InformationSecurity Compliance Analyst Permanent Salary: Negotiable Hybrid - Hertfordshire As an InformationSecurity Compliance Analyst, you will support the development and maintenance of the EMEA wide informationsecurity management system in accordance with Global EIT strategy, EMEA business requirements and relevant informationsecurity legislation, including NIS 2, AI Act and GDPR. You … adherence by the EMEA EIT department to all relevant legislation and regulations, including but not limited to Health and Safety, Financial and Privacy laws. Main duties/responsibilities: Conduct informationsecurity, information system, and compliance-based risk assessments, evaluate responses and recommend risk treatment actions Develop and execute risk mitigation plans in conjunction with relevant internal and … external stakeholders/groups and to agreed timescales, following through to completion Support the creation, implementation and maintenance of informationsecurity policies and standards, in accordance with ISO 27001 other relevant frameworks and standards (NIST CSF, IEC 62443, CIS, GDPR etc.) Maintain the department’s informationsecurity procedures, including but not limited to informationsecurityMore ❯
bristol, south west england, united kingdom Hybrid/Remote Options
SBS
InformationSecurity Officer - Nibley Court, 3 Turner Drive, Bristol, South GloucestershireCompany Description At SBS, we’re more than just a technology company – we’re a global fintech partner helping banks and financial institutions transform, innovate, and grow. With over 5,000 employees worldwide and clients in more than 80 countries, our solutions power everything from digital banking and … per week. ? Salary: £55,000-£60,000 (DOE) per annum plus pension, & excellent benefits package ? Job type: Permanent, full-time We are on the lookout for an experienced Cloud InformationSecurity Officer to help drive forward our commitment to providing a world-class informationsecurity management system for our products and services that protects both SBS … and our customers' interests. This role will report to the Security, Risk and Compliance Lead. What will the role involve? Proactively monitoring, identifying, responding to, and resolving security incidents. Aligning informationsecurity strategy with business goals and objectives. Ensuring compliance with relevant local and international laws and internal policies. Fostering a culture of informationsecurityMore ❯
Overview Join Chambers and Partners as our next Cyber Security Analyst/Lead, a pivotal role at the heart of our commitment to safeguarding information and maintaining trust. You’ll lead the development and delivery of our informationsecurity programme, protecting our systems, data, and digital assets from evolving threats. This is an exciting opportunity to … drive key security initiatives, oversee cutting-edge technologies, and ensure compliance with leading industry frameworks within a globally respected organisation. Main Duties and Responsibilities 1. Security Strategy & Governance: Develop, implement, and maintain the organization's informationsecurity strategy, policies, standards, and procedures in alignment with business objectives and regulatory requirements. Lead the development and implementation of … an InformationSecurity Management System (ISMS), based on ISO 27001 Conduct regular security risk assessments, identify vulnerabilities, and recommend appropriate mitigation strategies. Stay up-to-date with the latest cybersecurity threats, trends, technologies, and best practices. Provide expert advice and guidance on informationsecurity matters to various stakeholders across the organization. 2. Security Operations More ❯
Your new role - Permanent - ON SITE 5 Days per week. You will be required to obtain security clearance and undergo vigorous onboarding checks - UK Only. Sponsorship NOT available.The main purpose of this job mainly focusses on informationsecurity, cybersecurity, and data security, including a wide scope, such as physical security of computer rooms, operating system … level security of Windows and Linux, network security of firewall and other security devices, application security both development and testing phrases, terminal security, backup security, third party and supply chain security of IT service provider.Liaison with the Head Office, Security Operation Centre or Data Centre for implementing security policies, projects and … security controls. Work with Internal Audit and other departments to execute penetration tests, cybersecurity risk self-assessment, ensure best practice and international baseline standards are in place and in line with local regulations.The ideal candidate will be responsible for managing informationsecurity systems, ensuring compliance with regulatory requirements, and conducting thorough security audits.You will be part More ❯
Your new role - Permanent - ON SITE 5 Days per week. You will be required to obtain security clearance and undergo vigorous onboarding checks - UK Only. Sponsorship NOT available. The main purpose of this job mainly focusses on informationsecurity, cybersecurity, and data security, including a wide scope, such as physical security of computer rooms, operating … system level security of Windows and Linux, network security of firewall and other security devices, application security both development and testing phrases, terminal security, backup security, third party and supply chain security of IT service provider. Liaison with the Head Office, Security Operation Centre or Data Centre for implementing security policies … projects and security controls. Work with Internal Audit and other departments to execute penetration tests, cybersecurity risk self-assessment, ensure best practice and international baseline standards are in place and in line with local regulations. The ideal candidate will be responsible for managing informationsecurity systems, ensuring compliance with regulatory requirements, and conducting thorough security audits. More ❯
InformationSecurity Engineer – Nationwide Software Company – Worthing, West Sussex (Office based) – 50K to 55K plus excellent benefits Stratospherec is recruiting for an InformationSecurity Engineer to be based in the West Sussex office of our client who is a leading software company. In this role you will use your InformationSecurity Engineer/Analyst … expertise both supporting and enhancing this nationwide company’s cybersecurity posture through the securing of enterprise applications, data and infrastructure and by identifying, assessing, and mitigating security risks. This is a hands-on, predominantly office-based role requiring experience in application and data security, vulnerability assessments, security administration, threat monitoring and response. You will work alongside a … multidisciplinary team of infrastructure, support staff and developers, cross-functionally supporting colleagues from across the business and the wider IT team to ensure security requirements are met and outstanding service delivered. KEY ACTIVITIES • Key activities in relation to application security will include performing security reviews of application architecture, source code, and third-party integrations. • Collaborating with development More ❯
InformationSecurity Compliance Analyst 12 Month FTC Hatfield - Hybrid As an InformationSecurity Compliance Analyst, you will Support the development and maintenance of the EMEA informationsecurity management system, ensuring compliance with Global EIT strategy, EMEA business needs, and relevant legislation (e.g NIS 2, AI Act, GDPR). Maintain ISO 27001:2022 certification and … equivalent - essential. CISM and/or CISSP or other relevant certification is highly desirable ISO 27001:2022 Lead Implementer/Auditor certification is highly desirable Demonstratable experience in an InformationSecurity, IT Governance, Risk and Compliance based role, including maintaining and continually improving an ISO 27001 compliant management system. Experience of informationsecurity management and/… or security awareness. Good knowledge of industry standard frameworks and best practices – ISO 27001: 2022, NIS2, AI Act etc. and their practical application in a corporate environment to ensure all elements of integrity, availability and confidentiality are adhered to. Extensive experience conducting informationsecurity risk assessments, reporting risks Experience of developing, implementing, managing, and maintaining InformationMore ❯
Head of InformationSecurity Department: Operations Employment Type: Permanent - Full Time Location: Head Office, Chelsea House Reporting To: Simon Pakenham-Walsh Description As River Island's Head of InformationSecurity, you'll play a strategic and hands on leadership role in shaping and strengthening our security posture across the business. Reporting to the CIO and … working as part of the Technology Leadership Team, you'll define, embed, and continuously improve River Island's informationsecurity framework - ensuring we remain compliant, resilient, and trusted by our customers, partners, and people. This is a highly visible role, blending strategy and delivery. You'll oversee security operations, vulnerability management, compliance, and risk governance, while partnering … with Technology, Data, Legal, and wider business teams to ensure security is embedded into everything we do - from store systems to eCommerce and cloud platforms. Define, implement, and evolve River Island's informationsecurity strategy in line with business objectives, regulatory obligations, and risk appetite. Lead the development and maintenance of InformationSecurity policies, standards More ❯
Bristol, Avon, South West, United Kingdom Hybrid/Remote Options
NCC
InformationSecurity Manager NCC Location: Bristol based with Hybrid working 2 days on site, 3 days home Salary: £54,102 to £67,056 per annum (experience dependent) Government Security Clearance: You will be required to undertake government security clearance if successful securing this role. Please only apply if willing to undertake clearance process. Closing Date … advert early if required. Summary; NCC is the UKs innovation partner! Were supporting a range of interesting new projects in the defence sector and are hiring for an additional InformationSecurity Manager to join our expanding secure operations team. Your role as InformationSecurity Manager is to ensure the effective protection of secure information and … Youll report into the Head of Secure Operations and work with a wide range of internal stakeholders including secure operations teams, the board members & senior leadership, HR business partners, security & networking managers. External relationship management will also be large part of your role including our defence sector clients and government bodies. What youll be doing; Reviewing new SecurityMore ❯
holding 35% of the market. Our Mission is to be famous for excellence in delivery, embracing transformation with our people and our customers at its heart. As Cornerstone’s InformationSecurity Manager, you will lead the development, implementation, and continuous improvement of our InformationSecurity Management System (ISMS), ensuring alignment with ISO 27001:2022. You will … be responsible for safeguarding our digital infrastructure, managing cyber risk, and embedding a security-first culture across the organisation. This is a strategic and hands-on role, requiring collaboration across IT, legal, procurement, and operational teams. You will act as the primary point of contact for all matters related to information assurance, supplier security assurance, incident response … and regulatory compliance. Scope IT Security Operations Collaborate closely with IT SecOps team members to ensure security controls remain effective. Where gaps are identified, implement appropriate mitigation measures and lead the response to security incidents in a timely and coordinated manner. Compliance & Security Coordinate ISO 27001 certification audits and maintain ongoing compliance on behalf of the More ❯
Theale, England, United Kingdom Hybrid/Remote Options
Cornerstone
holding 35% of the market. Our Mission is to be famous for excellence in delivery, embracing transformation with our people and our customers at its heart. As Cornerstone’s InformationSecurity Manager, you will lead the development, implementation, and continuous improvement of our InformationSecurity Management System (ISMS), ensuring alignment with ISO 27001:2022. You will … be responsible for safeguarding our digital infrastructure, managing cyber risk, and embedding a security-first culture across the organisation. This is a strategic and hands-on role, requiring collaboration across IT, legal, procurement, and operational teams. You will act as the primary point of contact for all matters related to information assurance, supplier security assurance, incident response … and regulatory compliance. Scope IT Security Operations Collaborate closely with IT SecOps team members to ensure security controls remain effective. Where gaps are identified, implement appropriate mitigation measures and lead the response to security incidents in a timely and coordinated manner. Compliance & Security Coordinate ISO 27001 certification audits and maintain ongoing compliance on behalf of the More ❯
re not just revolutionising aviation-we're securing the future of clean flight. As we pioneer hydrogen-electric propulsion systems that will transform commercial aviation, we need a visionary InformationSecurity Manager to protect our groundbreaking technology, intellectual property, and operational infrastructure. This is your opportunity to shape cybersecurity strategy at the forefront of sustainable aviation while safeguarding … systems that will decarbonise the skies. Join us in building robust security frameworks that will enable ZeroAvia to achieve certification, scale operations, and maintain the trust of aviation authorities, partners, and passengers as we deliver zero-emission flight solutions. We are seeking an experienced InformationSecurity Manager to lead our comprehensive informationsecurity programme across … our UK operations. In this critical role, you will develop and implement security strategies that protect ZeroAvia's hydrogen-electric propulsion technologies, certification data, and operational systems while ensuring compliance with aviation cybersecurity regulations including EASA EAR Part-IS, CAA requirements, and emerging aviation security standards. This position requires deep expertise in cybersecurity frameworks, aviation security requirements More ❯
InformationSecurity Technical Assurance Lead - £700 per day - Inside IR35 - Hybrid working from a site in Paddington - 6 months initial contract. Our client, a global supplier to the nuclear energy industry, is seeking a highly skilled InformationSecurity Cyber Assurance Specialist to join their team. This critical role is responsible for ensuring the security and … resilience of their information systems, aligning with industry standards and regulatory requirements. You will provide assurance that their IT and OT environments are secure and compliant, supporting the delivery of business objectives while managing risk. Key Responsibilities - Develop, implement, and maintain informationsecurity assurance programs. Ensure compliance with regulatory requirements and standards (e.g., ISO 27000, NIST SP800 … series, CSF). Conduct risk assessments and vulnerability management activities. Maintain robust security controls across enterprise assets, software, networks, and applications. Support incident response and recovery processes, including penetration testing and audit log management. Deliver training and awareness programs to enhance the organizations security posture. Collaborate with internal and external stakeholders to maintain compliance and manage third-party More ❯
Paddington, Sheldon Square, Greater London, United Kingdom Hybrid/Remote Options
Morson Edge
InformationSecurity Technical Assurance Lead - £700 per day - Inside IR35 - Hybrid working from a site in Paddington - 6 months initial contract. Our client, a global supplier to the nuclear energy industry, is seeking a highly skilled InformationSecurity Cyber Assurance Specialist to join their team. This critical role is responsible for ensuring the security and … resilience of their information systems, aligning with industry standards and regulatory requirements. You will provide assurance that their IT and OT environments are secure and compliant, supporting the delivery of business objectives while managing risk. Key Responsibilities - Develop, implement, and maintain informationsecurity assurance programs. Ensure compliance with regulatory requirements and standards (e.g., ISO 27000, NIST SP800 … series, CSF). Conduct risk assessments and vulnerability management activities. Maintain robust security controls across enterprise assets, software, networks, and applications. Support incident response and recovery processes, including penetration testing and audit log management. Deliver training and awareness programs to enhance the organizations security posture. Collaborate with internal and external stakeholders to maintain compliance and manage third-party More ❯
Hereford, Herefordshire, England, United Kingdom Hybrid/Remote Options
TXP Technology x People
Role: IT InformationSecurity Manager Salary: £65,000 - £75,000 Per Annum, Plus Benefits Package Location: Hereford with a hybrid working arrangement Must have: The right to work in the UK Full UK driving licence Be able to gain BPSS (Baseline Personnel Security Standard) clearance Be able to gain SC (Security Check) clearance as standard along … with any specific security clearances that may be required Our leading services client requires an accomplished InformationSecurity Manager to be responsible for protecting the Group's data and information systems from cyber threats and unauthorised access. This includes developing and implementing security policies, assessing risks, providing reports and managing security incidents. You will … also oversee security awareness training, security compliance, security accreditation and collaborate with various stakeholders to foster a security-conscious culture. Key Deliverables: Align the business' security stance to comply with ISO 27001and Cyber Essentials Plus, or in accordance with the Cyber Assessment Framework Improve the Cyber Awareness within the company via communications, Cyber Awareness training More ❯
providers Offer guidance, direction and approval on security solutions and approaches Advocate for secure engineering best practices throughout the company Manage the standards, policies and guidelines of the InfoSec frameworks Maintain an on going informationsecurity awareness program Monitor our SIEM, and maintain useful reports and alerts in the system Main Skills/Competencies Significant industry experience … in a technical security role (Security Engineering or Application Security Engineering) Experience speaking to customers and establishing a good working relationship with infosec counterparts at major financial institutions Strong technical intuition, with an ability to partner with engineering to evaluate and develop good security standards Take a risk based approach when suggesting improvements, or proposing fixes … Ability to perform design reviews and/or technical assessments of software and infrastructure Excellent knowledge of InfoSec, risk management and governance, data protection Programming/scripting experience, especially to automate repetitive tasks Used to multi tasking and working in a fast paced environment Proven ability to identify and articulate informationsecurity requirements, risks and issues, and to More ❯
Manchester, England, United Kingdom Hybrid/Remote Options
Acumin
Job Title: InformationSecurity Architect - Solutions & Enterprise Security Architecture Location: Manchester Hybrid Working: 50% Remote/50% Office Leading Financial Services/FinTech are seeking a highly technical and broad InformationSecurity Architect to join their security architecture team. This is a key position responsible for ensuring that the design, delivery, and operation of … systems and services meet the highest security architecture and compliance standards. InformationSecurity Architect will provide architectural leadership across multiple security domains — combining deep hands-on technical security expertise with strategic enterprise security architecture thinking. You will play a critical role in embedding security throughout the technology landscape, from solution-level security reviews to security solutions and enterprise-wide security architecture standards. This role requires a balance of security solution architecture, technical review and assurance, and enterprise security architecture skills. You will define and validate security controls, assess new technologies, perform security design reviews, and ensure security-by-design principles are consistently applied across More ❯
City of London, London, United Kingdom Hybrid/Remote Options
Acumin
Job Title: InformationSecurity Architect Location: London Hybrid Working: 50% Remote/50% Office Leading Financial Services/FinTech are seeking a highly technical and broad InformationSecurity Architect to join their security architecture team. This is a key position responsible for ensuring that the design, delivery, and operation of systems and services meet the … highest security architecture and compliance standards. InformationSecurity Architect will provide architectural leadership across multiple security domains — combining deep hands-on technical security expertise with strategic enterprise security architecture thinking. You will play a critical role in embedding security throughout the technology landscape, from solution-level security reviews to security solutions … and enterprise-wide security architecture standards. This role requires a balance of security solution architecture, technical review and assurance, and enterprise security architecture skills. You will define and validate security controls, assess new technologies, perform security design reviews, and ensure security-by-design principles are consistently applied across hybrid, on-premise, and cloud environments. More ❯
Job Title: InformationSecurity Architect Location: London Hybrid Working: 50% Remote/50% Office Leading Financial Services/FinTech are seeking a highly technical and broad InformationSecurity Architect to join their security architecture team. This is a key position responsible for ensuring that the design, delivery, and operation of systems and services meet the … highest security architecture and compliance standards. InformationSecurity Architect will provide architectural leadership across multiple security domains — combining deep hands-on technical security expertise with strategic enterprise security architecture thinking. You will play a critical role in embedding security throughout the technology landscape, from solution-level security reviews to security solutions … and enterprise-wide security architecture standards. This role requires a balance of security solution architecture, technical review and assurance, and enterprise security architecture skills. You will define and validate security controls, assess new technologies, perform security design reviews, and ensure security-by-design principles are consistently applied across hybrid, on-premise, and cloud environments. More ❯
New Works, Telford, Shropshire, England, United Kingdom Hybrid/Remote Options
Service Care Solutions
Job Title: Senior InformationSecurity Analyst – Remote/Home-Based Location: Remote/Home-Based (Hybrid as required) Type: Initially 3 months - potential to extend Salary: 34.50 UMB per hour (£26 PAYE)On behalf of our client, We are seeking an experienced Senior InformationSecurity Analyst to provide immediate support to their InformationSecurity team. This hybrid role combines technical security analysis with governance, risk, and compliance (GRC) activities, offering a unique opportunity to influence and maintain the organisation’s security posture. About the Role: The successful candidate will assess risks, review supplier and project security documentation, respond to security questionnaires and tenders, support incident investigations, and help ensure … guidelines. This is a hands-on delivery role requiring someone who can work independently, make sound judgments, and communicate effectively with both technical and non-technical stakeholders. Key Responsibilities: Security Governance & Risk Conduct security risk assessments for systems, projects, and suppliers, documenting findings consistently. Review, respond to, and attest security questionnaires and tender submissions. Support and track More ❯
Northampton, Northamptonshire, England, United Kingdom
VIQU IT Recruitment
InformationSecurity Analyst | Hybrid | Contract | Northampton My client is looking for an InformationSecurity Analyst/GRC Analyst to be a part of their growing security team. The successful candidate will play a pivotal role in ensuring compliance with data protection regulations, supporting the InformationSecurity Management System ISMS, and maintaining robust governance … risk, and compliance GRC processes. Key Responsibilities on the InformationSecurity Analyst: Manage and respond to Subject Access Requests SARs in accordance with GDPR timelines and procedures. Oversee Right to Be Forgotten and data deletion requests, ensuring complete and compliant execution. Support the wider GRC and InformationSecurity team in data protection and risk management activities. … Help maintain the InformationSecurity Management System ISMS Provide expert advice on GDPR compliance and data subject rights. Provide expert guidance on data classification, retention, and information governance best practices. InformationSecurity Analyst Experience/Technology: Proven experience in GRC and Information security. Extensive expertise of GDPR, SAR, and Right to Be Forgotten requirements. More ❯
South West London, London, United Kingdom Hybrid/Remote Options
Parliamentary Digital Service
The Opportunity The Parliamentary Digital Service are looking for Cyber Security Advisor to work across key Directorates to ensure that Parliament remains secure in the services that we create, manage and provide to our wide range of customers. As a Cyber and InformationSecurity Advisor you will be there to advise and support bespoke software development in … their work, shifting security expertise into the early stages of delivery and supporting throughout the delivery lifecycle as needed. This will cover areas such as: code review, architectural and design advice for engineering and delivery platforms, and ensuring that security is a fundamental part of the development process, rather than an afterthought. You will help teams shift left … on security, organise training and demonstrations on best practice, coach and mentor teams and individuals, as well as help set standards and build documentation for teams to guide them. You will work closely with both the Cyber and InformationSecurity directorate, and bespoke software teams, helping to organise penetration testing and other security critical tests of More ❯
Greater London, England, United Kingdom Hybrid/Remote Options
Oliver Bernard
InformationSecurity Analyst - FinTech - £70K Our client is a growing London SaaS company, working with clients across tech, trading, pharma and ecommerce around the world. Offering hybrid working, they’re looking for an experienced InformationSecurity/Cyber Security Analyst/Engineer to join them. You’ll work directly with the CTO, CRO and IT … teams to create and deliver security strategies, an informationsecurity framework and risk mitigation plans for the company. You’ll be involved in everything from security assessments, threat modelling and penetration testing to triage of security events, ownership of policies and procedures and even working with development and engineering teams to drive application security … where they can be a subject matter expert. Requirements: Proven experience as an Information/Cyber Security Analyst (or equivalent) Broad cyber and informationsecurity (InfoSec) experience Knowledge of concepts such as ethical hacking, network security, penetration testing and cryptography etc Good understanding of Windows, Cloud (AWS) and IT infrastructure Excellent communication skills More ❯
organisations adapt, grow, and thrive in an ever-evolving world by building, shaping, and optimising diverse talent strategies. On behalf of Tesco IMS, AMS are now looking for a InformationSecurity Analyst for a 6 month contract. We offer a hybrid working model, giving you the choice to collaborate in person from either the London or Edinburgh office. … they're helping their customers or looking after their people, you'll find there's a warmth and friendliness to everything they do. Key responsibilities: You will support the InformationSecurity Manager in executing Tesco IMS's Supplier Security Assurance activities. Perform informationsecurity reviews on suppliers to help safeguard Tesco's systems and data. … Conduct informationsecurity risk assessments on suppliers and classify them as high, medium or low risk. Review our informationsecurity questionnaires completed by suppliers to determine whether supplier has appropriate controls in place. Where required, raise findings to be discussed with the supplier. Agree remediation plans and target dates for completion. Skills and Qualifications: Good experience More ❯
City of London, London, United Kingdom Hybrid/Remote Options
DGH Recruitment
InformationSecurity Consultant/Officer Hybrid working: 3 days per week required in the office in London. DGH Recruitment are currently recruiting on behalf of a leading global law firm who are looking for an InformationSecurity Consultant/Officer to join the team on a permanent basis. My client are looking for an individual that … has been an informationsecurity SME on technical refresh programmes (ie cloud transformation, AI). The role will suit someone who is comfortable working in a business facing capacity with key business stakeholders, advising on regulations and specific informationsecurity requirements. Responsibilities: - Evaluate security risks of internal projects and associated third-party vendors considering factors … such as security, privacy, and compliance. - Supporting programs of work including vendor risk assessments. To ensure these assessments are completed based on established methodologies ensuring that the ISMS and Governance frameworks are adhered to. - Develop, maintain and follow security assessment frameworks and methodologies for project security assessments and associated third party assurance. - Provide guidance to procurement teams More ❯