committed to delivering the highest standards of security and compliance. We are seeking a highly skilled and motivated Information Security Risk Manager to lead on A&M wide information security risk management program and join our dynamic and growing team based in either our London or Tampa … the Global Security Office Information Security Risk Register, its supporting processes, governance and reporting requirements. The successful candidate requires a strong understanding of ISO27001 security controls, exposure to the OnSpring GRC Tool and can effectively assess and communicate technical security requirements to teams … across the firm. Key Responsibilities: Risk Management Leadership and Oversight: Working to A&M Policy and industry standards and lead the end-to-end information security risk management process, ensuring risks are proactively identified, assessed, recorded, and mitigated. Assess and prioritize security risks based on enterprise-wide More ❯
City Of London, England, United Kingdom Hybrid / WFH Options
iO Associates - UK/EU
information security risks Develop and implement risk mitigation plans Maintain and evolve governance and compliance frameworks Monitor compliance against standards and regulations like ISO27001, NIST, GDPR Coordinate audits (internal and external) Perform vendor risk assessments Requirements: Degree in Computer Science / IT or … relevant industry certifications such as CISA, CRISC, CISMP, ISO27001Lead Auditor /Implementer Working knowledge with legal / security needs in housing association sector and its regulatory environment Solid grasp of ISO27001 … management frameworks Experience with risk assessments and developing mitigation plans Experience producing internal audits, reports, gap analyses Experience maintaining compliance with frameworks like ISO27001, PCI-DSS If you are interested, please apply immediately as first stage interviews will be taking place next week. More ❯
london (city of london), south east england, united kingdom Hybrid / WFH Options
iO Associates - UK/EU
information security risks Develop and implement risk mitigation plans Maintain and evolve governance and compliance frameworks Monitor compliance against standards and regulations like ISO27001, NIST, GDPR Coordinate audits (internal and external) Perform vendor risk assessments Requirements: Degree in Computer Science / IT or … relevant industry certifications such as CISA, CRISC, CISMP, ISO27001Lead Auditor /Implementer Working knowledge with legal / security needs in housing association sector and its regulatory environment Solid grasp of ISO27001 … management frameworks Experience with risk assessments and developing mitigation plans Experience producing internal audits, reports, gap analyses Experience maintaining compliance with frameworks like ISO27001, PCI-DSS If you are interested, please apply immediately as first stage interviews will be taking place next week. More ❯
audits and assurance inquiries. Monitor regulatory changes and contribute to compliance initiatives such as DORA , NIS2 , and other applicable standards and frameworks (e.g., ISO27001, SOC 2, GDPR). Assist in the development, maintenance, and improvement of internal GRC processes, policies, and documentation. Collaborate … sales processes, including responding to RFx security assessments. Solid understanding of cybersecurity principles, information security best practices, and regulatory requirements (DORA, NIS2, GDPR, ISO27001, SOC 2, etc.). Excellent written and verbal communication skills; able to translate technical concepts for non-technical audiences. … solving and attention to detail. Experience working in a SaaS, cloud, or technology-driven company is preferred. Professional certifications (such as CISM, CRISC, ISO27001LeadImplementer/ Auditor, or similar) are a plus Additional Information We are More ❯
Information Security Lead – Health Tech Salary: up to £100,000 + benefits Location: London (Hybrid) I’m hiring for a standout InfoSec Lead to join one of the UK’s most ambitious health tech startups. This is a company on a mission, combining clinical … compliance as they scale. What You’ll Do Define and implement security and compliance policies and controls across infrastructure, applications, and internal systems. Lead the development and execution of the roadmap toward ISO27001 certification and other key compliance frameworks. Collaborate … regulations. Your Experience 5+ years of experience in information security and compliance, ideally in regulated environments such as health tech. Deep knowledge of ISO27001, UK GDPR, and industry best practices. Proven experience preparing for and leading ISO or similar audits. More ❯
london, south east england, united kingdom Hybrid / WFH Options
Formula Recruitment
Information Security Lead – Health Tech Salary: up to £100,000 + benefits Location: London (Hybrid) I’m hiring for a standout InfoSec Lead to join one of the UK’s most ambitious health tech startups. This is a company on a mission, combining clinical … compliance as they scale. What You’ll Do Define and implement security and compliance policies and controls across infrastructure, applications, and internal systems. Lead the development and execution of the roadmap toward ISO27001 certification and other key compliance frameworks. Collaborate … regulations. Your Experience 5+ years of experience in information security and compliance, ideally in regulated environments such as health tech. Deep knowledge of ISO27001, UK GDPR, and industry best practices. Proven experience preparing for and leading ISO or similar audits. More ❯
work with vendors and internal teams to ensure compliance and strong governance. Key Responsibilities: Build and refine information security governance and risk frameworks Lead audits (internal / external) and drive compliance (ISO27001, GDPR, NIST) Own vendor risk, supplier assurance, and … Support KPI development and risk strategy planning Requirements: Degree in Computer Science / IT or relevant industry certifications such as CISA, CRISC, CISMP, ISO27001Lead Auditor /Implementer Working knowledge with legal / security needs in housing … association sector and its regulatory environment Solid grasp of ISO27001, NIST, GDPR, and PCI-DSS Proven experience in GRC leadership Skilled in risk analysis, audit reporting, and policy writing Excellent stakeholder management and communication skills Understanding of cloud security and Microsoft tools If More ❯
work with vendors and internal teams to ensure compliance and strong governance. Key Responsibilities: Build and refine information security governance and risk frameworks Lead audits (internal / external) and drive compliance (ISO27001, GDPR, NIST) Own vendor risk, supplier assurance, and … Support KPI development and risk strategy planning Requirements: Degree in Computer Science / IT or relevant industry certifications such as CISA, CRISC, CISMP, ISO27001Lead Auditor /Implementer Working knowledge with legal / security needs in housing … association sector and its regulatory environment Solid grasp of ISO27001, NIST, GDPR, and PCI-DSS Proven experience in GRC leadership Skilled in risk analysis, audit reporting, and policy writing Excellent stakeholder management and communication skills Understanding of cloud security and Microsoft tools If More ❯
Compliance is a plus. Certifications (Highly Valued) CISSP (Certified Information Systems Security Professional) CISM (Certified Information Security Manager) CISA (Certified Information Systems Auditor) ISO27001Lead Auditor /Implementer CRISC (Certified in Risk and Information Systems Control) GDPR … years of experience in Information Security, Compliance, or IT Risk Management. Experience with regulatory frameworks in UK & EU : GDPR (General Data Protection Regulation) ISO27001 (Information Security Management Systems) Cyber Essentials Plus (UK government-backed security framework) DORA (Digital Operational Resilience Act) - EU financial … understanding of data protection laws (UK GDPR, EU GDPR, DPA 2018) . Familiarity with risk management frameworks like NIST CSF, CIS Controls, and ISO 27005 . Experience with cyber security tools (e.g., SIEM, Malware Protection, Firewalls and others) is a plus. Strong reporting and communication skills-ability More ❯