assurance, and oversight Ability to influence stakeholders and communicate effectively at all levels, including non-technical audiences Knowledge of security frameworks such as ISO27001, NIST, or similar Experience identifying control gaps and working across functions to address them Comfortable working in a collaborative, solutions-focused … environment Sector background is flexible – consulting, commercial, or industry experience welcome Relevant certifications (CISM, CISSP, CRISC, ISO27001 Lead Auditor) are a plus, but not required This role it's a great fit for someone who understands information security frameworks, knows how to translate technical risks More ❯
leeds, west yorkshire, yorkshire and the humber, United Kingdom
Bestman Solutions
assurance, and oversight Ability to influence stakeholders and communicate effectively at all levels, including non-technical audiences Knowledge of security frameworks such as ISO27001, NIST, or similar Experience identifying control gaps and working across functions to address them Comfortable working in a collaborative, solutions-focused … environment Sector background is flexible – consulting, commercial, or industry experience welcome Relevant certifications (CISM, CISSP, CRISC, ISO27001 Lead Auditor) are a plus, but not required This role it's a great fit for someone who understands information security frameworks, knows how to translate technical risks More ❯
experience in the operational delivery of information security in a multi-site organisation, and be able to offer experience of Public Sector Network (PSN) / Syap compliance requirements, including evidenced understanding of maintaining accreditation. Your application / CV should show evidence of: Developing and implementing information security and … PDP, BCS etc) Practical knowledge of current Information Security Cyber and Assurance Management standards and best practice (including ISO27001/ NIST Framework). Knowledge of current data protection legislation, standards and practice. Knowledge and understanding of the Technical, Human Resource, Procurement, Project, and Physical More ❯
experience in the operational delivery of information security in a multi-site organisation, and be able to offer experience of Public Sector Network (PSN) / Syap compliance requirements, including evidenced understanding of maintaining accreditation. Your application / CV should show evidence of: Developing and implementing information security and … PDP, BCS etc) Practical knowledge of current Information Security Cyber and Assurance Management standards and best practice (including ISO27001/ NIST Framework). Knowledge of current data protection legislation, standards and practice. Knowledge and understanding of the Technical, Human Resource, Procurement, Project, and Physical More ❯
experience in the operational delivery of information security in a multi-site organisation, and be able to offer experience of Public Sector Network (PSN) / Syap compliance requirements, including evidenced understanding of maintaining accreditation. Your application / CV should show evidence of: Developing and implementing information security and … PDP, BCS etc) Practical knowledge of current Information Security Cyber and Assurance Management standards and best practice (including ISO27001/ NIST Framework). Knowledge of current data protection legislation, standards and practice. Knowledge and understanding of the Technical, Human Resource, Procurement, Project, and Physical More ❯
the Microsoft cloud. Your responsibilities will include: Evaluate and enhance existing IT systems, management procedures, and security protocols to ensure robust protection. Oversee ISO27001 and other key accreditations by collaborating with internal teams and external auditors. Manage information security requests and compliance reports, ensuring adherence … your existing skills while developing new ones, contributing to the strategic security objectives of the Company and ensuring adherence to critical accreditations, including ISO27001, GDPR, Cyber Essentials, and PCI DSS. The successful candidate will demonstrate: Strong analytical skills with a meticulous approach to identifying and … expertise in information security. Happy to travel occasionally to other sites as required. Desirable Experience: Demonstrable expertise in external audit, compliance, and security processes (ISO27001, GDPR, Cyber Essentials and PCI DSS). Microsoft accreditation or other recognised certifications (e.g. Microsoft Learning, CISA, CISM, CRISC, CCSP) would be very beneficial. Benefits More ❯
cyber security strategy Lead and grow a small, globally distributed security team Oversee security operations , threat detection, and incident response Ensure compliance with ISO27001, NIST, GDPR and DORA Work with tech teams to embed secure software development practices (SDLC) Build and report on security KPIs … pen tests & tabletop exercises Promote strong cyber awareness and culture across the firm What You Need: ✔ Proven experience in a Head of IT Security / InfoSec role ✔ Strong track record across cloud security (Azure) , network & endpoint protection , risk & compliance ✔ Solid grasp of governance frameworks : ISO27001More ❯
cyber security strategy Lead and grow a small, globally distributed security team Oversee security operations , threat detection, and incident response Ensure compliance with ISO27001, NIST, GDPR and DORA Work with tech teams to embed secure software development practices (SDLC) Build and report on security KPIs … pen tests & tabletop exercises Promote strong cyber awareness and culture across the firm What You Need: ✔ Proven experience in a Head of IT Security / InfoSec role ✔ Strong track record across cloud security (Azure) , network & endpoint protection , risk & compliance ✔ Solid grasp of governance frameworks : ISO27001More ❯
london, south east england, United Kingdom Hybrid / WFH Options
Harrington Starr
cyber security strategy Lead and grow a small, globally distributed security team Oversee security operations , threat detection, and incident response Ensure compliance with ISO27001, NIST, GDPR and DORA Work with tech teams to embed secure software development practices (SDLC) Build and report on security KPIs … pen tests & tabletop exercises Promote strong cyber awareness and culture across the firm What You Need: ✔ Proven experience in a Head of IT Security / InfoSec role ✔ Strong track record across cloud security (Azure) , network & endpoint protection , risk & compliance ✔ Solid grasp of governance frameworks : ISO27001More ❯
particularly in IT Compliance, IT Risk Management, and Vendor Management—is desirable. Strong knowledge of IT risk management frameworks and standards such as ISO27001 and NIST. Proven experience in developing and implementing risk management strategies, policies, and procedures. Relevant certifications such as CRISC, CISA, CGEIT … or ISO27001 Implementer. Previous experience in a financial services environment is advantageous. Additional risk qualifications with an IT specialism would be beneficial. Solid academic background with strong analytical and problem-solving skills. Proficiency in Microsoft Office, particularly Excel, Word, and PowerPoint. Tradition do not accept More ❯
particularly in IT Compliance, IT Risk Management, and Vendor Management—is desirable. Strong knowledge of IT risk management frameworks and standards such as ISO27001 and NIST. Proven experience in developing and implementing risk management strategies, policies, and procedures. Relevant certifications such as CRISC, CISA, CGEIT … or ISO27001 Implementer. Previous experience in a financial services environment is advantageous. Additional risk qualifications with an IT specialism would be beneficial. Solid academic background with strong analytical and problem-solving skills. Proficiency in Microsoft Office, particularly Excel, Word, and PowerPoint. Tradition do not accept More ❯
particularly in IT Compliance, IT Risk Management, and Vendor Management—is desirable. Strong knowledge of IT risk management frameworks and standards such as ISO27001 and NIST. Proven experience in developing and implementing risk management strategies, policies, and procedures. Relevant certifications such as CRISC, CISA, CGEIT … or ISO27001 Implementer. Previous experience in a financial services environment is advantageous. Additional risk qualifications with an IT specialism would be beneficial. Solid academic background with strong analytical and problem-solving skills. Proficiency in Microsoft Office, particularly Excel, Word, and PowerPoint. Tradition do not accept More ❯
Newcastle upon Tyne, Tyne and Wear, Tyne & Wear, United Kingdom
Michael Page
Europe. Description Secure and maintain the IT infrastructure, including networks, servers, and cloud environments. Implement, monitor, and manage security solutions such as firewalls, IDS / IPS, and endpoint protection. Conduct vulnerability assessments on the infrastructure Ensure compliance with regulatory requirements (e.g., GDPR, ISO27001) and … and intrusion detection systems Desirable Experience in a manufacturing or industrial environment, Operational Technologies Knowledge with security frameworks and compliance requirements (e.g., NIST, ISO27001, GDPR) Experience with SIEM solutions, endpoint security, and identity & access management Ability to conduct risk assessments and develop mitigation strategies. Job More ❯
and contemporary contextual cybersecurity risks. Developing and operating our ISMS, and all that this entails: You will also be responsible for maintaining our ISO27001 and Cyber Essentials certifications-and other security-related compliance accreditations as may be required. We are a scaling business, staying lean … EBA Guidelines). Has a comprehensive understanding of what it takes to comply with cyber security industry standards and frameworks in practise (e.g. ISO27001, NIST CSF, SP 800-53, NCSC CAF, Cyber Essentials). Has a thorough understanding of cyber security threat and risk with … development Regular socials to unwind and have some fun Apply for this job indicates a required field First Name Last Name Email Phone Resume / CV Accepted file types: pdf, doc, docx, txt, rtf LinkedIn Profile What are your salary expectations for this role? What is your notice period More ❯
Luton, Bedfordshire, United Kingdom Hybrid / WFH Options
leonardo company
cyber resilience controls to embedded systems It would be desirable, but not essential , if you also had one or more of: Practical experience of ISO27001/ 27004 / 27005 or NIST Risk Management Framework (RMF); Knowledge of UK / NATO Information Assurance / Accreditation frameworks; Knowledge … of EASA / FAA Airworthiness Certification frameworks; Awareness of current crypto technologies, Key Management Systems & practical COMSEC; Chartered Engineer status with a recognised body; Awarded or looking to achieve an NCSC Certified Cyber Professional (CCP) recognition; Awareness of Information Security (INFOSEC), Communications Security (COMSEC), Transmission Security (TRANSEC), Product Safety … and their inter-relationship; Experience of producing and delivering training / awareness material within a corporate environment; Familiarity with incident investigation and implementation of an investigation process such as used by the Air Accidents Investigation Branch (AAIB); Why Leonardo? The business, primarily based in Luton, has a rich heritage More ❯
in security design and assurance, particularly within large-scale IT and OT environments. Security Frameworks: Strong understanding of security frameworks such as NIST, ISO27001, IEC 62443 (for OT), TOGAF, or SABSA. IT & OT Security: IT Role: Expertise in securing enterprise IT environments, cloud More ❯
in security design and assurance, particularly within large-scale IT and OT environments. Security Frameworks: Strong understanding of security frameworks such as NIST, ISO27001, IEC 62443 (for OT), TOGAF, or SABSA. IT & OT Security: IT Role: Expertise in securing enterprise IT environments, cloud More ❯
Swindon, Wiltshire, United Kingdom Hybrid / WFH Options
Randstad Technologies Recruitment
trends. Partner with teams across the globe to design, implement, and test security tools and controls. Lead the journey to achieving and maintaining ISO27001 certification. Stay sharp on cybersecurity developments, translating new risks and regulations into meaningful action. Drive cultural change by creating impactful cybersecurity … You Bring to the Table We're looking for a curious, thoughtful, and detail-oriented professional. Hands-on experience implementing and auditing against ISO27001 standards. A solid foundation in enterprise-level Information Security practices. Strong analytical skills and a calm approach under competing demands. Familiarity … 2010. For the purposes of the Conduct Regulations 2003, when advertising permanent vacancies we are acting as an Employment Agency, and when advertising temporary / contract vacancies we are acting as an Employment Business. More ❯
Web, Cloud Infrastructure & AI). The new InfoSec Lead will... Define and operationalise security & compliance across infrastructure and applications. Lead the roadmap to ISO27001 certification and maintain regulatory readiness. Manage internal and external audits, including documentation and stakeholder preparation. Embed secure practices into the SDLC … healthcare. Proven experience leading ISO27001 audits and managing UK GDPR requirements. Strong AWS knowledge and understanding of modern SaaS / cloud security tools. Familiarity with health tech standards, SaMD, or MHRA regulation is a bonus. Clear communication skills to liaise across legal, ops, and More ❯
Web, Cloud Infrastructure & AI). The new InfoSec Lead will... Define and operationalise security & compliance across infrastructure and applications. Lead the roadmap to ISO27001 certification and maintain regulatory readiness. Manage internal and external audits, including documentation and stakeholder preparation. Embed secure practices into the SDLC … healthcare. Proven experience leading ISO27001 audits and managing UK GDPR requirements. Strong AWS knowledge and understanding of modern SaaS / cloud security tools. Familiarity with health tech standards, SaMD, or MHRA regulation is a bonus. Clear communication skills to liaise across legal, ops, and More ❯
Web, Cloud Infrastructure & AI). The new InfoSec Lead will... Define and operationalise security & compliance across infrastructure and applications. Lead the roadmap to ISO27001 certification and maintain regulatory readiness. Manage internal and external audits, including documentation and stakeholder preparation. Embed secure practices into the SDLC … healthcare. Proven experience leading ISO27001 audits and managing UK GDPR requirements. Strong AWS knowledge and understanding of modern SaaS / cloud security tools. Familiarity with health tech standards, SaMD, or MHRA regulation is a bonus. Clear communication skills to liaise across legal, ops, and More ❯
implement a comprehensive security architecture aligned with Casella's business goals, objectives, and regulatory requirements. Design and review security solutions, including firewalls, intrusion detection / prevention systems, antivirus software, and encryption protocols. Conduct regular risk assessments to identify vulnerabilities and recommend security measures through company-wide testing. Collaborate with … coding, testing, and debugging technologies. Experience or interest in environmental and sustainability fields is a plus. Knowledge of ISO27001/ 27002, ITIL, and COBIT frameworks is preferred. A Bachelor's Degree in IT, Cybersecurity, or Information Security, or equivalent experience, is required. Attributes Excellent More ❯
Our Security, Risk, and Compliance consultants will deliver architecture guidance, design and implement security controls on cloud projects, and consult with and enable customer / partner in cloud security domains and support ProServe field engagements as the security subject matter expert. AWS consultants will collaborate with customers and partners … when needed. A day in the life Working with customers to understand their business challenges around security "in" the cloud and to help design / architect technical solutions to address those business needs. Support Amazonians and customers across ASEAN region in ongoing projects as the field security SME to … why you'll find endless knowledge-sharing, mentorship and other career-advancing resources here to help you develop into a better-rounded professional. Work / Life Balance We value work-life harmony. Achieving success at work should never come at the expense of sacrifices at home, which is why More ❯
Promote security awareness and help drive a risk-aware culture across the business Provide expert guidance to ensure alignment with security frameworks (e.g. ISO27001, NIST) Support audit, regulatory compliance, and governance efforts Influence adoption of secure solutions across both strategic and operational initiatives What They … and stakeholder engagement skills Familiarity with cloud and hybrid security models Understanding of regulatory compliance (e.g., GDPR, PCI DSS) Knowledge of frameworks like ISO27001, NIST, CIS, or COBIT If keen please apply More ❯
Promote security awareness and help drive a risk-aware culture across the business Provide expert guidance to ensure alignment with security frameworks (e.g. ISO27001, NIST) Support audit, regulatory compliance, and governance efforts Influence adoption of secure solutions across both strategic and operational initiatives What They … and stakeholder engagement skills Familiarity with cloud and hybrid security models Understanding of regulatory compliance (e.g., GDPR, PCI DSS) Knowledge of frameworks like ISO27001, NIST, CIS, or COBIT If keen please apply More ❯