Loughborough, Leicestershire, United Kingdom Hybrid / WFH Options
Falcon Support Services
sector environment IT and Digital Skills o Strong proficiency in Microsoft 365 (Word, Excel, Outlook, Teams, SharePoint, etc.) o Experience supporting or training staff in digital tools Knowledge of GDPR, dataprotection legislation, and cyber security protocols Mandatory Requirements Must be over the age of 18. Willingness to undergo a satisfactory enhanced DBS check. Desired Requirements Have access … to-medium-sized organisation. Experience of working collaboratively across multi-disciplinary teams. Knowledge of public sector procurement processes and frameworks. Understanding of quality assurance principles and methodologies. Understanding of GDPR, dataprotection legislation, and cyber security standards. Awareness of social value and its application in public / voluntary sector contracts. Understanding of Microsoft 365, Windows environments, and CRM More ❯
Birmingham, West Midlands, England, United Kingdom Hybrid / WFH Options
Hays Specialist Recruitment Limited
compliance program.You will be responsible for ensuring that all corporate and subsidiary operations comply with internal security policies, regulatory requirements, and internationally recognised frameworks such as ISO27001, NIST, SOX, GDPR, CMMC, amongst others.Key Responsibilities: Support the execution and enhancement of the global information security compliance program. Conduct internal audits, third-party risk assessments, and due diligence reviews. Ensure alignment with … regulatory and industry standards including ISO27001, NIST, SOX, GDPR, SOC 2, HIPAA, CCPA, LGPD. Collaborate with cross-functional teams across multiple jurisdictions to drive compliance initiatives. Identify gaps in security controls and recommend corrective actions. Maintain and update security policies, procedures, and documentation. Monitor changes in global regulations and assess their impact on business operations. Minimum of 3 years experience.Skills … Required: Proven experience in information security compliance, risk management, and audit. Strong understanding of international regulatory frameworks and standards. Hands-on experience with: ISO27001 audits and implementation GDPR compliance NIST cybersecurity framework SOX, SOC 2, HIPAA, CCPA, LGPD Ability to interpret complex regulatory requirements and translate them into actionable controls. Excellent communication and stakeholder engagement skills. Strong analytical and problem More ❯
implement secure architectures, incorporating identity, access management, encryption, and network security. Conduct cloud security assessments and gap analyses for UK-based organisations. Advise on compliance with UK regulations (e.g. GDPR, NCSC Cloud Security Principles, ISO 27001). Develop and enforce cloud security policies, procedures, and governance models. Lead threat modelling, risk assessments, and vulnerability management initiatives. Configure and manage security … ll Bring Essential Skills & Experience: Experience in cloud security. Strong knowledge of: Security services (IAM, Cloud KMS, VPC Service Controls, etc.) UK dataprotection and compliance frameworks (GDPR, ICO guidance) Identity federation, SSO, and role-based access control Network segmentation and firewall configuration in cloud environments. Logging, monitoring, and SIEM integration (e.g. Splunk, Chronicle) Experience with Infrastructure as More ❯
swindon, wiltshire, south west england, united kingdom
Sanderson Government and Defence
implement secure architectures, incorporating identity, access management, encryption, and network security. Conduct cloud security assessments and gap analyses for UK-based organisations. Advise on compliance with UK regulations (e.g. GDPR, NCSC Cloud Security Principles, ISO 27001). Develop and enforce cloud security policies, procedures, and governance models. Lead threat modelling, risk assessments, and vulnerability management initiatives. Configure and manage security … ll Bring Essential Skills & Experience: Experience in cloud security. Strong knowledge of: Security services (IAM, Cloud KMS, VPC Service Controls, etc.) UK dataprotection and compliance frameworks (GDPR, ICO guidance) Identity federation, SSO, and role-based access control Network segmentation and firewall configuration in cloud environments. Logging, monitoring, and SIEM integration (e.g. Splunk, Chronicle) Experience with Infrastructure as More ❯
also the distribution of phishing tests, ensuring that security training sessions are delivered to staff Keeping knowledge of the latest trends, technologies and threats relating to cyber security Ensuring GDPR and DataProtection compliance across the business, supporting with Data Subject Access Requests and managing data breaches You MUST Have: Please apply ONLY if you meet … as CISM, CASP or CISSP Strong technical knowledge of Information Security standards and frameworks, security controls, attacker techniques and remediation processes It would be beneficial to have knowledge of GDPR and other dataprotection legislation Proven expertise in security software and prevention systems Experience in managing incident response plans and using analysis tools to investigate threats Excellent communication More ❯
and threat modelling. Security Operations (SOC) : Overseeing monitoring, incident response, vulnerability management, and operational resilience. Governance, Risk & Compliance (GRC) : Leading our efforts to achieve and maintain compliance with PCI, GDPR, SOC2, and ISO27001. Vendor Security : Spearheading due diligence and monitoring of third parties, integrated with our Vendor Governance Forum. Policies & Assurance : Defining and enforcing security standards, collaborating with IT Ops … You have deep experience overseeing a Security Operations function, managing monitoring, incident response, and vulnerability management. Driving GRC : You're an expert in managing compliance frameworks such as PCI, GDPR, SOC2, and ISO 27001, and you're skilled at preparing for audits. Vendor Security : You have led vendor security analysis, including due diligence and ongoing monitoring. Collaboration & Execution : You can More ❯
the Azure cloud strategy and roadmap. Identify opportunities for innovation and improvement using Azure-native services. Security & Compliance Ensure solutions meet internal security policies and external regulatory standards (e.g., GDPR, FCA). Implement controls using Azure Policy, Defender for Cloud, and RBAC. Provide architectural input into audit and risk management processes. Operational Excellence Monitor and optimise Azure environments for performance … and solution delivery. Experience with hybrid cloud environments and legacy integration. Proficiency in Infrastructure-as-Code (ARM, Bicep, Terraform) and Azure DevOps. Desirable Familiarity with regulatory frameworks (e.g., FCA, GDPR). Experience working in a multi-region enterprise environment. Strong stakeholder management and communication skills. Location and Hours of Work Location: London, UK (Hybrid working available) Contract Type: Day-rate More ❯
the programme lifecycle, ensuring privacy risks are proactively identified and mitigated. Additionally, the role involves reviewing and harmonising IG policies across all participating Trusts to ensure compliance with UK GDPR, the DataProtection Act 2018, and NHS national guidance. Main duties of the job The Information Governance (IG) Lead will be responsible for leading the preparatory IG activities … Master's Degree in a relevant field such as Information Management, or Health Informatics (or equivalent level of experience). Certification in Information Governance, DataProtection, or GDPR (e.g., CIPP / E, GDPR Practitioner). Formal training in DataProtection Impact Assessments (DPIA) or Privacy Risk Management. Certification in Records Management or knowledge of NHS Records … e.g., ISO 27001, Cyber Essentials). Experience and Knowledge Essential Extensive experience in managing Information Governance activities within a healthcare or similar regulated environment. In-depth knowledge of UK GDPR, the DataProtection Act 2018, and NHS national guidance on dataprotection and privacy Proven experience leading the development of Joint Controller Agreements (JCAs) and conducting More ❯
Directory, Azure AD, Okta, ServiceNow, and other key platforms. Build and customize access certifications , policy enforcement , and risk-based access controls . Develop and maintain audit-ready compliance reports (GDPR, HIPAA, PCI, CCPA, FISMA, etc.). Work with DevSecOps and Security Engineering to detect and respond to access-related threats. ?? What You Bring: Proven experience as a SailPoint Engineer (IdentityNow … Strong understanding of access governance , entitlement management , and role-based access control (RBAC) . Experience with identity lifecycle automation , including recruitment and non-employee provisioning. Familiarity with compliance frameworks : GDPR, HIPAA, PCI DSS, CCPA, FISMA, PCPD, PDPA, etc. Knowledge of scripting (e.g., BeanShell, PowerShell, or Java) and REST / SOAP APIs for integration tasks. Excellent communication and documentation skills. ?? Bonus More ❯
Cyber Security Architect When registering to this job board you will be redirected to the online application form. Please ensure that this is completed in full in order that your application can be reviewed. Cyber Security Architect Work location:Remote More ❯
Governance Ensure company-wide compliance with applicable laws, regulations, and contractual obligations across operational jurisdictions. Own and oversee dataprotection and privacy compliance , ensuring alignment with GDPR, UK DataProtection Act, and other relevant frameworks. Partner with internal legal resources and external counsel to interpret new legislation, manage regulatory risks, and maintain strong governance practices. … record of shaping regulatory and compliance strategy ensuring this is seamlessly embedded as part of the overall company strategy. Deep expertise in SaMD, AI governance, and global compliance regimes (GDPR and equivalent). Deep knowledge of key standards and regulations: EU MDR, UK MDR, MHRA guidance . Personal Skills Visionary leader with a strategic mindset and the ability to More ❯
Cloud teams to maintain company systems and their security. Liaise with global Security Operations Centre colleagues to resolve any issues. Ensure compliance with relevant regulations, standards, and frameworks (e.g., GDPR, ISO 27001, NIST) Review and update security program documentation. Support customer relations and requirements per commercial agreements. Develop, implement, and maintain security policies, processes, procedures and guidelines. Assist with internal … and external audits, and provide advice to colleagues and technical teams. Ensure compliance with data privacy regulations (e.g., GDPR, CCPA). Produce security reports for internal and external stakeholders. Recommend and implement new security tools and technologies. Stay current with infosec trends and tailor recommendations for business needs. What You'll Bring To The Role: Essential: 3-5 years More ❯
IAM, VPC, CloudFormation) AWS Professional level certifications (e.g., Solutions Architect Professional) preferred Experience with automation and scripting (e.g., Terraform, Python) and knowledge of security and compliance standards (e.g., HIPAA, GDPR) Strong communication skills with the ability to explain technical concepts to both technical and non-technical audiences Hands-on technical expertise in building and deploying security solutions, capabilities and infrastructure. … experience with enterprise security solutions such as SSO, Federation, WAF, IPS, Anti-DDOS, and SIEM and understanding architectural implications of meeting industry standards such as PCI DSS, ISO 27001, GDPR, and NIST frameworks and relevant regulatory frameworks such as Thailand's Personal DataProtection Act B.E. 2562 (2019), BOT Notifications SorNorSor 21 / 2562, 6 /More ❯
Experience: At least 2 years of hands-on experience in information security or IT infrastructure within an enterprise environment. Familiarity with security standards such as ISO 27001, Cyber Essentials, GDPR, and DataProtection Act. Experience with Microsoft O365 Security solutions and network security operations. Understanding of security testing principles, including vulnerability scanning, risk identification, and mitigation. Knowledge of … now. Keywords: Information Security Consultant, IT Security Consultant, Cybersecurity Specialist, Microsoft O365 Security, Enterprise Security Jobs, Information Security Leeds, IT Risk Management, Security Incident Response, Vulnerability Management, ISO 27001, GDPR Compliance, Security Awareness, Disaster Recovery and Business Continuity. More ❯
Results-driven with a focus on innovation and continuous improvement. Proficiency in business intelligence and analytics tools (e.g., Tableau, Power BI). Knowledge of regulatory frameworks such as GxP, GDPR, SOX, or other compliance standards. Expertise in enterprise architecture, system integration, and process optimization. Deep understanding of financial management, supply chain, and other core ERP-supported business processes. Proficiency in … a commercial role. Bachelor's degree in Computer Science, Information Systems, Business Administration, or a related field; MBA or equivalent advanced degree preferred. Knowledge of regulatory frameworks such as GDPR, SOX, or other compliance standards. Familiarity with cloud-based ERP platforms and digital transformation strategies. Professional certifications in ERP systems (e.g., SAP Certified Application Associate, Oracle Cloud Certification). Professional More ❯
London, South East, England, United Kingdom Hybrid / WFH Options
Tenth Revolution Group
Cyber & Information Security Programme Manager - Contract Location: Bishopsgate, London (Hybrid - 3 days onsite) Contract Length: 6 months IR35 Status: Outside IR35 Start Date: ASAP Day Rate: Competitive We are recruiting for a Cyber & Information Security Programme Manager to lead the More ❯
for overseeing all aspects of dataprotection compliance. You will work closely with legal teams and business support services, to ensure internal and client-facing operations meet GDPR and other related dataprotection and privacy law regulatory standards. This role requires a strategic thinker with strong acumen and a proactive approach to risk management. Key Responsibilities … clients. Demonstrable experience in developing and implementing dataprotection risk and compliance framework. Professional certification (e.g., CIPP / E, CIPM) is highly desirable. In-depth knowledge of GDPR, Irish DataProtection Acts 1988 to 2018, and international privacy frameworks. Key Competencies: Strategic thinking and commercial awareness. Excellent communication and stakeholder management. Ability to manage complex projects More ❯
to race, colour, religion, age, sex, sexual orientation, gender identity, national origin, disability, or other protected characteristics as required by law and as a matter of our company values. GDPR Notice When you apply to a job on this site, the personal data contained in your application will be collected by Ophelos ("Controller"), which is located at 1 Finsbury … contacting us at . Your personal data will be retained by Controller as long as Controller determines it is necessary to evaluate your application for employment. Under the GDPR, you have the right to request access to your personal data, to request that your personal data be rectified or erased, and to request that processing of your More ❯
Lynch Wood, Peterborough, Cambridgeshire, England, United Kingdom
Sanderson
Data Engineering Manager Who are Diligenta? Diligenta's vision is to be acknowledged as Best-in-class Platform-based Life and Pensions Administration Service provider. Customer service is at the heart of everything we do, and our aim is More ❯
Urmston, Manchester, Lancashire, England, United Kingdom Hybrid / WFH Options
Travel Counsellors
About the Role Reporting to the Head of Data, Insights & Analytics you will lead a team of Data Engineers in the design, development and maintenance of Travel Counsellors’ data infrastructure. This role will be a high impact More ❯
Leominster, Herefordshire, West Midlands, United Kingdom Hybrid / WFH Options
Kingspan
and integrations (Logik, PIM, DAM, CRM, analytics). Monitor Core Web Vitals, SEO performance, and accessibility compliance, and drive technical optimization initiatives. Manage platform security, data privacy compliance (GDPR, CCPA), and uptime. Governance & Workflows Develop and enforce governance policies for content publishing, quality standards, and approval workflows. Provide CMS training and support for global and regional content teams. Data privacy (GDPR/ CCPA) and cookie & consent management. Domain & DNS Management (e.g SSL certification) Cyber security operations including vulnerability management and penetration testing. Regulatory compliance in local markets. Code quality & security including release management and change controls. Data & Optimization Business intelligence. Manage analytics and reporting for site performance, engagement, and conversions. CDN Management & optimisation including cache strategy. Content More ❯
looking for a Senior DevOps Engineer who pairs operational excellence with a passion for security and data compliance. You'll harden our infrastructure, steer us through ISO27001 and GDPR audits, and make it effortless for product squads to ship secure code at speed. You'll be our internal security minded DevOps authority-sharing ownership of the CI / CD … Helmfile deployments, Terraform modules and GitHub Actions workflows with security best practices baked in. Compliance liaison - Partner with our DataProtection Officer to interpret regulatory requirements (ISO27001, GDPR, DPAs) and translate them into technical controls, policies and run books. Audit & pen test lead - Coordinate external auditors, manage evidence collection, track remediation tickets and present technical posture to stakeholders. More ❯
looking for a Senior DevOps Engineer who pairs operational excellence with a passion for security and data compliance. You'll harden our infrastructure, steer us through ISO27001 and GDPR audits, and make it effortless for product squads to ship secure code at speed. You'll be our internal security minded DevOps authority-sharing ownership of the CI / CD … Helmfile deployments, Terraform modules and GitHub Actions workflows with security best practices baked in. Compliance liaison - Partner with our DataProtection Officer to interpret regulatory requirements (ISO27001, GDPR, DPAs) and translate them into technical controls, policies and run books. Audit & pen test lead - Coordinate external auditors, manage evidence collection, track remediation tickets and present technical posture to stakeholders. More ❯
ensure secure access and device deployment Ensuring systems security and compliance with company policies, contracts, and renewals, while maintaining documentation of systems access, architecture, policies, and procedures, and overseeing GDPR and policy compliance across all platforms Acting as a second-line responder for internal IT queries, troubleshooting escalated issues effectively Supporting IT budgeting, forecasting, and cost tracking to maintain financial … by a strong technical aptitude for IT systems, cybersecurity (including key principles), cloud technologies, AI and IT systems , as well as CRM and ERP systems and ideally compliance knowledge ( GDPR/ ISO ) Good analytical abilities, as well as an organised and detail-oriented approach Strong communication skills Your Opportunity: This is a business that has operated within the consumer goods More ❯
Cambridge, Cambridgeshire, England, United Kingdom Hybrid / WFH Options
Fauna and Flora
innovation, enhance organisational systems, and lead the integration of technology across global operations. To play a key role in ensuring compliance with regulatory frameworks, including UK charity regulations and GDPR, while embedding digital transformation in support of Fauna & Flora’s vital work protecting nature around the world. Responsibilities: Strategic Leadership & IT Governance Develop and deliver a forward-looking IT strategy … assets, business continuity planning and disaster recovery, ensuring organisational resilience in the event of disruption. Ensure compliance with the UK GeneralDataProtectionRegulation (UK GDPR), charity- specific data requirements, and other relevant information governance standards. Maintain effective systems for data access control, management of cyber risks, and regular data security training across More ❯