Liverpool, England, United Kingdom Hybrid / WFH Options
Maxwell Bond
GRC / Governance / Risk / Compliance / Information Security / Infosec /ISO GRC / Governance / Risk / Compliance / Information Security / Infosec /ISO Information Security Analyst Liverpool City Centre … keen eye for detail. A proactive mindset and willingness to learn and grow in the role. Benefits: 25 days holiday + BH Enhanced maternity / paternity packages Employee wellbeing support including counselling sessions and CBT programmes Company pension and life assurance Recognition and reward platform, regular socials, and long … service awards Important Notes: Sponsorship isn’t available GRC / Governance / Risk / Compliance / Information Security / Infosec /ISO GRC / Governance / Risk / Compliance / Information Security / Infosec /ISOMore ❯
Birmingham, England, United Kingdom Hybrid / WFH Options
Experis UK
You can find out more about us at www.nettitude.com. If you want to review our research and tooling, then head on over to https: // labs.nettitude.com The role We are looking for a QSA to join our GRC team in the UK. This role is home-based … and NIST CSF ISO27001 gap analyses Helping our clients to implement Information Security Management Systems and achieve and maintain ISO27001 certification Conducting risk assessments Creating or supporting third-party risk management and audit programmes Essential skills and experience: Be a current QSA who has completed … Cyber Essentials Perform ISO27001 gap analyses Help our clients to implement Information Security Management Systems and achieve and maintain ISO27001 certification PCI DSS consultancy and gap analyses Assistance in implementing PCI DSS requirements such as policy writing Complete on-site assessments and reports on compliance More ❯
and recovery efforts, and conduct regular security risk assessments and audits. What you'll bring: Proven experience in a similar senior information security role / s, preferably with experience of working in organisations providing technology outsourcing services to large public and private sector organisations. Strong knowledge of information security … and risk management frameworks or standards, such as ISO/IEC27001, ISO/IEC 27005, NIST Cyber Security Framework, CIS, NCSC Cyber Assessment Framework, Ministry of Defence Joint Service Publications, Secure by Design and Privacy by Design … we'd love to hear from you! Although this role is advertised as full-time, we believe that flexibility at work can promote work / life balance, increase your motivation, reduce stress, and improve performance and productivity. We support different ways of working and can offer a range of More ❯
and direct the establishment and implementation of policies and procedures. The CISO is also usually responsible for information-related compliance (e.g. ISO/IEC27001 and SOC 2 certification). What you'll be doing Develop, implement and monitor a strategic, comprehensive enterprise … a combination of risk management, information security and IT jobs. Knowledge of common regulatory and information security management frameworks, such as ISO/IEC27001, NIST, SOC 2 and GDPR. Excellent written and verbal communication skills and high level of personal integrity. Innovative More ❯
Deep understanding of Windows Desktop and Server environments - Strong experience in Microsoft 365 and Entra ID (including SSO, policy management) - Strong networking knowledge (TCP / IP, DNS, DHCP) - Experience with virtualisation technologies (e.g., VMware, Hyper-V) - Familiarity with scripting (PowerShell, HTML, SQL, JSON) and system monitoring - Proficient in Remote … Endpoint Detection & Response (EDR), and disaster recovery tools - Hands-on support for a range of hardware including PCs, laptops, tablets, and mobile devices (Android / iOS) - Cloud experience (AWS preferred) - Comfortable working in and supporting ISO-regulated environments (ISO27001/ISO … tooling or IT project coordination What's in it for you? 25 days of annual leave plus public holidays, with the option to buy / sell additional days Comprehensive benefits package, including professional development opportunities, EV scheme, cycle-to-work, private health insurance, and more Flexible working arrangements, with More ❯
Bristol, Gloucestershire, United Kingdom Hybrid / WFH Options
Duel
Information Security Engineer Hybrid: Remote / Bristol Reporting to: Joe Mathews - VP of Technology Salary: £45,000 - £50,000 About Us Duel is a SaaS company on a mission to make Brand Advocacy the industry standard playbook for building brilliant retail brands. It was founded by world record breaking … a timely manner. Learn and implement security monitoring and automation solutions to detect and respond to threats. Help manage security tooling, including SIEM, IDS / IPS, and vulnerability scanning solutions. Work closely with engineers to support secure coding practices and help embed security considerations early in the development process. … as Secureframe, Drata, or Vanta. Experience working with pen testing and bug bounties a plus. Basic understanding of security tools such as SIEM, IDS / IPS, and vulnerability management solutions. Experience or knowledge of cloud security (AWS, GCP, or Azure). Awareness of security best practices in application and More ❯
About the Role We are seeking an experienced SOC 2 / IT GRC Specialist Contractor to support and guide our SOC 2 Type II accreditation program. This is a critical role in a fast-moving, regulated environment, requiring hands-on experience with SOC 2 frameworks, ISO27001 … guidance to internal teams to embed a culture of compliance and readiness. Support the development, implementation, and continuous improvement of the ISO/IEC27001-aligned ISMS Required Skills & Experience Demonstrable experience leading or supporting a successful SOC 2 and ISO27001 implementations. Solid understanding of the AICPA Trust Services Criteria and related IT / security controls. Experience working within GxP environments, particularly in relation to SaaS applications or hosted infrastructure. Proven ability to design and document policies and procedures that satisfy both SOC 2 and More ❯
posture. You’ll work with industry-leading frameworks like Cyber Essentials (CE), Cyber Essentials Plus (CE+), NIST 2, ISO27001/ 223001, DORA , and more. This is the perfect opportunity if you’re looking for more autonomy, rapid career growth, and a dynamic environment —far … and principal consultants as needed. Lead and contribute to diverse security projects, including third-party risk management, mergers and acquisitions, security policy development, ISO27001 implementation, audits and compliance (NIS 2, DORA), risk assessments, remediation programs, and more. Lead, manage, and deliver full cyber security engagements … Bring as a Senior Cyber Security Consultant: 2+ years of information security consulting Experience of Governance, Risk, and Compliance (GRC) frameworks such as ISO27001, ISO 223001, NIST, DORA and other regulatory standards. Experience conducting Cyber Essentials and Cyber Essentials Plus assessments and guiding More ❯
london, south east england, united kingdom Hybrid / WFH Options
55 Exec Search
posture. You’ll work with industry-leading frameworks like Cyber Essentials (CE), Cyber Essentials Plus (CE+), NIST 2, ISO27001/ 223001, DORA , and more. This is the perfect opportunity if you’re looking for more autonomy, rapid career growth, and a dynamic environment —far … and principal consultants as needed. Lead and contribute to diverse security projects, including third-party risk management, mergers and acquisitions, security policy development, ISO27001 implementation, audits and compliance (NIS 2, DORA), risk assessments, remediation programs, and more. Lead, manage, and deliver full cyber security engagements … Bring as a Senior Cyber Security Consultant: 2+ years of information security consulting Experience of Governance, Risk, and Compliance (GRC) frameworks such as ISO27001, ISO 223001, NIST, DORA and other regulatory standards. Experience conducting Cyber Essentials and Cyber Essentials Plus assessments and guiding More ❯
network telemetry technologies. Providing support to members of the wider Operations team as required. Support & maintain the company objectives of ISO 9001 / 18001 /27001 accreditation. Key Skills and Experience: 3 - 5 years of experience on a service provider network in Operations, Engineering … operational experience with carrier-class routers, console servers & switches, (experience with Juniper and Cisco required). Excellent knowledge of L2 & L3 routing protocols, (IPv4+IPv6 / BGP / ISIS / VPLS / IP VPN / MPLS / QinQ / ELINE) and good understanding of … culture. Our employees are driven and committed, with many options to connect and engage in our inclusive environment. Zayo Europe is an Equal Opportunity / Affirmative Action Employer. All qualified applicants will receive consideration for employment without regard to age, race, colour, religion, sex, sexual orientation, gender identity, national More ❯
Monitoring and maintaining SIEM • Managing Zero trust privilege management • 365 Security and best practice • Assisting with endpoint security • ISO27001/ CE+ Audits Requirements : The ideal candidate will have experience in a similar role with strong technical, analytical, interpersonal, problem solving and communication skills. Minimum … technical skills required: • Windows, Linux, Vmware hardening and patching • Nessus reporting • ISO27001/ CE+ audits • Email security • Endpoint security • SIEM management • 365 administration / best practice Desirable • Hardware Firewalls • HPE / Lenovo Servers and Sans • Network design and configuration • AWS / IBM cloud / Azure Due to the volume of applications received for positions, it will not be possible to respond to all applications and only applicants who are considered suitable for interview will be contacted. Proactive Appointments Limited operates as an employment agency and employment business and is More ❯
Southampton, Hampshire, United Kingdom Hybrid / WFH Options
Cooper Lomaz Recruitment Ltd
ISMS. Your expertise in risk management, compliance, and security policies will help strengthen the organisation's security posture and ensure ongoing adherence to ISO27001 and other regulatory requirements. Key Responsibilities Develop, implement, and maintain security policies, procedures, and governance frameworks. Lead and support compliance efforts … for ISO27001, GDPR, and other relevant regulations. Manage and maintain risk registers, conducting risk assessments and recommending mitigation strategies. Conduct internal and external audits, address findings, and oversee continuous improvement initiatives. Ensure effective security asset management, identifying and mitigating potential vulnerabilities. Collaborate with internal stakeholders … Minimum 3 years' experience in a GRC or IT security role. Certifications such as CompTIA Security+, ISO27001 Lead Implementer / Auditor, CISSP, or CISM (desirable). Strong understanding of ISO27001 compliance, audits, and risk management. Proven experience in developing More ❯
Select how often (in days) to receive an alert: Group Process & Assurance Manager (Fixed-term contract) Country / Region: GB Connect with Eutelsat Group Be part of a new era in communications, transforming connectivity with Eutelsat Group - the world's first GEO-LEO integrated global satellite operator. As a … and crush deadlines. What You'll Do: Reporting to the Head of Group Quality, lead and manage the cross-functional PMO portfolio of programs / projects. As a program manager, deploy the necessary methodology expertise to successful execution. Manage and support key cross-organization programs with ISO … strategy to support Quality, process assurance, and continuous improvement. Manage and build relationships with key functional stakeholders. Lead on the preparation of and execution / governance scorecards and reporting. Develop PMO support to key programs with respect to reporting and data analysis. Support executive leadership in the implementation of More ❯
for the better. The role is hybrid and will require 2 days a week on site in London. As the Group Information Security Analyst / Officer, you will: Lead and maintain security accreditations: Successfully manage Cyber Essentials, Cyber Essentials Plus, and ISO27001 certifications. Deliver … comprehensive training: Develop and deliver engaging training on ISO27001, cybersecurity awareness, AI, and data protection. Stay ahead of threats: Continuously monitor and adapt to emerging cybersecurity threats, ensuring robust governance and safeguarding measures. Manage business continuity: Oversee Business Continuity Planning (BCP) and Disaster Recovery Plans. … and maintain a strong security posture. ISMS management: Coordinate the improvement and maintenance of the Information Security Management System (ISMS) in line with ISO27001 and Cyber Essentials. Experience Required: Information Security Management: Extensive experience in implementing and maintaining ISMS and achieving ISO27001More ❯
Manchester Area, United Kingdom Hybrid / WFH Options
Oscar
Role: Security Architect (Cloud) Location: Edinburgh / Glasgow / Sheffield / Manchester / Birmingham Working Pattern: 3 days on-site, 2 days WFH Summary Oscar are kicking off the search for an experienced Security Architect contractor to work with a well-known, high end consultancy. The … CNAPP platforms such as Wiz, Prisma Cloud, Orca or Aqua. Strong knowledge of public cloud platforms. Familiar with compliance frameworks such as NIST, ISO27001 and how they apply to cloud applications. The ability to run risk assessments and threat … modelling for cloud-native applications. Excellent communication skills with the ability to translate technical concepts to business stakeholders. Role: Security Analyst (Cloud) Location: Edinburgh / Glasgow / Sheffield / Manchester / Birmingham Working Pattern: 3 days on-site, 2 days WFH Apply now More ❯
Manchester, North West, United Kingdom Hybrid / WFH Options
Oscar Associates (UK) Limited
Role: Security Architect (Cloud) Location: Edinburgh / Glasgow / Sheffield / Manchester / Birmingham Working Pattern: 3 days on-site, 2 days WFH Summary Oscar are kicking off the search for an experienced Security Architect contractor to work with a well-known, high end consultancy. The … CNAPP platforms such as Wiz, Prisma Cloud, Orca or Aqua. Strong knowledge of public cloud platforms. Familiar with compliance frameworks such as NIST, ISO27001 and how they apply to cloud applications. The ability to run risk assessments and threat … modelling for cloud-native applications. Excellent communication skills with the ability to translate technical concepts to business stakeholders. Role: Security Analyst (Cloud) Location: Edinburgh / Glasgow / Sheffield / Manchester / Birmingham Working Pattern: 3 days on-site, 2 days WFH Oscar Associates (UK) Limited is More ❯
our continued growth, we are seeking an experienced Information Security Manager. In this role, you will be responsible for ensuring our ongoing compliance with ISO27001 and Cyber Essentials Plus, including the management of quarterly external audits and the facilitation of Integrated Management System (IMS) meetings. You will also oversee our … functionally across multiple teams. You can influence people of all grades to deliver the right outcomes. Security Management. IT management (ITILv4). Continuous Monitoring / Threat Alerts. Managing security incidents and non-conformances. Experience with Data protection duties and GDPR. Desirable (CISM) certification or CISSP desirable to have. We … Vitality medical insurance. Workplace Pension 5% employer contribution. Group Life Assurance. Cycle scheme. 5 days a year for approved Training. WFH equipment allowance. Buy / Sell Holiday. 2 days paid volunteering days. Other benefits: Flexible working. Work on exciting projects - make a difference. Empowered to make decisions. Encouraged to More ❯
Cheltenham, Gloucestershire, South West, United Kingdom Hybrid / WFH Options
Northrop Grumman
Management Systems and Audit Manager, you will collaborate with cross-functional teams to support the continuous improvement. Support the maintenance of existing external ISO accreditation's and the support attainment of new ISO accreditation's to support the business strategy. Key Responsibilities: Support in the implementation … of National Security Solutions Audit Schedule Support in the maintenance of existing ISO accreditation's Support in the attainment of new ISO accreditations as required Maintain the company's Integrated Management System (IMS) Audit Schedule to ensure compliance with regulatory requirements and industry standards (e.g. ISO … benefits including private health care, career development opportunities and performance bonuses. For a comprehensive list of benefits, speak to our recruitment team. Essential qualifications / experience: ISO 9001 Lead auditor Detailed knowledge of ISO 9001, ISO27001, ISOMore ❯
Warwick, Warwickshire, United Kingdom Hybrid / WFH Options
ICEO
investments. What you will do: Drive the company's information security strategy, ensuring alignment with GDPR, ISO27001, DORA, PSD2 / 3, and other relevant regulations Identify and address local and entity-specific security requirements to maintain rigorous standards Conduct regular risk identification and develop … Develop and maintain security policies, standards, and incident response protocols Support business continuity and disaster recovery planning for seamless resilience Lead and oversee internal / external security audits to ensure transparency and accountability Partner with engineering and ICT teams to embed secure-by-design principles in products and infrastructure … with ISO27001, NIST, and cybersecurity best practices Risk & Governance : Skilled in conducting risk assessments, defining mitigation strategies, and creating / enforcing security policies Good technical understanding of IT infrastructure, software development, hardware, data flows, change management, and BC / DR-and how they More ❯
from various types of business disruptions. Participates in project-wise training and communications. Produce monthly and quarterly slides for resilience forums Submit monthly exercise / testing data to HS2 Compile and submit quarterly return for HS2 on SCS resilience capability The Ideal Candidate Required Qualifications & Skills Proven experience in … Security Management, Business Continuity, Risk Management, or other resilience disciplines Prior experience in Business Continuity / HILP (High Impact, Low Probability) risk management functions in large infrastructure / equivalent projects desired. Current subject matter expertise of Business Continuity processes and best practice Understanding of Incident Management practices. Strong … 14001:2015 Environmental Management System with guidance for use", OHSAS 18001:2017 Occupational Health and Safety Management Systems and ISO/IEC27001:2013 Information Security Management System, Policies, Plans, Procedures and Processes, and statutory requirements as they affect the Joint More ❯
Billingham, County Durham, North East, United Kingdom Hybrid / WFH Options
Exposed Solutions
operational security, and environmental sustainability. Key Responsibilities: Develop, implement, and maintain quality assurance policies and systems. Ensure compliance with relevant quality standards (e.g., ISO 9001, Six Sigma). Oversee the development and enforcement of security policies, including data security and physical security measures. Ensure compliance with relevant security … frameworks (e.g., ISO27001, GDPR, etc.). Develop and manage the environmental management system (EMS) in line with relevant standards (e.g., ISO 14001). Ensure compliance with environmental regulations, permits, and reporting requirements. ABOUT YOU Skills and Competencies A strong understanding of integrated management … systems (IMS) and relevant regulatory frameworks (ISO 9001, ISO27001, ISO 14001). Experience conducting internal and external audits for quality, security, and environmental compliance. Education: A higher education course at UK level 4 or above in any related field such as More ❯
definition of policies, standards and procedures for information security and data governance, moving Metro Bank towards alignment with industry good practice standards (e.g. ISO27001, ITIL). Direct day-to-day management of information security and data controls, monitoring and incident response, with support from your … practice in Banking and the established approaches to mitigating these. A deep understanding of information and data risk and control frameworks and standards, e.g. ISO27001, PCI DSS, NIST+. Strong leadership skills and proven ability to build, inspire, direct, motivate and performance-manage a multi-disciplinary team. MSc Information Security / MCIISec / CISSP / CISM /ISO27001 Lead Auditor or equivalent. Our promise to you We will make sure that you are well-rewarded by providing you with a competitive salary, discretionary annual bonus, and a wide range of benefits, including generous holiday allowance, attractive pension More ❯
Cheltenham, Gloucestershire, United Kingdom Hybrid / WFH Options
Accenture
Summary The primary objective of the Technical Delivery Associate Manager is to support projects to deliver either the transition of new a service and / or throughout the run-phase of the service. This role is responsible to drive the day-to-day delivery in defence of corporate networks … profile, challenging projects and our nurturing work environment, we offer excellent employee benefits, including: Competitive salary and benefits, including but not limited to: life / health insurance, performance based bonuses, company car (depending on management level), flexible work arrangements (remote working), employee share purchase plan, parental leave and various … incident response management and coordinating efforts across client and Accenture teams. Managing escalations and supporting incident management. Reporting and review of contractual metrics - KPI / SLA. Participate in business development activities (including responses to RFP / I / Q). Champion continuous service improvement and drive automation More ❯
City, Aberdeen, United Kingdom Hybrid / WFH Options
Baker Hughes Gruppe
requirements. Assisting in the maintenance of M&A playbooks based on company security standards, procedures, and best practices including account management, tenant management, information / IP protection management, proxy server management, security ingress / egress management, domain trusts posture, SSL / IPsec, security incident and event management … SIEM), data protection (DLP, encryption), and password / key management, vulnerability / threat assessment. Collaborating with security team members to develop all M&A security requirements for all hardware and software computing platforms, environments and solutions including developing and or modifying existing policies, procedures, hardening guides, based on … on areas of highest IT and cyber risk, to continuously improve on controls or automate compliance activities. Maintaining ongoing communication with the business, external / internal auditors as it relates to alignment on audit planning, walkthroughs / testing, audit requests, impact assessments, and deficiency evaluation of IT controls More ❯
to HS2. It is an SCSJV requirement that all employees, Design House, and Supply Chains must implement and comply with the requirements of ISO 9001:2015 Quality Management System, ISO 14001:2015 Environmental Management System with guidance for use", OHSAS 18001:2017 Occupational Health and Safety Management Systems and ISO/IEC27001:2013 Information Security Management System, Policies, Plans, Procedures and Processes, and statutory requirements as they affect the Joint … and value diversity at our company. we do not discriminate on the basis of age, disability, sex, race, religion or belief, gender reassignment, marriage / civil partnership, pregnancy / maternity, or sexual orientation SCS Railways is a Disability Confident Leader. We want to encourage disabled people to apply More ❯