office I'm looking for an Information Security Manager to work for a Glasgow-based client who are looking to harden their GRC policies and controls focusing heavily on PCI-DSS and ISO27001. This is a GRC-led leadership position and is integral to this organisation's ongoing information security journey. The ideal candidate will have worked autonomously … the Head of IT with developing the scope for ISO27001 certification Achieving ISO27001 certification further down the line Coordinating the client's efforts to achieve/maintain compliance with PCI-DSS and NIS. Leading a small but growing information security function. Liaising with the managed service security provider from a policy improvement perspective. Developing, enhancing and creating security … strategy, making suggestions aligned with industry best-practice drawn from practical experience and security frameworks What I'm Looking For: Experience maintaining and developing security compliance in line with PCI-DSS and ISO27001. Experience working in an Information Security function in a managerial/mentorship capacity. Practical knowledge of PCI-DSS, ISO27001 and NIST. Experience implementing More ❯
team. In this fully remote UK-based role, you will conduct IT security audits and assessments for clients across the United Kingdom and the European region, ensuring compliance with PCIDSS, ISO 27001/2, GDPR, NIS2, DORA, and other relevant frameworks. This position offers the opportunity to become a PCI QSA (training and certification sponsored by … auditing or consulting experience. Bachelors degree in information security or related field. Deep knowledge of IT security controls, access management, logging, vulnerability assessment, and secure system configuration. Experience with PCIDSS, ISO 27001/2, GDPR, NIS2, DORA, or similar compliance frameworks. Strong understanding of cloud environments and network architectures. Excellent English communication skills; fluency in German strongly More ❯
team. In this fully remote UK-based role, you will conduct IT security audits and assessments for clients across the United Kingdom and the European region, ensuring compliance with PCIDSS, ISO 27001/2, GDPR, NIS2, DORA, and other relevant frameworks. This position offers the opportunity to become a PCI QSA (training and certification sponsored by … auditing or consulting experience. Bachelors degree in information security or related field. Deep knowledge of IT security controls, access management, logging, vulnerability assessment, and secure system configuration. Experience with PCIDSS, ISO 27001/2, GDPR, NIS2, DORA, or similar compliance frameworks. Strong understanding of cloud environments and network architectures. Excellent English communication skills; fluency in German strongly More ❯
team. In this fully remote UK-based role, you will conduct IT security audits and assessments for clients across the United Kingdom and the European region, ensuring compliance with PCIDSS, ISO 27001/2, GDPR, NIS2, DORA, and other relevant frameworks. This position offers the opportunity to become a PCI QSA (training and certification sponsored by … auditing or consulting experience. Bachelors degree in information security or related field. Deep knowledge of IT security controls, access management, logging, vulnerability assessment, and secure system configuration. Experience with PCIDSS, ISO 27001/2, GDPR, NIS2, DORA, or similar compliance frameworks. Strong understanding of cloud environments and network architectures. Excellent English communication skills; fluency in German strongly More ❯
AWS environments. Lead incident response, vulnerability assessments and pentest co-ordination. Manage IAM systems and support Engineering teams with threat modelling and secure development practices. Own ISO27001, Cyber Essentials+, PCI-DSS and GDPR compliance. Manage physical security (access control etc) What experience do you need? 2+ years experience within Cyber Security hands on experience with SIEM, Vulnerability scanners More ❯
Lasswade, Midlothian, Scotland, United Kingdom Hybrid / WFH Options
KAT Recruitment
Windows Server administration. Possess a strong understanding of networking fundamentals, including IPaddressing, DNS, DHCP, and basic troubleshooting of network issues. Ensure compliance with security requirements such as GDPR and PCI DSS. Install, configure, and support modern productivity tools such as, but not limitedto Microsoft Office 365, Teams, SharePoint etc. Good understanding and adhere to strict compliance of IT securityMore ❯
Employment Type: Permanent, Part Time, Work From Home
or Adyen/Stripe. Experience building event-driven architectures or integrating with message queues (Kafka, Pub/Sub). Knowledge of compliance frameworks relevant to billing systems (e.g., SOX, PCI-DSS, GDPR). Experience working in high-scale SaaS environments with complex pricing and packaging logic. Background in finance-oriented engineering, such as auditability, reconciliation, and ledger alignment. More ❯
RBAC and policy enforcement within service mesh environments. Define and enforce security standards, controls, and policies for microservices, APIs, and data flows. Ensure architecture and implementations support compliance with PCIDSS, ISO 27001, GDPR and other regulatory requirements. Configure and manage IBM DataPower for encryption, authentication (OAuth2, JWT, WS-Security), and traffic mediation. Collaborate with engineering, platform, and More ❯
to for penetration testing and vulnerability management. What do you need? Hands on vulnerability testing and evaluations, as well as the hands off ability to discuss this with peers. PCIDSS Pen testing specialist skills. Application development/engineering background Working alongside multi disciplined teams to meet security and lifecycle deadlines. What would be nice to have? Experience More ❯
from those teams (compute, networking, search, storage) Experience in a collaborative, agile development environment. Preferred Qualifications Experience and understanding of multi-AD/AZ and regional data centers FedRAMP, PCIDSS, or similar compliance and auditing experience Experience and detailed technical knowledge in PaaS engineering. Expertise in applying threat modeling or other risk identification techniques to develop securityMore ❯