Southampton, Hampshire, United Kingdom Hybrid / WFH Options
NICE
all about? The Information Security Analyst is primarily responsible for ensuring compliance with information security frameworks such as Cyber Essentials, Cyber Essentials Plus, ISO27001, ISO 27701, ISO 42001, GDPR, and DORA. This role focuses on internal audits, regulatory compliance, and readiness … standards, and risk management processes. Audit Preparation: Assist internal control owners in scoping appropriate evidence and preparing for external audits. Gap Assessments: Facilitate and / or conduct internal gap assessments and audit readiness evaluations for frameworks such as ISO27001, GDPR, and DORA. Framework Tracking … sexual orientation or any other category protected by law. Apply for this job indicates a required field First Name Last Name Email Phone Resume / CV Enter manually Accepted file types: pdf, doc, docx, txt, rtf LinkedIn Profile Do you have any first-degree relatives (spouse, parent, child, sibling More ❯
london, south east england, United Kingdom Hybrid / WFH Options
Natcap
implement security procedures and policies Support audit readiness and ISO27001 compliance What You Bring: Proven track record delivering infrastructure / security projects in fast-paced environments Experience with cloud platforms (AWS, GCP) and tools like Jira Knowledge of ISO27001 … and / or SOC 2 certification processes Excellent communication skills, including reporting to senior stakeholders A collaborative, problem-solving mindset Nice to Have: Direct experience supporting ISO27001 certification Familiarity with internal IT systems and Google Workspace Policy writing or compliance documentation experience What We … and trust in how you deliver Flexible working and hybrid setup (London-based) Potential for contract extension or longer-term opportunity 🔗 Apply now : https: // careers.natcapresearch.com / jobs / 5796067-technical-project-manager-contract More ❯
years+ experience leading Cyber Security Defense and Operations teams. Bachelor's Degree in Cybersecurity, Computer Science, Information Systems, related field or equivalent training and / or experience. Hold an industry recognised information security qualification such as GIAC / GCIA / GCIH, CISSP or CompTIA Advanced Security Practitioner … CASP+) and / or SIEM-specific training and certification. An understanding and knowledge of compliance and regulatory frameworks such as National Cyber Security Centre (NCSC) Cyber Assessment Framework (CAF) and ISA /IEC 62443, ISO/IEC27001/ 27002, GDPR. Working knowledge of security technologies including but not limited to SIEM, SOAR, EDR, AV, IDS / IPS, NAC, AD, DLP, Web Filtering, Email Filtering, Behavioural Analytics. Knowledge of adversarial tactics, techniques, procedures (TTPs) and industry standard frameworks (Mitre ATT&CK). Practical experience of incident response More ❯
years+ experience leading Cyber Security Defense and Operations teams. Bachelor's Degree in Cybersecurity, Computer Science, Information Systems, related field or equivalent training and / or experience. Hold an industry recognised information security qualification such as GIAC / GCIA / GCIH, CISSP or CompTIA Advanced Security Practitioner … CASP+) and / or SIEM-specific training and certification. An understanding and knowledge of compliance and regulatory frameworks such as National Cyber Security Centre (NCSC) Cyber Assessment Framework (CAF) and ISA /IEC 62443, ISO/IEC27001/ 27002, GDPR. Working knowledge of security technologies including but not limited to SIEM, SOAR, EDR, AV, IDS / IPS, NAC, AD, DLP, Web Filtering, Email Filtering, Behavioural Analytics. Knowledge of adversarial tactics, techniques, procedures (TTPs) and industry standard frameworks (Mitre ATT&CK). Practical experience of incident response More ❯
years+ experience leading Cyber Security Defense and Operations teams. Bachelor's Degree in Cybersecurity, Computer Science, Information Systems, related field or equivalent training and / or experience. Hold an industry recognised information security qualification such as GIAC / GCIA / GCIH, CISSP or CompTIA Advanced Security Practitioner … CASP+) and / or SIEM-specific training and certification. An understanding and knowledge of compliance and regulatory frameworks such as National Cyber Security Centre (NCSC) Cyber Assessment Framework (CAF) and ISA /IEC 62443, ISO/IEC27001/ 27002, GDPR. Working knowledge of security technologies including but not limited to SIEM, SOAR, EDR, AV, IDS / IPS, NAC, AD, DLP, Web Filtering, Email Filtering, Behavioural Analytics. Knowledge of adversarial tactics, techniques, procedures (TTPs) and industry standard frameworks (Mitre ATT&CK). Practical experience of incident response More ❯
years+ experience leading Cyber Security Defense and Operations teams. Bachelor's Degree in Cybersecurity, Computer Science, Information Systems, related field or equivalent training and / or experience. Hold an industry recognised information security qualification such as GIAC / GCIA / GCIH, CISSP or CompTIA Advanced Security Practitioner … CASP+) and / or SIEM-specific training and certification. An understanding and knowledge of compliance and regulatory frameworks such as National Cyber Security Centre (NCSC) Cyber Assessment Framework (CAF) and ISA /IEC 62443, ISO/IEC27001/ 27002, GDPR. Working knowledge of security technologies including but not limited to SIEM, SOAR, EDR, AV, IDS / IPS, NAC, AD, DLP, Web Filtering, Email Filtering, Behavioural Analytics. Knowledge of adversarial tactics, techniques, procedures (TTPs) and industry standard frameworks (Mitre ATT&CK). Practical experience of incident response More ❯
to go above and beyond to ensure their needs are met. Listed multiple times on Gartner Market Guides for Managed Security Services. Job Role / Responsibilities Assisting our clients in securing their information systems (defining target objectives, developing action plans, implementing actions (organizational or technical), coordination, monitoring and managing … ISO 27005, EBIOS RM). Even better if you’re certified! You're curious and have already read cybersecurity frameworks and methodologies (ISO27001/ 2, IEC 62443, ANSSI, NIS, NIST…) Soft Skills Required: Mindset is key: you’re motivated, dynamic, and autonomous You enjoy teamwork … English (you can understand conversations, lead meetings, and write reports…) Other Requirements: Master’s degree or equivalent Certifications such as IEC 62443, ISO27001/ 2 / 5, EBIOS EM, ISC2 are a plus! Driver's license (B), useful for some travel Integrity360 Employee Benefits (UK) At More ❯
Head of Information Security required for online retail business. The role will initially be focused on ISO27001 & ISO9001 recertifications. Responsibilities Lead on information security strategy and implementation of security roadmap Develop security KPIs and track their progress Advise senior management on risk levels and any changes impacting security posture, including … Conduct risk assessments, maintain risk registers, and design risk treatment plans. Support oversight of vulnerability tooling & processes, assess risk and prioritise remediation. Lead internal / external audits (ISO27001 and ISO 9001) and ensure compliance with regulations (GDPR). Support wider IT project … defined gates, provision of guidance and assessment of controls. As an ideal candidate, you will have a proven track record of bringing organisations through ISO27001 & ISO 9001 accreditations. ISO27001 lead implementer or auditor qualifications are essential. More ❯
london, south east england, United Kingdom Hybrid / WFH Options
55 Exec Search
posture. You’ll work with industry-leading frameworks like Cyber Essentials (CE), Cyber Essentials Plus (CE+), NIST 2, ISO27001/ 223001, DORA , and more. This is the perfect opportunity if you’re looking for more autonomy, rapid career growth, and a dynamic environment —far … and principal consultants as needed. Lead and contribute to diverse security projects, including third-party risk management, mergers and acquisitions, security policy development, ISO27001 implementation, audits and compliance (NIS 2, DORA), risk assessments, remediation programs, and more. Lead, manage, and deliver full cyber security engagements … Bring as a Senior Cyber Security Consultant: 2+ years of information security consulting Experience of Governance, Risk, and Compliance (GRC) frameworks such as ISO27001, ISO 223001, NIST, DORA and other regulatory standards. Experience conducting Cyber Essentials and Cyber Essentials Plus assessments and guiding More ❯
if you require a different format of this document, please get in touch with at UKI.recruitment@tcs.com or call TCS London Office number 02031552100 / +44 204 520 2575 with the subject line: “Application Support Request”. Role: Lead DevOps Job Type: Permanent Location: London / Newcastle Ready … and systems, including IAM policy design, access management, encryption standards, and compliance audits Design, implement, and manage various DevOps tools and technologies, including CI / CD platforms (Jenkins, GitLab CI), configuration management tools (Ansible, Puppet), and containerization technologies (Docker, ECS, Kubernetes) Monitor system performance, identify bottlenecks, and implement optimizations … performance metrics, and provide actionable recommendations Document and refine DevOps practices, maintaining version control, release management workflows, and configuration documentation Your Profile Essential skills / knowledge / experience: AWS Security & Compliance Expertise: Deep understanding of AWS Security, Identity, and Compliance services, including IAM, AWS Organizations, SCPs, Secrets Manager More ❯
portsmouth, hampshire, south east england, united kingdom
University of Southampton
About the Role This is a key role in the design and development of a Secure Data Environment which will be certified to ISO27001 standards. You will be joining our current High Performance Computing team, who have years of experience delivering research computing, and working … Research Environments IT infrastructure and automation tooling required to deliver the Secure Data Environment and its compliance with the appropriate accreditations (e.g., Cyber Essentials / Plus, ISO/IEC27001). - Work with a combination of virtualised and bare metal infrastructure to More ❯
portsmouth, hampshire, south east england, united kingdom
University of Southampton
About the Role This is a key role in the design and development of a Secure Data Environment which will be certified to ISO27001 standards. You will be joining our current High Performance Computing team, who have years of experience delivering research computing, and working … Research Environments IT infrastructure and automation tooling required to deliver the Secure Data Environment and its compliance with the appropriate accreditations (e.g., Cyber Essentials / Plus, ISO/IEC27001). - Work with a combination of virtualised and bare metal infrastructure to More ❯
systems, frameworks, and processes to support the organisation in achieving multiple industry accreditations within defined industry standards (e.g., ISO27001/ 27101, NIST, Cyber Essentials, GDPR, GXP, etc.). Key Responsibilities: Leadership & Strategy Build, mentor, and lead a high-performing, professional cybersecurity team. Develop and … their appropriate Risk Treatment Plans. Risk & Compliance Management Define and enforce IT security policies, standards, and procedures. Ensure compliance with industry accreditations (e.g., ISO27001, NIST, GDPR), working closely with external auditors and regulatory bodies. Conduct regular risk assessments and vulnerability management, and penetration testing to … enterprise-sized organisations. Proven track record in Security Operations, Risk Management, IAM, and Compliance. Hands-on experience with security tools such as SIEM, EDR / XDR, Firewalls, IDS / IPS, DLP, and IAM solutions. Working knowledge of security frameworks: ISO27001, NIST, CIS, SOC More ❯
london, south east england, United Kingdom Hybrid / WFH Options
Vantage Data Centers
be part of the leadership team responsible for protecting a rapidly expanding global enterprise. The OT Manager, Cybersecurity, will audit the Industrial Control System / Operational Technology (ICS / OT) environment and perform risk / vulnerability assessments leading to the development of an enterprise strategy / design plan. The OT Manager, Cybersecurity, will lead the team on implementation (hands-on configuration) of the enterprise ICS / OT systems Additional responsibilities include research, classification, and root cause analysis of security events that occur within the environment. The ideal candidate will have security industry knowledge that … performing security assessments in an OT environment. Excellent leadership skills as this is a people manager role. Strong understanding of cybersecurity frameworks for ICS / OT environments Strong understanding of OT network communication protocols and industrial networking topologies. Familiarity with NIST (National Institute of Standards and Technology) Special Publication More ❯
london, south east england, United Kingdom Hybrid / WFH Options
FirstBank UK Limited
recognised, top-tier bank who provide world-class services to various institutions and individuals. Offering a comprehensive range of retail and corporate financial services / products, this thriving business with over 10 million active customers in over 700 business locations is the oldest African bank in the UK. Due … holder will work very closely with all third-party vendors involved in the remediation process. The job holder will also prepare the necessary MI / Dashboard reports for the relevant stakeholders and alleviate the workload of the IT Service desk function when required. The primary responsibilities of the role … CMSS) Incident / Response & Forensic Management Skills IT Technical Admin Support - Azure, Oracle Cloud Infrastructure (OCI Cloud) Microsoft Windows Support & administration, CE+, ISO27001 Email and Information Security Filtering / Monitoring Solutions, Egress Hands on experience on Linux and Mac Administration Support Good understanding of Windows and Linux More ❯
Sevenoaks, Kent, Kemsing, United Kingdom Hybrid / WFH Options
Bowerford Associates
We are searching for a detail-oriented and experienced part-time Compliance Officer to support and maintain compliance frameworks across ISO 9001 (Quality Management), ISO 14001 (Environmental Management) and ISO27001 (Information Security Management). The role is critical in ensuring our … remote position with office visits circa 2 or 3 times per month and during audit periods. Key Responsibilities: Monitor and maintain compliance with ISO 9001, 14001 and 27001 standards … Conduct internal audits and support external audit preparations Maintain documentation, records, and procedures as per ISO requirements Support risk assessments and corrective / preventive actions (CAPA) Collaborate with teams to ensure ongoing adherence to environmental, quality, and information security policies Assist in staff training and awareness programs More ❯
Employment Type: Permanent
Salary: £35000 - £45000/annum Pension, Holiday & More
ROLE OVERVIEW // We’re looking for a Developer to join the Development team within our Technology department. If you thrive on solving complex challenges, enjoy learning modern technologies, and value building secure, maintainable solutions, this role is for you. This is an exciting opportunity to help … law firm that's great but not essential. We're most interested in your skills, mindset, and ability to deliver quality outcomes. KEY RESPONSIBILITIES // The key responsibilities of this role are set out below and there may be others which are not listed. You may be … solutions that support business processes and reporting needs. Conduct code reviews on other people's solutions to ensure quality, security, and maintainability. CANDIDATE PROFILE // Essential Skills and Knowledge Proven experience developing with Azure Integration Services, including Logic Apps, Service Bus, Function Apps, API Management, and Data More ❯
as policies, standards, and procedures. Report on security performance metrics to senior leadership on a monthly basis. Ensure compliance with key frameworks including ISO27001:2022, ISO 27701:2019, and SOC 2 across multiple international offices. Lead internal audits and manage responses to external … secure behaviours through awareness training and internal communication. Essential: Hands-on experience with ISO27001, ISO 27701 and / or SOC 2 standards. Strong grasp of global data protection laws, particularly GDPR and CCPA. Able to work independently and coordinate with a wide More ❯
london, south east england, United Kingdom Hybrid / WFH Options
Tenth Revolution Group
as policies, standards, and procedures. Report on security performance metrics to senior leadership on a monthly basis. Ensure compliance with key frameworks including ISO27001:2022, ISO 27701:2019, and SOC 2 across multiple international offices. Lead internal audits and manage responses to external … secure behaviours through awareness training and internal communication. Essential: Hands-on experience with ISO27001, ISO 27701 and / or SOC 2 standards. Strong grasp of global data protection laws, particularly GDPR and CCPA. Able to work independently and coordinate with a wide More ❯
london (city of london), south east england, United Kingdom Hybrid / WFH Options
Tenth Revolution Group
as policies, standards, and procedures. Report on security performance metrics to senior leadership on a monthly basis. Ensure compliance with key frameworks including ISO27001:2022, ISO 27701:2019, and SOC 2 across multiple international offices. Lead internal audits and manage responses to external … secure behaviours through awareness training and internal communication. Essential: Hands-on experience with ISO27001, ISO 27701 and / or SOC 2 standards. Strong grasp of global data protection laws, particularly GDPR and CCPA. Able to work independently and coordinate with a wide More ❯
london (west end), south east england, United Kingdom Hybrid / WFH Options
Tenth Revolution Group
as policies, standards, and procedures. Report on security performance metrics to senior leadership on a monthly basis. Ensure compliance with key frameworks including ISO27001:2022, ISO 27701:2019, and SOC 2 across multiple international offices. Lead internal audits and manage responses to external … secure behaviours through awareness training and internal communication. Essential: Hands-on experience with ISO27001, ISO 27701 and / or SOC 2 standards. Strong grasp of global data protection laws, particularly GDPR and CCPA. Able to work independently and coordinate with a wide More ❯
london, south east england, United Kingdom Hybrid / WFH Options
Formula Recruitment
and implement security and compliance policies and controls across infrastructure, applications, and internal systems. Lead the development and execution of the roadmap toward ISO27001 certification and other key compliance frameworks. Collaborate with external stakeholders and customers to support security-related queries … and onboarding. Drive internal audits and prepare documentation for external assessments. Work with engineering leadership to integrate security best practices into the SDLC, CI / CD, and cloud infrastructure. Guide secure architectural decisions and deployment processes. Maintain and evolve security training, policy documentation, and incident response plans. Monitor the … UK GDPR, and industry best practices. Proven experience preparing for and leading ISO or similar audits. Solid understanding of AWS / Azure / GCP cloud security and web application security principles. Strong communication and documentation skills. Experience with tools like SIEM, CSPM, vulnerability scanners, and monitoring More ❯
reading, south east england, United Kingdom Hybrid / WFH Options
ServQual - Security
Job Title: Security Consultant Intern Location: Berkshire / Hampshire / Surrey, UK (Hybrid Working) Type: Internship Travel: Occasional travel required Training: Comprehensive training and mentorship provided About ServQual Limited (https: // srvql.com) is a UK-headquartered cybersecurity and privacy consulting firm with global operations in … join our growing UK team. This internship offers hands-on exposure to the world of cybersecurity consulting, risk assessments, compliance frameworks (such as ISO27001, NIST, SOC2), and security operations. Ideal for a recent graduate or student from a technology or cybersecurity background, this role provides … independently and as part of a collaborative hybrid team Willingness to travel occasionally for client engagements or events Bonus: Familiarity with security standards (ISO27001, NIST), cloud platforms (AWS, Azure), or basic scripting What You’ll Gain: Hands-on cybersecurity consulting experience Mentorship from industry-certified More ❯
providers, and outsourced services. Ensure compliance with DORA’s outsourcing requirements , including due diligence, contract oversight, and continuity planning. Audit & Assurance: Participate in internal / external audits (ISO27001, SOC 2) and regulatory examinations, focusing on third-party and outsourcing compliance. Remediate gaps in processes … risks tied to third-party dependencies, outsourcing, and ICT disruptions. Quantify risks using methodologies. Technical Compliance & Security: Advise on vulnerability management , endpoint security (EDR / XDR) , and cloud compliance . Good understanding on IAM (Identity and Access Management) strategies, including role-based access control (RBAC) and privileged access management … Experience: 4+ years in GRC roles ; financial services or banking experience is a strong plus . Understanding of GDPR , DORA , PCI DSS, and outsourcing / third-party risk requirements. Hands-on experience with ISO27001 implementation and third-party risk tools . Proficiency in IAM More ❯