Manchester Area, United Kingdom Hybrid / WFH Options
Candour Solutions
customers. Consult and Advise: Conduct assessments and reviews for ISO27001 (Information Security Management) and ISO22301 (Business Continuity Management). Provide expert advice on compliance standards such as PCI-DSS, CyberEssentials, and more. Policy Development: Create, review, and update information security policies to align with business and regulatory requirements. Technical Expertise: Translate information security requirements into actionable IT … practices in cybersecurity and compliance. Client Engagement: Participate in scoping calls, client meetings, and ongoing project management to ensure client satisfaction. Incident Response Planning: Assist clients in developing robust Cyber Security Incident Response Plans (CSIRP). We’re looking for someone with: CISM, CISSP, or equivalent certifications. ISO27001 and ISO22301 Lead Auditor/Implementor certifications. Knowledge of CyberEssentials/CyberEssentials Plus. Familiarity with PCI DSS and ISO31000 (preferred). Experience: Proven track record in delivering governance, risk, and compliance services. Expertise in information security management and business continuity frameworks. Experience working with industry standards such as NIST, CIS, and NCSC. Strong communication skills with the ability to engage clients at all levels More ❯
Crewe, England, United Kingdom Hybrid / WFH Options
DCS Technology
Senior Cyber Security Analyst Up to £60,000 + bonus + benefits Crewe, UK (Hybrid – 3 days in office) Permanent | Full-time We’re looking for an experienced Senior Cyber Security Analyst to play a key role in protecting our client’s systems, networks, and data. This is an exciting opportunity to lead on threat detection, incident response … and vulnerability management , while driving continuous improvement across the organisation’s security posture. You’ll collaborate closely with infrastructure, development, and compliance teams to maintain high standards of cyber resilience and uphold key frameworks such as ISO 27001 and CyberEssentials Plus . Key Responsibilities: • Lead threat detection, incident response, and vulnerability management activities • Strengthen cyber security posture across cloud, infrastructure, and applications • Provide expert guidance to development teams on secure SDLC practices • Maintain compliance with ISO 27001 and CyberEssentials Plus standards • Mentor junior analysts and support SOC process development Key Skills & Experience: • Strong technical background in cyber security • Experience with application, cloud (AWS) , and infrastructure security • Proven hands-on experience More ❯
warrington, cheshire, north west england, united kingdom Hybrid / WFH Options
DCS Technology
Senior Cyber Security Analyst Up to £60,000 + bonus + benefits Crewe, UK (Hybrid – 3 days in office) Permanent | Full-time We’re looking for an experienced Senior Cyber Security Analyst to play a key role in protecting our client’s systems, networks, and data. This is an exciting opportunity to lead on threat detection, incident response … and vulnerability management , while driving continuous improvement across the organisation’s security posture. You’ll collaborate closely with infrastructure, development, and compliance teams to maintain high standards of cyber resilience and uphold key frameworks such as ISO 27001 and CyberEssentials Plus . Key Responsibilities: • Lead threat detection, incident response, and vulnerability management activities • Strengthen cyber security posture across cloud, infrastructure, and applications • Provide expert guidance to development teams on secure SDLC practices • Maintain compliance with ISO 27001 and CyberEssentials Plus standards • Mentor junior analysts and support SOC process development Key Skills & Experience: • Strong technical background in cyber security • Experience with application, cloud (AWS) , and infrastructure security • Proven hands-on experience More ❯
Crewe, Cheshire, England, United Kingdom Hybrid / WFH Options
DCS Recruitment
Senior Cyber Security Analyst Up to £60,000 + bonus + benefits Crewe, UK (Hybrid - 3 days in office) Permanent | Full-time We're looking for an experienced Senior Cyber Security Analyst to play a key role in protecting our client's systems, networks, and data. This is an exciting opportunity to lead on threat detection, incident response … and vulnerability management , while driving continuous improvement across the organisation's security posture. You'll collaborate closely with infrastructure, development, and compliance teams to maintain high standards of cyber resilience and uphold key frameworks such as ISO 27001 and CyberEssentials Plus . Key Responsibilities: * Lead threat detection, incident response, and vulnerability management activities * Strengthen cyber security posture across cloud, infrastructure, and applications * Provide expert guidance to development teams on secure SDLC practices * Maintain compliance with ISO 27001 and CyberEssentials Plus standards * Mentor junior analysts and support SOC process development Key Skills & Experience: * Strong technical background in cyber security * Experience with application, cloud (AWS) , and infrastructure security * Proven hands-on experience More ❯
Cyber Security Lead Oxfordshire - Hybrid - 2 days per week (Flexible) £50k - £60k plus Benefits Our Client are an award-winning leading IT company offering complete outsourced IT solutions to organisations across the UK and Europe. Based in Oxfordshire they provide a comprehensive range of support services, software and hardware solutions to major blue-chip clients and their technicians are … security within the MSP. They lead Quarterly Security Reviews (QSRs), own the client risk register and exception process, and ensure services are delivered in line with frameworks such as CyberEssentials, ISO27001, and NIST. Internally, the Security Lead is accountable for the MSP's own security posture ensuring tools, processes, and teams meet the same standards we deliver … . Behaviors Required Strategic Thinking - able to translate technical risks into business outcomes and align security initiatives with client goals and budgets. Strong Governance Mindset - experienced in managing frameworks (CyberEssentials, ISO27001, NIST) and embedding them into MSP operations and client environments. Risk Communication - skilled at presenting complex security issues clearly to non-technical stakeholders, both internally and More ❯
Portsmouth, England, United Kingdom Hybrid / WFH Options
Franklin Fitch
Cyber Security Assurance Manager Overview An exciting opportunity has arisen for an experienced Cyber Security Assurance Manager to take ownership of security certifications, audits, and assurance standards for a leading Security Operations Centre (SOC) environment. This role will focus on delivering and maintaining key certifications such as ISO/IEC 27001 , SOC 2 Type II , CyberEssentials … global SOC function. Key Responsibilities Certification Delivery & Maintenance Lead the delivery and ongoing maintenance of SOC-related certifications including SOC 2 Type II , SOC 3 , ISO/IEC 27001 , CyberEssentials Plus , and CREST . Manage sector-specific compliance such as PCI DSS and NCSC CIR/CHECK . Ensure timely renewals and proactively address compliance gaps. Security … and awareness sessions on SOC assurance standards and compliance best practices. Experience & Qualifications Proven experience delivering and maintaining certifications such as ISO/IEC 27001 , SOC 2 Type II , CyberEssentials Plus , and CREST . Solid understanding of SOC operations and security assurance frameworks . Experience managing customer-facing assurance activities, including audits, RFIs, and RFPs. Knowledge of More ❯
Portsmouth, yorkshire and the humber, united kingdom Hybrid / WFH Options
Computappoint
Cyber Security Assurance Manager Location: Portsmouth, UK Hybrid: - 3 days onsite per week Salary: Up to £65,000 Employment Type: Permanent Job Summary: Our client, a leading IT services and consulting firm, is seeking a Cyber Security Assurance Manager to ensure their SOC meets and maintains top security certifications and assurance standards. As part of the GRC function … you’ll lead customer assurance activities, manage external audits, and oversee key certifications such as ISO 27001, SOC2 Type II, CyberEssentials Plus, and CREST SOC accreditation. Key Responsibilities: Act as primary contact for customer assurance activities, supporting RFIs, RFPs, and client audit requests Deliver training and awareness sessions on SOC assurance standards to internal teams Develop customer … facing assurance documentation demonstrating the organisation's security posture Lead the delivery and ongoing maintenance of SOC-related certifications (SOC 2 Type II, SOC 3, ISO/IEC 27001, CyberEssentials Plus, CREST) Embed certification requirements into SOC governance, processes, and operational practices Ensure continuous monitoring, evidence collection, and audit readiness for internal and external assessments Monitor developments More ❯
Head of IT Security - West London - (Enterprise-wide Cyber & Information Security) Location: West London - 5 days on-site Salary: (phone number removed) per annum My client is looking to recruit a Head of IT Security to lead and shape their enterprise-wide security function. This is a senior leadership role offering the opportunity to define security strategy, strengthen governance … and protect critical systems, data, and operations. The Role: As Head of Security, you will own the strategic and operational delivery of all information and cyber security activities. You'll develop and implement robust security policies, oversee incident response, and ensure compliance with GDPR, PCI DSS, ISO 27001, and CyberEssentials Plus. You will be the single … a 3-5 year Security Strategy and Roadmap covering technology, people, and processes. Embed security by design across projects, platforms, data flows, and product development. Lead enterprise-wide information, cyber, and data security governance. Define and implement security frameworks, policies, and operating models. Ensure compliance with GDPR, PCI DSS, CyberEssentials Plus, and ISO/IEC More ❯
Head of IT Security - West London - (Enterprise-wide Cyber & Information Security) Location: West London - 5 days on-site Salary: £90-100,000 per annum My client is looking to recruit a Head of IT Security to lead and shape their enterprise-wide security function. This is a senior leadership role offering the opportunity to define security strategy, strengthen governance … and protect critical systems, data, and operations. The Role: As Head of Security, you will own the strategic and operational delivery of all information and cyber security activities. You'll develop and implement robust security policies, oversee incident response, and ensure compliance with GDPR, PCI DSS, ISO 27001, and CyberEssentials Plus. You will be the single … a 3-5 year Security Strategy and Roadmap covering technology, people, and processes. Embed security by design across projects, platforms, data flows, and product development. Lead enterprise-wide information, cyber, and data security governance. Define and implement security frameworks, policies, and operating models. Ensure compliance with GDPR, PCI DSS, CyberEssentials Plus, and ISO/IEC More ❯
Hereford, Herefordshire, England, United Kingdom Hybrid / WFH Options
DCS Recruitment
Security Analyst to join our client who will play a key role in driving compliance, governance, and continual improvement across key security frameworks including ISO 27001, PCI DSS, and CyberEssentials Plus. Key Responsibilities: * Lead on the operation and continual improvement of the Information Security Management System (ISMS) * Coordinate internal and external audit readiness for ISO 27001, PCI … DSS, and CyberEssentials Plus * Draft and update information security policies, procedures, and technical standards * Work with procurement and commercial teams to support supplier assurance and risk assessment * Contribute to tender responses and bid processes, ensuring security and compliance requirements are met * Promote good security practices and raise awareness across departments * Act as an escalation point and day … to-day contact for other team members * Stay up to date with changes in legislation and standards relating to information and cyber security Key Skills & Experience: Essential: * Background in IT, Cyber Security, Information Systems, or a related discipline * Strong working knowledge of ISO 27001, PCI DSS, and CyberEssentials Plus * Proven ability to support and prepare More ❯
Portsmouth, Hampshire, England, United Kingdom Hybrid / WFH Options
Computappoint
Portsmouth Hybrid : 3 days onsite a week Permanent Cyber Security Assurance Manager Location: Portsmouth, UK Hybrid: 3 days onsite per week Salary: Up to £65,000 Employment Type: Permanent Job Summary: Our client, a leading IT services and consulting firm, is seeking a Cyber Security Assurance Manager to ensure their SOC meets and maintains top security certifications and … assurance standards. As part of the GRC function, you’ll lead customer assurance activities, manage external audits, and oversee key certifications such as ISO 27001, SOC2 Type II, CyberEssentials Plus, and CREST SOC accreditation. Key Responsibilities: Act as primary contact for customer assurance activities, supporting RFIs, RFPs, and client audit requests Deliver training and awareness sessions on … facing assurance documentation demonstrating the organisation's security posture Lead the delivery and ongoing maintenance of SOC-related certifications (SOC 2 Type II, SOC 3, ISO/IEC 27001, CyberEssentials Plus, CREST) Embed certification requirements into SOC governance, processes, and operational practices Ensure continuous monitoring, evidence collection, and audit readiness for internal and external assessments Monitor developments More ❯
CyberEssentials Assessor/Auditor Location: Remote (UK Only) The Role: Profectus are working closely with a well-established consultancy to find 2 motivated and experienced CyberEssentials Assessor/Auditor to join their growing team. They have a number of great benefits to offer as well as a remote first working environment. A CE and More ❯
such as Mimecast, Avanan, SentinelOne, MDR/XDR, Fortinet, Huntress, Datto, and Autotask Strong troubleshooting, analytical, and communication skills Ability to work independently and collaboratively across teams Experience with CyberEssentials, CyberEssentials Plus, and other frameworks such as NIST, ISO27001 Commitment to producing clear documentation and knowledge sharing Desirable Certifications Microsoft Certified: Azure Administrator/ More ❯
such as Mimecast, Avanan, SentinelOne, MDR/XDR, Fortinet, Huntress, Datto, and Autotask Strong troubleshooting, analytical, and communication skills Ability to work independently and collaboratively across teams Experience with CyberEssentials, CyberEssentials Plus, and other frameworks such as NIST, ISO27001 Commitment to producing clear documentation and knowledge sharing Desirable Certifications Microsoft Certified: Azure Administrator/ More ❯
City of London, London, United Kingdom Hybrid / WFH Options
MFK Recruitment
such as Mimecast, Avanan, SentinelOne, MDR/XDR, Fortinet, Huntress, Datto, and Autotask Strong troubleshooting, analytical, and communication skills Ability to work independently and collaboratively across teams Experience with CyberEssentials, CyberEssentials Plus, and other frameworks such as NIST, ISO27001 Commitment to producing clear documentation and knowledge sharing Desirable Certifications Microsoft Certified: Azure Administrator/ More ❯
London, South East, England, United Kingdom Hybrid / WFH Options
MFK Recruitment
such as Mimecast, Avanan, SentinelOne, MDR/XDR, Fortinet, Huntress, Datto, and Autotask Strong troubleshooting, analytical, and communication skills Ability to work independently and collaboratively across teams Experience with CyberEssentials, CyberEssentials Plus, and other frameworks such as NIST, ISO27001 Commitment to producing clear documentation and knowledge sharing Desirable Certifications Microsoft Certified: Azure Administrator/ More ❯
london (city of london), south east england, united kingdom Hybrid / WFH Options
MFK Recruitment
such as Mimecast, Avanan, SentinelOne, MDR/XDR, Fortinet, Huntress, Datto, and Autotask Strong troubleshooting, analytical, and communication skills Ability to work independently and collaboratively across teams Experience with CyberEssentials, CyberEssentials Plus, and other frameworks such as NIST, ISO27001 Commitment to producing clear documentation and knowledge sharing Desirable Certifications Microsoft Certified: Azure Administrator/ More ❯
slough, south east england, united kingdom Hybrid / WFH Options
MFK Recruitment
such as Mimecast, Avanan, SentinelOne, MDR/XDR, Fortinet, Huntress, Datto, and Autotask Strong troubleshooting, analytical, and communication skills Ability to work independently and collaboratively across teams Experience with CyberEssentials, CyberEssentials Plus, and other frameworks such as NIST, ISO27001 Commitment to producing clear documentation and knowledge sharing Desirable Certifications Microsoft Certified: Azure Administrator/ More ❯
london, south east england, united kingdom Hybrid / WFH Options
PCI Pal
WILL BE RESPONSIBLE FOR: Managing, maintaining, and maturing the already established audit lifecycles for the following frameworks: PCI DSS v4.0, ISO 27001:2022, ISO 9001:2015, ISO 14001:2015, CyberEssentials, CyberEssentials Plus, SOC2 Type 1 – 3 & HIPAA Working in close collaboration with other team members, with peers, and across the business to ensure that … commitments and requirements to managing a security, education, training and awareness (SETA) programme. WE WANT TO HEAR FROM YOU IF YOU: Possess extensive and comprehensive knowledge of Information/Cyber Security processes and methodologies as they relate to maintaining compliant PCI DSS and ISO certified environments. Have exceptional knowledge of steering and strategically managing GRC and audit roadmaps and … associated processes, and their relevance to maintaining a GRC programme. Are a strong and proactive collaborator with a positive professional, pragmatic work ethic. Possess a thorough understanding of applicable cyber security assurance methodologies and frameworks, e.g. NIST & CIS etc. Have a rudimentary understanding of AI GRC requirements that can be used to develop and mature AI GRC and assurance More ❯
Location: Remote (UK Only) The Role: Profectus are working closely with a well-established consultancy to find a motivated and experienced CyberEssentials Plus Assessor/Auditor to join their growing team. They have a number of great benefits to offer as well as a remote first working environment. A CyberEssentials Plus qualification is essential More ❯
multiple platforms. The role will provide ongoing technical assurance to digital systems and data to ensure that these are safe and secure. Special projects support will include PCI compliance, CyberEssentials and other technical support where required.Provide line manager duties within the Information Security Team. Key accountabilities & Responsibilities: Be an SME for PCI DSS and CyberEssentials … the business and early in projects Assist in 3rd party assurance Skills, Experience and Knowledge: Strong experience as a technical security expert. Excellent Infrastructure Knowledge specifically around Server Technology. Cyber security experience within a large complex corporate environment working with multiple partners. Proven knowledge and experience of IT and information security policies, practices and standards. Knowledge of current technologies … in the field and the ability to learn new ones. Incident management experience including investigations and response. Cloud security experience would be highly beneficial PCI and CyberEssentials expertise would be advantageous Why us? Markerstudy Insurance Services Limited (MISL) is one of the largest Managing General Agents in the UK. With a strong presence in the UK motor More ❯
multiple platforms. The role will provide ongoing technical assurance to digital systems and data to ensure that these are safe and secure. Special projects support will include PCI compliance, CyberEssentials and other technical support where required. Provide line manager duties within the Information Security Team. Key accountabilities & Responsibilities: Be an SME for PCI DSS and CyberEssentials technical assurance Contribute to business and technology audits with technical evidence and advice Engagement with 3rd party partners as a SME and to ensure due diligence process adherence Contribute to the delivery of the security roadmap and a continuous improvement model for security Ensure Information Security controls are operating effectively Ensure where gaps are identified that these … the business and early in projects Assist in 3rd party assurance Skills, Experience and Knowledge: Strong experience as a technical security expert. Excellent Infrastructure Knowledge specifically around Server Technology. Cyber security experience within a large complex corporate environment working with multiple partners. Proven knowledge and experience of IT and information security policies, practices and standards. Knowledge of current technologies More ❯
Senior Cyber Security Engineer/Threat Intelligence Specialist Bristol (Hybrid) | Up to £81,000 + Excellent Benefits Join a leading UK law firm shaping the future of cyber resilience. About the Role My client are seekinga Senior Cyber Security Engineer/Threat Intelligence Specialist to strengthen and mature our firms cyber defence and incident response capabilities. … and infrastructure environments. Stay ahead of the latest vulnerabilities, attacker techniques, and threat trends. Collaborate with IT Operations to safeguard key business assets. Contribute to the development of new cyber technologies, strategies, and roadmaps aligned to firm-wide IT goals. Manage vendor relationships and support supplier selection. Ensure compliance with ISO27001, GDPR, CyberEssentials Plus, and other … regulatory frameworks. What Were Looking For Proven experience in Cyber Security, Threat Intelligence, or SOC environments. Hands-on experience with Azure Security Center, Microsoft Sentinel, Defender ATP, M365 Security & Compliance, and KQL scripting. Knowledge of frameworks such as MITRE ATT&CK, NIST, CIS, NCSC, and Security Scorecard. Understanding of network security systems (Zscaler, Darktrace, Firewalls, NAC, VPN, wireless, segmentation More ❯
Information Cyber Security Engineer (ISO 27001, NIST, CyberEssentials Plus) Cyber Security Engineer to join a growing team, a leading global organisation. In this hands-on role, you’ll be at the heart of the company’s security operations driving innovation, leading key initiatives, and shaping the future of their cybersecurity landscape. Working closely with infrastructure … implications of new technologies and contribute to strategic decisions that define the company’s long-term roadmap. You’ll also champion compliance with frameworks such as ISO27001, NIST, and CyberEssentials Plus. This opportunity is perfect for someone who is proactive, forward-thinking, and passionate about cybersecurity excellence. You’ll bring strong technical expertise, a deep understanding of More ❯
Cyber Security Manager Location: Derby Salary: Band 8a £53,770 Contract Type: Fixed Term 12 Months At DHU Healthcare , we are looking for an experienced and forward-thinking Cyber Security Manager to lead and enhance our cyber security operations. You will play a pivotal role in safeguarding our digital systems, data, and networks ensuring compliance, resilience, and … a proactive culture of cyber awareness across our organisation. What your typical day looks like: Leading and managing the cyber security team, providing professional guidance, mentorship, and development. Overseeing DHU's cyber operations including threat monitoring, incident response, and vulnerability management. Managing and maintaining cyber assurance aligned with DSPT, CyberEssentials, ISO27001, and NHS … Digital frameworks. Acting as the escalation point for cyber incidents, coordinating investigations, and ensuring lessons learned are embedded. Maintaining and reporting on cyber risks, incidents, and compliance to senior leadership and the Board. Leading the continual development of cyber governance, risk management, and security improvement initiatives. Supporting business continuity, disaster recovery, and regular testing of the CyberMore ❯