security risk/issue management-related processes and services Experience in Risk Management aligned to certification requirements (ISO27001, ISO31000 or similar) required Knowledge of relevant security/governance frameworks (NIST CSF, ISO27001, CobiT, ) required Experience in service build up a plus Security Governance/Risk Management certification (CISSP, CGEIT, CISM, CRISC ) is a plus Accommodations Qualified individuals with a disability More ❯
City of London, London, United Kingdom Hybrid / WFH Options
Barclay Simpson
deliver the strategic roadmap for global Cyber GRC. Lead and develop a high-performing team across multiple regions. Oversee risk management, assurance, and compliance aligned with frameworks such as NIST, ISO27001 and CIS. Drive third-party and M&A cyber risk management. Deliver clear, data-driven insights and dashboards for senior stakeholders. Champion a strong security culture and continuous improvement More ❯
Chesterfield, Derbyshire, East Midlands, United Kingdom
Major Recruitment
Load balancing concepts and technologies including failover strategies and clustering Integration of identity systems such as Azure AD, On-prem AD Experience with security and compliance frameworks (ISO27001 andNIST) Systems Integration knowledge including off-the-shelf systems, APIs and data transformation pipelines. Design and validation of disaster recovery strategies for on-prem and cloud environments Understanding of Information Systems More ❯
deliver the strategic roadmap for global Cyber GRC. Lead and develop a high-performing team across multiple regions. Oversee risk management, assurance, and compliance aligned with frameworks such as NIST, ISO27001 and CIS. Drive third-party and M&A cyber risk management. Deliver clear, data-driven insights and dashboards for senior stakeholders. Champion a strong security culture and continuous improvement More ❯
business goals, and technical constraints. Desirable Experience working in secure, classified, or defence-related environments. Background in data science, analytics, or data engineering. Knowledge of compliance frameworks such as NIST, ISO 27001, or MOD/USG-specific regulations. Product certifications (e.g., Pragmatic, AIPMM, SAFe PM/PO, CSPO). More ❯
business goals, and technical constraints. Desirable Experience working in secure, classified, or defence-related environments. Background in data science, analytics, or data engineering. Knowledge of compliance frameworks such as NIST, ISO 27001, or MOD/USG-specific regulations. Product certifications (e.g., Pragmatic, AIPMM, SAFe PM/PO, CSPO). Damia Group Limited acts as an employment agency for permanent recruitment More ❯
frameworks, primarily within SAP-enabled environments. Lead client conversations on SAP Vulnerability and Threat Management strategy, compliance challenges, and controls optimisation. Provide insight on Information Security frameworks (OWASP/NIST/NIS2 etc.) and the Secure Operations Map, helping communicate regulatory or good practice obligations and actionable solutions. Manage and mentor junior consultants and analysts to aid a high-performance More ❯
CI/CD pipelines to employee devices to cloud configurations. You'll thrive here if you have: 4+ years in cybersecurity or technical security roles Familiarity with frameworks like NIST, ISO 27001, or CIS Controls Working knowledge of networking, OS (Windows/macOS), and security protocols Experience with tools like Splunk, CrowdStrike, Nessus, Palo Alto, Wireshark Basic cloud security knowledge More ❯
the Greater London area) or in a hybrid setup from our office in Dudley. Position purpose The Cybersecurity & Compliance Manager will lead Tosca’s efforts to ensure adherence to NIST CFS 2.0, ISO 27001, and other standards. This role focuses on developing security protocols, maintaining documentation, conducting risk assessments, and ensuring regulatory compliance. Responsibilities include managing security infrastructure, incident response … and promoting cybersecurity awareness. The position requires collaboration with Global IT, cross-functional teams, and third-party partners. Key qualifications include experience in cybersecurity and compliance, strong knowledge ofNISTand ISO standards, risk management expertise, and effective communication skills. This is a full-time role, with travel up to 30% of the time. Responsibilities Implement security protocols and manage … information security programs Report performance, exceptions, and outages to all audiences transparently. Align disaster recovery with business continuity plans. Ensure compliance with ISO27001, NIST CFS 2.0, and maintain ISMS. Identify risks, develop a comprehensive security plan. Test cyber-attacks regularly to address vulnerabilities. Monitor security trends, adapt strategies. Oversee incident monitoring, detection, response via SOC and MSSPs. Manage security tools More ❯
the Greater London area) or in a hybrid setup from our office in Dudley. Position purpose The Cybersecurity & Compliance Manager will lead Tosca’s efforts to ensure adherence to NIST CFS 2.0, ISO 27001, and other standards. This role focuses on developing security protocols, maintaining documentation, conducting risk assessments, and ensuring regulatory compliance. Responsibilities include managing security infrastructure, incident response … and promoting cybersecurity awareness. The position requires collaboration with Global IT, cross-functional teams, and third-party partners. Key qualifications include experience in cybersecurity and compliance, strong knowledge ofNISTand ISO standards, risk management expertise, and effective communication skills. This is a full-time role, with travel up to 30% of the time. Responsibilities Implement security protocols and manage … information security programs Report performance, exceptions, and outages to all audiences transparently. Align disaster recovery with business continuity plans. Ensure compliance with ISO27001, NIST CFS 2.0, and maintain ISMS. Identify risks, develop a comprehensive security plan. Test cyber-attacks regularly to address vulnerabilities. Monitor security trends, adapt strategies. Oversee incident monitoring, detection, response via SOC and MSSPs. Manage security tools More ❯
london (city of london), south east england, united kingdom
Tosca
the Greater London area) or in a hybrid setup from our office in Dudley. Position purpose The Cybersecurity & Compliance Manager will lead Tosca’s efforts to ensure adherence to NIST CFS 2.0, ISO 27001, and other standards. This role focuses on developing security protocols, maintaining documentation, conducting risk assessments, and ensuring regulatory compliance. Responsibilities include managing security infrastructure, incident response … and promoting cybersecurity awareness. The position requires collaboration with Global IT, cross-functional teams, and third-party partners. Key qualifications include experience in cybersecurity and compliance, strong knowledge ofNISTand ISO standards, risk management expertise, and effective communication skills. This is a full-time role, with travel up to 30% of the time. Responsibilities Implement security protocols and manage … information security programs Report performance, exceptions, and outages to all audiences transparently. Align disaster recovery with business continuity plans. Ensure compliance with ISO27001, NIST CFS 2.0, and maintain ISMS. Identify risks, develop a comprehensive security plan. Test cyber-attacks regularly to address vulnerabilities. Monitor security trends, adapt strategies. Oversee incident monitoring, detection, response via SOC and MSSPs. Manage security tools More ❯
the Greater London area) or in a hybrid setup from our office in Dudley. Position purpose The Cybersecurity & Compliance Manager will lead Tosca’s efforts to ensure adherence to NIST CFS 2.0, ISO 27001, and other standards. This role focuses on developing security protocols, maintaining documentation, conducting risk assessments, and ensuring regulatory compliance. Responsibilities include managing security infrastructure, incident response … and promoting cybersecurity awareness. The position requires collaboration with Global IT, cross-functional teams, and third-party partners. Key qualifications include experience in cybersecurity and compliance, strong knowledge ofNISTand ISO standards, risk management expertise, and effective communication skills. This is a full-time role, with travel up to 30% of the time. Responsibilities Implement security protocols and manage … information security programs Report performance, exceptions, and outages to all audiences transparently. Align disaster recovery with business continuity plans. Ensure compliance with ISO27001, NIST CFS 2.0, and maintain ISMS. Identify risks, develop a comprehensive security plan. Test cyber-attacks regularly to address vulnerabilities. Monitor security trends, adapt strategies. Oversee incident monitoring, detection, response via SOC and MSSPs. Manage security tools More ❯
the Greater London area) or in a hybrid setup from our office in Dudley. Position purpose The Cybersecurity & Compliance Manager will lead Tosca’s efforts to ensure adherence to NIST CFS 2.0, ISO 27001, and other standards. This role focuses on developing security protocols, maintaining documentation, conducting risk assessments, and ensuring regulatory compliance. Responsibilities include managing security infrastructure, incident response … and promoting cybersecurity awareness. The position requires collaboration with Global IT, cross-functional teams, and third-party partners. Key qualifications include experience in cybersecurity and compliance, strong knowledge ofNISTand ISO standards, risk management expertise, and effective communication skills. This is a full-time role, with travel up to 30% of the time. Responsibilities Implement security protocols and manage … information security programs Report performance, exceptions, and outages to all audiences transparently. Align disaster recovery with business continuity plans. Ensure compliance with ISO27001, NIST CFS 2.0, and maintain ISMS. Identify risks, develop a comprehensive security plan. Test cyber-attacks regularly to address vulnerabilities. Monitor security trends, adapt strategies. Oversee incident monitoring, detection, response via SOC and MSSPs. Manage security tools More ❯
Woking, Surrey, England, United Kingdom Hybrid / WFH Options
Michael Page Technology
Collaborate with the cybersecurity function to secure infrastructure against threats targeting critical national infrastructure, including OT (Operational Technology) environments. * Ensure compliance with maritime, data protection, and operational standards including NIST, and local port authority requirements. * Lead business continuity and disaster recovery planning with specific emphasis on safeguarding terminal and cargo operations. Budgeting & Resource Management * Manage operational and capital budgets for More ❯
assurance framework definition, implementation, assessments and reporting Stakeholder management, including working with diverse teams in EMEA, North America, Ireland and Japan Information and Cyber Risk Frameworks andStandards (e.g., NIST/ISO27001) as well as Regulatory frameworks (e.g., Bank of England FCA/PRA, EU). Experience of EMEA Regulations andstandards such as DORA/ECB regulatory requirements is More ❯
Services Familiarity with AI tools or platforms such as Azure AI, AWS SageMaker, or TensorFlow Hands-on experience implementing AI use cases in regulated environments Knowledge of frameworks like NIST AI RMF, ISO 38507, or DAMA DMBOK Relevant certifications in Responsible AI, AI Ethics, Risk Management, or Data Governance Why Join Capco Deliver high-impact technology solutions for Tier More ❯
in collaboration with analysts and operational teams. Comfortable balancing high-level architectural input with hands-on visibility and governance. Familiar with enterprise-level security frameworks andstandards such as NIST, ISO 27001, CIS Controls . Familiarity with the Microsoft Endpoint technology stack is beneficial. Additional Notes: This is a critical project requiring strong governance and strategic input. Experience in enterprise More ❯
Technology audits or IT Assurance (e.g., CISSP, CISM, CISA, CRISC, CCAK) A sound understanding of British and International Security Standards (e.g., ISO/IEC 27001, ISO/IEC 27002, NIST, CIS-20, PCIDSS) and the UK regulatory environment (e.g., ICO, FCA, PRA and CQC). Benefits Our benefits are designed to make health happen for our people. Viva is our More ❯
Kingston Upon Thames, Surrey, United Kingdom Hybrid / WFH Options
Unilever
Find out more about our commitment to equity, diversity, and inclusion on our website . Unilever's Cyber Security team is a global, product-led function aligned to the NIST Cyber Security Framework. We deliver capabilities across governance, protection, detection, response, and recovery to safeguard our people, operations, and digital assets. Operating alongside our Technologyand Data teams, Cyber Security More ❯
Provide technical direction and leadership across projects Essential Skills & Experience Proven expertise in secure cloud architecture and solution design Strong understanding of security standardsand regulations (e.g. NCSC, ISO, NIST, PCI, GDPR) Background in application architecture, software development, or infrastructure architecture Experience with security testing tools and techniques Familiarity with CI/CD pipelines and continuous security practices Knowledge ofMore ❯
Physical. You'll need to have • Previous experience working with IT Systems in a corporate environment. • Good knowledge of control frameworks such as ISO27001, ITIL (Information Technology Infrastructure Library), NIST, IEC 62443 and SABSA. • Good knowledge of Risk Management Methodologies such as ISO27005, IRAM2 and IEC 62443 3-2. • Strong technical skills across IT. • Ability to interpret regulations andMore ❯
e.g. ISC2Certified Information System Security Professional. Knowledge of UK/NATO Information Assurance standards, procedures & systems, including Government Functional Standard GovS 007: Security, HMG IS1&2, ISO27000 series standards, NIST SP800 series standards, JSP440, JSP604, guidance material provided by NCSC, CPNI and NIST. Practical experience of producing Security Accreditation documentation Practical experience of NCSC and Common Criteria security evaluation techniques. More ❯
Physical. You'll need to have • Previous experience working with IT Systems in a corporate environment. • Good knowledge of control frameworks such as ISO27001, ITIL (Information Technology Infrastructure Library), NIST, IEC 62443 and SABSA. • Good knowledge of Risk Management Methodologies such as ISO27005, IRAM2 and IEC (phone number removed)-2. • Strong technical skills across IT. • Ability to interpret regulations More ❯
Physical. You'll need to have • Previous experience working with IT Systems in a corporate environment. • Good knowledge of control frameworks such as ISO27001, ITIL (Information Technology Infrastructure Library), NIST, IEC 62443 and SABSA. • Good knowledge of Risk Management Methodologies such as ISO27005, IRAM2 and IEC 62443 3-2. • Strong technical skills across IT. • Ability to interpret regulations andMore ❯
Physical. You'll need to have • Previous experience working with IT Systems in a corporate environment. • Good knowledge of control frameworks such as ISO27001, ITIL (Information Technology Infrastructure Library), NIST, IEC 62443 and SABSA. • Good knowledge of Risk Management Methodologies such as ISO27005, IRAM2 and IEC 62443 3-2. • Strong technical skills across IT. • Ability to interpret regulations andMore ❯