Information Assurance Risk Assessment and Risk Treatment Plans Establish security requirements for cloud-based solutions by evaluating business strategies and requirements, implementing security standards such as ISO 27000 series, NIST, CSF, and CSA Identify and deliver appropriate controls based on industry standards (e.g. CCM) to drive cloud and customer security solutions framework based on business risk and cloud native threats. More ❯
City of London, London, United Kingdom Hybrid / WFH Options
Qurated
prem). Hands-on experience with SIEM, EDR, and XDR solutions for security monitoring. Certifications preferred: CISSP, CISM, AZ-500, SC-200, SC-100. Strong knowledge of ISO 27001, NIST, CIS benchmarks, and security governance. Experience leading security for M&A, large-scale risk assessments, and enterprise security This is a permanent role, with hybrid working based in London. More ❯
london (city of london), south east england, united kingdom Hybrid / WFH Options
Qurated
prem). Hands-on experience with SIEM, EDR, and XDR solutions for security monitoring. Certifications preferred: CISSP, CISM, AZ-500, SC-200, SC-100. Strong knowledge of ISO 27001, NIST, CIS benchmarks, and security governance. Experience leading security for M&A, large-scale risk assessments, and enterprise security This is a permanent role, with hybrid working based in London. More ❯
background in Security Risk and Governance with hands-on experience in Archer (experience with other GRC tools is also valuable). Solid understanding of risk assessment methodologies, security frameworks (NIST, ISO (phone number removed , and compliance requirements (GDPR, PCI DSS, SOX). Strong written communication skills, able to produce clear technical reports and risk documentation. Excellent stakeholder management, able to More ❯
City of London, London, United Kingdom Hybrid / WFH Options
Anson Mccade
methods. What You'll Bring: Experience delivering cyber strategy, transformation or governance projects in the public sector, defence or critical national infrastructure. Knowledge of cyber security frameworks such as NIST CSF, ISO27001, NCSC CAF, CRI 2.0, GDPR or NIS2. Strong consulting skills including stakeholder engagement, project delivery, and team management. Excellent written and verbal communication skills - confident in front ofMore ❯
City of London, London, United Kingdom Hybrid / WFH Options
Anson McCade
fast-paced, client-facing environments. What We’re Looking For 5+ years in cyber strategy, transformation, risk management, or cyber maturity assessments. Knowledge of industry standardsand regulations (e.g. NIST CSF, ISO27001, GDPR, NIS2). Strong consulting skills — stakeholder management, project delivery, and team leadership. Relevant certifications (CISSP, CISM, CISA, MSc Cyber Security, or equivalent) are desirable. Excellent communication skills More ❯
london (city of london), south east england, united kingdom Hybrid / WFH Options
Anson McCade
fast-paced, client-facing environments. What We’re Looking For 5+ years in cyber strategy, transformation, risk management, or cyber maturity assessments. Knowledge of industry standardsand regulations (e.g. NIST CSF, ISO27001, GDPR, NIS2). Strong consulting skills — stakeholder management, project delivery, and team leadership. Relevant certifications (CISSP, CISM, CISA, MSc Cyber Security, or equivalent) are desirable. Excellent communication skills More ❯
solutions, such as CyberArk. Understanding of NCSC cyber security principles and good practice. Familiarity with change and configuration management from a cyber perspective. Working knowledge of ISO 27001 or NIST standards. Relevant certifications (e.g., Security+, CySA+, CISMP) are desirable. If you are interested, please apply at first instance More ❯
City of London, London, United Kingdom Hybrid / WFH Options
Anson Mccade
preferred). Strong knowledge of log parsing, SIEM query languages (KQL, SPL, AQL), and automation with Python/PowerShell. Deep understanding of incident response, threat detection, and frameworks (MITRE, NIST, CIS). Knowledge of vulnerability scanning, penetration testing, and network traffic analysis. Familiarity with ITIL processes (Incident, Problem, Change). Excellent stakeholder communication, with the ability to mentor and lead More ❯
this position must have: Hands-on experience with disaster recovery, failover testing, and operational resilience in IT infrastructure. Solid understanding of business continuity and security frameworks (e.g. ISO27001, ISO23001 NIST) and how to evidence controls. Experience producing and maintaining high-quality technical documentation and runbooks. Strong coordination skills with cross-functional teams. Proficiency with infrastructure tooling and at least one More ❯
london (city of london), south east england, united kingdom
Slaughter and May
this position must have: Hands-on experience with disaster recovery, failover testing, and operational resilience in IT infrastructure. Solid understanding of business continuity and security frameworks (e.g. ISO27001, ISO23001 NIST) and how to evidence controls. Experience producing and maintaining high-quality technical documentation and runbooks. Strong coordination skills with cross-functional teams. Proficiency with infrastructure tooling and at least one More ❯
City of London, London, United Kingdom Hybrid / WFH Options
Anson Mccade
Manage programmes that align cyber initiatives with broader business goals and digital transformation. Skills & Experience: Solid experience in cyber strategy, risk, maturity, transformation, and knowledge ofstandards such as NIST, ISO27001, GDPR, and NIS2 expected of a Strategy and Transformation Specialist. Relevant certifications like CISSP, CISM, CISA, M.Inst.ISP, or MSc-level education in cyber security or related fields. Demonstrated ability More ❯
Central London, London, United Kingdom Hybrid / WFH Options
Halian Technology Limited
or AWS), CI/CD pipelines, and DevOps processes. Strong communication skills and the ability to collaborate effectively across teams. Understanding of regulatory and security standards (ISO 27001, FCA, NIST). (Nice to have) Youll need to demonstrate experiencethough not necessarily deep expertisein secure architecture and threat modelling, and be comfortable leading initiatives in this area. Facilitate and lead threat More ❯
ensuring value and mitigating financial risk. About You A track record of successfully managing large-scale IT and cyber security transformation programmes. Proven track record delivering projects aligned with NIST CSF, CIS Controls, and defence-in-depth frameworks. Strong leadership and stakeholder management skills, with experience engaging executive leadership and technical teams. Skilled in vendor management, contract negotiation, and managing More ❯
Strong understanding of mail filtering technologies • Strong understanding of Cloud infrastructure technologies, including encryption • Demonstrable experience of working with Microsoft Sentinel, Defender and Purview • Excellent understanding of security frameworks (NISTand Cyber Essentials) • Ability to lead and manage third party providers • Strong understanding of incident response processes and methodologies including leading and managing incidents • Lead on root cause analysis, providing More ❯
City of London, London, United Kingdom Hybrid / WFH Options
Barclay Simpson
deliver the strategic roadmap for global Cyber GRC. Lead and develop a high-performing team across multiple regions. Oversee risk management, assurance, and compliance aligned with frameworks such as NIST, ISO27001 and CIS. Drive third-party and M&A cyber risk management. Deliver clear, data-driven insights and dashboards for senior stakeholders. Champion a strong security culture and continuous improvement More ❯
london (city of london), south east england, united kingdom Hybrid / WFH Options
Barclay Simpson
deliver the strategic roadmap for global Cyber GRC. Lead and develop a high-performing team across multiple regions. Oversee risk management, assurance, and compliance aligned with frameworks such as NIST, ISO27001 and CIS. Drive third-party and M&A cyber risk management. Deliver clear, data-driven insights and dashboards for senior stakeholders. Champion a strong security culture and continuous improvement More ❯
the Greater London area) or in a hybrid setup from our office in Dudley. Position purpose The Cybersecurity & Compliance Manager will lead Tosca’s efforts to ensure adherence to NIST CFS 2.0, ISO 27001, and other standards. This role focuses on developing security protocols, maintaining documentation, conducting risk assessments, and ensuring regulatory compliance. Responsibilities include managing security infrastructure, incident response … and promoting cybersecurity awareness. The position requires collaboration with Global IT, cross-functional teams, and third-party partners. Key qualifications include experience in cybersecurity and compliance, strong knowledge ofNISTand ISO standards, risk management expertise, and effective communication skills. This is a full-time role, with travel up to 30% of the time. Responsibilities Implement security protocols and manage … information security programs Report performance, exceptions, and outages to all audiences transparently. Align disaster recovery with business continuity plans. Ensure compliance with ISO27001, NIST CFS 2.0, and maintain ISMS. Identify risks, develop a comprehensive security plan. Test cyber-attacks regularly to address vulnerabilities. Monitor security trends, adapt strategies. Oversee incident monitoring, detection, response via SOC and MSSPs. Manage security tools More ❯
london (city of london), south east england, united kingdom
Tosca
the Greater London area) or in a hybrid setup from our office in Dudley. Position purpose The Cybersecurity & Compliance Manager will lead Tosca’s efforts to ensure adherence to NIST CFS 2.0, ISO 27001, and other standards. This role focuses on developing security protocols, maintaining documentation, conducting risk assessments, and ensuring regulatory compliance. Responsibilities include managing security infrastructure, incident response … and promoting cybersecurity awareness. The position requires collaboration with Global IT, cross-functional teams, and third-party partners. Key qualifications include experience in cybersecurity and compliance, strong knowledge ofNISTand ISO standards, risk management expertise, and effective communication skills. This is a full-time role, with travel up to 30% of the time. Responsibilities Implement security protocols and manage … information security programs Report performance, exceptions, and outages to all audiences transparently. Align disaster recovery with business continuity plans. Ensure compliance with ISO27001, NIST CFS 2.0, and maintain ISMS. Identify risks, develop a comprehensive security plan. Test cyber-attacks regularly to address vulnerabilities. Monitor security trends, adapt strategies. Oversee incident monitoring, detection, response via SOC and MSSPs. Manage security tools More ❯
of the role you must be eligible for SC Clearance. Desirable Requirements: Experience in a Cyber Security environment Understanding of the NCSC Cyber Assurance Framework (CAF) Understanding of the NIST Cyber Security Framework (CSF) and mapping to CAF About us: At Peregrine, we see beyond the immediate and look to the horizon. We build lasting, meaningful partnerships with our clients More ❯
strategy development. Experienced Required 10+ years of experience in IT Risk, Internal/External Audit, or Risk Management (preferably within insurance). Strong understanding of industry frameworks such as NIST, ISO 27001, COBIT, or COSO. Proven ability to work independently while managing senior-level stakeholder relationships. Demonstrable experience with global regulatory environments (e.g., PRA/FCA, BMA, CBI). Strong More ❯
london (city of london), south east england, united kingdom
Arthur Recruitment
strategy development. Experienced Required 10+ years of experience in IT Risk, Internal/External Audit, or Risk Management (preferably within insurance). Strong understanding of industry frameworks such as NIST, ISO 27001, COBIT, or COSO. Proven ability to work independently while managing senior-level stakeholder relationships. Demonstrable experience with global regulatory environments (e.g., PRA/FCA, BMA, CBI). Strong More ❯
In depth knowledge of third-party regulations across UK and EU such as ECB's EBA, DORA and related standards Information and Cyber Security Frameworks and industry Standards (e.g., NIST/ISO 27001/COBIT/ITIL) Experience creating and delivering presentations and concise writing skills to produce clear documentation (security policy, senior management posture reports) Excellent inter-personal communication More ❯
City of London, London, United Kingdom Hybrid / WFH Options
Adecco
Expertise * Strong understanding of cyber security principles and risk management. * Hands-on experience with cloud security, particularly Azure services and tools. * Familiarity with security frameworks such as ISO 27001, NIST, or CIS. * Knowledge of security technologies (firewalls, remote access, ZTNA). * Exposure to threat modelling and cyber threat intelligence is advantageous. Core Skills * Excellent communication and stakeholder engagement abilities. * Analytical … treated in the strictest confidence and we would always speak to you before discussing your CV with any potential employer. Keywords: Cyber Security, Azure Security, Cloud Security, ISO 27001, NIST, CIS, ZTNA, Threat Modelling, CISSP, CISM, CEH, Risk Management, Security Consultant, Information Security More ❯