to work under pressure and manage multiple priorities effectively. Preferred Skills: Experience in regulated industries (e.g., finance, healthcare, critical infrastructure). Knowledge of compliance frameworks such as ISO 27001, NIST, GDPR, or CIS Familiarity with scripting or automation for incident response or scanning processes. Please feel free to contact myself - Daisy Nguyen at Gibbs Consulting/Atrium UK for a More ❯
Information Assurance Risk Assessment and Risk Treatment Plans Establish security requirements for cloud-based solutions by evaluating business strategies and requirements, implementing security standards such as ISO 27000 series, NIST, CSF, and CSA Identify and deliver appropriate controls based on industry standards (e.g. CCM) to drive cloud and customer security solutions framework based on business risk and cloud native threats. More ❯
City of London, London, England, United Kingdom Hybrid / WFH Options
WTW
with regulatory expectations and internal governance standards. Drive continuous improvement in risk data quality, reporting processes, and analytics capabilities. The Requirements: Skills: Strong knowledge of risk management frameworks (e.g., NIST, ISO 27001, COBIT) and control environments. Deep understanding of IT general controls, cyber security principles, andtechnology risk domains. Proven experience in risk analytics, data visualization, and reporting (e.g., using More ❯
security posture. Experience & Knowledge: 8+ years in Information Security with a strong architecture focus. Expert in lateral movement risks, network segmentation, and endpoint security. Deep familiarity with security frameworks: NIST, ISO 27001, Zero Trust. Extensive experience with Windows and Linux hardening. Skilled in protocol analysis, network architecture, and infrastructure design. Technical Toolkit: Strong command of Azure Log Analytics, KQL, andMore ❯
to assure the remediation activity conducted in response to findings. Technical/job functional knowledge Awareness and working knowledge of control frameworks based on industry standard methodologies such as NIST, COBIT, and ISO27001. Awareness of key regulatory requirements for technologyand cyber security in the main LSEG operating centres UK, Europe, US & Asia Cyber security qualification e.g. CISMP/Apprenticeship More ❯
City of London, London, United Kingdom Hybrid / WFH Options
IPS Group
regulatory frameworks. Key Areas of Responsibility: Regulatory Implementation & Frameworks Assist in establishing a comprehensive resilience framework that meets DORA standardsand other recognised guidelines (e.g. ISO 22301, ISO 27001, NIST). Draft internal controls, policies, training content, and risk assessment methodologies. Contribute to core DORA workstreams such as ICT risk management, scenario-based testing, and oversight of third-party providers. More ❯
and problem-solving skills. Experience of working in a large, complex IT environment (preferably within Financial Services). Strong understanding of IT Security Standardsand frameworks (such as ISO, NIST, GDPR). What We Offer Save For Your Future - Equiniti Pension Plan; Equiniti matches your pension contributions up to 10% All Employee Long Term Incentive Plan (LTIP) - Gives all EQ More ❯
City of London, London, United Kingdom Hybrid / WFH Options
British Business Bank
engaging with executive leadership and external stakeholders. What Were Looking For: Extensive experience in Information and Cyber Security, with strong strategic thinking and operational delivery. Familiarity with frameworks like NIST, Cyber Essentials Plus, and GovAssure. Proven leadership and people management skills in fast-paced environments. Experience in project delivery, risk management, and supplier negotiations. Excellent stakeholder engagement, especially at senior More ❯
Tracker * Optional failure remediation support to control owners Key Skills/Knowledge: * Knowledge of IT domain, IT control frameworks, IT related regulations. * Knowledge of control and regulatory frameworks (e.g. NIST, PS21/3, COBIT, DORA, etc.). * Analytical Skills * Ability to take a rigorous and methodical approach to IT control testing * Exceptional stakeholder management and communication skills to engage effectively More ❯
City of London, London, United Kingdom Hybrid / WFH Options
Henderson Scott
we're looking for: Deep experience working in Security Operations, including working with MDR providers and SOC environments Strong knowledge of relevant frameworks andstandards including: PCI-DSS GDPR NIST CSF CIS Critical Security Controls Cyber Essentials Plus Hands-on experience across Cloud Security, Identity and Access Management, Zero Trust, Security Service Edge (SSE), and SASE Proven ability to bridge More ❯
architecture Proven hands-on experience with Microsoft Azure services and cloud-native development Azure Solution Architect Expert certification or equivalent (preferred) Strong understanding of security frameworks (e.g., ISO 27001, NIST) Expertise in tools and services such as: Azure Functions, API Gateway, CosmosDB, Azure SQL, Event Grid, Kubernetes, Azure Maps, Service Fabric, DevBox, Synapse, Logic Apps, PowerBI, Redis Cache, CDN, Azure More ❯
in a regulated environment Strong understanding of lifecycle management, Zero Trust, RBAC/ABAC Experience with Azure AD or similar platforms (CyberArk, etc.) Familiar with frameworks such as ISO, NIST or CIS IAM-related certifications are a bonus (CISSP, CISM, CIAM, etc. More ❯
ideally in energy generation, utilities, or other regulated sectors. Strong understanding of Operational Technology (OT) environments, including DCS, SCADA, and ICS, with alignment to NCSC CAF, IEC 62443, andNIST 800-82. Experience supporting Ofgem regulatory compliance, including ISSA returns and NIS Regulations. Demonstrated ability to lead complex programmes, manage multidisciplinary teams, and engage with technical, business, and regulatory More ❯
threats. What I'm Looking For: Proven experience completing internal and external cyber risk assessments. Experience conducting 3rd party and vendor risk assessments. Strong understanding of security frameworks (e.g., NIST, ISO 27001). Experience implementing, testing and validating security controls. Ability to assess risk against appetite and communicate findings in a business-solution focused way to technical and non-technical More ❯
Job Title: Security Governance Lead – NIST & Archer Expertise Location: London About the Role: Albany Beck is seeking a highly skilled Security Governance Lead to support a key financial services client in advancing its information security governance capabilities. This role requires deep expertise in NIST frameworks and Archer GRC, as well as strong leadership in centralising security policy management, controls, and … and stakeholder engagement. Required Experience and Skills: Proven experience in a security governance or risk management leadership role within the financial services or consulting industry. Strong working knowledge ofNIST frameworks (e.g., NIST CSF, NIST 800-53). Hands-on experience with RSA Archer GRC platform, particularly in managing controls, risks, and compliance reporting. Excellent understanding of regulatory compliance requirements More ❯
Central London, London, United Kingdom Hybrid / WFH Options
STK Recruitment
Job Title: Zscaler Consultant Day Rate: £500-600 per day (Outside IR35) Duration: 6 months Location: Fully remote/WFH Overview: As Zscaler Consultant you will be a senior member of the team responsible for designing, configuring, implementing, and optimizing More ❯
City of London, London, United Kingdom Hybrid / WFH Options
The MDU
risk management framework that aligns with the organizations strategic goals and objectives. This will be aligned to COBIT but also take into account other frameworks in use such as NISTand ITIL. Stakeholder Engagement: Engage with external stakeholders, including the Head of Risk Assurance, the Risk Assurance team and our internal audit partners, to ensure effective communication and compliance with … services or high regulation sector (for example Pharma). Demonstrable working knowledge of common IT processes and department functions. Working knowledge of a recognised Risk Management Framework, such as NIST, or as part of a more general framework such as COBIT (preferred) Excellent communication and influencing skills, with the ability to engage stakeholders at all levels. Experience in building risk More ❯
City of London, London, United Kingdom Hybrid / WFH Options
Albany Beck
clear, meaningful reports for senior business and non-technical audiences. Create Board-level inputs and executive reporting packs with top-level narratives and insight-driven commentary. Ensure alignment with NIST frameworks and internal Cyber Risk Management principles. Identify, connect, and manage data sources, owners, systems, and submission cycles to ensure timely and accurate reporting. Conduct “check and challenge” analysis to … regularly with IT, Security, and Business stakeholders to align risk reporting with organizational objectives. What We’re Looking For: RSA Archer expertise or other GRC tooling Proven experience with NIST or other regulatory-aligned frameworks. Deep understanding of Cyber Risk Management principles. Exceptionally organized, with strong attention to detail and ability to manage multiple priorities. Strong written and verbal communication More ❯
City of London, London, United Kingdom Hybrid / WFH Options
Albany Beck
influence the operational and strategic approach to cyber risk across a complex and regulated environment. Key Responsibilities: Lead and support the implementation of security risk management processes aligned with NISTand other regulatory frameworks. Act as a subject matter expert on RSA Archer – configuring, managing, and optimising the platform for enterprise risk use cases. Develop and deliver high-quality risk … We’re Looking For: Mandatory: Strong hands-on experience with RSA Archer – this is essential for the role. Ideally 8+ years experience in similar roles In-depth understanding ofNIST frameworks and security risk methodologies. A Cyber Risk Management mindset, with a practical and business-oriented approach to risk. Excellent attention to detail and a methodical, highly organised working style. More ❯