Bristol, Avon, England, United Kingdom Hybrid / WFH Options
Sanderson
Assurance and Risks. Security related legislation (e.g. GDPR, PCI DSS, ICO requirements). Security Control Frameworks such as ISO 27001, NIST CSF and CIS Controls v8. HMG, NPSA and NCSCsecurity policies, standards and guidance. Have experience building and implementing secure by design principals within the software development lifecycle (SDLC). Threat Modelling - Kill Chain - Attack tree analysis. Working understanding More ❯
Bristol, Avon, South West, United Kingdom Hybrid / WFH Options
Sanderson Government and Defence
Assurance and Risks. Security related legislation (e.g. GDPR, PCI DSS, ICO requirements). Security Control Frameworks such as ISO 27001, NIST CSF and CIS Controls v8. HMG, NPSA and NCSCsecurity policies, standards and guidance. Have experience building and implementing secure by design principals within the software development lifecycle (SDLC). Threat Modelling - Kill Chain - Attack tree analysis. Working understanding More ❯
Greater Bristol Area, United Kingdom Hybrid / WFH Options
Computer Network Defence Ltd (CND)
and update assurance artefacts, including design documentation, risk registers, and compliance checklists. Facilitate security sign-off processes and ensure alignment with internal policies and external standards (e.g., ISO 27001, NCSC guidance). Promote a culture of security awareness and continuous improvement across delivery teams. Essential Skills & Experience Strong understanding of Secure by Design principles and cybersecurity best practices. Experience More ❯
bath, south west england, united kingdom Hybrid / WFH Options
Computer Network Defence Ltd (CND)
and update assurance artefacts, including design documentation, risk registers, and compliance checklists. Facilitate security sign-off processes and ensure alignment with internal policies and external standards (e.g., ISO 27001, NCSC guidance). Promote a culture of security awareness and continuous improvement across delivery teams. Essential Skills & Experience Strong understanding of Secure by Design principles and cybersecurity best practices. Experience More ❯
bradley stoke, south west england, united kingdom Hybrid / WFH Options
Computer Network Defence Ltd (CND)
and update assurance artefacts, including design documentation, risk registers, and compliance checklists. Facilitate security sign-off processes and ensure alignment with internal policies and external standards (e.g., ISO 27001, NCSC guidance). Promote a culture of security awareness and continuous improvement across delivery teams. Essential Skills & Experience Strong understanding of Secure by Design principles and cybersecurity best practices. Experience More ❯
expertise in areas such as cyber strategy, risk management, cyber maturity assessments, security architecture, transformation programmes, and regulatory compliance. Familiarity with leading frameworks and standards including NIST CSF, ISO27001, NCSC CAF, GDPR, NIS2, and CRI2.0. Hands-on experience delivering security solutions and assessments in varied environments. Relevant certifications such as CISSP, CISM, CISA, M.Inst.ISP, or a postgraduate qualification (e.g. MSc More ❯
South West London, London, United Kingdom Hybrid / WFH Options
Anson Mccade
and client environments What You'll Bring Strong experience in cyber strategy, risk management, governance, architecture, and regulatory compliance Familiarity with frameworks and standards such as NIST CSF, ISO27001, NCSC CAF, GDPR, and NIS2 Industry-recognised certifications (e.g. CISSP, CISM, CISA, M.Inst.ISP, or equivalent) Practical experience in GRC, threat and vulnerability management, or operational resilience Proven delivery across complex programmes More ❯
Bradford, West Yorkshire, Yorkshire, United Kingdom Hybrid / WFH Options
Yorkshire Water
assure policy compliance Support investigations and coordinate stakeholder engagement Ensure legal and data privacy compliance during incidents Engage with government agencies and industry bodies Participate in forums (e.g. DWI, NCSC, Local Resilience Forums) Contribute to GRC metrics, KPIs, KRIs, and reporting Align work with business priorities and challenge inefficiencies Take ownership of customer issues and act on feedback Make informed More ❯
optimal solutions. If your career has given you the opportunity to author and publish technical reports, advise clients, work with formal security frameworks including ISA/IEC 62443 and NCSC's CAF framework and define and design OT solutions from a security perspective then you would be a real asset to our team. Adding to the CyberSecurity capability's More ❯
London, South East, England, United Kingdom Hybrid / WFH Options
Sanderson
technical role Recent MOD experience Security related legislation (e.g. GDPR, PCI DSS, ICO requirements) Security Control Frameworks such as ISO 27001, NIST CSF and CIS Controls v8 HMG and NCSCsecurity policies, standards and guidance Cloud security including Amazon Web Service offerings such as KMS, IAM and ECS Event-driven microservice architectures using native cloud technology Benefits: 25 days holiday More ❯
Greater Bristol Area, United Kingdom Hybrid / WFH Options
Logiq
security certification. Desirable Full Membership of the Chartered Institute of Information Security (CIISec) - highly desirable. Chartered or Principal status via the UK CyberSecurity Council for Secure Systems Architecture. NCSC Certified Cyber Professional in Security Architecture. IEng or CEng registered with UK Engineering body. Chartership through the British Computer Society. SABSA Chartered Security Architect Other information: Logiq is committed to More ❯
bath, south west england, united kingdom Hybrid / WFH Options
Logiq
security certification. Desirable Full Membership of the Chartered Institute of Information Security (CIISec) - highly desirable. Chartered or Principal status via the UK CyberSecurity Council for Secure Systems Architecture. NCSC Certified Cyber Professional in Security Architecture. IEng or CEng registered with UK Engineering body. Chartership through the British Computer Society. SABSA Chartered Security Architect Other information: Logiq is committed to More ❯
bradley stoke, south west england, united kingdom Hybrid / WFH Options
Logiq
security certification. Desirable Full Membership of the Chartered Institute of Information Security (CIISec) - highly desirable. Chartered or Principal status via the UK CyberSecurity Council for Secure Systems Architecture. NCSC Certified Cyber Professional in Security Architecture. IEng or CEng registered with UK Engineering body. Chartership through the British Computer Society. SABSA Chartered Security Architect Other information: Logiq is committed to More ❯
Bath, England, United Kingdom Hybrid / WFH Options
Computer Network Defence Ltd (CND)
experience in information security, ideally in a CISO or equivalent role within software or health tech. Healthcare Standards : Strong knowledge of UK healthcare security frameworks like DSPT, DTAC, and NCSC CAF. ISO 27001 : Proven track record in implementing and maintaining ISO 27001:2022-certified ISMS. Secure by Design : Deep understanding of secure SDLC and embedding security into product and system More ❯
bristol, south west england, united kingdom Hybrid / WFH Options
Computer Network Defence Ltd (CND)
experience in information security, ideally in a CISO or equivalent role within software or health tech. Healthcare Standards : Strong knowledge of UK healthcare security frameworks like DSPT, DTAC, and NCSC CAF. ISO 27001 : Proven track record in implementing and maintaining ISO 27001:2022-certified ISMS. Secure by Design : Deep understanding of secure SDLC and embedding security into product and system More ❯
taunton, south west england, united kingdom Hybrid / WFH Options
Computer Network Defence Ltd (CND)
experience in information security, ideally in a CISO or equivalent role within software or health tech. Healthcare Standards : Strong knowledge of UK healthcare security frameworks like DSPT, DTAC, and NCSC CAF. ISO 27001 : Proven track record in implementing and maintaining ISO 27001:2022-certified ISMS. Secure by Design : Deep understanding of secure SDLC and embedding security into product and system More ❯
Key Responsibilities Support cyber transformation projects, governance assessments, and maturity roadmaps Assist with cyber strategy documentation and recommendations for leadership teams Work across frameworks such as ISO27001, NIST CSF, NCSC CAF, GDPR, and NIS2 Contribute to reports, client workshops, presentations, and stakeholder engagement Develop knowledge of security concepts, risk appetite alignment, and digital resilience What We're Looking For Degree More ❯
cross-HMG security principles), into usable, department-specific tools and guidance. Engage with OGDs and cross-HMG forums to ensure our frameworks align with DSIT, Cabinet Office and NationalCyberSecurityCentre standards. Establish and maintain secure-by-design and explainability guardrails for AI across the estate. Provide enterprise-level architectural governance across AI pilots, ensuring reuse, integration and compliance. More ❯
Bristol, Gloucestershire, United Kingdom Hybrid / WFH Options
Hays Technology
cross-HMG security principles), into usable, department-specific tools and guidance. Engage with OGDs and cross-HMG forums to ensure our frameworks align with DSIT, Cabinet Office and NationalCyberSecurityCentre standards. Establish and maintain secure-by-design and explainability guardrails for AI across the estate. Provide enterprise-level architectural governance across AI pilots, ensuring reuse, integration and compliance. More ❯
Bristol, Avon, South West, United Kingdom Hybrid / WFH Options
Hays
cross-HMG security principles), into usable, department-specific tools and guidance. Engage with OGDs and cross-HMG forums to ensure our frameworks align with DSIT, Cabinet Office and NationalCyberSecurityCentre standards. Establish and maintain secure-by-design and explainability guardrails for AI across the estate. Provide enterprise-level architectural governance across AI pilots, ensuring reuse, integration and compliance. More ❯
regarding CyberSecurity amongst the IT Team and throughout the Institute. Ensure IT Security documentation is regularly reviewed and kept up to date. Work with established organisations such as NCSC, JISC, etc, to keep up to date with security threat factors. People Lead, manage and develop the Information Technology team and create a positive working environment, providing individuals with clear More ❯
Greater Bristol Area, United Kingdom Hybrid / WFH Options
Logiq
System Hardening, Cryptographic Controls (PKI, Data at Rest/In Transit), Protective Monitoring, and Security Auditing. Strong understanding of the ISO 27000 series, NIST CyberSecurity & Risk Management Frameworks, NCSC CAF, and other industry standards. Familiarity with NCSC guidance and legacy Information Assurance (IA) standards. Experience with MOD security frameworks including JSP 604, JSP 440, JSP 902, and DEFCON 659A. More ❯
bath, south west england, united kingdom Hybrid / WFH Options
Logiq
System Hardening, Cryptographic Controls (PKI, Data at Rest/In Transit), Protective Monitoring, and Security Auditing. Strong understanding of the ISO 27000 series, NIST CyberSecurity & Risk Management Frameworks, NCSC CAF, and other industry standards. Familiarity with NCSC guidance and legacy Information Assurance (IA) standards. Experience with MOD security frameworks including JSP 604, JSP 440, JSP 902, and DEFCON 659A. More ❯