcastle Ready … and systems, including IAM policy design, access management, encryption standards, and compliance audits Design, implement, and manage various DevOps tools and technologies, including CI / CD platforms (Jenkins, GitLab CI), configuration management tools (Ansible, Puppet), and containerization technologies (Docker, ECS, Kubernetes) Monitor system performance, identify bottlenecks, and implement optimizations … performance metrics, and provide actionable recommendations Document and refine DevOps practices, maintaining version control, release management workflows, and configuration documentation Your Profile Essential skills / knowledge / experience: AWS Security & Compliance Expertise: Deep understanding of AWS Security, Identity, and Compliance services, including IAM, AWS Organizations, SCPs, Secrets Manager More ❯
Southampton, Hampshire, South East, United Kingdom
University of Southampton
About the Role This is a key role in the design and development of a Secure Data Environment which will be certified to ISO27001 standards. You will be joining our current High Performance Computing team, who have years of experience delivering research computing, and working … Research Environments IT infrastructure and automation tooling required to deliver the Secure Data Environment and its compliance with the appropriate accreditations (e.g., Cyber Essentials / Plus, ISO/IEC27001). - Work with a combination of virtualised and bare metal infrastructure to More ❯
portsmouth, hampshire, south east england, united kingdom
University of Southampton
About the Role This is a key role in the design and development of a Secure Data Environment which will be certified to ISO27001 standards. You will be joining our current High Performance Computing team, who have years of experience delivering research computing, and working … Research Environments IT infrastructure and automation tooling required to deliver the Secure Data Environment and its compliance with the appropriate accreditations (e.g., Cyber Essentials / Plus, ISO/IEC27001). - Work with a combination of virtualised and bare metal infrastructure to More ❯
Southampton, Hampshire, South East, United Kingdom
University of Southampton
About the Role This is a key role in the design and development of a Secure Data Environment which will be certified to ISO27001 standards. You will be joining our current High Performance Computing team, who have years of experience delivering research computing, and working … Research Environments IT infrastructure and automation tooling required to deliver the Secure Data Environment and its compliance with the appropriate accreditations (e.g., Cyber Essentials / Plus, ISO/IEC27001). - Work with a combination of virtualised and bare metal infrastructure to More ❯
portsmouth, hampshire, south east england, united kingdom
University of Southampton
About the Role This is a key role in the design and development of a Secure Data Environment which will be certified to ISO27001 standards. You will be joining our current High Performance Computing team, who have years of experience delivering research computing, and working … Research Environments IT infrastructure and automation tooling required to deliver the Secure Data Environment and its compliance with the appropriate accreditations (e.g., Cyber Essentials / Plus, ISO/IEC27001). - Work with a combination of virtualised and bare metal infrastructure to More ❯
Essential skills / knowledge / experience: AWS Security & Compliance Expertise: Deep understanding of AWS Security, Identity, and Compliance services, including IAM, AWS Organizations, SCPs, Secrets Manager, AWS Config, GuardDuty, Security Hub, CloudTrail, and AWS KMS for encryption, ensuring robust cloud security Threat Detection & Compliance: Implementation of AWS security … SOC2, GDPR, and NIST frameworks Collaborate with Solution Architects: Work closely with solution architects to design scalable, secure, and cost-efficient cloud systems / applications, ensuring DevOps methodologies align with business objectives Lead DevOps Team & Define Best Practices: Take ownership of designing and implementing DevOps frameworks, optimizing CI / … Lambda, SNS, SQS, API Gateway, enforcing IAM execution roles, API authentication, encrypted messaging, and network isolation strategies Networking & Cloud Security: Deep expertise in TCP / IP, DNS, Load Balancers, network firewalls, SSL / TLS / mTLS, along with AWS Shield for DDoS protection, AWS WAF for web More ❯
systems, frameworks, and processes to support the organisation in achieving multiple industry accreditations within defined industry standards (e.g., ISO27001/ 27101, NIST, Cyber Essentials, GDPR, GXP, etc.). Key Responsibilities: Leadership & Strategy Build, mentor, and lead a high-performing, professional cybersecurity team. Develop and … their appropriate Risk Treatment Plans. Risk & Compliance Management Define and enforce IT security policies, standards, and procedures. Ensure compliance with industry accreditations (e.g., ISO27001, NIST, GDPR), working closely with external auditors and regulatory bodies. Conduct regular risk assessments and vulnerability management, and penetration testing to … enterprise-sized organisations. Proven track record in Security Operations, Risk Management, IAM, and Compliance. Hands-on experience with security tools such as SIEM, EDR / XDR, Firewalls, IDS / IPS, DLP, and IAM solutions. Working knowledge of security frameworks: ISO27001, NIST, CIS, SOC More ❯
london, south east england, United Kingdom Hybrid / WFH Options
Vantage Data Centers
be part of the leadership team responsible for protecting a rapidly expanding global enterprise. The OT Manager, Cybersecurity, will audit the Industrial Control System / Operational Technology (ICS / OT) environment and perform risk / vulnerability assessments leading to the development of an enterprise strategy / design plan. The OT Manager, Cybersecurity, will lead the team on implementation (hands-on configuration) of the enterprise ICS / OT systems Additional responsibilities include research, classification, and root cause analysis of security events that occur within the environment. The ideal candidate will have security industry knowledge that … performing security assessments in an OT environment. Excellent leadership skills as this is a people manager role. Strong understanding of cybersecurity frameworks for ICS / OT environments Strong understanding of OT network communication protocols and industrial networking topologies. Familiarity with NIST (National Institute of Standards and Technology) Special Publication More ❯
london, south east england, United Kingdom Hybrid / WFH Options
FirstBank UK Limited
recognised, top-tier bank who provide world-class services to various institutions and individuals. Offering a comprehensive range of retail and corporate financial services / products, this thriving business with over 10 million active customers in over 700 business locations is the oldest African bank in the UK. Due … holder will work very closely with all third-party vendors involved in the remediation process. The job holder will also prepare the necessary MI / Dashboard reports for the relevant stakeholders and alleviate the workload of the IT Service desk function when required. The primary responsibilities of the role … CMSS) Incident / Response & Forensic Management Skills IT Technical Admin Support - Azure, Oracle Cloud Infrastructure (OCI Cloud) Microsoft Windows Support & administration, CE+, ISO27001 Email and Information Security Filtering / Monitoring Solutions, Egress Hands on experience on Linux and Mac Administration Support Good understanding of Windows and Linux More ❯
Sevenoaks, Kent, Kemsing, United Kingdom Hybrid / WFH Options
Bowerford Associates
We are searching for a detail-oriented and experienced part-time Compliance Officer to support and maintain compliance frameworks across ISO 9001 (Quality Management), ISO 14001 (Environmental Management) and ISO27001 (Information Security Management). The role is critical in ensuring our … remote position with office visits circa 2 or 3 times per month and during audit periods. Key Responsibilities: Monitor and maintain compliance with ISO 9001, 14001 and 27001 standards … Conduct internal audits and support external audit preparations Maintain documentation, records, and procedures as per ISO requirements Support risk assessments and corrective / preventive actions (CAPA) Collaborate with teams to ensure ongoing adherence to environmental, quality, and information security policies Assist in staff training and awareness programs More ❯
Employment Type: Permanent
Salary: £35000 - £45000/annum Pension, Holiday & More
ROLE OVERVIEW // We’re looking for a Developer to join the Development team within our Technology department. If you thrive on solving complex challenges, enjoy learning modern technologies, and value building secure, maintainable solutions, this role is for you. This is an exciting opportunity to help … law firm that's great but not essential. We're most interested in your skills, mindset, and ability to deliver quality outcomes. KEY RESPONSIBILITIES // The key responsibilities of this role are set out below and there may be others which are not listed. You may be … solutions that support business processes and reporting needs. Conduct code reviews on other people's solutions to ensure quality, security, and maintainability. CANDIDATE PROFILE // Essential Skills and Knowledge Proven experience developing with Azure Integration Services, including Logic Apps, Service Bus, Function Apps, API Management, and Data More ❯
london, south east england, United Kingdom Hybrid / WFH Options
Tenth Revolution Group
as policies, standards, and procedures. Report on security performance metrics to senior leadership on a monthly basis. Ensure compliance with key frameworks including ISO27001:2022, ISO 27701:2019, and SOC 2 across multiple international offices. Lead internal audits and manage responses to external … secure behaviours through awareness training and internal communication. Essential: Hands-on experience with ISO27001, ISO 27701 and / or SOC 2 standards. Strong grasp of global data protection laws, particularly GDPR and CCPA. Able to work independently and coordinate with a wide More ❯
london (city of london), south east england, United Kingdom Hybrid / WFH Options
Tenth Revolution Group
as policies, standards, and procedures. Report on security performance metrics to senior leadership on a monthly basis. Ensure compliance with key frameworks including ISO27001:2022, ISO 27701:2019, and SOC 2 across multiple international offices. Lead internal audits and manage responses to external … secure behaviours through awareness training and internal communication. Essential: Hands-on experience with ISO27001, ISO 27701 and / or SOC 2 standards. Strong grasp of global data protection laws, particularly GDPR and CCPA. Able to work independently and coordinate with a wide More ❯
london (west end), south east england, United Kingdom Hybrid / WFH Options
Tenth Revolution Group
as policies, standards, and procedures. Report on security performance metrics to senior leadership on a monthly basis. Ensure compliance with key frameworks including ISO27001:2022, ISO 27701:2019, and SOC 2 across multiple international offices. Lead internal audits and manage responses to external … secure behaviours through awareness training and internal communication. Essential: Hands-on experience with ISO27001, ISO 27701 and / or SOC 2 standards. Strong grasp of global data protection laws, particularly GDPR and CCPA. Able to work independently and coordinate with a wide More ❯
InfoSec / DevSecOps Engineering Lead, London, £90,000 - £100,000 NearTech have partnered with an innovative and purpose-led Health-Tech scale up to find them an Info Sec / DevSecOps Engineering Lead . You will take ownership of security, privacy, and regulatory compliance across their platform and … will work closely with engineering, product, and leadership teams to design and implement secure systems and maintain alignment with health tech regulations, including ISO27001, UK GDPR, and frameworks relating to AI in healthcare and Software as a Medical Device (SaMD). This is a key … and vulnerability assessment platforms. Prior experience working with UK healthcare entities, including the NHS or private providers. If you come from a Info Security / DevSecOps / Security Engineering background and excited by the prospect of working for a Health-Tech scale-up, please apply with a copy More ❯
reading, south east england, United Kingdom Hybrid / WFH Options
ServQual - Security
Job Title: Security Consultant Intern Location: Berkshire / Hampshire / Surrey, UK (Hybrid Working) Type: Internship Travel: Occasional travel required Training: Comprehensive training and mentorship provided About ServQual Limited (https: // srvql.com) is a UK-headquartered cybersecurity and privacy consulting firm with global operations in … join our growing UK team. This internship offers hands-on exposure to the world of cybersecurity consulting, risk assessments, compliance frameworks (such as ISO27001, NIST, SOC2), and security operations. Ideal for a recent graduate or student from a technology or cybersecurity background, this role provides … independently and as part of a collaborative hybrid team Willingness to travel occasionally for client engagements or events Bonus: Familiarity with security standards (ISO27001, NIST), cloud platforms (AWS, Azure), or basic scripting What You’ll Gain: Hands-on cybersecurity consulting experience Mentorship from industry-certified More ❯