Bath, England, United Kingdom Hybrid / WFH Options
Computer Network Defence Ltd (CND)
Job Title: Cyber & Information Security Lead Type: Full Time & Permanent Location: Hybrid / Bath, England About the Role: Seeking a senior cyber and information security professional to lead on safeguarding critical healthcare technology platforms. This role is ideal for someone with strong expertise in compliance, risk management, and security governance—particularly within public sector or regulated environments—who’s … Key Responsibilities: Security Strategy : Define and maintain a robust security strategy aligned with business goals and growth. Compliance : Ensure adherence to key standards including DSPT, Cyber Essentials Plus, and ISO27001:2022. Risk Management : Lead the identification and mitigation of information security risks across all operations. Security Architecture : Oversee secure system and software design throughout the development lifecycle. Incident Response : Manage … security, ideally in a CISO or equivalent role within software or health tech. Healthcare Standards : Strong knowledge of UK healthcare security frameworks like DSPT, DTAC, and NCSC CAF. ISO27001 : Proven track record in implementing and maintaining ISO27001:2022-certified ISMS. Secure by Design : Deep understanding of secure SDLC and embedding More ❯
taunton, south west england, united kingdom Hybrid / WFH Options
Computer Network Defence Ltd (CND)
Job Title: Cyber & Information Security Lead Type: Full Time & Permanent Location: Hybrid / Bath, England About the Role: Seeking a senior cyber and information security professional to lead on safeguarding critical healthcare technology platforms. This role is ideal for someone with strong expertise in compliance, risk management, and security governance—particularly within public sector or regulated environments—who’s … Key Responsibilities: Security Strategy : Define and maintain a robust security strategy aligned with business goals and growth. Compliance : Ensure adherence to key standards including DSPT, Cyber Essentials Plus, and ISO27001:2022. Risk Management : Lead the identification and mitigation of information security risks across all operations. Security Architecture : Oversee secure system and software design throughout the development lifecycle. Incident Response : Manage … security, ideally in a CISO or equivalent role within software or health tech. Healthcare Standards : Strong knowledge of UK healthcare security frameworks like DSPT, DTAC, and NCSC CAF. ISO27001 : Proven track record in implementing and maintaining ISO27001:2022-certified ISMS. Secure by Design : Deep understanding of secure SDLC and embedding More ❯
bristol, south west england, united kingdom Hybrid / WFH Options
Computer Network Defence Ltd (CND)
Job Title: Cyber & Information Security Lead Type: Full Time & Permanent Location: Hybrid / Bath, England About the Role: Seeking a senior cyber and information security professional to lead on safeguarding critical healthcare technology platforms. This role is ideal for someone with strong expertise in compliance, risk management, and security governance—particularly within public sector or regulated environments—who’s … Key Responsibilities: Security Strategy : Define and maintain a robust security strategy aligned with business goals and growth. Compliance : Ensure adherence to key standards including DSPT, Cyber Essentials Plus, and ISO27001:2022. Risk Management : Lead the identification and mitigation of information security risks across all operations. Security Architecture : Oversee secure system and software design throughout the development lifecycle. Incident Response : Manage … security, ideally in a CISO or equivalent role within software or health tech. Healthcare Standards : Strong knowledge of UK healthcare security frameworks like DSPT, DTAC, and NCSC CAF. ISO27001 : Proven track record in implementing and maintaining ISO27001:2022-certified ISMS. Secure by Design : Deep understanding of secure SDLC and embedding More ❯
vulnerability analysis with security accreditation, compliance, and risk assessment for deployable communications and information systems (CIS). What You ll Do Conduct vulnerability scanning using tools such as Tenable / Nessus, Qualys, or OpenVAS Develop, maintain, and review Security Accreditation documentation in line with NIST RMF, DoD RMF, and ISO27001 Perform and support Security … of NATO operations (fitness and readiness required) What We re Looking For Proven experience in cybersecurity vulnerability assessment and risk management Strong knowledge of security frameworks (NIST RMF, ISO27001, DoD RMF, ITIL) Hands-on experience with vulnerability management tools Certifications such as CISSP, CISM, CRISC, or CAP (required) ITIL v4 Foundation or higher Strong communication More ❯
vulnerability analysis with security accreditation, compliance, and risk assessment for deployable communications and information systems (CIS). What You’ll Do Conduct vulnerability scanning using tools such as Tenable / Nessus, Qualys, or OpenVAS Develop, maintain, and review Security Accreditation documentation in line with NIST RMF, DoD RMF, and ISO27001 Perform and support Security … of NATO operations (fitness and readiness required) What We’re Looking For Proven experience in cybersecurity vulnerability assessment and risk management Strong knowledge of security frameworks (NIST RMF, ISO27001, DoD RMF, ITIL) Hands-on experience with vulnerability management tools Certifications such as CISSP, CISM, CRISC, or CAP (required) ITIL v4 Foundation or higher Strong communication More ❯
vulnerability analysis with security accreditation, compliance, and risk assessment for deployable communications and information systems (CIS). What You’ll Do Conduct vulnerability scanning using tools such as Tenable / Nessus, Qualys, or OpenVAS Develop, maintain, and review Security Accreditation documentation in line with NIST RMF, DoD RMF, and ISO27001 Perform and support Security … of NATO operations (fitness and readiness required) What We’re Looking For Proven experience in cybersecurity vulnerability assessment and risk management Strong knowledge of security frameworks (NIST RMF, ISO27001, DoD RMF, ITIL) Hands-on experience with vulnerability management tools Certifications such as CISSP, CISM, CRISC, or CAP (required) ITIL v4 Foundation or higher Strong communication More ❯
and enhance network infrastructure, ensuring optimal performance and security. Identify and implement automation opportunities to improve IT processes and end-user experience. Ensure compliance with IT security policies, ISO27001 standards, and cyber insurance obligations. Required Skills & Experience: A self-starter with the ability to manage issues through the full lifecycle from triage to resolution. Strong … applications, Azure Active Directory, and Intune administration. Knowledge of Cisco infrastructure tools and fundamental networking principles. Awareness of ITIL support frameworks and cloud computing environments. Knowledge of ISO27001 Information Security standards or equivalent frameworks is beneficial. If you are interested in finding out about this exciting IT Engineer opportunity, please click ‘apply now.’Chase & Holland More ❯
failure. Essential Skills & Experience: At least 2 years of hands-on experience in information security or IT infrastructure within an enterprise environment. Familiarity with security standards such as ISO27001, Cyber Essentials, GDPR, and Data Protection Act. Experience with Microsoft O365 Security solutions and network security operations. Understanding of security testing principles, including vulnerability scanning, risk … apply now. Keywords: Information Security Consultant, IT Security Consultant, Cybersecurity Specialist, Microsoft O365 Security, Enterprise Security Jobs, Information Security Leeds, IT Risk Management, Security Incident Response, Vulnerability Management, ISO27001, GDPR Compliance, Security Awareness, Disaster Recovery and Business Continuity. More ❯
failure. Essential Skills & Experience: At least 2 years of hands-on experience in information security or IT infrastructure within an enterprise environment. Familiarity with security standards such as ISO27001, Cyber Essentials, GDPR, and Data Protection Act. Experience with Microsoft O365 Security solutions and network security operations. Understanding of security testing principles, including vulnerability scanning, risk … apply now. Keywords: Information Security Consultant, IT Security Consultant, Cybersecurity Specialist, Microsoft O365 Security, Enterprise Security Jobs, Information Security Leeds, IT Risk Management, Security Incident Response, Vulnerability Management, ISO27001, GDPR Compliance, Security Awareness, Disaster Recovery and Business Continuity. More ❯
failure. Essential Skills & Experience: At least 2 years of hands-on experience in information security or IT infrastructure within an enterprise environment. Familiarity with security standards such as ISO27001, Cyber Essentials, GDPR, and Data Protection Act. Experience with Microsoft O365 Security solutions and network security operations. Understanding of security testing principles, including vulnerability scanning, risk … apply now. Keywords: Information Security Consultant, IT Security Consultant, Cybersecurity Specialist, Microsoft O365 Security, Enterprise Security Jobs, Information Security Leeds, IT Risk Management, Security Incident Response, Vulnerability Management, ISO27001, GDPR Compliance, Security Awareness, Disaster Recovery and Business Continuity. More ❯
Bristol, Avon, England, United Kingdom Hybrid / WFH Options
Sanderson
Cyber Security Consultant - Risk Consultant (MOD / Defence - SC) Location: Remote / Southwest on-site presence Contract Type: Permanent & Full-time Salary: Competitive + Benefits About the Role As a Cyber Security Consultant, you will play a pivotal role in delivering Secure by Design risk and security assurance services within MOD and Public Sector environments. You'll collaborate … part of a knowledge-sharing culture, working alongside expert peers in Secure Architecture and Risk Planning. Key Responsibilities Deliver Secure by Design risk and security assurance functions within MOD / Public Sector. Lead and advise on risk management frameworks, ISMS, and Enterprise Security Risk Management. Facilitate security and risk workshops with Authority departments. Produce clear reporting on vulnerabilities, risks … of CIISEC and UK Cyber Security Council professional registration at either Chartered or Principal for Risk Management. Hold an active and transferable SC clearance Willingness to undergo DV clearance / UK Citizen / residing in UK Strong working knowledge of: Security Assurance Coordinator or Delivery Team Security Lead roles JSP440, JSP604 / 453 & JSP490 Working with system More ❯
Merseyside, England, United Kingdom Hybrid / WFH Options
Maxwell Bond
lead security risk assessments , ensuring risks are documented, tracked, and remediated. Develop, review, and maintain information security and governance policies, standards, and procedures . Manage and improve third-party / vendor risk management processes and assurance activities. Monitor compliance with regulatory requirements (e.g. FCA, GDPR ) and security frameworks (e.g. ISO27001, NIST, CIS ). Provide … Head of Information Security in governance forums and strategic initiatives. ✅ What We’re Looking For 3+ years’ experience in Information Security, GRC, or Risk & Compliance roles. Familiarity with ISO27001, NIST, CIS Controls, or equivalent frameworks . Strong understanding of risk management methodologies and control frameworks. Excellent communication and stakeholder engagement skills with the ability to … products, they are undergoing an exciting period of transformation and digital investment. 🌟 Benefits Snapshot 31–35 days annual leave including bank holidays (depending on tenure and grade) Enhanced maternity / paternity pay Life assurance and pension scheme Access to mental health and wellbeing support, including counselling and CBT Recognition programmes and long service awards Flexible benefits allowance and salary More ❯
Meriden, Coventry, West Midlands, England, United Kingdom
Recruit4Talent
of our legacy systems to the Microsoft cloud. Your responsibilities will include: Evaluate and enhance existing IT systems, management procedures, and security protocols to ensure robust protection. Oversee ISO27001 and other key accreditations by collaborating with internal teams and external auditors. Manage information security requests and compliance reports, ensuring adherence to GDPR and other relevant … have the opportunity to leverage your existing skills while developing new ones, contributing to the strategic security objectives of the Company and ensuring adherence to critical accreditations, including ISO27001, GDPR, Cyber Essentials, and PCI DSS. The successful candidate will demonstrate: Strong analytical skills with a meticulous approach to identifying and resolving security issues Excellent verbal … attitude towards learning and developing expertise in information security Happy to travel occasionally to other sites as required. Desirable Experience: Demonstrable expertise in external audit, compliance, and security processes (ISO27001, GDPR, Cyber Essentials and PCI DSS) Microsoft accreditation or other recognised certifications (e.g. Microsoft Learning, CISA, CISM, CRISC, CCSP) would be very beneficial. Benefits: £25,000 - £35,000 salary depending More ❯
Reading, Berkshire, England, United Kingdom Hybrid / WFH Options
Proactive Appointments
now looking for an experienced and dynamic Senior Cyber Security Engineer to join our vibrant office with hybrid working. Senior Cyber Security Engineer - Responsibility: Carry out daily security engineering / operation tasks under an ITIL framework Develop an understanding of the threats, risks, vulnerabilities and evolving attack vectors facing the business. Using strong technical knowledge, continuously analyse and make … recommendations to implement effective security controls, system hardening and security improvement projects with a particular focus in application / web hosting security. Assist in the management of patching, vulnerability analysis and penetration testing to ensure recommendations are risk assessed and implemented in a timely manner Senior Cyber Security Engineer - Skills: Experience in Security Engineering, Network Security, and / … protocols such as networks, domain management, and virtualized environments. Holds or is working towards certifications like CISSP, SANS GCIA, CompTIA Security+, CCNA / CCNP, or similar. Knowledge of ISO27001, Cyber Essentials, and AAF frameworks is a plus. Due to the volume of applications received for positions, it will not be possible to respond to all applications and only applicants More ❯
Oxford, Oxfordshire, United Kingdom Hybrid / WFH Options
Nomios
be part of an experienced team, build your skills, and grow professionally. Dionach by Nomios holds impressive certifications, including CREST, Cyber Scheme, CHECK, PCI QSA, SWIFT CSCF and ISO 27001. With our focus on enhancing customers' security and fostering team development,be joining a company that prioritizes both your growth and the safety of our clients. We're … the secure and ethical use of AI. While the primary focus is on AI, you will also apply your expertise to broader GRC projects, including information security assessments, ISO27001 audits, and general information security consulting. The ability to be adaptable and work on a variety of projects is essential. Essential experience and skills: A strong … foundation in traditional GRC, demonstrated by significant experience in auditing and implementing Information Security Management Systems. A recognised ISO27001 qualification (e.g., Lead Auditor or Lead Implementer) is essential. You must be able to apply this rigorous mindset to new challenges. Demonstrable, hands-on experience applying AI governance principles. This must include practical work such as More ❯
needs and communicate technical concepts clearly to both technical and non-technical stakeholders. Compliance and Best Practices : Advise customers on regulatory requirements and industry standards, such as GDPR, ISO27001, or NIST. Additionally, promote adherence to security best practices tailored to their operational context. Documentation and Reporting : Maintain detailed records of advisory sessions, including customer challenges … RBVM, EASM, DRP). Hands-on experience with cloud security frameworks (e.g., AWS, Azure, GCP) and hybrid environments. Strong knowledge of security tools, frameworks, industry regulations (e.g., GDPR, ISO27001, NIST), and best practices. Analytical and strategic thinker, resilient under pressure and able to adapt to dynamic security challenges. Excellent interpersonal and communication skills, with the More ❯
relationships. As a Security Consultant , you will work on a variety of Defence and Public Sector assignments, requiring current SC clearance. Projects will range from risk assessments and ISO27001 implementations to developing full ISMS frameworks and supporting clients through accreditation. You'll provide expert guidance across standards such as NIST, CAF, and Secure by Design. … solutions. We are looking for a Security Consultant with experience in security assurance, accreditation, secure by design, and risk management, alongside recognised qualifications such as CISSP, CISM, or ISO27001 Lead Implementer. Ideally you will be familiar with GRC practices in similar environments also. In return, you'll enjoy a competitive salary … remote working, training budget, private healthcare, bonus scheme, and a culture that values collaboration, growth, and well-being. Take the next step in your career as a GRC Specialist / Security Consultant - apply today. People Source Consulting Ltd is acting as an Employment Agency in relation to this vacancy. People Source specialise in technology recruitment across niche markets including More ❯
to join our team. You will work closely with the client's international IT team to lead the organisation's cybersecurity and information risk agenda, including oversight of ISO27001 and broader security governance across the business. Key Responsibilities : Maintain the Information Security Management System (ISMS) in compliance with ISO27001 … drive continuous improvement. Define and enforce information security policies, standards, and guidelines across the organisation and Monitor compliance with all information security policies, procedures, and standards. Management of tabletop / red team exercises and incident response playbooks. Assist the incident response process and lead investigations into information security breaches or incidents. More ❯
West Midlands, United Kingdom Hybrid / WFH Options
Bright Purple Resourcing
Network / Application / Cloud Security Location: Stoke on Trent (Hybrid) Salary up to 85k + benefits I'm working with a leading technology business to find an experienced Cyber Security Manager to lead their product security strategy and oversee their cyber testing lab. This is a high impact role working closely with engineering teams to secure complex … practice Ensure security is embedded across the product lifecycle You will have; 7+ years IT security experience ideally with product design Strong knowledge of frameworks such as NIST, IEC 62443, ISO27001 Technical expertise in network, application and cloud security Proven leadership of security focused projects from inception to delivery Be certified Security+, CISSP More ❯
Reading, Berkshire, United Kingdom Hybrid / WFH Options
CBSbutler Holdings Limited trading as CBSbutler
Job title: Network / Cloud / DevOps Engineer - Defence Sector Location: Hybrid / Remote - Reading or Warton 2-3 times a week evey 2 weeks. Contract Length: 6 months Day Rate: £600 - £650 per day inside ir35 SC clearance is required for this role About the Role We are seeking an experienced Network / Cloud / … implementing, and optimising secure, scalable systems that directly support national security. Key Responsibilities Design, configure and maintain secure network infrastructure for defence environments. Build and manage cloud solutions (AWS / Azure) with a focus on resilience and compliance. Implement DevOps practices to automate deployments, CI / CD pipelines, and monitoring. Collaborate with cross-functional teams to ensure systems … Python, Bash, PowerShell). Previous experience in defence, government, or secure environments. Desirable Skills Industry-recognised network certifications (e.g. CCNA, CCNP, JNCIP, CompTIA Network+). Exposure to security frameworks (ISO27001, NIST, MOD standards) If you are interested in this role or wish to apply, please feel free to reply to this advert with your CV or call me on (phone More ❯
and talented team, and while some have prior security experience, many have been successful at Vanta without it. As Vanta's Customer Success Manager, in the Upmarket space (Enterprise / Mid-Market), you will play a pivotal role in guiding customers through their security and compliance journeys with Vanta's specialised solutions. By combining your customer-centric approach with … business outcomes on their timelines. Become a product expert on Vanta and how our platform can be used to improve security posture through our compliance offerings (SOC 2, ISO27001, GDPR, HIPAA, USDP and Custom Frameworks), Trust Reports, and Risk Management solution. Provide insightful technical answers and recommend the most efficient way for customers to achieve … trust in internet businesses by enabling companies to improve and prove their security. From our early days automating security monitoring for compliance standards like SOC 2, HIPAA and ISO27001 to creating the world's leading Trust Management Platform, our vision remains unchanged. Now more than ever, making security continuous-not just a point-in-time More ❯
place to work. About the role We're recruiting for an Internal Compliance Officer to be tesponsible for managing and maintaining compliance accreditations with a particular focus on ISO27001, including leading internal and external audits and maintaining a comprehensive set of company policies. The role involves ensuring adherence to evolving regulations, general Health & Safety tasks … assessments, and supporting incident response processes. Key responsibilities include: Compliance Accreditations Overall management of Compliance areas of responsibility within our Information Security Management System (ISMS) including leading the ISO Committee, management and scheduling of internal audits and ensuring existing policies are updated to reflect organisational practises Responsibility of the successful completion and scheduling of our external audits with … our people strategy, with a number of innovative wellness initiatives such as flexi-time, where employees can vary their start and finish times within our core business hours and / or extend their lunch break by up to 2 hours per day. Employees also benefit from an additional two half days paid leave per year to focus on their More ❯
Rochester, Kent, South East, United Kingdom Hybrid / WFH Options
Technical Placements
standards and product specifications, especially regarding regulatory compliance and Cyber security. Ensure compliance with industry standards and regulatory requirements specific to fire alarm and life safety devices (EN54\UL864\ISO27001\CE). Implement best practices in coding, testing, and documentation. Develop and refine measurable software development processes to enhance efficiency and quality. Collaborate with R&D team section managers to … Degree level in Engineering, preferably with a Software focus. Experience Considerable proven experience managing development teams of 10-15 engineers within an electronic product segment, ideally regulatory controlled. Knowledge / Skills Management Proven experience leading and managing software development teams of various sizes, with a track record as an exceptional people manager. Ability to mentor, coach, motivate, and develop … design documents that comprehensively describe the product design and functionality. Certification Experience in designing products for a regulatory controlled market and ensuring compliance with those standards including ISO9001 and ISO27001/ NIST or other relevant security frameworks. This is an excellent opportunity to become part of the key engineering team within a developing business with its culture shaped by More ❯
Stockport, Cheshire, England, United Kingdom Hybrid / WFH Options
CDL
tools. You will assist with supplier onboarding and documentation alongside the Legal and Procurement teams. You’ll support with compliance monitoring, helping to ensure certified standards, such as ISO27001, ISO 22301 and others, are maintained, all whilst learning how risk is identified, assessed, and managed in a real-world setting. The six apprenticeship … marketplace. The requirements We’re looking for forward-thinking, inquisitive people who: Have 5 GCSEs, including English & Maths at Grade 4 (C) or above. Have an interest in data / reporting. Are flexible and organised, with great time management skills. Have good communication skills - written, verbal, face to face and remote working. Have an enthusiastic, 'can-do' attitude to More ❯
Stockport, Greater Manchester, North West, United Kingdom Hybrid / WFH Options
CDL
tools. You will assist with supplier onboarding and documentation alongside the Legal and Procurement teams. You'll support with compliance monitoring, helping to ensure certified standards, such as ISO27001, ISO 22301 and others, are maintained, all whilst learning how risk is identified, assessed, and managed in a real-world setting. The six apprenticeship … marketplace. The requirements We're looking for forward-thinking, inquisitive people who: Have 5 GCSEs, including English & Maths at Grade 4 (C) or above. Have an interest in data / reporting. Are flexible and organised, with great time management skills. Have good communication skills - written, verbal, face to face and remote working. Have an enthusiastic, 'can-do' attitude to More ❯