efforts to implement and continuously improve our information security controls, aligning with ISO27001, Cyber Essentials+, and other compliance standards. From managing penetration testing and vulnerabilityremediation to ensuring robust data governance and disaster recovery plans, your leadership will ensure the integrity, confidentiality, and availability of our systems and More ❯
Manchester, Lancashire, United Kingdom Hybrid / WFH Options
Taxually
practices to protect our infrastructure, applications, and data. The ideal candidate will have extensive experience in security governance, risk management, cloud security, incident response, vulnerability management, penetration testing, and leading business continuity and disaster recovery tests. You will drive ongoing compliance with various security frameworks and collaborate with internal … renewals. Ensure data protection and privacy controls align with regulatory requirements, continuously updating measures to safeguard sensitive information and maintain compliance. Cloud Security, Risk & Vulnerability Management Implement AWS and Azure security best practices across infrastructure, including IAM, networking, logging, and encryption. Conduct regular security risk assessments and Business Impact … Analysis (BIA) to evaluate vulnerabilities. Oversee security patching and vulnerability management to ensure timely remediation of threats. Monitor cloud security posture and recommend remediation strategies to reduce attack surfaces. Enforce CIS benchmarks, OWASP principles, and NIST cybersecurity controls across cloud and application security. Oversee third-party security More ❯
Manchester, Lancashire, United Kingdom Hybrid / WFH Options
Michael Page (UK)
The Successful Applicant Solid experience in AWS Security Practical experience in automation, scripting, track record in automating security process Experience in vulnerabilities assessment and remediation Experience in using Terraform or other infrastructure-as-code tools Strong understanding of information security principles and practices. Familiar with fast-paced environment What More ❯
Liverpool, England, United Kingdom Hybrid / WFH Options
Maxwell Bond
across the business. Contribute to third-party security reviews and due diligence checks. Work with IT and security teams to monitor vulnerabilities and support remediation activities. Help coordinate security awareness initiatives to promote best practices across the organisation. Provide input during audits and security assessments. Support the wider InfoSec More ❯
operator customers in a global marketplace? What You'll Do: Enhance the security of our technology, wider organisation, and suppliers. Manage and prioritise the remediation of vulnerabilities in our SaaS platform using secure development practices. Implement and oversee vulnerability management programs. Communicate effectively with technical and non-technical … NIST Framework, OWASP top ten, SANS and NCSC Guidance) Technical knowledge of information systems, infrastructure, and networks Security monitoring and testing technologies such as vulnerability scanning, penetration testing, SIEM, IDS Experience with vulnerability management tools and processes (Rapid 7, Wiz etc.) Experience of operating with and to the More ❯
aligned with industry best practice and regulatory standards. Take the lead on third-party risk assessments and security audits. Collaborate with technical teams on vulnerability management and remediation planning. Provide input on secure design and architecture of new systems and solutions. Monitor and enhance security tooling and incident More ❯
can explain technical security concepts to non-technical audiences. Key job responsibilities Identify, evaluate and communicate security threats, risks and vulnerabilities, and propose recommended remediation for security issues. Contribute to the development of security automation and security posture improvements. Track and report on the effectiveness of AWS detective controls … security controls for customers. This is done by leveraging data on common attack techniques to enhance detective controls and incident response, then building auto-remediation capabilities to minimize disruption to customer workloads. When a security event does happen, you will be there provide guidance. About the team Diverse Experiences … such as HTTP, DNS and TCP/IP - Experience with programming languages such as Python. PREFERRED QUALIFICATIONS - Knowledge of common system security vulnerabilities and remediation techniques. - Understanding of the tools, tactics, and techniques used by threat actors during security events. - Familiarity/experience with AWS services and security concepts. More ❯
cybersecurity risk management framework, including procedures and tools for identifying, assessing, monitoring, and reporting cybersecurity risks and vulnerabilities. Support the execution of risk assessments, vulnerability assessments, and penetration testing to identify potential cybersecurity risks and their impact on the organization. Provide dedicated security functions in accordance with the needs … 6+ years information security experience in a large and complex business environment 3+ years experience identifying and remediating application security risks as part of vulnerability assessments and remediation programs Strong knowledge of the development of application security assessment and code review methodologies. Strong knowledge of application security vulnerabilities … remediation and mitigation techniques, and secure coding practices Working knowledge of automated application security scanning tools such as Qualys, Prisma Cloud or other similar commercial solutions. Working knowledge of manual assessment tools, automation scripts and other commercial and open source tools is preferred. Strong analytical skills to troubleshoot technical More ❯