secure configurations including CUI/CDI. Advanced understanding of IT infrastructure, including servers, storage, and virtualization. Familiarity with cloud security (Azure, AWS, etc.). Knowledge of compliance frameworks like PCIDSS, HIPAA, SOC 2. Proficiency with Windows, Linux, macOS, and network protocols. Understanding threat intelligence platforms and attack mitigation techniques. Strong problem-solving skills. Certifications: CISSP, CEH, Security+ More ❯
Telford, England, United Kingdom Hybrid / WFH Options
JR United Kingdom
Working remotely with occasional be in office in Essex. What You’ll Do Assess compliance with internal security policies and industry standards (e.g., ISO/IEC 27001/2, PCI-DSS). Conduct supplier risk assessments and third-party due diligence. Support vulnerability assessments, incident investigations, and operational resilience activities. Monitor the effectiveness of security controls to ensure … Experience first and second line support Strong analytical thinking and attention to detail. Familiarity with compliance frameworks like ISO 27001/27002, NIST Cybersecurity Framework – 2.0 ideally version 2, PCIDSS v4.0 Exceptional communication and stakeholder engagement skills. Experience with Microsoft Azure Security tools (Defender for Endpoint, Sentinel, Purview). Understanding of ITIL, data protection laws (UK GDPR More ❯
Wolverhampton, England, United Kingdom Hybrid / WFH Options
JR United Kingdom
Working remotely with occasional be in office in Essex. What You’ll Do Assess compliance with internal security policies and industry standards (e.g., ISO/IEC 27001/2, PCI-DSS). Conduct supplier risk assessments and third-party due diligence. Support vulnerability assessments, incident investigations, and operational resilience activities. Monitor the effectiveness of security controls to ensure … Experience first and second line support Strong analytical thinking and attention to detail. Familiarity with compliance frameworks like ISO 27001/27002, NIST Cybersecurity Framework – 2.0 ideally version 2, PCIDSS v4.0 Exceptional communication and stakeholder engagement skills. Experience with Microsoft Azure Security tools (Defender for Endpoint, Sentinel, Purview). Understanding of ITIL, data protection laws (UK GDPR More ❯
Shrewsbury, England, United Kingdom Hybrid / WFH Options
JR United Kingdom
Working remotely with occasional be in office in Essex. What You’ll Do Assess compliance with internal security policies and industry standards (e.g., ISO/IEC 27001/2, PCI-DSS). Conduct supplier risk assessments and third-party due diligence. Support vulnerability assessments, incident investigations, and operational resilience activities. Monitor the effectiveness of security controls to ensure … Experience first and second line support Strong analytical thinking and attention to detail. Familiarity with compliance frameworks like ISO 27001/27002, NIST Cybersecurity Framework – 2.0 ideally version 2, PCIDSS v4.0 Exceptional communication and stakeholder engagement skills. Experience with Microsoft Azure Security tools (Defender for Endpoint, Sentinel, Purview). Understanding of ITIL, data protection laws (UK GDPR More ❯
remote with occasional travel to the office in Essex. What You’ll Do Assess compliance with internal security policies and industry standards (e.g., ISO/IEC 27001/2, PCI-DSS). Conduct supplier risk assessments and third-party due diligence. Support vulnerability assessments, incident investigations, and operational resilience activities. Monitor the effectiveness of security controls to ensure … with first and second line support. Strong analytical thinking and attention to detail. Familiarity with compliance frameworks like ISO 27001/27002, NIST Cybersecurity Framework 2.0 (preferably version 2), PCIDSS v4.0. Exceptional communication and stakeholder engagement skills. Experience with Microsoft Azure Security tools (Defender for Endpoint, Sentinel, Purview). Understanding of ITIL, data protection laws (UK GDPR More ❯
and security best practice (ISO27001, NIST CSF, Cyber Essentials, OWASP). You’ll have demonstrable knowledge and adherence to data protection legislation and regulatory requirements (e.g. GDPR, FCA SYSC, PCIDSS), as well as extensive experience and understanding of security analysis tools, defensive technologies and other security technologies (e.g. SIEM, VAS, IDS/IPS, Firewalls, IAM, NAC, patch More ❯
Broad technical knowledge of cyber security controls demonstrated by attainment of appropriate qualifications e.g. CISSP, ISO27001 Lead Implementor or relevant SANS GIAC or equivalent Knowledge of the NIST framework, PCIDSS, GDPR and NIS as well as NCSC cyber guidance. Experience working in an agile delivery environment would be highly advantageous. Specific cyber knowledge and demonstrable experience in More ❯
key risks and control weaknesses, providing practical and strategic recommendations for remediation. Evaluate compliance with internal policies, industry best practices, and regulatory requirements (e.g., FCA, PRA, GDPR, ISO 27001, PCI-DSS). Collaborate with business and IT stakeholders to understand operational processes and system architecture. Prepare detailed audit reports and present findings to senior management. Support external auditors More ❯
Meriden, Coventry, West Midlands, England, United Kingdom
Recruit4Talent
your existing skills while developing new ones, contributing to the strategic security objectives of the Company and ensuring adherence to critical accreditations, including ISO 27001, GDPR, Cyber Essentials, and PCI DSS. The successful candidate will demonstrate: Strong analytical skills with a meticulous approach to identifying and resolving security issues Excellent verbal and written communication abilities, with a knack for … expertise in information security Happy to travel occasionally to other sites as required. Desirable Experience: Demonstrable expertise in external audit, compliance, and security processes (ISO27001, GDPR, Cyber Essentials and PCIDSS) Microsoft accreditation or other recognised certifications (e.g. Microsoft Learning, CISA, CISM, CRISC, CCSP) would be very beneficial. Benefits: £25,000 - £35,000 salary depending on experience More ❯
your existing skills while developing new ones, contributing to the strategic security objectives of the Company and ensuring adherence to critical accreditations, including ISO 27001, GDPR, Cyber Essentials, and PCI DSS. The successful candidate will demonstrate: Strong analytical skills with a meticulous approach to identifying and resolving security issues. Excellent verbal and written communication abilities, with a knack for … expertise in information security. Happy to travel occasionally to other sites as required. Desirable Experience: Demonstrable expertise in external audit, compliance, and security processes (ISO27001, GDPR, Cyber Essentials and PCIDSS). Microsoft accreditation or other recognised certifications (e.g. Microsoft Learning, CISA, CISM, CRISC, CCSP) would be very beneficial. Benefits: £25,000 - £35,000 salary depending on experience. More ❯
Birmingham, England, United Kingdom Hybrid / WFH Options
Kerv Digital for Digital Transformation
for customer-readiness SQL Azure, Synapse Analytics (dataflows, Jupyter notebooks, on-demand SQL), Databricks, ADF Power BI, DAX, data flows SSIS Appreciation of information security standards such as ISO27001, PCI-DSS or Cyber Essentials BPSS clearance will be required on start Desirable experience: At least 3 years of public sector experience Azure data certifications (DP-203, DP More ❯
Coventry, England, United Kingdom Hybrid / WFH Options
Sainsbury's
What you need to know and show Effective collaboration with teams and stakeholders to drive the agenda. Experience in assurance testing across industry frameworks, such as NIST-CSF, ISO27001, PCI-DSS, GDPR, and IT General Controls. Strong organizational skills to coordinate outputs from stakeholders. Familiarity with key frameworks and regulations. Proactive approach to industry changes and implementation. Ability … and written. Support we will provide Support and guidance from your line manager. Access to ITGC, GRC, Data Governance, and Infosec teams. Training materials on NIST, IT General Controls, PCI-DSS, GDPR. Additional resources as needed. Qualifications We are committed to inclusivity and development. We offer flexible working, benefits, and a supportive environment to help you grow and More ❯
Coventry, England, United Kingdom Hybrid / WFH Options
hackajob
General Controls desirable Be highly organised and able to coordinate expected outputs from different stakeholders Familiar with key techniques and industry frameworks/regulations such as NIST-CSF, ISO27001, PCI-DSS, GDPR, and IT General Controls Pro-active with upcoming industry changes and ability to implement where necessary Be able to proactively identify and own any issues, and … the ITGC, GRC, Data Governance and Infosec teams who have a wide array of skills and knowledge Extensive support and training materials available relating to NIST, IT General Controls, PCI-DSS and GDPR Other resources as required Benefits We are committed to being a truly inclusive retailer, so you’ll be welcomed whoever you are and wherever you More ❯
security best practice and control implementation What We’re Looking For Hands-on experience with security tooling (EDR, vulnerability scanning, access control) Familiarity with Security frameworks such as NIST, PCI-DSS, and GDPR Experience working with Microsoft environments (O365, Azure) Clear communicator, able to engage with both IT and non-technical teams Full UK driving licence required due More ❯
Redditch, England, United Kingdom Hybrid / WFH Options
Airlife Ecuador
and server operations. Maintain and administer our cyber security policies, proactively safeguarding networks and systems through risk mitigation and patching. Lead cyber security initiatives ensuring ISO, Cyber Essentials and PCI accreditations are maintained and upheld. Ensure network and system security through patching and proactive industry awareness. Troubleshoot and resolve platform issues for internal and external customers. Lead disaster recovery More ❯
Stoke-on-Trent, England, United Kingdom Hybrid / WFH Options
JR United Kingdom
on technical experience securing operating systems and security tools. Experience conducting security investigations. Knowledge of standard information security practices. Understanding of current security technologies and their applications. Awareness of PCIDSS current standards. Excellent communication, documentation skills, and high attention to detail. Strong organizational skills and ability to meet deadlines. Pragmatic approach to governance and risk management. Flexible More ❯
Stoke-on-Trent, England, United Kingdom Hybrid / WFH Options
bet365
experience securing operating systems and using security tools. Experience conducting security investigations. Knowledge of standard information security practices. Awareness of developments in security technologies and their applications. Understanding of PCIDSS at the current version. Excellent communication, documentation skills, and high attention to detail. Strong organizational skills and ability to meet deadlines. Pragmatic approach to governance and risk More ❯
field, or equivalent certifications or experience Extensive experience in technology and operations, preferably within the financial services or banking industry. Good understanding of security protocols and compliance standards (e.g., PCI-DSS, CIS, NIST). Experience in a Data Centre Operations or other similar critical operations role. Strong and demonstrable process management and development experience in a live operational More ❯
within the Practice by defining standards, sharing knowledge, and mentoring peers Influence customer outcomes through expert knowledge of DevSecOps tools and compliance frameworks like NIST, CIS, SOC 2, and PCIDSS You'll travel to client sites across the UK, working directly with business and technical stakeholders to drive real business value What you'll need Proven experience More ❯
Provide comprehensive IT support, manage office networks and WiFi, and ensure all systems are utilised to their full potential. Compliance Management Lead efforts to achieve and maintain compliance with PCIDSS standards, ensuring secure handling of payment data. Oversee the implementation and maintenance of ISO certifications, ensuring adherence to relevant standards and successful audits. Ensure compliance with SOC … executing IT projects, from initial concept through to completion, ensuring they deliver value and efficiency to the business. Conducting regular compliance audits and coordinating with external auditors to meet PCIDSS, ISO, and SOC 2 requirements. Providing hands-on support for IT issues, setting up new user accounts, and managing equipment. Conducting regular IT training sessions for staff … systems. Experience with cloud services, particularly Google Workspace, Microsoft 365, Azure, Intune, and Jamf MDM. Proven ability to manage office networks, WiFi, and IT security measures. Strong knowledge of PCIDSS, ISO certification requirements, and SOC 2 compliance frameworks. Familiarity with conducting risk assessments and implementing controls to meet compliance standards. Strong project management skills with a track More ❯
We are hiring for Internal Security Assessor (ISA) -(PaymentCardIndustryDataSecurityStandard (PCIDSS)) Location : Solihull … West Midlands, England Conduct comprehensive PCIDSS assessments for a diverse portfolio of merchants and service providers. Should have a strong foundational understanding of internal security controls and PCIDSS requirements. Meticulously review and validate security controls, policies, and procedures, ensuring alignment with PCIDSS requirements. Execute on-site inspections, conduct insightful interviews, and … and accurate Reports on Compliance (RoC) and Attestations of Compliance (AoC), clearly documenting assessment findings. Maintain absolute independence and objectivity throughout all assessment engagements, ensuring the integrity of the PCIDSS program. Completion of PCI SSC QSA training and certification. Possession of at least one recognized industry certification (e.g., CISSP, CISA, CISM, GIAC). Prior work experience More ❯
Stoke-on-Trent, England, United Kingdom Hybrid / WFH Options
hackajob
security related technical investigations. Working knowledge of industrystandard information security practices. Knowledge of developments in security technologies and their applications. Awareness of PaymentCardIndustryDataSecurityStandard (PCIDSS) at current version. Excellent communication and documentation skills, as well as high attention to detail. Strong organisational skills and the ability to work to deadlines. Pragmatic approach More ❯
Expertise with security tools like SIEM, endpoint detection, and firewalls. Knowledge of scripting or automation tools such as Python or PowerShell. Familiarity with cloud security and compliance frameworks like PCI-DSS or HIPAA. Experience drafting workflows, procedures, and technical documentation. #INDIT firstName * lastName * Email Address * * Phone Number * * Attach Resume * Accepted file types: pdf, doc, docx, Max. file size More ❯
organisational, planning and communication. Collaborative mindset and ability to provide hands-on support Good knowledge and awareness of Risk, Security & Compliance industry best practices and frameworks (COSO, ISO , ISO , PCIDSS, etc) Results driven and ability to work under pressure 5+ years in the field Risk, Security and/or Compliance Experience of working with the FCA 5+ More ❯
own and scale their AWS infrastructure and security posture across their purchase and insights platforms. You'll step into a hands-on role and help them tackle challenges from PCI/SOC2 compliance to performance optimisation and cost-efficient migrations (including from their London DC to Frankfurt). What you'll do: Design secure, scalable AWS cloud infrastructure Terraform … CI/CD). Lead on platform security: zero trust, key management, secure SDLC. Drive observability, performance, and reliability across the stack. Champion security and compliance (PCIDSS, SOC2, ISO 27001). Support migrations, decommissioning, and cost/performance projects. What we're looking for: 5+ years in DevOps/SRE roles with a focus on security (AWS More ❯