1 to 25 of 491 Remote/Hybrid ISO/IEC 27001 Jobs in England

Information Security Analyst ( ISO 27001 and ISO 27018 )

Location
Greater London, England, United Kingdom
recruit an ISO 27001 and ISO 27018 Information Security Analyst to strengthen our Information Security and Audit / Compliance functions. Alfa Systems sits at the heart of some of the world's largest asset finance companies, across 26 countries which means information security … compliance with ISO 27001 and ISO 27018 on point. You'll get involved in SSAE 18 / ISAE 3402 SOC 1 Type 2 and SSAE 18 SOC 2 Type 2 assurance audits, spot opportunities to improve our security controls and processes, and contribute ...

Information Security Analyst ( ISO 27001 and ISO 27018 )

Location
Greater London, England, United Kingdom
recruit an ISO 27001 and ISO 27018 Information Security Analyst to strengthen our Information Security and Audit / Compliance functions. Alfa Systems sits at the heart of some of the world’s largest asset finance companies, across 26 countries which means information security … compliance with ISO 27001 and ISO 27018 on point. You’ll get involved in SSAE 18 / ISAE 3402 SOC 1 Type 2 and SSAE 18 SOC 2 Type 2 assurance audits, spot opportunities to improve our security controls and processes, and contribute ...

Senior GRC Content Engineer

Location
Greater London, England, United Kingdom
role is for you. Technical Skills & Experience To be considered for this opportunity, you must have at least 5+ years of hands‐on GRC / information security experience in roles such as: GRC Analyst / GRC Manager, Information Security Officer / Manager, ISMS Owner, Compliance Manager … / Security Internal Auditor, or Security & Compliance Consultant Mandatory GRC skills — you must be able to demonstrate: Practical, implementation‐level experience with ISO / IEC 27001 (2022 control set): scoping, risk assessment and treatment, Statement of Applicability, running or facing internal ...

IT Risks & Control Manager

Location
Eastleigh, England, United Kingdom
line risk teams. Main Responsibilities as IT Risks & Control Manager Lead IT risk and control assessments using recognised frameworks such as ISO / IEC 27001 and NIST-aligned controls. Own and maintain the IT risk register, ensuring risks, controls and treatment plans … Control Manager Strong experience in IT risk management, technology risk or information security risk. Good knowledge of IT control frameworks, particularly ISO / IEC 27001 and NIST-aligned controls. Experience maintaining IT risk registers and working with GRC tools. Confidence facilitating senior stakeholder ...

Security Analyst

Location
West of England, England, United Kingdom
Location |Bristol | Office based with some hybrid working Full-time permanent position | Working hours: Monday to Friday (37.5 hours per week) Start Date |Mid / late October 2026 About Us At Applicable, we specialise in delivering seamless Microsoft 365 and Unified Communications solutions to enterprise clients. As our business … overall information security posture. What You’ll Do Support the maintenance of compliance with applicable security standards and frameworks, including ISO / IEC 27001, ISO / IEC 27017, ISO / IEC ...

IT Risks & Control Manager

Location
Chandler's Ford, England, United Kingdom
governance forums and second-line risk teams. Main Responsibilities: Lead IT risk and control assessments using recognised frameworks such as ISO / IEC 27001 and NIST-aligned controls. Own and maintain the IT risk register, ensuring risks, controls and treatment plans are accurate … experience: Strong experience in IT risk management, technology risk or information security risk. Good knowledge of IT control frameworks, particularly ISO / IEC 27001 and NIST-aligned controls. Experience maintaining IT risk registers and working with GRC tools. Confidence facilitating senior stakeholder discussions ...

Information Security Officer

Location
Newcastle upon Tyne, England, United Kingdom
Information Security Officer (GRC / ISO 27001 / Cyber Security) Location: Newcastle upon Tyne | Hybrid (3 Days Office / 2 Days Home) Type: Full-time, Permanent Overview A leading financial technology organisation is looking to appoint an Information Security Officer to support … ensure security requirements are considered throughout technology and business change. The position offers exposure to a mature and evolving security environment, including ISO 27001, NIST, cloud security, supplier assurance and emerging technologies such as AI and automation. It would particularly suit someone with a solid grounding ...

Data Governance & AI Consultant

Location
West of England, England, United Kingdom
Location: UK (Hybrid) with travel to client sites 2 days p / w across Bristol, Portsmouth and Taunton Contract: Permanent, full-time Security clearance: Minimum SC (active & lapsed would be ok) Notice - ideally 1 month notice Briefing notes: Defence experience desirable Sonar work and underwater mapping Hydrographic office experience … provenance, quality, representativeness, bias checks, privacy & IP considerations, synthetic data controls). Model selection support (fit-for-purpose criteria, interpretability needs, security constraints, compute / cost trade-offs). Test & evaluation (appropriate metrics and acceptance thresholds; robustness, fairness, privacy, and safety testing; secure red-teaming where applicable). Operational ...

Senior Security Consultant

Location
City Of London, England, United Kingdom
testing plans. Implement and maintain information security controls aligned with applicable laws, regulations, standards and best practices, including ISO 27001 / 27002, GDPR, Cyber Assessment Framework (CAF) and NIST CSF. Develop and maintain information security policies, standards and procedures, ensuring organisational compliance. Define, coordinate … banking, energy, telecommunications and media, industrial protection, and critical infrastructure protection. Knowledge of SOC operations, digital forensics and fraud management. Experience with GRC / IRM platforms and the automation of security and compliance processes. Additional security certifications such as CGEIT, C CISO, QSA, CDPP, or Security Director certification issued ...

Information Security Lead

Hiring Organisation
Hackajob Ltd
Location
Wallingford, Oxfordshire, South East, United Kingdom
Employment Type
Permanent
Information Security Lead / ISO27001 / SOC / GRC / Location: Wallingford - Oxfordshire (Hybrid) onsite circa 3 days minimum per week Permanent At Dexory, we are transforming the warehousing and logistics industry through data intelligence. Were currently recruiting for an Information Security Lead … Wallingford, Oxford and looking for someone who can do 3 days minimum on site ideally more. Any experience within robotics or start up / scale up environments highly desirable. Please apply for more information. Responsibilities / Skills Own the day-to-day execution of Dexory's ISO ...

Cyber Security Consultant

Hiring Organisation
Circle Group
Location
London, United Kingdom
Employment Type
Permanent, Work From Home
Salary
£70,000
including vulnerability management, identity and access management, cloud security, security operations and supplier assurance. Support Secure SDLC and broader security transformation initiatives. Provide vCISO / outsourced security management support where required. Design and facilitate client workshops, discovery sessions and stakeholder interviews. Translate technical security issues into clear business risks … consultancy experience. A good understanding of information security governance, risk and technical controls. Practical experience with ISO 27001 and / or other recognised security frameworks. Experience conducting security assessments, gap analyses or risk assessments. The ability to understand a client's business and provide pragmatic ...

Principal Security Officer

Location
Reading, England, United Kingdom
management, including risk registers, policy exceptions and remediation plans. Lead and support ISO 27001, Cyber Essentials Plus, PCI-DSS, NIST / CIS Controls and customer compliance requirements. Manage and provide assurance around internal and external audits, including remediation of findings. Provide senior oversight of third … party / vendor security risk and critical supplier assurance. Support security assurance for customer contracts and external stakeholder requirements. Develop security reporting, KPIs and dashboards for senior management. Work with security operations and engineering teams to identify vulnerabilities, manage remediation and improve security controls. Provide security input into Data ...

Information Security Officer

Location
Reading, England, United Kingdom
including policies, procedures and controls. Support the implementation and ongoing management of ISO 27001, Cyber Essentials Plus, PCI-DSS, NIST / CIS Controls and other relevant security requirements. Conduct security assessments across infrastructure, networks, endpoints, applications and data. Identify, assess and manage information security risks … years' experience in an Information Security, GRC, compliance or security consultancy role. Practical experience implementing and managing ISO 27001 / ISMS rather than purely theoretical knowledge. Experience with security audits, control testing, risk assessments and remediation . Knowledge of frameworks and standards including ISO ...

ISMS & BCMS Internal Audit Lead

Hiring Organisation
Synapri
Location
London, United Kingdom
Employment Type
Contract
Contract Rate
£500 - £600/day
accomplished audit professional who can take ownership of developing and delivering a risk-based, multi-year internal audit programme, aligned to ISO / IEC 27001:2022 and ISO 22301:2019. The Role You will be responsible for developing the audit strategy … annual ISMS & BCMS audit model, including methodology, templates, governance, findings tracking and knowledge transfer to support future audit cycles. Key Requirements ISO / IEC 27001:2022 Lead Auditor certification ISO 22301:2019 Lead Auditor certification Demonstrable experience conducting internal audits against ...

Cyber Requirements & Compliance Specialist

Location
Greater London, England, United Kingdom
engagement with regulators and external stakeholders where required. Track regulatory findings, recommendations and actions through to closure. Assist with external certification activities, including ISO 27001 and Cyber Essentials Plus. Knowledge & Skills: Strong understanding of cyber security principles, governance frameworks and compliance management practices. Knowledge of compliance … stakeholder engagement and communication skills, with the ability to work effectively across technical and business functions. Familiarity with ISO 27001 / 27002, NIST Cyber Security Framework (CSF) 2.0 and the NCSC Cyber Assessment Framework (CAF). Understanding of the UK regulatory landscape for cyber security ...

IT Director

Location
Cheltenham, England, United Kingdom
robust cybersecurity policies, procedures and frameworks. Ensure compliance with relevant data protection laws, including UK GDPR, ISO standards, including ISO / IEC 27001, Cyber Essentials Plus and industry best practice. Lead incident response planning, security audits, risk assessments and remediation efforts. … experience leading digital transformation and systems integration projects. Excellent leadership, communication and stakeholder management skills. Professional certifications such as CISSP, CISM, ISO / IEC 27001 Lead Implementer or Auditor, or similar. Experience working in regulated, public sector or educational environments. Please note ...

Data Governance Lead - Kids Planet Central Support

Location
Altrincham, England, United Kingdom
Reporting to Chief Technology Officer Salary £50,000 per annum Location Hybrid – Head Office Altrincham / Remote Contract Permanent, Full-Time Kids Planet Day Nurseries is seeking an experienced Data Governance Lead to design, implement, and embed a robust data governance framework across the organisation. Reporting to the Chief … ability to manage multiple workstreams simultaneously. Desirable Professional qualifications in data protection or information governance (e.g. BCS Certificate in Data Protection, CIPM, ISEB / IAPP, GDPR Practitioner). Practical experience evaluating or operating DLP, data discovery, or data classification platforms. Familiarity with AI data governance considerations and acceptable ...

Information Security Manager - Fintech - Hybrid

Location
City Of London, England, United Kingdom
Engineering and Technology teams to embed security into the software development lifecycle, including secure design reviews, threat modelling, secure coding standards, dependency scanning, SAST / DAST tooling, secrets management, application / API penetration testing, vulnerability remediation tracking and release security governance. Support DORA‐related client and contractual obligations … agreed financial controls. Operate a risk‐based third‐party security assurance framework covering supplier onboarding, periodic reassessment, critical supplier classification, contractual security controls, subcontractor / sub‐processor oversight, supplier incident monitoring and exit arrangements. Own the client security assurance process, including security questionnaires, RFP / RFI responses, client ...

Head of Computerized Systems Quality Assurance & Validation

Location
Greater London, England, United Kingdom
Computerized Systems Quality Assurance & Validation on a permanent full‐time capacity. Purpose of the Role: This role supports the compliant and timely design / development, testing, verification, validation, configuration, and life cycle management of computerized systems (including software) developed, purchased and / or utilised by IXICO. This role … compliance with current GCP, FDA 21 CFR Part 11, EU Annex 11, GAMP, FDA QSR Part 820 (QMSR), EU MDR (Regulation 2017 / 745), IEC 62304, GDPR, ISO 13485, ISO 27001 and ISO 42001 / EN 18286 regulatory ...

Assistant Manager Information Security

Location
Greater London, England, United Kingdom
business impact analyses, business continuity and IT disaster recovery plans and their testing (including the AWS cloud environment), helping ensure recovery objectives (RTO / RPO) are documented, achievable and evidenced, with lessons learned fed into improvements. Data Protection Governance Support the Data Protection Officer in operating the bank … security awareness and data protection training to foster a strong risk awareness culture across the bank. Requirements EDUCATION & TRAINING Bachelor's degree in Information / Cyber Security, Computer Science or a related discipline; equivalent professional experience may be considered. Relevant professional certifications are strongly preferred, for example CISM, CISSP ...

Senior Information Security Manager

Hiring Organisation
Ascend Consulting
Location
London, South East England, United Kingdom
Employment Type
Full-Time
Salary
£60,000 - £65,000 per annum
Senior Information Security Manager, Risk, Compliance, Security, London, Hybrid / Remote to £65,000 A leading independent authority are requiring a Senior Information Security Manager to play a pivotal role in their Compliance team. The Reporting to the Head of Compliance, you will lead the ISO 27001 … incidents, and contributing to policy development. The key responsibilities of this role are to oversee information security standards by managing and continually improving ISO 27001-certified Information Security Management System, leading business continuity management for information and technology risks, and supporting the organisation’s development ...

Remote ISMS & BCMS Audit Lead (ISO 27001/22301)

Location
Greater London, England, United Kingdom
remote contract with occasional travel to London. You will develop and execute a risk-based internal audit programme aligned to ISO / IEC 27001:2022 and ISO 22301:2019. You will plan and deliver audits, assess control effectiveness, interview stakeholders ...

Design Quality Engineer

Location
Greater London, England, United Kingdom
Notified Body audits, with a focus on Design and Development aspects. Champion compliance in software development by translating complex and opaque IEC / ISO standards into clear, actionable processes that engineering teams can follow. What we will look for SaMD Experience : Prior experience working … doing the defining work of your career. We take care of you. We offer comprehensive private medical and dental cover through Bupa 24 / 7 mental health coaching and wellbeing support through Sonder a £100 / month Healthy Heidi's wellness stipend a £500 home office budget ...

Head of Information Management

Location
East Midlands, England, United Kingdom
aligned with cyber security, compliance, and business objectives Oversee and manage the information and data process for the organisation Drive a programme of change / training that embeds secure information practices throughout the organisation’s culture, technology, and operations Manage and own the development of the company IMS data … / information related processes Champion the value of information as a corporate asset and support digital transformation programmes with strong data governance principles. Oversee and support the management of information between the company and its core partner and customer organisation. Maintain a holistic view of all information-related activity ...

Engineering Manager, Security

Location
Greater London, England, United Kingdom
security & architecture: Define and enforce the security architecture across our Azure-native, Kubernetes-based platform. Govern security controls across the full stack: Kafka, .NET / C#, Vue.js, Kong API Gateway, Auth0, and Salesforce. Lead threat modelling, penetration testing, and vulnerability management programmes. Own identity and access management strategy, including … crypto-agile migration to NIST-standardised PQC algorithms. Compliance & regulatory: Ensure security controls meet FCA SYSC obligations, SYSC 15A operational risk requirements and ISO27001 standard. Work closely with the Head of Compliance on regulatory horizon scanning, security-related policy obligations, and audit responses. Partner with the DPO on data governance ...