Loughton, Essex, South East, United Kingdom Hybrid / WFH Options
Profile 29
a Work from Office (WFO) role. This role will focus on creating a business strategy, gap analysis and implementation, for securing their Azure-based infrastructure, integrating security automation, ensuring PCIDSS compliance, vulnerability and penetration testing and incident response. This role will focus on developing and maintaining secure, scalable Azure DevOps pipelines and Infrastructure as Code (IaC) using … Security: Manage Web Application Firewalls (WAF) and Intrusion Prevention Systems (IPS). Vulnerability & Penetration Testing: Review Penetration Testing, vulnerability assessments, and security scanning to proactively identify and remediate risks. PCIDSS Compliance: Conduct security audits, risk assessments, and ensure regulatory compliance. DNS Security: Implement and monitor DNS security solutions to prevent cyber threats. Incident Response: Formulating and documenting … Profile 29s privacy policy can be found at: profile-29 .com/privacy) Profile 29 recruitment keywords: DevSecOps DevOps Azure cloud security Microsoft Defender Microsoft Sentinel WAF IPS DNS pcidsspcidsspci-dss soar loughton Debden essex London More ❯
AD), Windows Server environments, and authentication solutions. Plan for scalability, redundancy, and high availability to support future growth. IT Security & Compliance: Ensure compliance with security and regulatory standards, including PCIDSS, Cyber Essentials+, DORA, and ISO 27001. Implement and enforce security best practices across infrastructure automation and cloud environments. Maintain accurate compliance documentation, including PCIDSS scope records and security policies. Secure high-value and high-risk data, such as cardholder (PCI) and personally identifiable information (PII). Cloud & DevOps Integration (these tools and skills will be taught): Implement and manage Infrastructure as Code (IaC) for cloud and on-premises environments. Configure and maintain authentication solutions (SSO, SAML, Entra Connect). Develop and manage … CIS, PCIDSS, Cyber Essentials, NIST, ISO 27001). In-depth understanding of network security and compliance in regulated environments. Proven ability to secure high-value data (PCI cardholder data, PII) and implement security best practices. Strong networking knowledge (LAN, WAN, DNS, DHCP, VPN, TCP/IP). Proficiency in firewall and load balancer technologies for secure More ❯
Jam Management Consultancy Limited T/A JAM RECRUITMENT
Role Our client, a leading organisation in Berkshire, is seeking an experienced Information Security Specialist with in-depth knowledge of ISO 9001, ISO 14001, ISO 22301, ISO 27001, and PCI-DSS compliance. This role will be central to designing, implementing, and maintaining best-in-class security and compliance frameworks, ensuring that all information assets and operational processes are … safeguarded to the highest standards. Key Responsibilities Develop, implement, and maintain compliance with ISO , and PCI-DSS standards. Conduct risk assessments, security audits, and vulnerability testing across systems and processes. Lead incident response activities, ensuring rapid and effective mitigation. Collaborate with internal stakeholders and external auditors to achieve and maintain certifications. Deliver organisation-wide security and compliance awareness … and report on security performance, providing actionable recommendations. Essential Skills & Qualifications ISO 27001 Lead Implementer or Lead Auditor certification (or equivalent). Demonstrable experience managing compliance for ISO , and PCI-DSS. Strong understanding of governance, risk management, and regulatory compliance. Proficiency with security monitoring tools and incident management processes. Excellent analytical, communication, and leadership skills. Desirable Knowledge of GDPR More ❯
ISMS) capable of demonstrating compliance against internal security requirements and external commitments including certification and regulatory requirements. Provide subject matter expertise in the application of established standards including NIST, PCI-DSS, GDPR, COBIT, ISO 27001 and Cyber Essential compliance to any new or existing programme of work. Prepare and support internal and/or external compliance audit activities. … we continue to deliver for our customers. LI-KS1 Possess one of the Risk or security certifications (CISSP, CRISC, CISM). Have good knowledge and practical experience of NIST, PCI-DSS, GDPR, COBIT, ISO 27001, or Cyber Essentials. Previous experience in a similar role, with the ability to work in a dynamic and changing environment. Excellent team player More ❯
Farnborough, Hampshire, South East, United Kingdom
Gama Group Limited
Knowledge of security and data privacy controls within Microsoft Azure Cloud stack with hands on experience configuring and monitoring within Azure Knowledge of UK Government security standards Knowledge of PCI-DSS and achieving suitable standards within software In addition to a Competitive Salary, we will offer you: Competitive Group Pension Scheme Comprehensive Life Assurance * Comprehensive Income Protection * Comprehensive More ❯
London, South East, England, United Kingdom Hybrid / WFH Options
Sanderson
and blueprints. What You'll Bring Prior and proven experience gained as a Security Architect or in a Technical Cyber Consultant/Engineer role. Expertise in: Security legislation (GDPR, PCIDSS, ICO) Frameworks (ISO 27001, NIST CSF, CIS Controls v8) HMG/NCSC policies and guidance Cloud security (AWS, Azure) Microservice architectures PKI, Cryptography, Privileged Access Management Certifications More ❯
London, South East, England, United Kingdom Hybrid / WFH Options
Addition
one. Advising on risks, vulnerabilities and mitigation strategies across the tech estate. Shaping and maintaining internal security standards and governance frameworks. Ensuring compliance with ISO 27001, GDPR, SOC 2, PCI-DSS and similar regulations. Collaborating with IT, business stakeholders, and third parties to drive secure delivery. Supporting incident response and proactively planning for emerging threats. Translating complex risks … Strong background in security architecture and designing enterprise-level solutions. Deep familiarity with frameworks like ISO 27001, NIST, TOGAF or SABSA. Significant experience in Financial Services or Insurance, including PCI-compliant environments. Expert knowledge of network and cloud security using Azure, Hands-on experience with application security, data protection, and threat modelling. Confident communicator, able to influence across technical More ❯
fraud Onboard key customer-facing and payment systems into the security monitoring platform Perform threat hunting and detection engineering to identify and address emerging risks Support security audits, compliance (PCI-DSS), and post-incident reviews Mentor junior team members and contribute to a culture of continuous improvement Participate in the on-call rotation to ensure fast, effective incident More ❯
South Croydon, Surrey, England, United Kingdom Hybrid / WFH Options
Gold Group Ltd
to ensure security is embedded in all new and existing applications, systems, and network infrastructure* Risk Management & Compliance: Ensure compliance with industry regulations and data protection laws (e.g. GDPR, PCI-DSS)* Continuous Improvement: Stay informed of the latest cybersecurity threats, trends, and technologies, recommending and implementing improvements to enhance security defences* Change Management: Establish and lead a Change More ❯
London, South East, England, United Kingdom Hybrid / WFH Options
Sanderson
experience to define and implement security architectures and solutions. Requirements: 5+ year's working in a Security Architect/technical role Recent MOD experience Security related legislation (e.g. GDPR, PCIDSS, ICO requirements) Security Control Frameworks such as ISO 27001, NIST CSF and CIS Controls v8 HMG and NCSC security policies, standards and guidance Cloud security including Amazon More ❯
deliver consistently. Ideal, But Not Required 5+ years of managing multiple engineering teams with high performance. FinTech SaaS experience. Track record of delivering results in a highly regulated environment (PCI-DSS and/or HIPAA compliant). Our Offer Work with colleagues that lift you up, challenge you, celebrate you and help you grow. We come from many More ❯
Bracknell, Bracknell Forest, Berkshire, United Kingdom
Jam Management Consultancy ltd
to refine or enhance quality systems and business compliance practices. Certifications & Risk Management Taking ownership of certification activities such as ISO 9001, ISO 14001, ISO 22301, ISO 27001 and PCI-DSS. Coordinating internal and external audits, and ensuring all certifications remain current. Managing internal Risk Registers and facilitating risk review meetings. Raising potential risks early and ensuring the business More ❯
written communication skills, and the ability to write reports, processes and procedures in a structured manner Previous exposure to a variety of compliance and regulatory requirements such as FCA, PCI, ISO27001, GDPR and other global regulations Experience running a global team sitting in different time zones At WTW, we believe difference makes us stronger. We want our workforce to More ❯
within the Practice by defining standards, sharing knowledge, and mentoring peers Influence customer outcomes through expert knowledge of DevSecOps tools and compliance frameworks like NIST, CIS, SOC 2, and PCIDSS You'll travel to client sites across the UK, working directly with business and technical stakeholders to drive real business value What you'll need Proven experience More ❯
within the Practice by defining standards, sharing knowledge, and mentoring peers Influence customer outcomes through expert knowledge of DevSecOps tools and compliance frameworks like NIST, CIS, SOC 2, and PCIDSS You'll travel to client sites across the UK, working directly with business and technical stakeholders to drive real business value What you'll need Proven experience More ❯
will develop a strategic vision and roadmap for the technology GRC team and oversee compliance with internal controls, industry-leading practices, and regulatory requirements such as ACE, Privacy, and PCI-DSS. The Head of Technology GRC plays a crucial role in interacting with internal and external auditors and is responsible for the development and guidance of a team responsible More ❯
Hemel Hempstead, Hertfordshire, South East, United Kingdom Hybrid / WFH Options
Eckoh PLC
Vue, Angular) Familiarity with message-based architectures and tools like RabbitMQ, Kafka, or Kinesis Demonstrable experience building LLM backed systems and applications Understanding of regulatory and compliance frameworks (e.g., PCI, ISO 27001, SOC 2, GDPR) and how to apply them in software and cloud system design AWS certifications (e.g., Developer Associate, Data Analytics Specialty) Please click the APPLY button More ❯
and self-service kiosks, to enhance the overall guest experience. Plan and deploy CCTV systems and access control solutions, while ensuring full compliance with datasecurity standards such as PCIDSS and GDPR. Deliver training and ongoing technical support to staff, ensuring confident use of newly implemented systems and tools. Optimize system performance and scalability, with a strong More ❯
and self-service kiosks, to enhance the overall guest experience. Plan and deploy CCTV systems and access control solutions, while ensuring full compliance with datasecurity standards such as PCIDSS and GDPR. Deliver training and ongoing technical support to staff, ensuring confident use of newly implemented systems and tools. Optimize system performance and scalability, with a strong More ❯
Oxford, Oxfordshire, United Kingdom Hybrid / WFH Options
Nomios
assurance services, we offer an incredible opportunity to be part of an experienced team, build your skills, and grow professionally. Dionach by Nomios holds impressive certifications, including CREST, CHECK, PCI QSA, and ISO 27001. With our focus on enhancing customers' security and fostering team development,be joining a company that prioritizes both your growth and the safety of our More ❯
engineering practices Solid experience with SQL and/or NoSQL databases Ability to work full-time from the office Desirable: Experience with financial systems or regulated environments Knowledge of PCI compliance and cloud infrastructure (AWS, GCP) Strong PHP experience Experience with unit testing Ideal Candidate Traits: Practical problem-solver with a proactive mindset Adaptable and eager to learn new More ❯
teams across payments, fraud, and compliance. Collaborate with leadership across Finance, Risk, Product, and Engineering. Drive process innovation, scalability, and regulatory readiness. Compliance & Regulation Ensure compliance with card schemes, PCIDSS, government, and global financial regulations. Oversee dispute handling, compliance protocols, and internal audit frameworks. Monitor regulatory developments and align business practices accordingly. Fraud & Risk Design and implement More ❯
Guildford, Surrey, United Kingdom Hybrid / WFH Options
Sycurio
to detail and a relentless passion for improvement, with a strong focus on data and KPIs. Successful track record of customer excellence. Knowledge of the payments industry and the PCIDataSecurity Standards (Preferred). More ❯
Although you won't need experience in all of these areas, their current accreditations are as follows: ISO 9001, 27001, 27701, 27017, 22301, 14001, (phone number removed), 42001, 13485, PCI-DSS, SOC 2 Type 2, CE+. The company work on a hybrid model typically involving 2-3 days a week in the office. Examples of responsibilities: Coordination of More ❯
PSPs, payment gateways, fraud platforms, and subscription billing providers. Proven success in managing disputes/chargebacks and fraud prevention while optimizing conversions. In-depth knowledge of card scheme rules, PCIDSS, and consumer regulations around recurring payments. Experience in leading cross-functional teams and building processes at scale. Key Responsibilities Leadership & Strategy Own the end-to-end payments … to support reconciliation, settlement, and chargeback reserve management. Compliance (Card Scheme & Subscription Regulation) Ensure compliance with card scheme rules, subscription regulations (e.g., ROSCA), pre-/post-charge comms, and PCI DSS. Stay on top of changing card brand policies and assess their impact on the business. Lead internal audits related to payment compliance Work with legal to ensure our More ❯