the Business Transformation, Resilience & Oversight Manager and the direct team in both: 1) the execution/ongoing management of the banks Cyber Resilience activities & also 2) the new Cyber Security and Digital Operational Resilience Act (DORA) related capabilities. This is an opportunity for a motivated self-starter, with a can-do mindset and the ability to connect information … and alignment with DORA requirements. Support DORA compliance by coordinating the activities required across all six pillars of DORA: ICT Risk Management, ICT related Incident Reporting, Digital Resilience Testing, Information Sharing, ICT Third Party Risk and General Governance Principles. Stay up to date with the changing cyber risk landscape, emerging threats, regulatory requirements and cybersecurity industry best practises in … the UK and EU (e.g. Network and InformationSecurity (NIS2) Directive). Plan and execute DORA deliverables in cooperation with similar initiatives e.g. Operational Resilience, Business Continuity and Incident Management. Design and oversee regular testing exercises to evaluate the effectiveness of Digital Resilience and Cyber Security, contributing to the Bank’s overall resilience. Collaborate with various teams More ❯
and overseeing the organisation's IT compliance and risk management programmes, with a strong focus on maintaining the ISO 27001 and ISO 90001 certifications. The role ensures that IT security and operations align with global Pluxee policies & procedures as well as regulatory, legal, GDPR and industry standards while mitigating risks and enhancing overall posture. Respond to client InformationSecurity tenders and questionnaires, establish and maintain a central repository of documentation available for Sales and Planning Team access. 🚀 Your next challenge: Lead and manage the organisation's ISO certification and surveillance audit processes. Develop and maintain policies, procedures and documentation to align with ISO and Global Pluxee standards. Identify, assess and prioritise IT risk across platforms & services … GDPR, NIST etc Serve as a subject-matter expert for IT compliance questions Develop and enforce IT policies and procedures that support compliance and risk objectives. Respond to client InformationSecurity tenders and questionnaires. Conduct training and awareness programmes. Accountabilities: Maintain ISO certification and promote the standards within the business. Quarterly reporting to SLT on compliance status, IT More ❯
experience) + car allowance Overview An exciting opportunity has arisen for an experienced Cyber Governance Analyst to join a forward-thinking and collaborative business. Reporting directly to the Group InformationSecurity Officer (GISO), the successful candidate will act as a first line of defence-ensuring that robust security controls are maintained in line with company policies and … practices, and overseeing audit readiness. Key Responsibilities Collaborate with IT, legal, and policy teams to develop, manage, and ensure compliance with industry regulations and internal policies Implement and support informationsecurity and privacy standards/frameworks (e.g. ISO 27001, NIST, CIS) Work directly with engineering teams and architects to review system and data architectures in line with best … practices Analyse and communicate the impact of vulnerabilities, controls, and mitigations on existing and future systems Conduct thorough risk assessments and effectively translate security and risk implications for technical and non-technical audiences Manage stakeholder expectations across projects with a pragmatic, agile, and solution-oriented approach Key Skills & Experience In-depth knowledge of cybersecurity frameworks such as NIST, ISO More ❯
Our Client is seeking an experienced Head of InformationSecurity to lead the InfoSec function across their UK and European operations. This is a leadership role that combines deep cybersecurity expertise, regulatory awareness, and business acumen to drive the security agenda in a fast-paced, regulated financial services environment. As the Head of InformationSecurity, you'll be the primary InfoSec business partner across the region, responsible for the integrity and performance of security and cyber risk controls. You'll shape and implement enterprise-wide strategies aligned with global objectives while ensuring regulatory compliance and operational excellence. Reporting directly to the Group CISO, you'll work closely with executive leaders, regulatory stakeholders, and … the global InfoSec team. The role will oversee the delivery and quality of security services from internal, shared, and external resources and you would act as a trusted advisor to executives across the region. You will drive compliance across standards including ISO 27001, SOC2, PCI, SOX, GDPR, and others while managing a high-performing InfoSec team (both direct and More ❯
to the role by diligently observing internal policies and procedures. Key Interfaces: Technical Lead for Data Engineering Business System Owner Head of Data Engineering Application Specialists and Application Support InformationSecurity Manager Data Privacy Manager Person Specification Knowledge/Experience/Skills: Strong communicator with both technical and non-technical communities Experience of mentoring less-experienced developers Significant … Pipeline testing, including automated testing, data validation and code assurance Demonstrable experience of working within Agile Delivery projects An understanding of data formats for ingest, transformation and analytics, data security, access control and authorisation, GDPR, data privacy, and informationsecurity Awareness of data models in a Medalion Architecture Experience building Semantic, Metric or Analytic models Experience of … pension & holiday allowance BUPA Health cover 4x Life Assurance Discretionary bonus Market leading maternity/paternity and menopause policies Data Privacy and Reasonable adjustments We take keeping your data security seriously. For more detail on how we may keep your data please refer to our Privacy Notice Reasonable adjustments : Please let us know of any adjustments or arrangements that More ❯
delivery pilot, launch and operations, are reviewed with Product teams and reflected in future delivery process enhancements. Develops quantitative & qualitative reports. All about you Education: Bachelor's degree in Information Technology, Computer Science, Exact Sciences or Business. Experience: o 5-7 years of experience in the Payments industry or in another IT or FinTech ecosystem, with a focus in … and deliver independently your own projects and initiatives. • Work for a leading company in its sector, cultivating a people-focused culture with decency and inclusion at its core. Corporate Security Responsibility All activities involving access to Mastercard assets, information, and networks comes with an inherent risk to the organization and, therefore, it is expected that every person working … for, or on behalf of, Mastercard is responsible for informationsecurity and must: Abide by Mastercard's security policies and practices; Ensure the confidentiality and integrity of the information being accessed; Report any suspected informationsecurity violation or breach, and Complete all periodic mandatory security trainings in accordance with Mastercard's guidelines. More ❯
and implement data governance frameworks, policies, work instructions and best practices Ensure compliance with data privacy regulations and governance (e.g., GDPR, DPIA's) . Establish data quality, integrity, and security controls. Define data ownership and stewardship roles across data sets. Conduct regular data audits and drive continuous improvement initiatives. Establish data model management in line with star schema principles. … Timeliness : Ensuring that data is up-to-date and available when needed. This involves regular updates and synchronization of data across systems to ensure it reflects the most current information Validity : Ensuring that data conforms to the required formats and standards. This involves setting and enforcing data quality standards and procedures Resolve Data Quality Issues: Addressing and resolving data … governance framework and compliance requirements Data Platform Management Oversee the operation, maintenance, and optimization of the organization's data platform. Work with IT and technology teams to ensure scalability, security, and efficiency of data infrastructure. Monitor the success of data integration, ETL pipelines, and data storage solutions, highlighting any issues where they occur. Ensure data accessibility and usability while More ❯
a highly skilled and experienced Senior Infrastructure Engineer to lead and support our cloud and on-premises infrastructure, with a particular emphasis on Microsoft Azure , Zerto , disaster recovery and security best practices. This role will be instrumental in designing, implementing and maintaining robust infrastructure solutions that ensure high availability, data integrity and security compliance. If you want to … work somewhere that values your expertise in both resolving critical incidents and designing preventative measures where you can make a genuine impact on customers' data security and business continuity, then keep reading. The role What you'll do here Azure Infrastructure Management Design, deploy, and manage scalable Azure-based infrastructure services, including IaaS, PaaS, networking and security components. … capabilities for mission-critical systems. Security & Compliance Implement and maintain infrastructure security policies and controls aligned with industry standards (e.g., ISO 27001, NIST, CIS). Collaborate with InfoSec teams on vulnerability management and risk mitigation. Infrastructure Automation & Optimisation Automate infrastructure deployment and configuration using tools such as PowerShell, ARM templates, or Terraform. Drive continuous improvement and cost optimisation More ❯
efficient data ingestion frameworks across structured, semi-structured, and unstructured data Partner with product owners and engineers to develop data exchange protocols, ensuring best practices in data governance and security Create and manage hybrid cloud data environments and support data pipelines for big data platforms Product Strategy & Execution Contribute to the strategy and vision for our data products, helping … ensure datasets are model-ready Contribute to a cross-functional engineering culture with a focus on quality, automation, and continuous improvement Ensure Secure & Compliant Practices Apply strong knowledge of informationsecurity principles to ensure compliant handling of sensitive client data Build and deploy solutions with security, maintainability, and scalability top of mind What You'll Bring An … on experience with cloud platforms such as AWS, Azure, or GCP Familiarity with traditional ETL tools (e.g., Informatica, Talend, Pentaho, DataStage) and data warehousing concepts Strong understanding of data security, compliance , and governance best practices Experience leading or influencing cross-functional teams in a product or platform environment Strong stakeholder management and communication skills Additional info At Expand we More ❯
Swindon, Wiltshire, United Kingdom Hybrid / WFH Options
Zurich 56 Company Ltd
ideas will be heard. You will collaborate and influence IT management, the IT Governance and Controls Manager and other governance colleagues to gather data and collate, aggregate and interpret information to provide the Boards of Directors, Business Executives and other interested parties with an assessment of the UK IT Risk and Controls landscape. You will also manage multiple demands … for IT risk-based information within Zurich, ensuring all reporting commitments are met. You will work alongside local and regional Group IT functions, Service Providers (through internal and external suppliers), and business functions to ensure that Zurich is proactive in the management of IT Operational Risk and Controls. The role is varied, interesting, and there are genuine opportunities to … Supplier IT Risk and Controls Consultant and the IT Risk Consultant. What are we looking for? You will ideally have a Risk Management qualification (CIRM, CRISC) or a Professional Security Qualification (CISA, CISM, CISSP) with solid practical experience as an IT Risk Specialist, with a good understanding of common informationsecurity management frameworks, such as NIST Cyber More ❯
professional development of team members Maintain delivery accountability for key projects with clear milestones and risk mitigation Encourage a culture of ownership, learning and continuous improvement across the team Security, Governance & Quality Embed secure development practices into all stages of the SDLC Maintain oversight of development environments, deployment pipelines and access controls Collaborate with the InformationSecurity Manager to ensure compliance with ISO27001 objectives Support GDPR, data privacy and other relevant security policies in solution design Lead code reviews, architectural assessments, and system performance analysis Innovation, Collaboration & External Partnerships Drive innovation across the engineering function, identifying new tools, frameworks and technologies to improve delivery and experience Maintain strong relationships with key business stakeholders to understand … day relationship with our outsourced development partner (Techwave), ensuring aligned priorities, code quality and delivery timelines Coordinate third-party development requirements, ensuring consistency with eurochange’s architecture, standards and security expectations Desired Experience and Skills Degree or equivalent in Computer Science, Engineering, or related discipline Extensive experience leading software development teams and delivering digital platforms Strong hands-on experience More ❯
Stevenage, Hertfordshire, South East, United Kingdom
Eurochange
professional development of team members Maintain delivery accountability for key projects with clear milestones and risk mitigation Encourage a culture of ownership, learning and continuous improvement across the team Security, Governance & Quality Embed secure development practices into all stages of the SDLC Maintain oversight of development environments, deployment pipelines and access controls Collaborate with the InformationSecurity Manager to ensure compliance with ISO27001 objectives Support GDPR, data privacy and other relevant security policies in solution design Lead code reviews, architectural assessments, and system performance analysis Innovation, Collaboration & External Partnerships Drive innovation across the engineering function, identifying new tools, frameworks and technologies to improve delivery and experience Maintain strong relationships with key business stakeholders to understand … day relationship with our outsourced development partner (Techwave), ensuring aligned priorities, code quality and delivery timelines Coordinate third-party development requirements, ensuring consistency with eurochange's architecture, standards and security expectations Desired Experience and Skills Degree or equivalent in Computer Science, Engineering, or related discipline Extensive experience leading software development teams and delivering digital platforms Strong hands-on experience More ❯
Act as a key point of contact between IT and users, promoting standards, improving user satisfaction, and sharing best practices. Ensure compliance with company policies on ethics, data protection, informationsecurity, and HR, protecting both physical and information assets. Skills & Experience Required Education: Associate degree or high school diploma (required) Bachelor's degree (preferred) ITIL Foundations certification More ❯
Monitor and optimize solution performance and contribute to process improvements. Deploy new solutions or implement changes in line with Aztec's Change Management Framework. Ensure compliance with Aztec's InformationSecurity and Data Governance standards. Promote best practices, provide training, share knowledge, and offer first-line support to users. Translate business requirements into prototypes. Administer the UAT Environment … business requirements and document technical solutions clearly. Strong analytical and problem-solving skills. Excellent interpersonal and communication skills. Experience in Financial Services or financial reporting is an advantage. Additional information: We provide training in technical skills and professional qualifications for your development. You should be quick to learn new systems and processes and excel in building relationships with colleagues More ❯
InformationSecurity Manager 📍 Bristol | Hybrid | circa £70,000 TRIA are supporting a leading Logistics & Transportation company in Bristol, seeking an InformationSecurity Manager to drive cybersecurity strategy and enhance security across critical infrastructure. You’ll be at the forefront of their informationsecurity strategy, ensuring the confidentiality, integrity, and availability of cyber and … informationsecurity assets. You will lead the security team, manage third-party SOC operations, and be accountable for progressing the Cyber Assurance Framework (CAF). The Role Lead and mature the Cyber Assurance Framework (CAF) Assess and mitigate risks across networks, systems, and applications Manage security team & third-party SOC operations Implement security controls, policies … culture Report security posture & metrics to IT Director & leadership Oversee security assessments, audits & penetration testing What You’ll Bring CISSP or equivalent + 6-7 years in InfoSec Experience maturing security programs & frameworks ( ISO27001, NIST CAF, OWASP ) Strong knowledge of SIEM, IDS/IPS, RBAC, vulnerability management Understanding of cloud, COTS/SaaS platforms & IoT securityMore ❯
within Aerial Direct's transformation roadmap. This role acts as the voice of the business in ensuring features and improvements are aligned with user needs, commercial goals, regulatory and informationsecurity requirements. What do we offer? Holiday rising with each year of service Buy & Sell Holiday Scheme Your Birthday Off - after all it's the most important day … company policy. Collaboration with the data engineering team to ensure system changes are structured to support meaningful reporting and actionable insights. Ensuring the applications and all changes meet company informationsecurity policies and comply with relevant regulatory requirements, including Ofcom and GDPR. Ideally, you'll have: Attention to detail is essential with an Ability to clearly articulate the More ❯
Monitor and optimize solution performance and contribute to process improvements. Deploy new solutions or implement changes in line with Aztec's Change Management Framework. Ensure compliance with Aztec's InformationSecurity and Data Governance standards. Promote best practices, provide training, share knowledge, and offer first-line user support. Understand business problems and requirements to develop prototypes efficiently. Manage … to translate business requirements into technical documentation. Strong analytical and problem-solving skills. Excellent interpersonal and communication skills. Experience in Financial Services or financial reporting is an advantage. Additional Information: We provide training in technical skills and professional qualifications to support your growth. You should be quick to learn new systems and processes and excel in building strong relationships More ❯
methods and practices around assurance and risk, shaping activities, processes and systems. In this role you will work across team and department boundaries, engaging with IT, Internal Audit and InformationSecurity to ensure that controls are built and implemented, monitored and tested, and that these are auditable and documented within the process models. This role will be for … defence duties within an interactive and challenging role responsible for IT Assurance Assist with responses to client due diligence requests and other client questionnaires regarding IT Operations and IT Security Contribute to the design, implementation and monitoring of policy and quality standards, procedures and systems ensuring effective working and continuous improvement Act as a first point of contact for … and monitoring practices, and a good understanding of risk and compliance issues An aptitude for working in a regulated environment and building compliance by design A confidence in presenting information and acting as a source of knowledge and guidance You'll be able to be yourself; we'll recognise and value you for who you are and celebrate and More ❯
methods and practices around assurance and risk, shaping activities, processes and systems. In this role you will work across team and department boundaries, engaging with IT, Internal Audit and InformationSecurity to ensure that controls are built and implemented, monitored and tested, and that these are auditable and documented within the process models. This role will be for … defence duties within an interactive and challenging role responsible for IT Assurance Assist with responses to client due diligence requests and other client questionnaires regarding IT Operations and IT Security Contribute to the design, implementation and monitoring of policy and quality standards, procedures and systems ensuring effective working and continuous improvement Act as a first point of contact for … and monitoring practices, and a good understanding of risk and compliance issues An aptitude for working in a regulated environment and building compliance by design A confidence in presenting information and acting as a source of knowledge and guidance You'll be able to be yourself; we'll recognise and value you for who you are and celebrate and More ❯
cooperate with third party vendors in order to stabilize the lifecycle of our hardware equipment. Minimum Qualifications University level degree (at postgraduate level is a plus) in Computer Science, Information Technology or relevant field of study/experience Excellent oral and written communication skills Excellent presentation skills Minimum Experience A solid background in IT and have worked at least … delivering a great user experience by taking a customer-centric approach to end-user support, being able to explain/present upwards to Senior Management Ability to adopt a security-first posture supporting the broader IT team in delivering systems and processes to ISO27001 and WLA standards. Networking skills in order to troubleshoot network connectivity issues. (Tools such as … to prioritize and manage time effectively is important. Ability to work independently effectively. Ability to provide and maintain documentation where this is needed. Ability to work collaboratively with our informationsecurity team and HR team. Ability to work in office when requested Unlock the Benefits-Discover What's in for you: Be part of a dynamic team with More ❯
and welcome all applications. As a specialist in secure technology solutions, all successful candidates will be subject to pre-employment checks, so we can ensure compliance with our ISO27001 (InformationSecurity) and Cyber Essentials Plus certifications. We are committed to using any personal information you may give us in a secure and proper manner, for more informationMore ❯
and welcome all applications. As a specialist in secure technology solutions, all successful candidates will be subject to pre-employment checks, so we can ensure compliance with our ISO27001 (InformationSecurity) and Cyber Essentials Plus certifications. We are committed to using any personal information you may give us in a secure and proper manner, for more informationMore ❯
King's Cross, Greater London, England Hybrid / WFH Options
Nexus Jobs Limited
growth Specify and implement standards, methods, and procedures for inspecting, testing, and evaluating the quality, efficiency, and reliability of business applications Implement CSI's technology risk management framework, including Informationsecurity, privacy, and disaster recovery. Foster a culture of trusted partnership, service, and continuous improvement Establish and meet service level commitments to support reliable and efficient daily operations … in understanding complex technology & applying it in a practical way to create business solutions Minimum Experience: Bachelors or advanced degree in an analytic discipline such as engineering, economics, or information management Experience designing and presenting IT solutions In-depth knowledge of Dynamics 365 F&O and CRM (CE), including LCS, DevOps, BYOD, Dual-Write (DataVerse), RSAT SOX, HIPAA & GDPR More ❯
team is the first contact for payment customer experience and payment performance issues, receiving escalations from internal stakeholders such as Customer Service, Retail Operations, Finance, Accounting, Legal, Tax, Risk, Security, and Compliance, as well as third party partners and banks relied upon to process payments. Additionally, this team is responsible for driving operational efficiencies and escalation reduction opportunities. This … management - Experience driving medium to large sized projects - Experience managing external relationships - Strong business and data analytical skills with excellent problem-solving abilities - Aware of the importance of payment informationsecurity - Be team-conscious, responsible, earnest and cautious - Basic data analysis skills - Have the ability of communication, coordination, hardworking with carefulness, initiatives, meticulous and patience, and undertaking the More ❯
ELT processes using Azure Databricks, ensuring audit-ready financial data pipelines and secure data exchange with Databricks Delta Sharing and SQL Warehouse endpoints. Governance and Compliance Ensure compliance with informationsecurity standards in our highly regulated financial landscape by implementing Databricks Unity Catalog for governance, data quality monitoring, and ADLS Gen2 encryption for audit compliance. Development and Process … Azure DevOps to manage tasks and CI/CD deployments within an Agile framework, including utilising Azure Pipelines (YAML), Terraform, and implementing effective release and branching strategies. Knowledge of security practices, covering RBAC, Azure Key Vault, Private Endpoints, Identity Management. Experience working with relational and non-relational databases and unstructured data. Exposure to Azure Purview, Power BI, and Profisee More ❯