About the Job We are seeking a Product Security Specialist with expertise in connected / IoT medical devices or healthcare products to join our team. The ideal candidate will work with clients to advise and shape the overall security strategy for products, ensure secure design, development, and deployment across … testing, threat modeling, security testing) and evaluate residual risks with compensating controls. Solid experience in applying and proving compliance with frameworks like NIST, IEC, HITRUST, HIPAA, GDPR, ISO27001, SOC 2 Type 2, as well as working with Quality Management Systems (QMS). Strong More ❯
About the Job We are seeking a Product Security Specialist with expertise in connected / IoT medical devices or healthcare products to join our team. The ideal candidate will work with clients to advise and shape the overall security strategy for products, ensure secure design, development, and deployment across … testing, threat modeling, security testing) and evaluate residual risks with compensating controls. Solid experience in applying and proving compliance with frameworks like NIST, IEC, HITRUST, HIPAA, GDPR, ISO27001, SOC 2 Type 2, as well as working with Quality Management Systems (QMS). Strong More ❯
feeds, integrating insights to enhance protective controls. Produce actionable reports and dashboards on threat trends, vulnerabilities, and emerging risks. Contribute to tabletop exercises, red / blue team simulations, and incident readiness planning. Provide guidance on security architecture and work closely with engineering teams to reduce our attack surface. About … and broader Microsoft security tools. Deep technical understanding of Windows and Linux systems, networking, and security architecture. Familiarity with threat hunting methodologies, and endpoint / network security tools. Experience leading complex incident response investigations and containment efforts. Solid understanding of threat actor tactics and frameworks (e.g., MITRE ATT&CK … Cyber Kill Chain). Knowledge of standards and compliance frameworks like NIST, ISO27001, PCI-DSS, and GDPR. Relevant certifications (e.g., CISSP, GIAC, OSCP, CREST) are desirable. Why join us? You'll be joining a forward-thinking security team committed to innovation and resilience. As a More ❯
Luton, England, United Kingdom Hybrid / WFH Options
Advanced Resource Managers
and at rest throughout the transition Develop and validate security requirements for cloud platforms (e.g., Azure, AWS) Ensure alignment with regulatory requirements (e.g., ISO27001, NIST, GDPR) and internal governance policies Collaborate with infrastructure … network, cloud, and application teams to embed security by design in the migration process Oversee security tool integration, including identity and access management, logging / monitoring (SIEM), encryption, and vulnerability management Your skillset may include: Proven experience as a Security Architect supporting major infrastructure transformation or datacentre exit programs … Experience with security governance, risk, and compliance in regulated environments Strong documentation, communication, and stakeholder engagement skills Relevant certifications preferred (e.g., CISSP, CCSP, Azure / AWS Security, SABSA, TOGAF) If this all sounds like something you will be interested in then simply apply and we can discuss the opportunity More ❯
Luton, south east england, United Kingdom Hybrid / WFH Options
Advanced Resource Managers
and at rest throughout the transition Develop and validate security requirements for cloud platforms (e.g., Azure, AWS) Ensure alignment with regulatory requirements (e.g., ISO27001, NIST, GDPR) and internal governance policies Collaborate with infrastructure … network, cloud, and application teams to embed security by design in the migration process Oversee security tool integration, including identity and access management, logging / monitoring (SIEM), encryption, and vulnerability management Your skillset may include: Proven experience as a Security Architect supporting major infrastructure transformation or datacentre exit programs … Experience with security governance, risk, and compliance in regulated environments Strong documentation, communication, and stakeholder engagement skills Relevant certifications preferred (e.g., CISSP, CCSP, Azure / AWS Security, SABSA, TOGAF) If this all sounds like something you will be interested in then simply apply and we can discuss the opportunity More ❯
luton, bedfordshire, east anglia, United Kingdom Hybrid / WFH Options
Advanced Resource Managers
and at rest throughout the transition Develop and validate security requirements for cloud platforms (e.g., Azure, AWS) Ensure alignment with regulatory requirements (e.g., ISO27001, NIST, GDPR) and internal governance policies Collaborate with infrastructure … network, cloud, and application teams to embed security by design in the migration process Oversee security tool integration, including identity and access management, logging / monitoring (SIEM), encryption, and vulnerability management Your skillset may include: Proven experience as a Security Architect supporting major infrastructure transformation or datacentre exit programs … Experience with security governance, risk, and compliance in regulated environments Strong documentation, communication, and stakeholder engagement skills Relevant certifications preferred (e.g., CISSP, CCSP, Azure / AWS Security, SABSA, TOGAF) If this all sounds like something you will be interested in then simply apply and we can discuss the opportunity More ❯
Luton, south west england, United Kingdom Hybrid / WFH Options
Advanced Resource Managers
and at rest throughout the transition Develop and validate security requirements for cloud platforms (e.g., Azure, AWS) Ensure alignment with regulatory requirements (e.g., ISO27001, NIST, GDPR) and internal governance policies Collaborate with infrastructure … network, cloud, and application teams to embed security by design in the migration process Oversee security tool integration, including identity and access management, logging / monitoring (SIEM), encryption, and vulnerability management Your skillset may include: Proven experience as a Security Architect supporting major infrastructure transformation or datacentre exit programs … Experience with security governance, risk, and compliance in regulated environments Strong documentation, communication, and stakeholder engagement skills Relevant certifications preferred (e.g., CISSP, CCSP, Azure / AWS Security, SABSA, TOGAF) If this all sounds like something you will be interested in then simply apply and we can discuss the opportunity More ❯
Luton, Bedfordshire, United Kingdom Hybrid / WFH Options
ARM
and at rest throughout the transition Develop and validate security requirements for cloud platforms (e.g., Azure, AWS) Ensure alignment with regulatory requirements (e.g., ISO27001, NIST, GDPR) and internal governance policies Collaborate with infrastructure … network, cloud, and application teams to embed security by design in the migration process Oversee security tool integration, including identity and access management, logging / monitoring (SIEM), encryption, and vulnerability management Your skillset may include: Proven experience as a Security Architect supporting major infrastructure transformation or datacentre exit programs … Experience with security governance, risk, and compliance in regulated environments Strong documentation, communication, and stakeholder engagement skills Relevant certifications preferred (e.g., CISSP, CCSP, Azure / AWS Security, SABSA, TOGAF) If this all sounds like something you will be interested in then simply apply and we can discuss the opportunity More ❯
transition. Develop and validate security requirements for cloud platforms (e.g., Azure, AWS) and associated services being adopted. Ensure alignment with regulatory requirements (e.g., ISO27001, NIST, GDPR) and internal governance policies. Collaborate with infrastructure … network, cloud, and application teams to embed security by design in the migration process. Oversee security tool integration, including identity and access management, logging / monitoring (SIEM), encryption, and vulnerability management. Review and Lead Security Tooling modernisation i.e. leveraging Microsoft native capabilities Provide guidance on the secure decommissioning of … Experience with security governance, risk, and compliance in regulated environments. Strong documentation, communication, and stakeholder engagement skills. Relevant certifications preferred (e.g., CISSP, CCSP, Azure / AWS Security, SABSA, TOGAF). More ❯
transition. Develop and validate security requirements for cloud platforms (e.g., Azure, AWS) and associated services being adopted. Ensure alignment with regulatory requirements (e.g., ISO27001, NIST, GDPR) and internal governance policies. Collaborate with infrastructure … network, cloud, and application teams to embed security by design in the migration process. Oversee security tool integration, including identity and access management, logging / monitoring (SIEM), encryption, and vulnerability management. Review and Lead Security Tooling modernisation i.e. leveraging Microsoft native capabilities Provide guidance on the secure decommissioning of … Experience with security governance, risk, and compliance in regulated environments. Strong documentation, communication, and stakeholder engagement skills. Relevant certifications preferred (e.g., CISSP, CCSP, Azure / AWS Security, SABSA, TOGAF). More ❯
transition. Develop and validate security requirements for cloud platforms (e.g., Azure, AWS) and associated services being adopted. Ensure alignment with regulatory requirements (e.g., ISO27001, NIST, GDPR) and internal governance policies. Collaborate with infrastructure … network, cloud, and application teams to embed security by design in the migration process. Oversee security tool integration, including identity and access management, logging / monitoring (SIEM), encryption, and vulnerability management. Review and Lead Security Tooling modernisation i.e. leveraging Microsoft native capabilities Provide guidance on the secure decommissioning of … Experience with security governance, risk, and compliance in regulated environments. Strong documentation, communication, and stakeholder engagement skills. Relevant certifications preferred (e.g., CISSP, CCSP, Azure / AWS Security, SABSA, TOGAF). More ❯
transition. Develop and validate security requirements for cloud platforms (e.g., Azure, AWS) and associated services being adopted. Ensure alignment with regulatory requirements (e.g., ISO27001, NIST, GDPR) and internal governance policies. Collaborate with infrastructure … network, cloud, and application teams to embed security by design in the migration process. Oversee security tool integration, including identity and access management, logging / monitoring (SIEM), encryption, and vulnerability management. Review and Lead Security Tooling modernisation i.e. leveraging Microsoft native capabilities Provide guidance on the secure decommissioning of … Experience with security governance, risk, and compliance in regulated environments. Strong documentation, communication, and stakeholder engagement skills. Relevant certifications preferred (e.g., CISSP, CCSP, Azure / AWS Security, SABSA, TOGAF). More ❯
transition. Develop and validate security requirements for cloud platforms (e.g., Azure, AWS) and associated services being adopted. Ensure alignment with regulatory requirements (e.g., ISO27001, NIST, GDPR) and internal governance policies. Collaborate with infrastructure … network, cloud, and application teams to embed security by design in the migration process. Oversee security tool integration, including identity and access management, logging / monitoring (SIEM), encryption, and vulnerability management. Review and Lead Security Tooling modernisation i.e. leveraging Microsoft native capabilities Provide guidance on the secure decommissioning of … Experience with security governance, risk, and compliance in regulated environments. Strong documentation, communication, and stakeholder engagement skills. Relevant certifications preferred (e.g., CISSP, CCSP, Azure / AWS Security, SABSA, TOGAF). More ❯
Certified Information Security Manager). 5+ years of IT security experience working on data security enforcement. Strong understanding of security frameworks like NIST, ISO27001, and CIS Controls, and their application to enhance security and ensure compliance. Proven expertise in designing and implementing data security controls … hybrid cloud environments. Hands-on experience with modern enterprise-level data protection tools, including Data Loss Prevention (DLP), Digital Rights Management (RMS), data encryption / tokenization, and data discovery. Strong familiarity with Microsoft security solutions, such as AD RMS, Azure RMS, and Microsoft Purview for data governance, classification, and … proficiency, oral presentation skills, problem solving and decision-making skills. Experience in using architecture methodologies such as TOGAF and SABSA. Practical experience in Agile / DevOps organizations and cultures. We know our colleagues work tirelessly to make JD Sports the success it is today and in turn, we offer More ❯
Partially provide IT support and Endpoint Security for office hardware and software, including laptops, desktops, and other devices. Support IT-related aspects of ISO27001 audits and other regulatory requirements. (7) Configure and maintain office VOIP telephony systems. (8) Excellent communication skills and ability. Qualifications: Bachelor … efficiently. Strong communication skills with the ability to interact effectively with stakeholders at all levels. Requirements: Good experience of managing Information Security compliance and ISO27001 certification. Hands-on experience in maintenance and configuration of Firewall and switch. CISSP, CCNP / HCIP for security or higher certification will be preferred. More ❯
Partially provide IT support and Endpoint Security for office hardware and software, including laptops, desktops, and other devices. Support IT-related aspects of ISO27001 audits and other regulatory requirements. (7) Configure and maintain office VOIP telephony systems. (8) Excellent communication skills and ability. Qualifications: Bachelor … efficiently. Strong communication skills with the ability to interact effectively with stakeholders at all levels. Requirements: Good experience of managing Information Security compliance and ISO27001 certification. Hands-on experience in maintenance and configuration of Firewall and switch. CISSP, CCNP / HCIP for security or higher certification will be preferred. More ❯
Partially provide IT support and Endpoint Security for office hardware and software, including laptops, desktops, and other devices. Support IT-related aspects of ISO27001 audits and other regulatory requirements. (7) Configure and maintain office VOIP telephony systems. (8) Excellent communication skills and ability. Qualifications: Bachelor … efficiently. Strong communication skills with the ability to interact effectively with stakeholders at all levels. Requirements: Good experience of managing Information Security compliance and ISO27001 certification. Hands-on experience in maintenance and configuration of Firewall and switch. CISSP, CCNP / HCIP for security or higher certification will be preferred. More ❯
Partially provide IT support and Endpoint Security for office hardware and software, including laptops, desktops, and other devices. Support IT-related aspects of ISO27001 audits and other regulatory requirements. (7) Configure and maintain office VOIP telephony systems. (8) Excellent communication skills and ability. Qualifications: Bachelor … efficiently. Strong communication skills with the ability to interact effectively with stakeholders at all levels. Requirements: Good experience of managing Information Security compliance and ISO27001 certification. Hands-on experience in maintenance and configuration of Firewall and switch. CISSP, CCNP / HCIP for security or higher certification will be preferred. More ❯
Maidenhead, Berkshire, United Kingdom Hybrid / WFH Options
Grosvenor Casinos Limited
eager to develop their audit and project management skills. Responsibilities include: Providing expert InfoSec advice to internal teams and stakeholders. Supporting audit preparations for ISO27001 and PCI DSS certifications. Reviewing and improving security policies and training materials. Conducting compliance checks and awareness training across venues. Maintaining and updating the IT … of security at The Rank Group. Qualifications The ideal candidate will have experience managing or leading audit activities related to standards such as ISO27001, PCI-DSS, and GDPR. A degree in IT, Information Security, Cyber Security, or equivalent experience is required. Experience leading projects and … plans. Knowledge of ISMS ticketing systems like ServiceNow or Confluence / Jira. Proven ability to resolve issues with senior stakeholders. Strong understanding of ISO27001, PCI DSS, and InfoSec governance. Experience with risk assessments and policy management. A proactive approach to security awareness and training. Interest in enhancing audit and More ❯
IT Internal Controls Manager Permanent Based in Solihull (Hybrid with 2 / 3 days in the office and the rest at home). Will also consider London based. We are looking for an experienced IT Internal Controls Manager to join our friendly and dynamic team here at Waterstones and … and requirements. In-depth knowledge of the ICFR Standards (US SOX, UK Corporate Governance Code) Strong awareness of IT control frameworks (e.g. COBIT, ISO27001, NIST) and regulatory requirements (e.g. GDPR, ISO, ITIL). Experience with Systems transformation projects and an ability to embed More ❯
IT Internal Controls Manager Permanent Based in Solihull (Hybrid with 2 / 3 days in the office and the rest at home). Will also consider London based. We are looking for an experienced IT Internal Controls Manager to join our friendly and dynamic team here at Waterstones and … and requirements. In-depth knowledge of the ICFR Standards (US SOX, UK Corporate Governance Code) Strong awareness of IT control frameworks (e.g. COBIT, ISO27001, NIST) and regulatory requirements (e.g. GDPR, ISO, ITIL). Experience with Systems transformation projects and an ability to embed More ❯
IT Internal Controls Manager Permanent Based in Solihull (Hybrid with 2 / 3 days in the office and the rest at home). Will also consider London based. We are looking for an experienced IT Internal Controls Manager to join our friendly and dynamic team here at Waterstones and … and requirements. In-depth knowledge of the ICFR Standards (US SOX, UK Corporate Governance Code) Strong awareness of IT control frameworks (e.g. COBIT, ISO27001, NIST) and regulatory requirements (e.g. GDPR, ISO, ITIL). Experience with Systems transformation projects and an ability to embed More ❯