Join a fast-growing, inclusive, and collaborative cybersecurity consulting firm where your expertise is valued and your career can thrive! Our client, a specialised Cyber Security Consulting firm, is expanding rapidly. They’re looking for an ambitious and driven Senior Cyber Security Consultant to join their Cyber GRC Risk Advisory team. About the role: As a Senior Cyber Security Consultant , you’ll play a key role in Governance, Risk, and Compliance (GRC) , helping clients across a number of sectors strengthen their security posture. You’ll work with industry-leading frameworks like CyberEssentials (CE), CyberEssentialsPlus (CE+), NIST 2, ISO 27001/223001, DORA , and more. This is the perfect opportunity if you’re looking for more autonomy, rapid career growth, and a dynamic environment —far from the rigid structures of large corporate consultancies. As a Senior CyberMore ❯
london, south east england, United Kingdom Hybrid / WFH Options
55 Exec Search
Join a fast-growing, inclusive, and collaborative cybersecurity consulting firm where your expertise is valued and your career can thrive! Our client, a specialised Cyber Security Consulting firm, is expanding rapidly. They’re looking for an ambitious and driven Senior Cyber Security Consultant to join their Cyber GRC Risk Advisory team. About the role: As a Senior Cyber Security Consultant , you’ll play a key role in Governance, Risk, and Compliance (GRC) , helping clients across a number of sectors strengthen their security posture. You’ll work with industry-leading frameworks like CyberEssentials (CE), CyberEssentialsPlus (CE+), NIST 2, ISO 27001/223001, DORA , and more. This is the perfect opportunity if you’re looking for more autonomy, rapid career growth, and a dynamic environment —far from the rigid structures of large corporate consultancies. As a Senior CyberMore ❯
you'll be instrumental in ensuring they are compliant with their information security accreditations and our data, systems, and networks are protected from evolving cyber threats. Nesta are a Charity and an innovation agency for social good. They design, test and scale new solutions to society's biggest problems … days a week on site in London. As the Group Information Security Analyst/Officer, you will: Lead and maintain security accreditations: Successfully manage CyberEssentials, CyberEssentialsPlus, and ISO 27001 certifications. Deliver comprehensive training: Develop and deliver engaging training on ISO 27001, cybersecurity … a strong security posture. ISMS management: Coordinate the improvement and maintenance of the Information Security Management System (ISMS) in line with ISO 27001 and Cyber Essentials. Experience Required: Information Security Management: Extensive experience in implementing and maintaining ISMS and achieving ISO 27001 certification. Proven track record managing security accreditations More ❯
robust governance, and enjoying the freedom to design impactful processes across our global operations. As the sole expert in this position, you'll spearhead Cyber projects with plans to build your own team in 2025 The role combines two dynamic elements: Core IT Security: Leverage your deep technical expertise … to maintain the security of our infrastructure, servers, and systems. From leading our Managed Security Service Providers (MSSPs), building a best-in-class Cyber training and awareness programme, and performing security audits on critical systems. Cybersecurity Governance: Implement governance and frameworks to embed security across the business, across IT … Mission As our Cybersecurity Lead, you will: Build and implement a DevSecOps framework to ensure our digital products are secure and meet the highest Cyber assurance standards. Lead the Cybersecurity function, managing people, processes, and tools while ensuring the business is "Secure by Design." Identify and remediate CyberMore ❯
work with central government agencies and adhere to the Government Digital Service standard. We take security seriously, and are certified to ISO 27001 and CyberEssentialsPlus, demonstrating our commitment to robust information security practices. To support our continued growth, we are seeking an experienced Information Security … Manager. In this role, you will be responsible for ensuring our ongoing compliance with ISO27001 and CyberEssentialsPlus, including the management of quarterly external audits and the facilitation of Integrated Management System (IMS) meetings. You will also oversee our adherence to ISO 9001 and ISO … support. Compliance and Security Management: Develop, implement, and maintain comprehensive compliance programs, including integrated management systems for ISO 27001, ISO 9001, ISO 14001, and CyberEssentials Plus. Oversee security operations, managing internal security tools and processes to ensure optimal protection of company assets. Lead IT Support management, including More ❯
Security, Compliance, or IT Risk Management. Experience with regulatory frameworks in UK & EU : GDPR (General Data Protection Regulation) ISO 27001 (Information Security Management Systems) CyberEssentialsPlus (UK government-backed security framework) DORA (Digital Operational Resilience Act) - EU financial sector PCI-DSS (if handling payment data) Experience … laws (UK GDPR, EU GDPR, DPA 2018) . Familiarity with risk management frameworks like NIST CSF, CIS Controls, and ISO 27005 . Experience with cyber security tools (e.g., SIEM, Malware Protection, Firewalls and others) is a plus. Strong reporting and communication skills-ability to brief executives and regulators. Ability … to design, implement, and enforce security policies . Key Responsibilities: Ensure compliance with GDPR, CyberEssentialsPlus, PCI-DSS, and other applicable standards. Align ISMS activities with ISO 27001 framework. Develop and implement security policies, controls, and procedures. Conduct security risk assessments & compliance audits. Manage incident response More ❯
Central London, London, United Kingdom Hybrid / WFH Options
Halian Technology Limited
Lead investigations into security incidents and conduct proactive threat hunting. Manage endpoint security, patching, vulnerability scanning, and system hardening. Support audits and compliance with CyberEssentialsPlus , ISO 27001 , and other frameworks. Partner with DevOps, InfoSec, and platform teams to drive secure coding and infrastructure practices. Participate … on-call rota after completing probation. Key Requirements: Hands-on knowledge of SIEM platforms (preferably Sentinel), EDR, and vulnerability management. Familiarity with frameworks like CyberEssentialsPlus and ISO 27001. Experience in securing hybrid cloud environments (Microsoft Azure desirable). Experience in DevOps environments with secure automation More ❯
the planning, implementation and management of technical and procedural controls across endpoint security, data access, and cloud infrastructure (including AWS). Maintain Prevail's CyberEssentials and CyberEssentialsPlus accreditations, including preparation, audit liaison, and continuous improvement of control measures. Lead structured risk assessments … continuously improve the company's incident response framework, including conducting tabletop exercises and reviewing lessons learned. Ensure the business is prepared to respond to cyber security incidents, breaches or service disruptions through robust business impact assessment, business continuity and recovery planning. Internal Engagement & Security Culture Deliver internal briefings and … identify emerging vulnerabilities and strengthen preventative measures. Governance & Oversight Chair internal security governance forums to track risks, define priorities, and drive improvement across physical, cyber and personnel domains. Contribute to security input for new markets, overseas deployments, and sensitive project work. Support leadership in meeting regulatory, contractual, and reputational More ❯
supporting engagements across multiple sectors and technical environments. This hands-on, client-facing position focuses on control implementation, infrastructure security hardening, technical remediation, and cyber risk reduction. You will be expected to work independently while maintaining alignment with industry standards and client requirements. Responsibilities Deliver and support the implementation … technical and non-technical stakeholders. Desired skills Familiarity with UK regulatory frameworks (NIS/NIS2, Ofgem CAF, ECAF, GDPR/DPA18, ISO 27001, or CyberEssentialsPlus). Understanding secure architecture principles, including zero trust, defence-in-depth, and secure-by-design approaches. Exposure to DevSecOps practices More ❯
/Purview Work closely with the existing IT Infrastructure Manager to ensure security for office based & remote workers. As an ISO27001, BS10012, ISO22301 and CyberEssentialsPlus accredited business you must always carry out your role according to company IT policies. Assist with the handling of confidential More ❯
IT Service Desk Oversight Compliance and Governance Vendor Management Disaster Recovery and Business Continuity 1. Compliance and Governance: a. Oversee, and maintain compliance with CyberEssentialsPlus and ISO27001 requirements and other international standards as part of business as usual (BAU) to ensure periodic recertification. b. Conduct … monthly testing of Cyber and IT controls. c. Monitor and manage audit and risk remediation actions. d. Ensure all IT documentation, policies, and Standard Operating Procedures (SOP) are up to date and adhered to. 2. Vendor Management a. Ensure vendor compliance with SLAs and conduct regular vendor due diligence. More ❯
london, south east england, United Kingdom Hybrid / WFH Options
The Curve Group
IT Service Desk Oversight Compliance and Governance Vendor Management Disaster Recovery and Business Continuity 1. Compliance and Governance: a. Oversee, and maintain compliance with CyberEssentialsPlus and ISO27001 requirements and other international standards as part of business as usual (BAU) to ensure periodic recertification. b. Conduct … monthly testing of Cyber and IT controls. c. Monitor and manage audit and risk remediation actions. d. Ensure all IT documentation, policies, and Standard Operating Procedures (SOP) are up to date and adhered to. 2. Vendor Management a. Ensure vendor compliance with SLAs and conduct regular vendor due diligence. More ❯
with 3 days in the office and 2 days working from home. Key Responsibilities: 1. Compliance and Governance: a. Oversee, and maintain compliance with CyberEssentialsPlus and ISO27001 requirements and other international standards as part of business as usual (BAU) to ensure periodic recertification. b. Conduct … monthly testing of Cyber and IT controls. c. Monitor and manage audit and risk remediation actions. d. Ensure all IT documentation, policies, and Standard Operating Procedures (SOP) are up to date and adhered to. 2. Vendor Management a. Ensure vendor compliance with SLAs and conduct regular vendor due diligence. More ❯
london, south east england, United Kingdom Hybrid / WFH Options
FirstBank UK Limited
with 3 days in the office and 2 days working from home. Key Responsibilities: 1. Compliance and Governance: a. Oversee, and maintain compliance with CyberEssentialsPlus and ISO27001 requirements and other international standards as part of business as usual (BAU) to ensure periodic recertification. b. Conduct … monthly testing of Cyber and IT controls. c. Monitor and manage audit and risk remediation actions. d. Ensure all IT documentation, policies, and Standard Operating Procedures (SOP) are up to date and adhered to. 2. Vendor Management a. Ensure vendor compliance with SLAs and conduct regular vendor due diligence. More ❯
our policies and adhered to Understands and delivers best practice security standards as part of the IT Security standards delivered under ISO 27001, GDPR, CyberEssentialsPlus and NIST Work closely with the software vendor, building a strong working relationship to maximise our use of the product More ❯
and compliance policies across infrastructure, applications, and operational workflows. Create and manage a roadmap for achieving ISO 27001 certification; support additional standards such as CyberEssentialsPlus and NHS DSPT. Lead internal compliance audits and facilitate preparations for external assessments. Integrate security best practices throughout the software More ❯
and software infrastructure across Restrata's estate. Work with compliance stakeholders to ensure we are meeting and maintaining technical compliance standards, including ISO27001, ISO9001, CyberEssentialsPlus and DSP Toolkit. Report on capacity levels and the state of infrastructure; escalate to the CTO when necessary. Provide emergency More ❯
and integration, including handling authentication, pagination, and rate limits. Knowledge of machine learning and AI integration within Microsoft Fabric. Experience of working in a CyberEssentialsPlus and ISO27001 accredited organisation. Experience with Microsoft SharePoint and Teams More ❯
and who thrives under pressure and responsibility. Key Tasks & Responsibilities − Supporting the Governance & Compliance Lead in maintaining ISO 27001, ISO 22301, ISO 9001, and CyberEssentialsPlus certifications, while progressing towards other certifications. − Ensuring compliance with legal, regulatory, contractual, and ethical requirements. − Automating business processes and reporting More ❯
and who thrives under pressure and responsibility. Key Tasks & Responsibilities − Supporting the Governance & Compliance Lead in maintaining ISO 27001, ISO 22301, ISO 9001, and CyberEssentialsPlus certifications, while progressing towards other certifications. − Ensuring compliance with legal, regulatory, contractual, and ethical requirements. − Automating business processes and reporting More ❯
monitoring and reporting for on-premise and cloud infrastructure systems, for the early identification of issues Ensure RSSB infrastructure is secure and adheres to Cyber Security standards Act as the escalation point for technical issues Responsible for the administration and operation of the RSSB cloud and onsite physical infrastructure … MS InTune device management (mobile and Windows 10/11 OS) Demonstrable knowledge of common vulnerabilities and exploitation techniques would be beneficial Familiarity with CyberEssentials/Plus or ISO 27001 and ITIL best practice - Incident, Problem and Change management would be beneficial Communicate effectively and share … offer a competitive benefits package to ensure our staff can achieve their best throughout their journey with us. This includes 30 days annual leave (plus bank holidays); a holiday buy and sell scheme; private medical and dental cover; a season ticket loan and travel subsidy; access to a cycle More ❯
Key Responsibilities: Team Leadership and Management: Lead, mentor, and manage a diverse team of IT professionals including an Application Support Specialist, Technical Project Manager, Cyber Security and Compliance Analyst, and End-to-End QA Specialist. Allocate resources efficiently to ensure timely and successful project delivery. Conduct regular performance reviews … the Technical Project Manager to ensure projects are completed on time, within scope, and budget. Facilitate communication and collaboration between project teams and stakeholders. Cyber Security and Compliance: Ensure the implementation and adherence to cyber security policies and procedures. Collaborate with the Cyber Security and Compliance resources … to conduct regular security assessments and audits. Manage compliance with relevant regulations and standards, such as GDPR and CyberEssentials Plus. Quality Assurance: Oversee the end-to-end quality assurance process for all digital products and services. Work with the End-to-End QA Specialist to develop comprehensive More ❯
Key Responsibilities: Team Leadership and Management: Lead, mentor, and manage a diverse team of IT professionals including an Application Support Specialist, Technical Project Manager, Cyber Security and Compliance Analyst, and End-to-End QA Specialist. Allocate resources efficiently to ensure timely and successful project delivery. Conduct regular performance reviews … the Technical Project Manager to ensure projects are completed on time, within scope, and budget. Facilitate communication and collaboration between project teams and stakeholders. Cyber Security and Compliance: Ensure the implementation and adherence to cyber security policies and procedures. Collaborate with the Cyber Security and Compliance resources … to conduct regular security assessments and audits. Manage compliance with relevant regulations and standards, such as GDPR and CyberEssentials Plus. Quality Assurance: Oversee the end-to-end quality assurance process for all digital products and services. Work with the End-to-End QA Specialist to develop comprehensive More ❯
required. Address technical queries from internal and external stakeholders, providing solutions and escalating issues when necessary. Provide support to uphold ISO 27001 and CyberEssentials Plus certifications. Supervise the IT Support Technician to ensure: Timely completion of maintenance tasks. Progress in training and skill development. Adherence to IT processes and More ❯