network systems, including IT security. Ability to handle ambiguity and make decisions and recommendations with limited data. Understanding of various Cyber/IT Security frameworks e.g. NIST; ISO-27001; PCI-DSS; EBA-ICT and FFIEC. Solid analytical/problem-solving skills with capability to identify solutions to unusual and complex problems. Please note MUFG operate a hybrid working More ❯
Responsible for the adherence to and continued certification of the following standards: ISO 9001 Quality Management System ISO 27001 Information Security Management System PCI-DSSPaymentCardIndustryDataSecurityStandard ISO 22301 Business Continuity GDPR and Data Protection Laws Conduct regular internal audits in line with the requirements of the standards. Implement compliance initiatives, identify and assess More ❯
related field, or relevant industry experience 5+ years of experience in security architecture, with at least 2 years in a similar role Strong knowledge of NIST 800-53, ISO27001, PCIDSS, and COBIT Experience with security frameworks (SABSA, TOGAF) Understanding of threat and risk analysis methodologies Experience in cloud security (Azure, AWS, Google) Ability to work in high More ❯
and blueprints. What You'll Bring Prior and proven experience gained as a Security Architect or in a Technical Cyber Consultant/Engineer role. Expertise in: Security legislation (GDPR, PCIDSS, ICO) Frameworks (ISO 27001, NIST CSF, CIS Controls v8) HMG/NCSC policies and guidance Cloud security (AWS, Azure) Microservice architectures PKI, Cryptography, Privileged Access Management Certifications More ❯
London, South East, England, United Kingdom Hybrid / WFH Options
Sanderson
and blueprints. What You'll Bring Prior and proven experience gained as a Security Architect or in a Technical Cyber Consultant/Engineer role. Expertise in: Security legislation (GDPR, PCIDSS, ICO) Frameworks (ISO 27001, NIST CSF, CIS Controls v8) HMG/NCSC policies and guidance Cloud security (AWS, Azure) Microservice architectures PKI, Cryptography, Privileged Access Management Certifications More ❯
London, South East, England, United Kingdom Hybrid / WFH Options
Addition
one. Advising on risks, vulnerabilities and mitigation strategies across the tech estate. Shaping and maintaining internal security standards and governance frameworks. Ensuring compliance with ISO 27001, GDPR, SOC 2, PCI-DSS and similar regulations. Collaborating with IT, business stakeholders, and third parties to drive secure delivery. Supporting incident response and proactively planning for emerging threats. Translating complex risks … Strong background in security architecture and designing enterprise-level solutions. Deep familiarity with frameworks like ISO 27001, NIST, TOGAF or SABSA. Significant experience in Financial Services or Insurance, including PCI-compliant environments. Expert knowledge of network and cloud security using Azure, Hands-on experience with application security, data protection, and threat modelling. Confident communicator, able to influence across technical More ❯
fraud Onboard key customer-facing and payment systems into the security monitoring platform Perform threat hunting and detection engineering to identify and address emerging risks Support security audits, compliance (PCI-DSS), and post-incident reviews Mentor junior team members and contribute to a culture of continuous improvement Participate in the on-call rotation to ensure fast, effective incident More ❯
City of London, London, England, United Kingdom Hybrid / WFH Options
Michael Page Technology
improve, maintain and regularly test incident management policy and procedures. Ensuring security operations controls and processes adhere to relevant laws and standards including GDPR, Data Protection Act, Cyber Essentials, PCI DSS. Identify, assess and clearly communicate risks in the domains of operational security Profile A successful Security Operations Manager should have: Applicable security certification, such as CISSP, ISSMP, MSc More ❯
Bristol, Avon, South West, United Kingdom Hybrid / WFH Options
Reed Technology
the organisation's parent company. Required Skills & Qualifications: Demonstrable experience in information security leadership , including line management or team leadership . In-depth knowledge of ISO27001, GDPR, FCA SYSC, PCIDSS and other regulatory/compliance frameworks. Hands-on experience with security technologies: SIEM, IAM, vulnerability assessment, endpoint protection, cloud services (AWS, SaaS, IaaS) . Strong communication skills More ❯
e.g., Okta, Azure AD, CyberArk), and frameworks (preferred). Proficiency in leading threat modelling sessions and using relevant tools (preferred). Familiarity with compliance frameworks like GDPR, CCPA, HIPAA, PCI-DSS, NIST and ISO 27001. Strong scripting and automation skills (e.g. Python, PowerShell, Bash). More ❯
tested. Lead cyber risk input into third-party risk, data privacy, and cloud governance programs. Regulatory & Compliance: Ensure compliance with relevant laws and frameworks (eg, GDPR, DORA, NIS2, SOX, PCI-DSS). Prepare and support audits, risk assessments, and regulatory reviews. Team & Culture Building: Build and lead a high-performing cyber risk team. Drive a risk-aware culture More ❯
London, South East, England, United Kingdom Hybrid / WFH Options
Become
collaboration skills Desirable Attributes Exposure to service mesh technologies (e.g., Istio, Linkerd) Experience with secrets management and security tooling (e.g., Vault, Snyk) Familiarity with compliance frameworks (e.g., ISO 27001, PCI-DSS) Prior consulting experience or experience in client-facing roles Engagement Model Outside IR35 12-month initial contract with potential for extension or permanent employment Hybrid working model More ❯
Salford, Greater Manchester, North West, United Kingdom Hybrid / WFH Options
AWD Online
Citrix DaaS/XenServer Assist in the implementation and monitoring of disaster recovery solutions and backup strategies Ensure compliance with internal security policies and regulatory requirements (e.g., GDPR, ISO27001, PCIDSS v4.0) Provide 3rd line support and root cause analysis for complex issues Write PowerShell scripts to automate and streamline administrative tasks Document system configurations, changes and standardMore ❯
Meriden, Coventry, West Midlands, England, United Kingdom
Recruit4Talent
your existing skills while developing new ones, contributing to the strategic security objectives of the Company and ensuring adherence to critical accreditations, including ISO 27001, GDPR, Cyber Essentials, and PCI DSS. The successful candidate will demonstrate: Strong analytical skills with a meticulous approach to identifying and resolving security issues Excellent verbal and written communication abilities, with a knack for … expertise in information security Happy to travel occasionally to other sites as required. Desirable Experience: Demonstrable expertise in external audit, compliance, and security processes (ISO27001, GDPR, Cyber Essentials and PCIDSS) Microsoft accreditation or other recognised certifications (e.g. Microsoft Learning, CISA, CISM, CRISC, CCSP) would be very beneficial. Benefits: £25,000 - £35,000 salary depending on experience More ❯
implement robust security measures, including AES-256 encryption for sensitive data, TLS for secure communication, and OAuth/JWT for authentication and authorisation. Ensure the platform is compliant with PCI-DSS, GDPR, and other relevant data protection regulations. Integrate multiple payment gateways (Capital Pay, Stripe, Paypal, Barclaycard, Adyen, Worldpay) using provided SDKs/APIs. Implement advanced fraud detection … or MySQL) and potentially NoSQL databases. • Has hands-on experience with RESTful API design and microservices architecture. • Demonstrates a strong understanding of security best practices and compliance standards like PCIDSS and GDPR. • Has experience integrating with third-party APIs, particularly payment gateways. • Has experience in NFC/RFID technology and Payment Networks integrations. • Is adept at problem-solving, has excellent More ❯
implement robust security measures, including AES-256 encryption for sensitive data, TLS for secure communication, and OAuth/JWT for authentication and authorisation. Ensure the platform is compliant with PCI-DSS, GDPR, and other relevant data protection regulations. Integrate multiple payment gateways (Capital Pay, Stripe, Paypal, Barclaycard, Adyen, Worldpay) using provided SDKs/APIs. Implement advanced fraud detection … or MySQL) and potentially NoSQL databases. • Has hands-on experience with RESTful API design and microservices architecture. • Demonstrates a strong understanding of security best practices and compliance standards like PCIDSS and GDPR. • Has experience integrating with third-party APIs, particularly payment gateways. • Has experience in NFC/RFID technology and Payment Networks integrations. • Is adept at problem-solving, has excellent More ❯
as well as part of a dynamic team Good numeracy and organisational skills, with attention to detail Critical competencies – technical fit Good understanding of at least one audit framework; PCIDSS, ISO 27001, Cyber Essentials, NIST, SOC 2, NIS2, Microsoft 365 Certification, etc. Ability to deliver, without supervision/support, at least one Cyber Practice GRC service Aptitude More ❯
Strong knowledge of Cloud security architecture and tools (Preferably AWS). Experience with securing enterprise IT tools (O365, MDM, DLP, CASB). Familiarity with compliance frameworks (e.g., ISO 27001, PCIDSS, GDPR). Strong communication skills: equally comfortable in technical architecture forums and executive briefings. Strategic mindset with a bias for action and iterative delivery. Comfortable navigating ambiguity More ❯
high growth and fast paced tech environment Sales experience is NOT required Nice to Have Understanding of common compliance frameworks such as SOX, COBIT, SOC, COSO, ISO 27001, HIPAA, PCIDSS, HITRUST and industry recognized guidance such as NIST Our Company Values Customer obsession: Apply relentless focus on listening to and understanding customers as the core of everything More ❯
Croydon, London, United Kingdom Hybrid / WFH Options
Gold Group
to ensure security is embedded in all new and existing applications, systems, and network infrastructure * Risk Management & Compliance: Ensure compliance with industry regulations and data protection laws (e.g. GDPR, PCI-DSS) * Continuous Improvement: Stay informed of the latest cybersecurity threats, trends, and technologies, recommending and implementing improvements to enhance security defences * Change Management: Establish and lead a Change More ❯
South Croydon, Surrey, England, United Kingdom Hybrid / WFH Options
Gold Group Ltd
to ensure security is embedded in all new and existing applications, systems, and network infrastructure* Risk Management & Compliance: Ensure compliance with industry regulations and data protection laws (e.g. GDPR, PCI-DSS)* Continuous Improvement: Stay informed of the latest cybersecurity threats, trends, and technologies, recommending and implementing improvements to enhance security defences* Change Management: Establish and lead a Change More ❯
payment rails (e.g., credit/debit cards, ACH, FedNow, SWIFT, RTP, FedNow, SEPA, CHIPS, FedWire, LYNX, Card Rails real-time payments, alternative payments), payment processing flows, regulatory compliance (e.g., PCIDSS, AML), and industry trends. Provide expert guidance to clients on optimizing their payment strategies and leveraging our payment solutions to achieve their business objectives. Conduct thorough business More ❯
payment rails (e.g., credit/debit cards, ACH, FedNow, SWIFT, RTP, FedNow, SEPA, CHIPS, FedWire, LYNX, Card Rails real-time payments, alternative payments), payment processing flows, regulatory compliance (e.g., PCIDSS, AML), and industry trends. Provide expert guidance to clients on optimizing their payment strategies and leveraging our payment solutions to achieve their business objectives. Conduct thorough business More ❯
understanding of data protection regulation and legislation, including the upcoming GDPR and other privacy based legislation Good knowledge of information security best practice, e.g. ISO 27001, COBIT Familiarity with PCIDSS requirements Experience of project management and business analysis preferable but not essential Awareness of risk and privacy assessment techniques and their application Certifications such as: BCS's More ❯
the adoption of modern DevOps practices and tools to support rapid, high-quality delivery. Governance, Risk & Compliance Define and uphold IT governance and regulatory compliance standards (FSA, EBA, DORA, PCI-DSS, ISO 27001). Implement robust risk management and documentation processes to ensure audit-readiness at all times. Work closely with compliance and security teams to proactively address More ❯