26 to 50 of 54 ISO 27001 Lead Auditor Jobs in England

GRC Controls & Oversight Lead

Hiring Organisation
Experis
Location
Warwickshire, United Kingdom
Employment Type
Contract
Contract Rate
£400 - £460/day
Role Title: GRC Controls & Oversight Lead Location: Warwick - Hybrid 50 / 50 Duration: 21 / 03 / 2027 Rate: £(Apply online only) per day - Umbrella only Candidates must hold active SC clearance Description: We are seeking an experienced GRC Controls & Oversight Lead to support … individual who can work independently, manage competing priorities, and bring structure to large volumes of assurance, compliance, and remediation activities. Key Responsibilities Lead and coordinate controls assurance and testing activities across IT and OT environments. Review, assess, and validate control effectiveness against defined policies, standards, and regulatory ...

Principal Cyber Assurance Advisor (OT/Technical Arch./Supply Chain)

Hiring Organisation
IBEX RECRUITMENT LTD
Location
Greater Manchester, North West, United Kingdom
Employment Type
Permanent
Salary
£75,000
recruiting on behalf of a client in the nuclear / Critical National Infrastructure (CNI) sector for a Cyber Assurance Principal Advisor to lead the delivery of second-line cyber assurance across key domains including OT, technical architecture, and supply chain. This role ensures cyber security controls … verify remediation of assurance findings and contribute to lessons learned Maintain awareness of emerging threats, technologies, and regulatory expectations to inform assurance planning Lead, mentor, and develop a team of cyber assurance advisors to build capability and consistency Promote a culture of cyber risk awareness and accountability ...

Principal Cyber Assurance Advisor (OT/Technical Arch./Supply Chain)

Hiring Organisation
IBEX RECRUITMENT LTD
Location
London, UK
recruiting on behalf of a client in the nuclear / Critical National Infrastructure (CNI) sector for a Cyber Assurance Principal Advisor to lead the delivery of second-line cyber assurance across key domains including OT, technical architecture, and supply chain. This role ensures cyber security controls … verify remediation of assurance findings and contribute to lessons learned Maintain awareness of emerging threats, technologies, and regulatory expectations to inform assurance planning Lead, mentor, and develop a team of cyber assurance advisors to build capability and consistency Promote a culture of cyber risk awareness and accountability ...

Compliance Enablement Technical Program Manager

Location
Oxford, England, United Kingdom
Strong program and project management skills, with a track record of delivering across multiple teams. Solid knowledge of cybersecurity frameworks (NIST 800-53, ISO 27001, SOC 2, and / or FedRAMP) and hands‐on audit experience. Enough technical depth to be the team … APIs, and data flows, and interpreting technical work with AI assistance, even if you do not write code. Proven ability to lead technical discussions with engineers and subject‐matter experts and ask the right questions to understand how controls and systems work. Hands‐on experience with ...

IT Risks & Control Manager

Location
Eastleigh, England, United Kingdom
experienced IT Risk and Controls Manager to join our Information Security Governance, Risk and Compliance team. In this senior specialist role, you’ll lead the identification, assessment, management and reporting of IT risks across Ageas, helping ensure technology risks are clearly understood, documented and managed in line … with our risk appetite. Reporting to the Governance, Risk and Compliance Lead, you’ll own the IT risk register, facilitate senior IT risk discussions and provide clear, high-quality reporting for governance forums and second-line risk teams. Main Responsibilities as IT Risks & Control Manager Lead ...

IT Risks & Control Manager

Location
Chandler's Ford, England, United Kingdom
experienced IT Risk and Controls Manager to join our Information Security Governance, Risk and Compliance team. In this senior specialist role, you'll lead the identification, assessment, management and reporting of IT risks across Ageas, helping ensure technology risks are clearly understood, documented and managed in line … with our risk appetite. Reporting to the Governance, Risk and Compliance Lead, you'll own the IT risk register, facilitate senior IT risk discussions and provide clear, high-quality reporting for governance forums and second-line risk teams. Main Responsibilities: Lead IT risk ...

AI Security Consultant

Location
Greater London, England, United Kingdom
assurance. Familiarity with frameworks and guidance such as NIST AI RMF, OWASP Top 10 for LLM Applications, OWASP Agentic AI guidance, MITRE ATLAS, ISO 27001, NIST CSF, CIS Controls or cloud security frameworks. Experience with SOC operations, SIEM / SOAR platforms, detection engineering, threat … autonomous systems, including least privilege, approval workflows, action limits, logging, monitoring and rollback mechanisms. Relevant certifications such as CISSP, CISM, CCSP, GIAC, ISO 27001 Lead Implementer / Auditor, cloud security certifications or AI / security-focused training. Please ...

AI Security Consultant

Location
Manchester, England, United Kingdom
assurance. Familiarity with frameworks and guidance such as NIST AI RMF, OWASP Top 10 for LLM Applications, OWASP Agentic AI guidance, MITRE ATLAS, ISO 27001, NIST CSF, CIS Controls or cloud security frameworks. Experience with SOC operations, SIEM / SOAR platforms, detection engineering, threat … autonomous systems, including least privilege, approval workflows, action limits, logging, monitoring and rollback mechanisms. Relevant certifications such as CISSP, CISM, CCSP, GIAC, ISO 27001 Lead Implementer / Auditor, cloud security certifications or AI / security-focused training. Please ...

Cyber Security Risk & Assurance

Hiring Organisation
Robert Walters
Location
Manchester, Lancashire, United Kingdom
Employment Type
Full-Time
Salary
£600.00 - £700.00 per day
range of bespoke services and solutions. Due to several projects, they are keen to appoint a Cyber Security Risk & Assurance SME to lead a number of Data Driven and Cyber Data Assurance projects. Cyber Security Risk & Assurance SME: Duties Provide cyber risk and assurance input across … Lead Auditor / Implementer or equivalent experience. Knowledge of NIST CSF, ISO / IEC 27001, COBIT, CIS Controls or enterprise risk frameworks. Experience with SQL, JSON / CSV, APIs, Power BI or data quality controls. Experience with ...

Cyber Data Engineer

Hiring Organisation
Robert Walters
Location
Birmingham, West Midlands, United Kingdom
Employment Type
Full-Time
Salary
£600.00 - £700.00 per day
range of bespoke services and solutions. Due to several projects, they are keen to appoint a Cyber Security Risk & Assurance SME to lead a number of Data Driven and Cyber Data Assurance projects. Cyber Security Risk & Assurance SME: Duties Provide cyber risk and assurance input across … Lead Auditor / Implementer or equivalent experience. Knowledge of NIST CSF, ISO / IEC 27001, COBIT, CIS Controls or enterprise risk frameworks. Experience with SQL, JSON / CSV, APIs, Power BI or data quality controls. Experience with ...

Cyber Data Engineer

Hiring Organisation
Robert Walters
Location
Manchester, North West, United Kingdom
Employment Type
Contract, Work From Home
Contract Rate
£600 - £700 per day + Outside IR35
range of bespoke services and solutions. Due to several projects, they are keen to appoint a Cyber Security Risk & Assurance SME to lead a number of Data Driven and Cyber Data Assurance projects. Cyber Security Risk & Assurance SME: Duties Provide cyber risk and assurance input across … Lead Auditor / Implementer or equivalent experience. Knowledge of NIST CSF, ISO / IEC 27001, COBIT, CIS Controls or enterprise risk frameworks. Experience with SQL, JSON / CSV, APIs, Power BI or data quality controls. Experience with ...

Senior Cyber Security Consultant (Defence)

Location
Cheltenham, England, United Kingdom
remediation strategies and residual risks to stakeholders. Supporting governance, risk and compliance activities within secure and regulated environments. Depending on experience, you may: Lead consultancy engagements and workstreams. Mentor and support the development of colleagues. Act as a trusted adviser to senior client stakeholders. Contribute to business … controls. Understanding of Defence procurement and capability delivery programmes. Beneficial Knowledge Government and industry security frameworks such as HMG Security Policy Framework (SPF), ISO 27001 and NIST. Risk management methodologies and security assurance frameworks. Enterprise and security architecture approaches including TOGAF and SABSA. Cloud ...

Senior Cyber Security Consultant

Hiring Organisation
Hackajob Ltd
Location
Guildford, Surrey, South East, United Kingdom
Employment Type
Permanent, Work From Home
remediation strategies and residual risks to stakeholders. Supporting governance, risk and compliance activities within secure and regulated environments. Depending on experience, you may: Lead consultancy engagements and workstreams. Mentor and support the development of colleagues. Act as a trusted adviser to senior client stakeholders. Contribute to business … controls. Understanding of Defence procurement and capability delivery programmes. Beneficial Knowledge Government and industry security frameworks such as HMG Security Policy Framework (SPF), ISO 27001 and NIST. Risk management methodologies and security assurance frameworks. Enterprise and security architecture approaches including TOGAF and SABSA. Cloud ...

Security Consultant – Risk & Resilience - Financial Services

Location
Greater London, England, United Kingdom
cyber risk management, operational resilience, business continuity, disaster recovery, and incident response principles. Knowledge of common security and risk frameworks such as NIST, ISO 27001, COBIT, CIS Controls, and FFIEC guidance. Familiarity with financial services regulatory requirements relating to technology risk and resilience. Experience … enabled tools to improve efficiency, insight generation, or risk management outcomes. Preferred Qualifications Professional certifications such as CISSP, CISM, CRISC, CISA, CBCI, ISO 27001 Lead Implementer / Auditor, or equivalent. Experience supporting regulatory programmes involving PRA, FCA, DORA ...

Security Consultant - Risk & Resilience - Financial Services

Hiring Organisation
Accenture
Location
London, UK
Employment Type
Full-time
cyber risk management, operational resilience, business continuity, disaster recovery, and incident response principles. Knowledge of common security and risk frameworks such as NIST, ISO 27001, COBIT, CIS Controls, and FFIEC guidance. Familiarity with financial services regulatory requirements relating to technology risk and resilience. Experience … enabled tools to improve efficiency, insight generation, or risk management outcomes. Preferred Qualifications: Professional certifications such as CISSP, CISM, CRISC, CISA, CBCI, ISO 27001 Lead Implementer / Auditor, or equivalent. Experience supporting regulatory programmes involving PRA, FCA, DORA ...

Director, Technology, Cyber & Resilience Risk

Location
Greater London, England, United Kingdom
into architecture, engineering and change processes. Partner with 2LOD to ensure alignment with regulatory expectations (e.g. DORA, UK OpRes). Risk Governance & Decisioning Lead 1LoD technology risk governance forums). Provide independent first-line challenge to engineering, architecture, and product teams. Escalate and drive resolution of material … KCIs). Ensure availability of accurate, decision-ready risk data. Drive adoption of data-led risk management across engineering teams. Leadership & Operating Model Lead and develop a high-performing technology risk team. Define clear roles, responsibilities, and RACI across first and second lines. Build risk capability across ...

Cyber GRC Analyst (Cyber Policy & Governance)

Hiring Organisation
IBEX RECRUITMENT LTD
Location
Greater Manchester, North West, United Kingdom
Employment Type
Permanent
Salary
£50,000
have: Experience developing, reviewing or managing cyber security policies, standards, procedures or governance frameworks. Strong knowledge of recognised cyber security frameworks such as ISO 27001, NIST, or the Cyber Assessment Framework (CAF). Experience supporting compliance, risk management, governance or information assurance programmes. Excellent … Industrial Control Systems (ICS) security. Knowledge of cyber resilience requirements within critical national infrastructure environments. Professional certifications such as CISSP, CISM, ISO 27001 Lead Implementer / Auditor. What's on Offer Opportunity to influence cyber strategy within a nationally significant organisation. ...

Director, Technology, Cyber & Resilience Risk

Hiring Organisation
London Stock Exchange Group
Location
London, UK
Employment Type
Full-time
behaviours, and delivery outcomes. Required ExperienceSenior leadership in technology risk within regulated financial services. Ownership of control frameworks aligned to recognised standards (NIST, ISO, COBIT).Strong track record in risk governance and remediation of systemic issues. Operational resilience and incident management expertise. Experience engaging with regulators … executive stakeholders. Cloud and third-party risk oversight. Qualifications & Certifications (preferred)CRISC, CISM, CISSP, ISO 27001 Lead Auditor / Implementer, ITIL Expert. Degree in Computer Science / Engineering or equivalent experience. Skills & AttributesCombines deep risk expertise with engineering ...

AMS Manager

Location
High Street, England, United Kingdom
Description We are seeking an experienced SAP AMS Manager to lead post-go-live Application Management Services for a large-scale SAP S / 4HANA environment. The role will own the AMS operating model, service delivery, SLA / KPI performance, support organisation, transition to steady state … support structure. Manage incident, problem, change, and release management processes. Own SLA / KPI performance, service reporting, penalties, and service credits. Lead the transition from project hypercare to steady-state AMS, including knowledge transfer, runbooks, and CMDB establishment. Manage AMS teams, on-call rosters, escalations, and coordination ...

Cyber Programmes Consultant

Location
Greater London, England, United Kingdom
requirements, the cyber threat landscape and business priorities Establish effective programme governance, control, reporting, risk management and assurance to support successful delivery outcomes Lead multi-disciplinary teams across cyber security, technology, risk, operations and business functions to deliver transformational change Deliver cyber maturity assessments, security roadmaps, implementation … management skills, with experience coordinating diverse delivery teams and suppliers Relevant cyber security qualifications or certifications such as CISSP, CISM, CRISC, CCSP, SABSA, ISO 27001 Lead Implementer / Auditor, SANS, GIAC certifications or equivalent Up-to-date knowledge ...

Cyber Programmes Consultant

Hiring Organisation
PA Consulting
Location
Pimlico, Hertfordshire, UK
Employment Type
Full-time
requirements, the cyber threat landscape and business priorities Establish effective programme governance, control, reporting, risk management and assurance to support successful delivery outcomes Lead multi-disciplinary teams across cyber security, technology, risk, operations and business functions to deliver transformational change Deliver cyber maturity assessments, security roadmaps, implementation … qualifications such as MSP, PRINCE2, PMP, AgilePM, SAFe or equivalent Relevant cyber security qualifications or certifications such as CISSP, CISM, CRISC, CCSP, SABSA, ISO 27001 Lead Implementer / Auditor, SANS, GIAC certifications or equivalent Up-to-date knowledge ...

Control Testing Automation & Monitoring Lead

Location
Reading, England, United Kingdom
Control Testing Automation & Monitoring Lead As a Control Testing Automation & Monitoring Lead, you will be responsible for designing and delivering automated control testing and monitoring solutions across IT, OT, and business environments at Thames Water. Working closely with the Control Testing & Assurance Manager, digital … obtain security clearance to a minimum of Counter Terrorist Check (CTC) level. What you’ll be doing as a Control Testing Automation & Monitoring Lead Identify and assess opportunities to automate control testing across IT, OT, and business functions. Design, develop, and implement automation plans and workflows ...

Interim Cyber Security Internal Auditor

Location
City Of London, England, United Kingdom
risk, control and governance services, working with clients across a variety of industries and beyond. If you’re an experienced Interim Cybersecurity Internal Auditor who’s tired of choosing between freedom and meaningful work, there’s another route. Within our Business Risk Services team … audits for client organisations in line with UK regulations. Assess compliance against UK GDPR and the Data Protection Act 2018, the NIS Regulations, ISO / IEC 27001, Cyber Essentials and Cyber Essentials Plus, and the Telecommunications (Security) Act 2021. Identify risks, provide actionable ...

Interim Cyber Security Internal Auditor

Hiring Organisation
Grant Thornton
Location
London, South East England, United Kingdom
Employment Type
Full-Time
Salary
£550.00 - £750.00 per day
risk, control and governance services, working with clients across a variety of industries and beyond. If you’re an experienced Interim Cybersecurity Internal Auditor who’s tired of choosing between freedom and meaningful work, there’s another route. Within our Business Risk Services team … audits for client organisations in line with UK regulations. · Assess compliance against UK GDPR and the Data Protection Act 2018, the NIS Regulations, ISO / IEC 27001, Cyber Essentials and Cyber Essentials Plus, and the Telecommunications (Security) Act 2021. · Identify risks, provide actionable ...

Control Tester

Location
Reading, England, United Kingdom
utility industry or other large, complex critical national infrastructure organisations. Desirable technical skills and qualifications Professional certifications such as CISA, CISSP, CRISC, or ISO 27001 Lead Auditor. What’s in it for you? Competitive salary between ...