Milton Keynes, Buckinghamshire, England, United Kingdom Hybrid / WFH Options
REDTECH RECRUIT
InformationSecurity Officer A fantastic opportunity for an experienced InformationSecurity Officer to join a leading SaaS organisation providing enterprise-scale solutions. This is a hands-on, strategic role where you’ll take ownership of security strategy, operations, and compliance across multi-cloud environments; ensuring systems remain robust, scalable, and compliant with key standards such … PCI/DSS, and GDPR. Location: Milton Keynes - hybrid - at least 2 - 3 times a week in office Salary: £50,000 – £60,000 per annum + benefits Requirements for InformationSecurity Officer Strong experience in informationsecurity within a SaaS or cloud-based software environment Proven success managing ISO27001 certification, audit cycles, and compliance programmes Excellent … knowledge of GDPR and experience embedding data protection into software systems Hands-on experience managing cloud security within Azure and/or AWS environments Knowledge of PCI/DSS standards for payment systems Understanding of application security, secure development lifecycles, and DevSecOps practices Strong communicator, able to translate complex security concepts for technical and non-technical stakeholders More ❯
Bristol, Avon, South West, United Kingdom Hybrid / WFH Options
NCC
InformationSecurity Manager NCC Location: Bristol based with Hybrid working 2 days on site, 3 days home Salary: £54,102 to £67,056 per annum (experience dependent) Government Security Clearance: You will be required to undertake government security clearance if successful securing this role. Please only apply if willing to undertake clearance process. Closing Date … advert early if required. Summary; NCC is the UKs innovation partner! Were supporting a range of interesting new projects in the defence sector and are hiring for an additional InformationSecurity Manager to join our expanding secure operations team. Your role as InformationSecurity Manager is to ensure the effective protection of secure information and … Youll report into the Head of Secure Operations and work with a wide range of internal stakeholders including secure operations teams, the board members & senior leadership, HR business partners, security & networking managers. External relationship management will also be large part of your role including our defence sector clients and government bodies. What youll be doing; Reviewing new SecurityMore ❯
InformationSecurity Technical Assurance Lead - £700 per day - Inside IR35 - Hybrid working from a site in Paddington - 6 months initial contract. Our client, a global supplier to the nuclear energy industry, is seeking a highly skilled InformationSecurity Cyber Assurance Specialist to join their team. This critical role is responsible for ensuring the security and … resilience of their information systems, aligning with industry standards and regulatory requirements. You will provide assurance that their IT and OT environments are secure and compliant, supporting the delivery of business objectives while managing risk. Key Responsibilities - Develop, implement, and maintain informationsecurity assurance programs. Ensure compliance with regulatory requirements and standards (e.g., ISO 27000, NIST SP800 … series, CSF). Conduct risk assessments and vulnerability management activities. Maintain robust security controls across enterprise assets, software, networks, and applications. Support incident response and recovery processes, including penetration testing and audit log management. Deliver training and awareness programs to enhance the organizations security posture. Collaborate with internal and external stakeholders to maintain compliance and manage third-party More ❯
InformationSecurity Technical Assurance Lead - £700 per day - Inside IR35 - Hybrid working from a site in Paddington - 6 months initial contract. Our client, a global supplier to the nuclear energy industry, is seeking a highly skilled InformationSecurity Cyber Assurance Specialist to join their team. This critical role is responsible for ensuring the security and … resilience of their information systems, aligning with industry standards and regulatory requirements. You will provide assurance that their IT and OT environments are secure and compliant, supporting the delivery of business objectives while managing risk. Key Responsibilities - Develop, implement, and maintain informationsecurity assurance programs. Ensure compliance with regulatory requirements and standards (e.g., ISO 27000, NIST SP800 … series, CSF). Conduct risk assessments and vulnerability management activities. Maintain robust security controls across enterprise assets, software, networks, and applications. Support incident response and recovery processes, including penetration testing and audit log management. Deliver training and awareness programs to enhance the organizations security posture. Collaborate with internal and external stakeholders to maintain compliance and manage third-party More ❯
providers Offer guidance, direction and approval on security solutions and approaches Advocate for secure engineering best practices throughout the company Manage the standards, policies and guidelines of the InfoSec frameworks Maintain an on going informationsecurity awareness program Monitor our SIEM, and maintain useful reports and alerts in the system Main Skills/Competencies Significant industry experience … in a technical security role (Security Engineering or Application Security Engineering) Experience speaking to customers and establishing a good working relationship with infosec counterparts at major financial institutions Strong technical intuition, with an ability to partner with engineering to evaluate and develop good security standards Take a risk based approach when suggesting improvements, or proposing fixes … Ability to perform design reviews and/or technical assessments of software and infrastructure Excellent knowledge of InfoSec, risk management and governance, data protection Programming/scripting experience, especially to automate repetitive tasks Used to multi tasking and working in a fast paced environment Proven ability to identify and articulate informationsecurity requirements, risks and issues, and to More ❯
Lead InformationSecurity Engineer This is a hybrid role and can be based from either … our Peterborough, Manchester, Stoke, Tunbridge Wells or Chesterfield office. Role Purpose: Reporting to the Head of InformationSecurity to provide tactical technical security support. The Lead InfoSec Engineer will be responsible for technical governance to security standards, Identity and Access Management expertise across multiple platforms. The role will provide ongoing technical assurance to digital systems and … to ensure that these are safe and secure. Special projects support will include PCI compliance, Cyber Essentials and other technical support where required. Provide line manager duties within the InformationSecurity Team. Key accountabilities & Responsibilities: Be an SME for PCI DSS and Cyber Essentials technical assurance Contribute to business and technology audits with technical evidence and advice Engagement More ❯
Milton Keynes, Buckinghamshire, England, United Kingdom Hybrid / WFH Options
Tank Recruitment
InformationSecurity Officer - Lead Enterprise Security & Risk Management Location: Hybrid (UK-based) | Salary: Competitive + Bonus + Flexible Benefits My client, a forward-thinking technology organisation, is seeking an experienced InformationSecurity Officer (ISO) to lead their enterprise-wide informationsecurity and IT risk management programme. This is a fantastic opportunity for a … security professional who wants to take ownership of strategy, governance, and delivery across a growing and innovative business. In this hands-on role, you'll design and implement a comprehensive informationsecurity framework , ensuring compliance with industry standards and supporting business objectives. You'll collaborate with senior stakeholders, oversee incident response, and drive continuous improvement in policies … controls, and awareness initiatives. Key Responsibilities Develop and execute an informationsecurity strategy and roadmap aligned with business goals. Lead on governance, compliance, and audit processes across the organisation. Manage incident response, penetration testing, and risk assessments. Support secure software development and supplier risk management. Promote security awareness and report regularly to senior leadership on risk posture. More ❯
Bexleyheath, Kent, England, United Kingdom Hybrid / WFH Options
Reed
InformationSecurity and Governance Officer Location: Bexleyheath Job Type: Temporary (6 months) with potential for permanent Salary: £127 per day We are seeking an InformationSecurity and Governance Officer to join a local authority based in Bexleyheath. This role offers an immediate start and is an excellent opportunity for individuals with strong administrative backgrounds and relevant … governance experience looking to advance their careers. Day-to-day of the role: Policy Support: Assist with the maintenance and implementation of the Council’s Information Governance Framework, policies, and procedures. Security Standards: Monitor compliance with informationsecurity and data handling policies, identifying and reporting potential risks or non-compliance. Information Risk: Contribute to the … management of information risks, ensuring these are logged and escalated in accordance with agreed processes. Data Sharing: Review and record data sharing arrangements and support the completion of data sharing agreements and contracts under supervision. Statutory Requests: Manage or assist with the processing of requests made under FOIA, EIR, and Subject Access Requests (SARs), ensuring statutory deadlines are met More ❯
Sunbury-On-Thames, London, United Kingdom Hybrid / WFH Options
BP Energy
and customers with an integrated energy offering. Delivering our strategy sustainably is fundamental to achieving our ambition to be a net zero company by 2050 or sooner! The Cyber Security Incident Response Team (CSIRT), part of Counter Threat & Engineering (CT&E), responds to digital security threats and incidents globally from bp hubs in Houston, Sunbury, Kuala Lumpur, Pune … and Singapore. The Security Operations Center (SOC) raises incidents to CSIRT, which conducts long-term investigations using digital forensics, advanced techniques, and collaborating across bp. Team members must understand bps business segments and address a broad range of security-related questions. You will help ensure enterprise security, enabling safe and secure business operations as part of this … global team. Key Accountabilities Support the bp SOC as an escalation point for security events and incidents. Conduct digital forensic investigations on high-priority incidents to include functions such as host (disk and memory) forensics, network forensics and log analysis. Work across Digital Security and the bp business functions to partner on incidents and to ensure all appropriate More ❯
sunbury, south east england, united kingdom Hybrid / WFH Options
BP Energy
and customers with an integrated energy offering. Delivering our strategy sustainably is fundamental to achieving our ambition to be a net zero company by 2050 or sooner! The Cyber Security Incident Response Team (CSIRT), part of Counter Threat & Engineering (CT&E), responds to digital security threats and incidents globally from bp hubs in Houston, Sunbury, Kuala Lumpur, Pune … and Singapore. The Security Operations Center (SOC) raises incidents to CSIRT, which conducts long-term investigations using digital forensics, advanced techniques, and collaborating across bp. Team members must understand bps business segments and address a broad range of security-related questions. You will help ensure enterprise security, enabling safe and secure business operations as part of this … global team. Key Accountabilities Support the bp SOC as an escalation point for security events and incidents. Conduct digital forensic investigations on high-priority incidents to include functions such as host (disk and memory) forensics, network forensics and log analysis. Work across Digital Security and the bp business functions to partner on incidents and to ensure all appropriate More ❯
guildford, south east england, united kingdom Hybrid / WFH Options
BP Energy
and customers with an integrated energy offering. Delivering our strategy sustainably is fundamental to achieving our ambition to be a net zero company by 2050 or sooner! The Cyber Security Incident Response Team (CSIRT), part of Counter Threat & Engineering (CT&E), responds to digital security threats and incidents globally from bp hubs in Houston, Sunbury, Kuala Lumpur, Pune … and Singapore. The Security Operations Center (SOC) raises incidents to CSIRT, which conducts long-term investigations using digital forensics, advanced techniques, and collaborating across bp. Team members must understand bps business segments and address a broad range of security-related questions. You will help ensure enterprise security, enabling safe and secure business operations as part of this … global team. Key Accountabilities Support the bp SOC as an escalation point for security events and incidents. Conduct digital forensic investigations on high-priority incidents to include functions such as host (disk and memory) forensics, network forensics and log analysis. Work across Digital Security and the bp business functions to partner on incidents and to ensure all appropriate More ❯
Press Tab to Move to Skip to Content Link Location: Dublin 2 Other locations: Primary Location Only Date: Oct 16, 2025 Requisition ID: Technology Consulting- Cyber Security Architect, Manager/Snr Manager General Information Location: Dublin Available for Work Visa Sponsorship: NO Business Area: Cyber Security Contract Type: Full-Time - Permanent The opportunity EY's cyber security … the business with significant ambition for the future through additional recruitment and acquisition. You will be a core member of a highly skilled and rapidly growing team of Technical Security specialists. As a member of the team, you will have the opportunity to grow your career in leading the delivery of security architecture and design solutions with a … significant opportunity for leadership experience and career progression. This specific Role is client side and client facing. Your key responsibilities Your role will be as a security architect to assist in security architecture design reviews through the lifecycle complex projects across a wide selection of technologies and platforms for our client's digital solutions. You will secure enterprise More ❯
InformationSecurity Manager - Rail Sector, URGENT HIRE Lawrence Harvey is delighted to be exclusively supporting a leading rail client once again to support with the growth of their exceptional technology team for their InformationSecurity Manager. The Role: Leading management of informationsecurity which includes ISO27001, PCI-DSS, and vulnerability management. Working alongside the … DPO and Head of Technology to support on areas of data protection. Lead collaboration with key partners for train onboard systems cyber security assessments and risk management Establish and maintain appropriate policies, procedures, and practices in relations to cyber, data and … governance practices Manage the informationsecurity incident response program Manage implementation and deployment of InformationSecurity Management System (ISMS). Line management of the internal InfoSec specialists. Requirements Extensive experience working with PCI-DSS and ISO27001 Strong understanding on security tools such as IDS/IPS. Demonstrable experience of leading InformationSecurity, Governance More ❯
City of London, London, United Kingdom Hybrid / WFH Options
Lawrence Harvey
InformationSecurity Manager - Rail Sector, URGENT HIRE Lawrence Harvey is delighted to be exclusively supporting a leading rail client once again to support with the growth of their exceptional technology team for their InformationSecurity Manager. The Role: Leading management of informationsecurity which includes ISO27001, PCI-DSS, and vulnerability management. Working alongside the … DPO and Head of Technology to support on areas of data protection. Lead collaboration with key partners for train onboard systems cyber security assessments and risk management Establish and maintain appropriate policies, procedures, and practices in relations to cyber, data and … governance practices Manage the informationsecurity incident response program Manage implementation and deployment of InformationSecurity Management System (ISMS). Line management of the internal InfoSec specialists. Requirements Extensive experience working with PCI-DSS and ISO27001 Strong understanding on security tools such as IDS/IPS. Demonstrable experience of leading InformationSecurity, Governance More ❯
slough, south east england, united kingdom Hybrid / WFH Options
Lawrence Harvey
InformationSecurity Manager - Rail Sector, URGENT HIRE Lawrence Harvey is delighted to be exclusively supporting a leading rail client once again to support with the growth of their exceptional technology team for their InformationSecurity Manager. The Role: Leading management of informationsecurity which includes ISO27001, PCI-DSS, and vulnerability management. Working alongside the … DPO and Head of Technology to support on areas of data protection. Lead collaboration with key partners for train onboard systems cyber security assessments and risk management Establish and maintain appropriate policies, procedures, and practices in relations to cyber, data and … governance practices Manage the informationsecurity incident response program Manage implementation and deployment of InformationSecurity Management System (ISMS). Line management of the internal InfoSec specialists. Requirements Extensive experience working with PCI-DSS and ISO27001 Strong understanding on security tools such as IDS/IPS. Demonstrable experience of leading InformationSecurity, Governance More ❯
london, south east england, united kingdom Hybrid / WFH Options
Lawrence Harvey
InformationSecurity Manager - Rail Sector, URGENT HIRE Lawrence Harvey is delighted to be exclusively supporting a leading rail client once again to support with the growth of their exceptional technology team for their InformationSecurity Manager. The Role: Leading management of informationsecurity which includes ISO27001, PCI-DSS, and vulnerability management. Working alongside the … DPO and Head of Technology to support on areas of data protection. Lead collaboration with key partners for train onboard systems cyber security assessments and risk management Establish and maintain appropriate policies, procedures, and practices in relations to cyber, data and … governance practices Manage the informationsecurity incident response program Manage implementation and deployment of InformationSecurity Management System (ISMS). Line management of the internal InfoSec specialists. Requirements Extensive experience working with PCI-DSS and ISO27001 Strong understanding on security tools such as IDS/IPS. Demonstrable experience of leading InformationSecurity, Governance More ❯
london (city of london), south east england, united kingdom Hybrid / WFH Options
Lawrence Harvey
InformationSecurity Manager - Rail Sector, URGENT HIRE Lawrence Harvey is delighted to be exclusively supporting a leading rail client once again to support with the growth of their exceptional technology team for their InformationSecurity Manager. The Role: Leading management of informationsecurity which includes ISO27001, PCI-DSS, and vulnerability management. Working alongside the … DPO and Head of Technology to support on areas of data protection. Lead collaboration with key partners for train onboard systems cyber security assessments and risk management Establish and maintain appropriate policies, procedures, and practices in relations to cyber, data and … governance practices Manage the informationsecurity incident response program Manage implementation and deployment of InformationSecurity Management System (ISMS). Line management of the internal InfoSec specialists. Requirements Extensive experience working with PCI-DSS and ISO27001 Strong understanding on security tools such as IDS/IPS. Demonstrable experience of leading InformationSecurity, Governance More ❯
Carlisle, Cumbria, England, United Kingdom Hybrid / WFH Options
Cumberland Building Society
energy and creativity to make a positive difference, then this is the job for you. We have an exciting opportunity for a PCI and Compliance Lead to join our InformationSecurity team for a fixed term of 18 months. The Benefits Salary - up to £64,898 p.a. – depending on skills and experience. Holidays - 25 days holiday plus public … Cycle to Work scheme. Community Day - We offer our people an extra paid day off every year to help local charities and community organisations. The Role Reporting to our InformationSecurity Assurance Manager, you’ll be responsible for oversight, management and continuous compliance of the Payment Card Industry Data Security Standard (PCI DSS) requirements across the Society … within the InformationSecurity Assurance Team. You’ll assist in the oversight and control of all aspects of the InformationSecurity Management System, ensuring controls and assurance audits are in place to prevent/minimise threats such as security breaches, computer viruses or attacks by cyber criminals as well as carrying out audits in line More ❯
Hereford, Herefordshire, England, United Kingdom Hybrid / WFH Options
DCS Recruitment
InformationSecurity Analyst Up to £50,000 + benefits Hereford | Hybrid Permanent | Full-time We are looking for an experienced InformationSecurity Analyst to join our client who will play a key role in driving compliance, governance, and continual improvement across key security frameworks including ISO 27001, PCI DSS, and Cyber Essentials Plus. Key Responsibilities … Lead on the operation and continual improvement of the InformationSecurity Management System (ISMS) * Coordinate internal and external audit readiness for ISO 27001, PCI DSS, and Cyber Essentials Plus * Draft and update informationsecurity policies, procedures, and technical standards * Work with procurement and commercial teams to support supplier assurance and risk assessment * Contribute to tender responses … and bid processes, ensuring security and compliance requirements are met * Promote good security practices and raise awareness across departments * Act as an escalation point and day-to-day contact for other team members * Stay up to date with changes in legislation and standards relating to information and cyber security Key Skills & Experience: Essential: * Background in IT More ❯
Bristol, Avon, England, United Kingdom Hybrid / WFH Options
MBDA
Bristol Product Cyber Security - Undergraduate Placement 2026 The Cyber Security department delivers effective informationsecurity solutions for complex weapon systems and their associated sub-systems, providing documentation and evidence to support security approval and assurance activities within the programme context. Salary : £23,495 Dynamic (Hybrid) Working : 2 days per week on-site due to workload … classification Security Clearance : British Citizen or a Dual UK national with British citizenship. Restrictions and/or limitations relating to nationality and/or rights to work may apply. As a minimum and after offer stage, all successful candidates will need to undergo HMG Basic Personnel Security Standard checks (BPSS), which are managed by the MBDA Personnel Security … Up to 15 additional days Facilities : Fantastic site facilities including subsidised meals, free car parking and much more... The opportunity Throughout this opportunity, you will be involved in identifying security risks within complex weapon systems, products and solutions and ensuring that those risks are addressed by the implementation and delivery of effective and balanced security measures. You will More ❯
nottingham, midlands, united kingdom Hybrid / WFH Options
Capital One UK
Nottingham Trent House (95002), United Kingdom, Nottingham, Nottinghamshire Risk Remediation Assessor About the Role Capital One has a team of InformationSecurity specialists who not only focus on security, but are relationship experts, risk assessment champions, and resolve complex informationsecurity issues related to Capital One’s third parties. The Cyber Third Party Risk Reduction … CTPRR) program defines the framework and conducts the assessments which enable the business to protect sensitive information, physical assets, and confirms the Third Parties’ ability to provide continual services. This role will partner with a community of internal and external stakeholders to ensure third party engagements receive the necessary CTPRR due diligence; evaluate the effectiveness of the third party … s security environment and deliver a quality assessment report. It also supports ongoing security by working with the third parties to remediate any identified issues, enabling effective risk management in alignment with business tolerance and industry requirements. Those that work for this team pragmatic and practical in your understanding of risk and security, but are also willing More ❯
ilkeston, midlands, united kingdom Hybrid / WFH Options
Capital One UK
Nottingham Trent House (95002), United Kingdom, Nottingham, Nottinghamshire Risk Remediation Assessor About the Role Capital One has a team of InformationSecurity specialists who not only focus on security, but are relationship experts, risk assessment champions, and resolve complex informationsecurity issues related to Capital One’s third parties. The Cyber Third Party Risk Reduction … CTPRR) program defines the framework and conducts the assessments which enable the business to protect sensitive information, physical assets, and confirms the Third Parties’ ability to provide continual services. This role will partner with a community of internal and external stakeholders to ensure third party engagements receive the necessary CTPRR due diligence; evaluate the effectiveness of the third party … s security environment and deliver a quality assessment report. It also supports ongoing security by working with the third parties to remediate any identified issues, enabling effective risk management in alignment with business tolerance and industry requirements. Those that work for this team pragmatic and practical in your understanding of risk and security, but are also willing More ❯
long eaton, midlands, united kingdom Hybrid / WFH Options
Capital One UK
Nottingham Trent House (95002), United Kingdom, Nottingham, Nottinghamshire Risk Remediation Assessor About the Role Capital One has a team of InformationSecurity specialists who not only focus on security, but are relationship experts, risk assessment champions, and resolve complex informationsecurity issues related to Capital One’s third parties. The Cyber Third Party Risk Reduction … CTPRR) program defines the framework and conducts the assessments which enable the business to protect sensitive information, physical assets, and confirms the Third Parties’ ability to provide continual services. This role will partner with a community of internal and external stakeholders to ensure third party engagements receive the necessary CTPRR due diligence; evaluate the effectiveness of the third party … s security environment and deliver a quality assessment report. It also supports ongoing security by working with the third parties to remediate any identified issues, enabling effective risk management in alignment with business tolerance and industry requirements. Those that work for this team pragmatic and practical in your understanding of risk and security, but are also willing More ❯
nailsea, south west england, united kingdom Hybrid / WFH Options
Capital One UK
Nottingham Trent House (95002), United Kingdom, Nottingham, Nottinghamshire Risk Remediation Assessor About the Role Capital One has a team of InformationSecurity specialists who not only focus on security, but are relationship experts, risk assessment champions, and resolve complex informationsecurity issues related to Capital One’s third parties. The Cyber Third Party Risk Reduction … CTPRR) program defines the framework and conducts the assessments which enable the business to protect sensitive information, physical assets, and confirms the Third Parties’ ability to provide continual services. This role will partner with a community of internal and external stakeholders to ensure third party engagements receive the necessary CTPRR due diligence; evaluate the effectiveness of the third party … s security environment and deliver a quality assessment report. It also supports ongoing security by working with the third parties to remediate any identified issues, enabling effective risk management in alignment with business tolerance and industry requirements. Those that work for this team pragmatic and practical in your understanding of risk and security, but are also willing More ❯
portishead, south west england, united kingdom Hybrid / WFH Options
Capital One UK
Nottingham Trent House (95002), United Kingdom, Nottingham, Nottinghamshire Risk Remediation Assessor About the Role Capital One has a team of InformationSecurity specialists who not only focus on security, but are relationship experts, risk assessment champions, and resolve complex informationsecurity issues related to Capital One’s third parties. The Cyber Third Party Risk Reduction … CTPRR) program defines the framework and conducts the assessments which enable the business to protect sensitive information, physical assets, and confirms the Third Parties’ ability to provide continual services. This role will partner with a community of internal and external stakeholders to ensure third party engagements receive the necessary CTPRR due diligence; evaluate the effectiveness of the third party … s security environment and deliver a quality assessment report. It also supports ongoing security by working with the third parties to remediate any identified issues, enabling effective risk management in alignment with business tolerance and industry requirements. Those that work for this team pragmatic and practical in your understanding of risk and security, but are also willing More ❯