Loughton, Essex, South East, United Kingdom Hybrid / WFH Options
Profile 29
role. This role will focus on creating a business strategy, gap analysis and implementation, for securing their Azure-based infrastructure, integrating security automation, ensuring PCIDSS compliance, vulnerability and penetration testing and incident response. This role will focus on developing and maintaining secure, scalable Azure DevOps pipelines and … WAF) and Intrusion Prevention Systems (IPS). Vulnerability & Penetration Testing: Review Penetration Testing, vulnerability assessments, and security scanning to proactively identify and remediate risks. PCIDSS Compliance: Conduct security audits, risk assessments, and ensure regulatory compliance. DNS Security: Implement and monitor DNS security solutions to prevent cyber threats. … be found at: profile-29 .com/privacy) Profile 29 recruitment keywords: DevSecOps DevOps Azure cloud security Microsoft Defender Microsoft Sentinel WAF IPS DNS pcidsspcidsspci-dss soar loughton Debden essex London freelance contract More ❯
Loughton, Essex, South East, United Kingdom Hybrid / WFH Options
Profile 29
role. This role will focus on creating a business strategy, gap analysis and implementation, for securing their Azure-based infrastructure, integrating security automation, ensuring PCIDSS compliance, vulnerability and penetration testing and incident response. This role will focus on developing and maintaining secure, scalable Azure DevOps pipelines and … WAF) and Intrusion Prevention Systems (IPS). Vulnerability & Penetration Testing: Review Penetration Testing, vulnerability assessments, and security scanning to proactively identify and remediate risks. PCIDSS Compliance: Conduct security audits, risk assessments, and ensure regulatory compliance. DNS Security: Implement and monitor DNS security solutions to prevent cyber threats. … be found at: profile-29 .com/privacy) Profile 29 recruitment keywords: DevSecOps DevOps Azure cloud security Microsoft Defender Microsoft Sentinel WAF IPS DNS pcidsspcidsspci-dss soar loughton Debden essex London More ❯
London, England, United Kingdom Hybrid / WFH Options
Enfuce
payment processing capabilities, Enfuce is one of Finland’s most valuable scaleups, and is the first financial service provider in the world to be PCI-DSS certified while running its service in the public cloud. By focusing on collaboration, Enfuce is able to efficiently provide customers with cutting … EMI) licence from the Finnish FSA and from the UK’s Financial Conduct Authority (FCA), enabling operations across Europe and the UK, Enfuce’s PCI-DSS certified platform guarantees 99.999% uptime, global scalability, and card scheme connectivity, supporting various card programmes and integration with digital wallets. Enfuce has … Identify improvements to boost efficiency or simplify user support by automating manual and repetitive tasks. Security Support: Support the team in maintaining ISO27001 and PCIDSS compliance through documentation and process adherence. Help monitor and respond to basic security alerts under guidance from the Lead Security Operations engineer. More ❯
Maidenhead, England, United Kingdom Hybrid / WFH Options
The Rank Group
within the IT Security Team, you will ensure alignment with internal controls, regulatory requirements, and industry-leading security standards such as ISO 27001 and PCIDSS . Your responsibilities will include: Leading the planning and execution of IT security audits, including ad-hoc assessments and recurring external audits … with internal teams, auditors, and regulatory bodies to ensure full compliance and continuous improvement. Qualifications Proven experience leading audit preparation activities for ISO 27001, PCIDSS, and GDPR compliance . Degree in IT, Information Security, or Cyber Security (or equivalent). Strong project leadership and team management skills … concerns. Knowledge of Data Protection, Privacy, Governance, Risk, and Compliance principles. Desirable but not essential: industry-recognised certifications (CISM, CISA, ISO 27001 Lead Implementer, PCIDSS ISA, PCI-P). Expertise in UK Gambling Commission Remote Technical Standards. Strong foundation in Governance, Risk Management, and Compliance . More ❯
Maidenhead, Berkshire, United Kingdom Hybrid / WFH Options
Grosvenor Casinos Limited
within the IT Security Team, you will ensure alignment with internal controls, regulatory requirements, and industry-leading security standards such as ISO 27001 and PCIDSS . Your responsibilities will include: Leading the planning and execution of IT security audits, including ad-hoc assessments and recurring external audits … with internal teams, auditors, and regulatory bodies to ensure full compliance and continuous improvement. Qualifications Proven experience leading audit preparation activities for ISO 27001, PCIDSS, and GDPR compliance . Degree in IT, Information Security, or Cyber Security (or equivalent). Strong project leadership and team management skills … concerns. Knowledge of Data Protection, Privacy, Governance, Risk, and Compliance principles. Desirable but not essential: industry-recognised certifications (CISM, CISA, ISO 27001 Lead Implementer, PCIDSS ISA, PCI-P). Expertise in UK Gambling Commission Remote Technical Standards. Strong foundation in Governance, Risk Management, and Compliance . More ❯
Guildford, Surrey, United Kingdom Hybrid / WFH Options
Sycurio
The Information Security Director develops, shapes, and maintains Sycurio's information security capability, driving the attainment and maintenance of the ISO27001, PCI-DSS, and SOC2 compliance. They are the subject matter expert on all things regarding security and compliance, owning the information risk management processes. They are the … parties and providing assurance of policies, procedures, and systems. Develop, maintain, and expand the information security management system ('ISMS') to optimise compliance for ISO27001, PCI-DSS, and SOC2. Identify gaps in the information security capability, both technical and operational, and propose remediation and mitigation plans and solutions. Responsible … CISSP, CISM, CISA, or equivalent. Experience: 10+ years of information security experience. Financial/Fintech services/payments desirable. Deep knowledge of security frameworks (PCI, ISO 27001, NIST) and regulations (GDPR, CCPA). Experience with PCIDSS compliance and implementation. Proven success in managing external auditors to More ❯
Loughton, England, United Kingdom Hybrid / WFH Options
Talkspirit
responsible lending. Role Summary This is an initial 6-month contract for an experienced DevSecOps Engineer focused on securing Azure infrastructure, integrating security automation, PCIDSS compliance, vulnerability testing, and incident response. The role involves developing and maintaining secure Azure DevOps pipelines and Infrastructure as Code (IaC) using … Oversee SOAR solutions including SOC Prime. Manage Web Application Firewalls (WAF) and Intrusion Prevention Systems (IPS). Conduct vulnerability assessments and penetration testing. Ensure PCIDSS compliance through audits and risk assessments. Implement DNS security solutions. Develop incident response processes with third-party support. Develop SIEM solutions, logging … Microsoft Defender, and Sentinel. Experience with SOAR technologies, penetration testing, and vulnerability assessments. Proficiency with Terraform and IaC security automation. Knowledge of DevOps pipelines, PCIDSS, SIEM, and security frameworks. Scripting skills (Python, Bash, PowerShell). Excellent interpersonal skills and ability to work onsite daily. Preferred Qualifications Certifications More ❯
Aldgate, England, United Kingdom Hybrid / WFH Options
Funky Pigeon
and external) as the datasecurity representative on development projects to deliver secure and compliant security operational services Documenting evidence in support of annual PCIDSS and privacy impact assessments (DPIA) What we are looking for: Experience in a combination of risk management, information security and IT roles … including Audit) Knowledge gained through working with common information security management frameworks (e.g.ISO27001, Cyber Essentials, NIST, PCIDSS, SOC2) A strong knowledge of Office 365, Teams, and SharePoint Knowledge of data protection regulations and requirements Experience of PCI-DSS controls and implementation How we reward our More ❯
London, England, United Kingdom Hybrid / WFH Options
ZipRecruiter
both technical and senior non-technical audiences Support compliance and alignment with industry standards such as ISO 27001 , NIST , SOC2 , CAF , Cyber Essentials , and PCIDSS Collaborate with technical teams to probe and challenge risk-related assumptions constructively Engage with stakeholders across the organisation to ensure risk appetite … Risk , with the ability to relate risks to business impact Familiarity with risk frameworks including ISO 27001 , NIST , SOC2 , CAF , Cyber Essentials , and ideally PCIDSS A technical grounding - you're not an engineer, but you understand enough to ask the right questions and engage with technical teams … UK . Unfortunately, we are unable to provide visa sponsorship. Search keywords: Cyber Risk Consultant, Information Security, ISO 27001, NIST, SOC2, CAF, Cyber Essentials, PCIDSS, Hybrid Cloud, Threat and Vulnerability Management, Risk Appetite, Risk Advisory, Information Assurance, Security Frameworks, IT Governance, Ex-Forces Cyber, RAF Cyber Careers More ❯
Manchester, North West, United Kingdom Hybrid / WFH Options
N Brown Group
security culture across the organisation; identifying and tracking risks in our supply chain; and for ensuring we maintain compliance with regulations such as the PCIDSS The team works closely with 1st and 2nd line risk to develop suitable controls and metrics to ensure the Digital Operations department … control testing strategies, to ensure our security controls are operating effectively and achieving their purpose Help maintain compliance with applicable regulations such as the PCIDSS, assist in finding ways to streamline the assessment process Support the development and delivery of the security awareness training programme by working … with technology platforms and the controls to mitigate them Able to constructively challenge processes and procedures to drive continuous improvement Experience of working within PCIDSS, or other compliance frameworks Excellent communication skills with the ability to build great relationships across the business and articulate security concepts to More ❯
London, England, United Kingdom Hybrid / WFH Options
Masabi Ltd
to lead our audit readiness, policy governance, and day-to-day compliance operations. You'll help ensure we remain aligned with international standards like PCIDSS, ISO 27001, and SOC 2, while supporting teams across the business to embed clear, practical compliance into their work. Location//… remote or hybrid basis for candidates based in the UK. Respoinsibilities Compliance Operations Lead the day-to-day delivery of our compliance programme across PCIDSS, ISO 27001, and SOC 2. Maintain our compliance calendar and manage evidence collection, documentation reviews, and control testing. Work closely with internal … management efforts. About You Solid experience in compliance, audit support, security governance, or a related area within a SaaS or tech environment. Familiarity with PCIDSS, ISO 27001, SOC 2, and regulatory compliance frameworks. Strong organisational skills with a track record of managing control documentation, audit deliverables, and More ❯
for conducting audits, writing clear and actionable reports, and advising clients on how to align with industry standards such as ISO 27001, SOC 2, PCIDSS, DORA, and more. You'll also be involved in pre-sales activities, mentoring junior consultants, and representing the business externally. GRC Cyber … Security Consultant Key Responsibilities: Deliver compliance assessments and risk audits (ISO 27001, SOC 2, NIS2, PCIDSS, DORA, UK DPA) Conduct supply chain and project-specific risk assessments Prepare comprehensive audit documentation and remedial recommendations Liaise directly with clients, delivering projects on time and to scope Assist in … They Are Looking For: Essential: Circa 7+ years of experience in risk assessment and compliance consulting Strong understanding of major frameworks (ISO, SOC 2, PCIDSS, DORA, UK DPA) Excellent reporting and communication skills Proven track record of managing client-facing projects Detail-oriented with strong project management More ❯
London Bridge, Chaucer, Greater London, United Kingdom Hybrid / WFH Options
Remarkable Jobs
for conducting audits, writing clear and actionable reports, and advising clients on how to align with industry standards such as ISO 27001, SOC 2, PCIDSS, DORA, and more. You'll also be involved in pre-sales activities, mentoring junior consultants, and representing the business externally. GRC Cyber … Security Consultant Key Responsibilities: Deliver compliance assessments and risk audits (ISO 27001, SOC 2, NIS2, PCIDSS, DORA, UK DPA) Conduct supply chain and project-specific risk assessments Prepare comprehensive audit documentation and remedial recommendations Liaise directly with clients, delivering projects on time and to scope Assist in … They Are Looking For: Essential: Circa 7+ years of experience in risk assessment and compliance consulting Strong understanding of major frameworks (ISO, SOC 2, PCIDSS, DORA, UK DPA) Excellent reporting and communication skills Proven track record of managing client-facing projects Detail-oriented with strong project management More ❯
London, England, United Kingdom Hybrid / WFH Options
Masabi
Compliance Manager to lead our audit readiness, policy governance, and day-to-day compliance operations. You'll help ensure alignment with international standards like PCIDSS, ISO 27001, and SOC 2, working across teams to embed clear, practical compliance into everything we do. Location//This role … is available on a fully remote or hybrid basis for candidates based in the UK. Responsibilities include Leading Masabi’s compliance programme (PCIDSS, ISO 27001, SOC 2) and maintaining year-round audit readiness Managing the compliance calendar, documentation reviews, and internal control testing Developing and enforcing clear … Customer teams across the business About you Solid experience in compliance, audit support, or security governance within a SaaS or tech environment Familiar with PCIDSS, ISO 27001, SOC 2, and broader regulatory compliance frameworks Understanding of GDPR principles and experience supporting data protection compliance efforts Strong organisational More ❯
London, England, United Kingdom Hybrid / WFH Options
GRC International Group
projects across the range of cyber services provided by our Cyber Security Team. These services include the IASME Cyber Essentials scheme, vulnerability assessment and PCIDSS scanning. You will be responsible for: Providing a wide variety of clients with high-quality consultancy advice and support in relation to … Cyber Essentials assessments ensuring compliance with the scheme guidelines; Managing client workloads effectively, all within service level agreement targets; Supporting our vulnerability assessments and PCIDSS scanning services; and Working with the Head of Cyber Essentials to identify improvements to our processes and opportunities for automation. To be … of networking protocols and server administration. Knowledge of networking systems from a range of manufacturers. Knowledge of current security standards such as ISO27001 and PCIDSS If this sounds like the role for you, then please get in touch today! To apply, please click the button below and More ❯
Glasgow, Scotland, United Kingdom Hybrid / WFH Options
Dionach
audits, help implement aspects of ISO 27001, and engage in risk management. Furthermore, there is potential for growth into such diverse fields as PCIDSS, privacy, and business continuity. Requirements Essential experience and skills: Recognized ISO 27001 Lead Auditor qualification and certificate Significant experience in auditing ISO … of compliance programs Desirable qualifications and experience: Information security qualifications such as CISSP, CISA, or CISM Familiarity with GRC cloud-based systems Experience of PCIDSS or a PCI QSA Experience auditing SWIFT CSCF Developing and providing training Writing policies and technical documents Managing a team or … clients across all sectors, which presents opportunities for both interesting work and career development. Dionach have leading industry certifications including CREST, Cyber Scheme, CHECK, PCI QSA, SWIFT CSCF, and ISO 27001, with a focus on improving customers' security, and developing people's skills and qualifications. Dionach are always looking More ❯
PO15, Whiteley, Hampshire, United Kingdom Hybrid / WFH Options
Stratospherec Ltd
skills and experience: Strong expertise in defining, delivering, and supporting robust, resilient, and secure enterprise infrastructure. Experience with IT audits and compliance frameworks (CIS, PCIDSS … Cyber Essentials, NIST, ISO 27001). In-depth understanding of network security and compliance in regulated environments. Proven ability to secure high-value data (PCI cardholder data, PII) and implement security best practices. Strong networking knowledge (LAN, WAN, DNS, DHCP, VPN, TCP/IP). Proficiency in firewall and … Experience with monitoring tools (SolarWinds SentryOne, Zabbix, etc.). Excellent problem-solving, communication, and documentation skills. Some familiarity with financial services regulations and compliance (PCIDSS, GDPR, DORA) would be useful but not essential. Desirable/bonus (but not essential) skills and experience: Some interest in learning and More ❯
London, England, United Kingdom Hybrid / WFH Options
Stratospherec Ltd
skills and experience: Strong expertise in defining, delivering, and supporting robust, resilient, and secure enterprise infrastructure. Experience with IT audits and compliance frameworks (CIS, PCIDSS … Cyber Essentials, NIST, ISO 27001). In-depth understanding of network security and compliance in regulated environments. Proven ability to secure high-value data (PCI cardholder data, PII) and implement security best practices. Strong networking knowledge (LAN, WAN, DNS, DHCP, VPN, TCP/IP). Proficiency in firewall and … Experience with monitoring tools (SolarWinds SentryOne, Zabbix, etc.). Excellent problem-solving, communication, and documentation skills. Some familiarity with financial services regulations and compliance (PCIDSS, GDPR, DORA) would be useful but not essential. Desirable/bonus (but not essential) skills and experience: Some interest in learning and More ❯
and maintaining security measures to safeguard our information assets. We operate in a highly regulated global SaaS organization that has multiple certifications such as PCI-DSS, ISO/IEC 27001, SOC2 and other standards we adhere to. In addition, we have a large, federated customer base that we … and maintaining security measures to safeguard our information assets. We operate in a highly regulated global SaaS organization that has multiple certifications such as PCI-DSS, ISO/IEC 27001, SOC2 and other standards we adhere to. In addition, we have a large, federated customer base that we … projects, with multiple security tools. Have a proven track record of successes. Understanding of security compliance standards relevant to the SaaS industry, such as PCI, GDPR, ISO 27001, SOC2, NIST. An understanding of application security principals, best practices, OWASP/related standards. Knowledge of security frameworks & controls, hardening standards More ❯
London, England, United Kingdom Hybrid / WFH Options
Smart Communications group
and maintaining security measures to safeguard our information assets. We operate in a highly regulated global SaaS organization that has multiple certifications such as PCI-DSS, ISO/IEC 27001, SOC2 and other standards we adhere to. In addition, we have a large, federated customer base that we … and maintaining security measures to safeguard our information assets. We operate in a highly regulated global SaaS organization that has multiple certifications such as PCI-DSS, ISO/IEC 27001, SOC2 and other standards we adhere to. In addition, we have a large, federated customer base that we … projects, with multiple security tools. Have a proven track record of successes. Understanding of security compliance standards relevant to the SaaS industry, such as PCI, GDPR, ISO 27001, SOC2, NIST. An understanding of application security principals, best practices, OWASP/related standards. Knowledge of security frameworks & controls, hardening standards More ❯
City of London, London, United Kingdom Hybrid / WFH Options
SR2 | Socially Responsible Recruitment | Certified B Corporation™
risks to information assets and IT systems. Lead enterprise risk assessments and mitigation planning. Compliance & Regulatory: Ensure adherence to global data protection regulations (GDPR, PCI-DSS, etc.), working closely with legal and data protection teams. Leadership & Stakeholder Engagement: Act as the subject matter expert on cybersecurity at the … GRC function in a complex environment. Deep knowledge of information security standards (ISO 27001, NIST, CIS), risk frameworks (COSO, FAIR), and regulatory obligations (GDPR, PCI-DSS, SOX). Proven track record of managing enterprise-level security programs, including incident response and business continuity. Excellent stakeholder management skills, with More ❯
SR2 | Socially Responsible Recruitment | Certified B Corporation™
risks to information assets and IT systems. Lead enterprise risk assessments and mitigation planning. Compliance & Regulatory: Ensure adherence to global data protection regulations (GDPR, PCI-DSS, etc.), working closely with legal and data protection teams. Leadership & Stakeholder Engagement: Act as the subject matter expert on cybersecurity at the … GRC function in a complex environment. Deep knowledge of information security standards (ISO 27001, NIST, CIS), risk frameworks (COSO, FAIR), and regulatory obligations (GDPR, PCI-DSS, SOX). Proven track record of managing enterprise-level security programs, including incident response and business continuity. Excellent stakeholder management skills, with More ❯
london, south east england, united kingdom Hybrid / WFH Options
SR2 | Socially Responsible Recruitment | Certified B Corporation™
risks to information assets and IT systems. Lead enterprise risk assessments and mitigation planning. Compliance & Regulatory: Ensure adherence to global data protection regulations (GDPR, PCI-DSS, etc.), working closely with legal and data protection teams. Leadership & Stakeholder Engagement: Act as the subject matter expert on cybersecurity at the … GRC function in a complex environment. Deep knowledge of information security standards (ISO 27001, NIST, CIS), risk frameworks (COSO, FAIR), and regulatory obligations (GDPR, PCI-DSS, SOX). Proven track record of managing enterprise-level security programs, including incident response and business continuity. Excellent stakeholder management skills, with More ❯
South East London, England, United Kingdom Hybrid / WFH Options
SR2 | Socially Responsible Recruitment | Certified B Corporation™
risks to information assets and IT systems. Lead enterprise risk assessments and mitigation planning. Compliance & Regulatory: Ensure adherence to global data protection regulations (GDPR, PCI-DSS, etc.), working closely with legal and data protection teams. Leadership & Stakeholder Engagement: Act as the subject matter expert on cybersecurity at the … GRC function in a complex environment. Deep knowledge of information security standards (ISO 27001, NIST, CIS), risk frameworks (COSO, FAIR), and regulatory obligations (GDPR, PCI-DSS, SOX). Proven track record of managing enterprise-level security programs, including incident response and business continuity. Excellent stakeholder management skills, with More ❯