London, South East, England, United Kingdom Hybrid / WFH Options
Oliver James
to relevant stakeholders What We're Looking For: Previous experience in IT audit, information security, or risk management (in-house or external) Knowledge of audit tools, frameworks (e.g. COBIT, NIST), and security standards Strong understanding of IT general controls (ITGCs), infrastructure, and networks Excellent analytical, problem-solving, and communication skills Experience working within data centres or critical infrastructure environments is More ❯
procedures. Provide regular reporting on incidents, risks, and compliance status. Required Skills: 3-5 years of experience in cyber security roles, with hands-on involvement in implementing frameworks like NIST, eCAF, or ISO27001 Experience in SIEM, Vulnerability Management, Threat Intelligence, and IAM tools Background in supporting enterprise-level security initiatives aligned with regulatory or certification standards If you're interested More ❯
Portsmouth, yorkshire and the humber, united kingdom
IO Associates
procedures. Provide regular reporting on incidents, risks, and compliance status. Required Skills: 3-5 years of experience in cyber security roles, with hands-on involvement in implementing frameworks like NIST, eCAF, or ISO27001 Experience in SIEM, Vulnerability Management, Threat Intelligence, and IAM tools Background in supporting enterprise-level security initiatives aligned with regulatory or certification standards If you're interested More ❯
Sheffield, South Yorkshire, England, United Kingdom
Opus Recruitment Solutions Ltd
embed security best practices. Define and maintain security policies, standards, and reference architectures. Support incident response and cloud forensics as needed. Ensure alignment with security frameworks (e.g., ISO 27001, NIST, CIS). Essential Skills 5+ years in security architecture roles, with a strong AWS focus. Deep knowledge of AWS services (IAM, KMS, VPC, CloudTrail, GuardDuty, etc.). Experience with Infrastructure More ❯
information security . This would suit someone working towards or be qualified in CISSP/CISA/CISM and experience in risk and regulatory frameworks andstandards, such as NIST, ISO27001, MOD JSP440, JSP604. Working for a very successful MSP who supports HMG’s security classification system working on defence projects. You must be security cleared or be willing andMore ❯
Reigate, Surrey, South East, United Kingdom Hybrid / WFH Options
Client Server
subscription management structures and have experience of managing Azure subscriptions You have a good knowledge of DevOps and IaC concepts You're familiar with cloud based security (e.g. ISO27001, NIST, CIS, OWASP, SOC2) and Identity and Access Management (IAM) within Azure You're familiar with ARM templates and/or Pulumi Ideally you will have automation and scripting (PowerShell or More ❯
landscape Familiarity with AWS, Azure, or Google Cloud. Understanding of Cyber Services markets e.g. Penetration Testing, Red Team/Purple Team, Adversary Simulation, risk and compliance frameworks ISO 27001, NIST, DORA, CREST. TIBER etc.) Willingness to travel to regular F2F end user meetings Familiarity with tools andstandards such as OWASP, MITRE ATT&CK etc Self-starter with a results More ❯
eg quantum computing. You have Excellent experience in cyber security and in particular IT and OT cyber security and risk management and strong understanding of cyber security frameworks (e.g., NIST, ISO 27001, IEC 62443, CIS Controls) and NIS Regulations. In-depth understanding of cyber security products, services, systems and solutions and exposure to multiple, diverse technologies and processing environments andMore ❯
security platforms and working across diverse environments (cloud, hybrid, manufacturing). - Hands-on expertise with EDR, SOAR tooling, and SASE/SSE technologies. - Deep familiarity with frameworks such as NIST, MITRE ATT&CK, and other industry standards. - Strong stakeholder management skills and the ability to influence at all levels of the business. - A pragmatic, action-oriented approach to reaching strategic More ❯
with executive leadership and external stakeholders. What We're Looking For: Extensive experience in Information and Cyber Security, with strong strategic thinking and operational delivery. Familiarity with frameworks like NIST, Cyber Essentials Plus, and GovAssure. Proven leadership and people management skills in fast-paced environments. Experience in project delivery, risk management, and supplier negotiations. Excellent stakeholder engagement, especially at senior More ❯
Sheffield, Yorkshire, United Kingdom Hybrid / WFH Options
British Business Bank plc
with executive leadership and external stakeholders. What We're Looking For: Extensive experience in Information and Cyber Security, with strong strategic thinking and operational delivery. Familiarity with frameworks like NIST, Cyber Essentials Plus, and GovAssure. Proven leadership and people management skills in fast-paced environments. Experience in project delivery, risk management, and supplier negotiations. Excellent stakeholder engagement, especially at senior More ❯
document, and enforce comprehensive cloud security policies, standards, and procedures that govern cloud infrastructure, services, and containerised workloads. Work collaboratively to integrate security compliance frameworks such as CIS Benchmarks, NIST, and SOC2, ensuring policies are consistently applied across the organization. Cloud Migration & Native Infrastructure Support: Provide guidance and hands on support to teams migrating workloads and applications to cloud-native More ❯
Peterborough, Cambridgeshire, England, United Kingdom Hybrid / WFH Options
The One Group
years' experience in a Security Analyst or SOC-type role Strong understanding of vulnerability management, EDR/SIEM alert triage, and incident response Experience with compliance frameworks (ISO 27001, NIST, etc.) A working knowledge of VMware, AD, Windows Server, Linux Comfort handling multiple tools - Elastic, Tenable, CrowdStrike (or comparable alternatives) Bonus points for: CEH/Security+/CISSP/Fortinet More ❯
DLP and compliance tools) and Azure Security Stack (including Microsoft Defender for Cloud, Microsoft Sentinel, Azure AD etc). Solid understanding of security frameworks (e.g., ISO 27001, Cyber Essentials, NIST, GDPR etc). Experience with vulnerability scanning, risk assessment, and remediation planning. Strong communication skills with the ability to work with both technical and non-technical teams. A proactive approach More ❯
City of London, London, United Kingdom Hybrid / WFH Options
British Business Bank
engaging with executive leadership and external stakeholders. What Were Looking For: Extensive experience in Information and Cyber Security, with strong strategic thinking and operational delivery. Familiarity with frameworks like NIST, Cyber Essentials Plus, and GovAssure. Proven leadership and people management skills in fast-paced environments. Experience in project delivery, risk management, and supplier negotiations. Excellent stakeholder engagement, especially at senior More ❯
compliance with industry standards. Key Responsibilities: Conducting assurance reviews and risk assessments Embedding security into solution designs Supporting incident response and post-incident analysis Ensuring compliance with GDPR, ISO27001, NIST, and other frameworks Advising on threat modelling and mitigation strategies What We're Looking For: Strong understanding of security principles and frameworks Experience designing and implementing security controls Excellent stakeholder More ❯
Sheffield, South Yorkshire, Yorkshire, United Kingdom Hybrid / WFH Options
British Business Bank
engaging with executive leadership and external stakeholders. What Were Looking For: Extensive experience in Information and Cyber Security, with strong strategic thinking and operational delivery. Familiarity with frameworks like NIST, Cyber Essentials Plus, and GovAssure. Proven leadership and people management skills in fast-paced environments. Experience in project delivery, risk management, and supplier negotiations. Excellent stakeholder engagement, especially at senior More ❯
handsworth, yorkshire and the humber, united kingdom Hybrid / WFH Options
British Business Bank
engaging with executive leadership and external stakeholders. What Were Looking For: Extensive experience in Information and Cyber Security, with strong strategic thinking and operational delivery. Familiarity with frameworks like NIST, Cyber Essentials Plus, and GovAssure. Proven leadership and people management skills in fast-paced environments. Experience in project delivery, risk management, and supplier negotiations. Excellent stakeholder engagement, especially at senior More ❯
Leeds, England, United Kingdom Hybrid / WFH Options
AppCheck Ltd
Enterprise customers in a B2B SaaS context. Experience of working with B2C SaaS/reseller networks. Knowledge & Skills: An understanding of compliance frameworks such as GDPR, ISO 27001, SOC, NIST, HIPAA, etc and how they shape requirements. Knowledge of SQL (preferably DuckDB) for data analysis. An understanding of the current state and capabilities of LLMs for assessing AI opportunities. An More ❯
you will help our clients: Security Architecture: Translate business, data protection and security requirements into practical and well-structured architectural designs, utilizing industry best practices and security frameworks (e.g., NIST, ISO 27001, CIS). Develop and maintain secure architectural patterns andstandards, with a solid working knowledge of cloud security (AWS, Azure, GCP). Apply risk-based and threat-based … information security, data protection, and security architecture roles, with a focus on cloud security, and compliance. Strong understanding of security governance, risk, and compliance frameworks such as ISO 27001, NIST 800-53/CSF, NIS/NIS2, DORA, UK CNI/OT/IIOT compliance. Hands-on experience building credibility with external stakeholders through technical presentations, audits, or compliance reporting More ❯
win plans. Maintain and update security policies, procedures, and incident response plans. Deliver security awareness training and advise clients on best practices. Support audits and compliance initiatives (ISO 27001, NIST, GDPR, etc.). Work cross-functionally with internal and external teams, including partner engagements. Research emerging threats and recommend security framework enhancements. Mentor and support junior security team members. What … and KQL. Proven skills in threat detection, incident response, and forensic analysis. Knowledge of SOAR tools (especially Palo Alto XSOAR or similar). Familiarity with compliance standards: ISO 27001, NIST, CIS, GDPR, HIPAA. Bonus: scripting/automation skills (Python, PowerShell, Bash). Deep understanding of Microsoft security technologies. Certifications such as CISSP, CEH, OSCP, CISM, or Security+ are highly desirable. More ❯
assessments and ensure remediation plans are executed effectively. Maintain relevant security certifications such as Cyber Essentials/Plus and support the business in aligning with broader security frameworks (e.g., NIST CSF, CIS Controls). Awareness & Security Culture Lead internal training, briefings and onboarding sessions to build awareness and support for secure behaviours across the organisation. Act as a security advocate … to cyber incidents. Familiar with automating tasks with Python or similar programming languages, as well as using SQL to query data at scale. Knowledge of security frameworks such as NIST CSF, CIS Controls, and Cyber Essentials, with working knowledge of ISO 27001 beneficial but not essential. Understanding of UK data protection law and its practical application within a security programme. More ❯
and certification processes like FRACAS/CAP and corrective actions. Our architecture emphasizes not only functionality but also aligns with business processes and government policies, including cybersecurity standards like NIST SP 800-171, CMMC, and ITAR compliance. We aim to leverage Generative AI models to analyze data, identify knowledge gaps, and maintain operational and regulatory compliance, especially with DFARS andMore ❯
Gartner analysts have many years of experience and enjoy solving puzzles. Subject matter expertise and hands-on experience in enterprise security architecture and architecture frameworks such as SABSA andNIST CSF. Experience with applying security architecture end-end; from business analysis to technical component selection. Subject matter expertise in cloud security, with the ability to demonstrate understanding of the business More ❯
Woking, Surrey, England, United Kingdom Hybrid / WFH Options
Michael Page Technology
Collaborate with the cybersecurity function to secure infrastructure against threats targeting critical national infrastructure, including OT (Operational Technology) environments. * Ensure compliance with maritime, data protection, and operational standards including NIST, and local port authority requirements. * Lead business continuity and disaster recovery planning with specific emphasis on safeguarding terminal and cargo operations. Budgeting & Resource Management * Manage operational and capital budgets for More ❯