Oxford, Oxfordshire, United Kingdom Hybrid / WFH Options
Nomios
we offer an incredible opportunity to be part of an experienced team, build your skills, and grow professionally. Dionach by Nomios holds impressive certifications, including CREST, Cyber Scheme, CHECK, PCI QSA, SWIFT CSCF and ISO 27001. With our focus on enhancing customers' security and fostering team development,be joining a company that prioritizes both your growth and the safety … within sizeable projects, conduct ISO 27001 audits, help implement aspects of ISO 27001, and engage in risk management. Furthermore, there is potential for growth into such diverse fields as PCIDSS, privacy, and business continuity. Essential experience and skills: Recognized ISO 27001 Lead Auditor qualification. Significant experience in auditing ISO 27001 based Information Security Management Systems. Significant experience … Experience of AI governance and auditing or implementing an ISO 42001 AIMS Information security qualifications such as CISSP, CISA, or CISM. Familiarity with GRC cloud-based systems. Experience of PCIDSS or a PCI QSA. Experience auditing SWIFT CSCF. Developing and providing training. Writing policies and technical documents. Managing a team or leading teams. If you are More ❯
Sevenoaks, Kent, England, United Kingdom Hybrid / WFH Options
GerrardWhite
Contract Role: PCICardPayment Project Manager Location: Hybrid (remote and Manchester)We are seeking an experienced Project Manager with a strong background in PCI compliance and cardpayment projects to lead the delivery of a high-profile programme.Key Responsibilities: Drive end-to-end delivery of cardpayment projects, ensuring compliance with PCIDSS standards. Coordinate … project plans, budgets, risks, and reporting to senior leadership. Ensure secure, scalable, and compliant payment solutions are implemented. Essential Skills & Experience: Proven track record as a Project Manager in PCIDSS and card payments environments. Strong understanding of payment gateways, acquiring banks, and card schemes. Experience managing compliance and regulatory projects within financial services, retail, or e-commerce. More ❯
Guildford, Surrey, England, United Kingdom Hybrid / WFH Options
Sanderson
security controls catalogue, policies, and procedures aligned with NIST CSF Collaborate with business units to integrate security measures into operations Support compliance activities for frameworks such as Cyber Essentials, PCIDSS, and the Group Information Security Framework Facilitate reviews and updates to ensure controls remain effective against evolving threats Essential skills: Minimum 2 year's experience in information … controls catalogue in a financial services environment (highly desirable) Proven experience in delivering security projects within a federated organisation Desirable skills: Knowledge of NIST CSF, ISO 27001, Cyber Essentials, PCIDSS, DORA Understanding of risk methodologies and data analysis for reporting Strong documentation skills (control matrices, process flows, SOPs) Excellent communication skills for both technical and non-technical More ❯
Jam Management Consultancy Limited T/A JAM RECRUITMENT
Role Our client, a leading organisation in Berkshire, is seeking an experienced Information Security Specialist with in-depth knowledge of ISO 9001, ISO 14001, ISO 22301, ISO 27001, and PCI-DSS compliance. This role will be central to designing, implementing, and maintaining best-in-class security and compliance frameworks, ensuring that all information assets and operational processes are … safeguarded to the highest standards. Key Responsibilities Develop, implement, and maintain compliance with ISO , and PCI-DSS standards. Conduct risk assessments, security audits, and vulnerability testing across systems and processes. Lead incident response activities, ensuring rapid and effective mitigation. Collaborate with internal stakeholders and external auditors to achieve and maintain certifications. Deliver organisation-wide security and compliance awareness … and report on security performance, providing actionable recommendations. Essential Skills & Qualifications ISO 27001 Lead Implementer or Lead Auditor certification (or equivalent). Demonstrable experience managing compliance for ISO , and PCI-DSS. Strong understanding of governance, risk management, and regulatory compliance. Proficiency with security monitoring tools and incident management processes. Excellent analytical, communication, and leadership skills. Desirable Knowledge of GDPR More ❯
assessments to identify material gaps, analyzing potential risks, and monitoring progress on maturity uplifting across security functions. Supporting compliance activities with the Group Information Security Framework, Cyber Essentials, and PCIDSS attestation. Collaborating with the wider organization to integrate control testing and risk management activities into the existing governance framework. Assisting cross-functional teams and business units in … record of security transformation and delivery of security projects, particularly within a federated organisation. Strong knowledge of Information Security and compliance frameworks, including NIST CSF, ISO 27001, Cyber Essentials, PCIDSS, and DORA, and the ability to design controls that align with these standards. Ability to analyse data and generate reports using tools like Excel and Power BI More ❯
assessments to identify material gaps, analyzing potential risks, and monitoring progress on maturity uplifting across security functions. Supporting compliance activities with the Group Information Security Framework, Cyber Essentials, and PCIDSS attestation. Collaborating with the wider organization to integrate control testing and risk management activities into the existing governance framework. Assisting cross-functional teams and business units in … record of security transformation and delivery of security projects, particularly within a federated organisation. Strong knowledge of Information Security and compliance frameworks, including NIST CSF, ISO 27001, Cyber Essentials, PCIDSS, and DORA, and the ability to design controls that align with these standards. Ability to analyse data and generate reports using tools like Excel and Power BI More ❯
london (city of london), south east england, united kingdom
Sanderson
assessments to identify material gaps, analyzing potential risks, and monitoring progress on maturity uplifting across security functions. Supporting compliance activities with the Group Information Security Framework, Cyber Essentials, and PCIDSS attestation. Collaborating with the wider organization to integrate control testing and risk management activities into the existing governance framework. Assisting cross-functional teams and business units in … record of security transformation and delivery of security projects, particularly within a federated organisation. Strong knowledge of Information Security and compliance frameworks, including NIST CSF, ISO 27001, Cyber Essentials, PCIDSS, and DORA, and the ability to design controls that align with these standards. Ability to analyse data and generate reports using tools like Excel and Power BI More ❯
Snelshall West, Milton Keynes, Buckinghamshire, England, United Kingdom
DS Smith
is well defined. Engage risk review and assurance activities across existing suppliers. Provide IT and business advice on aspects of security standards and regulations such as ISO27001, NIST CSF, PCIDSS, NISD and NIS2. Engage with I&T system owners to provide training in relation to information security, cyber resilience, phishing, and facilitation of cyber scenario desktop simulations … consequences across both IT and manufacturing environments in manufacturing or similar industries. Experience working with information security standards and frameworks such as and regulations such as ISO27001, NIST CSF, PCIDSS, NISD and NIS2. Proven analytical, problem-solving, planning, project delivery and supplier work packages management skills. Demonstrable experience of engaging across all levels of a company in More ❯
Oxford, Oxfordshire, United Kingdom Hybrid / WFH Options
Nomios
we offer an incredible opportunity to be part of an experienced team, build your skills, and grow professionally. Dionach by Nomios holds impressive certifications, including CREST, Cyber Scheme, CHECK, PCI QSA, SWIFT CSCF and ISO 27001. With our focus on enhancing customers' security and fostering team development,be joining a company that prioritizes both your growth and the safety … executing compliance or governance projects within complex organisation Desirable qualifications and experience: Information security qualifications such as CISSP, CISA, or CISM. Familiarity with GRC cloud-based systems. Experience of PCIDSS or a PCI QSA. Experience auditing SWIFT CSCF. Developing and providing training. Writing policies and technical documents. Managing a team or leading teams. If you are More ❯
Reading, Berkshire, South East, United Kingdom Hybrid / WFH Options
Queen Square Recruitment Limited
Application SecurityData Protection & Encryption Kubernetes, Containers, and DevSecOps/MLOps practices SIEM, logging, and monitoring Zero Trust architectures Skilled in applying frameworks such as NIST CSF, ISO 27001, PCIDSS, CSA CCM, NIST AI RMF . Hands-on with tools for vulnerability management, secrets management, CSPM, and CWPP . Relevant certifications strongly preferred (CISSP, CCSP, TOGAF, AWS More ❯
5+ years in InfoSec, IT Security or Ops within a regulated environment Certification required: CISSP, CISM, CRISC, or equivalent Strong knowledge of ISO27001:2022, SOC2 Type II, NIST CSF, PCIDSS, GDPR, DORA Confident with security risk assessments, audit responses, and policy governance Hands-on cloud security experience: ideally with Azure and the Shared Responsibility Model Comfort with More ❯
london (city of london), south east england, united kingdom
Prism Digital
5+ years in InfoSec, IT Security or Ops within a regulated environment Certification required: CISSP, CISM, CRISC, or equivalent Strong knowledge of ISO27001:2022, SOC2 Type II, NIST CSF, PCIDSS, GDPR, DORA Confident with security risk assessments, audit responses, and policy governance Hands-on cloud security experience: ideally with Azure and the Shared Responsibility Model Comfort with More ❯
5+ years in InfoSec, IT Security or Ops within a regulated environment Certification required: CISSP, CISM, CRISC, or equivalent Strong knowledge of ISO27001:2022, SOC2 Type II, NIST CSF, PCIDSS, GDPR, DORA Confident with security risk assessments, audit responses, and policy governance Hands-on cloud security experience: ideally with Azure and the Shared Responsibility Model Comfort with More ❯
Reading, Berkshire, South East, United Kingdom Hybrid / WFH Options
Queen Square Recruitment Limited
on cloud security experience (AWS, Azure, or GCP multi-cloud preferred). In-depth understanding of financial services compliance requirements and frameworks (e.g., NIST CSF, ISO 27001, CSA CCM, PCIDSS). Expert-level knowledge of IAM, network security, encryption, API and application security, container security, and SIEM strategies. Proven leadership in DevSecOps practices and securing modern development More ❯
London, South East, England, United Kingdom Hybrid / WFH Options
Sanderson
and blueprints. What You'll Bring Prior and proven experience gained as a Security Architect or in a Technical Cyber Consultant/Engineer role. Expertise in: Security legislation (GDPR, PCIDSS, ICO) Frameworks (ISO 27001, NIST CSF, CIS Controls v8) HMG/NCSC policies and guidance Cloud security (AWS, Azure) Microservice architectures PKI, Cryptography, Privileged Access Management Certifications More ❯
finish. Bonus points if you bring: Experience with AppSec and DevSecOps. Hands-on knowledge of Azure, AWS, and/or Google Cloud. Familiarity with standards like ISO2700X, ISO31000, NIST800, PCI-DSS. Certifications such as CISSP, CCSP, CRISC, CISM, or SABSA. Why QBE? At My Best? At QBE, we want our people to feel rewarded and inspired to perform at More ❯
fraud Onboard key customer-facing and payment systems into the security monitoring platform Perform threat hunting and detection engineering to identify and address emerging risks Support security audits, compliance (PCI-DSS), and post-incident reviews Mentor junior team members and contribute to a culture of continuous improvement Participate in the on-call rotation to ensure fast, effective incident More ❯
Reading, Berkshire, South East, United Kingdom Hybrid / WFH Options
Queen Square Recruitment Limited
and CI/CD pipelines. Advanced knowledge of TCP/IP, system administration, OSI model, and defense-in-depth. Familiarity with control frameworks and regulations (ISO 27001, NIST CSF, PCIDSS, CIS, CSA CCM, etc.). Demonstrated leadership and people management skills (mentoring, coaching, performance management). Strong interpersonal and executive communication skills, including C-level reporting. Experience More ❯
South Croydon, Surrey, England, United Kingdom Hybrid / WFH Options
Gold Group Ltd
to ensure security is embedded in all new and existing applications, systems, and network infrastructure* Risk Management & Compliance: Ensure compliance with industry regulations and data protection laws (e.g. GDPR, PCI-DSS)* Continuous Improvement: Stay informed of the latest cybersecurity threats, trends, and technologies, recommending and implementing improvements to enhance security defences* Change Management: Establish and lead a Change More ❯
London, South East, England, United Kingdom Hybrid / WFH Options
Sanderson
experience to define and implement security architectures and solutions. Requirements: 5+ year's working in a Security Architect/technical role Recent MOD experience Security related legislation (e.g. GDPR, PCIDSS, ICO requirements) Security Control Frameworks such as ISO 27001, NIST CSF and CIS Controls v8 HMG and NCSC security policies, standards and guidance Cloud security including Amazon More ❯
in the cybersecurity landscape. Continuously enhance skills in areas such as incident response, threat hunting, and the utilisation of threat intelligence. Support VBG's compliance with Audit, Data Protection, PCI and other security standards. What We're Looking For: An understanding of the current cyber threat landscape. Awareness of various cyber threats, attack vectors, and common techniques. Proficiency in More ❯
written communication skills, and the ability to write reports, processes and procedures in a structured manner Previous exposure to a variety of compliance and regulatory requirements such as FCA, PCI, ISO27001, GDPR and other global regulations Experience running a global team sitting in different time zones At WTW, we believe difference makes us stronger. We want our workforce to More ❯
Oxford, Oxfordshire, United Kingdom Hybrid / WFH Options
Nomios
assurance services, we offer an incredible opportunity to be part of an experienced team, build your skills, and grow professionally. Dionach by Nomios holds impressive certifications, including CREST, CHECK, PCI QSA, and ISO 27001. With our focus on enhancing customers' security and fostering team development, you will be joining a company that prioritizes both your growth and the safety More ❯
Hemel Hempstead, Hertfordshire, South East, United Kingdom Hybrid / WFH Options
Eckoh PLC
Vue, Angular) Familiarity with message-based architectures and tools like RabbitMQ, Kafka, or Kinesis Demonstrable experience building LLM backed systems and applications Understanding of regulatory and compliance frameworks (e.g., PCI, ISO 27001, SOC 2, GDPR) and how to apply them in software and cloud system design AWS certifications (e.g., Developer Associate, Data Analytics Specialty) Please click the APPLY button More ❯
coordinate audit activities, liaising with internal stakeholders, clients, and external auditors Prepare for audits, including gathering pre-audit information and supporting documentation Run operational audit programmes covering Security (e.g., PCI-DSS, ISAE 3402, ISO/IEC 27001, ENS), Business Continuity (e.g., ISO 22301, KRITIS), and ESG/Sustainability (e.g., ISO 14001, EcoVadis) Evaluate internal compliance and implement risk More ❯