policies, standards, and procedures Work with IT and development teams to implement secure system designs and configurations Support compliance initiatives (e.g., ISO 27001, NIST, GDPR, PCI-DSS) by assisting with audits and documentation Conduct security awareness training and phishing simulations for employees Keep up-to-date with the latest security More ❯
tests, vulnerability scans, and assess organization cybersecurity maturity Complying with frameworks and regulations such as COBIT, NIST (800-53, cybersecurity), ISO, ITIL, PCI, GLBA, GDPR, HIPAA, and other data privacy and security standards and regulations. Provides internal customer support via assigned tickets for security-related issues, while ensuring assignments More ❯
ensure timely delivery within budget. Perform or coordinate security assessments, penetration tests, and vulnerability scans. Ensure compliance with frameworks like COBIT, NIST, ISO, PCI, GDPR, HIPAA, etc. Provide internal support for security issues within SLAs. Evaluate and implement CIS controls as needed. Contribute to cybersecurity strategic planning and budgeting. Follow More ❯
cyber security concepts including cryptography, authentication and authorization, access control, secure architectures, threat modeling, vulnerabilities and software security. Strong knowledge of regulatory requirements (e.g. GDPR, ISO27001, PCI-DSS) and experience in regulatory reporting. 3-5 years of experience in GRC, risk management, or compliance. A bachelor's degree in computer More ❯
City of London, London, United Kingdom Hybrid / WFH Options
Robert Half
. Familiarity with big data technologies (e.g., Hadoop, Spark) and real-time streaming Expertise in cloud security , data governance , and compliance (e.g., GDPR, HIPAA). Strong SQL skills and proficiency in at least one programming language (e.g., Python, Java, Scala). Excellent problem-solving, communication, and project management More ❯
dynamic analysis techniques. Ability to develop and refine threat-hunting methodologies and define SIEM use cases. Familiarity with global cybersecurity regulations and compliance frameworks (GDPR, NIST, ISO 27001, etc.). Ability to work under pressure in a fast-paced, dynamic security environment. Experience in developing Standard Operating Procedures (SOPs), security More ❯
the effectiveness of security controls such as RBAC (Role-Based Access Control), MFA (Multi-Factor Authentication), and API security mechanisms . Ensure compliance with GDPR, ISO 27001, and NCSC Cyber Essentials security standards. 3. Vulnerability Management & Defect Tracking Identify, document, and track security defects, working closely with development teams to More ❯
regulations that apply to financial institutions or its outsourcing partners. In-depth knowledge of relevant regulatory requirements and industry standards (ISO 27001, SOC 2, GDPR, DORA, etc.). Experience with cloud security (AWS, Google etc.), application security, and DevSecOps practices is a significant plus. Proven experience in developing and implementing More ❯
CAP, OWASP, PCI DSS Security Cleared with potential to gain enhanced clearances Experience implementing privacy solutions based on the requirements of the EUGDPR and UK DataProtection Act 2018 Good awareness of threats trends and issues across the cyber security industry Proven self-management skills, including More ❯
Hands-on expertise with troubleshooting hardware, software, and SaaS issues. Security Knowledge: Familiarity with security frameworks and standards such as SOC 2, ISO 27001, GDPR, or NIST. Experience with incident response and risk management. Knowledge of Zero Trust architectures and security-first IT practices. Soft Skills: Excellent problem-solving and More ❯
with senior management and stakeholders on security issues and risks Expertise in ensuring compliance with relevant cybersecurity regulations and frameworks, such as FCA, NIST, GDPR Experience in one or a combination of the following: systems, applications, or architecture planning Experience driving security awareness programs Strong verbal, written, and interpersonal communication More ❯
with senior management and stakeholders on security issues and risks Expertise in ensuring compliance with relevant cybersecurity regulations and frameworks, such as FCA, NIST, GDPR Experience in one or a combination of the following: systems, applications, or architecture planning Experience driving security awareness programs Strong verbal, written, and interpersonal communication More ❯
with senior management and stakeholders on security issues and risks Expertise in ensuring compliance with relevant cybersecurity regulations and frameworks, such as FCA, NIST, GDPR Experience in one or a combination of the following: systems, applications, or architecture planning Experience driving security awareness programs Strong verbal, written, and interpersonal communication More ❯
adherence to the architecture and best practices. Security and Compliance: Ensure that all solutions comply with internal security standards and relevant regulatory requirements (e.g., GDPR, HIPAA), including data privacy, security, and disaster recovery considerations. Documentation: Develop and maintain detailed documentation of solution designs, architecture principles, and integration approaches for More ❯
and maintain security controls and configurations across various systems and platforms. Oversight of compliance for regulatory compliance requirements, such as SOC2, HIPAA, ISO 27001, GDPR etc., and ensure our systems adhere to these standards. Stay updated with the latest industry trends, emerging threats, and security technologies to proactively identify and More ❯
explain technical risks and solutions to technical and non-technical stakeholders. Desired skills Familiarity with UK regulatory frameworks (NIS / NIS2, Ofgem CAF, ECAF, GDPR/ DPA18, ISO 27001, or Cyber Essentials Plus). Understanding secure architecture principles, including zero trust, defence-in-depth, and secure-by-design approaches. Exposure More ❯
programmes, projects of both a GRC and technical nature alongside frameworks such as ISO27001 / 2:2005 / 13, DORA, NIS 2, PCI-DSS, GDPR-DPO, NIST CSF SP800-53, PSD-2, FCA / PRA, and MS Azure. Ownership of Strategic, Operational, and Tactical IT Security and Risk Management, technical More ❯
This You? CISSP, CISA, or CISM certification is strongly recommended, but not required. ISO 27001 / 27701 / 42001, SOC-2, PCI DSS, and GDPR knowledge, experience, and qualifications are highly desirable. At least 5 years of relevant industry experience in information security, with a focus on security architecture and More ❯
and Information Systems Directive (NIS), National Cyber Security Centre (NCSC) Cyber Assessment Framework (CAF), ISA / IEC 62443, ISO / IEC 27001 / 27002, GDPR, Cloud Security Alliance (CSA) Star framework, SOC2 Type 2 audits, Information Technology Infrastructure Library (ITIL), Control Objectives for Information and Related Technologies (CoBIT), etc. . More ❯
london, south east england, United Kingdom Hybrid / WFH Options
MarTrust
card issuers and processors, payment processors to gather intelligence on evolving fraud trends. • Regulatory and Compliance Adherence: o Ensure compliance with UK regulations, including GDPR, PCI DSS, and industry best practices related to card fraud prevention. o Keep up to date with relevant legislation, ensuring that fraud detection activities are More ❯
Security Professional Qualifications / Certifications Desirable: General understanding of IT Security principles, standards and regulations (e.g. ISO 27001, NIST, CIS, PCI DSS and GDPR) CISM / CISSP Patch Management Applications, EDR / XDR systems. Antivirus, NAC - Forescout Vulnerability Scanning Tool e. Tenable One, Qualisys Knowledge of vulnerability scoring systems More ❯
Security Professional Qualifications / Certifications Desirable: General understanding of IT Security principles, standards and regulations (e.g. ISO 27001, NIST, CIS, PCI DSS and GDPR) CISM / CISSP Patch Management Applications, EDR / XDR systems. Antivirus, NAC - Forescout Vulnerability Scanning Tool e. Tenable One, Qualisys Knowledge of vulnerability scoring systems More ❯
london, south east england, United Kingdom Hybrid / WFH Options
FirstBank UK Limited
Security Professional Qualifications / Certifications Desirable: General understanding of IT Security principles, standards and regulations (e.g. ISO 27001, NIST, CIS, PCI DSS and GDPR) CISM / CISSP Patch Management Applications, EDR / XDR systems. Antivirus, NAC - Forescout Vulnerability Scanning Tool e. Tenable One, Qualisys Knowledge of vulnerability scoring systems More ❯
responses. Risk Management: Participate in risk assessments and vulnerability analyses, recommending mitigation strategies. Compliance: Ensure adherence to security policies, standards, and regulations such as GDPR, ISO 27001, etc. Documentation: Maintain accurate records of security processes, incidents, and compliance activities. Collaboration: Work with IT and other departments to ensure integrated security More ❯
S3, Lambda, RDS, Aurora, EKS, and more. Develop secure cloud infrastructure aligned with regulatory and compliance requirements (e.g., PCI DSS, ISO 27001, SOC 2, GDPR). Enforce best practices for identity and access management, dataprotection, and incident response. Collaborate with business units, software developers, DevOps engineers, and More ❯