Nottingham, Nottinghamshire, United Kingdom Hybrid / WFH Options
Experian Group
As a Senior Control Assurance Assessor, you'll test security controls both on-premise and in the cloud to ensure design implementation, safeguarding Experian's assets. You'll assess control design, performance, and compliance with standards and regulations, reporting to the InformationSecurity Control Assurance Testing Manager. Identifying gaps, documenting findings, and recommending improvements to mitigate risks … are important responsibilities. Using data-driven testing techniques and a defined methodology, you'll collaborate to ensure controls meet current risks and regulatory requirements. Primary Responsibilities Conduct security control assessments, using documented control activities (where they exist) and regulatory requirements. Develop test plans, test cases, and procedures, applying data from security tools to capture evidence. Use queries and … Contribute lessons learned by integrating partner feedback to improve the control testing program. About Experian About us, but we'll be brief Experian is the world's leading global information services company, unlocking the power of data to create more opportunities for consumers, businesses, and society. Experian is a global data and technology company, powering opportunities for people and More ❯
InformationSecuritySpecialist (InformationSecurity and Cyber Security) Hybrid working: 3 days per week in the office. The InformationSecuritySpecialist will play a pivotal role in shaping my clients cyber resilience strategy. The role involves providing expert guidance to stakeholders on informationsecurity matters, managing technical cybersecurity tools … and operations, and overseeing compliance with regulatory standards. It will lead the development and execution of the cyber and informationsecurity strategy, ensuring alignment with ISO 27001, GDPR and Cyber Essentials. The ideal candidate will have strong informationsecurity experience alongside hands-on technical knowledge of SIEM, EDR, vulnerability management, and incident response. Responsibilities: - Serve as … a subject matter expert for informationsecurity, advising stakeholders on risks, controls, and security best practices. - Support business units with risk-based security input for projects, client bids, and technology initiatives. - Manage cybersecurity tooling including SIEM, EDR, and mail filtering systems to ensure effective threat detection and response. - Monitor, investigate, and respond to alerts and incidents More ❯
improve the well-being of all by taking life science further and combine our attention to detail with the extraordinary, because it all matters. The opportunity Reporting to the InformationSecurity Officer you will contribute to the efficiency, capability and profitability of the business by gathering, analysing and recommending changes to processes/systems within BUs, across multiple … Internal Audit team on the development, implementation and operation of ITGCs Supporting the implementation of ISO27001 controls and perform regular control audits to monitor compliance Developing and managing a security risk framework, aligning with the enterprise risk management approach Coordinating the performance of regular business impact assessments (BIAs) and the recording of results and updates Contributing to the design … and implementation of informationsecurity process and control improvements Mentoring other members of the Informationsecurity team and promote risk management best practices across IT Supporting the development and delivery of compliance training and awareness, fostering a culture of risk awareness and accountability across the organisation Providing advice to stakeholders on IT risk and compliance topics More ❯
improve the well-being of all by taking life science further and combine our attention to detail with the extraordinary, because it all matters. The opportunity Reporting to the InformationSecurity Officer you will contribute to the efficiency, capability and profitability of the business by gathering, analysing and recommending changes to processes/systems within BUs, across multiple … Internal Audit team on the development, implementation and operation of ITGCs Supporting the implementation of ISO27001 controls and perform regular control audits to monitor compliance Developing and managing a security risk framework, aligning with the enterprise risk management approach Coordinating the performance of regular business impact assessments (BIAs) and the recording of results and updates Contributing to the design … and implementation of informationsecurity process and control improvements Mentoring other members of the Informationsecurity team and promote risk management best practices across IT Supporting the development and delivery of compliance training and awareness, fostering a culture of risk awareness and accountability across the organisation Providing advice to stakeholders on IT risk and compliance topics More ❯
Social network you want to login/join with: We are seeking a proactive InformationSecuritySpecialist skilled in security operations, threat intelligence, and risk management. This role is crucial for maintaining robust security protocols, identifying vulnerabilities, and ensuring compliance with security standards. The ideal candidate will have a strong background in IT infrastructure … security, preferably within financial institutions, experience with network infrastructure components, solid analytical and problem-solving skills, and a deep understanding of threat intelligence and incident response. Having CISSP or other relevant certifications (e.g., Network+, Security+, MCSP, CAN) would be beneficial for performing this role. Day-to-Day of the Role: Security Operations and Infrastructure Assist in identifying, analyzing … and following up on security vulnerabilities in IT systems. Help maintain accurate IT asset inventory across various security platforms (e.g., CMDB, AV, SIEM). Participate in regular security reviews, vulnerability assessments, and help ensure compliance with established security standards. Monitor user access and permissions, identifying and reporting potential unauthorized access. Implement and maintain Active Directory and More ❯
InformationSecuritySpecialist Crédit Agricole CIB London, United Kingdom Apply now Posted 11 days ago Permanent Competitive InformationSecuritySpecialist Vacancy details General information Entity About Crédit Agricole Corporate and Investment Bank (Crédit Agricole CIB) Crédit Agricole CIB is the corporate and investment banking arm of Crédit Agricole Group, the 10th largest banking … are a Group committed to diversity and inclusion and place people at the heart of all our transformations. All our job offersare open to persons with disabilities. For more information, please visit www.ca-cib.com Twitter: https://twitter.com/ca_cib LinkedIn: https://www.linkedin.com/company/credit-agricole-cib/By working every day in … are open to people with disabilities. Reference 2025-100846 Update date 02/06/2025 Job description Business type Types of Jobs - IT, Digital et Data Job title InformationSecuritySpecialist Contract type Permanent Contract Management position No Job summary We are seeking a proactive InformationSecuritySpecialist skilled in security operations More ❯
Information Systems SecuritySpecialist vacancy in Berkshire (060DM) Are you a former military professional with a background in informationsecurity, risk management, and assurance? Your experience in secure environments, risk analysis, and stakeholder engagement makes you the perfect fit for this Information Systems SecuritySpecialist role. This is an opportunity to continue … making an impact by protecting critical systems and ensuring robust security measures in a complex environment. 12-month contract, with a chance of extension. Key Responsibilities Conduct risk analysis for information systems, providing strategic recommendations to decision-makers. Advise senior leadership and project teams on informationsecurity best practices. Develop and implement security architectures to … safeguard critical data and infrastructure. Assess and manage information risks across projects, supply chains, and stakeholders. Stay ahead of evolving security threats, leveraging industry standards and best practices. Oversee vulnerability assessments and ensure security compliance across IT systems. Provide technical risk assessments and contribute to the professional development of informationsecurity standards. What We're More ❯
Job information: Functional Title - IT SecuritySpecialist Department – Security Governance and Risk Management Corporate level – Associate Vice President Report to – Director of Security Location - London, onsite 2 days per week About the role: The individual will be part of the security function that is responsible for security governance, risk and assurance, to ensure … the organisations security posture is robust, compliant against the security policy, standards and controls. The position will require close collaboration with technical, operational, compliance and audit teams to create a secure and compliant technology environment. What you will be doing: Maintain security policy, standards, procedures and frameworks. Ensure alignment with security industry standards such as NIST … CSF and NIST 800-53. Act as an advisor to colleagues across the organisation on best security practice. Conduct regular risk assessments and maintain risk register in RSA Archer. Identify assess and prioritize security risk across the organisation’s information assets and environments. Understanding security gaps and provide evaluation and treatment options, consultation on remediation More ❯
Job information: Functional Title - IT SecuritySpecialist Department – Security Governance and Risk Management Corporate level – Associate Vice President Report to – Director of Security Location - London, onsite 2 days per week About the role: The individual will be part of the security function that is responsible for security governance, risk and assurance, to ensure … the organisations security posture is robust, compliant against the security policy, standards and controls. The position will require close collaboration with technical, operational, compliance and audit teams to create a secure and compliant technology environment. What you will be doing: Maintain security policy, standards, procedures and frameworks. Ensure alignment with security industry standards such as NIST … CSF and NIST 800-53. Act as an advisor to colleagues across the organisation on best security practice. Conduct regular risk assessments and maintain risk register in RSA Archer. Identify assess and prioritize security risk across the organisation’s information assets and environments. Understanding security gaps and provide evaluation and treatment options, consultation on remediation More ❯
Crawley, England, United Kingdom Hybrid / WFH Options
JR United Kingdom
InformationSecuritySpecialist, Crawley, West Sussex Client: DGH Recruitment Location: Crawley, West Sussex, United Kingdom Job Category: Other EU work permit required: Yes Job Views: 3 Posted: 26.06.2025 Expiry Date: 10.08.2025 Job Description: The InformationSecuritySpecialist will play a pivotal role in shaping the client's cyber resilience strategy. The role involves providing … expert guidance on informationsecurity, managing cybersecurity tools and operations, and ensuring compliance with standards such as ISO 27001, GDPR, and Cyber Essentials. This position offers hybrid working: 3 days per week in the office. Responsibilities include: Serving as a subject matter expert on informationsecurity, advising on risks and controls. Supporting business units with security input for projects and bids. Managing cybersecurity tools like SIEM, EDR, and email filtering systems. Monitoring and responding to security alerts and incidents. Conducting vulnerability scans and coordinating penetration tests. Maintaining compliance with ISO27001, GDPR, and Cyber Essentials. Required Skills/Experience: Strong understanding of informationsecurity principles, risk management, and compliance standards. Hands-on experience More ❯
Manchester, England, United Kingdom Hybrid / WFH Options
JR United Kingdom
Social network you want to login/join with: Senior InformationSecuritySpecialist, manchester col-narrow-left Client: bet365 Location: manchester, United Kingdom Job Category: Other - EU work permit required: Yes col-narrow-right Job Views: 4 Posted: 28.04.2025 Expiry Date: 12.06.2025 col-wide Job Description: Who we are looking for A Senior InformationSecuritySpecialist, who will focus on the technical side of IT Security, specifically looking at application security and code analysis to ensure applications are built securely. The application security team deal with the security of closed source, open source and in house written applications. The objective is to ensure applications are developed in a way … and mitigated. It is therefore important that you possess an understanding of the Secure Software Development Lifecycles and the assessment of code. This role is part of the broader InformationSecurity department, which is comprised of engineers and analysts with varying backgrounds. Collectively, the team utilises enterprise and bespoke tooling to identify and mitigate threats to safeguard the More ❯
City Of London, England, United Kingdom Hybrid / WFH Options
Sanderson
InformationSecurity/Information Privacy SME (Contract) Location: Central London (Hybrid – 2 days onsite per week) Contract: Inside IR35 or Umbrella Engagement Duration: 6–12 months (with potential extension) Industry: Private Banking/Wealth Management Role Overview: We are seeking a highly experienced InformationSecurity/Information Privacy Subject Matter Expert (SME) to support … a leading private bank in London. This role is focused on providing strategic and operational guidance on cybersecurity, data protection, and regulatory compliance to ensure the bank’s information assets and customer data remain secure and compliant with applicable standards (e.g., ISO 27001, GDPR, FCA requirements). Key Responsibilities: Serve as the SME for all matters related to informationsecurity and privacy. Advise on the development and maintenance of security policies, procedures, and frameworks. Review and strengthen current informationsecurity architecture and controls. Conduct risk assessments, gap analyses, and privacy impact assessments (DPIAs). Provide expert input on GDPR, UK Data Protection Act, and other relevant regulations. Partner with internal stakeholders across legal, compliance More ❯
Job Title : InformationSecurity Assurance Specialist Contract Type: Permanent, Full Time Salary Range: £33,200-£41,500 depending on experience Location: Eastleigh InformationSecurity Assurance Specialist: At Ageas, we are committed to protecting our customers, employees, and systems through robust informationsecurity practices. We are seeking a InformationSecurity Assurance … and Architecture Specialist to join our growing team. This role is critical in ensuring our security architecture aligns with business goals and regulatory requirements, while also providing assurance over the effectiveness of our security controls. Reporting into the Assurance and Architecture Manager, you will be responsible for supporting and operating the day-to-day activities relating to … security, initiatives, controls and governance processes. This role is a combination of internal consultancy, change management and assurance activities to provide confidence to the business that we are meeting our security goals. You will act as the bridge between our technical teams and operational functions and are therefore required to have excellent communication skills, including the ability to More ❯
Eastleigh, Hampshire, United Kingdom Hybrid / WFH Options
Ageas
Job Title : InformationSecurity Assurance Specialist Contract Type: Permanent, Full Time Salary Range: £33,200-£41,500 depending on experience Location: Eastleigh InformationSecurity Assurance Specialist: At Ageas, we are committed to protecting our customers, employees, and systems through robust informationsecurity practices. We are seeking a InformationSecurity Assurance … and Architecture Specialist to join our growing team. This role is critical in ensuring our security architecture aligns with business goals and regulatory requirements, while also providing assurance over the effectiveness of our security controls. Reporting into the Assurance and Architecture Manager, you will be responsible for supporting and operating the day-to-day activities relating to … security, initiatives, controls and governance processes. This role is a combination of internal consultancy, change management and assurance activities to provide confidence to the business that we are meeting our security goals. You will act as the bridge between our technical teams and operational functions and are therefore required to have excellent communication skills, including the ability to More ❯
Southampton, England, United Kingdom Hybrid / WFH Options
AXA UK
Job Title : InformationSecurity Assurance Specialist Contract Type: Permanent, Full Time Salary Range: £33,200-£41,500 depending on experience Location: Eastleigh InformationSecurity Assurance Specialist: At Ageas, we are committed to protecting our customers, employees, and systems through robust informationsecurity practices. We are seeking a InformationSecurity Assurance … and Architecture Specialist to join our growing team. This role is critical in ensuring our security architecture aligns with business goals and regulatory requirements, while also providing assurance over the effectiveness of our security controls. Reporting into the Assurance and Architecture Manager, you will be responsible for supporting and operating the day-to-day activities relating to … security, initiatives, controls and governance processes. This role is a combination of internal consultancy, change management and assurance activities to provide confidence to the business that we are meeting our security goals. You will act as the bridge between our technical teams and operational functions and are therefore required to have excellent communication skills, including the ability to More ❯
InformationSecurity Risk & Compliance Specialist About CyberArk : CyberArk (NASDAQ: CYBR ), is the global leader in Identity Security . Centered on privileged access management, CyberArk provides the most comprehensive security offering for any identity – human or machine – across business applications, distributed workforces, hybrid cloud workloads and throughout the DevOps lifecycle. The world’s leading organizations trust … the Role: We are seeking a highly motivated and detail-oriented GRC Compliance Expert to join our Governance, Risk, and Compliance team. This role is pivotal in supporting customer security assessments during RFx processes, driving compliance initiatives including DORA , NIS2 , and other regulatory frameworks, and assisting with broader GRC activities across the organization. The ideal candidate is a self … located in our office in London. We ask to come to the office twice per week. Support the sales and legal teams during RFx processes by responding to customer security questionnaires, assessments, and due diligence requests. Coordinate and manage responses to customer security audits and assurance inquiries. Monitor regulatory changes and contribute to compliance initiatives such as DORA More ❯
value everybody for who they are and what they bring to the table, supporting one another as we continue to deliver for our customers. LI-KS1 Create & Maintain an informationsecurity management system (ISMS) capable of demonstrating compliance against internal security requirements and external commitments including certification and regulatory requirements. Provide subject matter expertise in the application … to any new or existing programme of work. Prepare and support internal and/or external compliance audit activities. Manage remediation of any audit (internal & External) non-conformities. Ensure security policies (on a risk-based approach) are produced, signed off by relevant stakeholders, published, and communicated. Also, ensure that policies are managed throughout their lifecycle and updated through yearly … or ad-hoc reviews. Produce relevant security standards documentation in consultation with Technical teams. Lead on providing information to Three UK Customers (B2B) regarding Three UK's security practices. Support proactive and effective oversight of technology and security risk management frameworks, methodologies, processes, assurance, remediation, and reporting activities across the company. Assist in designing, building, and More ❯
London, England, United Kingdom Hybrid / WFH Options
Sportradar AG
connects us. It brings people together from around the world to share in unforgettable moments. At Sportradar, we harness this power to shape the future of sports technology. Our InformationSecurity GRC team plays a critical role in protecting the trust and integrity that underpins our services. We are seeking a skilled and dedicated InformationSecurity GRC Specialist to help drive the maturity of our InformationSecurity Management System (ISMS), lead initiatives across risk and compliance domains, and strengthen third-party risk and business continuity capabilities. Sportradar is a global company. The role is hybrid with three office days per week and can be based in the following locations: Trondheim, London or … Warsaw. THE CHALLENGE: As an InformationSecurity GRC Specialist, you will: Collaborate in a dynamic, fast-paced environment, contributing across all key GRC domains. Maintain and enhance the ISMS aligned with ISO/IEC 27001 and related standards. Develop, implement, and manage informationsecurity policies, standards, and procedures. Support the organization-wide adoption of securityMore ❯
Social network you want to login/join with: InformationSecuritySpecialist (Operational Technology), Glasgow Client: Location: Glasgow, United Kingdom Job Category: Other EU work permit required: Yes Job Reference: efb77e24ed83 Job Views: 4 Posted: 29.06.2025 Expiry Date: 13.08.2025 Job Description: Job Introduction At William Grant & Sons, Operational Technology underpins our manufacturing and supply chain excellence. As … an InformationSecuritySpecialist focusing on OT, you will play a pivotal role in securing our distilleries, manufacturing sites, SCADA/ICS/IIoT environments, and related supply chains. You’ll partner with site leaders, IT and OT teams, and cross-functional stakeholders to embed robust security practices across OT systems, ensuring the resilience and integrity … of our operational footprint while supporting innovation and efficiency. Main Responsibilities As an InformationSecuritySpecialist (OT), you will lead security assessments across manufacturing sites and distilleries, focusing on SCADA, ICS, and IIoT systems, identifying vulnerabilities and driving remediation. You’ll build a robust InformationSecurity Management System (ISMS) aligned with IEC standards, collaborating More ❯
Edinburgh, Midlothian, Scotland, United Kingdom Hybrid / WFH Options
Reed
Reed Technology is working with a leading institution located in Edinburgh , seeking a InformationSecuritySpecialist to join their team on a permanent basis . This position plays a vital role in safeguarding information systems and data. You will be tasked with establishing and upholding security protocols to defend the organisation’s assets against cyber … threats, while ensuring adherence to relevant industry regulations and standards. Key responsibilities: Help implement and test security controls aligned with ISO27001, including policy development and compliance checks. Conduct business impact analyses to identify gaps in critical systems and processes. Support the team with disaster recovery and business continuity planning, ensuring backup facilities are ready. Assist with threat assessments and … help teams understand risks and mitigation strategies. Plan and carry out security audits, tracking follow-up actions. Report on risk and compliance issues within set timelines. Help coordinate third-party penetration/vulnerability testing and follow up on findings. Perform internal security testing of web apps and infrastructure. Support staff with security awareness training and track completion. More ❯
InformationSecuritySpecialist Overview Ref: 109781 InformationSecuritySpecialist/ISO 27001/GDPR Exciting opportunity to join a global business that is still growing, the environment is fast paced and interesting and they really look after their people. Role Responsibilities Responsibilities will include: Providing technical expertise relating to the implementation and operation of … technical security controls Providing technical support and ensuring understanding and investigation of informationsecurity vulnerabilities and threats Providing advice to support teams on how to remediate and reduce identified vulnerabilities Liaising with 3rd party support and product organisations Providing technical leadership on security incident response and investigation Essential skills will include: Proven experience in implementing and … managing security frameworks such as ISO 27001, NIST CSF/NIST SP 800-53, and GDPR Strong technical skills in designing, implementing, and maintaining security controls Excellent problem-solving skills with the ability to interpret complex security topics and translate them into practical, actionable insights A proactive mindset, focused on continuous improvement, team development, and aligning securityMore ❯
InformationSecuritySpecialist Overview Ref: (phone number removed) InformationSecuritySpecialist/ISO 27001/GDPR Exciting opportunity to join a global business that is still growing, the environment is fast paced and interesting and they really look after their people. Role Responsibilities Responsibilities will include: Providing technical expertise relating to the implementation and … operation of technical security controls Providing technical support and ensuring understanding and investigation of informationsecurity vulnerabilities and threats Providing advice to support teams on how to remediate and reduce identified vulnerabilities Liaising with 3rd party support and product organisations Providing technical leadership on security incident response and investigation Essential skills will include: Proven experience in … implementing and managing security frameworks such as ISO 27001, NIST CSF/NIST SP 800-53, and GDPR Strong technical skills in designing, implementing, and maintaining security controls Excellent problem-solving skills with the ability to interpret complex security topics and translate them into practical, actionable insights A proactive mindset, focused on continuous improvement, team development, and More ❯
Dungannon, Northern Ireland, United Kingdom Hybrid / WFH Options
Bela Recruitment
Information Technology SecuritySpecialistInformation Technology SecuritySpecialist Get AI-powered advice on this job and more exclusive features. This range is provided by Bela Recruitment. Your actual pay will be based on your skills and experience — talk with your recruiter to learn more. Base pay range Direct message the job poster from Bela … Recruitment Bela Recruitment - 07548 369 557, Head-hunter in Northern Ireland. Bela Recruitment is recruiting an IT Security/ISO 27001 Specialist based in Dungannon, Co.Tyrone, Northern Ireland. The Company I’ve worked with this company for over 10 years sourcing staff across all departments. They are a great company to work for and have been investing heavily … in their own ISO & IT Systems for several years, hence the need for this ISO Compliance Specialist, to ensure ISO systems and data is central to their success. Responsibilities Support the business across ISO 27001 - developing, managing and maintaining policies and paperwork. Be detail-oriented, with strong knowledge of ISO 27001 standards and a proven track record in helpling More ❯
Dungannon, Northern Ireland, United Kingdom Hybrid / WFH Options
Bela Recruitment
Bela Recruitment is recruiting an IT Security/ISO 27001 Specialist based in Dungannon, Co.Tyrone, Northern Ireland. The Company I’ve worked with this company for over 10 years sourcing staff across all departments. They are a great company to work for and have been investing heavily in their own ISO & IT Systems for several years, hence the … need for this ISO Compliance Specialist, to ensure ISO systems and data is central to their success. Responsibilities Support the business across ISO 27001 - developing, managing and maintaining policies and paperwork. Be detail-oriented, with strong knowledge of ISO 27001 standards and a proven track record in helpling secure audits. Any ethical standards experience will also be a big … identify areas for improvements. Full job spec on receipt of cv. Requirements 2+ years ISO 27001 experience, management, auditing and certification across a range of standards. Knowledge of IT security and technical knowledge. Ideally degree educated in an IT or Technology subject, and/or ISO/Auditing qualifications. Strong analytical and problem-solving skills. Excellent communication and interpersonal More ❯
Are you passionate about cloud security and eager to make a difference in a fast-growing environment? An established law company with over 280 years of experience with setting new standards and shaping the future of law, is seeking for a skilled Cloud Security Engineer to join the team! As one of the top-tier leader in the … industry, they excel in areas that are of utmost importance to clients and businesses globally. The company is searching for a skilled Cloud Security Engineer to join the team, focused on evaluating and optimizing security configurations across Azure IaaS and GCP platforms. If you would like to learn more about this opportunity, feel free to reach out and … apply today! Responsibilities: Assess and enhance security configurations across Azure IaaS and GCP environments Provide expert recommendations aligned with industry standards and emerging security threats Administer Azure security environments, focusing on IaaS, container security (e.g., AKS), and DevOps pipelines Evaluate Terraform scripts, advising on automation processes for secure infrastructure deployment Optimize Azure Defender and other monitoring More ❯