5+ years of experience in IT and cyber governance frameworks, policy development, cyber assurance, compliance or a related discipline. Certifications such as CISSP, CISM, CRISC, or equivalent are strongly preferred. In-depth understanding of cybersecurity frameworks (e.g., NIST, ISO 27001) andrisk management methodologies. Experience with controls development and management More ❯
ITHC, CVSS/CVE) Experience working with security standards such as ISO 27001, 27002, 27017, 27108 etc DESIRABLE SKILLS AND EXPERIENCE CISSP, CISM, CCSP, CRISC or equivalent experience Good knowledge covering several of the following examples (this list is not exhaustive): AD, Cryptography, End User Computing, IAM, PKI, Server hardening More ❯
information security and compliance audits conducted in the department Qualifications and Experience required: Degree level qualified or equivalent - highly desirable. CISM and/or CRISC or other relevant certification is highly desirable ISO 27001:2022 Lead Implementer/Auditor certification is essential. Demonstratable experience in an Information Security, IT Governance More ❯
information security risks, mitigations and management strategies S elf-motivated with keen attention to detail Have a relevant industry certification such as CISSP, CISM, CRISC or equivalent NB: The above list of job duties is not exclusive or exhaustive and the post holder will be required to undertake such tasks More ❯
projects and workstreams in a fast-paced environment. Strong problem-solving skills and the ability to drive strategic initiatives. Relevant certifications (e.g., CISSP, CISM, CRISC, PMP, PRINCE2 ) are a plus. More ❯
written communication and reporting abilities. A recognised OT qualification such as GIAC GICSP, 62443, and similar. Desired Skills and Qualifications: Certifications like CISM, CISSP, CRISC, ISO 27001 LI/LA, CISA are advantageous. A degree in a science-related topic (some examples are Mathematics, Computer Science, Engineering, Physics or relevant More ❯
Reading, England, United Kingdom Hybrid / WFH Options
MarkJames Search
of professional experience in security consulting. Proficiency with security standards and frameworks (ISO27001, NIST CSF, CIS, COBIT). Relevant certifications such as CISSP, CISA, CRISC, CISM, CISMP, ISO 27001 LI, or ISO27001 LA. A Bachelor’s Degree in a related discipline or equivalent experience. Strong English communication skills; additional fluency More ❯
leadership and key committees. Ability to summarise and highlight key program risks, findings and recommendations. What we need from you Professional qualification in CISA, CRISC or equivalent. Proven experience in IT compliance, IT risk management, or IT auditing. SME knowledge of ITGC and ITAC concepts and requirements. In-depth knowledge More ❯
City, Edinburgh, United Kingdom Hybrid / WFH Options
N-able Technologies Ltd
processes and tools like Smartsheet is preferred. Knowledge of IT architectures and global company structures. Willingness to obtain professional certifications such as CISSP, CISM, CRISC, or CISA within two years. Excellent communication skills, including technical and business writing. Resourceful, self-motivated, with strong critical thinking and organizational skills. Ability to More ❯
Sindlesham, Berkshire, United Kingdom Hybrid / WFH Options
National Grid plc
cyber security qualification(s), for example CertifiedInformationSystems Security Professional (CISSP), CertifiedInformation Security Manager (CISM), CertifiedinRiskandInformationSystemsControl (CRISC) - CISSP preferred. Must possess expertise in one or more of the following key areas: Networking: Understand fundamental networking principles, potential attack vectors, and applicable mitigating More ❯
efficient processes to get things done, with a focus on continuous improvement. 🚀 Your a Match: 5+ years ininformation security or IT risk management. CRISC (CertifiedinRiskandInformationSystemsControl) would be a distinct advantage. Strong organisation, administration and documentation skills. Experience and knowledge of ISO27001 (Information Security More ❯
including GDPR, PCI-DSS, and ITGC. Hands-on experience with cloud platforms including AWS, Azure, or GCP. Relevant certifications such as CISSP, CISM, or CRISC are preferred but not essential. Excellent stakeholder management, reporting, and communication skills. What’s on Offer: A competitive salary up to £95,000 Discretionary bonus More ❯
across departments. Experience with technology process, riskandcontrol frameworks. IT Riskand Compliance, Audit, or Quality certifications desirable (e.g. CISSP, CISM, CISA, CIA, CRISC, CGEIT, CIAC, ISO, etc.). Excellent interpersonal, consultative and communication skills. Ability to interact effectively at all levels with clients, consultants, vendors, peers, and IT More ❯
Edinburgh, Stockbridge, City of Edinburgh, United Kingdom
Be-IT Resourcing Ltd
GDPR or CCPA . Understanding of risk management principles, ideally within a 2nd line or governance function. Relevant industry certifications such as CISSP, CISM, CRISC, CDPSE, CompTIA Security+ or similar. Strong technical awareness across areas like application security , incident response , and data privacy . Excellent stakeholder engagement skills—you’ll More ❯
Manchester, Lancashire, United Kingdom Hybrid / WFH Options
TalkTalk Telecom Group PLC
in security risk management. Excellent knowledge in security risk frameworks and best practices such as ISO27001, ISO27005, SOC2, NIST. CISSP, CISM and/or CRISC desirable. Desirable: Telecoms experience advantageous. How we look after our employees Our brand new "PXC Flex" benefit launched in January 2025, which includes Flex30, an More ❯
or Compliance. Substantial knowledge of risk frameworks andrisk management methodologies. Detail-oriented with strong analytical and advisory skills. Certifications like CISSP, CISM, CISA, CRISC (or similar) are advantageous but not essential! This is an exceptional opportunity for someone who thrives in a dynamic environment and wants to be part More ❯
Data protection and privacy • Security change management • Understanding business continuity resilience and incidence response • Networks, core infrastructure andsystems Desirable qualifications include: CISSP, CISM, CRISC, CCP Any individual without security clearance is welcome to apply and will always be considered for this or wider opportunities in CGI, where appropriate. #LI More ❯
Risk Management, specifically within systems development and technology change. Deep understanding of IT governance frameworks essential for effective risk assessment. Professional certifications such as CRISC, CISSP, CGEIT, CISM, Prince2, or ITIL. Familiarity with systems development methodologies including Agile, DevOps, Hybrid, or Waterfall. Strong problem-solving skills with a proactive approach More ❯
Ability to perform to tight deadlines. Relevant riskand/or security industry certification(s) such as CertifiedinRiskandInformationSystemsControl (CRISC), CertifiedInformation Security Manager (CISM), CertifiedInformationSystems Security Professional (CISSP), Certified Ethical Hacker (CEH). Must possess the ability to follow and/or More ❯
Ability to perform to tight deadlines. Relevant riskand/or security industry certification(s) such as CertifiedinRiskandInformationSystemsControl (CRISC), CertifiedInformation Security Manager (CISM), CertifiedInformationSystems Security Professional (CISSP), Certified Ethical Hacker (CEH). Must possess the ability to follow and/or More ❯