1 to 25 of 264 Permanent PCI DSS Jobs in the UK

PCI Manager

Location
Newbury, England, United Kingdom
opportunities to help you belong and make a real impact. What you’ll do A Senior Leader role responsible for leading Vodafone's PCI DSS compliance programme across in-scope products, services, suppliers, cloud environments and data centre operations. The role provides end-to-end accountability for PCI … governance, audit readiness, compliance assurance, supplier oversight, operational control reviews, risk management and regulatory compliance activities. Acting as the primary authority for PCI DSS within Vodafone Group, the role owns the annual compliance roadmap, audit strategy, control validation approach and ongoing compliance operating model that supports continuous certification ...

Security and Compliance Manager

Location
Greater London, England, United Kingdom
security expert to lead the development and maintenance of our compliance framework. You’ll be the driving force behind our adherence to ISO27001 , PCI-DSS , and GDPR , ensuring Neve Jewels remains a trusted leader in luxury retail. You’ll work hand-in-hand with our tech and business … Security Architecture & Governance: Design, implement, maintain compliance and manage the Neve Jewels IT security framework, ensuring technical alignment with ISO27001 , Cyber Essentials Plus , and PCI-DSS 4.0 . Infrastructure Protection: Oversee the security of all corporate and boutique networks, including firewalls, VPNs, end-point protection, and cloud environments ...

PCI DSS Retail Payments pecialist

Hiring Organisation
Taylor James Resourcing Limited
Location
East London, London, United Kingdom
Employment Type
Permanent
Salary
£85,000
commercially effective payment services while leading a small technical team and delivering key business initiatives. Payment Processing Expertise, Fintech Knowledge, Technical Architecture, Vendor Management PCI DSS & P2PE Compliance, Mobile Application Management, Loyalty Platform Management, Commercial Awareness Key Responsibilities Payment Platform Ownership * Own the end-to-end payment card … senior escalation point for complex incidents and service issues. * Maintain operational procedures, technical documentation, and support models. * Ensure compliance with industry standards, including PCI DSS and P2PE requirements. Team Leadership Project and Change Management * Lead the delivery of payment-related projects and strategic initiatives. * Coordinate internal stakeholders, suppliers ...

PCI DSS Retail Payments pecialist

Location
United Kingdom
commercially effective payment services while leading a small technical team and delivering key business initiatives. Payment Processing Expertise, Fintech Knowledge, Technical Architecture, Vendor Management PCI DSS & P2PE Compliance, Mobile Application Management, Loyalty Platform Management, Commercial Awareness Key Responsibilities Payment Platform Ownership Own the end-to-end payment card … senior escalation point for complex incidents and service issues. Maintain operational procedures, technical documentation, and support models. Ensure compliance with industry standards, including PCI DSS and P2PE requirements. Team Leadership Project and Change Management Lead the delivery of payment-related projects and strategic initiatives. Coordinate internal stakeholders, suppliers ...

PCI DSS Retail Payments pecialist

Hiring Organisation
Taylor James Resourcing
Location
London, South East England, United Kingdom
Employment Type
Full-Time
Salary
£80,000 - £85,000 per annum
commercially effective payment services while leading a small technical team and delivering key business initiatives. Payment Processing Expertise, Fintech Knowledge, Technical Architecture, Vendor Management PCI DSS & P2PE Compliance, Mobile Application Management, Loyalty Platform Management, Commercial Awareness Key Responsibilities Payment Platform Ownership * Own the end-to-end payment card … senior escalation point for complex incidents and service issues. * Maintain operational procedures, technical documentation, and support models. * Ensure compliance with industry standards, including PCI DSS and P2PE requirements. Team Leadership Project and Change Management * Lead the delivery of payment-related projects and strategic initiatives. * Coordinate internal stakeholders, suppliers ...

Data Privacy Manager

Location
Greater London, England, United Kingdom
rigorous where it needs to be and practical everywhere it can be. There is also an opportunity to help build the function’s PCI DSS capability over time. Key Responsibilities Advise product and business teams on privacy implications of new products, changes and customer journeys. Translate UK privacy … business, technology, legal, risk and security stakeholders. Lead and develop high-performing teams with accountability and continuous improvement. Nice to haves Bring hands-on PCI DSS knowledge and want to help build this capability across the function. Know PCI DSS requirements and their practical application ...

Head of Security

Location
Greater London, England, United Kingdom
security governance, operations, compliance, and risk management across a complex technology estate spanning payments, healthcare, and B2B SaaS. With ongoing M&A activity, active PCI-DSS obligations, and a rapidly evolving platform landscape, you’ll play a critical role in protecting our customers, supporting business growth, and embedding … Oversee security operations, including threat detection, incident response, and remediation Act as the executive lead during security incidents and manage external stakeholder communications Own PCI-DSS compliance across ClearAccept and ClearDebit payment platforms Lead the Group’s Governance, Risk and Compliance (GRC) function, including ISO 27001, Cyber Essentials ...

Full Stack Java Engineer

Location
Guildford, England, United Kingdom
experience and simplify compliance. Its patented cloud-based technologies protect sensitive data across all customer interactions and channels, ensuring compliance with industry standards like PCI DSS while reducing fraud risk and strengthening trust. Founded in 2009 as Semafone, Sycurio supports organizations in over 50 countries across five continents … your default for scaffolding, tests, documentation and proofs of concept, and the review and verification guardrails that let us do this safely in a PCI DSS Level 1 environment. Find repetitive work and automate it. How we work PCI DSS Level 1 environment: peer review, test ...

Information Security & GRC Specialist

Location
Manchester, England, United Kingdom
activities, prepare for internal and external audits, manage evidence and help drive remediation actions through to completion. You’ll also gain exposure to PCI DSS and wider security frameworks, supporting customer assessments, regulatory requirements and security assurance activities. This isn’t a role where you’ll simply identify … internal audits. Coordinate audit evidence and work with stakeholders to close findings and remediation actions. Maintain security policies, procedures, controls and compliance documentation. Support PCI DSS and wider security compliance and assurance activities. Track and report on compliance status, risks, upcoming audits and outstanding actions. Help develop ...

Staff / Senior Staff Security Engineer, Vinted Pay

Location
Greater London, England, United Kingdom
multi‐region AWS infrastructure, payment pipelines and payment pages, wallets holding members' money, the cardholder and personal data behind them, and a regulatory perimeter - PCI DSS, DORA, Bank of Lithuania and FCA rules - that rises every year. Working at staff/senior staff level as an individual contributor … roadmap that shapes how Vinted Pay defends its infrastructure and payment assets, rather than reacting to the next audit. Turn regulation into engineering: map PCI DSS, DORA, and Bank of Lithuania and FCA requirements into practical, automated security controls and engineering guardrails - compliance as a by‐product ...

Head of Security

Hiring Organisation
Hackajob Ltd
Location
Swindon, Wiltshire, South West, United Kingdom
Employment Type
Permanent, Work From Home
protect the confidentiality, integrity, and availability of our information assets, intellectual property, and customer data, ensuring strict compliance with regulatory frameworks including FCA, DORA, PCI DSS, and our client security requirements. Key Responsibilities: Lead the PayTech Information Security function with alignment to our clients wider cyber risk management … Crime and Anti-Fraud teams to mitigate cyber risks related to financial crime. Manage third-party security risk due diligence programs. Lead and maintain PCI DSS and PCI PIN compliance and engagement with Qualified Security Assessors (QSAs). Drive cyber awareness programs and phishing simulations to embed ...

Head of Security

Location
Greater London, England, United Kingdom
protect the confidentiality, integrity, and availability of our information assets, intellectual property, and customer data, ensuring strict compliance with regulatory frameworks including FCA, DORA, PCI DSS, and Edenred group security requirements.**Key Responsibilities:*** Lead the PayTech Information Security function with alignment to Edenred’s wider cyber risk management … Crime and Anti-Fraud teams to mitigate cyber risks related to financial crime.* Manage third-party security risk due diligence programs.* Lead and maintain PCI DSS and PCI PIN compliance and engagement with Qualified Security Assessors (QSAs).* Drive cyber awareness programs and phishing simulations to embed ...

Head of Security

Location
Greater London, England, United Kingdom
protect the confidentiality, integrity, and availability of our information assets, intellectual property, and customer data, ensuring strict compliance with regulatory frameworks including FCA, DORA, PCI DSS, and Edenred group security requirements.**Key Responsibilities:*** Lead the PayTech Information Security function with alignment to Edenred’s wider cyber risk management … Crime and Anti-Fraud teams to mitigate cyber risks related to financial crime.* Manage third-party security risk due diligence programs.* Lead and maintain PCI DSS and PCI PIN compliance and engagement with Qualified Security Assessors (QSAs).* Drive cyber awareness programs and phishing simulations to embed ...

Senior Cloud Security Engineer (GCP) - Engine by Starling

Location
City Of London, England, United Kingdom
authorisation mechanisms are in place Engineer and automate technical controls within GCP to ensure and demonstrate continuous compliance with stringent standards such as PCI DSS and 3DS Drive security infrastructure deployments across our growing environments Perform regular security assessments, audits, threat modelling and architecture design reviews to identify … market for different banks' regulators Hands‐on experience taking a company through security and compliance frameworks like NIST, SOC 2, ISO 27001 and PCI DSS Experience automating security controls and compliance checks against standards and frameworks including SOC 2, ISO 27001 and PCI DSS/ ...

Staff Cloud Security Engineer (GCP) - Engine by Starling

Location
Greater London, England, United Kingdom
authorisation mechanisms are in place Engineer and automate technical controls within GCP to ensure and demonstrate continuous compliance with stringent standards such as PCI DSS and 3DS Drive security infrastructure deployments across our growing environments Perform regular security assessments, audits, threat modelling and architecture design reviews to identify … market for different banks' regulators Hands-on experience taking a company through security and compliance frameworks like NIST, SOC 2, ISO 27001 and PCI DSS Experience automating security controls and compliance checks against standards and frameworks including SOC 2, ISO 27001 and PCI DSS/ ...

Cloud Platform Security Engineer Software engineering London

Location
Greater London, England, United Kingdom
scales without friction Defining and enforcing cloud security architecture standards, guardrails, and policy-as-code inline with industry best practices including NIST, CIS, and PCI DSS. Use Wiz or equivalent CNAPP/CSPM to continuously assess, prioritise, and drive remediation of misconfigurations and vulnerabilities against CIS, NIST, and PCI … DSS benchmarks. Security Monitoring Fine tune, and maintain modern SIEM platform (e.g. Sentinel) including KQL detection rules, workbooks, logging pipelines, and AI-assisted alert triage. Map detection coverage against MITRE ATT&CK tactics and techniques. Identify and close visibility gaps across the cloud estate. Maintain alignment to PCI ...

Data Protection and Compliance Officer

Location
Greater London, England, United Kingdom
obligations are met. The role is accountable for maintaining certification, compliance activities and reporting relating to multiple ISO standards, Cyber Essentials, Cyber Essentials Plus, PCI-DSS, NHS-DSP, NHS Evergreen Assessment, Ecovadis, UNGC, CDP, SECR, ESOS , UK GDPR, Data Protection Act 2018, PECR, privacy governance requirements, and customer … controls. Provide subject matter expertise on regulatory and certification requirements. Information Security & Cyber Compliance Coordinate annual Cyber Essentials and Cyber Essentials Plus assessments. Support PCI-DSS compliance activities and certification requirements. Coordinate annual NHS-DSP submission and external audit. Maintain security policies, standards, and awareness programmes. Assist with ...

Security Architect

Location
Manchester, England, United Kingdom
ensure security is embedded by design, not added as an afterthought. Your work will span from threat modeling and risk assessment to architecting PCI‐DSS compliant solutions, building the secure infrastructure that underpins our global mobility and payments platforms. This is your opportunity to influence how a fast … threat modeling, proactively identifying vulnerabilities and mitigation strategies. Develop and maintain security policies and frameworks aligned with NIST, ISO 27001, and CIS Controls. Lead PCI‐DSS architecture and compliance, ensuring both front‐ and back‐office systems meet standards. Guide and mentor teams in best‐practice security engineering, fostering ...

Payment Platform Manager – Stripe

Location
Greater London, England, United Kingdom
flows. Manage dispute and chargeback processes — and configure and monitor fraud tooling (e.g. Stripe Radar, 3D Secure) to balance fraud prevention with conversion. Own PCI-DSS compliance for payment processing — and triage and resolve causes of conversion drop-off. Own and develop the commercial relationship with Stripe … rolled out to plan in target markets, with adoption and conversion tracked and reported. Disputes, chargebacks and fraud managed within agreed risk tolerances, with PCI-DSS compliance maintained at all times. Stripe and other payment vendor relationships (contract, pricing) actively managed, with cost-benefit analyses delivered to support ...

Identity & Infrastructure Engineer (Security-Aware)

Location
Greater London, England, United Kingdom
investigate identity‐related alerts. Support access reviews, privileged access reviews and entitlement governance. Assist with audit evidence and remediation activities relating to SOX, PCI DSS, GDPR and other applicable requirements. Support incident response by providing identity information, access logs and technical assistance with containment activities. Contribute to reducing … Identity or Microsoft Sentinel. Azure Monitor and Log Analytics. Microsoft Graph API or Azure automation. Passwordless authentication, FIDO2 and passkeys. Application SSO integration. SOX, PCI DSS, GDPR or ISO 27001 environments. General Microsoft Azure administration. Qualifications and Certifications A degree in Computer Science, Cyber Security, Infrastructure Engineering ...

Security Engineer – Cloud & On-Prem (Hybrid Security)

Location
Greater London, England, United Kingdom
secure-by-default principles to day-to-day security engineering. Implement and maintain agreed security controls and technical standards. Support security requirements relating to PCI DSS, SOX, GDPR, ISO 27001 and other applicable frameworks. Assist with audit evidence gathering, control validation and remediation activities. Maintain security documentation, procedures … security services such as GuardDuty, Security Hub, IAM or CloudTrail. Experience working with an external SOC, MSSP or security service provider. Exposure to PCI DSS, SOX, GDPR, ISO 27001, CIS or NIST environments. Qualifications & Certifications A degree in Cyber Security, Computer Science, Information Technology or a related discipline ...

Information Security GRC Lead

Location
Chippenham, England, United Kingdom
Good Energy Change Advisory Board, and ensuring security and resilience impacts are considered and that technical owners complete agreed actions before implementation where required. PCI-DSS Compliance: Coordinate and support PCI-DSS control activity, evidence gathering, control testing and remediation tracking where technology controls … ideally while working alongside technical teams who own implementation. Awareness of recognised security standards or frameworks such as ISO27001, Cyber Essentials, NCSC CAF and PCI-DSS. Strong verbal and written communication skills, with the ability to explain technical matters clearly to non-technical audiences. Demonstrable attention to detail ...

Principal Security Officer

Location
Reading, England, United Kingdom
federated services . Oversee information security risk management, including risk registers, policy exceptions and remediation plans. Lead and support ISO 27001, Cyber Essentials Plus, PCI-DSS, NIST/CIS Controls and customer compliance requirements. Manage and provide assurance around internal and external audits, including remediation of findings. Provide … experience implementing and improving ISO 27001/ISMS and security controls. Strong understanding of security frameworks including ISO 27001/27002, NIST, CIS Controls, PCI-DSS and Cyber Essentials Plus . Experience leading security projects, audits, assessments and remediation programmes. Strong understanding of information security risk ...

Information Security Officer

Location
Reading, England, United Kingdom
organisation's Information Security Management System (ISMS) , including policies, procedures and controls. Support the implementation and ongoing management of ISO 27001, Cyber Essentials Plus, PCI-DSS, NIST/CIS Controls and other relevant security requirements. Conduct security assessments across infrastructure, networks, endpoints, applications and data. Identify, assess … Experience with security audits, control testing, risk assessments and remediation . Knowledge of frameworks and standards including ISO 27001/27002, NIST, CIS Controls, PCI-DSS and Cyber Essentials Plus . Experience developing and maintaining security policies and procedures. Experience with third-party/vendor risk management ...

Information Security Architecture & Engineering Lead (UK-based)

Location
Greater London, England, United Kingdom
Information Security Architecture & Engineering Lead (UK-based) The Information Security Architecture & Engineering Lead forms the technical heart of PCI Pal’s Information Security function. The role owns cloud architecture review, DevSecOps and secure SDLC practice, security automation and tooling, and security architecture strategy for the organisation, replacing reactive, post … secure coding practices. Experience threat-modelling applications and cloud workloads at the design stage, not just reviewing them after deployment. Working knowledge of PCI DSS v4.0.1. ISO/IEC 27001:2022; familiarity with ISO/IEC 42001:2023 is an advantage. Experience triaging and remediating findings from ...