26 to 50 of 287 PCI DSS Jobs in England

Senior Risk Management Analyst

Hiring Organisation
Cubic Corporation
Location
Guildford, Surrey, UK
Employment Type
Full-time
compliance evaluation programs across the organization and isolates potential risks or liabilities and develops mitigation plans. Partners with external auditors to coordinate and facilitate PCI-DSS, ISO 27001, etc. compliance/audit efforts. This position typically works under limited supervision and direction. Candidates for this position will regularly … continuous compliance with security policies and standardsManage security review processes for all solutions to ensure they their design and implementation meets compliance requirements – including PCI-DSS, ISO 27001, SOC 1 & SOC 2 and other regional requirements Document and actively communicate any areas where the solutions and processes ...

Data Protection and Compliance Officer

Location
Greater London, England, United Kingdom
obligations are met. The role is accountable for maintaining certification, compliance activities and reporting relating to multiple ISO standards, Cyber Essentials, Cyber Essentials Plus, PCI-DSS, NHS-DSP, NHS Evergreen Assessment, Ecovadis, UNGC, CDP, SECR, ESOS , UK GDPR, Data Protection Act 2018, PECR, privacy governance requirements, and customer … controls. Provide subject matter expertise on regulatory and certification requirements. Information Security & Cyber Compliance Coordinate annual Cyber Essentials and Cyber Essentials Plus assessments. Support PCI-DSS compliance activities and certification requirements. Coordinate annual NHS-DSP submission and external audit. Maintain security policies, standards, and awareness programmes. Assist with ...

Security Architect

Location
Manchester, England, United Kingdom
ensure security is embedded by design, not added as an afterthought. Your work will span from threat modeling and risk assessment to architecting PCI‐DSS compliant solutions, building the secure infrastructure that underpins our global mobility and payments platforms. This is your opportunity to influence how a fast … threat modeling, proactively identifying vulnerabilities and mitigation strategies. Develop and maintain security policies and frameworks aligned with NIST, ISO 27001, and CIS Controls. Lead PCI‐DSS architecture and compliance, ensuring both front‐ and back‐office systems meet standards. Guide and mentor teams in best‐practice security engineering, fostering ...

Payment Platform Manager – Stripe

Location
Greater London, England, United Kingdom
flows. Manage dispute and chargeback processes — and configure and monitor fraud tooling (e.g. Stripe Radar, 3D Secure) to balance fraud prevention with conversion. Own PCI-DSS compliance for payment processing — and triage and resolve causes of conversion drop-off. Own and develop the commercial relationship with Stripe … rolled out to plan in target markets, with adoption and conversion tracked and reported. Disputes, chargebacks and fraud managed within agreed risk tolerances, with PCI-DSS compliance maintained at all times. Stripe and other payment vendor relationships (contract, pricing) actively managed, with cost-benefit analyses delivered to support ...

Identity & Infrastructure Engineer (Security-Aware)

Location
Greater London, England, United Kingdom
investigate identity‐related alerts. Support access reviews, privileged access reviews and entitlement governance. Assist with audit evidence and remediation activities relating to SOX, PCI DSS, GDPR and other applicable requirements. Support incident response by providing identity information, access logs and technical assistance with containment activities. Contribute to reducing … Identity or Microsoft Sentinel. Azure Monitor and Log Analytics. Microsoft Graph API or Azure automation. Passwordless authentication, FIDO2 and passkeys. Application SSO integration. SOX, PCI DSS, GDPR or ISO 27001 environments. General Microsoft Azure administration. Qualifications and Certifications A degree in Computer Science, Cyber Security, Infrastructure Engineering ...

Security Engineer – Cloud & On-Prem (Hybrid Security)

Location
Greater London, England, United Kingdom
secure-by-default principles to day-to-day security engineering. Implement and maintain agreed security controls and technical standards. Support security requirements relating to PCI DSS, SOX, GDPR, ISO 27001 and other applicable frameworks. Assist with audit evidence gathering, control validation and remediation activities. Maintain security documentation, procedures … security services such as GuardDuty, Security Hub, IAM or CloudTrail. Experience working with an external SOC, MSSP or security service provider. Exposure to PCI DSS, SOX, GDPR, ISO 27001, CIS or NIST environments. Qualifications & Certifications A degree in Cyber Security, Computer Science, Information Technology or a related discipline ...

Staff Cloud Security Engineer (GCP) - Engine by Starling

Hiring Organisation
Starling Bank
Location
London, UK
Employment Type
Full-time
authentication and authorisation mechanisms are in placeEngineer and automate technical controls within GCP to ensure and demonstrate continuous compliance with stringent standards such as PCI DSS and 3DSDrive security infrastructure deployments across our growing environmentsPerform regular security assessments, audits, threat modelling and architecture design reviews to identify risks … deploying per-market for different banks' regulatorsHands-on experience taking a company through security and compliance frameworks like NIST, SOC 2, ISO 27001 and PCI DSSExperience automating security controls and compliance checks against standards and frameworks including SOC 2, ISO 27001 and PCI DSS/3DSContainer security ...

Information Security GRC Lead

Location
Chippenham, England, United Kingdom
Good Energy Change Advisory Board, and ensuring security and resilience impacts are considered and that technical owners complete agreed actions before implementation where required. PCI-DSS Compliance: Coordinate and support PCI-DSS control activity, evidence gathering, control testing and remediation tracking where technology controls … ideally while working alongside technical teams who own implementation. Awareness of recognised security standards or frameworks such as ISO27001, Cyber Essentials, NCSC CAF and PCI-DSS. Strong verbal and written communication skills, with the ability to explain technical matters clearly to non-technical audiences. Demonstrable attention to detail ...

Principal Security Officer

Location
Reading, England, United Kingdom
federated services . Oversee information security risk management, including risk registers, policy exceptions and remediation plans. Lead and support ISO 27001, Cyber Essentials Plus, PCI-DSS, NIST/CIS Controls and customer compliance requirements. Manage and provide assurance around internal and external audits, including remediation of findings. Provide … experience implementing and improving ISO 27001/ISMS and security controls. Strong understanding of security frameworks including ISO 27001/27002, NIST, CIS Controls, PCI-DSS and Cyber Essentials Plus . Experience leading security projects, audits, assessments and remediation programmes. Strong understanding of information security risk ...

Information Security Officer

Location
Reading, England, United Kingdom
organisation's Information Security Management System (ISMS) , including policies, procedures and controls. Support the implementation and ongoing management of ISO 27001, Cyber Essentials Plus, PCI-DSS, NIST/CIS Controls and other relevant security requirements. Conduct security assessments across infrastructure, networks, endpoints, applications and data. Identify, assess … Experience with security audits, control testing, risk assessments and remediation . Knowledge of frameworks and standards including ISO 27001/27002, NIST, CIS Controls, PCI-DSS and Cyber Essentials Plus . Experience developing and maintaining security policies and procedures. Experience with third-party/vendor risk management ...

Information Security Architecture & Engineering Lead (UK-based)

Location
Greater London, England, United Kingdom
Information Security Architecture & Engineering Lead (UK-based) The Information Security Architecture & Engineering Lead forms the technical heart of PCI Pal’s Information Security function. The role owns cloud architecture review, DevSecOps and secure SDLC practice, security automation and tooling, and security architecture strategy for the organisation, replacing reactive, post … secure coding practices. Experience threat-modelling applications and cloud workloads at the design stage, not just reviewing them after deployment. Working knowledge of PCI DSS v4.0.1. ISO/IEC 27001:2022; familiarity with ISO/IEC 42001:2023 is an advantage. Experience triaging and remediating findings from ...

Head of Information Security

Location
Greater London, England, United Kingdom
Foundations, establishing centralized monitoring and alerting (via Wiz/Security Hub). Data Privacy & Compliance End-to-End Privacy: Own the GDPR and PCI-DSS compliance programmes, embedding "Privacy by Design" and data minimization directly into our delivery processes. Legal Partnership: Collaborate with Legal to manage DPAs, transfer … information security, including leadership-level responsibility Proven experience building and scaling security and privacy programmes within growing organisations Strong hands-on knowledge of GDPR, PCI-DSS, incident response, and resilience planning Experience working within cloud-first environments, ideally AWS Strong understanding of security within e-commerce, fintech ...

Head of Information Security (Deputy CISO)

Location
Greater London, England, United Kingdom
Framework and other recognised standards. Maintain effective security policies, standards and controls, ensuring they are understood, embraced, evidenced and continuously improved. Support compliance with PCI DSS, UK GDPR, the Data Protection Act 2018 and relevant FCA expectations. Strengthen cyber operations and resilience Lead security monitoring, threat management, vulnerability … across security operations, governance, risk and compliance, architecture, engineering, third-party risk, assurance and operational resilience. Strong practical knowledge of ISO/IEC 27001, PCI DSS, UK GDPR, the Data Protection Act 2018 and recognised control frameworks such as NIST. A solid understanding of technology risk, risk appetite ...

Security Manager

Location
Bradford, England, United Kingdom
enjoys balancing technical security requirements with governance, compliance, and stakeholder engagement. Key Responsibilities Manage and maintain compliance with security standards and accreditations including PCI DSS, ISO 27001, ISO 22301, Cyber Essentials Plus and IT Health Checks. Conduct internal audits, control reviews, and risk assessments. Maintain and monitor … years' experience in a Security Manager or similar information security role. Strong understanding of cyber security, governance, risk, and compliance frameworks. Extensive knowledge of PCI DSS, ISO 27001, Cyber Essentials Plus, and data protection requirements. Experience with Microsoft 365, Azure, AWS, vulnerability management, and SIEM tools. Strong communication ...

Head of Networks - Data Center

Hiring Organisation
AirSearch
Location
London, United Kingdom
with Information Security teams to enhance network security posture , addressing vulnerabilities and implementing intrusion detection/prevention systems. Ensure ongoing compliance with ISO 27001, PCI-DSS , and other relevant regulatory standards. Drive a proactive approach to incident response, monitoring, and continuous threat detection . Oversee audit readiness … Fortinet, etc.) , and telephony (SIP/VoIP) systems. Familiarity with cloud and hybrid networking (Azure, AWS, GCP) environments preferred. Strong understanding of ISO 27001, PCI-DSS , and ITIL-aligned service delivery processes. Leadership & Soft Skills Strategic thinker with the ability to balance technical depth and business acumen . ...

GRC Analyst

Location
Shirebrook, England, United Kingdom
Drive continuous improvement of governance, risk and compliance (GRC) processes, reporting, automation and assurance activities. Support regulatory, internal and external audit requirements such as PCI -DSS, ensuring documentation and evidence are maintained to a high standard. Qualifications What we are looking for: 2+ years' experience within Technology Risk … multinational organisations. Knowledge of NIST Cybersecurity Framework, ISO 27001, COBIT and ITIL. Experience with data analytics, continuous controls monitoring or assurance automation. Familiarity with PCI DSS, SOX or other regulatory and compliance frameworks. Additional Information Along with your benefits package we also offer a wide range of perks ...

GRC Analyst

Location
Mansfield, England, United Kingdom
Drive continuous improvement of governance, risk and compliance (GRC) processes, reporting, automation and assurance activities. Support regulatory, internal and external audit requirements such as PCI -DSS, ensuring documentation and evidence are maintained to a high standard. Qualifications What we are looking for: 2+ years' experience within Technology Risk … multinational organisations. Knowledge of NIST Cybersecurity Framework, ISO 27001, COBIT and ITIL. Experience with data analytics, continuous controls monitoring or assurance automation. Familiarity with PCI DSS, SOX or other regulatory and compliance frameworks. Additional Information Along with your benefits package we also offer a wide range of perks ...

Cyber Risk & Security Manager

Location
Greater London, England, United Kingdom
technical levels, supporting board-level decision‐making while driving operational security improvements aligned to recognised standards such as NIST CSF, ISO 27001, DORA, PCI‐DSS, and MITRE ATT&CK. Reporting To: Director/Head of Cyber Security Location: London (Hybrid) Employment Type: Full‐Time Salary … OWASP Top 10). Oversee DLP and DDA monitoring strategies. Compliance & Regulatory Alignment Support ISMS implementation aligned with ISO 27001. Ensure alignment with GDPR, PCI‐DSS, DORA, NIST CSF, COBIT, SANS, and related frameworks. Develop security policies, SOPs, and governance documentation. Conduct IT resilience and cloud security audits. ...

Head of Security

Location
Greater London, England, United Kingdom
where some products are today outside the standard tooling. Governance, risk and compliance and vendor management Own ISO 27001, SOC 1, SOC 2 and PCI DSS compliance, the audit calendar, the compliance automation platform and the relationship with our auditors. Work with legal and the Data Protection Officer … facing those customers on security matters. Working knowledge of ISO 27001 and SOC 2, and experience of being accountable for audits and certifications. PCI DSS experience is an advantage. Practical understanding of cloud security on AWS and Azure, Kubernetes-based platforms, infrastructure as code and modern CI/ ...

Cyber Security Compliance Manager

Hiring Organisation
Reed Technology
Location
Manchester, United Kingdom
Employment Type
Permanent
Salary
£65000 - £75000/annum
governance. Key responsibilities include: Managing and enhancing cyber security governance and compliance frameworks. Owning and developing the organisation's GRC platform. Leading PCI DSS compliance activities and supporting audit requirements. Managing supplier security assurance and third-party risk assessments. Advising projects and stakeholders on cyber security and compliance … requirements. Supporting frameworks and standards including ISO 27001, ISO 42001, NIST, CAF, CIS Benchmarks and PCI DSS. Producing meaningful risk and compliance reporting for senior stakeholders. Supporting governance activities around AI, Purview and other strategic technology initiatives. We're keen to speak with cyber security, risk, governance and compliance ...

Information Security GRC Analyst (UK-based)

Location
Greater London, England, United Kingdom
Information Security GRC Analyst (UK-based) The GRC Analyst strengthens PCI Pal's central Information Security function by providing structured governance, risk and compliance analysis across audit, assurance, control management and strategic change. The role turns requirements, evidence, risks and delivery updates into accurate, traceable information that supports timely … requirements Relevant experience in GRC, information security compliance, risk management, internal audit or assurance. Working knowledge of at least one major framework, such as PCI DSS, ISO/IEC 27001, SOC 2 or NIST CSF, with the ability to apply requirements in practice. Experience reviewing policies, audit reports ...

Cyber Security Manager

Hiring Organisation
Amtis Professional Ltd
Location
Birmingham, West Midlands, United Kingdom
Employment Type
Permanent
Salary
£85,000
security investigations and overseeing remediation after incidents or identified risks Driving compliance with security policies, standards and regulations, including ISO 27001, Cyber Essentials and PCI-DSS Managing security audits, risk assessments and improvement plans Delivering security reporting, metrics and risk updates to senior stakeholders and governance forums Working … response, risk management and security governance Experience developing and implementing security policies, controls and improvement programmes A strong understanding of ISO:27001, Cyber Essentials, PCI-DSS and wider security best practice Excellent stakeholder management and communication skills, and the ability to influence at all levels Experience leading teams ...

Group Information Security Risk Analyst

Location
Manchester, England, United Kingdom
effectiveness of information security controls and identify opportunities for improvement. Apply recognised security frameworks and standards including ISO27001, NIST Cybersecurity Framework, CIS Controls, PCI-DSS, and other relevant best practices in a proportionate and risk-based manner. Liaise with Cyber Security, IT, Business Continuity, Data Protection, Risk, Compliance … risk assessments, control reviews, audits, or assurance activities. Technical knowledge of information security frameworks and standards including ISO27001, NIST Cybersecurity Framework, CIS Controls, DORA, PCI-DSS, and related security practices. Strong communicator with positive influencing and interpersonal skills. Ability to synthesise complex technical and business information and present ...

Senior Cloud Security Engineer

Hiring Organisation
Checkout.com
Location
London, UK
Employment Type
Full-time
through to completion. Document and uphold secure-by-design principles and architecture governance, and enforce policy-as-code frameworks aligned with NIST, CIS, and PCI DSS.Set the monitoring scope and priorities for CNAPP/CSPM tooling (e.g. Wiz or equivalent), defining which misconfigurations and vulnerabilities matter most against … NIST, and PCI DSS benchmarks, and holding engineering teams accountable to remediation outcomes. Work with Security Operations to shape cloud logging and detection requirements, ensuring our SIEM has the right visibility across the estate. Collaborate with senior stakeholders to articulate security risks and mitigations in terms that support ...

Solution Architect (Principal Consultant)

Location
City Of London, England, United Kingdom
using Databricks, Snowflake, ETL pipelines, and Big Data tools. Champion Data Governance practices including classification, cataloging, and lineage. Ensure compliance with ISO 27001, GDPR, PCI DSS, and other security standards. Embed DevSecOps principles into CI/CD pipelines and platform delivery. Produce High-Level and Low-Level Designs … teams for seamless integration. Support business development initiatives, contributing to bids and proposals. Business Analysis experience and stakeholder engagement skills. Security - ISO 27001, GDPR, PCI DSS, IDAM, DevSecOps Agile - SAFe, DevOps, Scrum Collaboration - Stakeholder Engagement, Governance, Team Mentoring Business - Business Analysis, Bid Support, Multi-sector Delivery Upon employment ...