personalized promotions to tailored product recommendations based on real-time customer interactions Knowledge of data privacy laws and frameworks like GDPR, CCPA, and PCIDSS (PaymentCardIndustryDataSecurityStandard) to ensure the secure handling of customer data and payment information Expertise in managing sensitive consumer data, including PII (Personally Identifiable Information), and implementing consent-based dataMore ❯
London, England, United Kingdom Hybrid / WFH Options
JR United Kingdom
external partners, including banks, card issuers and processors, payment processors to gather intelligence on evolving fraud trends. • Regulatory and Compliance Adherence: o Ensure compliance with UK regulations, including GDPR, PCIDSS, and industry best practices related to card fraud prevention. o Keep up to date with relevant legislation, ensuring that fraud detection activities are aligned with legal requirements. More ❯
London, England, United Kingdom Hybrid / WFH Options
Tillo
solving abilities and attention to detail It’s not essential, but we’d love to hear about it if you have experience with/certifications in Paymentsecurity standards (PCIDSS) Cyber Security tools CISSP, CEH, or equivalent Benefits We offer all our employees trust and empower our team to work with flexibility and autonomy. We’re a More ❯
higher maturity. What You'll Be Doing: Develop and implement information security policies, standards, and guidance in collaboration with stakeholders. Ensure compliance with industry standards such as NIST CSF, PCI-DSS, ISO 27001, and SOC 2. Coordinate responses to internal and external audits and liaise with key stakeholders. Develop and deliver security policy awareness and training programs. Assess … security, ideally in a public tech company or regulated industry. Experience in developing and implementing information security policies, standards and procedures. Familiarity with security standards such as NIST CSF, PCI-DSS, ISO 27001, and SOC2. Strong skills in security metrics and reporting. Ability to engage collaboratively with technical and non-technical stakeholders. Excellent written and verbal communication skills. More ❯
Brighton, England, United Kingdom Hybrid / WFH Options
Tillo Inc
solving abilities and attention to detail It’s not essential, but we’d love to hear about it if you have experience with/certifications in Paymentsecurity standards (PCIDSS) Cyber Security tools CISSP, CEH, or equivalent Benefits We offer all our employees trust and empower our team to work with flexibility and autonomy. We’re a More ❯
Security at the forefront of everything they do in close collaboration with the wider IT function to ensure governance and compliance with numerous Cyber Security frameworks (ISO 27001, NIST, PCI-DSS). Ultimately, the company aims to grow by 300% over the next three years, and you will have the exciting opportunity to play a central role in … Cyber Security and contributing across a broad range of responsibilities, such as: Threat Management Endpoint Detection Security Assurance (Security by Design Controls) Framework Governance and Compliance (ISO 27001, NIST, PCI-DSS) Vulnerability Scanning Risk Analysis Cybersecurity Awareness Campaigns Phishing Campaigns Experience The ideal candidate will bring hands-on experience in the above Cyber Security responsibilities, coupled with a More ❯
Security at the forefront of everything they do in close collaboration with the wider IT function to ensure governance and compliance with numerous Cyber Security frameworks (ISO 27001, NIST, PCI-DSS). Ultimately, the company aims to grow by 300% over the next three years, and you will have the exciting opportunity to play a central role in … Cyber Security and contributing across a broad range of responsibilities, such as: Threat Management Endpoint Detection Security Assurance (Security by Design Controls) Framework Governance and Compliance (ISO 27001, NIST, PCI-DSS) Vulnerability Scanning Risk Analysis Cybersecurity Awareness Campaigns Phishing Campaigns Experience The ideal candidate will bring hands-on experience in the above Cyber Security responsibilities, coupled with a More ❯
and maintain policies, procedures, and documentation to support an effective GRC and Data Protection Strategy, including all necessary documents under the UK GDPR. Ensure cardfactory meets compliance standards, including PCIDSS, GDPR, and other relevant regulations. Conduct audits and monitoring to verify compliance with policies and procedures related to the GRC and Data Protection Strategy. Provide internal expertise More ❯
Senior Cyber Security Analyst - AWS - PCIDSS - Manchester Senior Cyber Security Analyst with a PCIDSS & AWS cloud background is required to join our global client's new UK cybersecurity team. This role is predominantly end-client facing, advising on security best practices, vulnerability management and securitystandard compliance (e.g. NIST, ISO, PCIDSS … EMEA regions. Skills & Experience Required: 4+ years of experience working in Cyber Security within an AWS cloud environment Any experience with CrowdStrike would be a bonus Good experience with PCIDSS Vulnerability management & Compliance Lead on Audits Strong Securitystandard knowledge and experience, consulting on a range of security policies and standards such as GDPR, ISO, PCI … in a vibrant office with some of most forward-thinking technical people Key Responsibilities: Analysing and developing security requirements, as well as carrying out vulnerability management & compliance work in PCIDSS type projects Ensure consistency across IT Security risk management activities. Advise Engineers on information related to new vulnerabilities and threats and their remediation, to improve vulnerability management. More ❯
Cloud Security Consultant - AWS - PCIDSS - Manchester A cloud security consultant with a PCIDSS & AWS cloud background is required to join our global client's new UK cybersecurity team. This role is predominantly end-client facing, advising on security best practices, vulnerability management and securitystandard compliance (e.g. NIST, ISO, PCIDSS etc … EMEA regions. Skills & Experience Required: 2+ years of experience working in Cyber Security within an AWS cloud environment Any experience with CrowdStrike would be a bonus Good experience with PCIDSS Vulnerability management & Compliance Lead on Audits Strong Securitystandard knowledge and experience, consulting on a range of security policies and standards such as GDPR, ISO, PCI … in a vibrant office with some of most forward-thinking technical people Key Responsibilities: Analysing and developing security requirements, as well as carrying out vulnerability management & compliance work in PCIDSS type projects Ensure consistency across IT Security risk management activities. Advise Engineers on information related to new vulnerabilities and threats and their remediation, to improve vulnerability management. More ❯
management audits and experience building enterprise security strategy for cloud adoption or driving the program's evolution to meet new requirements Understanding implications of meeting industry standards such as PCIDSS, ISO 27001, HIPAA, and NIST/DoD frameworks Amazon is an equal opportunities employer. We believe passionately that employing a diverse workforce is central to our success. More ❯
Senior Cyber Security Analyst - AWS - Manchester Senior Cyber Security Analyst - AWS - PCIDSS - Manchester Senior Cyber Security Analyst with a PCIDSS & AWS cloud background is required to join our global client's new UK cybersecurity team. This role is primarily end-client facing, advising on security best practices, vulnerability management, and securitystandard compliance (e.g. … NIST, ISO, PCIDSS). You will lead audits and examinations, reporting to the UK Head of Security, and consulting with global clients across the American and EMEA regions. Skills & Experience Required: 4+ years of experience in Cyber Security within an AWS cloud environment Experience with CrowdStrike is a plus Good experience with PCIDSS Vulnerability … management & compliance Leading security audits Strong knowledge of security standards and policies such as GDPR, ISO, PCI, NIST Confident communication with stakeholders and clients, with the ability to provide cybersecurity training and mentoring Relevant cybersecurity certifications are desirable This role is mostly onsite at their Central Manchester office, requiring attendance 3-4 days a week at their new UK More ❯
managing, designing and using security solutions such as Firewalls, Web Application Firewalls, IDS/IPS. Experience working in cloud environments, e.g., AWS. Design and implement services constrained by GDPR, PCI-DSS or ISO/IEC 27001 requirements. Experience applying infrastructure as code processes and tools. Experience performing forensics investigations. Experience working in Fintech, particularly in the payments industry. More ❯
security and monitoring tools such as Zscaler, Microsoft Defender, Microsoft Sentinel, Splunk, Halo, AppCheck, Zabbix, and Grafana. Experience with batch automation tools. Knowledge of Linux and Azure. Understanding of PCI-DSS compliance. What can we do for you? You can expect a rewarding experience working with us in our head office in Welwyn Garden City. As a key More ❯
London, England, United Kingdom Hybrid / WFH Options
Forter
infrastructure as code. Have published security papers, blogs, or talks, or contributed to open-source application security tooling or standards. Have experience with certification and compliance programs such as PCI-DSS, SOC II, and ISO27001. Benefits include: Quarterly company bonus. Private health insurance, including vision and dental coverage. Restricted Stock Units (RSUs). Generous PTO policy. Half day More ❯
Leeds, Yorkshire, United Kingdom Hybrid / WFH Options
Lloyds Bank plc
you know how to design and review rules that are effective, compliant, and minimize risk. Compliance and controls knowledge: Familiarity with regulatory standards and certification frameworks (e.g. ISO 27001, PCI-DSS) and experience participating in audits or maintaining key security controls. You understand how to translate regulatory requirements into practical network security measures. Leadership and collaboration: Demonstrable ability More ❯
CIRT), Computer Emergency Response Team (CERT), Computer Security Incident Response Centre (CSIRC) or a Security Operations Centre (SOC). Experience in industry standards and frameworks, such as ISO 27001, PCIDSS and NIST CSF. Relevant experience of working in an operational security capacity. Experience in security device management and SIEM. Proven experience of Incident Management and Response. In More ❯
London, England, United Kingdom Hybrid / WFH Options
Metro Bank
background and experience in conducting security risk assessments on projects and developing security controls • Specific experience in secure design, build and control methodologies aligned to relevant security standards, ISO27001, PCIDSS, NIST.• Bullet five • Demonstrable experience of Agile, DevSecOps, Cloud, containerization, microservices and similar technologies is desirable. • Detailed technical knowledge of Application Security and Network Security is beneficial More ❯
Azure Cloud Platform. Extensive experience working with Microsoft 365. Good experience with Firewalls, Networks, Switches, Routers & Domain Controllers. Well-versed with Security Protocols such as NIST in conjunction with PCI-DSS and GDPR. If this sounds like an interesting opportunity to you, feel free to apply for this position or drop me your CV at mohammad.sobee@harveynash.com More ❯
Southampton, Hampshire, United Kingdom Hybrid / WFH Options
Kingfisher plc
impact and value of GRC initiatives. Proven experience embedding & delivering IT & Security GRC frameworks in a large, matrixed organisation. Strong knowledge of security standards and frameworks (e.g. ISO27001, NIST, PCIDSS, Cloud Security). Excellent understanding of the principles, theories, practices and techniques for activities associated with planning and implementing information security management frameworks and general IT controls More ❯
experience in Information Security and Risk Management within complex organisations Strong communication and stakeholder engagement skills Familiarity with cloud and hybrid security models Understanding of regulatory compliance (e.g., GDPR, PCIDSS) Knowledge of frameworks like ISO 27001, NIST, CIS, or COBIT #J-18808-Ljbffr More ❯
security best practice and control implementation What We’re Looking For Hands-on experience with security tooling (EDR, vulnerability scanning, access control) Familiarity with Security frameworks such as NIST, PCI-DSS, and GDPR Experience working with Microsoft environments (O365, Azure) Clear communicator, able to engage with both IT and non-technical teams Full UK driving licence required due More ❯
security best practice and control implementation What We’re Looking For Hands-on experience with security tooling (EDR, vulnerability scanning, access control) Familiarity with Security frameworks such as NIST, PCI-DSS, and GDPR Experience working with Microsoft environments (O365, Azure) Clear communicator, able to engage with both IT and non-technical teams Full UK driving licence required due More ❯
security controls. Provide Tier 1 support for incident management and security reviews. Collaborate with internal stakeholders and third-party vendors to ensure compliance with regulations like SOX, SOC2, FTC, PCI, and ISO27001. What We’re Looking For: 5-7 years of experience in security compliance, access management, or operations. Strong understanding of regulatory policies and frameworks. Experience with third More ❯
acquiring, and digital payment platforms. Platform Scalability & Security: Ensure the continuous evolution, stability, scalability, and robust security of the core payment infrastructure, adhering to the highest industry standards (e.g., PCIDSS, ISO 27001). Engineering Excellence: Lead, mentor, and expand a high-performing engineering and development team, promoting best practices in software development, architecture, and agile methodologies. Compliance … a collaborative and high-performance culture. Strategic Vision: Ability to translate complex business challenges into clear technological strategies and actionable roadmaps. Security & Compliance: Profound understanding of paymentsecurity standards (PCIDSS) and financial regulations (e.g., PSD2, GDPR). Education: Bachelor's or Master's degree in Computer Science, Engineering, or a related field Languages: Russian language skills high More ❯