teams to support transparency and accountability. Mentor and develop junior compliance colleagues, fostering a culture of continuous improvement. Contribute to maintaining ISO 27001 certification and other relevant standards (e.g. PCIDSS, Information Security). Lead business continuity planning and ensure ongoing operational resilience. Manage corporate insurance coverage and relationships with insurers. All team members are required to complete … approach to risk mitigation. Confident communicator, able to simplify complex issues and influence at senior levels. Experience leading compliance monitoring, audits, investigations, and remediation initiatives. Familiarity with ISO 27001 , PCIDSS , and other information security frameworks. Experience managing business continuity and insurance programmes. Leadership capability with a track record of mentoring others and representing compliance at Board or More ❯
their main base of operations here, in the UK, as an experienced GRC IT Security Analyst ? Do you have experience in the GRC IT Security space with audits, ISO27001, PCIDSS, SOC2, NIST & current compliance regulations? (Some, or all is fine!) If so & you are looking to expand your IT Security career, meet new team members, embrace new … you’ll already know what the role will entail, but see below for things we’ll need to see in order to be considered: - Knowledge and experience of ISO27001, PCIDSS, SOC2, NIST and CIS benchmarking - Knowledge and experience achieving and maintaining compliance with relevant legislation, such as DPA, GDPR - Knowledge of cloud environments (AWS, Azure) & Windows, &/ More ❯
Central London, London, England, United Kingdom Hybrid/Remote Options
hireful
their main base of operations here, in the UK, as an experienced GRC IT Security Analyst Do you have experience in the GRC IT Security space with audits, ISO27001, PCIDSS, SOC2, NIST & current compliance regulations? (Some, or all is fine!) If so & you are looking to expand your IT Security career, meet new team members, embrace new … you’ll already know what the role will entail, but see below for things we’ll need to see in order to be considered: - Knowledge and experience of ISO27001, PCIDSS, SOC2, NIST and CIS benchmarking - Knowledge and experience achieving and maintaining compliance with relevant legislation, such as DPA, GDPR - Knowledge of cloud environments (AWS, Azure) & Windows, &/ More ❯
with their main base of operations here, in the UK, as an experienced GRC Security Analyst ? Do you have experience in the GRC Security space with audits, auditors, ISO27001, PCIDSS, SOC2, NIST & current compliance regulations? (Some, or all is fine!) If so & you are looking to expand your IT Security career, meet new team members, embrace new … you’ll already know what the role will entail, but see below for things we’ll need to see in order to be considered: - Knowledge and experience of ISO27001, PCIDSS, SOC2, NIST and CIS benchmarking - Knowledge and experience achieving and maintaining compliance with relevant legislation, such as DPA, GDPR - Knowledge of cloud environments (AWS, Azure) & Windows, &/ More ❯
Central London, London, England, United Kingdom Hybrid/Remote Options
hireful
with their main base of operations here, in the UK, as an experienced GRC Security Analyst Do you have experience in the GRC Security space with audits, auditors, ISO27001, PCIDSS, SOC2, NIST & current compliance regulations? (Some, or all is fine!) If so & you are looking to expand your IT Security career, meet new team members, embrace new … you’ll already know what the role will entail, but see below for things we’ll need to see in order to be considered: - Knowledge and experience of ISO27001, PCIDSS, SOC2, NIST and CIS benchmarking - Knowledge and experience achieving and maintaining compliance with relevant legislation, such as DPA, GDPR - Knowledge of cloud environments (AWS, Azure) & Windows, &/ More ❯
role will suit someone with hands-on expertise across Microsoft 365, firewalls, VoIP platforms, and ISO-aligned service delivery. Key Responsibilities Administer, configure, and secure Microsoft 365 services Lead PCIDSS SAQ-D v4 submissions and maintain compliance documentation Manage VoIP platforms (8x8, Avaya, Connex) and support campaign operations Administer firewalls, VPNs, switches, and routers Oversee Windows … upgrades and hardware lifecycle management Manage organisational data and deliver compliance and client-facing reports What We're Looking For Proven Microsoft 365 administration experience Knowledge of PCIDSS SAQ-D v4 compliance requirements Hands-on VoIP platform support Network/firewall and OS upgrade expertise Advanced Excel and database management skills ISO experience and familiarity with audit More ❯
City Of London, England, United Kingdom Hybrid/Remote Options
Hamilton Barnes 🌳
suppliers to ensure timely delivery Produce and maintain documentation including roadmaps, risk logs, and reports Ensure all work aligns with frameworks such as Cyber Essential+, ISO 27001, GDPR, and PCIDSS Report progress and risks to senior stakeholders Champion a culture of continuous improvement and security awareness Skills/Must Haves: 5+ years’ experience managing IT or security … stakeholder management and communication skills Experience delivering projects in Agile or hybrid environments Familiarity with Jira, Confluence, or MS Project Understanding of compliance frameworks such as ISO 27001, GDPR, PCIDSS Nice to have: experience with hospitality systems (POS, PMS, or guest management) Contract Details: Duration: 6 months Determination: Inside IR35 Location: London (Hybrid/Remote More ❯
be doing: • Leading and supporting all aspects of security governance activities – from policy and exception management to risk and vendor assessments • Managing compliance and audit activities (ISO 27001, NIST, PCIDSS, NYDFS, etc.) and working closely with tech, legal, and audit teams • Overseeing major projects to ensure security is baked in from inception to implementation • Coaching and developing … strategy, delivery, and stakeholder engagement What you’ll bring: • Strong background in GRC (Governance, Risk, and Compliance) within cybersecurity • Practical experience with frameworks such as ISO 27001, NIST, and PCIDSS • Proven ability to design, implement, and maintain security policies and procedures • Confident in managing audits, vendor assessments, and compliance remediation • Leadership skills that balance mentorship, accountability, and More ❯
Specialist Location: Manchester - 5 days per week Job Type: Full-Time, Permanent Salary: £45,000 to £55,000 Key Responsibilities: Lead and support compliance programs with a focus on PCIDSS, SOC 1, and SOC 2 requirements Conduct governance, risk, and control assessments across IT and business processes Partner with internal stakeholders and external auditors to ensure audit … documentation, including policies, standards, and procedures Support third-party vendor risk assessments and contribute to enterprise-wide GRC initiatives What My Client is Looking For: Proven experience working with PCIDSS and SOC 1/SOC 2 frameworks in regulated environments Strong background in IT risk, audit coordination, and control testing Excellent stakeholder management skills, with the ability More ❯
Milton Keynes, Buckinghamshire, England, United Kingdom
Altitude-Recruitment Limited
operational security management and regulatory compliance oversight. The successful candidate will define security standards across our product portfolio, manage security environments, and serve as our central point for ISO27001, PCI/DSS, and GDPR compliance while supporting commercial teams with tender responses and client security assurance. Core Responsibilities: Strategic (30%) Define technical security architecture and standards across multi … monitoring, alerting, and detection capabilities Manage vulnerability assessment and penetration testing programs Maintain identity and access management controls Compliance & Assurance (30%) Maintain ISO27001 certification and manage audit cycles Ensure PCI/DSS compliance for payment processing systems Manage GDPR compliance across all products and operations Complete HECVAT and security questionnaires for higher education tenders Support sales and customer … information security experience in SaaS/cloud software environment (ISV or B2B software preferred) Proven track record managing ISO27001 certification and compliance Practical GDPR implementation experience in software products PCI/DSS compliance experience with payment processing systems Strong understanding of cloud security (Azure and/or AWS) Application security and secure development lifecycle knowledge Security incident management More ❯
operational security management and regulatory compliance oversight. The successful candidate will define security standards across our product portfolio, manage security environments, and serve as our central point for ISO27001, PCI/DSS, and GDPR compliance while supporting commercial teams with tender responses and client security assurance. Core Responsibilities: Strategic (30%) Define technical security architecture and standards across multi … monitoring, alerting, and detection capabilities Manage vulnerability assessment and penetration testing programs Maintain identity and access management controls Compliance & Assurance (30%) Maintain ISO27001 certification and manage audit cycles Ensure PCI/DSS compliance for payment processing systems Manage GDPR compliance across all products and operations Complete HECVAT and security questionnaires for higher education tenders Support sales and customer … information security experience in SaaS/cloud software environment (ISV or B2B software preferred) Proven track record managing ISO27001 certification and compliance Practical GDPR implementation experience in software products PCI/DSS compliance experience with payment processing systems Strong understanding of cloud security (Azure and/or AWS) Application security and secure development lifecycle knowledge Security incident management More ❯
alerts, logs, and reports for suspicious activity and potential threats. 3. Compliance & Audit: Ensure the organization's adherence to relevant information security regulations, laws, and industry standards (e.g. HIPAA, PCIDSS, NIST, CIS, ISO 27001, Cyber Essentials+). Coordinate and participate in internal and external security audits, provide evidence, and ensure timely remediation of audit findings. Develop and More ❯
Risk Assessment methods and frameworks (IRAM2, OCTAVE, NIST, ISO 27005 etc) • Information Security Management System frameworks and standards and their application • Compliance frameworks relevant to financials services including SOX, PCIDSS, SSAE16, etc) • Good working knowledge of one or more security technologies and domains, including, but not limited to network security, cyber security, datasecurity, identity and access More ❯
Leeds, Yorkshire, United Kingdom Hybrid/Remote Options
Stott and May
Harden DevSecOps pipelines to ensure secure software delivery. Collaborate with engineering teams to integrate security by design into products. Compliance & Risk Management Ensure regulatory compliance with GDPR, SOC2, ISO, PCI-DSS, and crypto-specific frameworks. Lead risk assessments for third-party vendors and service providers. Work with legal and compliance teams on KYC/AML security for crypto More ❯
security monitoring tools. Excellent written and verbal communication skills. Preferred Certifications such as CISSP, GIAC (GCIH, GCIA, GCTI). Experience with malware analysis, APT detection, and regulatory frameworks (GDPR, PCIDSS). Familiarity with Infrastructure as Code tools and cloud platforms. Soft Skills Strong problem-solving and analytical mindset. Ability to work under pressure in fast-paced environments. More ❯
security monitoring tools. Excellent written and verbal communication skills. Preferred Certifications such as CISSP, GIAC (GCIH, GCIA, GCTI). Experience with malware analysis, APT detection, and regulatory frameworks (GDPR, PCIDSS). Familiarity with Infrastructure as Code tools and cloud platforms. Soft Skills Strong problem-solving and analytical mindset. Ability to work under pressure in fast-paced environments. More ❯
security monitoring tools. Excellent written and verbal communication skills. Preferred Certifications such as CISSP, GIAC (GCIH, GCIA, GCTI). Experience with malware analysis, APT detection, and regulatory frameworks (GDPR, PCIDSS). Familiarity with Infrastructure as Code tools and cloud platforms. Soft Skills Strong problem-solving and analytical mindset. Ability to work under pressure in fast-paced environments. More ❯
potential target devices. An aptitude and interest for future innovations & technologies as well a willingness to continually learn and nurture those around you Knowledge of compliance frameworks: SOX, HIPAA, PCI-DSS, NIST, CIS. Work Experience: Essential: Experience in working on deliverables with broad scope, ambiguity, and high degree of difficulty Experience in technology projects such as implementation of More ❯
Governance & Compliance Contribute to maintaining security standards and aligning with frameworks such as ISO 27001, NIST, CIS, or SOC 2. Support audits, evidence collection, and compliance reporting (e.g., GDPR, PCI-DSS). Develop and maintain documentation for policies, procedures, architecture, and runbooks. Collaboration & Knowledge Sharing Work with IT operations, cloud, and development teams to embed security in system More ❯
Governance & Compliance Contribute to maintaining security standards and aligning with frameworks such as ISO 27001, NIST, CIS, or SOC 2. Support audits, evidence collection, and compliance reporting (e.g., GDPR, PCI-DSS). Develop and maintain documentation for policies, procedures, architecture, and runbooks. Collaboration & Knowledge Sharing Work with IT operations, cloud, and development teams to embed security in system More ❯
Governance & Compliance Contribute to maintaining security standards and aligning with frameworks such as ISO 27001, NIST, CIS, or SOC 2. Support audits, evidence collection, and compliance reporting (e.g., GDPR, PCI-DSS). Develop and maintain documentation for policies, procedures, architecture, and runbooks. Collaboration & Knowledge Sharing Work with IT operations, cloud, and development teams to embed security in system More ❯
EXPERIENCE Functional/Technical Competencies Essential: Good understanding of cybersecurity/IT control frameworks including but not limited to frameworks from SOX, FFIEC, ISO27001, NIST, Cloud Security Alliance, and PCI-DSS Good managerial skills Experience of working as an IT auditor, security auditor or governance, risk and compliance analyst Proven understanding of current best practice approach to securityMore ❯
Wokingham, Berkshire, England, United Kingdom Hybrid/Remote Options
KBC Technologies UK LTD
VPNs, and WAFs. Develop and manage firewall policies, network access controls, IAM solutions, MFA, RBAC, and privilege management . Ensure alignment of security measures with compliance standards (GDPR, HIPAA, PCIDSS). Conduct regular security audits and assessments to identify and remediate risks. Apply industry frameworks such as NIST Cybersecurity Framework, ISO 27001, CIS Controls . Oversee and More ❯
or AWS Certified Solutions Architect Checkpoint Certified Security Expert (CCSE) or similar certification Experience with scripting (Python, PowerShell, or Bash) Familiarity with compliance frameworks (ISO 27001, GDPR, SOC 2, PCI-DSS) At Cognizant you will experience an exciting mix of innovation by design, creativity, collaboration, and efficiency within a framework of stimulating objectives and a passion for delivering More ❯
Banbury, Oxfordshire, United Kingdom Hybrid/Remote Options
Chiltern Railways
to demonstrate equivalent knowledge. Desirable Familiarity with the Microsoft security suite: Defender, InTune, Purview, EntraID, and Azure. Further certifications such as CISSP, CISM, or CRISC are advantageous Familiarity with PCI-DSS standards. Experience influencing cyber security investments and initiatives by providing expert advice to stakeholders and management. Educated to degree level or equivalent. More ❯