1 to 25 of 31 ISO/IEC 27002 (supersedes ISO/IEC 17799) Jobs in the UK

Senior Security Consultant

Location
City Of London, England, United Kingdom
plans. Implement and maintain information security controls aligned with applicable laws, regulations, standards and best practices, including ISO 27001 / 27002, GDPR, Cyber Assessment Framework (CAF) and NIST CSF. Develop and maintain information security policies, standards and procedures, ensuring organisational compliance. Define … banking, energy, telecommunications and media, industrial protection, and critical infrastructure protection. Knowledge of SOC operations, digital forensics and fraud management. Experience with GRC / IRM platforms and the automation of security and compliance processes. Additional security certifications such as CGEIT, C CISO, QSA, CDPP, or Security Director certification ...

Principal Security Officer

Location
Reading, England, United Kingdom
including risk registers, policy exceptions and remediation plans. Lead and support ISO 27001, Cyber Essentials Plus, PCI-DSS, NIST / CIS Controls and customer compliance requirements. Manage and provide assurance around internal and external audits, including remediation of findings. Provide senior oversight of third … party / vendor security risk and critical supplier assurance. Support security assurance for customer contracts and external stakeholder requirements. Develop security reporting, KPIs and dashboards for senior management. Work with security operations and engineering teams to identify vulnerabilities, manage remediation and improve security controls. Provide security input into ...

Information Security Officer

Location
Reading, England, United Kingdom
policies, procedures and controls. Support the implementation and ongoing management of ISO 27001, Cyber Essentials Plus, PCI-DSS, NIST / CIS Controls and other relevant security requirements. Conduct security assessments across infrastructure, networks, endpoints, applications and data. Identify, assess and manage information security risks … years' experience in an Information Security, GRC, compliance or security consultancy role. Practical experience implementing and managing ISO 27001 / ISMS rather than purely theoretical knowledge. Experience with security audits, control testing, risk assessments and remediation . Knowledge of frameworks and standards including ISO ...

Cyber Solutions Lead

Location
Glasgow, Scotland, United Kingdom
Experience with cloud networking architecture and operations as well as security automation and orchestration. A sound understanding of ISO / IEC 27001 / 2, NIST and OWASP Top 10. Ideally knowledge of the legal industry but not essential. … Strong demonstrable knowledge of the Microsoft E5 / E7 security stack and associated technologies. The Firm When you work at Clyde & Co, you join a team of 500 partners, 2,400 lawyers, 3,200 legal professionals and 5,500 people in nearly 70 offices and associated offices worldwide. ...

Cyber Security Consultant

Hiring Organisation
Fruition Group
Location
London, United Kingdom
Employment Type
Permanent
Salary
£60,000
services across UK Government. They're looking for a Cyber Security Assurance Consultant to support client engagements across areas including NCSC CAF, ISO 27001, cyber audit, risk and security assurance . This would suit someone with around 2-3 years' experience in cyber security, information assurance … looking for experience across some of the following: Cyber security assurance, GRC or information assurance ISO 27001 / ISO 27002 NCSC CAF Security audit or compliance Cyber risk management Government or wider public sector environments Existing SC clearance ...

Cyber Requirements & Compliance Specialist

Location
Greater London, England, United Kingdom
with regulators and external stakeholders where required. Track regulatory findings, recommendations and actions through to closure. Assist with external certification activities, including ISO 27001 and Cyber Essentials Plus. Knowledge & Skills: Strong understanding of cyber security principles, governance frameworks and compliance management practices. Knowledge of compliance monitoring … engagement and communication skills, with the ability to work effectively across technical and business functions. Familiarity with ISO 27001 / 27002, NIST Cyber Security Framework (CSF) 2.0 and the NCSC Cyber Assessment Framework (CAF). Understanding of the UK regulatory landscape ...

Security Architect

Hiring Organisation
Hackajob Ltd
Location
Worthing, West Sussex, South East, United Kingdom
Employment Type
Permanent, Work From Home
designing and assuring secure solutions across Azure, on-premise and hybrid environments. Strong knowledge of industry frameworks such as NCSC guidance, NIST CSF / 800-53, ISO 27001 / 2 or SABSA. Understanding of identity & access management, network security, encryption, API security … testing and security assurance processes. Ability to define, document and govern security requirements throughout solution delivery. Desirable: Knowledge of NIS Regulations and ISA / IEC 62443 for OT and industrial control systems. Experience working in highly regulated industries such as utilities, energy or critical ...

Security Architect

Hiring Organisation
Rackspace Technology
Location
Bromley Common, Greater London, UK
Employment Type
Full-time
Cyber Assessment Framework and DSPT toolkit. Develop, communicate and implement the security architecture framework (based on ISO 27001 / 27002 and NIST 800-53). Embed Rackspace's information security policies, standards and procedures into IT services methodologies. Proactively work with … requirements within the Rackspace information security governance framework. Design and integrate security baseline standards for security devices within the technology environment (IDS / IPS, firewalls, VPN, operating systems, BYOD, etc.) Advise in the development of the security product strategy and roadmaps for the various internal and customer facing ...

Security Architect

Location
United Kingdom
Cyber Assessment Framework and DSPT toolkit. Develop, communicate and implement the security architecture framework (based on ISO 27001 / 27002 and NIST 800-53). Embed Rackspace’s information security policies, standards and procedures into IT services methodologies. Proactively work with … requirements within the Rackspace information security governance framework. Design and integrate security baseline standards for security devices within the technology environment (IDS / IPS, firewalls, VPN, operating systems, BYOD, etc.). Advise in the development of the security product strategy and roadmaps for the various internal and customer ...

Security Architect

Location
Greater London, England, United Kingdom
Cyber Assessment Framework and DSPT toolkit. Develop, communicate and implement the security architecture framework (based on ISO 27001 / 27002 and NIST 800-53). Embed Rackspace’s information security policies, standards and procedures into IT services methodologies. Proactively work with … requirements within the Rackspace information security governance framework. Design and integrate security baseline standards for security devices within the technology environment (IDS / IPS, firewalls, VPN, operating systems, BYOD, etc.). Advise in the development of the security product strategy and roadmaps for the various internal and customer ...

Information Security Analyst - Security Operations Centre

Location
Royston, England, United Kingdom
proactively hunting for threats, and continually improving security detections, controls and working practices. Key Activities: Monitor and investigate security alerts across SIEM, EDR / XDR, email security, cloud platforms, identity, network security and data loss prevention tooling. Triage security events, determine scope and impact, coordinate containment and remediation … technical security role. Strong investigation, log analysis and correlation skills across endpoint, identity, email, cloud and network telemetry. Experience using SIEM and EDR / XDR platforms to investigate alerts and support containment and remediation. Ability to document investigations clearly, maintain evidence and explain findings to technical ...

Information Security Analyst - Security Operations Centre

Location
Melbourn, England, United Kingdom
proactively hunting for threats, and continually improving security detections, controls and working practices. Key Activities: Monitor and investigate security alerts across SIEM, EDR / XDR, email security, cloud platforms, identity, network security and data loss prevention tooling. Triage security events, determine scope and impact, coordinate containment and remediation … technical security role. Strong investigation, log analysis and correlation skills across endpoint, identity, email, cloud and network telemetry. Experience using SIEM and EDR / XDR platforms to investigate alerts and support containment and remediation. Ability to document investigations clearly, maintain evidence and explain findings to technical ...

Site Reliability Engineer

Hiring Organisation
Connells Limited
Location
Milton Keynes, Buckinghamshire, South East, United Kingdom
Employment Type
Permanent, Work From Home
reliability improvements Experience & Skills Required: Hands-on experience with Azure Monitoring (Application Insights, Alerts, Action Groups) Strong knowledge of OpenTelemetry (including Kubernetes) Scripting / automation using PowerShell and / or Azure CLI Experience with Terraform and GitHub Actions Ability to define SLIs / SLOs … budgets Incident response and post-incident review experience Familiarity with Docker and Kubernetes Strong communication and documentation skills Desirable: Working knowledge of .NET / C# and React / NextJS Experience with cloud cost optimisation Knowledge of Azure networking (DNS, VNets, Firewalls) Understanding of security frameworks (e.g. ...

Security Architect

Location
Greater London, England, United Kingdom
Cyber Assessment Framework and DSPT toolkit. Develop, communicate and implement the security architecture framework (based on ISO 27001 / 27002 and NIST 800-53). Embed Rackspace’s information security policies, standards and procedures into IT services methodologies. Proactively work with … requirements within the Rackspace information security governance framework. Design and integrate security baseline standards for security devices within the technology environment (IDS / IPS, firewalls, VPN, operating systems, BYOD, etc.) Advise in the development of the security product strategy and roadmaps for the various internal and customer facing ...

GRC Consultant

Hiring Organisation
The Nippon Telegraph And Telephone Corporation (NTT)
Location
London, United Kingdom
Salary
£ 70 K
embraces diversity and inclusion – it’s a place where you can grow, belong and thrive.Your day at NTT DATAThe GRC Consultant (Cyber Assurance / Security Operations Manager) is primarily responsible for ensuring the security controls (people, process, technology) are in place and operating as designed. The primary … quantify and lead risk mitigation plansWork with Service Management to ensure that partners and suppliers adhere to agreed standards, policies and verify / evidence appropriate compliance and security KPIsWork closely with 1st, 2nd and 3rd lines of defence on all matters relating to cyber security, information assurance, cyber ...

GRC Consultant

Location
Greater London, England, United Kingdom
inclusion – it’s a place where you can grow, belong and thrive. Your day at NTT DATA The GRC Consultant (Cyber Assurance / Security Operations Manager) is primarily responsible for ensuring the security controls (people, process, technology) are in place and operating as designed. The primary … quantify and lead risk mitigation plans Work with Service Management to ensure that partners and suppliers adhere to agreed standards, policies and verify / evidence appropriate compliance and security KPIs Work closely with 1st, 2nd and 3rd lines of defence on all matters relating to cyber security, information ...

IT Security Specialist - 4197

Location
Greater London, England, United Kingdom
Operations Team, Project Management Teams, global IT Teams, and outsourcing partners to deliver solutions that enhance the security program for CLS. Essential Function / Major Duties and Job Responsibilities Strategic As part of the CLS Security Engineering team, develop and implement CLS security strategy in consultation with … compliance with cyber resilience requirements Be responsible when assigned ownership of CLS Security related Regulatory and Internal Audit finding(s), and provide effective / timely resolution Design and integrate consistent security solutions across CLS on-premise and cloud environments for domains like Vulnerability Management, Endpoint Security, Data Security ...

Information Security Specialist

Location
Glasgow, Scotland, United Kingdom
certifications by coordinating evidence collection, tracking remediation activities, engaging stakeholders and assisting with audit requirements. Reporting, Governance and Continual Improvement Facilitate / establish and report on monthly metrics and Key Performance / Risk Indicators relating to third party / supply chain risk, human-risk … training / awareness and DLP. Produce management reporting, metrics and risk insights to demonstrate programme effectiveness and support governance decision-making. Facilitate continual improvement by investigating and utilising latest technologies such as Artificial Intelligence / Machine Learning and other process methodologies to help transform the delivery ...

Security Architect

Location
Greater London, England, United Kingdom
threat modelling, undertake risk assessment, evaluate the effectiveness of security controls Verify and evidence alignment to 'Secure by Design' principles, corporate security policy / standards as well as industry recognized frameworks and best practice Looking ahead to future opportunities. As our business continues to grow, we are building … quantify and lead risk mitigation plans Work with Service Management to ensure that partners and suppliers adhere to agreed standards, policies and verify / evidence appropriate compliance and security KPIs Work closely with 1st, 2nd and 3rd lines of defense on all matters relating to cyber security, information ...

Security Architect

Hiring Organisation
The Nippon Telegraph And Telephone Corporation (NTT)
Location
London, UK
Employment Type
Full-time
threat modelling, undertake risk assessment, evaluate the effectiveness of security controls- Verify and evidence alignment to 'Secure by Design' principles, corporate security policy / standards as well as industry recognized frameworks and best practiceLooking ahead to future opportunities. As our business continues to grow, we are building … quantify and lead risk mitigation plans Work with Service Management to ensure that partners and suppliers adhere to agreed standards, policies and verify / evidence appropriate compliance and security KPIs Work closely with 1st, 2nd and 3rd lines of defense on all matters relating to cyber security, information ...

Client‐Facing Security Architect – Sovereign Cloud

Location
United Kingdom
with enterprise architecture. In this client-facing role, you will work with NHS and regulated clients, embedding ISO 27001 / 27002 and NIST 800-53, guiding product teams on governance and security offerings. #J-18808-Ljbffr ...

Senior Security Architect for Sovereign Cloud (NHS)

Location
Greater London, England, United Kingdom
environments in a client-facing role. You will lead assessments, architecture reviews, and security strategy aligned with ISO 27001 / 27002 and NIST standards. Location is on-site with a customer in Central London, with hybrid working options. You will guide security ...

Security Architect

Location
Greater London, England, United Kingdom
threat modelling, undertake risk assessment, evaluate the effectiveness of security controls Verify and evidence alignment to ‘Secure by Design’ principles, corporate security policy / standards as well as industry recognized frameworks and best practice Looking ahead to future opportunities. As our business continues to grow, we are building … quantify and lead risk mitigation plans Work with Service Management to ensure that partners and suppliers adhere to agreed standards, policies and verify / evidence appropriate compliance and security KPIs Work closely with 1st, 2nd and 3rd lines of defense on all matters relating to cyber security, information ...

Site Reliability Engineer

Location
Fenny Stratford, England, United Kingdom
Azure Monitoring (Application Insights, Alerts, Action Groups) Strong knowledge of OpenTelemetry (including Kubernetes) Experience with Terraform and GitHub Actions Ability to define SLIs / SLOs and manage error budgets Incident response and post‐incident review experience Familiarity with Docker and Kubernetes Strong communication and documentation skills Working knowledge … .NET / C# and React / NextJS Experience with cloud cost optimisation Knowledge of Azure networking (DNS, VNets, Firewalls) Understanding of security frameworks (e.g. ISO 27002, NIST CSF) About You: You may come from SRE, DevOps, platform engineering, or operations ...

Information Security Officer - Post Trade, LCH Ltd

Hiring Organisation
London Stock Exchange Group
Location
London, UK
Employment Type
Full-time
assets of LCH Ltd. are adequately protected, and that all related information security and cyber controls remain effective and within risk appetite and / or have appropriate risk treatment plans in place to bring them back into risk appetite. The role will best suit an experienced Information Security … Manager with extensive experience gained from having previously operated within Senior Management level InfoSec / Cyber roles within the FS or FMI industries. The successful candidate must be a subject matter expert in Information Security, as the role demands a very strong knowledge in all areas of information ...