IT Internal Controls Manager Permanent Based in Solihull (Hybrid with 2 / 3 days in the office and the rest at home). Will also consider London based. We are looking for an experienced IT Internal Controls Manager to join our friendly and dynamic team here at Waterstones and … and requirements. In-depth knowledge of the ICFR Standards (US SOX, UK Corporate Governance Code) Strong awareness of IT control frameworks (e.g. COBIT, ISO27001, NIST) and regulatory requirements (e.g. GDPR, ISO, ITIL). Experience with Systems transformation projects and an ability to embed More ❯
IT Internal Controls Manager Permanent Based in Solihull (Hybrid with 2 / 3 days in the office and the rest at home). Will also consider London based. We are looking for an experienced IT Internal Controls Manager to join our friendly and dynamic team here at Waterstones and … and requirements. In-depth knowledge of the ICFR Standards (US SOX, UK Corporate Governance Code) Strong awareness of IT control frameworks (e.g. COBIT, ISO27001, NIST) and regulatory requirements (e.g. GDPR, ISO, ITIL). Experience with Systems transformation projects and an ability to embed More ❯
IT Internal Controls Manager Permanent Based in Solihull (Hybrid with 2 / 3 days in the office and the rest at home). Will also consider London based. We are looking for an experienced IT Internal Controls Manager to join our friendly and dynamic team here at Waterstones and … and requirements. In-depth knowledge of the ICFR Standards (US SOX, UK Corporate Governance Code) Strong awareness of IT control frameworks (e.g. COBIT, ISO27001, NIST) and regulatory requirements (e.g. GDPR, ISO, ITIL). Experience with Systems transformation projects and an ability to embed More ❯
and standardised tools that support long-term business needs. Cybersecurity Oversight: Develop and implement a cybersecurity strategy aligned with industry best practices (e.g., ISO27001, NIST). Protect company systems and data through robust policies, security tools, and continuous monitoring. Device & Endpoint Management : Oversee the full … work and global operations. IT Support & Service Delivery: Establish a scalable and responsive global IT support model, including ticketing systems, SLAs, and standardised onboarding / offboarding processes. Collaboration Tools & Intranet: Lead the implementation and management of internal collaboration tools, including the development of an intranet or SharePoint environment to More ❯
and standardised tools that support long-term business needs. Cybersecurity Oversight: Develop and implement a cybersecurity strategy aligned with industry best practices (e.g., ISO27001, NIST). Protect company systems and data through robust policies, security tools, and continuous monitoring. Device & Endpoint Management : Oversee the full … work and global operations. IT Support & Service Delivery: Establish a scalable and responsive global IT support model, including ticketing systems, SLAs, and standardised onboarding / offboarding processes. Collaboration Tools & Intranet: Lead the implementation and management of internal collaboration tools, including the development of an intranet or SharePoint environment to More ❯
london, south east england, United Kingdom Hybrid / WFH Options
Quinbrook Infrastructure Partners
and standardised tools that support long-term business needs. Cybersecurity Oversight: Develop and implement a cybersecurity strategy aligned with industry best practices (e.g., ISO27001, NIST). Protect company systems and data through robust policies, security tools, and continuous monitoring. Device & Endpoint Management : Oversee the full … work and global operations. IT Support & Service Delivery: Establish a scalable and responsive global IT support model, including ticketing systems, SLAs, and standardised onboarding / offboarding processes. Collaboration Tools & Intranet: Lead the implementation and management of internal collaboration tools, including the development of an intranet or SharePoint environment to More ❯
have knowledge of security standards and processes such as ISO27001 standards, (NCSC) CAF, Cyber Essentials, NIST, and Cyber Essentials / Plus. We'll also look for your experience in: Developing cyber policy and procedures Data protection and privacy Security change management Understanding business continuity More ❯
Leeds, Yorkshire, United Kingdom Hybrid / WFH Options
Lloyds Bank plc
Network Security Prevention, Detection, Compliance and Assurance team - part of the wider Network Security & Traffic Management Lab - which manages critical controls like Intrusion Prevention / Detection Systems (IPS / IDS) and Network Detection & Response (NDR) across our on-prem and multi-cloud environment. In this role, you'll … ll need Demonstrable experience in network security or infrastructure roles, with deep technical knowledge of security boundary devices such as firewalls and intrusion detection / prevention systems Firewall policy expertise:Good understanding of firewall rule sets and network security policy standard practices - you know how to design and review … code" frameworks. You're comfortable using technology to simplify complex processes. Compliance and controls knowledge:Familiarity with regulatory standards and certification frameworks (e.g. ISO27001, PCI-DSS) and experience participating in audits or maintaining key security controls. You understand how to translate regulatory requirements into practical More ❯
periodic reviews (musters) and conduct spot checks of classified assets Maintain company security documents, asset registers, risk registers, and reports Protectively Marked Material Management / Mustering (PPM) and secure disposal of assets Logging in / out of assets, movement / transport plans, liaising with the authority Maintain … management Advising management on the interpretation and implementation of contractual and legislative security controls. Conduct and administrate internal security audits and address observations and / or non-conformances relating to protective security following an audit Conduct and administrate supply chain security audits and address observations and / or … non-conformances relating to protective security following an audit Update and maintain the ISO27001 ISMS and other security accreditation documents Update and maintain the site risk register Identify new risks, determine mitigations and implement suitable controls and measures Arranging for appropriate security education and awareness More ❯
principles and the unique challenges posed by AI technologies. What you'll be doing: AI Security Architecture: Design and implement secure architectures for AI / ML models, data pipelines, and related infrastructure. Develop security policies and procedures specific to AI systems. Evaluate and select security tools and technologies for … Communicate security risks and recommendations effectively to both technical and non-technical audiences. What experience you'll bring: 7+ Years experience in a Cyber / Information Security Role. Hold a current and relevant Security Certifications (e.g., CISSP, CISM). Extensive knowledge of security best practices, frameworks, and standards (e.g. … ISO27001). Proven experience as a Security Architect, with a strong focus on AI security. Deep understanding of AI / ML concepts, including model development, data pipelines, and deployment. Strong understanding of ethical AI principles and practices. Experience with AI security tools and technologies. More ❯
tools (GuardDuty, CloudTrail, Config, WAF). Proficiency in CloudFormation, Terraform, and scripting languages like Python or Bash. Knowledge of compliance standards (SOC 2, ISO27001, GDPR, PCI-DSS) and experience ensuring compliance in AWS environments. Experience with security incident response, monitoring, and post-incident remediation. Ability More ❯
frameworks and their integration with threat intelligence. Hands-on experience with cloud security reviews (AWS, Azure, GCP) considering cloud-specific threats. Familiarity with ISO27001 audits and threat-informed compliance practices. Additional certifications such as CISM, CISSP, ECSA, CREST CCT are advantageous. Who we are: We More ❯
expertise. Ability to optimize operational costs while maintaining service quality. Regulatory & Compliance Expertise Knowledge of security industry regulations, standards, and best practices, including: ISO27001 (Information Security) GDPR (for data privacy in surveillance) CPNI (Centre for the Protection of National Infrastructure) guidelines Local and international security More ❯
Python, Bash, or Perl * Excellent data visualisation and reporting skills * Solid understanding of cybersecurity principles and threat landscapes * Familiarity with compliance frameworks (e.g., GDPR, ISO27001, NIST, Cyber Essentials) * Analytical mindset with attention to detail * Strong communication and documentation skills * Ability to work independently and as part of a team * Passion More ❯
processes for the business analysis centre of excellence. Supporting the development of resources and materials for the business analysis toolkit. Establishing and chairing focus / steering groups within client projects when required. Supporting smaller project tasks to ensure successful delivery. Undertaking maturity assessments related to IT processes and services. More ❯
Stockport, Cheshire, United Kingdom Hybrid / WFH Options
Quadris Ltd
self-motivated individual who enhances our reputation through delivering innovative solutions, supporting colleagues, and sharing knowledge. Ensuring client satisfaction, maintaining security standards (including ISO27001), demonstrating troubleshooting skills, and embracing new technologies are key indicators of success. Essential Skills and Qualifications: Valid driving license and vehicle … of Linux OS and open-source tech Server racking, stacking, and cabling skills Proficiency with virtualization (VMware, Hyper-V, KVM) Strong networking skills (TCP / IP, routing, switching, VPN, firewalls) Experience with enterprise backup solutions (Veeam, Commvault, Nakivo) Knowledge of storage tech (SAN, NAS) Proficiency in VMware ESXi and … problem-solving skills Ability to produce clear, compliant documentation Strong communication skills Ability to manage multiple projects and clients Ability to obtain SC and / or NPPV3 clearance Highly Desirable Skills: Experience in MSP or Professional Services, understanding of ITIL Knowledge of Dell EMC storage solutions Experience with hyper More ❯
runcorn, north west england, United Kingdom Hybrid / WFH Options
Swissport
to tools, processes, or controls. Qualifications and Competencies: 2–3 years of hands-on experience in cybersecurity or IT roles involving security operations, system / network monitoring, or incident response. Familiarity with core information security concepts, such as email security, endpoint detection and response, vulnerability management, and SIEM. Understanding … of at least one information security framework (e.g., ISO27001, NIST) and general awareness of regulations such as GDPR. Strong communication skills, with the ability to explain technical risks to non-technical users. Enthusiastic, proactive team player with a continuous improvement mindset. Ability to take initiative More ❯
Cost, and Operations). Infrastructure as Code (IaC) & Automation: Automate infrastructure provisioning using Terraform, ARM Templates, Bicep, or Azure DevOps pipelines . Implement CI / CD pipelines for infrastructure deployment and application modernization. Security & Compliance: Ensure compliance with Azure Security Standards (Zero Trust, NIST, GDPR, ISO27001 … Integrate hybrid cloud solutions using Azure Arc and hybrid connectivity strategies. Monitoring & Resilience: Implement observability using Azure Monitor, Log Analytics, App Insights, and Prometheus / Grafana . Design for high availability (HA), disaster recovery (DR), and business continuity (BCP) . Conduct chaos engineering to test resilience and fault tolerance. … Files, ADLS, SQL, CosmosDB), and Networking . Hands-on experience with Terraform, Bicep, ARM templates, or Ansible for infrastructure automation. Knowledge of DevOps, CI / CD, GitHub Actions, Azure DevOps, and Kubernetes . Expertise in Azure Security, IAM, RBAC, Key Vault, Sentinel, Defender for Cloud . Familiarity with cloud More ❯
Collaborate with teams to guide secure solution delivery Maintain and optimise security tools and documentation Drive compliance with security policies and frameworks (e.g., ISO27001, GDPR) Essential Skills and Experience Strong communication and cross-functional collaboration … skills Proven ability to manage multiple priorities and deliver results Deep knowledge of cyber threats, vulnerabilities, and incident response Experience with hybrid (on-prem / cloud) environments and SIEM tools Understanding of security standards (PCI DSS, NIST, ISO) and secure coding practices Proactive and analytical mindset with More ❯
Collaborate with teams to guide secure solution delivery Maintain and optimise security tools and documentation Drive compliance with security policies and frameworks (e.g., ISO27001, GDPR) Essential Skills and Experience Strong communication and cross-functional collaboration … skills Proven ability to manage multiple priorities and deliver results Deep knowledge of cyber threats, vulnerabilities, and incident response Experience with hybrid (on-prem / cloud) environments and SIEM tools Understanding of security standards (PCI DSS, NIST, ISO) and secure coding practices Proactive and analytical mindset with More ❯
Collaborate with teams to guide secure solution delivery Maintain and optimise security tools and documentation Drive compliance with security policies and frameworks (e.g., ISO27001, GDPR) Essential Skills and Experience Strong communication and cross-functional collaboration … skills Proven ability to manage multiple priorities and deliver results Deep knowledge of cyber threats, vulnerabilities, and incident response Experience with hybrid (on-prem / cloud) environments and SIEM tools Understanding of security standards (PCI DSS, NIST, ISO) and secure coding practices Proactive and analytical mindset with More ❯
Collaborate with teams to guide secure solution delivery Maintain and optimise security tools and documentation Drive compliance with security policies and frameworks (e.g., ISO27001, GDPR) Essential Skills and Experience Strong communication and cross-functional collaboration … skills Proven ability to manage multiple priorities and deliver results Deep knowledge of cyber threats, vulnerabilities, and incident response Experience with hybrid (on-prem / cloud) environments and SIEM tools Understanding of security standards (PCI DSS, NIST, ISO) and secure coding practices Proactive and analytical mindset with More ❯
london, south east england, United Kingdom Hybrid / WFH Options
Intec Select
Collaborate with teams to guide secure solution delivery Maintain and optimise security tools and documentation Drive compliance with security policies and frameworks (e.g., ISO27001, GDPR) Essential Skills and Experience Strong communication and cross-functional collaboration … skills Proven ability to manage multiple priorities and deliver results Deep knowledge of cyber threats, vulnerabilities, and incident response Experience with hybrid (on-prem / cloud) environments and SIEM tools Understanding of security standards (PCI DSS, NIST, ISO) and secure coding practices Proactive and analytical mindset with More ❯
Security Architect - 3-month contract - £600 per day (Outside IR35) - Berkshire / Hybrid Key skills / responsibilities: Strong expertise in: Vulnerability scanning with Qualys Endpoint protection with Microsoft Defender for Endpoint Cloud security using InsightCloudSec and Microsoft Defender for Cloud Patch management via TrueSight Identity protection and corporate … MCAS PUAM systems, especially CyberArk Security logging and monitoring, preferably with PRISM or similar SIEM solutions Solid understanding of security frameworks (e.g., NIST, ISO27001) and compliance requirements. Proven experience in low-level design (LLD) documentation and system integration. Our client is a globally recognised technology More ❯
Security Architect - 3-month contract - 600 per day (Outside IR35) - Berkshire / Hybrid Key skills / responsibilities: Strong expertise in: Vulnerability scanning with Qualys Endpoint protection with Microsoft Defender for Endpoint Cloud security using InsightCloudSec and Microsoft Defender for Cloud Patch management via TrueSight Identity protection and corporate … MCAS PUAM systems, especially CyberArk Security logging and monitoring, preferably with PRISM or similar SIEM solutions Solid understanding of security frameworks (e.g., NIST, ISO27001) and compliance requirements. Proven experience in low-level design (LLD) documentation and system integration. Our client is a globally recognised technology More ❯