be cyber resilient, supporting Transformation Directorate's purpose of delivering the best care and outcomes for the NHS. The Cyber Operations sub-directorate consists of 4 operational areas: Cyber Security Operations Unit (CSOU) - SIO Cyber Delivery Unit (CDU). Cyber Improvement Programme. Chief Information Security Office Function (CISO) The CISO Function consists of four teams, these are CISO … Portfolio Office, Secure (by Design), Security Assurance, and Security Governance, Risk & Compliance (GRC). The post of Cyber Security Lead - Security Assurance has been awarded a Recruitment and Retention Premia (RRP) in response to current labour market conditions. In recognition of this, the role attracts an additional monthly RRP payment equal to 30% per annum. Please … be aware that RRP is non-contractual and subject to review. Main duties of the job This role is part of the Security Assurance team, which acts as a second line of defence and provides evidence-based confidence in the effectiveness of NHS England's cyber security controls, processes, and systems. It supports informed assurance by: Evaluating control More ❯
Job summary NHS England's Chief Information Security Office (CISO) Function's purpose is to enable safe care and build public trust by strengthening the cyber resilience of the NHS. The CISO supports the Transformation Directorate's purpose of delivering the best care and outcomes for patients, and enables faster, safer digital transformation of the NHS. As part of … the CISO Function the Senior Cyber Security Advisor sit in the Secure Consulting Team who provide specialist cyber security consultancy services to NHS England's Critical National Infrastructure and major national services, ensuring these services and digital programmes are Secure by Design. Senior Cyber Security Advisors ensure NHS England's systems operate from a cyber resilient architecture. … They provide detailed cyber guidance to programme delivery teams, including architecture, software engineering and infrastructure, supporting the management of cyber risk. This is an exciting opportunity to help deliver cyber resilient systems for the NHS. You'll be given the support and autonomy to use your skills, knowledge, and experience, to make a real impact on improving people's More ❯
Are you currently working for an IT provider but ready to step into the world of dedicated Cyber Security? We have an exciting opportunity for an Information Security Consultant looking to elevate their career. We're looking for someone with hands-on experience in ISO 27001 implementation and auditing, and expertise in NIST to drive our Compliance Team … s service offerings forward. Work with a innovative, industry-leading Cyber Security team Play a key role in the development of internal and client security programs Contribute to significant projects that support clients' compliance and risk management goals If you're ready to make an impact in Cyber Security, this role is for you! Responsibilities: Ensure … protection of information assets and technologies Participate in security audits like ISO27001, ISO27701, ISO20000, NIST-CSF, and IASME Governance Conduct and document internal audits for our clients Deliver security awareness training, including public speaking engagements Manage Third-Party Risk Management (TPRM) including vendor security reviews Assist the Sales Team with scoping engagements and delivering valuable services More ❯
Bradford, West Yorkshire, Yorkshire, United Kingdom Hybrid / WFH Options
Yorkshire Water
systems for protecting personal and business-sensitive information. Providing support and guidance on data privacy impact assessments (DPIAs) under the guidance of the DPO. Ensuring staff complete mandatory information security training and producing regular compliance reports. Supporting the DPO and management in responding to information security incidents and participating in information governance projects. What skills & qualifications you … understanding of the Data Protection Act (DPA) 2018 and the General Data Protection Regulations (GDPR). Understanding of the Environmental Information Regulations (EIR) 2004,. Broad knowledge of Information Security best practices. Practical experience in developing and implementing policies and procedures. Practical experience in data protection, including leading change, writing, and embedding policy and compliance standards. Excellent written and … problem-solving skills, along with excellent analytical abilities. You will also benefit from having: ISEB qualification in Data Privacy or Practitioner Certificate in Data Protection, and Certificate in Information SecurityManagement Principles (CISMP) or equivalent. Experience dealing with subject access and Environmental Information Regulations (EIR) requests. Practical experience in carrying out compliance activities such as reviews and audits. More ❯
seeking a technically strong IT Compliance & Service Manager to lead their ISO27001 compliance programme and oversee IT service delivery. You'll manage outsourced IT service providers, execute our information securitymanagement system (ISMS), and ensure effective Microsoft 365 governance. This is a senior, high-impact role requiring initiative, technical depth, and strong vendor relationship management skills. You … governance best practices across the organisation. Key Responsibilities ISO 27001 & IT Governance Execute ISMS rollout and maintain policies, processes, and controls aligned with ISO 27001 Develop and maintain IT security policies, procedures, and standards Support internal audits, risk assessments, and compliance reporting Help steer the overall ISMS programme and ensure audit readiness Third-Party Service Management & ITSM Manage … Governance Work with service providers to ensure M365 is configured, secured, and optimised Develop governance policies and promote best practices across the business Monitor compliance with licensing and security requirements Stakeholder Engagement Serve as IT representative on the Risk Committee and contribute to the Change Board Partner with internal teams on facilities-related IT requirements Act as trusted advisor More ❯
Leeds, Yorkshire, United Kingdom Hybrid / WFH Options
Bupa
the Bupa Care Services as an Application IT Service Owner, for a predominantly SaaS environment. We are looking for experienced IT professionals with a strong background in Application Service Management, Service Optimisation, Resilience and Continuous Improvement practises to join our growing Technology team. How you'll help us make health happen: Gather feedback on service performance and establish improvement … of new products and services. Collaborate with Care Systems Support and Service Desk for seamless end-to-end service. Act as a conduit and escalation point for incident and security management. Manage the Configuration Management Database (CMDB) and ensure application/infrastructure interdependencies are understood. Perform daily tasks to keep applications running effectively. Manage obsolescence and maintain relevant … registers. Ensure security and compliance of technology products with Enterprise Policy. Lead incident response, communicate with stakeholders, and conduct root cause analysis. Identify and implement service automation options. Conduct regular business continuity tests. Drive continuous improvement at product and service levels. Ensure thorough testing and quality standards for product changes and updates. Manage release processes and develop roll-back More ❯