experience in Archer (experience with other GRC tools is also valuable). Solid understanding of risk assessment methodologies, security frameworks (NIST, ISO (phone number removed , and compliance requirements (GDPR, PCIDSS, SOX). Strong written communication skills, able to produce clear technical reports and risk documentation. Excellent stakeholder management, able to collaborate across technical and non-technical teams. More ❯
hands-on experience in Archer (experience with other GRC tools is also valuable). Solid understanding of risk assessment methodologies, security frameworks (NIST, ISO 270001), and compliance requirements (GDPR, PCIDSS, SOX). Strong written communication skills, able to produce clear technical reports and risk documentation. Excellent stakeholder management, able to collaborate across technical and non-technical teams. More ❯
experience in Archer (experience with other GRC tools is also valuable). Solid understanding of risk assessment methodologies, security frameworks (NIST, ISO (phone number removed)), and compliance requirements (GDPR, PCIDSS, SOX). Strong written communication skills, able to produce clear technical reports and risk documentation. Excellent stakeholder management, able to collaborate across technical and non-technical teams. More ❯
Cyber Assurance, or IT Audit. Hands-on knowledge across areas such as governance, IAM, threat management, vulnerability management, and incident response. Good understanding of security frameworks (e.g. ISO27001, NIST, PCI-DSS, SOX). Experience engaging with senior stakeholders within complex environments. Relevant certifications (CISSP, CISM, CISA, CRISC) desirable. This is an exciting opportunity to join a high-performing More ❯
Cyber Assurance, or IT Audit. Hands-on knowledge across areas such as governance, IAM, threat management, vulnerability management, and incident response. Good understanding of security frameworks (e.g. ISO27001, NIST, PCI-DSS, SOX). Experience engaging with senior stakeholders within complex environments. Relevant certifications (CISSP, CISM, CISA, CRISC) desirable. This is an exciting opportunity to join a high-performing More ❯
Milton Keynes, Buckinghamshire, England, United Kingdom
VIQU IT Recruitment
hands-on experience in Archer (experience with other GRC tools is also valuable). Solid understanding of risk assessment methodologies, security frameworks (NIST, ISO 270001), and compliance requirements (GDPR, PCIDSS, SOX). Strong written communication skills, able to produce clear technical reports and risk documentation. Excellent stakeholder management, able to collaborate across technical and non-technical teams. More ❯
Birmingham, West Midlands, England, United Kingdom
Robert Half
applications. Ensure high availability and resilience of mission-critical platforms such as core banking, trading, or payments engines. Cybersecurity & Compliance Establish and enforce cybersecurity policies in line with FCA, PCI-DSS, GDPR, and other relevant standards. Lead risk assessments, vulnerability testing, and incident response exercises. Maintain audit-ready documentation and support external reviews. Team & Vendor Management Recruit, lead More ❯
to business and technology audits. The role will also help provide ongoing assurance that digital systems and data are safe and secure. Key Accountabilities & Responsibilities: Be an SME for PCIDSS and contribute to and ensure compliance governance to security standards. Contribute to business and technology audits. Engagement with 3rd party partners as a SME and to ensure … in projects. Skills, Experience and Knowledge: Proven experience of IT GRC and Information/Cyber security Proven experience of risk and control management Proven experience of standards including ISO27001, PCI, GDPR/DPA & NIST Communication of complex ideas clearly in a non-technical way Strong stakeholder and 3rd party management experience Strong communication and collaboration Confident at working with More ❯
/TypeScript, as well as our backend services in C# (.NET), and Golang. Operate and maintain systems in Google Cloud Platform (GCP) and Amazon Web Services (AWS) environments. Ensure PCI compliance standards are upheld throughout the system. Work with the support team to triage, investigate, and resolve technical support tickets related to the payment platform and other customer facing … . Familiarity with CI/CD and infrastructures automation tools (Jenkins/Github Actions/Docker/Terraform). Familiarity with RESTful APIs and event-driven architectures. Knowledge of PCIDSS Compliance. Strong troubleshooting and debugging skills; experience working in production environments. Ability to break down complex problems and communicate them clearly to technical and non-technical audiences. More ❯
capabilities and infrastructure. Implementation experience with enterprise security solutions such as SSO, Federation, WAF, IPS, Anti-DDOS, and SIEM and understanding architectural implications of meeting industry standards such as PCIDSS, ISO 27001, GDPR, and NIST frameworks and relevant regulatory frameworks such as Thailand's Personal Data Protection Act B.E. 2562 (2019), BOT Notifications SorNorSor 21/ More ❯
updates Stay current with emerging threats, vulnerabilities, and mitigation techniques by researching cybersecurity trends and threat intelligence Assisting in compliance audits related to vulnerability management and cybersecurity frameworks (e.g., PCI-DSS, ISO 27001, Cyber Essentials Plus) Your skills and experiences: Essential: Ability to analyse and interpret large datasets Understanding of IT Fundamentals Excellent communication skills, both written and More ❯
within the Practice by defining standards, sharing knowledge, and mentoring peers Influence customer outcomes through expert knowledge of DevSecOps tools and compliance frameworks like NIST, CIS, SOC 2, and PCIDSS You'll travel to client sites across the UK, working directly with business and technical stakeholders to drive real business value What you'll need Proven experience More ❯
within the Practice by defining standards, sharing knowledge, and mentoring peers Influence customer outcomes through expert knowledge of DevSecOps tools and compliance frameworks like NIST, CIS, SOC 2, and PCIDSS You'll travel to client sites across the UK, working directly with business and technical stakeholders to drive real business value What you'll need Proven experience More ❯
within the Practice by defining standards, sharing knowledge, and mentoring peers Influence customer outcomes through expert knowledge of DevSecOps tools and compliance frameworks like NIST, CIS, SOC 2, and PCIDSS You'll travel to client sites across the UK, working directly with business and technical stakeholders to drive real business value What you'll need Proven experience More ❯
within the Practice by defining standards, sharing knowledge, and mentoring peers Influence customer outcomes through expert knowledge of DevSecOps tools and compliance frameworks like NIST, CIS, SOC 2, and PCIDSS You'll travel to client sites across the UK, working directly with business and technical stakeholders to drive real business value What you'll need Proven experience More ❯
South East London, London, United Kingdom Hybrid / WFH Options
TEN10 SOLUTIONS LIMITED
Understanding of IAM, WAF, and KMS. Experience implementing best practices for securing data, ensuring compliance with industry standards and regulations. Bonus points for experience with a compliance framework (ISO27001, PCI-DSS). Infrastructure-as-Code: Mastery of Terraform, CloudFormation, CDK or equivalent tools. Scripting & Automation: Skills in a scripting language like Python, Ansible, Bash, Groovy, Powershell, or similar. More ❯
Understanding of IAM, WAF, and KMS. Experience implementing best practices for securing data, ensuring compliance with industry standards and regulations. Bonus points for experience with a compliance framework (ISO27001, PCI-DSS). Infrastructure-as-Code: Mastery of Terraform, CloudFormation, CDK or equivalent tools. Scripting & Automation: Skills in a scripting language like Python, Ansible, Bash, Groovy, Powershell, or similar. More ❯
Market Harborough, Leicestershire, East Midlands, United Kingdom Hybrid / WFH Options
4C Resourcing
Lead and deliver client engagements across governance, risk and compliance (GRC), including audits, assessments and improvement plans aligned to frameworks such as ISO/IEC 27001, NCSC CAF, and PCI DSS. Lead independent assurance , review and test security policies, procedures and controls; identify gaps; and recommend pragmatic remediation strategies. Develop and present security strategies that enhance resilience and reduce … near term). Significant experience in cyber security consulting or assurance, ideally within the public sector. Deep knowledge of GRC frameworks and standards ( e.g. CAF, ISO/IEC 27001, PCIDSS). Strong client-facing skills , able to communicate complex issues clearly to technical and non-technical audiences. Proven track record of delivering high-quality outputs on time More ❯
projects. Proven experience in performing IT/Cyber security control assessment reviews. Experience working with Information security frameworks and compliance standards (e.g. ISO27001, Cyber Essentials Plus, NIST, SOC2 and PCI-DSS). Strong interest in Information security and technology, and motivated to learn new technologies. Robert Half Ltd acts as an employment business for temporary positions and an More ❯
multiple concurrent projects, meeting deadlines in a fast-paced portfolio environment. Essential Skills & Experience Strong understanding of cybersecurity and IT control frameworks (SOX, FFIEC, ISO27001, NIST, Cloud Security Alliance, PCI-DSS). Proven experience as an IT auditor, security auditor, or GRC analyst in a complex environment. Hands-on knowledge of IT security systems (OS, databases, firewalls, SIEM More ❯
Northampton, Northamptonshire, England, United Kingdom
Howdens Joinery
OS’s. Skilled in protocol analysis, network architecture, and infrastructure design. Hold recognised Cyber Security qualification (CISSP, CISM or equivalent). Knowledge of industry related frameworks such as ISO27001, PCIDSS, Zero Trust Strong communication skills and the ability to communicate with colleagues at all levels. Ability to work with and manage 3rd party suppliers. Experience of managing More ❯
Oxford, Oxfordshire, United Kingdom Hybrid / WFH Options
Nomios
assurance services, we offer an incredible opportunity to be part of an experienced team, build your skills, and grow professionally. Dionach by Nomios holds impressive certifications, including CREST, CHECK, PCI QSA, and ISO 27001. With our focus on enhancing customers' security and fostering team development, you'll be joining a company that prioritizes both your growth and the safety More ❯
high availability, resilience, and scalability. Develop and regularly test Disaster Recovery Plans (DRP) and business continuity frameworks. Cybersecurity and Compliance Implement and maintain standards such as ISO27001, SOC2, GDPR, PCI DSS. Ensure compliance with regulatory requirements (FCA, CySEC, FINMA, ADGM, etc.). Conduct ongoing risk monitoring and IT audits. Vendor and Outsourcing Management Manage Managed Service Providers and external More ❯
Understanding of IAM, WAF, and KMS. Experience implementing best practices for securing data, ensuring compliance with industry standards and regulations. Bonus points for experience with a compliance framework (ISO27001, PCI-DSS). I nfrastructure-as-Code: Experience with Terraform, CloudFormation, CDK or equivalent tools. Scripting & Automation: Skills in Python, Ansible, Bash, Groovy, Powershell, or similar. Bonus points if More ❯
UX, QA, and business stakeholders. Champion software engineering best practice, Agile delivery, and secure development standards. Ensure system availability, performance, resilience and compliance with UK regulations including GDPR and PCI-DSS. About You: 10+ years in software development, including at least 3 years in an E-commerce software development management role. Proven experience delivering secure, high-traffic retail websites More ❯