1 to 25 of 33 Permanent ISO 27001 Lead Implementer Jobs in the UK excluding London

Senior Information Security Manager

Hiring Organisation
Ascend Consulting
Location
London, South East England, United Kingdom
Employment Type
Full-Time
Salary
£60,000 - £65,000 per annum
Senior Information Security Manager to play a pivotal role in their Compliance team. The Reporting to the Head of Compliance, you will lead the ISO 27001-certified information security management system, strengthen processes, and help shape policy. In this role … incidents, and contributing to policy development. The key responsibilities of this role are to oversee information security standards by managing and continually improving ISO 27001-certified Information Security Management System, leading business continuity management for information and technology risks, and supporting the organisation ...

Information Technology Security Expert

Location
Farnborough, England, United Kingdom
seeking a technically skilled professional who combines strong interpersonal skills with a deep understanding of cyber security principles, data protection, and ISO 27001 standards. In this role, you will act as the first line of defence for our clients’ technical environments. While the core … security protocols and data protection regulations. You will not only resolve technical faults but also ensure that all support activities align with our ISO 27001 Information Security Management System (ISMS). This role requires direct communication global colleagues and customers to explain security implications ...

Information Security & GRC Specialist

Location
Manchester, England, United Kingdom
ISMS), helping ensure Vix remains compliant, audit-ready and continually improving. Working across Security, Engineering, Technology and the wider business, you’ll coordinate ISO 27001 activities, prepare for internal and external audits, manage evidence and help drive remediation actions through to completion. … help get things fixed. What You’ll Be Doing Own the day-to-day coordination and continuous improvement of our ISMS. Support ISO 27001 certification, surveillance and internal audits. Coordinate audit evidence and work with stakeholders to close findings and remediation actions. Maintain security ...

Lead GRC Consultant

Hiring Organisation
Cathcart Technology
Location
Edinburgh, Midlothian, Scotland, United Kingdom
Employment Type
Permanent
Lead GRC Consultant required to join a well established global technology company with a strong base in Edinburgh. This is a senior role within the Information Security team, focused on governance, risk and compliance, with responsibility for helping shape and continually improve the organisation's security framework … CISSP, CISM, CISA, CRISC or ISO 27001 Lead Implementer / Lead Auditor would be advantageous, but are not essential. The company boasts one of the best offices in Edinburgh City Centre, offering a stunning, modern ...

Cyber Security Architect & Engineering Lead

Hiring Organisation
Circle Recruitment
Location
London, South East England, United Kingdom
Employment Type
Full-Time
Salary
£70,000 - £80,000 per annum
Cyber Security Architect & Engineering Lead Location: London, hybrid Salary: £70,000 - £80,000 Our client is seeking a senior, hands-on Cyber Security Architect & Engineering Lead to strengthen its security architecture and engineering capability. Reporting to the Head of Information Security, this … cloud, SaaS, data, applications and integrations. Design, implement and improve security controls, with a focus on Zero Trust, secure-by-design and automation. Lead security architecture reviews and threat modelling for major projects, technologies and high-risk integrations. Own security initiatives from problem identification and business case ...

Information Security Analyst

Hiring Organisation
4Square Recruitment Ltd
Location
Farnborough, Hampshire, United Kingdom
Employment Type
Full-Time
Salary
£45,000 - £55,000 per annum
recruiting for an Information Security Analyst to join a growing organisation based in Farnborough. This is a varied role combining information security, ISO 27001, data protection and hands-on technical support . You’ll work closely with internal teams and customers, helping to resolve … will be responsible for: Troubleshooting hardware, software and network-related issues Identifying, triaging and escalating potential security incidents Ensuring support activities follow ISO 27001 and data protection requirements Maintaining accurate documentation and audit trails Supporting the implementation of security controls and best practice Identifying ...

Information Security Lead

Location
Wallingford, England, United Kingdom
Information Security Lead / ISO27001 / SOC / GRC / Permanent At Dexory, we are transforming the warehousing and logistics industry through data intelligence. We're currently recruiting for an Information Security Lead to own and drive our compliance programmes (ISO … 27001, SOC 1 Type 2, SOC 2 Type 2), act as the primary responder to customer security due diligence, and build the systems and knowledge base that allow Dexory to scale securely without friction. You'll work closely with the Head of IT & Security, embedding good security ...

Principal Security Officer

Location
Reading, England, United Kingdom
delivery of the wider security strategy and improvement plan. Provide leadership, guidance and technical oversight to Information Security Officers within the team. Lead significant security projects and initiatives from assessment and design through to implementation. Own and drive improvements to the organisation's ISMS, security controls … overall cyber maturity . Lead security assessments across infrastructure, networks, endpoints, applications, cloud environments and data. Provide security input into technical architecture and design decisions. Work with technical teams to implement appropriate security controls around identity, access management, SSO and federated services . Oversee information security risk ...

Information Security Officer

Location
Reading, England, United Kingdom
continually improve the organisation's Information Security Management System (ISMS) , including policies, procedures and controls. Support the implementation and ongoing management of ISO 27001, Cyber Essentials Plus, PCI-DSS, NIST / CIS Controls and other relevant security requirements. Conduct security assessments across infrastructure, networks … endpoints, applications and data. Identify, assess and manage information security risks, including maintaining risk registers and tracking remediation. Lead and support internal and external security audits , including evidence gathering, control testing and remediation of findings. Manage technical security risks within Data Protection Impact Assessments and policy exceptions. ...

GRC Engineer

Location
Belfast City District, Northern Ireland, United Kingdom
querying, and control automation. You'll be a key player in maintaining our compliance posture across frameworks like SOC 2, NIST CSF, and ISO 27001, while also helping modernize how we monitor and evidence controls using platforms like Anecdotes. This role suits someone … preparation for and execution of SOC 2 (Type I / II) audits, working directly with external auditors to scope, evidence, and remediate findings Lead or support NIST CSF assessments and gap analyses, translating results into actionable remediation plans Support alignment and readiness activities for ISO ...

Security Manager

Location
Bradford, England, United Kingdom
technical security requirements with governance, compliance, and stakeholder engagement. Key Responsibilities Manage and maintain compliance with security standards and accreditations including PCI DSS, ISO 27001, ISO 22301, Cyber Essentials Plus and IT Health Checks. Conduct internal audits, control reviews, and risk … Security Manager or similar information security role. Strong understanding of cyber security, governance, risk, and compliance frameworks. Extensive knowledge of PCI DSS, ISO 27001, Cyber Essentials Plus, and data protection requirements. Experience with Microsoft 365, Azure, AWS, vulnerability management, and SIEM tools. Strong communication ...

Operational Resilience & Technology Risk Business Partner

Hiring Organisation
Leeds Building Society
Location
Leeds, West Yorkshire, Yorkshire, United Kingdom
Employment Type
Permanent, Work From Home
Salary
£55,000
Resilience framework, assessing whether our approach is practical, evidence-based and aligned with regulatory expectations and the needs of the business. You'll lead thematic and targeted assurance reviews across operational resilience, technology resilience, IT risk and information security. You'll assess the design and effectiveness … facilitation skills, with the curiosity to deepen your expertise across operational resilience, technology resilience and assurance. A relevant qualification such as CISA, ISO 27001 Lead Auditor or ISO 27001 Lead Implementer ...

Operational Resilience & Technology Risk Business Partner

Location
Leeds, Yorkshire, United Kingdom
Resilience framework, assessing whether our approach is practical, evidence-based and aligned with regulatory expectations and the needs of the business. You'll lead thematic and targeted assurance reviews across operational resilience, technology resilience, IT risk and information security. You'll assess the design and effectiveness … facilitation skills, with the curiosity to deepen your expertise across operational resilience, technology resilience and assurance. A relevant qualification such as CISA, ISO 27001 Lead Auditor or ISO 27001 Lead Implementer ...

Cyber Security Manager

Hiring Organisation
Amtis Professional Ltd
Location
Birmingham, West Midlands (County), United Kingdom
Employment Type
Permanent
Salary
£75000 - £85000/annum 30% Bonus, Private Medical, Company
looking for an experienced Cyber Security Manager to join it's technology function. Reporting to the Head of Information Security, you'll lead the organisation's day-to-day cyber defence and information security capability. You'll protect critical systems, customer data and business operations across … communications and recovery Leading security investigations and overseeing remediation after incidents or identified risks Driving compliance with security policies, standards and regulations, including ISO 27001, Cyber Essentials and PCI-DSS Managing security audits, risk assessments and improvement plans Delivering security reporting, metrics and risk ...

IT Risks & Control Manager

Location
Eastleigh, England, United Kingdom
Risks & Control Manager Lead IT risk and control assessments using recognised frameworks such as ISO / IEC 27001 and NIST-aligned controls. Own and maintain the IT risk register, ensuring risks, controls and treatment plans are accurate … risk management, technology risk or information security risk. Good knowledge of IT control frameworks, particularly ISO / IEC 27001 and NIST-aligned controls. Experience maintaining IT risk registers and working with GRC tools. Confidence facilitating senior stakeholder discussions and governance meetings. Ability ...

Cyber Security & Resilience Manager

Location
Farnborough, England, United Kingdom
promoting diversity and inclusion throughout the organisation. What we are looking for We are seeking an experienced Cyber Security and Resilience Manager to lead and continuously enhance cyber security, information security and operational resilience across our Group businesses. Reporting to the Head of IT and Cyber Security … improve security policies, standards and governance frameworks. Provide trusted advice and guidance to senior stakeholders. Report on cyber security performance, risks and priorities. Lead the identification, assessment and management of cyber risks. Support business projects and initiatives with security risk assessments. Work with stakeholders to develop ...

Senior Security Consultant

Hiring Organisation
Akkodis
Location
London, South East England, United Kingdom
Employment Type
Full-Time
Salary
Salary negotiable
Cyber Security Consultant, Information Security Strong client-facing and stakeholder management skills Experience working with recognised security frameworks and standards, including: ISO 27001, NISTCyber Security Framework (CSF), CIS Controls, Cloud Security Controls, Secure by Design principles The ability to balance security best practice with … commercial realities Someone who is naturally curious, proactive and enjoys solving problems Desirable Certifications CISSP CISM CCSP ISO 27001 Lead Implementer or Lead Auditor Please note that applicants must have the right to work ...

Principal IT Infrastructure & Security Specialist

Location
Oxford, England, United Kingdom
organisation's Information Security Management System (ISMS), implementing technical controls that contribute to compliance with ISO / IEC 27001, Cyber Essentials Plus and other required standards. Monitor the security, health and performance of the IT environment, identifying risks, vulnerabilities and opportunities for improvement … understanding of information security principles and experience implementing technical security controls aligned with recognised frameworks such as ISO / IEC 27001 and Cyber Essentials Plus. Experience mentoring or providing technical leadership to junior IT professionals. Experience with infrastructure automation or scripting using technologies ...

AI Security Consultant

Location
Manchester, England, United Kingdom
assurance. Familiarity with frameworks and guidance such as NIST AI RMF, OWASP Top 10 for LLM Applications, OWASP Agentic AI guidance, MITRE ATLAS, ISO 27001, NIST CSF, CIS Controls or cloud security frameworks. Experience with SOC operations, SIEM / SOAR platforms, detection engineering, threat … autonomous systems, including least privilege, approval workflows, action limits, logging, monitoring and rollback mechanisms. Relevant certifications such as CISSP, CISM, CCSP, GIAC, ISO 27001 Lead Implementer / Auditor, cloud security certifications or AI / security-focused training. Please ...

AI Security Consultant

Hiring Organisation
PA Consulting
Location
Pimlico, Hertfordshire, UK
Employment Type
Full-time
assurance. Familiarity with frameworks and guidance such as NIST AI RMF, OWASP Top 10 for LLM Applications, OWASP Agentic AI guidance, MITRE ATLAS, ISO 27001, NIST CSF, CIS Controls or cloud security frameworks. Experience with SOC operations, SIEM / SOAR platforms, detection engineering, threat … autonomous systems, including least privilege, approval workflows, action limits, logging, monitoring and rollback mechanisms. Relevant certifications such as CISSP, CISM, CCSP, GIAC, ISO 27001 Lead Implementer / Auditor, cloud security certifications or AI / security-focused training. Please ...

Senior Cyber Security Consultant (Defence)

Location
Cheltenham, England, United Kingdom
remediation strategies and residual risks to stakeholders. Supporting governance, risk and compliance activities within secure and regulated environments. Depending on experience, you may: Lead consultancy engagements and workstreams. Mentor and support the development of colleagues. Act as a trusted adviser to senior client stakeholders. Contribute to business … controls. Understanding of Defence procurement and capability delivery programmes. Beneficial Knowledge Government and industry security frameworks such as HMG Security Policy Framework (SPF), ISO 27001 and NIST. Risk management methodologies and security assurance frameworks. Enterprise and security architecture approaches including TOGAF and SABSA. Cloud ...

Senior Cyber Security Consultant

Hiring Organisation
Hackajob Ltd
Location
Guildford, Surrey, South East, United Kingdom
Employment Type
Permanent, Work From Home
remediation strategies and residual risks to stakeholders. Supporting governance, risk and compliance activities within secure and regulated environments. Depending on experience, you may: Lead consultancy engagements and workstreams. Mentor and support the development of colleagues. Act as a trusted adviser to senior client stakeholders. Contribute to business … controls. Understanding of Defence procurement and capability delivery programmes. Beneficial Knowledge Government and industry security frameworks such as HMG Security Policy Framework (SPF), ISO 27001 and NIST. Risk management methodologies and security assurance frameworks. Enterprise and security architecture approaches including TOGAF and SABSA. Cloud ...

Security Architect

Hiring Organisation
Kingdom People
Location
Birmingham, West Midlands (County), United Kingdom
Employment Type
Permanent
Trust, IAM. Network & Data Security : Firewalls, VPNs, PAM, Encryption, Key Management, and Secure Information Exchange protocols. Frameworks & Standards : Practical knowledge of NCSC guidelines, ISO 27001, Cyber Essentials, MoD 05-138, and NIST. Qualifications A Degree, degree apprenticeship, or equivalent professional experience in a relevant … technical discipline. Possession of, or active progress towards, recognized industry certifications such as CISSP, SABSA, NCSC Certified, TOGAF, CCSP, or ISO 27001 Lead Implementer / Auditor. ...

Cyber GRC Analyst (Cyber Policy & Governance)

Hiring Organisation
IBEX RECRUITMENT LTD
Location
Greater Manchester, North West, United Kingdom
Employment Type
Permanent
Salary
£50,000
have: Experience developing, reviewing or managing cyber security policies, standards, procedures or governance frameworks. Strong knowledge of recognised cyber security frameworks such as ISO 27001, NIST, or the Cyber Assessment Framework (CAF). Experience supporting compliance, risk management, governance or information assurance programmes. Excellent … Industrial Control Systems (ICS) security. Knowledge of cyber resilience requirements within critical national infrastructure environments. Professional certifications such as CISSP, CISM, ISO 27001 Lead Implementer / Auditor. What's on Offer Opportunity to influence cyber strategy within ...

IT Director

Location
Cheltenham, England, United Kingdom
frameworks. Ensure compliance with relevant data protection laws, including UK GDPR, ISO standards, including ISO / IEC 27001, Cyber Essentials Plus and industry best practice. Lead incident response planning, security audits, risk assessments and remediation efforts. Represent … systems integration projects. Excellent leadership, communication and stakeholder management skills. Professional certifications such as CISSP, CISM, ISO / IEC 27001 Lead Implementer or Auditor, or similar. Experience working in regulated, public sector or educational environments. Please note ...