1 to 25 of 82 Permanent ISO 27001 Lead Implementer Jobs in England

Assistant Manager – Information Security

Location
Greater London, England, United Kingdom
Maintain and continuously improve the ISO 27001:2022 Information Security Management System, including policies, standards, procedures, documentation and Statement of Applicability. Provide security and data protection assurance for new initiatives, changes and projects, embedding security-by-design and privacy-by-design. Conduct information security … strongly preferred, for example CISM, CISSP, ISO 27001 Lead Implementer / Lead Auditor. Technology-centric training and certification is an advantage. 5+ years’ experience in information and cyber security implementation, management and governance, ideally within ...

Senior Security Consultant

Location
Greater London, England, United Kingdom
Define, implement and monitor corporate information security strategies, objectives and governance frameworks Design and implement information security management systems and security master plans Lead risk management activities, including risk identification, assessment, treatment and reporting Define cybersecurity action plans and oversee their execution Ensure the protection of services … analyses and defining continuity and testing plans Implement and maintain information security controls aligned with applicable laws, regulations, standards and best practices, including ISO 27001 / 27002, GDPR, Cyber Assessment Framework (CAF) and NIST CSF Develop and maintain information security policies, standards and procedures ...

Security Engineer, Compliance Focus

Location
Greater London, England, United Kingdom
here is not a paperwork exercise at the edge of the business. It is a condition of doing business. We are working toward ISO 27001 certification and SOC 2 Type II attestation across a company that is scaling quickly, operating multi-tenant infrastructure … control is actually working or only described. What You Will Be Doing Compliance Execution Implement and maintain the control set defined for our ISO 27001 and SOC 2 Type II programs, tracking status, owners, and gaps against the certification timeline. Operate our GRC platform ...

Cyber Requirements & Compliance Specialist

Location
Greater London, England, United Kingdom
engagement with regulators and external stakeholders where required. Track regulatory findings, recommendations and actions through to closure. Assist with external certification activities, including ISO 27001 and Cyber Essentials Plus. Knowledge & Skills: Strong understanding of cyber security principles, governance frameworks and compliance management practices. Knowledge … version control processes. Strong stakeholder engagement and communication skills, with the ability to work effectively across technical and business functions. Familiarity with ISO 27001 / 27002, NIST Cyber Security Framework (CSF) 2.0 and the NCSC Cyber Assessment Framework (CAF). Understanding ...

Principal Security Architect

Hiring Organisation
Experis UK
Location
England, United Kingdom
sectors. This is a senior client facing role focused on Governance, Risk and Compliance (GRC), Security Assurance and Defence security frameworks. You will lead complex engagements, provide strategic security advice to senior stakeholders and help organisations navigate demanding security, assurance and accreditation requirements. Working within a highly … collaborative consulting environment, you will support critical programmes while helping shape security strategy, governance and risk management activities. Key Responsibilities Lead the delivery of cyber security, information assurance and GRC engagements. Provide trusted security advice to senior client stakeholders. Deliver Security Assurance and Accreditation activities within Defence ...

Information Security & GRC Specialist

Location
Manchester, England, United Kingdom
ISMS), helping ensure Vix remains compliant, audit-ready and continually improving. Working across Security, Engineering, Technology and the wider business, you’ll coordinate ISO 27001 activities, prepare for internal and external audits, manage evidence and help drive remediation actions through to completion. … help get things fixed. What You’ll Be Doing Own the day-to-day coordination and continuous improvement of our ISMS. Support ISO 27001 certification, surveillance and internal audits. Coordinate audit evidence and work with stakeholders to close findings and remediation actions. Maintain security ...

Security GRC Analyst Operations · Bristol ·

Location
West of England, England, United Kingdom
sector, Sports and law enforcement, and those customers expect us to show, not just say, that our controls work. You will administer our ISO 27001 ISMS day to day, maintain the risk register, lead customer security assurance, run the supplier assessment … Accountabilities ISMS and certification Administer the information security policy, set: review schedule, publication and acknowledgement records, with the CISO approving changes. Maintain ISO 27001:2022 certification: statement of applicability, evidence library, internal audit scheduling and external audit coordination. Work with IT to maintain security ...

Senior GRC Analyst

Location
Horwich, England, United Kingdom
security risk assessments across projects, systems, and technology changes, identifying risks and recommending practical controls. Support the maintenance and continuous improvement of the ISO 27001-aligned Information Security Management System (ISMS). Review and maintain information security policies, standards, procedures, and control frameworks … equivalent level. Demonstrable experience supporting regulatory, certification, or external security audit readiness, including evidence coordination and remediation management. Hands‐on experience with ISO 27001-aligned Information Security Management Systems and information security policy and control governance. Experience conducting project and technology security risk assessments ...

Cyber Security Controls Tester (Assurance)

Location
City Of London, England, United Kingdom
Evaluate the effectiveness of technical, procedural, and physical security controls against documented security requirements and standards. Assess security controls against recognised frameworks including ISO 27001 , NIST CSF , NIST 800-53 , and CIS Controls . Review security documentation, including High-Level Designs (HLDs), Low-Level … Required Skills & Experience Proven experience testing and assessing the effectiveness of security controls within complex enterprise environments. Strong knowledge of security frameworks including: ISO 27001 NIST Cyber Security Framework (CSF) NIST 800-53 CIS Controls Experience reviewing and testing: Network security controls Firewall configurations ...

Information Security Lead

Hiring Organisation
Hackajob Ltd
Location
Wallingford, Oxfordshire, South East, United Kingdom
Employment Type
Permanent
hackajob is partnering directly with Dexory to hire for this role. Information Security Lead / ISO27001 / SOC / GRC / Location: Wallingford - Oxfordshire (Hybrid) onsite circa 3 days minimum per week Permanent At Dexory, we are transforming the warehousing and logistics industry through data intelligence. Were … currently recruiting for an Information Security Lead to own and drive our compliance programmes (ISO 27001, SOC 1 Type 2, SOC 2 Type 2), act as the primary responder to customer security due diligence, and build the systems and knowledge base ...

Assistant Manager Information Security

Location
Greater London, England, United Kingdom
MAIN DUTIES Information Security & Risk Management Maintain and continuously improve the ISO 27001:2022 ISMS, including the Statement of Applicability, information security policies, standards and procedures, and the supporting documentation register, ensuring they remain current, mapped to control frameworks and audit-ready. Provide proactive … strongly preferred, for example CISM, CISSP, ISO 27001 Lead Implementer / Lead Auditor. Technology‐centric training and certification is an advantage. Experience And Skills 5+ years' experience in information and cyber security implementation, management ...

Information Security Manager - Fintech - Hybrid

Location
City Of London, England, United Kingdom
Programme Maintain and continuously improve the Information Security Management System, firmwide information security programme, security policies, certifications and control framework, aligned to ISO 27001, SOC 2, DORA‐related customer obligations, applicable financial services expectations and Crédit Agricole Group requirements. Partner with Product, Engineering … such as CISSP, CISM, CISA, CRISC, ISO 27001 Lead Implementer / Lead Auditor or equivalent experience. Degree in cybersecurity, computer science, risk management or a related discipline, or equivalent practical experience. We believe we offer ...

Director of Security & Compliance

Hiring Organisation
Oscar Associates (UK) Limited
Location
London, United Kingdom
Employment Type
Permanent
CTO. With Cyber Essentials Plus already achieved and a 24 / 7 outsourced SOC in place, the organisation is now focused on achieving ISO 27001 certification, strengthening its governance and compliance framework, and ensuring the secure adoption of a rapidly expanding enterprise AI estate. … Responsibilities: Own security monitoring, incident response and security tooling, working closely with the outsourced SOC Line manage the IT Security Engineer and lead the organisation-wide security awareness programme Define identity, access and authentication standards, including RBAC, MFA and SSO Own the IT governance framework and regulatory ...

Cyber Operations & 3rd Party Security Manager

Hiring Organisation
Arbuthnot Latham
Location
London, United Kingdom
Salary
£ 80 K
forums.Support operational resilience and outsourcing requirements relating to 3rd-party cyber security.Governance, Reporting & Continuous ImprovementDevelop and maintain operational cyber security procedures and standards.Support ISO 27001 certification, regulatory compliance activities and audit engagements.Contribute to cyber risk reporting, metrics and management information for senior management … intelligence and vulnerability management.Experience of security incident management and cyber crisis response.Experience of supplier cyber risk assessments and 3rd-party risk management.Understanding of ISO 27001, NIST CSF, FCA / PRA expectations and operational resilience requirements.Strong stakeholder management, communication and reporting skills.Qualifications:Minimum ...

Cyber Security Architect & Engineering Lead

Location
Greater London, England, United Kingdom
Cyber Security Architect & Engineering Lead Department: IT Infrastructure Employment Type: Permanent - Full Time Location: City, London Reporting To: Head of Information Security Compensation: £75,000 / year Description We are looking for a senior, hands-on Cyber Security Architect & Engineering Lead to help shape … applications and integration platforms. Design and implement modern security controls, with a strong focus on Zero Trust, secure-by-design principles and automation. Lead security architecture reviews and threat modelling for major projects, new products, high-risk integrations and emerging technologies. Act as the technical lead ...

Cyber Security & Compliance Lead

Location
Greater London, England, United Kingdom
CYBER SECURITY & COMPLIANCE LEAD Hours Full-time, 9:30am – 5.30pm with flexibility required to support system changes, upgrades and critical incidents where necessary. Department IT / Risk & Compliance The Role The Cyber Security & Compliance Lead is responsible for defining, delivering, and continuously improving … expectations. Technical skills and expertise Essential Significant experience in cyber security, information security, or IT risk roles. Experience operating at a senior or lead level within a professional services or regulated environment. Strong understanding of security frameworks (e.g. ISO 27001, NIST ...

ISO Implementation Consultant

Location
London, United Kingdom
Robert Half are working with a leading payments organisation is looking for an experienced ISO Implementation Consultant to support the development and delivery of its ISO certification programme. This is an initial four-month contract, working approximately 20 hours per week, supporting a Europe … wide programme. The successful candidate will have a strong background in ISO implementation, information security, GRC, technology risk or cyber security, with practical experience advising organisations on ISO requirements and supporting them through certification or audit readiness. The role will combine hands-on ISO ...

ISO Implementation Consultant

Hiring Organisation
Robert Half Limited
Location
South East London, London, United Kingdom
Employment Type
Part Time, Work From Home
Robert Half are working with a leading payments organisation is looking for an experienced ISO Implementation Consultant to support the development and delivery of its ISO certification programme. This is an initial four-month contract, working approximately 20 hours per week, supporting a Europe … wide programme. The successful candidate will have a strong background in ISO implementation, information security, GRC, technology risk or cyber security, with practical experience advising organisations on ISO requirements and supporting them through certification or audit readiness. The role will combine hands-on ISO ...

Security Manager

Location
Bradford, England, United Kingdom
technical security requirements with governance, compliance, and stakeholder engagement. Key Responsibilities Manage and maintain compliance with security standards and accreditations including PCI DSS, ISO 27001, ISO 22301, Cyber Essentials Plus and IT Health Checks. Conduct internal audits, control reviews, and risk … Security Manager or similar information security role. Strong understanding of cyber security, governance, risk, and compliance frameworks. Extensive knowledge of PCI DSS, ISO 27001, Cyber Essentials Plus, and data protection requirements. Experience with Microsoft 365, Azure, AWS, vulnerability management, and SIEM tools. Strong communication ...

Security Manager (EMEA)

Hiring Organisation
Emovis operations
Location
LS1, Leeds, West Yorkshire, United Kingdom
Employment Type
Permanent
Salary
£60000 - £70000/annum
technical security requirements with governance, compliance, and stakeholder engagement. Key Responsibilities Manage and maintain compliance with security standards and accreditations including PCI DSS, ISO 27001, ISO 22301, Cyber Essentials Plus and IT Health Checks. Conduct internal audits, control reviews, and risk … Security Manager or similar information security role. Strong understanding of cyber security, governance, risk, and compliance frameworks. Extensive knowledge of PCI DSS, ISO 27001, Cyber Essentials Plus, and data protection requirements. Experience with Microsoft 365, Azure, AWS, vulnerability management, and SIEM tools. Strong communication ...

Senior GRC Content Engineer

Location
Greater London, England, United Kingdom
Security & Compliance Consultant Mandatory GRC skills — you must be able to demonstrate: Practical, implementation‐level experience with ISO / IEC 27001 (2022 control set): scoping, risk assessment and treatment, Statement of Applicability, running or facing internal and certification audits — not just framework literacy … CISA, CRISC, CGRC, ISO / IEC 27001 Lead Implementer / Lead Auditor, CIPP / E are appreciated — practical experience matters more Benefits & Perks 100% Remote – In a fully digital world, work from anywhere ...

CLOUD SECURITY ARCHITECT

Location
Greater London, England, United Kingdom
reference architectures and reusable solution patterns Define and author enterprise‐level security policies, controls frameworks, and governance documentation aligned to industry standards Lead risk assessments, threat modelling exercises, and security posture evaluations for cloud platforms and SaaS products, utilising methodologies such as FAIR Drive compliance programmes covering … ISO 27001, Cyber Essentials Plus, PCI DSS, and other relevant regulatory frameworks Support DevSecOps adoption and integrate security tooling and controls into CI / CD pipelines across client delivery teams Engage senior stakeholders and executive teams with clear security risk reporting, remediation guidance ...

Governance, Risk & Regulatory Compliance Director, Quality Risk & Security, Enabling Functions

Hiring Organisation
Deloitte
Location
London, United Kingdom
Salary
£ 80 K
business and manage data risk. We are looking for a Governance Risk & Regulatory Compliance (GRRC) Director to join the DBS leadership team and lead our independent second line of defence GRRC function, a key area for Deloitte UK and our clients. This is a new and exciting … behave, our beliefs, and our attitudes. In other words: our values. Whatever we do, wherever we are in the world, we lead the way, serve with integrity, take care of each other, foster inclusion, and collaborate for measurable impact. These five shared values lead ...

Governance, Risk & Regulatory Compliance Director, Quality Risk & Security, Enabling Functions

Hiring Organisation
Deloitte
Location
Bristol, Gloucestershire, United Kingdom
Salary
£ 70 K
business and manage data risk. We are looking for a Governance Risk & Regulatory Compliance (GRRC) Director to join the DBS leadership team and lead our independent second line of defence GRRC function, a key area for Deloitte UK and our clients. This is a new and exciting … behave, our beliefs, and our attitudes. In other words: our values. Whatever we do, wherever we are in the world, we lead the way, serve with integrity, take care of each other, foster inclusion, and collaborate for measurable impact. These five shared values lead ...

Governance, Risk & Regulatory Compliance Director, Quality Risk & Security, Enabling Functions

Hiring Organisation
Deloitte
Location
Reading, Berkshire, United Kingdom
Salary
£ 80 K
business and manage data risk. We are looking for a Governance Risk & Regulatory Compliance (GRRC) Director to join the DBS leadership team and lead our independent second line of defence GRRC function, a key area for Deloitte UK and our clients. This is a new and exciting … behave, our beliefs, and our attitudes. In other words: our values. Whatever we do, wherever we are in the world, we lead the way, serve with integrity, take care of each other, foster inclusion, and collaborate for measurable impact. These five shared values lead ...