/Navy directives, policies, and instruction to include but not limited to Federal Information Security Management Act (FISMA), OMB A-130, NISTSP800Series, FIPS Publications, and Navy RMF governance. Assists in RMF A&A process negotiation and task management for accomplishing A&A activities. … and technologies, 5G, and other relevant technologies in use with modern enterprises. Extensive experience and understanding of DoD cybersecurity and policies, instructions, and NIST publications as they relate to the Authorizing Official. Understanding of system and software SDLCs, and unique DoD domains such as Cross-domain solutions, PPSM. More ❯
and training initiatives across the organisation. Skills & Experience Required Hands-on experience in cybersecurity governance, risk, or assurance. Strong knowledge of NISTSP800-53 and deep familiarity with GDPR and financial regulations. Experience managing service catalogues and aligning BAU controls with regulatory expectations. Proficiency in More ❯
london, south east england, United Kingdom Hybrid / WFH Options
Albany Beck
and training initiatives across the organisation. Skills & Experience Required Hands-on experience in cybersecurity governance, risk, or assurance. Strong knowledge of NISTSP800-53 and deep familiarity with GDPR and financial regulations. Experience managing service catalogues and aligning BAU controls with regulatory expectations. Proficiency in More ❯
a major transformation of its Security Risk Management capability, focusing on enhanced technical execution, regulatory alignment, and operational maturity. Guided by NISTSP800-53, GDPR, PRA (BoE), and FRB/OCC expectations, they are shifting from project-led practices towards a BAU security operations model. More ❯
london, south east england, United Kingdom Hybrid / WFH Options
Albany Beck
a major transformation of its Security Risk Management capability, focusing on enhanced technical execution, regulatory alignment, and operational maturity. Guided by NISTSP800-53, GDPR, PRA (BoE), and FRB/OCC expectations, they are shifting from project-led practices towards a BAU security operations model. More ❯
City Of Bristol, England, United Kingdom Hybrid / WFH Options
Logiq
security policy, processes, and practices (inc Joint Service Publications 604, 440). Knowledge of national and international security frameworks such as NISTSP800 Series. Experience managing agile teams, DevOps engineering teams and CI/CD. Practical experience managing requirements, verification, validation and acceptance. Certifications in More ❯
TestStand, C++, Python, and C# Desirable: Experience of Test Equipment design Understanding of the cyber security controls as set out in NISTSP800-171 Benefits: You'll receive benefits including a competitive pension scheme, enhanced annual leave allowance and a Company contributed Share Incentive Plan. More ❯
delivering security solutions for large-scale infrastructure, transformation or integration programmes Practical knowledge and understanding of industry security frameworks and guidance such as NIST CSF, NIST800-53, NCSC CAF and other NCSC guidelines Good knowledge of networking (switching, routing, firewalls) Experience with the More ❯
compliant technology environment. What you will be doing: Maintain security policy, standards, procedures and frameworks. Ensure alignment with security industry standards such as NIST CSF and NIST800-53. Act as an advisor to colleagues across the organisation on best security practice. Conduct … Information Security, CICA, CRISC, CISM and/or Data analysis beneficial but not essential if experience validates skills. Knowledge of security frameworks (e.g., NIST CSF, ISO 27001, SOC1,2). Prince 2, MSP, APMQ advantageous. A desire to continue learning and developing security skills and qualifications Our commitment More ❯
london, south east england, United Kingdom Hybrid / WFH Options
CLS Group
compliant technology environment. What you will be doing: Maintain security policy, standards, procedures and frameworks. Ensure alignment with security industry standards such as NIST CSF and NIST800-53. Act as an advisor to colleagues across the organisation on best security practice. Conduct … Information Security, CICA, CRISC, CISM and/or Data analysis beneficial but not essential if experience validates skills. Knowledge of security frameworks (e.g., NIST CSF, ISO 27001, SOC1,2). Prince 2, MSP, APMQ advantageous. A desire to continue learning and developing security skills and qualifications Our commitment More ❯
comprehensive understanding of what it takes to comply with cyber security industry standards and frameworks in practise (e.g. ISO 27001, NIST CSF, SP800-53, NCSC CAF, Cyber Essentials). Has a thorough understanding of cyber security threat and risk with the ability to think like More ❯
Architecture: Translate business, data protection and security requirements into practical and well-structured architectural designs, utilizing industry best practices and security frameworks (e.g., NIST, ISO 27001, CIS). Develop and maintain secure architectural patterns and standards, with a solid working knowledge of cloud security (AWS, Azure, GCP). … architecture roles, with a focus on cloud security, and compliance. Strong understanding of security governance, risk, and compliance frameworks such as ISO 27001, NIST800-53/CSF, NIS/NIS2, DORA, UK CNI/OT/IIOT compliance. Hands-on experience building credibility with external More ❯
as CISSP, CISM, CCSP, CISA, CRISC or equivalent experience Expertise and practical knowledge and understanding of industry security frameworks and guidance such as NIST800-53, NCSC CAF GovAssure, NIST CSF, DORA and NCSC guidelines Good knowledge and understanding of Cyber Security domains, including More ❯
incident response, security posture assessment, and security management. Thorough understanding of Security Management and Governance principles. Good knowledge of MITRE Framework, IEC 62443, NIST800-series. Why Join Us? Make a significant impact by securing global supply chain operations. Work with leading cybersecurity tools in a More ❯
Performs or coordinates internal security assessments, penetration tests, vulnerability scans, and assess organization cybersecurity maturity Complying with frameworks and regulations such as COBIT, NIST (800-53, cybersecurity), ISO, ITIL, PCI, GLBA, GDPR, HIPAA, and other data privacy and security standards and regulations. Provides internal customer support … Provides a documented work history that includes a minimum of 5-years experience in Information Security. Proficiency in security framework models such as NIST, etc., implementing and auditing security measures, security response, and incident management. Possess a working knowledge of Cisco network switches, routers, firewalls and VPN, network … upon vulnerability management program. Ability to propose solutions for closing identified vulnerabilities in the infrastructure. Desired Qualifications: Certified Information System Security Professional (CISSP), NIST Cybersecurity Framework (NCSF), Certified Cloud Security Professional (CCSP) andor Certified Ethical Hacker (CEH) Knowledge and experience with Microsoft Office and Visio. Knowledge of WAN More ❯
directs, develops or maintains organisational cyber and information security policies, standards and processes, using recognised standards (e.g. the ISO/IEC 27000 family, NIST CSF) where appropriate. Applies recognised cyber and information security standards and controls within an organisation, programme, project or operation. Applies relevant security classification. Risk … protection, risk management, enterprise IT, legal or (relevant) compliance roles. Strong understanding of security governance, risk, and compliance frameworks such as ISO 27001, NIST800-53/CSF, NIS/NIS2, DORA, UK CNI/OT/IIOT compliance. Hands-on experience building credibility with external More ❯
Gloucestershire, United Kingdom Hybrid / WFH Options
SSR General & Management
breaches. Provide security guidance and training to teams across the organization. The Person Key Skills & Experience: Strong knowledge of security frameworks (ISO 27001, NIST800-30/53, OWASP). Experience with risk management methodologies and compliance with MOD and HMG security standards (JSP, Def Stan More ❯
both a GRC and technical nature alongside frameworks such as ISO27001/2:2005/13, DORA, NIS 2, PCI-DSS, GDPR-DPO, NIST CSF SP800-53, PSD-2, FCA/PRA, and MS Azure. Ownership of Strategic, Operational, and Tactical IT Security and Risk Management, technical and More ❯
Services regulatory landscape (e.g., PRA, FCA, BoE, ECB, MAS). Experience working with a range of security governance frameworks and standards e.g., ISO27001, NIST SP800-53, PCI-DSS. Security and Cloud related qualifications e.g., CISSP, CCSP, CCSK, TOGAF, SABSA, and/or vendor architectural qualifications in AWS, Azure More ❯
mitigation strategies. Collaborate on incident handling, reporting, and documentation. Enforce security policies in line with industry standards and regulations (GDPR, ISO, Cyber Essentials+, NIST800-171). Assist with audits and compliance reporting. Manage and configure network devices with a focus on security. Design and implement More ❯
and, preferably, a record of 5 years’ UK residency), SKILLS & EXPERIENCE DESIRED: Able to perform Risk management using industry approved methodologies (such as NIST800-53). Identification of suitable risk management activities (technical, physical, or procedural) to treat/mitigate the identified risks; Support development More ❯
and, preferably, a record of 5 years’ UK residency), SKILLS & EXPERIENCE DESIRED: Able to perform Risk management using industry approved methodologies (such as NIST800-53). Identification of suitable risk management activities (technical, physical, or procedural) to treat/mitigate the identified risks; Support development More ❯
in information security assurance with a focus on application security. Experience working with regulatory compliance and information security management frameworks (e.g., ISO 27000, NIST SP800 series and CSF). Adaptable, ability to pivot quickly to new challenges to support the business and changing risk profile. Business Acumen, an More ❯
bristol, south west england, united kingdom Hybrid / WFH Options
AtkinsRéalis
CESG IA Portfolio and MoD JSPs such as JSP440, JSP604/JSP453 (plus other standard MoD IA methods). Certifications such as ISO27000, NIST Cyber Security Professional, CISMP etc. Flexibility over UK, and potentially overseas travel. Desirable- Certified Information Systems Security Professional (CISSP)/Certified Information Security Manager … NCSC Certified Cyber Professional/CESG CCP (Security and Information Risk Advisor or Security Architect). Understanding of 'Secure by Design' methodology and NIST800-37 Risk Management Framework. A keen interest in the latest technology with a focus on security technologies. Ambition to work in More ❯
Leeds, Yorkshire, United Kingdom Hybrid / WFH Options
William Hill PLC
influence cybersecurity. Skilled in stakeholder engagement, promoting information security, and working in both agile and waterfall environments, with knowledge of security standards like NIST800, ISO 27001, and PCI-DSS What we offer Our roles offer more than just a job, you'll become part of More ❯