Loughton, Essex, South East, United Kingdom Hybrid / WFH Options
Profile 29
a Work from Office (WFO) role. This role will focus on creating a business strategy, gap analysis and implementation, for securing their Azure-based infrastructure, integrating security automation, ensuring PCIDSS compliance, vulnerability and penetration testing and incident response. This role will focus on developing and maintaining secure, scalable Azure DevOps pipelines and Infrastructure as Code (IaC) using … Security: Manage Web Application Firewalls (WAF) and Intrusion Prevention Systems (IPS). Vulnerability & Penetration Testing: Review Penetration Testing, vulnerability assessments, and security scanning to proactively identify and remediate risks. PCIDSS Compliance: Conduct security audits, risk assessments, and ensure regulatory compliance. DNS Security: Implement and monitor DNS security solutions to prevent cyber threats. Incident Response: Formulating and documenting … Profile 29s privacy policy can be found at: profile-29 .com/privacy) Profile 29 recruitment keywords: DevSecOps DevOps Azure cloud security Microsoft Defender Microsoft Sentinel WAF IPS DNS pcidsspcidsspci-dss soar loughton Debden essex London More ❯
Loughton, Essex, England, United Kingdom Hybrid / WFH Options
Profile 29
a Work from Office (WFO) role. This role will focus on creating a business strategy, gap analysis and implementation, for securing their Azure-based infrastructure, integrating security automation, ensuring PCIDSS compliance, vulnerability and penetration testing and incident response. This role will focus on developing and maintaining secure, scalable Azure DevOps pipelines and Infrastructure as Code (IaC) using … Security: Manage Web Application Firewalls (WAF) and Intrusion Prevention Systems (IPS). Vulnerability & Penetration Testing: Review Penetration Testing, vulnerability assessments, and security scanning to proactively identify and remediate risks. PCIDSS Compliance: Conduct security audits, risk assessments, and ensure regulatory compliance. DNS Security: Implement and monitor DNS security solutions to prevent cyber threats. Incident Response: Formulating and documenting … to work in the UK unrestricted for at least the next 5 years. Profile 29 recruitment keywords: DevSecOps DevOps Azure cloud security Microsoft Defender Microsoft Sentinel WAF IPS DNS pcidsspcidsspci-dss soar loughton Debden essex London More ❯
Stockport, Cheshire, England, United Kingdom Hybrid / WFH Options
Computer Futures
Job Specification Project Manager - PCIDSS Compliance Location: Stockport (Hybrid - 1 day/week onsite) Rate: Up to £600/day (Inside IR35) Contract Length: 3 months initially Start Date: ASAP Sector: Transport Overview We are seeking an experienced Project Manager to lead a critical PCIDSS compliance project within the transport sector. This role requires … the project, drive delivery, and coordinate across multiple teams and stakeholders to ensure successful and timely compliance. Key Responsibilities Lead and manage the end-to-end delivery of the PCIDSS compliance project. Act as the central point of contact for all PCIDSS-related activities. Coordinate with internal teams, external vendors, and Qualified Security Assessors … risk registers. Proactively identify and resolve project risks, issues, and blockers. Provide regular updates to senior stakeholders and ensure alignment with business objectives. Essential Skills & Experience Proven experience managing PCIDSS compliance projects. Strong understanding of QSA processes and AOC documentation. Excellent stakeholder engagement and communication skills. Ability to lead cross-functional teams and drive accountability. Strong organisational More ❯
Manchester, North West, United Kingdom Hybrid / WFH Options
Circle Group
required to join our client's UK cybersecurity team. This in house role is predominantly advising on security best practices, vulnerability management and securitystandard compliance (e.g. NIST, ISO, PCIDSS etc), and leading audits and examinations. So you should have good knowledge of security tooling and processes, compliance and security management (endpoint protection, cloud, SIEM etc). … Cyber Security within an cloud environment (AWS, Azure of GCP) Any experience with CrowdStrike/Endpoint Protection would be a bonus Good experience with security complience (e.g. NIST, ISO, PCIDSS etc) Strong Securitystandard knowledge and experience, consulting on a range of security policies and standards such as GDPR, ISO, PCI, NIST Confidence when speaking with … in a vibrant office with some of most forward-thinking technical people Key Responsibilities: Analysing and developing security requirements, as well as carrying out vulnerability management & compliance work in PCIDSS type projects Ensure consistency across IT Security risk management activities. Advise Engineers on information related to new vulnerabilities and threats and their remediation, to improve vulnerability management. More ❯
Manchester, Lancashire, England, United Kingdom Hybrid / WFH Options
Circle Recruitment
required to join our client's UK cybersecurity team. This in house role is predominantly advising on security best practices, vulnerability management and securitystandard compliance (e.g. NIST, ISO, PCIDSS etc), and leading audits and examinations. So you should have good knowledge of security tooling and processes, compliance and security management (endpoint protection, cloud, SIEM etc). … Cyber Security within an cloud environment (AWS, Azure of GCP) Any experience with CrowdStrike/Endpoint Protection would be a bonus Good experience with security complience (e.g. NIST, ISO, PCIDSS etc) Strong Securitystandard knowledge and experience, consulting on a range of security policies and standards such as GDPR, ISO, PCI, NIST Confidence when speaking with … in a vibrant office with some of most forward-thinking technical people Key Responsibilities: Analysing and developing security requirements, as well as carrying out vulnerability management & compliance work in PCIDSS type projects Ensure consistency across IT Security risk management activities. Advise Engineers on information related to new vulnerabilities and threats and their remediation, to improve vulnerability management. More ❯
procedures in alignment with business objectives, while considering operational needs. Direct the management and continuous improvement of the Information Security Management System (ISMS). Oversee and manage Ravelin's PCIDSS and PCI 3DS compliance program, ensuring requirements are fulfilled, maintained, and areas for enhancement are identified. Conduct routine risk assessments to determine and reduce information security … robust cyber incident response plan, including coordinating necessary responses to incidents and security investigations. Requirements Extensive practical experience implementing and maintaining an ISO 27001 compliant ISMS. Demonstrable experience with PCIDSS compliance, including preparing for and undergoing assessments. Familiarity with information security frameworks (e.g., NIST, CIS). Proficiency in risk management methodologies. Knowledge of common security technologies (e.g. More ❯
PO15, Whiteley, Hampshire, United Kingdom Hybrid / WFH Options
Stratospherec Ltd
CIS, PCIDSS, Cyber Essentials, NIST, ISO 27001). In-depth understanding of network security and compliance in regulated environments. Proven ability to secure high-value data (PCI cardholder data, PII) and implement security best practices. Strong networking knowledge (LAN, WAN, DNS, DHCP, VPN, TCP/IP). Proficiency in firewall and load balancer technologies for secure … solutions (Veeam or similar). Experience with monitoring tools (SolarWinds SentryOne, Zabbix, etc.). Excellent problem-solving, communication, and documentation skills. Some familiarity with financial services regulations and compliance (PCIDSS, GDPR, DORA) would be useful but not essential. Desirable/bonus (but not essential) skills and experience: Some interest in learning and using automation tools such as More ❯
team with designing, innovating, deploying, and maintaining security measures to safeguard our information assets. We operate in a highly regulated global SaaS organization that has multiple certifications such as PCI-DSS, ISO/IEC 27001, SOC2 and other standards we adhere to. In addition, we have a large, federated customer base that we strive to embed improvements for. … team with designing, innovating, deploying, and maintaining security measures to safeguard our information assets. We operate in a highly regulated global SaaS organization that has multiple certifications such as PCI-DSS, ISO/IEC 27001, SOC2 and other standards we adhere to. In addition, we have a large, federated customer base that we strive to embed improvements for. … on a variety of challenging projects, with multiple security tools. Have a proven track record of successes. Understanding of security compliance standards relevant to the SaaS industry, such as PCI, GDPR, ISO 27001, SOC2, NIST. An understanding of application security principals, best practices, OWASP/related standards. Knowledge of security frameworks & controls, hardening standards & security best practices. An understanding More ❯
support developers in secure coding practices to reduce vulnerabilities proactively. Governance, Compliance & Training Ensure that application security architecture and practices comply with relevant regulatory and industry standards such as PCI-DSS, SOC 2, ISO 27001, and GDPR. Lead efforts to prepare for and support external and internal audits by providing comprehensive documentation, risk assessments, and remediation evidence. Develop … and workload identity management. Proficient in at least one programming or Scripting language such as Python, Java, JavaScript, or Go. Solid understanding of FinTech compliance requirements and standards including PCI-DSS, SOC 2, GDPR, and ISO 27001. Excellent communication and collaboration skills, capable of working with diverse teams and stakeholders. Nice to Have Industry certifications such as Certified More ❯
Lead response to major incidents, and provide guidance to executive leadership Define KPIs, SLAs and manage the security operations budget Stay current on global cyber threats, compliance requirements (including PCI-DSS), and evolving tech trends Key Responsibilities of the Senior Security Operations Manager: Extensive experience in cyber security leadership roles (10–15 years total, with 5+ in senior … CASB, DLP, endpoint protection, cloud security, firewalls, etc. Prior hands-on experience in security engineering or architecture is highly desirable Exceptional knowledge of global compliance frameworks (NIST, ISO 27001, PCI-DSS, GDPR) Excellent stakeholder management and leadership skills Relevant certifications (CISSP, CISM, CISA or similar) Incredible Benefits: £10,000 per month income tax free! Relocation support package, including More ❯
Manchester, Lancashire, England, United Kingdom Hybrid / WFH Options
VIQU Limited
Lead response to major incidents, and provide guidance to executive leadership Define KPIs, SLAs and manage the security operations budget Stay current on global cyber threats, compliance requirements (including PCI-DSS), and evolving tech trends Key Responsibilities of the Senior Security Operations Manager: Extensive experience in cyber security leadership roles (10–15 years total, with 5+ in senior … CASB, DLP, endpoint protection, cloud security, firewalls, etc. Prior hands-on experience in security engineering or architecture is highly desirable Exceptional knowledge of global compliance frameworks (NIST, ISO 27001, PCI-DSS, GDPR) Excellent stakeholder management and leadership skills Relevant certifications (CISSP, CISM, CISA or similar) Incredible Benefits: £10,000 per month income tax free! Relocation support package, including More ❯
and manage observability with Datadog across platforms Support and enhance AWS cloud infrastructure Review, audit, optimize, and document deployment processes Adhere to change management processes aligned with ISO27001 and PCI-DSS Enable self-service capabilities for development teams Assist with incident response and platform support Optimize cloud costs across infrastructure Your Experience & Qualifications: 5+ years’ experience in a … database, and security services Proficiency in Infrastructure as Code using Terraform A solid understanding of container security and best practices Strong scripting skills (Python, Bash) Experience in regulated environments (PCI-DSS preferred) A self-motivated, communicative, and adaptable approach The ability to manage projects with multiple workstreams and deadlines Experience with GitOps workflows, service mesh technologies (Istio), and More ❯
as part of our team. About the role As a DevOps Engineer, you will be responsible for designing, implementing, and managing AWS-based highload infrastructure while ensuring compliance with PCIDSSsecurity standards. You will play a crucial role in automating deployments, optimizing system performance, and maintaining reliability in a high-scale environment. The role requires expertise in … redundancy. Develop and optimize CI/CD pipelines to streamline deployments and support zero-downtime releases. Monitor system performance, troubleshoot issues, and implement security best practices in compliance with PCI DSS. We're looking for you if you have 5+ years of DevOps experience, with a focus on AWS, CI/CD, and highload environments. Experience deploying and maintaining … Docker, Kubernetes, and Infrastructure as Code (IaC). Proven track record of achieving high availability for mission-critical services. Solid knowledge of monitoring, security best practices, and compliance with PCIDSS standards. Bonus Points Experience with DORA compliance for financial service providers. What's in it for You Reveal great tech solutions Join the team of experts who More ❯
quality and maintainability through refactoring and increased test coverage. Drive best practices in security, DevOps, and coding standards. Collaborate with support and infrastructure teams to resolve issues and maintain PCIDSS Level 1 compliance. Guide offshore development teams and contribute to team structure and hiring decisions. Tech Stack & Tools: Languages: Java Infrastructure: AWS, Docker, Bitbucket Pipelines, Tomcat, Debian …/Amazon Linux CI/CD: Bitbucket Pipelines Compliance: PCIDSS Level 1 What Were Looking For: 5+ years of Java development experience, ideally with exposure to payments or fintech. Strong understanding of secure coding and scalable architecture. Experience working with remote and cross-functional teams. Background in maintaining or achieving compliance (e.g. PCI). Proactive, collaborative More ❯
Colorado Springs, Colorado, United States Hybrid / WFH Options
OSAAVA Services
SASE, NAC, and next-gen firewalls to support secure access and business continuity. Governance & Compliance Alignment: Ensure designs align with enterprise security policies, compliance requirements (e.g., NIST, ISO 27001, PCI-DSS), and architecture governance standards. Key Skills & Experience 8+ years of experience in network security, cybersecurity architecture, or network engineering-including 3+ years in a design or architecture More ❯
Windows, Apple & Android OS . Knowledge of network perimeter security, including firewalls, WAF, anti-virus, and O365 compliance & security centre . Familiarity with NIST (CSF Framework 2.0), ISO 27001, PCI-DSS, and GDPR . Experience operating and managing SIEM solutions , vulnerability management tools, and secure configuration tooling. Ability to use PowerShell and Python scripting for security automation. Experience More ❯
laptop security etc). Incident response: enhance incident detection and response capabilities, ensuring rapid and competent handling of security events, that comply with relevant regulatory requirements, e.g. e.g. ISO27001, PCIDSS, GDPR, DORA. Collaboration: work closely with teams across the business and SREs to stabilise security operations triage and build out 24x7 support requirements. Act as a subject More ❯
Knutsford, Cheshire, North West, United Kingdom Hybrid / WFH Options
Experis
analytical abilities to interpret security reports and identify vulnerabilities are essential, along with excellent communication, teamwork, multitasking, and attention to detail. Familiarity with compliance standards such as GDPR, HIPAA, PCI-DSS, and frameworks like NIST and ISO 27001 is also important. A Security Logging Specialist requires a bachelor's degree in a relevant field (or equivalent experience) and More ❯
Reading, Berkshire, South East, United Kingdom Hybrid / WFH Options
Queen Square Recruitment Limited
on cloud security experience (AWS, Azure, or GCP multi-cloud preferred). In-depth understanding of financial services compliance requirements and frameworks (e.g., NIST CSF, ISO 27001, CSA CCM, PCIDSS). Expert-level knowledge of IAM, network security, encryption, API and application security, container security, and SIEM strategies. Proven leadership in DevSecOps practices and securing modern development More ❯
network systems, including IT security Ability to handle ambiguity and make decisions and recommendations with limited data Understanding of various Cyber/IT Security frameworks e.g. NIST; ISO-27001; PCI-DSS; EBA-ICT and FFIEC Solid analytical/problem-solving skills with capability to identify solutions to unusual and complex problems Please note MUFG operate a hybrid working More ❯
network systems, including IT security. Ability to handle ambiguity and make decisions and recommendations with limited data. Understanding of various Cyber/IT Security frameworks e.g. NIST; ISO-27001; PCI-DSS; EBA-ICT and FFIEC. Solid analytical/problem-solving skills with capability to identify solutions to unusual and complex problems. Please note MUFG operate a hybrid working More ❯
Salford, Greater Manchester, North West, United Kingdom Hybrid / WFH Options
AJ BELL BUSINESS SOLUTIONS LIMITED
risk management tools and techniques Experience of security governance and compliance, ideally gained in financial services organisations Demonstrable understanding of Information Security control standards and frameworks e.g. ISO27001, NIST, PCIDSS Awareness and understanding of the Information Security threat landscape Deep understanding of Information Security solutions and controls Experience of Cloud security solutions and standards is highly advantageous More ❯
finish. Bonus points if you bring: Experience with AppSec and DevSecOps. Hands-on knowledge of Azure, AWS, and/or Google Cloud. Familiarity with standards like ISO2700X, ISO31000, NIST800, PCI-DSS. Certifications such as CISSP, CCSP, CRISC, CISM, or SABSA. Why QBE? At My Best At QBE, we want our people to feel rewarded and inspired to perform at More ❯
for breaches. Known for crafting innovative and cost-effective Information Security Management Systems (ISMS), the consultancy enables quantifiable compliance with key information security legislation, regulations, and industry standards, including PCIDSS, the UK Data Protection Act 2018 (DPA 2018), GDPR, and ISO/IEC 27001. If you would like to learn more about this opportunity, feel free to More ❯