Leeds, Yorkshire, United Kingdom Hybrid/Remote Options
PEXA Group
Proven experience leading cyber security operations in a regulated or financial services environment (FCA exposure preferred). Strong understanding of security governance, assurance frameworks, and audit processes (ISO 27001, NIST, GDPR, Cyber Essentials Plus). Experience with modern security tooling such as:o Cortex XDR/Palo Alto Networkso Splunk (SIEM and dashboarding)o Abnormal Security (email security)o Prisma More ❯
Leeds, Yorkshire, United Kingdom Hybrid/Remote Options
Stott and May
Leadership & Strategy Define and implement the company's security strategy across AI, blockchain, and cloud environments. Establish policies, standards, and governance frameworks aligned with industry best practices (ISO 27001, NIST, SOC2). Lead incident response, risk assessment, and threat modelling programmes. Build and mentor a world-class security team. AI Data Security Protect proprietary AI models, training data, and pipelines More ❯
City, London, United Kingdom Hybrid/Remote Options
The Bridge IT Recruitment
Detection and Response), and network architecture. Practical experience managing cyber incidents and implementing secure configurations. Excellent analytical and problem-solving skills, with clear documentation and communication abilities. Familiarity with NIST, ISO 27001, and CIS Controls frameworks. Ability to work under pressure, prioritise effectively, and maintain attention to detail. Desirable: Professional certifications such as GSEC, CISSP, OSCP, CISA, CompTIA Sec+, or More ❯
London, Fleet Street, United Kingdom Hybrid/Remote Options
The Bridge IT Recruitment
Detection and Response), and network architecture. Practical experience managing cyber incidents and implementing secure configurations. Excellent analytical and problem-solving skills, with clear documentation and communication abilities. Familiarity with NIST, ISO 27001, and CIS Controls frameworks. Ability to work under pressure, prioritise effectively, and maintain attention to detail. Desirable: Professional certifications such as GSEC, CISSP, OSCP, CISA, CompTIA Sec+, or More ❯
Bristol, Gloucestershire, United Kingdom Hybrid/Remote Options
British Veterinary Association
Security+, CEH, CySA+, or Cloud Security Engineer. Extensive experience in cybersecurity, especially incident response and technical operations. Strong understanding of AWS and Azure cloud platforms. Familiarity with frameworks like NIST, ISO, COBIT, and OWASP. Proven success in leading and delivering security projects. Experience with PowerShell and automation. Consulting experience across IT and digital teams. Flexibility for occasional travel and out More ❯
Reading, Berkshire, United Kingdom Hybrid/Remote Options
Stott and May
enterprise applications and cloud platforms (AWS, Azure, GCP). Implement DevSecOps practices, including secure CI/CD pipelines and infrastructure-as-code templates. Ensure compliance with frameworks such as NIST CSF, ISO 27001, PCI DSS, and CSA CCM. Essential Skills & Experience 15+ years in Information Security, 7-8+ years in Security Architecture. Cloud security architecture experience (AWS, Azure, GCP More ❯
Cambridgeshire, England, United Kingdom Hybrid/Remote Options
Sanderson
MOD/GDS Secure by Design Principles Supplier Chain Assurance and Risks. Security related legislation (e.g. GDPR, PCI DSS, ICO requirements). Security Control Frameworks such as ISO 27001, NIST CSF and CIS Controls v8. HMG, NPSA and NCSC security policies, standardsand guidance. Have experience building and implementing secure by design principals within the software development lifecycle (SDLC). More ❯
Cambridgeshire, East Anglia, United Kingdom Hybrid/Remote Options
Sanderson Government and Defence
MOD/GDS Secure by Design Principles Supplier Chain Assurance and Risks. Security related legislation (e.g. GDPR, PCI DSS, ICO requirements). Security Control Frameworks such as ISO 27001, NIST CSF and CIS Controls v8. HMG, NPSA and NCSC security policies, standardsand guidance. Have experience building and implementing secure by design principals within the software development lifecycle (SDLC). More ❯
Hampshire, South East, United Kingdom Hybrid/Remote Options
Sanderson Government and Defence
MOD/GDS Secure by Design Principles Supplier Chain Assurance and Risks. Security related legislation (e.g. GDPR, PCI DSS, ICO requirements). Security Control Frameworks such as ISO 27001, NIST CSF and CIS Controls v8. HMG, NPSA and NCSC security policies, standardsand guidance. Have experience building and implementing secure by design principals within the software development lifecycle (SDLC). More ❯
Greater Bristol Area, United Kingdom Hybrid/Remote Options
RedRock Resourcing
Network security fundamentals (firewalls, segmentation, secure remote access). Knowledge of IAM (MFA, RBAC, conditional access) and data protection (classification, encryption) policies. Experience aligning builds to recognised frameworks (e.g., NIST, CIS Controls, ISO 27001, Cyber Essentials Plus). Implementing monitoring/logging/alerting and vulnerability management tools including SIEM. Ability to define security configurations and drive consistent adoption across More ❯
Nottingham, Nottinghamshire, East Midlands, United Kingdom Hybrid/Remote Options
Littlefish
skills, and a passion for emerging tech. The following would also be of interest: Certifications in automation/cloud (Azure Solutions Architect, Terraform, GIAC), vulnerability management (Qualys, ISO 27001, NIST). Experience with SOAR, SIEM, XDR, and cloud-native security (especially Azure). Pre-sales or solution architecture exposure. What can we offer you? Through our one of a kind More ❯
Warwick, Warwickshire, England, United Kingdom Hybrid/Remote Options
KBC Technologies UK LTD
Cloud & Engineering teams Communicate complex technical security topics to non-technical audience Provide guidance/training to internal teams Maintain updated documentation & security configuration baselines Industry Standards Knowledge Preferred NIST ISO 27001 CIS Controls Certifications (Preferred but not mandatory) Palo Alto – PCNSA/PCNSE, F5, CompTIA, Zscaler, Azure, AWS, CISSP, CCSP, ISSAP, ITIL etc. More ❯
City of London, London, United Kingdom Hybrid/Remote Options
Travelfusion
you'll have ● Minimum of 5 years experience in leading and implementing security measures: protocols, data security, cyber and information security ● Qualifications: Certification/experience in ISO 27001, GDPR, NIST, PCI DSS, SOX ● Knowledge of GRC platforms; strong analytical and communication skills ● Governance qualifications valued ● Knowledge of regulations with a deep understanding of GDPR and other data protection laws ● Proficiency More ❯
you'll have ● Minimum of 5 years experience in leading and implementing security measures: protocols, data security, cyber and information security ● Qualifications: Certification/experience in ISO 27001, GDPR, NIST, PCI DSS, SOX ● Knowledge of GRC platforms; strong analytical and communication skills ● Governance qualifications valued ● Knowledge of regulations with a deep understanding of GDPR and other data protection laws ● Proficiency More ❯
Cambridgeshire, England, United Kingdom Hybrid/Remote Options
Sanderson Government & Defence
MOD/GDS Secure by Design Principles Supplier Chain Assurance and Risks. Security related legislation (e.g. GDPR, PCI DSS, ICO requirements). Security Control Frameworks such as ISO 27001, NIST CSF and CIS Controls v8. HMG, NPSA and NCSC security policies, standardsand guidance. Have experience building and implementing secure by design principals within the software development lifecycle (SDLC). More ❯
Hampshire, England, United Kingdom Hybrid/Remote Options
Sanderson Government & Defence
MOD/GDS Secure by Design Principles Supplier Chain Assurance and Risks. Security related legislation (e.g. GDPR, PCI DSS, ICO requirements). Security Control Frameworks such as ISO 27001, NIST CSF and CIS Controls v8. HMG, NPSA and NCSC security policies, standardsand guidance. Have experience building and implementing secure by design principals within the software development lifecycle (SDLC). More ❯
London, South East, England, United Kingdom Hybrid/Remote Options
Devonshire Hayes Recruitment Specialists Limited
practices. Experience with security assessment and risk management methodologies. Proficiency in cloud security, particularly with Azure security tools and services. Knowledge of security standardsand frameworks (e.g., ISO 27001, NIST, CIS). Familiarity with security technologies such as firewalls, web proxies/remote access solutions. Experience with ZTNA, CTI, threat modelling is beneficial. Bachelor’s degree in information security, Computer More ❯
Bristol, Avon, South West, United Kingdom Hybrid/Remote Options
ITS Recruitment
3rd-party SOC, helping to ensure critical assets remain secure Manage supplier relationships, report on control effectiveness, and support compliance with ISO 27001, GDPR, and Cyber Essentials Plus TechnologyNIST, CIS, NCSC, Mitre Att&ck, Security Scorecard, M365/Azure Security Center Azure Security Center, SIEM, Defender ATP, M365 Security, Data Compliance and Governance, PIM & PAM Zscaler (ZTNA), Darktrace, Firewalls More ❯
New Works, Telford, Shropshire, England, United Kingdom Hybrid/Remote Options
Service Care Solutions
cloud and network security (Microsoft M365, Azure, Defender, DLP, Conditional Access preferred). Experience reviewing security questionnaires, tenders, and supplier assurance evidence. Knowledge of risk assessment methodologies (ISO 27005, NIST RMF, or equivalent). Familiarity with ISO 27001, Cyber Essentials Plus, DSPT, and GDPR. Ability to interpret vulnerability scan results and prioritise remediation. Strong written communication and stakeholder engagement skills. More ❯
Crawley, West Sussex, South East, United Kingdom Hybrid/Remote Options
Morson Edge
CEH, CASP+, or SIEM-specific training. Strong knowledge of SIEM, SOAR, EDR, IDS/IPS, NAC, DLP, and related security technologies. Familiarity with frameworks such as MITRE ATT&CK, NIST, CIS, and ISO/IEC 27001/27002. Hands-on experience with tools such as FortiSIEM, Q-Radar, Microsoft Defender, Darktrace, Microsoft Sentinel, or similar platforms. Experience in forensic analysis More ❯
Hampshire, England, United Kingdom Hybrid/Remote Options
Trust In SODA
Sentry, or CPC). Strong understanding of Active Directory, LDAP , and authentication protocols. Scripting experience (PowerShell, Python) for automation and reporting. Familiarity with compliance and regulatory frameworks (ISO 27001, NIST, GDPR). Excellent analytical, communication, and documentation skills. Preferred Qualifications Certifications such as CISSP , CISM , or CyberArk CDE . Experience with cloud platforms (AWS, Azure, GCP) and hybrid infrastructures. Exposure More ❯