1 to 25 of 95 Remote/Hybrid PCI DSS Jobs in England

Security and Compliance Manager

Location
Greater London, England, United Kingdom
security expert to lead the development and maintenance of our compliance framework. You’ll be the driving force behind our adherence to ISO27001 , PCI-DSS , and GDPR , ensuring Neve Jewels remains a trusted leader in luxury retail. You’ll work hand-in-hand with our tech and business … Security Architecture & Governance: Design, implement, maintain compliance and manage the Neve Jewels IT security framework, ensuring technical alignment with ISO27001 , Cyber Essentials Plus , and PCI-DSS 4.0 . Infrastructure Protection: Oversee the security of all corporate and boutique networks, including firewalls, VPNs, end-point protection, and cloud environments ...

Head of Security

Location
Greater London, England, United Kingdom
security governance, operations, compliance, and risk management across a complex technology estate spanning payments, healthcare, and B2B SaaS. With ongoing M&A activity, active PCI-DSS obligations, and a rapidly evolving platform landscape, you’ll play a critical role in protecting our customers, supporting business growth, and embedding … Oversee security operations, including threat detection, incident response, and remediation Act as the executive lead during security incidents and manage external stakeholder communications Own PCI-DSS compliance across ClearAccept and ClearDebit payment platforms Lead the Group’s Governance, Risk and Compliance (GRC) function, including ISO 27001, Cyber Essentials ...

Staff / Senior Staff Security Engineer, Vinted Pay

Location
Greater London, England, United Kingdom
multi‐region AWS infrastructure, payment pipelines and payment pages, wallets holding members' money, the cardholder and personal data behind them, and a regulatory perimeter - PCI DSS, DORA, Bank of Lithuania and FCA rules - that rises every year. Working at staff/senior staff level as an individual contributor … roadmap that shapes how Vinted Pay defends its infrastructure and payment assets, rather than reacting to the next audit. Turn regulation into engineering: map PCI DSS, DORA, and Bank of Lithuania and FCA requirements into practical, automated security controls and engineering guardrails - compliance as a by‐product ...

Head of Security

Hiring Organisation
Hackajob Ltd
Location
Swindon, Wiltshire, South West, United Kingdom
Employment Type
Permanent, Work From Home
protect the confidentiality, integrity, and availability of our information assets, intellectual property, and customer data, ensuring strict compliance with regulatory frameworks including FCA, DORA, PCI DSS, and our client security requirements. Key Responsibilities: Lead the PayTech Information Security function with alignment to our clients wider cyber risk management … Crime and Anti-Fraud teams to mitigate cyber risks related to financial crime. Manage third-party security risk due diligence programs. Lead and maintain PCI DSS and PCI PIN compliance and engagement with Qualified Security Assessors (QSAs). Drive cyber awareness programs and phishing simulations to embed ...

Senior Cloud Security Engineer (GCP) - Engine by Starling

Location
City Of London, England, United Kingdom
authorisation mechanisms are in place Engineer and automate technical controls within GCP to ensure and demonstrate continuous compliance with stringent standards such as PCI DSS and 3DS Drive security infrastructure deployments across our growing environments Perform regular security assessments, audits, threat modelling and architecture design reviews to identify … market for different banks' regulators Hands‐on experience taking a company through security and compliance frameworks like NIST, SOC 2, ISO 27001 and PCI DSS Experience automating security controls and compliance checks against standards and frameworks including SOC 2, ISO 27001 and PCI DSS/ ...

Staff Cloud Security Engineer (GCP) - Engine by Starling

Location
Greater London, England, United Kingdom
authorisation mechanisms are in place Engineer and automate technical controls within GCP to ensure and demonstrate continuous compliance with stringent standards such as PCI DSS and 3DS Drive security infrastructure deployments across our growing environments Perform regular security assessments, audits, threat modelling and architecture design reviews to identify … market for different banks' regulators Hands-on experience taking a company through security and compliance frameworks like NIST, SOC 2, ISO 27001 and PCI DSS Experience automating security controls and compliance checks against standards and frameworks including SOC 2, ISO 27001 and PCI DSS/ ...

Data Protection and Compliance Officer

Location
Greater London, England, United Kingdom
obligations are met. The role is accountable for maintaining certification, compliance activities and reporting relating to multiple ISO standards, Cyber Essentials, Cyber Essentials Plus, PCI-DSS, NHS-DSP, NHS Evergreen Assessment, Ecovadis, UNGC, CDP, SECR, ESOS , UK GDPR, Data Protection Act 2018, PECR, privacy governance requirements, and customer … controls. Provide subject matter expertise on regulatory and certification requirements. Information Security & Cyber Compliance Coordinate annual Cyber Essentials and Cyber Essentials Plus assessments. Support PCI-DSS compliance activities and certification requirements. Coordinate annual NHS-DSP submission and external audit. Maintain security policies, standards, and awareness programmes. Assist with ...

Identity & Infrastructure Engineer (Security-Aware)

Location
Greater London, England, United Kingdom
investigate identity‐related alerts. Support access reviews, privileged access reviews and entitlement governance. Assist with audit evidence and remediation activities relating to SOX, PCI DSS, GDPR and other applicable requirements. Support incident response by providing identity information, access logs and technical assistance with containment activities. Contribute to reducing … Identity or Microsoft Sentinel. Azure Monitor and Log Analytics. Microsoft Graph API or Azure automation. Passwordless authentication, FIDO2 and passkeys. Application SSO integration. SOX, PCI DSS, GDPR or ISO 27001 environments. General Microsoft Azure administration. Qualifications and Certifications A degree in Computer Science, Cyber Security, Infrastructure Engineering ...

Security Engineer – Cloud & On-Prem (Hybrid Security)

Location
Greater London, England, United Kingdom
secure-by-default principles to day-to-day security engineering. Implement and maintain agreed security controls and technical standards. Support security requirements relating to PCI DSS, SOX, GDPR, ISO 27001 and other applicable frameworks. Assist with audit evidence gathering, control validation and remediation activities. Maintain security documentation, procedures … security services such as GuardDuty, Security Hub, IAM or CloudTrail. Experience working with an external SOC, MSSP or security service provider. Exposure to PCI DSS, SOX, GDPR, ISO 27001, CIS or NIST environments. Qualifications & Certifications A degree in Cyber Security, Computer Science, Information Technology or a related discipline ...

Information Security GRC Lead

Location
Chippenham, England, United Kingdom
Good Energy Change Advisory Board, and ensuring security and resilience impacts are considered and that technical owners complete agreed actions before implementation where required. PCI-DSS Compliance: Coordinate and support PCI-DSS control activity, evidence gathering, control testing and remediation tracking where technology controls … ideally while working alongside technical teams who own implementation. Awareness of recognised security standards or frameworks such as ISO27001, Cyber Essentials, NCSC CAF and PCI-DSS. Strong verbal and written communication skills, with the ability to explain technical matters clearly to non-technical audiences. Demonstrable attention to detail ...

Principal Security Officer

Location
Reading, England, United Kingdom
federated services . Oversee information security risk management, including risk registers, policy exceptions and remediation plans. Lead and support ISO 27001, Cyber Essentials Plus, PCI-DSS, NIST/CIS Controls and customer compliance requirements. Manage and provide assurance around internal and external audits, including remediation of findings. Provide … experience implementing and improving ISO 27001/ISMS and security controls. Strong understanding of security frameworks including ISO 27001/27002, NIST, CIS Controls, PCI-DSS and Cyber Essentials Plus . Experience leading security projects, audits, assessments and remediation programmes. Strong understanding of information security risk ...

Information Security Officer

Location
Reading, England, United Kingdom
organisation's Information Security Management System (ISMS) , including policies, procedures and controls. Support the implementation and ongoing management of ISO 27001, Cyber Essentials Plus, PCI-DSS, NIST/CIS Controls and other relevant security requirements. Conduct security assessments across infrastructure, networks, endpoints, applications and data. Identify, assess … Experience with security audits, control testing, risk assessments and remediation . Knowledge of frameworks and standards including ISO 27001/27002, NIST, CIS Controls, PCI-DSS and Cyber Essentials Plus . Experience developing and maintaining security policies and procedures. Experience with third-party/vendor risk management ...

Head of Information Security

Location
Greater London, England, United Kingdom
Foundations, establishing centralized monitoring and alerting (via Wiz/Security Hub). Data Privacy & Compliance End-to-End Privacy: Own the GDPR and PCI-DSS compliance programmes, embedding "Privacy by Design" and data minimization directly into our delivery processes. Legal Partnership: Collaborate with Legal to manage DPAs, transfer … information security, including leadership-level responsibility Proven experience building and scaling security and privacy programmes within growing organisations Strong hands-on knowledge of GDPR, PCI-DSS, incident response, and resilience planning Experience working within cloud-first environments, ideally AWS Strong understanding of security within e-commerce, fintech ...

Cyber Risk & Security Manager

Location
Greater London, England, United Kingdom
technical levels, supporting board-level decision‐making while driving operational security improvements aligned to recognised standards such as NIST CSF, ISO 27001, DORA, PCI‐DSS, and MITRE ATT&CK. Reporting To: Director/Head of Cyber Security Location: London (Hybrid) Employment Type: Full‐Time Salary … OWASP Top 10). Oversee DLP and DDA monitoring strategies. Compliance & Regulatory Alignment Support ISMS implementation aligned with ISO 27001. Ensure alignment with GDPR, PCI‐DSS, DORA, NIST CSF, COBIT, SANS, and related frameworks. Develop security policies, SOPs, and governance documentation. Conduct IT resilience and cloud security audits. ...

Head of Security

Location
Greater London, England, United Kingdom
where some products are today outside the standard tooling. Governance, risk and compliance and vendor management Own ISO 27001, SOC 1, SOC 2 and PCI DSS compliance, the audit calendar, the compliance automation platform and the relationship with our auditors. Work with legal and the Data Protection Officer … facing those customers on security matters. Working knowledge of ISO 27001 and SOC 2, and experience of being accountable for audits and certifications. PCI DSS experience is an advantage. Practical understanding of cloud security on AWS and Azure, Kubernetes-based platforms, infrastructure as code and modern CI/ ...

Network Engineer / Site Reliability Engineer

Location
Swindon, England, United Kingdom
network capacity and performance, manage resource utilisation efficiently, and conduct thorough cost analytics to identify optimisation opportunities.**What you will be doing:*** Ensure PCI DSS compliance and implement best practices such as the latest encryption, access control, documentation and patching to maintain the highest level of security.* Collaborate … using AWS tools and services.* Certifications in relevant technologies: Possession of industry certifications to validate expertise.* Experience with compliance and security standards: Familiarity with PCI DSS and other relevant security frameworks to ensure the infrastructure meets regulatory requirements and best practices.* Strong problem-solving collaboration and incident management ...

Applied AI Security Architect

Location
Greater London, England, United Kingdom
teams, and DPOs to understand their security requirements and design solutions that meet European regulatory standards (GDPR, EU AI Act, DORA, NIS2, SOC 2, PCI-DSS, and national regulator expectations). Lead technical deep-dives on network architecture, EU data residency, data retention and Zero Data Retention … applies to foundation models. Experience navigating compliance frameworks relevant to European financial services and insurance (DORA, NIS2, SOC 2, PCI-DSS, and national regulators' guidance on AI/ML such as FCA/PRA, BaFin, ACPR, FINMA). A track record of leading complex, high‐stakes engagements with ...

Senior Security Analyst

Location
Greater London, England, United Kingdom
more effective, scalable and industry-leading third party security capability as Monzo grows! Delivering security assurance activities: lead and contribute to control testing, PCI DSS assessments, regulatory reviews, and internal and external audits. Evaluate evidence, identify gaps and work with teams across Monzo to see findings and remediation … your knowledge and skills. It would be great if... You’ve worked in financial services, fintech, or another highly regulated environment. You’ve supported PCI DSS, ISO 27001, SOC 2 or NIST-aligned assurance, regulatory reviews, or internal and external audits. Not ticking every box? That’s totally ...

Digital Transformation Manager 6-Month Fixed-Term Contract

Hiring Organisation
Compass UK & Ireland
Location
Birmingham, West Midlands, United Kingdom
Employment Type
Permanent, Work From Home
Salary
£60,000
brands, experiencing the variety of our business and the services we deliver. We are currently recruiting for a Digital Transformation Manager (PCI) | 6-Month Fixed-Term Contrac t.This is a Hybrid role, working with Compass Group brands and CH&CO stakeholders. Salary: £65,000 - £75,000 DOE + company … payment terminal replacement projects. Conduct site discovery and requirements gathering activities. Understand and document operational requirements using WITY principles. Ensure compliance with PCI DSS requirements and company standards. Manage suppliers, third-party installers and internal deployment teams. Oversee decommissioning and disposal of legacy equipment. Coordinate installation schedules ...

Payment Performance Analyst

Location
Greater London, England, United Kingdom
platform change, including requirements, user acceptance testing, data validation, reconciliation testing and implementation readiness Support compliance with internal procedures, regulatory requirements, card scheme rules, PCI DSS and Bacs requirements Act as a trusted payments specialist, offering practical guidance and supporting critical incidents, regulatory change and business priorities Essential … tokenisation and digital wallets. Experience configuring or assessing fraud and transaction monitoring rules. Knowledge of payment APIs, integrations and platform change delivery. Familiarity with PCI DSS, card scheme standards and BACS requirements. Experience with Power BI or another data visualisation tool SQL, Python or similar skills used ...

CISO & Security Strategy Executive — PCI-DSS & GRC

Location
Greater London, England, United Kingdom
executive role entails governance, operations, compliance, and risk management within a complex technology environment. The ideal candidate will have significant CISO experience, especially with PCI-DSS compliance, and possess strong leadership skills. Competitive salary, benefits, and a hybrid working model are offered. #J-18808-Ljbffr ...

AI-Native Software Engineer

Location
Greater London, England, United Kingdom
working solutions. These are broad, senior engineering roles, not single-language specialist posts. This is a regulated payments environment governed by frameworks including DORA, PCI DSS, SOC 2, EMI regulations and GDPR. These frameworks shape our SDLC itself, from change control and approvals to testing evidence and audit … propose efficiency improvements that keep compliance intact. Familiarity with, or the ability to rapidly get to grips with, frameworks such as DORA, PCI DSS, SOC 2, EMI regulations and GDPR. You understand that the SDLC is constrained by these frameworks and can still deliver efficiently within it, using ...

Cyber Security Controls Tester (Contractor)

Location
Stone Cross, England, United Kingdom
applying recognised testing methodologies, including documentation reviews, walkthroughs, sampling and evidence-based assurance activities. Strong understanding of relevant legislation and compliance requirements, including GDPR, PCI DSS and ICO guidance. Working knowledge of HMG and NCSC security policies, standards and guidance. Ability to produce clear, well-structured test plans ...

Senior Technical Security Risk Consultant

Hiring Organisation
Sanderson Government and Defence
Location
London, United Kingdom
Employment Type
Permanent, Work From Home
Salary
£80,000
security clearance to be considered. Technical Knowledge Security frameworks including ISO 27001, NIST CSF, CIS and NCSC guidance Regulatory landscape including GDPR and PCI DSS Familiarity with HMG and NCSC standards Modern technology environments: Cloud platforms such as Azure, AWS and Google Cloud Microsoft 365 Infrastructure and network ...

Senior Cloud Security Architect

Location
Greater London, England, United Kingdom
Administrator) MS-102 (Microsoft 365 Administrator Expert) AZ-104 (Azure Administrator) AZ-305 (Azure Solutions Architect) CISSP Knowledge of security standards like CIS, NIST, PCI DSS, GDPR and Cyber Essentials Understanding compliance and regulatory requirements related to data security Experience delivering Microsoft focused pre-sales discovery engagements with ...