InformationSecurity Compliance Analyst Permanent Salary: Negotiable Hybrid - Hertfordshire As an InformationSecurity Compliance Analyst, you will support the development and maintenance of the EMEA wide informationsecurity management system in accordance with Global EIT strategy, EMEA business requirements and relevant informationsecurity legislation, including NIS 2, AI Act and GDPR. You … adherence by the EMEA EIT department to all relevant legislation and regulations, including but not limited to Health and Safety, Financial and Privacy laws. Main duties/responsibilities: Conduct informationsecurity, information system, and compliance-based risk assessments, evaluate responses and recommend risk treatment actions Develop and execute risk mitigation plans in conjunction with relevant internal and … external stakeholders/groups and to agreed timescales, following through to completion Support the creation, implementation and maintenance of informationsecurity policies and standards, in accordance with ISO 27001 other relevant frameworks and standards (NIST CSF, IEC 62443, CIS, GDPR etc.) Maintain the department’s informationsecurity procedures, including but not limited to informationsecurityMore ❯
Job Description: InformationSecurity & Business Continuity Manager Role Purpose To lead and manage the organisation’s InformationSecurity and Business Continuity frameworks, ensuring policies, standards, and processes effectively support business strategy, regulatory requirements, and operational resilience. The role is responsible for maintaining a strong security posture, safeguarding information assets, and ensuring the organisation can … respond effectively to disruptions. Key Responsibilities InformationSecurity Develop, maintain, and enhance the organisation’s InformationSecurity Policy to meet evolving business and technology needs. Monitor adherence to InformationSecurity policies using appropriate tools, techniques, and risk assessments. Produce, maintain, and enforce InformationSecurity standards, guidelines, and operational processes. Ensure that access … to information systems is appropriately restricted to authorised users. Monitor communications and information systems (e.g., email, internet, desktops) to detect misuse, fraud, or potential external threats. Lead or coordinate the Security Incident Response Team during major incidents and report security-related issues to internal management and external authorities where legally required. Evaluate emerging technologies, tools, and More ❯
Overview Join Chambers and Partners as our next Cyber Security Analyst/Lead, a pivotal role at the heart of our commitment to safeguarding information and maintaining trust. You’ll lead the development and delivery of our informationsecurity programme, protecting our systems, data, and digital assets from evolving threats. This is an exciting opportunity to … drive key security initiatives, oversee cutting-edge technologies, and ensure compliance with leading industry frameworks within a globally respected organisation. Main Duties and Responsibilities 1. Security Strategy & Governance: Develop, implement, and maintain the organization's informationsecurity strategy, policies, standards, and procedures in alignment with business objectives and regulatory requirements. Lead the development and implementation of … an InformationSecurity Management System (ISMS), based on ISO 27001 Conduct regular security risk assessments, identify vulnerabilities, and recommend appropriate mitigation strategies. Stay up-to-date with the latest cybersecurity threats, trends, technologies, and best practices. Provide expert advice and guidance on informationsecurity matters to various stakeholders across the organization. 2. Security Operations More ❯
Your new role - Permanent - ON SITE 5 Days per week. You will be required to obtain security clearance and undergo vigorous onboarding checks - UK Only. Sponsorship NOT available.The main purpose of this job mainly focusses on informationsecurity, cybersecurity, and data security, including a wide scope, such as physical security of computer rooms, operating system … level security of Windows and Linux, network security of firewall and other security devices, application security both development and testing phrases, terminal security, backup security, third party and supply chain security of IT service provider.Liaison with the Head Office, Security Operation Centre or Data Centre for implementing security policies, projects and … security controls. Work with Internal Audit and other departments to execute penetration tests, cybersecurity risk self-assessment, ensure best practice and international baseline standards are in place and in line with local regulations.The ideal candidate will be responsible for managing informationsecurity systems, ensuring compliance with regulatory requirements, and conducting thorough security audits.You will be part More ❯
Your new role - Permanent - ON SITE 5 Days per week. You will be required to obtain security clearance and undergo vigorous onboarding checks - UK Only. Sponsorship NOT available. The main purpose of this job mainly focusses on informationsecurity, cybersecurity, and data security, including a wide scope, such as physical security of computer rooms, operating … system level security of Windows and Linux, network security of firewall and other security devices, application security both development and testing phrases, terminal security, backup security, third party and supply chain security of IT service provider. Liaison with the Head Office, Security Operation Centre or Data Centre for implementing security policies … projects and security controls. Work with Internal Audit and other departments to execute penetration tests, cybersecurity risk self-assessment, ensure best practice and international baseline standards are in place and in line with local regulations. The ideal candidate will be responsible for managing informationsecurity systems, ensuring compliance with regulatory requirements, and conducting thorough security audits. More ❯
InformationSecurity Engineer – Nationwide Software Company – Worthing, West Sussex (Office based) – 50K to 55K plus excellent benefits Stratospherec is recruiting for an InformationSecurity Engineer to be based in the West Sussex office of our client who is a leading software company. In this role you will use your InformationSecurity Engineer/Analyst … expertise both supporting and enhancing this nationwide company’s cybersecurity posture through the securing of enterprise applications, data and infrastructure and by identifying, assessing, and mitigating security risks. This is a hands-on, predominantly office-based role requiring experience in application and data security, vulnerability assessments, security administration, threat monitoring and response. You will work alongside a … multidisciplinary team of infrastructure, support staff and developers, cross-functionally supporting colleagues from across the business and the wider IT team to ensure security requirements are met and outstanding service delivered. KEY ACTIVITIES • Key activities in relation to application security will include performing security reviews of application architecture, source code, and third-party integrations. • Collaborating with development More ❯
InformationSecurity Compliance Analyst 12 Month FTC Hatfield - Hybrid As an InformationSecurity Compliance Analyst, you will Support the development and maintenance of the EMEA informationsecurity management system, ensuring compliance with Global EIT strategy, EMEA business needs, and relevant legislation (e.g NIS 2, AI Act, GDPR). Maintain ISO 27001:2022 certification and … equivalent - essential. CISM and/or CISSP or other relevant certification is highly desirable ISO 27001:2022 Lead Implementer/Auditor certification is highly desirable Demonstratable experience in an InformationSecurity, IT Governance, Risk and Compliance based role, including maintaining and continually improving an ISO 27001 compliant management system. Experience of informationsecurity management and/… or security awareness. Good knowledge of industry standard frameworks and best practices – ISO 27001: 2022, NIS2, AI Act etc. and their practical application in a corporate environment to ensure all elements of integrity, availability and confidentiality are adhered to. Extensive experience conducting informationsecurity risk assessments, reporting risks Experience of developing, implementing, managing, and maintaining InformationMore ❯
Bristol, Avon, South West, United Kingdom Hybrid/Remote Options
NCC
InformationSecurity Manager NCC Location: Bristol based with Hybrid working 2 days on site, 3 days home Salary: £54,102 to £67,056 per annum (experience dependent) Government Security Clearance: You will be required to undertake government security clearance if successful securing this role. Please only apply if willing to undertake clearance process. Closing Date … advert early if required. Summary; NCC is the UKs innovation partner! Were supporting a range of interesting new projects in the defence sector and are hiring for an additional InformationSecurity Manager to join our expanding secure operations team. Your role as InformationSecurity Manager is to ensure the effective protection of secure information and … Youll report into the Head of Secure Operations and work with a wide range of internal stakeholders including secure operations teams, the board members & senior leadership, HR business partners, security & networking managers. External relationship management will also be large part of your role including our defence sector clients and government bodies. What youll be doing; Reviewing new SecurityMore ❯
Superb opportunity to join an established end user company in a greenfield role. This is a superb opportunity for the candidate to really take their informationsecurity career to the next level. The role is based in North London (Wembley area). Three days a week in the office is required Key Responsibilities: Helping the company achieve the … ISO27001 certification over the coming months Aligning the informationsecurity strategy across all the companies I the group Support in security and compliance matters requirement Provide security subject matter expertise on projects undertaken by the business and act as advisor on all business security policy, security strategy and information risk management issues Support … in the execution of the general data privacy assessment processes (including third-party assessments), internal control reviews and risk assessments to monitor compliance with informationsecurity policies and standards Working effectively with IT teams Assist in developing and maintaining Security Incident Response Procedures and Data Breach Guidelines. Reviewing and reporting on security incidents, potential incidents or More ❯
holding 35% of the market. Our Mission is to be famous for excellence in delivery, embracing transformation with our people and our customers at its heart. As Cornerstone’s InformationSecurity Manager, you will lead the development, implementation, and continuous improvement of our InformationSecurity Management System (ISMS), ensuring alignment with ISO 27001:2022. You will … be responsible for safeguarding our digital infrastructure, managing cyber risk, and embedding a security-first culture across the organisation. This is a strategic and hands-on role, requiring collaboration across IT, legal, procurement, and operational teams. You will act as the primary point of contact for all matters related to information assurance, supplier security assurance, incident response … and regulatory compliance. Scope IT Security Operations Collaborate closely with IT SecOps team members to ensure security controls remain effective. Where gaps are identified, implement appropriate mitigation measures and lead the response to security incidents in a timely and coordinated manner. Compliance & Security Coordinate ISO 27001 certification audits and maintain ongoing compliance on behalf of the More ❯
Theale, England, United Kingdom Hybrid/Remote Options
Cornerstone
holding 35% of the market. Our Mission is to be famous for excellence in delivery, embracing transformation with our people and our customers at its heart. As Cornerstone’s InformationSecurity Manager, you will lead the development, implementation, and continuous improvement of our InformationSecurity Management System (ISMS), ensuring alignment with ISO 27001:2022. You will … be responsible for safeguarding our digital infrastructure, managing cyber risk, and embedding a security-first culture across the organisation. This is a strategic and hands-on role, requiring collaboration across IT, legal, procurement, and operational teams. You will act as the primary point of contact for all matters related to information assurance, supplier security assurance, incident response … and regulatory compliance. Scope IT Security Operations Collaborate closely with IT SecOps team members to ensure security controls remain effective. Where gaps are identified, implement appropriate mitigation measures and lead the response to security incidents in a timely and coordinated manner. Compliance & Security Coordinate ISO 27001 certification audits and maintain ongoing compliance on behalf of the More ❯
InformationSecurity Technical Assurance Lead - £700 per day - Inside IR35 - Hybrid working from a site in Paddington - 6 months initial contract. Our client, a global supplier to the nuclear energy industry, is seeking a highly skilled InformationSecurity Cyber Assurance Specialist to join their team. This critical role is responsible for ensuring the security and … resilience of their information systems, aligning with industry standards and regulatory requirements. You will provide assurance that their IT and OT environments are secure and compliant, supporting the delivery of business objectives while managing risk. Key Responsibilities - Develop, implement, and maintain informationsecurity assurance programs. Ensure compliance with regulatory requirements and standards (e.g., ISO 27000, NIST SP800 … series, CSF). Conduct risk assessments and vulnerability management activities. Maintain robust security controls across enterprise assets, software, networks, and applications. Support incident response and recovery processes, including penetration testing and audit log management. Deliver training and awareness programs to enhance the organizations security posture. Collaborate with internal and external stakeholders to maintain compliance and manage third-party More ❯
Paddington, Sheldon Square, Greater London, United Kingdom Hybrid/Remote Options
Morson Edge
InformationSecurity Technical Assurance Lead - £700 per day - Inside IR35 - Hybrid working from a site in Paddington - 6 months initial contract. Our client, a global supplier to the nuclear energy industry, is seeking a highly skilled InformationSecurity Cyber Assurance Specialist to join their team. This critical role is responsible for ensuring the security and … resilience of their information systems, aligning with industry standards and regulatory requirements. You will provide assurance that their IT and OT environments are secure and compliant, supporting the delivery of business objectives while managing risk. Key Responsibilities - Develop, implement, and maintain informationsecurity assurance programs. Ensure compliance with regulatory requirements and standards (e.g., ISO 27000, NIST SP800 … series, CSF). Conduct risk assessments and vulnerability management activities. Maintain robust security controls across enterprise assets, software, networks, and applications. Support incident response and recovery processes, including penetration testing and audit log management. Deliver training and awareness programs to enhance the organizations security posture. Collaborate with internal and external stakeholders to maintain compliance and manage third-party More ❯
Hereford, Herefordshire, England, United Kingdom Hybrid/Remote Options
TXP Technology x People
Role: IT InformationSecurity Manager Salary: £65,000 - £75,000 Per Annum, Plus Benefits Package Location: Hereford with a hybrid working arrangement Must have: The right to work in the UK Full UK driving licence Be able to gain BPSS (Baseline Personnel Security Standard) clearance Be able to gain SC (Security Check) clearance as standard along … with any specific security clearances that may be required Our leading services client requires an accomplished InformationSecurity Manager to be responsible for protecting the Group's data and information systems from cyber threats and unauthorised access. This includes developing and implementing security policies, assessing risks, providing reports and managing security incidents. You will … also oversee security awareness training, security compliance, security accreditation and collaborate with various stakeholders to foster a security-conscious culture. Key Deliverables: Align the business' security stance to comply with ISO 27001and Cyber Essentials Plus, or in accordance with the Cyber Assessment Framework Improve the Cyber Awareness within the company via communications, Cyber Awareness training More ❯
Manchester, England, United Kingdom Hybrid/Remote Options
Acumin
Job Title: InformationSecurity Architect - Solutions & Enterprise Security Architecture Location: Manchester Hybrid Working: 50% Remote/50% Office Leading Financial Services/FinTech are seeking a highly technical and broad InformationSecurity Architect to join their security architecture team. This is a key position responsible for ensuring that the design, delivery, and operation of … systems and services meet the highest security architecture and compliance standards. InformationSecurity Architect will provide architectural leadership across multiple security domains — combining deep hands-on technical security expertise with strategic enterprise security architecture thinking. You will play a critical role in embedding security throughout the technology landscape, from solution-level security reviews to security solutions and enterprise-wide security architecture standards. This role requires a balance of security solution architecture, technical review and assurance, and enterprise security architecture skills. You will define and validate security controls, assess new technologies, perform security design reviews, and ensure security-by-design principles are consistently applied across More ❯
Job Title: InformationSecurity Architect Location: London Hybrid Working: 50% Remote/50% Office Leading Financial Services/FinTech are seeking a highly technical and broad InformationSecurity Architect to join their security architecture team. This is a key position responsible for ensuring that the design, delivery, and operation of systems and services meet the … highest security architecture and compliance standards. InformationSecurity Architect will provide architectural leadership across multiple security domains — combining deep hands-on technical security expertise with strategic enterprise security architecture thinking. You will play a critical role in embedding security throughout the technology landscape, from solution-level security reviews to security solutions … and enterprise-wide security architecture standards. This role requires a balance of security solution architecture, technical review and assurance, and enterprise security architecture skills. You will define and validate security controls, assess new technologies, perform security design reviews, and ensure security-by-design principles are consistently applied across hybrid, on-premise, and cloud environments. More ❯
City of London, London, United Kingdom Hybrid/Remote Options
Acumin
Job Title: InformationSecurity Architect Location: London Hybrid Working: 50% Remote/50% Office Leading Financial Services/FinTech are seeking a highly technical and broad InformationSecurity Architect to join their security architecture team. This is a key position responsible for ensuring that the design, delivery, and operation of systems and services meet the … highest security architecture and compliance standards. InformationSecurity Architect will provide architectural leadership across multiple security domains — combining deep hands-on technical security expertise with strategic enterprise security architecture thinking. You will play a critical role in embedding security throughout the technology landscape, from solution-level security reviews to security solutions … and enterprise-wide security architecture standards. This role requires a balance of security solution architecture, technical review and assurance, and enterprise security architecture skills. You will define and validate security controls, assess new technologies, perform security design reviews, and ensure security-by-design principles are consistently applied across hybrid, on-premise, and cloud environments. More ❯
Northampton, Northamptonshire, England, United Kingdom
VIQU IT Recruitment
InformationSecurity Analyst | Hybrid | Contract | Northampton My client is looking for an InformationSecurity Analyst/GRC Analyst to be a part of their growing security team. The successful candidate will play a pivotal role in ensuring compliance with data protection regulations, supporting the InformationSecurity Management System ISMS, and maintaining robust governance … risk, and compliance GRC processes. Key Responsibilities on the InformationSecurity Analyst: Manage and respond to Subject Access Requests SARs in accordance with GDPR timelines and procedures. Oversee Right to Be Forgotten and data deletion requests, ensuring complete and compliant execution. Support the wider GRC and InformationSecurity team in data protection and risk management activities. … Help maintain the InformationSecurity Management System ISMS Provide expert advice on GDPR compliance and data subject rights. Provide expert guidance on data classification, retention, and information governance best practices. InformationSecurity Analyst Experience/Technology: Proven experience in GRC and Information security. Extensive expertise of GDPR, SAR, and Right to Be Forgotten requirements. More ❯
South West London, London, United Kingdom Hybrid/Remote Options
Parliamentary Digital Service
The Opportunity The Parliamentary Digital Service are looking for Cyber Security Advisor to work across key Directorates to ensure that Parliament remains secure in the services that we create, manage and provide to our wide range of customers. As a Cyber and InformationSecurity Advisor you will be there to advise and support bespoke software development in … their work, shifting security expertise into the early stages of delivery and supporting throughout the delivery lifecycle as needed. This will cover areas such as: code review, architectural and design advice for engineering and delivery platforms, and ensuring that security is a fundamental part of the development process, rather than an afterthought. You will help teams shift left … on security, organise training and demonstrations on best practice, coach and mentor teams and individuals, as well as help set standards and build documentation for teams to guide them. You will work closely with both the Cyber and InformationSecurity directorate, and bespoke software teams, helping to organise penetration testing and other security critical tests of More ❯
Gloucestershire, South West, United Kingdom Hybrid/Remote Options
Data Careers
InformationSecurity Officer 12 Month Fixed Term Contract Salary: £48,500 Location: Hybrid/Gloucesterhire (2-3 days per week on site in Gloucestershire) A leading Public Sector organisation is seeking an experienced InformationSecurity Officer to help strengthen its informationsecurity posture and support the protection of its information assets. You will … work closely with senior leaders, operational teams and partners to embed a robust security culture and ensure compliance with national standards. The Role: As the organisation's focal point for informationsecurity, you will: Provide expert advice on informationsecurity and ensure compliance with national frameworks and ISO/BSI standards. Develop and maintain policies … procedures and controls to protect the organisation's information assets. Conduct risk assessments, security reviews and vulnerability testing. Carry out physical security assessments and produce clear, evidence-based reports. Lead security awareness training. Identify, evaluate and communicate information risks. Oversee informationsecurity incidents and maintain the incident register. Lead audit activity relating to More ❯
Greater London, England, United Kingdom Hybrid/Remote Options
Oliver Bernard
InformationSecurity Analyst - FinTech - £70K Our client is a growing London SaaS company, working with clients across tech, trading, pharma and ecommerce around the world. Offering hybrid working, they’re looking for an experienced InformationSecurity/Cyber Security Analyst/Engineer to join them. You’ll work directly with the CTO, CRO and IT … teams to create and deliver security strategies, an informationsecurity framework and risk mitigation plans for the company. You’ll be involved in everything from security assessments, threat modelling and penetration testing to triage of security events, ownership of policies and procedures and even working with development and engineering teams to drive application security … where they can be a subject matter expert. Requirements: Proven experience as an Information/Cyber Security Analyst (or equivalent) Broad cyber and informationsecurity (InfoSec) experience Knowledge of concepts such as ethical hacking, network security, penetration testing and cryptography etc Good understanding of Windows, Cloud (AWS) and IT infrastructure Excellent communication skills More ❯
our tomorrow. So, ready to dive in? Your journey begins with that application - and who knows where it could take you in our vibrant team! Position The Role The InformationSecurity Manager will be responsible for developing, implementing, and managing best practices in informationsecurity across M247. This role requires a deep understanding of data management … informationsecurity frameworks, and regulatory compliance. The ideal candidate will have a proven track record in creating efficient security processes and play a key role in fostering a culture of security awareness throughout the organisation. Security Strategy Development: Design and implement a comprehensive informationsecurity strategy that aligns with business objectives and complies … with ISO 27001 standards. Microsoft 365 Expertise: Leverage Microsoft 365 tools to enhance security measures, ensuring optimal configuration and deployment to protect data and information assets. Data and Information Management: Oversee data governance policies and practices to ensure the integrity, confidentiality, and availability of sensitive information. Operational Efficiency: Identify opportunities to consolidate security processes and improve More ❯
InformationSecurity Compliance & Risk Specialist Maritime and Coastguard Agency Apply before 11:55pm on Friday 30th November 2025 Reference number (phone number removed) Salary £44,241 This role is part of the Government Digital and Data Profession, and the role attracts a Digital and Data allowance of up to £14,756, subject to an assessment of your skills … and experience during the interview process A Civil Service Pension with an employer contribution of 28.97% Job grade Senior Executive Officer Contract type Permanent Business area MCA - Information Technology Type of role Information Technology Knowledge and Information Management Risk Management Security Working pattern Flexible working, Full-time, Job share, Part-time Number of jobs available … Contents Location About the job Benefits Things you need to know Apply and further information Location Southampton About the job Job description The InformationSecurity Compliance and Risk Specialist will: Develop & maintain the MCA's InformationSecurity Management System (ISMS) and all underpinning documentation, including stakeholder engagement & compliance checks. Be responsible for the delivery of More ❯
Greater London, England, United Kingdom Hybrid/Remote Options
Oliver Bernard
InformationSecurity - FinTech - £70K Our client is a leading FinTech. With a global reach, they build award-winning trading software and market data products. Based in central London ,with flexible, hybrid, working they’re looking to hire an InformationSecurity Analyst to grow their IT Security function. You’ll have the chance to work with … very agile Development and DevOps teams and senior stakeholders across the business to create security best practices, implement innovative solutions and define the company’s informationsecurity strategy. There’s a lot to do and a real strategic version for the future! As a company focussed on Agile and CI/CD development, you’ll have the … chance to work extensive with Cloud, automation and Infrastructure as Code (IaC) tools and grow a real DevSecOps mindset. Requirements: Great Cyber/InformationSecurity experience Certified InformationSecurity Manager (CISM) or Certified Information Systems Auditor (CISA) qualifactions Excellent experience of engineering informationsecurity solutions Strong understanding of “core” IT infrastructure – servers, networking More ❯
Bexleyheath, Kent, England, United Kingdom Hybrid/Remote Options
Reed
InformationSecurity and Governance Officer Location: Bexleyheath Job Type: Temporary (6 months) with potential for permanent Salary: £127 per day We are seeking an InformationSecurity and Governance Officer to join a local authority based in Bexleyheath. This role offers an immediate start and is an excellent opportunity for individuals with strong administrative backgrounds and relevant … governance experience looking to advance their careers. Day-to-day of the role: Policy Support: Assist with the maintenance and implementation of the Council’s Information Governance Framework, policies, and procedures. Security Standards: Monitor compliance with informationsecurity and data handling policies, identifying and reporting potential risks or non-compliance. Information Risk: Contribute to the … management of information risks, ensuring these are logged and escalated in accordance with agreed processes. Data Sharing: Review and record data sharing arrangements and support the completion of data sharing agreements and contracts under supervision. Statutory Requests: Manage or assist with the processing of requests made under FOIA, EIR, and Subject Access Requests (SARs), ensuring statutory deadlines are met More ❯