1 to 25 of 436 Permanent ISO/IEC 27001 Jobs in London

Digital Trust Lead Auditor

Hiring Organisation
Jobleads-UK
Location
Greater London, England, United Kingdom
Conduct third‐party assessments of Information Security and associated management systems in accordance with BSI requirements and ISO / IEC standards. Evaluate information security controls—technical, organisational, procedural—and determine their effectiveness and alignment with risk management objectives. Communicate assessment outcomes to clients, ensuring clear … Information Security, IT governance, risk management, data protection, cybersecurity, or related technical environments. Strong knowledge of management system frameworks, particularly ISO / IEC 27001 and related security standards. Ability to interpret technical environments (cloud, networks, applications, data flows) and map them to management ...

Sr. Technology Architect - DC Network architecture - UK, Germany, Netherlands

Hiring Organisation
Infosys Technologies
Location
London, UK
Cloud and Infrastructure)Job DescriptionRole OverviewThe Senior Technology Architect (STA) – Network owns the end‐to‐end network architecture across data center, campus, WAN / SD‐WAN, cloud, and edge environments. The role defines strategy, blueprints, and guardrails; leads complex transformations; and ensures the network platform delivers resilience, security (Zero … operations to architect vendor‐agnostic, automation‐first designs that scale across global enterprises.Key Responsibilities1) Architecture & StrategyDefine the network target state (DC, Campus, WAN / SD‐WAN, Cloud Networking, Edge) with reference architectures, patterns, and standards.Create high‐level and low‐level designs (HLD / LLD), including L2 / ...

Head of Quality Assurance and Regulatory Affairs

Hiring Organisation
Jobleads-UK
Location
Greater London, England, United Kingdom
quality and regulatory matters, you will drive innovation, compliance, and transformation across Qureight. Your expertise will ensure that our clinical trial activities, SaMD / AIaMD clearances, biomarker validations, and interactions with regulatory authorities are executed with precision, integrity, and a forward-thinking approach. You will … processes and systems, implementing best-in-class frameworks to enhance efficiency, compliance, and scalability. Ensure all clinical operations adhere to ICH-GCP guidelines (R2 / R3), applicable regulations, and internal quality standards. Lead the implementation, improvement and validation of new processes, procedures, and IT systems (e.g., eQMS, eTMF ...

Information Security Analyst ( ISO 27001 and ISO 27018 )

Hiring Organisation
Alfa Financial Software
Location
London, UK
recruit an ISO 27001 and ISO 27018 Information Security Analyst to strengthen our Information Security and Audit / Compliance functions. Alfa Systems sits at the heart of some of the world's largest asset finance companies, across 26 countries which means information security … compliance with ISO 27001 and ISO 27018 on point. You'll get involved in SSAE 18 / ISAE 3402 SOC 1 Type 2 and SSAE 18 SOC 2 Type 2 assurance audits, spot opportunities to improve our security controls and processes, and contribute ...

Professional Services Consultant - AI Security

Hiring Organisation
Cato Networks
Location
London, UK
technologyWork with customer teams to design secure AI architectures and establish governance frameworks aligned to standards such as NIST AI RMF, ISO / IEC 42001, and EU AI Act guidanceTranslate technical findings into actionable recommendations for both executive and technical audiencesServe as a subject matter … Transit Gateway, Direct Connect, Route 53, and Gateway Load Balancer – Azure VNets, VNGs, ExpressRoute, vWAN, Load Balancer, and DNS)Experience designing and securing AI / ML infrastructure including AWS SageMaker, AWS Bedrock, Azure AI Foundry, Google Vertex AI, Databricks, GPU-accelerated compute, and model inference pipelinesExposure to unique threat ...

Information Security Analyst II (GRC)

Hiring Organisation
Checkout.com
Location
London, UK
testing coordination, access reviews, and firewall configuration reviews.Policy, Controls and Regulatory CoverageApply working knowledge of PCI DSS v4.0.1, ISO 27001 / 27002, SOC 2, DORA, NIST CSF, and other applicable frameworks to day-to-day GRC work.Support meeting regulatory change across Checkout's operating markets … including FCA / PRA requirements and payment scheme obligations, flagging gaps and supporting impact assessments.Proactively identify inefficiencies in GRC processes and propose practical improvements, including automation where viable.Contribute to the development and refinement of GRC tooling, dashboards, and reporting to improve visibility of risk and compliance posture across ...

Lead Information Security & GRC Specialist

Hiring Organisation
Zachary Daniels Recruitment
Location
London, United Kingdom
Employment Type
Permanent
Salary
GBP 80,000 - 100,000 Annual
Opportunity This is a hands-on role suited to someone who has successfully led, or played a significant role in, delivering an ISO 27001 certification programme. You'll own and continually improve the Information Security Management System (ISMS), working closely with Technology, Infrastructure, Engineering and business … meet evolving regulatory and compliance requirements. Key Responsibilities Lead the ongoing development and continual improvement of the Information Security Management System (ISMS) Drive ISO 27001 implementation, certification and ongoing compliance activities Conduct security risk assessments and manage enterprise risk registers Develop, review and maintain Information Security ...

Information Security Director

Hiring Organisation
Jobleads-UK
Location
City of Westminster, England, United Kingdom
data against cyber threats. We operate in a highly secure global SaaS organization that holds multiple certifications such as PCI‐DSS, ISO / IEC 27001, SOC, HIPAA, IRAP and works with a large, federated customer base. Responsibilities Develop and lead a team … latest security threats, vulnerabilities and mitigation techniques. Advantageous Skills and Experience Experience working on projects ensuring compliance with PCI DSS, ISO / IEC 27001, SOC, HIPAA, IRAP controls. Knowledge of security compliance standards relevant to the SaaS industry such as PCI, GDPR, ISO ...

Internal Control IT Senior Manager

Hiring Organisation
Aveva Group
Location
London, UK
starterHigh professional ethics and commitment to improving risk cultureExperience of managing deficiencies and remediation activitiesComfortable giving an opinion and forming conclusionsDesired skillsExperience of IFRS / US GAAP accounting standardsQualification by relevant governing body with 5 years post qualification experience (e.g., ACA, ACCA, CIMA, CPA or equivalent)Previous experience with … policy managementPrevious experience of working with OracleExperience of driving automation / AI in a controls functionStrong data enquiry / analytics / scripting skillsExperience of managing a co-source agreementUnderstanding of other regulatory frameworks e.g. NIST, ISO 27001, EU CRAUK Benefits include:Flexible benefits ...

Third-Party Risk Management Officer

Hiring Organisation
Aveva Group
Location
London, UK
AVEVA is creating software trusted by over 90% of leading industrial companies.Job Title: Third-Party Risk Management OfficerLocation: UK (London / Cambridge / Londonderry)Employment Type: Full Time (Hybrid)The job The Third-Party Risk Management team oversee all of AVEVA's suppliers to ensure that they … suppliers with their maturity to improve their organisational and technical measures to ensure information security is baked into their processes, and the technology and / or technology services they provide to AVEVA.- Assist in maturing processes and tooling to streamline Third-Party Risk Management processes- Data Analysis, date entry ...

Digital Trust Lead Auditor — InfoSec & ISO 27001

Hiring Organisation
Jobleads-UK
Location
Greater London, England, United Kingdom
Jobtailor is seeking an experienced Information Security Assessor to conduct third-party assessments against BSI and ISO / IEC standards in the UK. You will evaluate controls, communicate findings, and advise on certificate decisions, while building trusted client relationships with CISOs and IT leadership. Desirable … qualifications include CISSP / CISM / CISA and Lead Auditor credentials, with strong reporting skills and a deep understanding of GDPR, ISO / IEC 27001, and cloud security controls. #J-18808-Ljbffr ...

Cyber Risk Manager - Active Security Clearance Required

Hiring Organisation
Solirius Consulting
Location
London, UK
risk management principles and methodologies.Experience working with recognised frameworks and standards, including:NIST Cybersecurity Framework (CSF)NCSC Cyber Assessment Framework (CAF)ISO / IEC 27001 and ISO / IEC 27005CIS Critical Security ControlsCOBITExperience analysing risk data and translating … yearEnhanced Parental LeavePaid Fertility Leave (5 Days)Statutory & Contributory PensionEAP with Help@HandGym Membership BenefitsCycle to Work and Electric Vehicle SchemesFlexible WorkingAnnual Away Days / Company SocialsDiversity and InclusionAs an equal opportunities employer, we are committed to creating a work environment that supports, celebrates, encourages and respects all individuals ...

Cyber Risk Manager - Active Security Clearance Required

Hiring Organisation
Jobleads-UK
Location
Greater London, England, United Kingdom
management principles and methodologies. Experience working with recognised frameworks and standards, including: NIST Cybersecurity Framework (CSF) NCSC Cyber Assessment Framework (CAF) ISO / IEC 27001 and ISO / IEC 27005 CIS Critical Security Controls COBIT Experience analysing risk … Days) Statutory & Contributory Pension EAP with Help@Hand Gym Membership Benefits Cycle to Work and Electric Vehicle Schemes Flexible Working Annual Away Days / Company Socials Diversity and Inclusion As an equal opportunities employer, we are committed to creating a work environment that supports, celebrates, encourages and respects ...

Training Specialist (AI Risk & Controls)

Hiring Organisation
Intelix.AI
Location
Greater London, England, United Kingdom
inside a technology organisation, covering data, tech and cyber. Secure SDLC, IAM, cloud and data controls, audit evidence, third-party risk, NIST or ISO 27001, ICO and GDPR, EU AI Act. Real depth in generative and agentic systems. Evaluation, guardrails … adversarial testing, agent identity. A teaching record, and credibility with a technical room. Available in August 2026. NICE TO HAVE CISSP, ISO / IEC 27001 or ISO / IEC 42001. ISACA Advanced in AI Audit. Internal audit, second ...

M365 Security Consultant (App sec/SCA/SAST/DAST , CI/CD Security, DevSecOps )

Hiring Organisation
Jobleads-UK
Location
Greater London, England, United Kingdom
M365 Security Consultant (App sec / SCA / SAST / DAST , CI / CD Security, DevSecOps ) As an M365 Consultant / Senior Consultant, you will help transform clients’ cybersecurity posture by designing and implementing advanced Microsoft Threat Protection technologies. You will work directly with clients … large enterprise environments and contributing to robust Cyber Defence strategies across endpoints, identities, cloud, and collaboration platforms. Key Responsibilities Design and implement AV / EDR solutions (e.g., Microsoft Defender for Endpoint) to detect and respond to cyber threats across major operating systems. Protect email, messaging, and collaboration platforms from ...

Sr. Sec & Compliance Engineer, AWS Security Assurance Services, LLC

Hiring Organisation
Jobleads-UK
Location
Greater London, England, United Kingdom
enabled automations, threat modeling, design reviews. Build secure-by-design IaC modules for Landing Zones, Control Tower customizations, Zero-Trust architectures, and AI / ML workloads. Lead the design, deployment, and implementation of AWS security controls, continuous compliance monitoring, evidence collection, and remediation of insecure configurations to scale with … review scripts, and IaC (Python, Terraform, AWS CDK, CloudFormation, Rego). Lead exploratory POCs on emerging technologies. Define the hypothesis, success criteria, and go / no-go gates. Lead alignment, resolve escalations, troubleshooting, and root-cause analysis to closure Lead the development of technical content Communicate security risk ...

Head of Computerized Systems Quality Assurance & Validation

Hiring Organisation
Jobleads-UK
Location
Greater London, England, United Kingdom
Computerized Systems Quality Assurance & Validation on a permanent full-time capacity. Purpose of the Role: This role supports the compliant and timely design / development, testing, verification, validation, configuration, and life cycle management of computerized systems (including software) developed, purchased and / or utilised by IXICO. This role … compliance with current GCP, FDA 21 CFR Part 11, EU Annex 11, GAMP, FDA QSR Part 820 (QMSR), EU MDR (Regulation 2017 / 745), IEC 62304, GDPR, ISO 13485, ISO 27001 and ISO 42001 / EN 18286 regulatory ...

Solution Architect

Hiring Organisation
SCS Railway
Location
London, UK
days per week. Role ResponsibilityDevelopment and analyze and deliver solutions and ensure integration requirements align with best practice and policies for projects / BAU works which involves IT systems. Hands on skill to help deliver Design, Build, Test and also to lead / review the works delivered … vendors.Be "the go-to person" for all the integration related topics, information and knowledge of the integration technologies, platforms and architecture.Closely work with support / service team, 3rd parties to monitor integration related issues and lead resolution in timely manner (specifically production incidents) and take proactive actions.Update integration architecture ...

Information Security Architecture & Engineering Lead (UK-based)

Hiring Organisation
Jobleads-UK
Location
Greater London, England, United Kingdom
Sales. Job requirements Demonstrable and considerable experience in cloud security architecture (AWS essential and Azure), including IAM design, network segmentation, and secrets / KMS management. Hands-on DevSecOps experience: CI / CD pipeline security, Infrastructure-as-Code scanning, and policy-as-code. Strong hands-on software development … scripting capability, including Python and C# / .NET, with the ability to read, review and write secure production-quality code; familiarity with PowerShell, Bash, REST APIs and common software development tooling. Experience building security automation, API integrations, test harnesses or internal engineering tools, using source control, peer review, testing ...

Information Security & Compliance Manager

Hiring Organisation
Jobleads-UK
Location
Greater London, England, United Kingdom
posture to leadership in clear, business-oriented terms. Compliance and certifications Drive certification and attestation efforts (e.g., ISO 27001 and / or SOC 2): design and maintain the control framework, own the documentation and evidence, and lead internal and external audits. Build a sustainable, “always … govern our Microsoft 365 environment — Entra ID, Microsoft Defender, Microsoft Purview, and Intune. Own identity and access management: conditional access, MFA, privileged access, joiner / mover / leaver processes, and least-privilege enforcement. Implement and tune data loss prevention (DLP), information protection / labelling, and device compliance. ...

Security Engineer, Compliance Focus

Hiring Organisation
Jobleads-UK
Location
Greater London, England, United Kingdom
here is not a paperwork exercise at the edge of the business. It is a condition of doing business. We are working toward ISO 27001 certification and SOC 2 Type II attestation across a company that is scaling quickly, operating multi-tenant infrastructure in several countries … here, not your previous salary Equity in Volta, giving you the opportunity to share in the company's long-term success Retirement / pension contributions Comprehensive health, wellbeing and insurance benefits Generous number of vacation days each year Additional Information Equal Opportunity Volta is an equal opportunity employer. ...

Deputy General Manager - Cybersecurity - Products

Hiring Organisation
Tata Communications
Location
London, UK
Data Integrations and UK GDPR and India's Digital Personal Data Protection (DPDP) Act awarenessCloud SecurityAwareness of:Microsoft Azure, AWS, Google Cloud Platform, Cloud / Container / API Security / CASB High level understanding of OT / IoT SecuritySecurity IntegrationsGood understanding of integrating multiple cybersecurity platforms … including:SIEM integrationsIdentity integrationsThreat Intelligence integrationsFirewall integrationsEndpoint integrationsCloud integrationsSOAR playbooksAPI-based security integrationsGovernance & ComplianceAwareness of:ISO / IEC 27001NIST Cybersecurity FrameworkCIS ControlsPCI DSSUK GDPRDPDPLeadership & CollaborationLead technical discussions during customer engagements.Coordinate with OEMs, delivery teams, and technology specialists.Mentor junior architects and consultants.Stay current with emerging cybersecurity ...

OT Cybersecurity Engineer (Offensive Security / Security Assessments / Security Testing)

Hiring Organisation
Vantage Data Centers
Location
London, UK
Vantage. We’re expanding with many new builds, enhancing our focus on safeguarding data and infrastructure in the face of evolving cyber threats.The ICS / OT Cybersecurity Engineer will support the security of a global OT environment by implementing, and validating cybersecurity controls across ICS / OT systems. … vendors, and internal stakeholders to drive consistent implementation of OT cybersecurity practices.Perform OT Cybersecurity Risk assessments against best practices and industry frameworks (e.g., ISA / IEC 62443, NIST SP 800-82, NIST CSF) including participating in audits.Act as a key contributor in OT security testing by conducting ...

OT Cyber Security Senior Manager

Hiring Organisation
Accenture
Location
London, UK
relationshipsContribute to Accenture's thought leadership in OT security through publications, presentations, and client engagementsWhat You'll Need:Essential10+ years of experience in OT / ICS cybersecurity or critical infrastructure securityProven track record leading complex security programmes in regulated industrial environmentsDeep understanding of Industrial Control Systems (SCADA … GRIDExperience across multiple sectors: Energy, Utilities, Manufacturing, Aerospace, Defence, or Critical National InfrastructureKnowledge of security standards including NERC-CIP, IEC 62443, ISA / IEC 62443Background in both advisory and hands-on technical implementationWhat We Offer:Work on prestigious projects spanning critical national infrastructure, advanced manufacturing ...

IT Governance Lead

Hiring Organisation
Jobleads-UK
Location
Greater London, England, United Kingdom
benefits that matter to our people and enable us to be engaged both in and outside of work. We foster a culture where work / life balance is nurtured and encouraged, offering hybrid working, generous paid time off, paid holidays, volunteer time off, and Summer half-day Fridays. … resilient. ISO 27001 evidence remains current and surveillance-ready. Risks, vulnerabilities, recommendations and remediation actions are tracked and visible. Purview / SAR activity is repeatable, secure and auditable. Leadership has clear visibility of IT risk, operational maturity and open actions. Someone who exemplifies ...