industry cloud providers - AWS, GCP, Azure, OCI. Practical understanding of industry cloud security principles and their application - NCSC, NIST, CSA. Familiarity with common cloud related compliance Benchmarks - CIS, GDPR, PCI-DSS, ISO27001, ISO27017, ISO27018, TSR, OFCOM. Strong documentation, design and presentation skills with the ability to create management reporting to convey business justifications, architectural designs and work flows. More ❯
of Azure services, including Azure AD, Defender for Cloud, and Logic Apps. • Experience with SIEM/SOAR platforms, KQL, and automation workflows. • Familiarity with compliance frameworks: ISO 27001, NIST, PCI-DSS, GDPR. • Excellent communication and stakeholder engagement skills. • Certifications such as SC-100, AZ-500, MS-500, or equivalent are highly desirable. InterQuest Group is acting as an More ❯
Hampshire, England, United Kingdom Hybrid/Remote Options
Sanderson Government & Defence
Lead roles JSP440, JSP604/453 & JSP490 Working with system secure design & MOD/GDS Secure by Design Principles Supplier Chain Assurance and Risks. Security related legislation (e.g. GDPR, PCIDSS, ICO requirements). Security Control Frameworks such as ISO 27001, NIST CSF and CIS Controls v8. HMG, NPSA and NCSC security policies, standards and guidance. Have experience More ❯
finish. Bonus points if you bring: Experience with AppSec and DevSecOps. Hands-on knowledge of Azure, AWS, and/or Google Cloud. Familiarity with standards like ISO2700X, ISO31000, NIST800, PCI-DSS. Certifications such as CISSP, CCSP, CRISC, CISM, or SABSA. Why QBE? At My Best? At QBE, we want our people to feel rewarded and inspired to perform at More ❯
challenges, designing pragmatic governance models, and influencing security strategy at scale this could be your next move. Key Responsibilities Translate international standards (NIST CSF, ISO 27001, GDPR, SOC 2, PCIDSS, CSA CCM) into actionable policies and controls. Design and implement unified compliance frameworks across cloud, hybrid, and enterprise systems. Lead internal and external audits, certification readiness, and More ❯
challenges, designing pragmatic governance models, and influencing security strategy at scale this could be your next move. Key Responsibilities Translate international standards (NIST CSF, ISO 27001, GDPR, SOC 2, PCIDSS, CSA CCM) into actionable policies and controls. Design and implement unified compliance frameworks across cloud, hybrid, and enterprise systems. Lead internal and external audits, certification readiness, and More ❯
email. Understanding of encryption algorithms, hash functions, and key management practices. Experience in designing secure architectures in hybrid or cloud environments. Knowledge of compliance and regulatory standards such as PCIDSS, HIPAA, SOX, GDPR, NIST 800-53. Preferred Qualifications: Certifications: CISSP, CISM, CEH, GIAC, Microsoft Certified: Identity and Access, or other IDAM equivalent Technologies. Experience with Zero More ❯
Cambridgeshire, England, United Kingdom Hybrid/Remote Options
Sanderson Government & Defence
Lead roles JSP440, JSP604/453 & JSP490 Working with system secure design & MOD/GDS Secure by Design Principles Supplier Chain Assurance and Risks. Security related legislation (e.g. GDPR, PCIDSS, ICO requirements). Security Control Frameworks such as ISO 27001, NIST CSF and CIS Controls v8. HMG, NPSA and NCSC security policies, standards and guidance. Have experience More ❯
Portsmouth, England, United Kingdom Hybrid/Remote Options
ProCheckUp (PCU)
vulnerability assessments, application security reviews, and network security analyses. Responsibilities include evaluating risks, providing actionable security recommendations, and assisting clients with compliance to established standards like ISO 27001 and PCI DSS. The role will involve working closely with clients across sectors to strengthen their overall security posture through proactive planning and solutions. Qualifications Experience in Cybersecurity, including identifying and … Network Security, including securing and evaluating infrastructure and cloud environments Expertise in performing Vulnerability Assessments and delivering actionable insights Background in Information Security, with experience in regulatory compliance (e.g., PCIDSS, ISO 27001) Strong analytical skills and the ability to effectively communicate complex technical concepts Relevant certifications (e.g., CREST, CISSP, CEH, or similar) are a plus Bachelor's More ❯
as well as part of a dynamic team Good numeracy and organisational skills, with attention to detail Critical competencies – technical fit Good understanding of at least one audit framework; PCIDSS, ISO 27001, Cyber Essentials, NIST, SOC 2, NIS2, Microsoft 365 Certification, etc. Ability to deliver, without supervision/support, at least one Cyber Practice GRC service Aptitude More ❯
data pipelines for ingestion, transformation, and storage using Azure Data Factory and Databricks. Governance & Security Implement data governance, security, and compliance practices aligned with financial services regulations (e.g., GDPR, PCIDSS). Performance & Scalability Ensure data solutions are optimized for performance and scalability across large datasets. Collaboration Work closely with data engineers, analysts, and business stakeholders to deliver More ❯
AWS environments. Lead incident response, vulnerability assessments and pentest co-ordination. Manage IAM systems and support Engineering teams with threat modelling and secure development practices. Own ISO27001, Cyber Essentials+, PCI-DSS and GDPR compliance. Manage physical security (access control etc) What experience do you need? 2+ years experience within Cyber Security – hands on experience with SIEM, Vulnerability scanners More ❯
Reading, Berkshire, England, United Kingdom Hybrid/Remote Options
Proactive Appointments
A security professional qualification such as CISSP, CISM, CCSP, CISA, ISO27001 Lead Implementor/Auditor, CEH or equivalent Cloud Computing experience from multiple vendors (O365, Azure, AWS, Google, etc.) PCI-DSS GRC Cyber Security Analyst Due to the volume of applications received for positions, it will not be possible to respond to all applications and only applicants who More ❯
City of London, London, United Kingdom Hybrid/Remote Options
ECS
Security Architect, you will be responsible for: Design secure AWS landing zones using IAM, KMS, GuardDuty, and WAF. Conduct risk assessments and ensure compliance with ISO 27001, GDPR, and PCI-DSS. Embed and validate security controls throughout migrations. Architect IAM policies and implement Zero Trust principles. Automate security in CI/CD pipelines with AWS Config and IaC tools. More ❯
just in theory. Vulnerability and risk management – and how to avoid both being reduced to spreadsheets. Frameworks like NIST, MITRE ATT&CK, Cyber Kill Chain, and compliance stuff like PCI-DSS. SIEMs, WAFs, DLPs, EDRs, and all the other acronym-heavy tools you’ve learned to assess critically. You’ll do well here if: You speak fluent “tech” and More ❯
ll have ● Minimum of 5 years experience in leading and implementing security measures: protocols, datasecurity, cyber and information security ● Qualifications: Certification/experience in ISO 27001, GDPR, NIST, PCIDSS, SOX ● Knowledge of GRC platforms; strong analytical and communication skills ● Governance qualifications valued ● Knowledge of regulations with a deep understanding of GDPR and other data protection laws More ❯
City of London, London, United Kingdom Hybrid/Remote Options
Travelfusion
ll have ● Minimum of 5 years experience in leading and implementing security measures: protocols, datasecurity, cyber and information security ● Qualifications: Certification/experience in ISO 27001, GDPR, NIST, PCIDSS, SOX ● Knowledge of GRC platforms; strong analytical and communication skills ● Governance qualifications valued ● Knowledge of regulations with a deep understanding of GDPR and other data protection laws More ❯
business operations. Security and Compliance Implement and enforce network security policies and procedures to safeguard the integrity and confidentiality of organizational data. Ensure compliance with industry standards, including NIST, PCI-DSS, and GDPR, by enforcing firewall, VPN, and other security measures. Collaboration and Leadership Work closely with cross-functional teams, including cybersecurity, cloud architects, systems engineers, and external More ❯
Proficiency in scripting (Bash, Python, or PowerShell). Experience with monitoring and observability tools (Prometheus, Grafana, ELK, or equivalent). Understanding of compliance/security frameworks (e.g., GDPR, SOC2, PCIDSS). Soft Skills Strong problem-solving and troubleshooting mindset. Excellent communication and collaboration skills across distributed teams. Ability to work independently in a fast-paced environment. Detail More ❯
Proficiency in scripting (Bash, Python, or PowerShell). Experience with monitoring and observability tools (Prometheus, Grafana, ELK, or equivalent). Understanding of compliance/security frameworks (e.g., GDPR, SOC2, PCIDSS). Soft Skills Strong problem-solving and troubleshooting mindset. Excellent communication and collaboration skills across distributed teams. Ability to work independently in a fast-paced environment. Detail More ❯
empowering users towards greater self-sufficiency Knowledge of wireless networking and configuring wired/wireless networks with centralised management systems Understanding of information security standards such as ISO27001 or PCI-DSS and implementing cybersecurity best practices Familiarity with ticketing systems, incident management, and support logging Proven ability to lead IT projects and coordinate internal and external support teams More ❯
Systems (KMS). Solid understanding of cloud and network security architecture and configurations. Demonstrated experience supporting external audits and assessments, such as SOC 1, SOC 2, ISO 27001, or PCI DSS. Hands-on experience with major cloud platforms (AWS, GCP, Azure) and infrastructure-as-code practices. Proficiency in preparing client assurance materials, including RFP/RFI/DDQ responses More ❯