keep our own thinking in tune with the world in which we operate. Office: London (hybrid - 2 days in the office per week) Duration: 12 month FTC The Information Security Team is a central support unit responsible for providing a complete security service to the Walkers. The Security Engineer will report to Information Security Operations Manager … and work with the Information Security Operations team for implementing and maintaining our security controls and tools. Work collaboratively with other departments to improve our security posture. They will be specifically responsible for completing the implementation of a number of strategic based security solutions for new security tooling or existing. The engineer will also participate … in security related service management processes (incident, change and problem management) and will participate in the planning, design, enforcement and review of security controls which protect the integrity of Walkers IT. “The ideal candidate will have worked within a Legal, Financial Services organisation or a similarly regulated company.” There will be an element of change, implementation More ❯
London, England, United Kingdom Hybrid / WFH Options
WSP
celebrates new ideas and diverse perspectives. You can experience a world of opportunity and the chance to shape a career as unique as you. Position Summary WSP's Information Security Office (ISO) is responsible for the deployment and maintenance of the information security framework for both the IT organization and wider business community. This includes the Governance mechanisms … policies and processes, tools and technologies, and employee training required to protect WSP information and that of our clients. The role of Regional Information Security Officer reports directly to the Business Information Security Officer and is responsible for delivering the Information Security Framework into the applicable region of WSP. This is primarily an internally facing role, although … some interaction with clients and third parties may be required. This position requires a senior management professional with relevant experience and a strong working knowledge of IT security, risk management, regulatory compliance, information and public cloud service technology, IT operations management principles, and third-party security management. A little more about your role... Specific areas More ❯
Bristol, England, United Kingdom Hybrid / WFH Options
Capgemini UK
About the job you're considering As a Security Manager, you will be the focal point of contact for any security matters on client engagements. With diverse clients covering a vast expanse of industry sectors, a day in the life of a Capgemini Security Manager is never dull. The role requirements vary from client to client and … sits within a wider Managed Services function, residing in the Cloud Infrastructure Services (CIS) UK business line. You will have the opportunity to interact with our global team of security experts, from Architects to Engineers, Analysts to Compliance Managers. Outreach in CIS doesn’t just stop at security, as we actively encourage our staff to engage with other … back 3 continuous years, and unspent criminal record check (known as Disclosure and Barring Service) Your role As a part of our fantastic Cyber Delivery team, comprising of 45+ security professionals, you will aid in delivering crucial security services and be accountable for the end-to-end management of security issues and incidents, acting as a More ❯
Information Security Compliance Officer Required Qualifications & Certifications: Education Bachelor's degree in Cybersecurity, Information Technology, Computer Science , or a related field. A master's degree in information security , Risk Management, or Compliance is a plus. Certifications (Highly Valued) CISSP (Certified Information Systems Security Professional) CISM (Certified Information Security Manager) CISA (Certified Information Systems Auditor) ISO … Certified in Risk and Information Systems Control) GDPR Certification (e.g., IAPP CIPP/E, CIPM for data protection compliance) Experience Requirements: 3-5+ years of experience in Information Security, Compliance, or IT Risk Management. Experience with regulatory frameworks in UK & EU : GDPR (General Data Protection Regulation) ISO 27001 (Information SecurityManagement Systems) Cyber Essentials Plus (UK … government-backed security framework) DORA (Digital Operational Resilience Act) - EU financial sector PCI-DSS (if handling payment data) Experience in: Managing vendor risk assessments for third-party compliance. Handling incident response & reporting (e.g., Data Breach Notifications under GDPR). Key Skills & Technical Knowledge: Deep understanding of data protection laws (UK GDPR, EU GDPR, DPA 2018) . Familiarity with risk More ❯
London, England, United Kingdom Hybrid / WFH Options
JN Bank UK
Join to apply for the Information Security Manager role at JN Bank UK Join to apply for the Information Security Manager role at JN Bank UK Reporting to: Head of IT Operations & Information Security Department: IT Operations & Information Security Place of Work: 57 Southwark Street, London, England We have a hybrid working model – currently working in … Broadband connectivity at home. Hours of Work: Full time.A great degree of flexibility is required for this post. Role Overview: We are seeking a proactive and detail-oriented Information Security Manager. to manage our organization’s information security operations. This role is responsible for implementing, maintaining, and improving our information security posture to protect the Bank’s … systems and data (Personally Identifiable Information (PII) and sensitive financial data). This role will be responsible for the implementation and maintenance of security protocols and controls, ensuring compliance with industry standards and regulations, and safeguarding the Bank’s infrastructure and digital assets from potential threats across all the Bank’s attack surface. The successful candidate will take a More ❯
Vodafone Newbury, England, United Kingdom Join or sign in to find your next job Join to apply for the Security & Compliance Senior Manager role at Vodafone Vodafone Newbury, England, United Kingdom 2 days ago Be among the first 25 applicants Join to apply for the Security & Compliance Senior Manager role at Vodafone Get AI-powered advice on this … the opportunities to help you belong and make a real impact. What You’ll Do The primary focus of the role will be to ensure best-in-class technical security consultancy to Vodafone across a wide range of IT, network & telecoms solutions and services. You need to be able to solve complex and multi-dimensional problems, adopting a risk … assurance for the IOT product portfolio with specific responsibility to ensure that Cyber governance, policies and standards are in place and effective. The role will require experience in technical security architectural best practice and the ability to identify technical controls improvements to positively uplift the security posture of IOT. Deep understanding of the IT and Network systems development More ❯
Date: 01.08.2025 col-wide Job Description: Job Description The team you'll be working with: As a strategic and leadership role you will be instrumental in shaping and driving security and risk programs to align with internal business objectives as well as industry good practice (including Secure by Design aligned to UK Government principles) and regulatory requirements (including GovAssure … to GRC challenges, applying agile methodologies to adapt to new regulations, compliance requirements and business change Advise on and foster continuous improvement and effectiveness of GRC processes, driving improved management information to better allow appropriate prioritisation and risk based decisions Lead initiatives that build a culture of accountability and responsibility across engagements Enhance governance processes and advise on how … best to evidence alignment with regulatory requirements (such as NCSC CAF) and industry good practice (including Secure by Design) Providing security expertise across security standards and accreditations, measure and control the effectiveness of the security controls framework and maintain the Information SecurityManagement System. Deriving and delivering documented Information SecurityManagement Plans which More ❯
Guildford, Surrey, United Kingdom Hybrid / WFH Options
Sycurio
The Information Security Director develops, shapes, and maintains Sycurio's information security capability, driving the attainment and maintenance of the ISO27001, PCI-DSS, and SOC2 compliance. They are the subject matter expert on all things regarding security and compliance, owning the information risk management processes. They are the thought leader on all matters within the security and compliance domain such that the company remains secure against the ever-changing security threat and compliance landscape. Information Security Strategy Create and maintain the Company's strategy, ensuring alignment to the Company's strategy and business goals. Work across internal and external stakeholders, communicating the information security strategy to relevant parties and providing assurance of … policies, procedures, and systems. Develop, maintain, and expand the information securitymanagement system ('ISMS') to optimise compliance for ISO27001, PCI-DSS, and SOC2. Identify gaps in the information security capability, both technical and operational, and propose remediation and mitigation plans and solutions. Responsible for the Company's information security capability, ensuring it remains secure against an More ❯
Direct message the job poster from Lancashire Insurance Group Information security is an essential function at Lancashire and is committed to its continuous improvement; the addition of this role is an important element in achieving its security objectives during Lancashire’s time of digital transformation and growth. Reporting to the Information Security Manager, the post holder will … be responsible for evaluating cyber security controls, conducting risk assessments and collaborating with cross-functional teams. The post holder will support the Information Security Manager in maintaining all aspects of information security risk management including responding to security inquiries and incidents, maintaining cyber security governance, and ensuring compliance with relevant regulatory requirements. Responsibilities Support … the Information Security Manager in delivering the Information SecurityManagement System and to drive continuous improvement for information security. Evaluate and assess cyber security controls across the business and its third party vendors to ensure compliance with the NIST Cyber Security Framework (CSF). Conduct comprehensive risk assessments using the NIST CSF. Use risk managementMore ❯
Job details Work Location London State/Region/Province London Country United Kingdom Domain Consulting Interest Group Infosys Limited Skills Process|Cybersecurity Competency Management|Cyber Workforce Education & Training Catering Company ITL UK Requisition ID 132345BR Job description Role - Senior Consultant (JL5) Technology - Cyber Security Consulting & Advisory Location - United Kingdom (London) Business Unit - Cyber Security, Cyber C … our clients continue to be the cornerstones of our organization and these values are upheld only because of our people. Your role As a Consultant in the Infosys Cyber security Consulting & Advisory (C&A) Team, you are an expert at contributing to different phases of the Cyber security consulting lifecycle. You will be intensely involved in; being a … highly skilled Cybersecurity practitioner in a primary skills associated to GRC, as well as secondary skill -Technical e.g. IDAM, Engineer, Network, IOT/OT security to join our team. The successful candidate will play a critical role in the Practice in support to clients and their security roadmap, business G&OS and at times compliance requirements through Assessments More ❯
Hatfield, England, United Kingdom Hybrid / WFH Options
Eisai EMEA
Join to apply for the Information Security Compliance Analyst role at Eisai EMEA Join to apply for the Information Security Compliance Analyst role at Eisai EMEA Get AI-powered advice on this job and more exclusive features. Direct message the job poster from Eisai EMEA Eisai is a leading research based pharmaceutical organisation with an extensive portfolio across … with a human healthcare philosophy, which means that we put the patient first in everything we do. Your new role **12 month fixed term contract (Salaried) As an Information Security Compliance Analyst, you will Support the development and maintenance of the EMEA information securitymanagement system, ensuring compliance with Global EIT strategy, EMEA business needs, and relevant … essential. CISM and/or CISSP or other relevant certification is highly desirable ISO 27001:2022 Lead Implementer/Auditor certification is highly desirable Demonstratable experience in an Information Security, IT Governance, Risk and Compliance based role, including maintaining and continually improving an ISO 27001 compliant management system. Experience of information securitymanagement and/or More ❯
The team you'll be working with: The Security Architect will be responsible for the design, implementation and ongoing development of the security architecture of the client's IT systems. The Security Architect will draw upon Enterprise Security Architecture or Security Solutions Architecture to: - Identify business objectives, user needs, risk appetite and cyber security obligations - Identify vulnerabilities, perform threat modelling, undertake risk assessment, evaluate the effectiveness of security controls - Verify and evidence alignment to 'Secure by Design' principles, corporate security policy/standards as well as industry recognised frameworks and best practice What you'll be doing: Develop, deliver and continually enhance a coherent approach to the design of secure client … end-to-end solutions Develop secure conceptual, logical and high level designs by identifying appropriate security controls to be embedded in solutions that meet business requirements whilst evidencing alignment to the target risk appetite. Own the design and be able to articulate and justify design recommendations at security architecture assurance gates Draft design documentation, options papers, risk assessments More ❯
in the Development and maintenance of IT resilience and business continuity plans to ensure the organisation's ability to respond to and recover from IT disruptions. Incident Response and Management: Provide support in DR related incident response activities, including investigating IT security incidents, breaches, and disruptions. Issue Identification: Identify and document control deficiencies, compliance gaps, and areas for … and corrective action plans to address identified issues. Documentation and Reporting: Maintain accurate documentation of risk assessments, compliance reviews, control testing activities, and remediation efforts. Prepare regular reports for management and stakeholders on the status of risk, compliance, and control activities. Policy and Procedure Development: Assist in the development and maintenance of risk management, compliance, and control-related … policies, procedures, and guidelines. Ensure alignment with regulatory requirements and industry best practices in alignment with the Global IS Governance Lead. Vendor Risk Management Support: Assist in assessing and managing risks associated with third-party vendors and service providers. Evaluate vendor controls and adherence to contractual obligations. Continuous Improvement: Identify opportunities for enhancing risk management, compliance, and control More ❯
Data role at BGIS Join to apply for the Head of Technology and Data role at BGIS About Us BGIS is a global leader in technical integrated building facility management services. Offering a full range of facility and real estate management services, BGIS partners with clients globally to bring forward innovative solutions. Job Description Job Title: Head of … Technology & Data About Us BGIS is a global leader in technical integrated building facility management services. Offering a full range of facility and real estate management services, BGIS partners with clients globally to bring forward innovative solutions. At BGIS, we believe there is always a better way. We seek out opportunities, encourage change and cultivate success. Our people … communities, and planet. In-depth As the Head of Technology and Data, you will be leading and managing a diverse suite of service technologies such as Computer Aided Facilities Management (CAFM), Finance and Workflow management systems and the associated data ensuring the information can be transformed into tactical actions and decisions. You will provide leadership and managementMore ❯
The Technical IT Security Manager will oversee the organisation’s security and data infrastructure, with a focus on technical aspects to ensure robust protection of information systems. This position involves managing security operations, implementing security measures, and leveraging Microsoft Azure’s security features to safeguard the organization’s data and infrastructure. Key Responsibilities: Security Operations Management: Be the Technical Expert to support and advance the objectives of IT Security and the wider group In conjunction with the leadership team, develop and implement security policies, procedures, and protocols Actively engaged in continuous monitoring and protection of networks, systems, and applications Technical Security Implementation: Design, implement and support new and existing … security solutions. (Privileged Access Management, Vulnerability Management, Threat Intelligence, etc) Expert in Microsoft Azure’s security tools and services. (Entra, Privileged Identity Management, conditional access, Microsoft defender, Sentinel, etc) Perform security input and guidance on tools being adopted within the organisation. Oversee and assess the outputs of the vulnerability management platforms to effectively More ❯
The Head of Security Assurance is responsible for leading the Security Assurance Department primarily made up of Security Assurance coordinators. The Head of Security Assurance is responsible for the co-ordination of all security assurance activities to ensure that SecureCloud+ services and supporting internal Information Technology meets the highest security standards and requirements of … our customers. The role will support the delivery of a variety of innovative, accreditable, cost efficient and profitable solutions to comply with HMG's security classification system, and will also lead on the transformation of delivery of services to the MOD's secure by design methodology. The Head of Security Assurance will encompass two key areas of Information … disruption and destruction to achieve the objectives of data integrity, availability and confidentiality. Role Responsibilities Key responsibilities for this role may include: Lead and Manage all members of the Security Assurance department. Mentor junior members of the Security Assurance department. Promote a strong security culture within the company. Co-ordinate the security accreditation and assurance processes More ❯
range is provided by Pioneer Search. Your actual pay will be based on your skills and experience — talk with your recruiter to learn more. Base pay range An Information Security Analyst is required for a leading Lloyd's Syndicate specialist insurer, recently emerging from a generational IT transformation. This transformation has expanded their digital footprint, introducing new technologies and … systems that require robust security measures. The business is committed to continuous improvement in information security and is looking for an InfoSec Analyst like you to join their team during this exciting phase of growth and transformation. As the ideal candidate, you will play a crucial role in safeguarding their digital assets, ensuring compliance with regulatory standards, and … mitigating risks associated with their expanded IT infrastructure. Your expertise in cyber security, risk management, and regulatory compliance, particularly for the US, will be vital in navigating the challenges and opportunities presented by this transformation, making a significant impact on their overall security posture. Key Responsibilities Collaborate: Work with cross-functional teams, customers, regulators, and auditors. Evaluate More ❯
Senior Cyber Security (GRC) Analyst This Senior Cyber Security (GRC) Analyst will report to the Cyber Security Governance, Risk & Compliance Manager and will work within the Information Systems directorate based in either our London or Crawley office. You will be a permanent employee. You will attract a salary of up to £75,000.00 and a bonus of … On - scheme providing discount on hundreds of retailers' products. Discounted gym membership. Employee Assistance Programme. Job Purpose The Senior Governance Risk and Compliance (GRC) Analyst will support the Cyber Security GRC Manager in developing IT governance, risk management, and compliance strategies across UK Power Networks information applications and users to safeguard essential business services and operations from cyber … Industry and Regulatory: Deputise for the GRC manager to represent UKPN in energy sector industry forums and regulatory working groups, working collaboratively with Ofgem and the Department for Energy Security and Net Zero. Communication: Communicate and work with all teams and partners in UK Power Networks. Good verbal, written, and presentational skills to express risks and the potential possible More ❯
Social network you want to login/join with: MUST HAVE PREVIOUS BANKING EXPERIENCE TO BE CONSIDERED Job purpose The Information Security Officer works within the Information Security Office of the Bank to ensure all information and cyber risks are identified, analysed, mitigated, and monitored, ensuring the smooth operation of the Bank. Where improvements are needed, the ISO … will contribute to the Information/Cyber Security Strategy and Roadmap, enabling both defence-in-depth and, where appropriate, defence-in-breadth to safeguard normal banking operations. The ISO will collaborate closely with Security Engineering, Security Operations, and Business Resilience Teams across the bank. The ISO addresses external attacks, mitigates zero-day vulnerabilities, and identifies security operating flaws. It ensures that Executive Management's risk targets are met and contributes to the continual improvement of the Bank's Cyber Assurance Framework, enhancing the control measures that defend the Bank. Key Responsibilities Collaborate with Information Security Engineering and Operations Teams to integrate security measures into business processes. Advise business units on securityMore ❯
Manchester, England, United Kingdom Hybrid / WFH Options
JR United Kingdom
Social network you want to login/join with: Head of Information Security, manchester col-narrow-left Client: Heywood Location: manchester, United Kingdom Job Category: Other - EU work permit required: Yes col-narrow-right Job Views: 3 Posted: 31.05.2025 Expiry Date: 15.07.2025 col-wide Job Description: About You Do you thrive on shaping information security goals and setting … the direction and vision of information security, specifically in a hybrid cloud environment? Does identifying potential security vulnerabilities across multiple platforms and planning remediation activities come as second nature to you? Do you have the technical security expertise to ‘shift left’ when it comes to increasing the maturity of information security operations as part of cloud … cybersecurity incidents, and data breaches? If so, then you could be just what we are looking for. Read on to find out more... The Role As Head of Information Security at Heywood, your role will be to develop, shape and update the Company’s information security capability, ensuring our hybrid cloud environment remains secure against an ever-changing More ❯
The Head of Security Assurance is responsible for leading the Security Assurance Department, primarily composed of Security Assurance coordinators. This role involves coordinating all security assurance activities to ensure that SecureCloud+ services and supporting internal IT meet the highest security standards and customer requirements. The position supports the delivery of innovative, accreditable, cost-efficient, and … profitable solutions to comply with HMG’s security classification system and leads the transformation of service delivery to align with the MOD’s secure by design methodology. The role encompasses two key areas: Information Assurance and Information Security . It involves implementing measures to protect and safeguard the company's critical information and systems, ensuring integrity, availability, authentication … confidentiality, and non-repudiation, as well as preventing illegitimate access, usage, revelation, alteration, disruption, and destruction of information. Role Responsibilities Lead and manage all members of the Security Assurance department. Mentor junior team members. Promote a strong security culture within the company. Coordinate security accreditation and assurance processes for new and existing services. Support the completion of More ❯
Senior Cyber Security (GRC) Analyst This Senior Cyber Security (GRC) Analyst will report to the Cyber Security Governance, Risk & Compliance Manager and will work within the Information Systems directorate based in either our London or Crawley office. You will be a permanent employee. You will attract a salary of up to £75,000.00 and a bonus of … On – scheme providing discount on hundreds of retailers’ products. Discounted gym membership. Employee Assistance Programme. Job Purpose The Senior Governance Risk and Compliance (GRC) Analyst will support the Cyber Security GRC Manager in developing IT governance, risk management, and compliance strategies across UK Power Networks information applications and users to safeguard essential business services and operations from cyber … Industry and Regulatory: Deputise for the GRC manager to represent UKPN in energy sector industry forums and regulatory working groups, working collaboratively with Ofgem and the Department for Energy Security and Net Zero. Communication: Communicate and work with all teams and partners in UK Power Networks. Good verbal, written, and presentational skills to express risks and the potential possible More ❯
London, England, United Kingdom Hybrid / WFH Options
Ravelin Technology Ltd
to our success and of great importance to our clients, our partners and to our team. This is why we are currently looking for someone to help evolve the security function. As the Information Security Manager in the team, you will be working with our Security engineers as well as other teams and stakeholders to drive improvements … to our security program and ensure a pragmatic approach to security and risk. Responsibilities Develop, implement, and maintain the organization's information security policies, standards, and procedures in alignment with business objectives, while considering operational needs. Direct the management and continuous improvement of the Information SecurityManagement System (ISMS). Oversee and manage Ravelin … s PCI DSS and PCI 3DS compliance program, ensuring requirements are fulfilled, maintained, and areas for enhancement are identified. Conduct routine risk assessments to determine and reduce information security risks across the business through the establishment of risk treatment plans. Serve as the primary liaison for security matters, both internally and externally. Collaborate with leadership and internal stakeholders More ❯
Overview Reporting to the Director - Cybersecurity, the Cybersecurity Analyst is responsible for the day-to-day administration of the Information SecurityManagement System (ISMS). This role will also involve performing key Security Operations duties, including system and application audits and reporting. Responsibilities Monitor and support all internal and external systems infrastructure (Incident & Problem Management), collaborating … across all Alliance Laundry Systems locations as needed. Compile comprehensive audit reports that identify potential risks and threats. Report on KPIs related to compliance and the effectiveness of information security controls. Support the Director of Cybersecurity in defining and testing specific information security controls and policies. Contribute to the global information security awareness program and ensure company … wide compliance. Conduct security assessments for projects and change management initiatives. Maintain the threat and information risk register and recommend appropriate remediation measures. Develop comprehensive documentation detailing system specifications and operating instructions. Ensure infrastructure, applications, and data security/privacy controls comply with corporate and regulatory policies. Work as part of the Service Desk support team, assisting More ❯
Are you currently working for an IT provider but ready to step into the world of dedicated Cyber Security? We have an exciting opportunity for an Information Security Consultant looking to elevate their career. We're looking for someone with hands-on experience in ISO 27001 implementation and auditing, and expertise in NIST to drive our Compliance Team … s service offerings forward. Work with a innovative, industry-leading Cyber Security team Play a key role in the development of internal and client security programs Contribute to significant projects that support clients' compliance and risk management goals If you're ready to make an impact in Cyber Security, this role is for you! Responsibilities: Ensure … protection of information assets and technologies Participate in security audits like ISO27001, ISO27701, ISO20000, NIST-CSF, and IASME Governance Conduct and document internal audits for our clients Deliver security awareness training, including public speaking engagements Manage Third-Party Risk Management (TPRM) including vendor security reviews Assist the Sales Team with scoping engagements and delivering valuable services More ❯