Nottingham, Nottinghamshire, United Kingdom Hybrid / WFH Options
Experian Group
and frameworks (e.g., NIST 800-53, ISO 27001/27002). Familiarity with privacy regulations (e.g., GDPR, CCPA) and breach notification laws. Experience with sector-specific frameworks (e.g., HIPAA, PCI). Technical Skills Proficiency with security tools (SailPoint, Rapid7, Wiz.io , MS Defender, SIEM, vulnerability management, penetration testing). Knowledge of cloud technologies (AWS, Azure). Experience using generative AI … Data collection, validation, analysis, and interpretation. Experience Researching and applying latest technologies. Experience with Agile methodology. Big 4 accounting experience. Hold a professional certification such as CISA, CISM, CISSP, PCI QSA, ISO 27001 Lead Auditor, or equivalent. Additional Information This is a permanent hybrid role in Costa Rica. No relocation available. Culture at Experian Our uniqueness is that we More ❯
secure configurations including CUI/CDI. Advanced understanding of IT infrastructure, including servers, storage, and virtualization. Familiarity with cloud security (Azure, AWS, etc.). Knowledge of compliance frameworks like PCIDSS, HIPAA, SOC 2. Proficiency with Windows, Linux, macOS, and network protocols. Understanding threat intelligence platforms and attack mitigation techniques. Strong problem-solving skills. Certifications: CISSP, CEH, Security+ More ❯
Northampton, England, United Kingdom Hybrid / WFH Options
JR United Kingdom
Working remotely with occasional be in office in Essex. What You’ll Do Assess compliance with internal security policies and industry standards (e.g., ISO/IEC 27001/2, PCI-DSS). Conduct supplier risk assessments and third-party due diligence. Support vulnerability assessments, incident investigations, and operational resilience activities. Monitor the effectiveness of security controls to ensure … Experience first and second line support Strong analytical thinking and attention to detail. Familiarity with compliance frameworks like ISO 27001/27002, NIST Cybersecurity Framework – 2.0 ideally version 2, PCIDSS v4.0 Exceptional communication and stakeholder engagement skills. Experience with Microsoft Azure Security tools (Defender for Endpoint, Sentinel, Purview). Understanding of ITIL, data protection laws (UK GDPR More ❯
Shrewsbury, England, United Kingdom Hybrid / WFH Options
JR United Kingdom
Working remotely with occasional be in office in Essex. What You’ll Do Assess compliance with internal security policies and industry standards (e.g., ISO/IEC 27001/2, PCI-DSS). Conduct supplier risk assessments and third-party due diligence. Support vulnerability assessments, incident investigations, and operational resilience activities. Monitor the effectiveness of security controls to ensure … Experience first and second line support Strong analytical thinking and attention to detail. Familiarity with compliance frameworks like ISO 27001/27002, NIST Cybersecurity Framework – 2.0 ideally version 2, PCIDSS v4.0 Exceptional communication and stakeholder engagement skills. Experience with Microsoft Azure Security tools (Defender for Endpoint, Sentinel, Purview). Understanding of ITIL, data protection laws (UK GDPR More ❯
Chesterfield, England, United Kingdom Hybrid / WFH Options
JR United Kingdom
Working remotely with occasional be in office in Essex. What You’ll Do Assess compliance with internal security policies and industry standards (e.g., ISO/IEC 27001/2, PCI-DSS). Conduct supplier risk assessments and third-party due diligence. Support vulnerability assessments, incident investigations, and operational resilience activities. Monitor the effectiveness of security controls to ensure … Experience first and second line support Strong analytical thinking and attention to detail. Familiarity with compliance frameworks like ISO 27001/27002, NIST Cybersecurity Framework – 2.0 ideally version 2, PCIDSS v4.0 Exceptional communication and stakeholder engagement skills. Experience with Microsoft Azure Security tools (Defender for Endpoint, Sentinel, Purview). Understanding of ITIL, data protection laws (UK GDPR More ❯
Wolverhampton, England, United Kingdom Hybrid / WFH Options
JR United Kingdom
Working remotely with occasional be in office in Essex. What You’ll Do Assess compliance with internal security policies and industry standards (e.g., ISO/IEC 27001/2, PCI-DSS). Conduct supplier risk assessments and third-party due diligence. Support vulnerability assessments, incident investigations, and operational resilience activities. Monitor the effectiveness of security controls to ensure … Experience first and second line support Strong analytical thinking and attention to detail. Familiarity with compliance frameworks like ISO 27001/27002, NIST Cybersecurity Framework – 2.0 ideally version 2, PCIDSS v4.0 Exceptional communication and stakeholder engagement skills. Experience with Microsoft Azure Security tools (Defender for Endpoint, Sentinel, Purview). Understanding of ITIL, data protection laws (UK GDPR More ❯
Lincoln, England, United Kingdom Hybrid / WFH Options
JR United Kingdom
Working remotely with occasional be in office in Essex. What You’ll Do Assess compliance with internal security policies and industry standards (e.g., ISO/IEC 27001/2, PCI-DSS). Conduct supplier risk assessments and third-party due diligence. Support vulnerability assessments, incident investigations, and operational resilience activities. Monitor the effectiveness of security controls to ensure … Experience first and second line support Strong analytical thinking and attention to detail. Familiarity with compliance frameworks like ISO 27001/27002, NIST Cybersecurity Framework – 2.0 ideally version 2, PCIDSS v4.0 Exceptional communication and stakeholder engagement skills. Experience with Microsoft Azure Security tools (Defender for Endpoint, Sentinel, Purview). Understanding of ITIL, data protection laws (UK GDPR More ❯
Telford, England, United Kingdom Hybrid / WFH Options
JR United Kingdom
Working remotely with occasional be in office in Essex. What You’ll Do Assess compliance with internal security policies and industry standards (e.g., ISO/IEC 27001/2, PCI-DSS). Conduct supplier risk assessments and third-party due diligence. Support vulnerability assessments, incident investigations, and operational resilience activities. Monitor the effectiveness of security controls to ensure … Experience first and second line support Strong analytical thinking and attention to detail. Familiarity with compliance frameworks like ISO 27001/27002, NIST Cybersecurity Framework – 2.0 ideally version 2, PCIDSS v4.0 Exceptional communication and stakeholder engagement skills. Experience with Microsoft Azure Security tools (Defender for Endpoint, Sentinel, Purview). Understanding of ITIL, data protection laws (UK GDPR More ❯
remote with occasional travel to the office in Essex. What You’ll Do Assess compliance with internal security policies and industry standards (e.g., ISO/IEC 27001/2, PCI-DSS). Conduct supplier risk assessments and third-party due diligence. Support vulnerability assessments, incident investigations, and operational resilience activities. Monitor the effectiveness of security controls to ensure … with first and second line support. Strong analytical thinking and attention to detail. Familiarity with compliance frameworks like ISO 27001/27002, NIST Cybersecurity Framework 2.0 (preferably version 2), PCIDSS v4.0. Exceptional communication and stakeholder engagement skills. Experience with Microsoft Azure Security tools (Defender for Endpoint, Sentinel, Purview). Understanding of ITIL, data protection laws (UK GDPR More ❯
and security best practice (ISO27001, NIST CSF, Cyber Essentials, OWASP). You’ll have demonstrable knowledge and adherence to data protection legislation and regulatory requirements (e.g. GDPR, FCA SYSC, PCIDSS), as well as extensive experience and understanding of security analysis tools, defensive technologies and other security technologies (e.g. SIEM, VAS, IDS/IPS, Firewalls, IAM, NAC, patch More ❯
Chesterfield, Derbyshire, England, United Kingdom Hybrid / WFH Options
LANGLAND CONSULTANTS LTD
Lead Information Security Analyst/Engineer to £55k + Benefits ISO27001, COBIT, SECURITY, ITIL, CISM, CISSP, PCI-DSS Lead Information Security Engineer/Analyst: Do you have a background working in an IT Security function Do you have a broad technical skill set and are able to identify and remediate threats or vulnerabilities, implement information security strategies to … help safeguard their digital assets and mitigate against potential risks. You will be actively responsible for ensuring the successful achievement of external certifications such as ISO27001, MOU, PSN and PCI-DSS etc alongside managing security incident response plans. In addition, the Lead information Security Analyst/Engineer will provide advice and guidance on government standards and industry best … meet security standards Monitoring events/alerts from multiple technologies to detect potential malicious activity Ensure effective compliance with relevant laws, regulations, and industry standards such as GDPR, ISO27001, PCI- DSS etc by conducting audits, maintaining documentation etc Support the Head of Digital, Data and Technology to develop, monitor and report on budget that is in line with More ❯
Broad technical knowledge of cyber security controls demonstrated by attainment of appropriate qualifications e.g. CISSP, ISO27001 Lead Implementor or relevant SANS GIAC or equivalent Knowledge of the NIST framework, PCIDSS, GDPR and NIS as well as NCSC cyber guidance. Experience working in an agile delivery environment would be highly advantageous. Specific cyber knowledge and demonstrable experience in More ❯
key risks and control weaknesses, providing practical and strategic recommendations for remediation. Evaluate compliance with internal policies, industry best practices, and regulatory requirements (e.g., FCA, PRA, GDPR, ISO 27001, PCI-DSS). Collaborate with business and IT stakeholders to understand operational processes and system architecture. Prepare detailed audit reports and present findings to senior management. Support external auditors More ❯
Meriden, Coventry, West Midlands, England, United Kingdom
Recruit4Talent
your existing skills while developing new ones, contributing to the strategic security objectives of the Company and ensuring adherence to critical accreditations, including ISO 27001, GDPR, Cyber Essentials, and PCI DSS. The successful candidate will demonstrate: Strong analytical skills with a meticulous approach to identifying and resolving security issues Excellent verbal and written communication abilities, with a knack for … expertise in information security Happy to travel occasionally to other sites as required. Desirable Experience: Demonstrable expertise in external audit, compliance, and security processes (ISO27001, GDPR, Cyber Essentials and PCIDSS) Microsoft accreditation or other recognised certifications (e.g. Microsoft Learning, CISA, CISM, CRISC, CCSP) would be very beneficial. Benefits: £25,000 - £35,000 salary depending on experience More ❯
your existing skills while developing new ones, contributing to the strategic security objectives of the Company and ensuring adherence to critical accreditations, including ISO 27001, GDPR, Cyber Essentials, and PCI DSS. The successful candidate will demonstrate: Strong analytical skills with a meticulous approach to identifying and resolving security issues. Excellent verbal and written communication abilities, with a knack for … expertise in information security. Happy to travel occasionally to other sites as required. Desirable Experience: Demonstrable expertise in external audit, compliance, and security processes (ISO27001, GDPR, Cyber Essentials and PCIDSS). Microsoft accreditation or other recognised certifications (e.g. Microsoft Learning, CISA, CISM, CRISC, CCSP) would be very beneficial. Benefits: £25,000 - £35,000 salary depending on experience. More ❯
Coventry, England, United Kingdom Hybrid / WFH Options
Sainsbury's
What you need to know and show Effective collaboration with teams and stakeholders to drive the agenda. Experience in assurance testing across industry frameworks, such as NIST-CSF, ISO27001, PCI-DSS, GDPR, and IT General Controls. Strong organizational skills to coordinate outputs from stakeholders. Familiarity with key frameworks and regulations. Proactive approach to industry changes and implementation. Ability … and written. Support we will provide Support and guidance from your line manager. Access to ITGC, GRC, Data Governance, and Infosec teams. Training materials on NIST, IT General Controls, PCI-DSS, GDPR. Additional resources as needed. Qualifications We are committed to inclusivity and development. We offer flexible working, benefits, and a supportive environment to help you grow and More ❯
Coventry, England, United Kingdom Hybrid / WFH Options
hackajob
General Controls desirable Be highly organised and able to coordinate expected outputs from different stakeholders Familiar with key techniques and industry frameworks/regulations such as NIST-CSF, ISO27001, PCI-DSS, GDPR, and IT General Controls Pro-active with upcoming industry changes and ability to implement where necessary Be able to proactively identify and own any issues, and … the ITGC, GRC, Data Governance and Infosec teams who have a wide array of skills and knowledge Extensive support and training materials available relating to NIST, IT General Controls, PCI-DSS and GDPR Other resources as required Benefits We are committed to being a truly inclusive retailer, so you’ll be welcomed whoever you are and wherever you More ❯
security best practice and control implementation What We’re Looking For Hands-on experience with security tooling (EDR, vulnerability scanning, access control) Familiarity with Security frameworks such as NIST, PCI-DSS, and GDPR Experience working with Microsoft environments (O365, Azure) Clear communicator, able to engage with both IT and non-technical teams Full UK driving licence required due More ❯
Stoke-on-Trent, England, United Kingdom Hybrid / WFH Options
JR United Kingdom
on technical experience securing operating systems and security tools. Experience conducting security investigations. Knowledge of standard information security practices. Understanding of current security technologies and their applications. Awareness of PCIDSS current standards. Excellent communication, documentation skills, and high attention to detail. Strong organizational skills and ability to meet deadlines. Pragmatic approach to governance and risk management. Flexible More ❯
SMEs and Business Associates. Preferred • Experience in working in an Agile environment and a good understanding of Agile processes. • Enhance delivery systems with Continuous Integration & Deployment. • Demonstrated knowledge of PCI and Security Coding Standards. PCF/Docker/Kubernetes Jenkins. • Demonstrated knowledge of OAuth token-based authentication protocol. • Ability to do the pipeline setup & Integrations with other applications and More ❯
Stoke-on-Trent, England, United Kingdom Hybrid / WFH Options
bet365
experience securing operating systems and using security tools. Experience conducting security investigations. Knowledge of standard information security practices. Awareness of developments in security technologies and their applications. Understanding of PCIDSS at the current version. Excellent communication, documentation skills, and high attention to detail. Strong organizational skills and ability to meet deadlines. Pragmatic approach to governance and risk More ❯
field, or equivalent certifications or experience Extensive experience in technology and operations, preferably within the financial services or banking industry. Good understanding of security protocols and compliance standards (e.g., PCI-DSS, CIS, NIST). Experience in a Data Centre Operations or other similar critical operations role. Strong and demonstrable process management and development experience in a live operational More ❯
within the Practice by defining standards, sharing knowledge, and mentoring peers Influence customer outcomes through expert knowledge of DevSecOps tools and compliance frameworks like NIST, CIS, SOC 2, and PCIDSS You'll travel to client sites across the UK, working directly with business and technical stakeholders to drive real business value What you'll need Proven experience More ❯
Provide comprehensive IT support, manage office networks and WiFi, and ensure all systems are utilised to their full potential. Compliance Management Lead efforts to achieve and maintain compliance with PCIDSS standards, ensuring secure handling of payment data. Oversee the implementation and maintenance of ISO certifications, ensuring adherence to relevant standards and successful audits. Ensure compliance with SOC … executing IT projects, from initial concept through to completion, ensuring they deliver value and efficiency to the business. Conducting regular compliance audits and coordinating with external auditors to meet PCIDSS, ISO, and SOC 2 requirements. Providing hands-on support for IT issues, setting up new user accounts, and managing equipment. Conducting regular IT training sessions for staff … systems. Experience with cloud services, particularly Google Workspace, Microsoft 365, Azure, Intune, and Jamf MDM. Proven ability to manage office networks, WiFi, and IT security measures. Strong knowledge of PCIDSS, ISO certification requirements, and SOC 2 compliance frameworks. Familiarity with conducting risk assessments and implementing controls to meet compliance standards. Strong project management skills with a track More ❯
leaders, supporting them in meeting their compliance obligations and managing risks across the business and its subsidiaries. Key Skills: Strong knowledge of regulations and standards (e.g., GDPR, PECR, HIPAA, PCI, SOC2, NIST, DORA, ISO27001), with experience in implementation and monitoring. Building frameworks. Setting up controls and policies. Building best practices for each territory (multi-country). Key Responsibilities: Design … telecommunications or similar. Experience managing risk frameworks across multiple regions and entities, including risk appetite calibration and impact assessment. Strong knowledge of regulations and standards (e.g., GDPR, PECR, HIPAA, PCI, SOC2, NIST, DORA, ISO27001), with experience in implementation and monitoring. Excellent communication skills, capable of presenting complex concepts clearly to senior stakeholders. Ability to work independently and as part More ❯