and performance reporting. Strong analytical and critical thinking skills. Qualifications Bachelor's degree in a relevant discipline. Project management certification (PMP, PRINCE2) is highly desirable. Professional certifications like CISSP, CISM, CISA are highly desirable. Work Experience At least 6 years in IT within the financial/banking industry preferred. Minimum of 2 years managing staff or teams in a cross More ❯
and security architecture concepts Experience with incident investigation and remediation Proficiency in cloud security (Azure, AWS, or Google Cloud) Excellent stakeholder management and communication skills Relevant cybersecurity certifications (CISSP, CISM, CEH, etc.) Requirements Bachelor's degree in a related field (e.g., Computer Science, InformationSecurity) 10+ years of proven experience in cybersecurity, with at least 5 years focused on cloud More ❯
including conducting audits and risk assessments. Leading process optimization investigations. Essential: Analytical, problem-solving, and collaborative skills. Experience as a DevOps professional. Working towards or obtaining certifications like CISSP, CISM, or CRISC within a year. Eligibility for SC Security Clearance. Current knowledge of ISO 27001, Risk Management, GDPR, and security issues related to AI/Gen AI. More ❯
City of London, London, England, United Kingdom Hybrid / WFH Options
WTW
present data and information in the appropriate format for different audiences. Qualifications: Educated to degree level or equivalent. Hold professional qualifications in a related subject for example, CRISC, CISSP, CISM, CISA Strong proven working experience in technology or cyber risk management role with a focus on analytics and controls Experience of working within a global financial organization. Behaviors: Resourcefulness and More ❯
present data and information in the appropriate format for different audiences. Qualifications: Educated to degree level or equivalent. Hold professional qualifications in a related subject for example, CRISC, CISSP, CISM, CISA Strong proven working experience in technology or cyber risk management role with a focus on analytics and controls Experience of working within a global financial organization. Behaviors: Resourcefulness and More ❯
cross-functional teams in a fast-paced, regulatory-driven environment. Proficiency in risk management tools , business continuity software, and regulatory reporting systems. Preferred Skills & Competencies: Certifications such as CISSP, CISM, CRISC, or CBCP are highly desirable. Experience in Agile environments and managing multiple priorities efficiently. Strong analytical, problem-solving, and organizational skills. Excellent communication and presentation skills , with the ability More ❯
improve security posture, and influence business-wide awareness and accountability. What you’ll bring: 5+ years in InfoSec, IT Security or Ops within a regulated environment Certification required: CISSP, CISM, CRISC, or equivalent Strong knowledge of ISO27001:2022, SOC2 Type II, NIST CSF, PCI DSS, GDPR, DORA Confident with security risk assessments, audit responses, and policy governance Hands-on cloud More ❯
improve security posture, and influence business-wide awareness and accountability. What you’ll bring: 5+ years in InfoSec, IT Security or Ops within a regulated environment Certification required: CISSP, CISM, CRISC, or equivalent Strong knowledge of ISO27001:2022, SOC2 Type II, NIST CSF, PCI DSS, GDPR, DORA Confident with security risk assessments, audit responses, and policy governance Hands-on cloud More ❯
governance. Excellent analytical and problem-solving skills, with the ability to think strategically. Strong communication and interpersonal skills, with a focus on collaboration and teamwork. Relevant certifications (e.g., CISSP, CISM, ISO 27001 Lead Implementer) are highly desirable. Other information Your package and perks At M247, we go beyond the pay check to bring you a package of perks that truly More ❯
Essentials, with working knowledge of ISO 27001 beneficial but not essential. Understanding of UK data protection law and its practical application within a security programme. Security certifications (e.g. CISSP, CISM, CCSP, GIAC/SANS, AWS Security Specialty, or similar) are a plus. Ability to build effective working relationships across technical and non-technical stakeholders. Strong analytical, communication, and problem-solving More ❯
City of London, London, United Kingdom Hybrid / WFH Options
Anson McCade
maturity assessments, and operating models. Knowledge of frameworks such as NIST CSF, ISO27001, NCSC CAF, CRI 2.0. Exposure to regulatory environments including NIS2 and GDPR. Relevant certifications (e.g., CISSP, CISM, CISA, MSc in Cyber Security). Consulting Skills: Strong client-facing communication and stakeholder management skills. Experience leading or contributing to the delivery of large transformation programmes. Project and team More ❯
maturity assessments, and operating models. Knowledge of frameworks such as NIST CSF, ISO27001, NCSC CAF, CRI 2.0. Exposure to regulatory environments including NIS2 and GDPR. Relevant certifications (e.g., CISSP, CISM, CISA, MSc in Cyber Security). Consulting Skills: Strong client-facing communication and stakeholder management skills. Experience leading or contributing to the delivery of large transformation programmes. Project and team More ❯
Reading, Berkshire, United Kingdom Hybrid / WFH Options
Thames Water Utilities Limited
delivering and maintaining critical and information asset registers. Risk Management: Exposure to or experience in information risk management practices. Desirable Technical Skills & Qualifications: Industry Certifications: Certifications such as CISSP, CISM, or CISA. Key Relationships & Interactions: CISO direct reports: Security Operations Manager, Security Architecture Manager, Security Governance Manager, Cyber Security Programme Manager, Cyber Resilience Manager CIO and CIO Direct Reports: Operational More ❯
NIST SP800, and MOD standards. Ability to interpret and apply security controls in complex, multi-vendor environments. Excellent analytical, communication, and stakeholder engagement skills. Desirable Certifications such as CISSP, CISM, CEH, or Security+. Experience with secure cloud environments (Azure, AWS). Knowledge of secure software development practices and DevSecOps. Exposure to cross-domain solutions and secure communications systems. More ❯
frameworks and standards including NIST CSF, ISO27001, NCSC CAF, GDPR, NIS2, and CRI2.0. Hands-on experience delivering security solutions and assessments in varied environments. Relevant certifications such as CISSP, CISM, CISA, M.Inst.ISP, or a postgraduate qualification (e.g. MSc in Cyber Security). Practical knowledge in domains like threat management, vulnerability management, cyber GRC, cyber architecture, and cyber assurance. Detail-oriented More ❯
and vulnerability management best practices. Hands-on experience with SIEM tools (e.g., Splunk, QRadar, Sentinel), vulnerability scanners (e.g., Nessus, Qualys), and other security platforms. Relevant certifications such as CISSP, CISM, CEH, GIAC, or GCIA are highly desirable. Excellent problem-solving, communication, and team leadership skills. Ability to work under pressure and manage multiple priorities effectively. Preferred Skills: Experience in regulated More ❯
Guildford, Surrey, England, United Kingdom Hybrid / WFH Options
Sanderson
data analysis for reporting Strong documentation skills (control matrices, process flows, SOPs) Excellent communication skills for both technical and non-technical stakeholders Relevant certifications such as CISSP, CCSP, CRISC, CISM, or ISO 27001 Lead Implementer If this role sounds of interest and you would like to learn more do not hesitate to contact me on Reasonable Adjustments: Respect and equality More ❯
impact on security. Additionally, the following are desirable but not essential: Degree in a relevant Information Technology or InformationSecurity area Informationsecurity specific qualifications are desirable (such as CISM, CISSP) Leadership specific training or qualifications (such as Strategic Leadership and Management) Expert understanding of technical information security. Non-technical skills: Exceptional skills in managing and engaging stakeholders at both More ❯
Azure, and cloud security. Familiarity with frameworks like ISO 27001, NIST, and CIS. Excellent communication skills and a pragmatic, risk-based mindset. Relevant certifications (e.g. AZ-500, CISSP, CISM, CCSP) are highly desirable. This role offers hyrbid working (1-2 days/week in office) as well as open discussion around different working patterns i.e 9-day fortnight and varied More ❯
Azure, and cloud security. Familiarity with frameworks like ISO 27001, NIST, and CIS. Excellent communication skills and a pragmatic, risk-based mindset. Relevant certifications (e.g. AZ-500, CISSP, CISM, CCSP) are highly desirable. This role offers hyrbid working (1-2 days/week in office) as well as open discussion around different working patterns i.e 9-day fortnight and varied More ❯
technology role with proven experience of supplier risk management (for example, in projects, technical SME areas etc.). Hold professional qualifications in a related subject for example, CRISC, CISSP, CISM, CISA Experience of working within a global financial organization. Knowledge and experience of governance, risk and controls framework and related processes. Experience of technology, cyber risk and supply chain risk More ❯
technology role with proven experience of supplier risk management (for example, in projects, technical SME areas etc.). Hold professional qualifications in a related subject for example, CRISC, CISSP, CISM, CISA Experience of working within a global financial organization. Knowledge and experience of governance, risk and controls framework and related processes. Experience of technology, cyber risk and supply chain risk More ❯
regulations and business needs. What We're Looking For A Bachelor's or Master's degree (preferably in IT, Security, or Risk). At least one recognised IS qualification (CISM, CISA, CISSM, ISO 27001 Lead Auditor/Implementer, CIPP/E). Proven experience in delivering project and supplier assurance activities in the IS domain. Strong written and verbal communication More ❯
deductive reasoning. Degree in a relevant field (e.g., InformationSecurity, Computer Science, Law, Business) is desirable but not essential; equivalent experience will be considered. Recognised professional certifications such asCISSP,CISM,CIPM,CIPT,CISA, orCRISCare strongly preferred. Additional certifications indata protection(e.g.,IAPP CIPP/E,BSC Practitioner Certificate in Data Protection) are advantageous. What we can offer you: At Amey More ❯
as requested. • Positively partner with colleagues to address information risk in a proportionate, pragmatic manner. • Work towards accreditation in Industry recognised qualifications in data protection and cyber security e.g., CISM, CIPT, CISSP • Maintain a register of third-party informationsecurity risk • Draft internal team guidance as directed. • To triage and process alerts from security scanning and monitoring tools. • Lead assurance More ❯