dedicated Cyber Security? We have an exciting opportunity for an Information Security Consultant looking to elevate their career. We're looking for someone with hands-on experience in ISO27001 implementation and auditing, and expertise in NIST to drive our Compliance Team's service offerings forward. Work with a innovative, industry-leading Cyber Security … to build relationships with internal and external stakeholders Hands-on experience in ISO27001 implementation and auditing Eligibility for Security Clearance Certifications Preferred: ISO/IEC27001LeadImplementerISO/IEC27001 Internal Auditor CISM / CISSP Salary & Benefits More ❯
information security , Risk Management, or Compliance is a plus. Certifications (Highly Valued) CISSP (Certified Information Systems Security Professional) CISM (Certified Information Security Manager) CISA (Certified Information Systems Auditor) ISO27001Lead Auditor /Implementer CRISC (Certified in Risk and Information Systems Control) GDPR Certification (e.g., IAPP CIPP / … Experience Requirements: 3-5+ years of experience in Information Security, Compliance, or IT Risk Management. Experience with regulatory frameworks in UK & EU : GDPR (General Data Protection Regulation) ISO27001 (Information Security Management Systems) Cyber Essentials Plus (UK government-backed security framework) DORA (Digital Operational Resilience Act) - EU financial sector PCI-DSS (if handling … Key Skills & Technical Knowledge: Deep understanding of data protection laws (UK GDPR, EU GDPR, DPA 2018) . Familiarity with risk management frameworks like NIST CSF, CIS Controls, and ISO 27005 . Experience with cyber security tools (e.g., SIEM, Malware Protection, Firewalls and others) is a plus. Strong reporting and communication skills-ability to brief executives and regulators. More ❯
opportunities for improvement directly to senior management. Responsibilities : Cyber Security Strategy & Governance Implement and refine the organisation’s cyber security strategy, aligned with business objectives and risk appetite. Lead the development and maintenance of a comprehensive Information Security Management System (ISMS). Define and review metrics and KPIs to monitor the effectiveness of security controls. Policy Management … relevant security frameworks, data protection laws (e.g. GDPR), and industry standards. Manage internal and external security audits, penetration tests, and vulnerability assessments. Maintain records of security incidents and lead post-incident reviews and continuous improvements. Training & Awareness Drive an organisation-wide security awareness program to foster a proactive security culture. Deliver targeted training for teams and departments … budgeting. Qualifications : Proven experience in a similar Information Security Management or Cyber Risk role. Strong understanding of information security principles, risk management frameworks, and industry best practices (e.g. ISO27001, NIST, CIS). Demonstrated experience in drafting and implementing security policies and procedures. Strong communication skills with the ability to engage both technical and More ❯
opportunities for improvement directly to senior management. Responsibilities : Cyber Security Strategy & Governance Implement and refine the organisation’s cyber security strategy, aligned with business objectives and risk appetite. Lead the development and maintenance of a comprehensive Information Security Management System (ISMS). Define and review metrics and KPIs to monitor the effectiveness of security controls. Policy Management … relevant security frameworks, data protection laws (e.g. GDPR), and industry standards. Manage internal and external security audits, penetration tests, and vulnerability assessments. Maintain records of security incidents and lead post-incident reviews and continuous improvements. Training & Awareness Drive an organisation-wide security awareness program to foster a proactive security culture. Deliver targeted training for teams and departments … budgeting. Qualifications : Proven experience in a similar Information Security Management or Cyber Risk role. Strong understanding of information security principles, risk management frameworks, and industry best practices (e.g. ISO27001, NIST, CIS). Demonstrated experience in drafting and implementing security policies and procedures. Strong communication skills with the ability to engage both technical and More ❯
approval, candidates may be permitted to start the role prior to clearance being fully completed. Role Overview: We are seeking a highly experienced Senior Information Assurance Consultant to lead the development and implementation of security management processes for a new, high-profile service. This role will be instrumental in establishing and integrating a comprehensive Information Security Management … working on a critical and impactful programme. As the role involves working with sensitive information, eligibility for SC clearance or holding active SC clearance is essential. Key Responsibilities: Lead the design and implementation of security management processes for a new service offering. Develop and maintain a unified ISMS aligned with ISO/IEC27001, NIST, PRISMA, and CoBIT frameworks. Conduct gap analyses and risk assessments to ensure compliance with relevant security standards and regulatory requirements. Collaborate with stakeholders across technical and business teams to embed security best practices throughout the service lifecycle. Provide expert guidance on information assurance, governance, and risk management strategies. Support audit and certification activities, ensuring More ❯
Job Title: Cyber Security Lead Location: West Midlands, United Kingdom Salary: £62,000 - £73,000 (depending on experience) + Bonus + Excellent Benefits Clearance: Must be a British National and SC Cleared or Eligible About the Role: We are seeking a proactive and experienced Cyber Security Lead to drive and enhance our organisation's … across the business. You will work closely with the Security Operations Centre (SOC), senior stakeholders, and cross-functional teams to maintain a secure and resilient environment. Key Responsibilities: * Lead the response to cyber security incidents, ensuring timely resolution and root cause analysis. * Oversee the development and implementation of information security compliance and assurance programmes. * Ensure alignment with … ISO27001, NIST, and other relevant security frameworks. * Collaborate with the SOC to monitor, detect, and respond to cyber threats. * Manage governance, risk, and compliance (GRC) activities, including risk assessments and mitigation strategies. * Promote a security-first culture through internal training and mentoring. * Communicate cyber risks, strategies, and progress effectively to stakeholders. * Stay informed More ❯
Job Title: Cyber Security Lead Location: West Midlands, United Kingdom Salary: 62,000 - 73,000 (depending on experience) + Bonus + Excellent Benefits Clearance: Must be a British National and SC Cleared or Eligible About the Role: We are seeking a proactive and experienced Cyber Security Lead to drive and enhance our organisation's … across the business. You will work closely with the Security Operations Centre (SOC), senior stakeholders, and cross-functional teams to maintain a secure and resilient environment. Key Responsibilities: Lead the response to cyber security incidents, ensuring timely resolution and root cause analysis. Oversee the development and implementation of information security compliance and assurance programmes. Ensure alignment with … ISO27001, NIST, and other relevant security frameworks. Collaborate with the SOC to monitor, detect, and respond to cyber threats. Manage governance, risk, and compliance (GRC) activities, including risk assessments and mitigation strategies. Promote a security-first culture through internal training and mentoring. Communicate cyber risks, strategies, and progress effectively to stakeholders. Stay informed More ❯
to entities of the Proximus Group to assist with the overall reinforcement of their security posture. Help them in maintaining their ISO27001 certification or in preparing for an ISO27001 certification and achieving NIS2 compliance. Perform cybersecurity assessments (NIS2, ISO27001, security maturity, risk) to identify gaps in the security program, define a baseline, As … security or computer science. 5+ years of experience in a combination of audit, risk management, information security and IT jobs. Knowledge of information security management frameworks, such as ISO 27000 series, NIST, ISF, CIS and NIS2 Directive. Experience in multiple security domains (Risk Management, Governance, Network and Application security, Vulnerability Management, IAM ) and experience with various security … technologies and tools. Experience with ISMS ISO27001 implementations, conducting or supporting audits, risk assessments. Certified ISO27001Lead Auditor /Implementer and other certifications, such as ISO 9001 LA / LI, CISSP, CISM or willingness to get certified. More ❯
City Of London, England, United Kingdom Hybrid / WFH Options
Sanderson
and operational guidance on cybersecurity, data protection, and regulatory compliance to ensure the bank’s information assets and customer data remain secure and compliant with applicable standards (e.g., ISO27001, GDPR, FCA requirements). Key Responsibilities: Serve as the SME for all matters related to information security and privacy. Advise on the development and … security posture. Assist with incident response planning and investigations as needed. Provide training and awareness support to staff and leadership. Support internal and external audits, including FCA and ISO27001 audits. Stay current on emerging threats, regulatory changes, and industry best practices. Required Skills & Experience: Proven experience in Information Security, Cybersecurity, and / or … Information Privacy. Deep understanding of regulatory frameworks: GDPR, DPA 2018, ISO27001, NIST , and FCA guidelines. Strong knowledge of security controls, data lifecycle management, and access control models. Experience within the banking or financial services sector is essential. Demonstrated ability to engage with C-level stakeholders and influence decision-making. Relevant certifications preferred: CISSP More ❯
Security Manager - ABDO 2019 & ISO/IEC27001 Expertise Location: Netherlands Full-time Permanent Are you a skilled Security Manager with a deep understanding of ABDO 2019 regulations and ISO/IEC27001 standards ? We are looking for a proactive and detail-oriented individual to lead … for developing, implementing, and maintaining a robust security management framework that aligns with the Assets Baseline Data Objective (ABDO) 2019 regulation and ISO/IEC27001 information security standards. You will play a pivotal role in safeguarding our infrastructure, data, and operational integrity across the organization. Key Responsibilities Lead the … implementation and management of ISO/IEC27001-aligned Information Security Management Systems (ISMS). Ensure compliance with ABDO 2019 regulatory requirements. Conduct security risk assessments and audits across physical, digital, and procedural domains. Develop, maintain, and test security policies, procedures, and incident response plans. Liaise with internal stakeholders, government bodies, and external More ❯
Guildford, Surrey, United Kingdom Hybrid / WFH Options
Allianz Popular SL
highly desirable. Experience of security transformation and delivery of security projects, particularly within a federated organisation. Desirable Skills Knowledge of Information Security and compliance frameworks, including NIST CSF, ISO27001, Cyber Essentials, PCI DSS, and DORA, and the ability to design controls that align with these standards. Good awareness of risk methodologies and ability … operating procedures. Strong communication and interpersonal skills, with the ability to convey complex security concepts to non-technical stakeholders. Relevant certifications such as CISSP, CCSP, CRISC, CISM, or ISO27001LeadImplementer are highly desirable What We Will Offer You Recognised and rewarded for a job well done More ❯
a team of passionate problem-solvers who are hungry to learn, grow, and make a difference. Position Summary This is a great opportunity to grow your career and lead enterprise engagements as a Senior Consultant! In this position you will assess the security and compliance of client firms against regulatory and industry requirements and standards, and against … accuracy to ensure the integrity and effectiveness of security measures. You will test technical controls, policies and procedures, laws, regulations, and industry best practices. What You'll Do Lead audits / assessments including audit plan preparation, review of documentation and evidence, evaluation of procedures, and client interviews. Prepare, review and approve assessment reports. Manage priorities, tasks and … successful when working remotely. What You'll Bring Current PCI-QSA certification preferred (will consider former QSA) One of the following Information Security certifications required: CISSP, CISM or ISO27001Lead Implementer. One of the following Audit certifications required: CISA, GSNA, CIA, IRCA ISMS Auditor or higher, or ISOMore ❯
ll Be Working On: ️ Managing and enforcing information security policies, procedures, and standards to safeguard organizational data ️ Conducting risk assessments and ensuring compliance with relevant security frameworks (e.g., ISO27001, NIST, GDPR) ️ Performing audits and security assessments to identify vulnerabilities and recommending appropriate mitigations ️ Collaborating with other teams to implement and maintain secure information … re Looking For: ️ Proven experience as an Information Assurance Specialist or in a similar role focused on data protection and compliance ️ Strong understanding of information assurance frameworks (e.g., ISO27001, NIST SP 800-53, COBIT) ️ Experience with security assessments, audits, and vulnerability management ️ Knowledge of regulatory standards such as GDPR, HIPAA, and PCI-DSS … Certifications such as CISSP, CISM, or ISO27001LeadImplementer are highly desirable More ❯
manage responses to customer security audits and assurance inquiries. Monitor regulatory changes and contribute to compliance initiatives such as DORA , NIS2 , and other applicable standards and frameworks (e.g., ISO27001, SOC 2, GDPR). Assist in the development, maintenance, and improvement of internal GRC processes, policies, and documentation. Collaborate with cross-functional teams (Security … a related field. Experience supporting sales processes, including responding to RFx security assessments. Solid understanding of cybersecurity principles, information security best practices, and regulatory requirements (DORA, NIS2, GDPR, ISO27001, SOC 2, etc.). Excellent written and verbal communication skills; able to translate technical concepts for non-technical audiences. Strong organizational skills with the … a proactive approach to problem-solving and attention to detail. Experience working in a SaaS, cloud, or technology-driven company is preferred. Professional certifications (such as CISM, CRISC, ISO27001LeadImplementer/ Auditor, or similar) are a plus Additional Information We are proud to foster a diverse More ❯
My client is hiring an Information Security Lead to help shape and implement its cybersecurity operations, governance, and risk framework. Reporting to the IT Operations & Security Manager, this role is critical in maintaining the organisation's security posture, ensuring compliance, and supporting ongoing IT service resilience. Key Responsibilities Oversee third-party security tools and services (e.g. firewalls … IDS / IPS, endpoint protection) and monitor vendor SLA adherence. Conduct risk assessments, maintain the security risk register, and manage remediation activities. Lead incident response processes including detection, containment, investigation, and resolution. Develop, implement, and maintain information security policies, procedures, and standards. Ensure compliance with ISO27001, NIS2, and other regulatory … Degree in Computer Science, Information Security, or a related field. Minimum 5 years' experience in IT security roles, ideally within regulated or public sector environments. Solid knowledge of ISO27001 and related frameworks; experience with certified environments. Strong understanding of risk, incident, and change management. Familiarity with security technologies such as SIEM, MFA, encryption More ❯
to test our customer's incident response capabilities. Security Operations Oversee the continuous monitoring and detection of security threats and vulnerabilities to ensure a proactive stance to security. Lead the investigation and resolution of security incidents, promptly and effectively. Evaluate, select, and deploy security tools to enhance our customer's security infrastructure. Compliance Management Ensure compliance with … / IPS, DLP). Knowledge of regulatory requirements and, governance and compliance frameworks. Project management skills to oversee and manage security initiatives effectively. Preferably certified as NIS 2 LeadImplementer, DORA Lead Manager, ISO27001LeadImplementer or LeadMore ❯
s comprehensive cybersecurity strategy and roadmap Establish, implement, and maintain security policies, risk management frameworks, and incident response procedures Continuously monitor for security threats, vulnerabilities, and incidents, and lead timely response efforts Perform regular security risk assessments and internal audits to identify and mitigate risks Ensure ongoing compliance with relevant regulations (e.g., GDPR, NIS2, ISO27001, where applicable … ISO27001, NIST, CIS Controls) and regulatory standards (e.g., GDPR, NIS2) Strong analytical skills, with excellent communication and stakeholder engagement capabilities Professional certifications such as CISSP, CISM, or ISO27001 LeadImplementer are highly desirable Proficiency in both Dutch and English is required Interested in this opportunity? Feel free to apply or send us your updated More ❯
to work on own initiative. Applicants must have the Right to Work in the UK. Desirable knowledge, skills and experience Qualifications such as CompTIA Security+, CEH or ISO27001 Lead Implementer. Experience of senior management engagement and relationship management. Experience in dealing with Information Security incidents. Experience conducting penetration tests and working with vulnerability management tools. Benefits This More ❯
hunting. Conduct in-depth vulnerability assessments, manage remediation efforts, and contribute to the development of strategies to address security weaknesses. Ensure ongoing adherence to information security standards, particularly ISO27001 and NIS2 directives, and support audit processes. Participate in the full lifecycle of security incident response, from detection and analysis to containment, eradication, recovery … Strong understanding of cybersecurity concepts, network security protocols, cloud security principles, and common attack vectors. Certifications (Strongly Preferred): Relevant certifications such as CompTIA Security+, CySA+, CEH, or equivalent. ISO27001LeadImplementer/ Auditor certification is a significant advantage. Language Proficiency: Fluent in Dutch, English, and French (written More ❯
system architecture interdependencies, enabling effective communication with IT personnel. Strong documentation, analytical, and presentation skills. Desirable Knowledge, Skills, and Experience Qualifications such as CISA, CISM, CEH, or ISO27001 LeadImplementer/ Auditor. Experience engaging with senior management and managing relationships. Previous experience handling Information Security incidents. Benefits This role offers a competitive salary based More ❯
system architecture interdependencies, enabling effective communication with IT personnel. Strong documentation, analytical, and presentation skills. Desirable Knowledge, Skills, and Experience Qualifications such as CISA, CISM, CEH, or ISO27001 LeadImplementer/ Auditor. Experience engaging with senior management and managing relationships. Previous experience handling Information Security incidents. Benefits This role offers a competitive salary based More ❯
Employment Type: Permanent
Salary: £40000 - £45000/annum Plus 11% non contribution pension
Hertfordshire, England, United Kingdom Hybrid / WFH Options
ALTERED RESOURCING LTD
with a great benefit package also. This Information Security Analyst (GRC) role would suit someone with experience with information security risk assessments, reporting risks and who holds the ISO27001leadimplementer/ auditor certification. Any other certifications that you hold will be beneficial. Experience dealing with non More ❯
Edinburgh, Midlothian, Scotland, United Kingdom Hybrid / WFH Options
Reed
liaise effectively with technical teams. Excellent documentation, analytical, and presentation abilities. Self-motivated and able to work independently. Ideally holding certifications such as CompTIA Security+, CEH, or ISO27001 Lead Implementer. Experience engaging with senior management and building strong relationships. Hands-on experience managing security incidents. Familiarity with penetration testing and vulnerability management tools. Benefits: Salary up to More ❯
the past 18 months. All four individuals are still with the company and really enjoying their roles! As an IT Systems Specialist, the role will ensure seamless onboarding, lead IT infrastructure projects, and support compliance initiatives (SOC2 Type II and ISO27001 audits). You will manage our core tools (Google … access policies. Project Leadership: Migrate systems (e.g., email groups, Jira → HubSpot), implement SSO via JumpCloud, and manage tool integrations. Compliance Support: Partner with Vanta to maintain SOC2 /ISO27001 readiness; document controls, remediate findings, and prepare audit materials. IT Operations: Troubleshoot issues, manage device inventory, and enforce security policies (MFA, endpoint protection). … IT support, systems administration, or compliance-focused roles. Hands-on experience with Google Workspace, Jira, SSO tools (e.g., JumpCloud), and MDM solutions. Familiarity with SOC2 Type II and ISO27001 frameworks (audit processes, control implementation). Strong project management skills; ability to prioritize tasks across multiple stakeholders. Excellent communication skills for translating technical concepts More ❯