London, England, United Kingdom Hybrid / WFH Options
Sumsub
such as CKS, CKA, OSCP, AWS Security, or equivalent Experience in high-load systems and environments with stringent security requirements Understanding of cybersecurity frameworks (e.g., ISO 27001, NIST, GDPR, PCI-DSS, SOC 2, CIS Controls) What We Offer: Fully remote and flexible working schedule, with access to a coworking space (in some locations) Working with a product that More ❯
Manage the monthly Cyber Risk Steering Committee, updating stakeholders on risks, threats, and program progress. Implement and promote cybersecurity policies and standards, addressing non-compliance and improvement areas. Oversee PCI, SOX, GDPR, and other compliance requirements, supporting audits and privacy initiatives. Provide regular cybersecurity status reports to leadership. Coordinate with the Incident Response Team and serve as escalation point … maturity. Qualifications: 10-15 years of professional experience. Bachelor's degree in Technology, Law, Computer Science, Cybersecurity, or related field. Strong understanding of security compliance, policies, frameworks (NIST, ISO27001, PCI), and regulations. Solid knowledge of security architectures and cloud environments. Excellent communication skills, capable of engaging with all organizational levels. Strong problem-solving, critical thinking, and analytical skills. International More ❯
Bradford, England, United Kingdom Hybrid / WFH Options
Techwaka
years of experience in a cyber security analyst role or equivalent Relevant certifications (e.g., CompTIA Security+, CEH, or CISSP) are highly desirable Experience working in a regulated environment (GDPR, PCI-DSS, etc.) is a plus Ability to work independently and manage multiple tasks effectively in a fast-paced environment Benefits Competitive salary with opportunities for performance-based bonuses More ❯
Broad technical knowledge of cyber security controls demonstrated by attainment of appropriate qualifications e.g. CISSP, ISO27001 Lead Implementor or relevant SANS GIAC or equivalent Knowledge of the NIST framework, PCIDSS, GDPR and NIS as well as NCSC cyber guidance. Experience working in an agile delivery environment would be highly advantageous. Specific cyber knowledge and demonstrable experience in More ❯
reporting. Continuous learning mindset with an eagerness to stay updated on cybersecurity trends. It’d be cool if you also: [NOT A MUST] Familiar with industry frameworks (ISO 27001, PCI-DSS, SOC2, NIST, etc.) and regulatory requirements. Have one or more certifications: GCIH, GIAC, CSA, CompTIA CySA+, or other relevant certifications. About us: Digital commerce is built on More ❯
implementation within a security management cycle •Excellent understanding of security standards and best practices e.g., ISO27001, NIST •Experience in advising clients on one or more regulatory requirements (e.g.,HIPAA, PCIDSS, FBA, GDPR, DORA) •Experience performing GRC maturity assessments •Experience with coordinating SOC 2 and/or ISO 27001 audits Preferred Skills and Experience •Valid and current certification More ❯
Loughton, England, United Kingdom Hybrid / WFH Options
Talkspirit
themselves on customer service and responsible lending. Role Summary This is an initial 6-month contract for an experienced DevSecOps Engineer focused on securing Azure infrastructure, integrating security automation, PCIDSS compliance, vulnerability testing, and incident response. The role involves developing and maintaining secure Azure DevOps pipelines and Infrastructure as Code (IaC) using Terraform, mentoring an internal engineer … and Sentinel for security monitoring. Oversee SOAR solutions including SOC Prime. Manage Web Application Firewalls (WAF) and Intrusion Prevention Systems (IPS). Conduct vulnerability assessments and penetration testing. Ensure PCIDSS compliance through audits and risk assessments. Implement DNS security solutions. Develop incident response processes with third-party support. Develop SIEM solutions, logging, and threat intelligence strategies. Define … Strong expertise in Azure security, Microsoft Defender, and Sentinel. Experience with SOAR technologies, penetration testing, and vulnerability assessments. Proficiency with Terraform and IaC security automation. Knowledge of DevOps pipelines, PCIDSS, SIEM, and security frameworks. Scripting skills (Python, Bash, PowerShell). Excellent interpersonal skills and ability to work onsite daily. Preferred Qualifications Certifications such as Azure Security Engineer More ❯
Bash, Python, Perl) and automation tools (e.g., Ansible, Puppet, Chef) Solid understanding of network protocols, storage systems, and database technologies Familiarity with financial industry regulations and compliance requirements (e.g., PCI-DSS, SOX, GDPR) Strong problem-solving skills and ability to think strategically Outstanding communication and leadership abilities Working with Us: As a Northern Trust partner, greater achievements await. More ❯
Bash, Python, Perl) and automation tools (e.g., Ansible, Puppet, Chef) Solid understanding of network protocols, storage systems, and database technologies Familiarity with financial industry regulations and compliance requirements (e.g., PCI-DSS, SOX, GDPR) Strong problem-solving skills and ability to think strategically Outstanding communication and leadership abilities This position offers a unique opportunity to shape the future of More ❯
Bash, Python, Perl) and automation tools (e.g., Ansible, Puppet, Chef) Solid understanding of network protocols, storage systems, and database technologies Familiarity with financial industry regulations and compliance requirements (e.g., PCI-DSS, SOX, GDPR) Strong problem-solving skills and ability to think strategically Outstanding communication and leadership abilities Working With Us As a Northern Trust partner, greater achievements await. More ❯
Scalian Hounslow, England, United Kingdom Scalian Hounslow, England, United Kingdom Direct message the job poster from Scalian Information Security | GRC | CISA | CISM | PCI-DSS | COBIT | ITIL | SOx | NIST | ISO 27001 | ITGC | ERM | Breaking into White Hat from Grey Hat Purpose: The Service Reliability Engineer combines excellent software engineering, IT operations skills and database expertise. This allows them to More ❯
Halifax, England, United Kingdom Hybrid / WFH Options
Lloyds Banking Group
and security baselines across multi-project/multi-subscription environments. Collaborate with compliance, risk and audit teams to team to translate regulatory requirements (e.g. SOC2, ISO 27001, HIPPA, GDPR, PCIDSS) into technical controls in the cloud. Adherence and experience of compliance frameworks (e.g. CIS Benchmarks, NIST 800-53). Building or maintaining automated continuous compliance monitoring solutions More ❯
London, England, United Kingdom Hybrid / WFH Options
Lloyds Bank plc
and security baselines across multi-project/multi-subscription environments. Collaborate with compliance, risk and audit teams to team to translate regulatory requirements (e.g. SOC2, ISO 27001, HIPPA, GDPR, PCIDSS) into technical controls in the cloud. Adherence and experience of compliance frameworks (e.g. CIS Benchmarks, NIST 800-53). Building or maintaining automated continuous compliance monitoring solutions More ❯
Woking, England, United Kingdom Hybrid / WFH Options
VitalHub UK
on results. Desirable Proficiency in a wide range of public cloud technologies (ex. AWS EC2, EKS, EBS, RDS, S3, etc.) Experience working with industrystandard regulations and compliance frameworks (PCI-DSS, ISO, NIST, SANS, SOX, SOC II, HIPAA) Microsoft qualifications in relation to administration or networks (MCSE, MCSA, MCITP) Experience with working with Watchguard Firewall products. As an More ❯
Lambda, Elastic Search, Kibana and Kinesis. AWS certification. Knowledge of AWS Workforce Management tools including Quality Monitoring scorin Experience with working in a regulated financial services environment including ISO27001, PCI-DSS and Sarbanes Oxley. Experience with Microsoft technologies including Microsoft Teams direct routing, Microsoft 365 and Azure Entra ID. Experience with Avaya Aura solutions/Verint WFM Applications More ❯
Lambda, Elastic Search, Kibana and Kinesis. AWS certification. Knowledge of AWS Workforce Management tools including Quality Monitoring scorin Experience with working in a regulated financial services environment including ISO27001, PCI-DSS and Sarbanes Oxley. Experience with Microsoft technologies including Microsoft Teams direct routing, Microsoft 365 and Azure Entra ID. Experience with Avaya Aura solutions/Verint WFM Applications More ❯
Lambda, Elastic Search, Kibana and Kinesis. AWS certification. Knowledge of AWS Workforce Management tools including Quality Monitoring scorin Experience with working in a regulated financial services environment including ISO27001, PCI-DSS and Sarbanes Oxley. Experience with Microsoft technologies including Microsoft Teams direct routing, Microsoft 365 and Azure Entra ID. Experience with Avaya Aura solutions/Verint WFM Applications More ❯
Maidenhead, Royal Borough of Windsor and Maidenhead, Berkshire, United Kingdom
Kensington Mortgages
Lambda, Elastic Search, Kibana and Kinesis. AWS certification. Knowledge of AWS Workforce Management tools including Quality Monitoring scorin Experience with working in a regulated financial services environment including ISO27001, PCI-DSS and Sarbanes Oxley. Experience with Microsoft technologies including Microsoft Teams direct routing, Microsoft 365 and Azure Entra ID. Experience with Avaya Aura solutions/Verint WFM Applications More ❯
teams, embedded in the delivery model. Experience with Kubernetes, Openshift, Service Mesh. Experience with clouds (AWS, Azure, GCP). Experience with getting or maintaining certified standards (i.e. ISO 27001, PCIDSS, MIL-SPEC). Example technologies: IAM: Key Cloak, ForgeRock, Okta, Azure Active Directory B2C, x509 Mutual TLS (OpenId Connect/OIDC/SAML). Secrets: AWS KMS More ❯
and security baselines across multi-project/multi-subscription environments. Collaborate with compliance, risk and audit teams to team to translate regulatory requirements (e.g. SOC2, ISO 27001, HIPPA, GDPR, PCIDSS) into technical controls in the cloud. Adherence and experience of compliance frameworks (e.g. CIS Benchmarks, NIST 800-53). Building or maintaining automated continuous compliance monitoring solutions More ❯
Security Architect - NIST, ISO27001, PCI-DSS, Cloud Up to £640 per day (Outside IR35) London/Primarily Remote 6 months My client is an International Consultancy who require a Security Architect to lead security design, engineering, testing and implementation for a major, complex programme. Key Requirements: Proven expertise in Security Architecture Strong working knowledge of cloud security architecture … including authentication, authorisation, encryption, network security, and application security Previous experience of designing and implementing security solutions with a strong understanding of security frameworks including CIS, NIST, ISO27001 and PCIDSS Excellent communication skills with the ability to communicate technical terms to non-technical audiences Nice to have: Immediate availability Working knowledge of GIS/ESRI products Previous More ❯
and develop effective mitigation strategies Experience in handling datasecurity incidents involving data loss or breaches Knowledge of data protection regulations and standards, such as GDPR, CCPA, HIPAA, and PCI-DSS. Strong analytical and problem-solving skills with a keen attention to detail in identifying and addressing datasecurity issues Excellent verbal and written communication skills, with the ability More ❯
London, England, United Kingdom Hybrid / WFH Options
Help Me Settle Ltd
a 24/7 offshore Cyber Security Operations Centre (SOC). Managing budgets for cyber and data TFA accounts and G&A compliance. Ensuring compliance with IT SOX and PCIDSS audits for the UK&I market. Sponsoring key cyber, data, and risk projects. Maintaining project governance and building vendor relationships to explore innovation and manage third-party More ❯
security controls and identify weaknesses. 5. Security Compliance: Ensure that applications comply with relevant security standards, regulations, and industry best practices, such as: OWASP Top 10, OWASP ASVS, MAVS, PCIDSS, and GDPR. 6. Security Architecture: Assist in designing and implementing secure application architectures, including authentication mechanisms, access controls, encryption, and secure communication protocols. 7. Incident Response: Collaborate … effectively collaborate with cross-functional teams and communicate technical concepts to non-technical stakeholders. Desirable skills and experience Knowledge of relevant regulatory requirements and compliance standards, such as GDPR, PCIDSS and ISO 27001. What's in it for you? The chance to make a real impact in a growing start-up on a mission to change the More ❯