warrington, cheshire, north west england, united kingdom
AMS CWS
Hybrid) Purpose of the Role: Evelyn Partners is looking for an experienced information security risk professional with expertise in security compliance and assurance, ISO27001 implementation, PMO (project management office), risk assessments, supply chain, and working on other governance, risk and compliance projects within a team. … assessments on suppliers, vendors, and other third parties across the supply chain. Evaluating vendor security postures using evidence-based assessments (e.g., SOC 2, ISO27001, penetration tests). Ensuring third parties meet Evelyn Partners' minimum security standards and apply effective risk mitigations where gaps are identified. … in the vendor ecosystem. Supporting incident response planning and coordination related to supply chain risk scenarios. Supporting the implementation and continual improvement of ISO27001, Cyber Essentials, and NIST CSF compliance programs. Ensuring security risks are effectively communicated to stakeholders and appropriately documented. Key Accountabilities, Skills More ❯
Hybrid) Purpose of the Role: Evelyn Partners is looking for an experienced information security risk professional with expertise in security compliance and assurance, ISO27001 implementation, PMO (project management office), risk assessments, supply chain, and working on other governance, risk and compliance projects within a team. … assessments on suppliers, vendors, and other third parties across the supply chain. Evaluating vendor security postures using evidence-based assessments (e.g., SOC 2, ISO27001, penetration tests). Ensuring third parties meet Evelyn Partners' minimum security standards and apply effective risk mitigations where gaps are identified. … in the vendor ecosystem. Supporting incident response planning and coordination related to supply chain risk scenarios. Supporting the implementation and continual improvement of ISO27001, Cyber Essentials, and NIST CSF compliance programs. Ensuring security risks are effectively communicated to stakeholders and appropriately documented. Key Accountabilities, Skills More ❯
successful candidate will also play a crucial role in ensuring our organisation's compliance with information security standards and frameworks , particularly Cyber Essentials, ISO27001 … and NIST Cybersecurity Framework. As a Risk Analyst you will be responsible for: Performing internal information security risk assessments and recommending mitigation actions / solutions. Collaborating with stakeholders and project teams to define security requirements based on scope, objectives, data, and technologies. Maintaining risk registers and managing escalations, re … Continuously reviewing security controls to assess changes in residual risk and the sufficiency of compensating controls. Maintaining certifications, such as Cyber Essentials /ISO27001/ NIST CSF v2, against a backdrop of a growing firm and evolving regulations, technology and processes. Assisting in developing control testing and assurance More ❯
london, south east england, United Kingdom Hybrid / WFH Options
55 Exec Search
posture. You’ll work with industry-leading frameworks like Cyber Essentials (CE), Cyber Essentials Plus (CE+), NIST 2, ISO27001/ 223001, DORA , and more. This is the perfect opportunity if you’re looking for more autonomy, rapid career growth, and a dynamic environment —far … and principal consultants as needed. Lead and contribute to diverse security projects, including third-party risk management, mergers and acquisitions, security policy development, ISO27001 implementation, audits and compliance (NIS 2, DORA), risk assessments, remediation programs, and more. Lead, manage, and deliver full cyber security engagements … Bring as a Senior Cyber Security Consultant: 2+ years of information security consulting Experience of Governance, Risk, and Compliance (GRC) frameworks such as ISO27001, ISO 223001, NIST, DORA and other regulatory standards. Experience conducting Cyber Essentials and Cyber Essentials Plus assessments and guiding More ❯
network telemetry technologies. Providing support to members of the wider Operations team as required. Support & maintain the company objectives of ISO 9001 / 18001 /27001 accreditation. Key Skills and Experience: 3 - 5 years of experience on a service provider network in Operations, Engineering … operational experience with carrier-class routers, console servers & switches, (experience with Juniper and Cisco required). Excellent knowledge of L2 & L3 routing protocols, (IPv4+IPv6 / BGP / ISIS / VPLS / IP VPN / MPLS / QinQ / ELINE) and good understanding of … culture. Our employees are driven and committed, with many options to connect and engage in our inclusive environment. Zayo Europe is an Equal Opportunity / Affirmative Action Employer. All qualified applicants will receive consideration for employment without regard to age, race, colour, religion, sex, sexual orientation, gender identity, national More ❯
protect critical infrastructure and improve their security posture in line with industry and regulatory expectations. This delivery-focused role centres on infrastructure security, OT / IT boundary protection, and implementation of technical controls across regulated environments. You will contribute to assurance activities, support security design reviews, and assist in … cloud, on-premises, and hybrid infrastructure, including servers, endpoints, and network layers. Support the design, implementation, and validation of security controls at the OT / IT boundary, addressing segmentation, access control, logging, and monitoring. Contribute to security architecture and design reviews, providing input to ensure compliance with relevant regulations. … cybersecurity or infrastructure security (CompTIA, ISACA, ISC2, GIAC, Microsoft, CREST, Cisco Security, or equivalent). Certifications in security governance and frameworks: ISO/IEC27001, NIST CSF, CAF, or CIS Controls. Additional vendor or platform-specific certifications (AWS, Azure, Microsoft, GCP, Palo Alto More ❯
if you require a different format of this document, please get in touch with at UKI.recruitment@tcs.com or call TCS London Office number 02031552100 / +44 204 520 2575 with the subject line: “Application Support Request”. Role: Lead DevOps Job Type: Permanent Location: London / Newcastle Ready … and systems, including IAM policy design, access management, encryption standards, and compliance audits Design, implement, and manage various DevOps tools and technologies, including CI / CD platforms (Jenkins, GitLab CI), configuration management tools (Ansible, Puppet), and containerization technologies (Docker, ECS, Kubernetes) Monitor system performance, identify bottlenecks, and implement optimizations … performance metrics, and provide actionable recommendations Document and refine DevOps practices, maintaining version control, release management workflows, and configuration documentation Your Profile Essential skills / knowledge / experience: AWS Security & Compliance Expertise: Deep understanding of AWS Security, Identity, and Compliance services, including IAM, AWS Organizations, SCPs, Secrets Manager More ❯
UK. The Information Security Manager Role: As Information Security Manager, you’ll be the go-to expert for all things security, steering our ISO27001 compliance and leading security strategy across the business. From protecting internal operations to aligning with defence frameworks, your work will directly … the cutting edge of cybersecurity excellence. Key Responsibilities of the Information Security Manager: Maintain and enhance ISO27001, Cyber Essentials / Cyber Essentials+, and DCPP compliance Lead policy development and risk mitigation across the business Advise on Secure by Design (SbD) assurance and government protective … Own security controls for our North Bristol site Support the creation of project-specific security documentation and assurance strategies Skills & Experience: Experience leading ISO27001 and cybersecurity governance Strong knowledge of NIST CSF, ISO 27005, and DCPP frameworks Confident communicator with a security-first More ❯
Employment Type: Permanent
Salary: £65000 - £75000/annum Hybrid, Great Benefits
UK. The Information Security Manager Role: As Information Security Manager, you'll be the go-to expert for all things security, steering our ISO27001 compliance and leading security strategy across the business. From protecting internal operations to aligning with defence frameworks, your work will directly … the cutting edge of cybersecurity excellence. Key Responsibilities of the Information Security Manager: Maintain and enhance ISO27001, Cyber Essentials / Cyber Essentials+, and DCPP compliance Lead policy development and risk mitigation across the business Advise on Secure by Design (SbD) assurance and government protective … Own security controls for our North Bristol site Support the creation of project-specific security documentation and assurance strategies Skills & Experience: Experience leading ISO27001 and cybersecurity governance Strong knowledge of NIST CSF, ISO 27005, and DCPP frameworks Confident communicator with a security-first More ❯
Select how often (in days) to receive an alert: Group Process & Assurance Manager (Fixed-term contract) Country / Region: GB Connect with Eutelsat Group Be part of a new era in communications, transforming connectivity with Eutelsat Group - the world's first GEO-LEO integrated global satellite operator. As a … and crush deadlines. What You'll Do: Reporting to the Head of Group Quality, lead and manage the cross-functional PMO portfolio of programs / projects. As a program manager, deploy the necessary methodology expertise to successful execution. Manage and support key cross-organization programs with ISO … strategy to support Quality, process assurance, and continuous improvement. Manage and build relationships with key functional stakeholders. Lead on the preparation of and execution / governance scorecards and reporting. Develop PMO support to key programs with respect to reporting and data analysis. Support executive leadership in the implementation of More ❯
Southampton, Hampshire, South East, United Kingdom
University of Southampton
About the Role This is a key role in the design and development of a Secure Data Environment which will be certified to ISO27001 standards. You will be joining our current High Performance Computing team, who have years of experience delivering research computing, and working … Research Environments IT infrastructure and automation tooling required to deliver the Secure Data Environment and its compliance with the appropriate accreditations (e.g., Cyber Essentials / Plus, ISO/IEC27001). - Work with a combination of virtualised and bare metal infrastructure to More ❯
portsmouth, hampshire, south east england, united kingdom
University of Southampton
About the Role This is a key role in the design and development of a Secure Data Environment which will be certified to ISO27001 standards. You will be joining our current High Performance Computing team, who have years of experience delivering research computing, and working … Research Environments IT infrastructure and automation tooling required to deliver the Secure Data Environment and its compliance with the appropriate accreditations (e.g., Cyber Essentials / Plus, ISO/IEC27001). - Work with a combination of virtualised and bare metal infrastructure to More ❯
Southampton, Hampshire, South East, United Kingdom
University of Southampton
About the Role This is a key role in the design and development of a Secure Data Environment which will be certified to ISO27001 standards. You will be joining our current High Performance Computing team, who have years of experience delivering research computing, and working … Research Environments IT infrastructure and automation tooling required to deliver the Secure Data Environment and its compliance with the appropriate accreditations (e.g., Cyber Essentials / Plus, ISO/IEC27001). - Work with a combination of virtualised and bare metal infrastructure to More ❯
portsmouth, hampshire, south east england, united kingdom
University of Southampton
About the Role This is a key role in the design and development of a Secure Data Environment which will be certified to ISO27001 standards. You will be joining our current High Performance Computing team, who have years of experience delivering research computing, and working … Research Environments IT infrastructure and automation tooling required to deliver the Secure Data Environment and its compliance with the appropriate accreditations (e.g., Cyber Essentials / Plus, ISO/IEC27001). - Work with a combination of virtualised and bare metal infrastructure to More ❯
systems, frameworks, and processes to support the organisation in achieving multiple industry accreditations within defined industry standards (e.g., ISO27001/ 27101, NIST, Cyber Essentials, GDPR, GXP, etc.). Key Responsibilities: Leadership & Strategy Build, mentor, and lead a high-performing, professional cybersecurity team. Develop and … their appropriate Risk Treatment Plans. Risk & Compliance Management Define and enforce IT security policies, standards, and procedures. Ensure compliance with industry accreditations (e.g., ISO27001, NIST, GDPR), working closely with external auditors and regulatory bodies. Conduct regular risk assessments and vulnerability management, and penetration testing to … enterprise-sized organisations. Proven track record in Security Operations, Risk Management, IAM, and Compliance. Hands-on experience with security tools such as SIEM, EDR / XDR, Firewalls, IDS / IPS, DLP, and IAM solutions. Working knowledge of security frameworks: ISO27001, NIST, CIS, SOC More ❯
bristol, south west england, United Kingdom Hybrid / WFH Options
Matchtech
knowledge sharing across teams. What We’re Looking For Technical Experience & Knowledge Experience with risk management frameworks and methodologies such as ISO/IEC27001/ 2, ISO27005 / 31000, NIST 800-30, NIST 800-53. Strong understanding of security … standards and frameworks including OWASP, Secure by Design principles, and MOD-specific guidelines (e.g., JSP, Def Stan 05-138 / 139). Familiarity with HMG security principles and assurance frameworks is advantageous. Comfortable using threat modelling tools and implementing mitigation strategies. Experience with NIST standards. (this is an absolute More ❯
and Procedure Management: directs, develops or maintains organisational cyber and information security policies, standards and processes, using recognised standards (e.g. the ISO/IEC 27000 family, NIST CSF) where appropriate. Applies recognised cyber and information security standards and controls within an organisation, programme, project or … or (relevant) compliance roles. Strong understanding of security governance, risk, and compliance frameworks such as ISO27001, NIST 800-53 / CSF, NIS / NIS2, DORA, UK CNI / OT / IIOT compliance. Hands-on experience building credibility with external stakeholders, including More ❯
london, south east england, United Kingdom Hybrid / WFH Options
Vantage Data Centers
be part of the leadership team responsible for protecting a rapidly expanding global enterprise. The OT Manager, Cybersecurity, will audit the Industrial Control System / Operational Technology (ICS / OT) environment and perform risk / vulnerability assessments leading to the development of an enterprise strategy / design plan. The OT Manager, Cybersecurity, will lead the team on implementation (hands-on configuration) of the enterprise ICS / OT systems Additional responsibilities include research, classification, and root cause analysis of security events that occur within the environment. The ideal candidate will have security industry knowledge that … performing security assessments in an OT environment. Excellent leadership skills as this is a people manager role. Strong understanding of cybersecurity frameworks for ICS / OT environments Strong understanding of OT network communication protocols and industrial networking topologies. Familiarity with NIST (National Institute of Standards and Technology) Special Publication More ❯
email, calls, support tickets) Contextual Understanding: Understand the customer's business context and how their compliance questions relate to their use of our products / services or their broader GRC strategy Information Dissemination: Clearly articulate complex compliance concepts to both technical and non-technical customer stakeholders Relationship Building: Build … assessment process, and Annex A controls accurately Strong familiarity and understanding of ISO 42001 (Artificial Intelligence Management Systems) and its core principles / requirements. Must be able to discuss its objectives and key components Exceptional communication skills (written and verbal), with a proven ability to explain complex … a sense of belonging for future and current Mironeers around the world, and foster an environment where everyone can collaborate and embrace differences. Resume / CV Resume / CV Attach File types: pdf, doc, docx, txt, rtf File size: max 2MB Cover Letter Attach File types: pdf, doc More ❯
bristol, south west england, United Kingdom Hybrid / WFH Options
Matchtech
developing mitigation strategies. Conducting security code reviews and offering guidance to ensure a secure-by-design approach. Ensuring products meet key regulatory standards (ISO27001, NIST 800 series, JSPs, Def Stans). Authoring vital security documentation, including RMADS and Security Assurance Documents. … Performing penetration testing and coordinating remediation efforts. What You Bring: A solid understanding of security frameworks such as ISO27001/ 2, ISO 31000, NIST 800-30 / 37 / 53. Hands-on experience with Defence Standards (JSPs, HMG, Def Stan … / 139). Strong knowledge of security testing tools and techniques. Excellent communication skills — able to explain complex risks and solutions clearly. A proactive, problem-solving mindset with a high level of personal integrity and professional ethics. Experience with NIST standards. (this is an absolute must) You'll Succeed More ❯
for the better. The role is hybrid and will require 2 days a week on site in London. As the Group Information Security Analyst / Officer, you will: Lead and maintain security accreditations: Successfully manage Cyber Essentials, Cyber Essentials Plus, and ISO27001 certifications. Deliver … comprehensive training: Develop and deliver engaging training on ISO27001, cybersecurity awareness, AI, and data protection. Stay ahead of threats: Continuously monitor and adapt to emerging cybersecurity threats, ensuring robust governance and safeguarding measures. Manage business continuity: Oversee Business Continuity Planning (BCP) and Disaster Recovery Plans. … and maintain a strong security posture. ISMS management: Coordinate the improvement and maintenance of the Information Security Management System (ISMS) in line with ISO27001 and Cyber Essentials. Experience Required: Information Security Management: Extensive experience in implementing and maintaining ISMS and achieving ISO27001More ❯
london, south east england, United Kingdom Hybrid / WFH Options
FirstBank UK Limited
recognised, top-tier bank who provide world-class services to various institutions and individuals. Offering a comprehensive range of retail and corporate financial services / products, this thriving business with over 10 million active customers in over 700 business locations is the oldest African bank in the UK. Due … holder will work very closely with all third-party vendors involved in the remediation process. The job holder will also prepare the necessary MI / Dashboard reports for the relevant stakeholders and alleviate the workload of the IT Service desk function when required. The primary responsibilities of the role … CMSS) Incident / Response & Forensic Management Skills IT Technical Admin Support - Azure, Oracle Cloud Infrastructure (OCI Cloud) Microsoft Windows Support & administration, CE+, ISO27001 Email and Information Security Filtering / Monitoring Solutions, Egress Hands on experience on Linux and Mac Administration Support Good understanding of Windows and Linux More ❯
with Security, Networking, and Systems teams to ensure secure and efficient connectivity across the organization. Maintain and troubleshoot core security systems including firewalls, IDS / IPS, VPN gateways, vulnerability scanners, SIEM platforms, and security monitoring tools. Diagnose and resolve system and network issues, working across teams to remediate security … Engineering, with a focus on enterprise-scale infrastructure. In-depth expertise with Microsoft security platforms including Azure AD Conditional Access, Microsoft Defender for Endpoint / Cloud, Microsoft Sentinel, and Microsoft Purview. Strong understanding of Zero Trust principles and cloud security best practices across hybrid environments. Hands-on experience designing … 3+ years of experience with secure deployment, management, and migration of cloud and on-prem platforms in a hybrid network model. Proficient in LAN / WAN routing, switching, VLANs, and core protocols such as DNS, DHCP, HTTP / S, SNMP, NetFlow, and TACACS. Hands-on experience with Palo More ❯
Sevenoaks, Kent, Kemsing, United Kingdom Hybrid / WFH Options
Bowerford Associates
We are searching for a detail-oriented and experienced part-time Compliance Officer to support and maintain compliance frameworks across ISO 9001 (Quality Management), ISO 14001 (Environmental Management) and ISO27001 (Information Security Management). The role is critical in ensuring our … remote position with office visits circa 2 or 3 times per month and during audit periods. Key Responsibilities: Monitor and maintain compliance with ISO 9001, 14001 and 27001 standards … Conduct internal audits and support external audit preparations Maintain documentation, records, and procedures as per ISO requirements Support risk assessments and corrective / preventive actions (CAPA) Collaborate with teams to ensure ongoing adherence to environmental, quality, and information security policies Assist in staff training and awareness programs More ❯
Employment Type: Permanent
Salary: £35000 - £45000/annum Pension, Holiday & More
is critical in shaping and enforcing security policies, driving enterprise-wide risk management, and ensuring ongoing compliance with frameworks such as SOC 2, ISO27001, and other regulatory requirements . The ideal candidate is not only a technical expert but also a business-savvy leader who … Develop, implement, and maintain the company's information security governance framework. Lead the strategy and execution for security compliance initiatives including SOC 2 , ISO27001 , NIST , and other relevant standards. Oversee and manage the enterprise risk management program , including identification, assessment, and mitigation of information security … SOC 2, ISO27001, HIPAA, NIST, GDPR). Proven experience managing or leading successful SOC 2 audits and other regulatory / compliance initiatives. Confident engaging with auditors and enterprise clients; experience representing security to financial institutions. Strong understanding of enterprise risk management methodologies. Technical background More ❯