or proprietary data. Incident Response & Investigation: Skilled in handling, documenting, and remediating DLP violations and collaborating with forensics teams. Knowledge of Regulatory Frameworks: Familiarity with compliance requirements such as GDPR, CCPA, ITAR, DFARS / CMMC, and data sovereignty laws. Encryption & Access Control: Understanding of how to apply encryption, rights management, and role-based access controls to prevent dataMore ❯
those characteristics. All such discrimination is unlawful and will have a zero tolerance policy applied to it. Redwood will comply with all local dataprotection laws, including GDPR when it comes to the handling and processing of personal data. Should you wish for us to remove your personal data from our recruitment database, please email us directly More ❯
East London, London, United Kingdom Hybrid / WFH Options
A&O Shearman
leading discussions with more senior stakeholders and acting as a point of escalations. Ensure compliance with legal, regulatory, and professional obligations, including client confidentiality, dataprotection (e.g., GDPR), and audit requirements in architecture and engineering work. Act as a key liaison with Risk, Legal, and Compliance teams to align platform security with client contracts and industry expectations. Team More ❯
security and performance Work with Terraform, Deployment Manager, and CloudFormation for IaC-based deployments Security and Compliance: Implement cloud security measures and ensure compliance with ISO 27001, PCI DSS, GDPR, and other industry standards Define cloud architecture standards and best practices for a secure cloud environment Performance Optimisation: Monitor and optimise cloud resources for performance, scalability, and cost-efficiency Implement More ❯
Event Monitoring, and encryption features Understanding of business continuity and disaster recovery frameworks (e.g., ISO 22301, NIST SP 800-34, FFIEC) Working knowledge of data governance, compliance (e.g., GDPR, HIPAA), and audit readiness Soft Skills: Excellent documentation, communication, and problem-solving skills Please note you must currently be eligible to work and remain indefinitely without any restrictions in the More ❯
pipelines and managing data workflows. • Proficiency in programming languages such as PySPark, Python, SQL, or Scala. • Solid understanding of data modelling and relational database concepts. • Knowledge of GDPR and UK dataprotection regulations. Preferred Skills: • Experience with Power BI for data visualization and reporting. • Familiarity with legal industry systems, such as case or practice management More ❯
North West London, London, United Kingdom Hybrid / WFH Options
Anson Mccade
Python, R, Java) Knowledge of data visualisation, DevOps principles, and ML / AI integration into data architectures Strong grasp of data governance, security, and regulatory compliance (GDPR, HIPAA, etc.) Exceptional communication and stakeholder engagement skills Bonus Points For: Experience with CI / CD, DevOps tooling, and budget / resource management Exposure to data mesh implementation and More ❯
Have Experience with real-time or streaming data (Kafka, Kinesis). Familiarity with financial transaction data or payment processing systems. Exposure to data privacy regulations (e.g., GDPR, PCI-DSS) and data security best practices This role offers a 2 stage interview process and is required to work on site 3 days a week in central London. More ❯
Gateway Knowledge of data warehouse design, ETL / ELT processes, and big data technologies (e.g., Snowflake, Spark). Familiarity with data governance and compliance frameworks (e.g., GDPR, HIPAA). Strong communication and stakeholder management skills. Analytical mindset with attention to detail. Ability to lead and mentor teams on best practices in data modellin Preferred Skills and More ❯
Gateway Knowledge of data warehouse design, ETL / ELT processes, and big data technologies (e.g., Snowflake, Spark). Familiarity with data governance and compliance frameworks (e.g., GDPR, HIPAA). Strong communication and stakeholder management skills. Analytical mindset with attention to detail. Ability to lead and mentor teams on best practices in data modelling. Preferred Skills and More ❯
firms standard non-functional requirements for all data related projects and technology selections. Collaborate with data stewards and compliance teams to ensure adherence to regulatory standards (e.g., GDPR). This would also include providing guidance / advice on information management best practices. Continual research on data technology, management and working practices to remain abreast of developments in More ❯
firms standard non-functional requirements for all data related projects and technology selections. Collaborate with data stewards and compliance teams to ensure adherence to regulatory standards (e.g., GDPR). This would also include providing guidance / advice on information management best practices. Continual research on data technology, management and working practices to remain abreast of developments in More ❯
with external partners, including banks, card issuers and processors, payment processors to gather intelligence on evolving fraud trends. • Regulatory and Compliance Adherence: o Ensure compliance with UK regulations, including GDPR, PCI DSS, and industry best practices related to card fraud prevention. o Keep up to date with relevant legislation, ensuring that fraud detection activities are aligned with legal requirements. • Continuous More ❯
high-performing teams. Strong knowledge of security and privacy frameworks, including NIST, ISO / IEC 27001, Cyber Essentials, and applicable dataprotection legislation UK Data Privacy, GDPR, etc. Proven experience in leading enterprise-wide risk management, incident response, and resilience programmes across complex environments. Experience contributing to the governance of emerging technologies, including AI, and integrating security More ❯
/ Skills: Comprehensive Understanding of the Financial Services Industry : Wealth Management, Private Banking & Commercial Banking. While not essential, this knowledge is highly desirable. Familiarity with Financial Services Regulations : Including GDPR/DataProtection, Vulnerable Clients, and related compliance requirements. Experience with Fintech Systems : understanding or experience with Core Banking systems, client-facing banking platforms, investment platforms, and CRM More ❯
information security strategy, aligning with organisational goals and risk appetite. Incident Management: Oversee security incidents and investigations, ensuring effective response and remediation. Compliance and Governance: Ensure compliance with UK GDPR, DataProtection Act 2018, PCIDSS v4.0, and other relevant regulations. Collaborate with Data Privacy, Risk, and Audit teams. Security Operations: Implement and enhance security controls across various More ❯
fraud detection. Governance, Compliance & Best Practices Help define internal standards for security development practices, secrets management, and infrastructure hardening. Maintain compliance with relevant frameworks (e.g., SOC 2, ISO 27001, GDPR), and support any industry-specific due diligence. Cross-Functional Collaboration Partner with engineering, product, and infrastructure teams to embed security best practices into all stages of development. Provide guidance on More ❯
Experience working across IT and Operational Technology (OT) environments, with knowledge of applicable UK industry standards and regulatory environments. Understanding of dataprotection and security legislation including GDPR, DPA, PCI-DSS, and relevant UK Government Good Practice Guides. Strong grasp of security methodologies and industry standards such as ISO27001, NIST, and SANS. Preferred Qualifications TOGAF certification Microsoft Azure More ❯
Expertise in cloud architectures (Azure, AWS, or GCP), containerization (Docker / Kubernetes), and hybrid cloud models. Security & Compliance Awareness: Understanding of financial services security frameworks, data privacy regulations (GDPR, SOC 2, etc.), and risk management principles. Business & Technology Alignment: Ability to translate business needs into technology solutions, balancing innovation with operational stability. Stakeholder Management: Strong collaboration skills to engage More ❯
concepts, technologies and best practices for delivering security across IaaS, PaaS, SaaS and Serverless architectures Implementing Information Security and Privacy Standards and Frameworks (e.g. ISO 27k, NIST800-53, CIS, GDPR) Leading security working groups and external security testing (ITHC, Penetration Testing, etc) of cloud solutions at high HMG classification levels (OFFICIAL required, SECRET desirable) or equivalent in other industries Designing More ❯
Governance - Define and continuously refine the technical security roadmap that aligns with business objectives, industry best practice (e.g., NIST CSF, OWASP SAMM), and compliance frameworks (SOC 2, ISO 27001, GDPR). Secure SDLC & DevSecOps - Build and maintain guardrails for static / dynamic analysis, container and IaC scanning, SBOM management, and supply-chain security; automate enforcement through CI / CD pipelines. More ❯
security and performance Work with Terraform, Deployment Manager, and CloudFormation for IaC-based deployments Security and Compliance: Implement cloud security measures and ensure compliance with ISO 27001, PCI DSS, GDPR, and other industry standards Define cloud architecture standards and best practices for a secure cloud environment Performance Optimisation: Monitor and optimise cloud resources for performance, scalability, and cost-efficiency Implement More ❯
layers, particularly in risk management and security strategy development Lead efforts to assess and mature security practices across the enterprise Stay abreast of industry trends, frameworks, and regulations (e.g., GDPR, ISO 27001 / 2, SANS Top 20 Critical Security Controls, NIST CSF, SP 800-53, PFMI, CPMI ISOCO and FFIEC handbook, SABSA) to ensure the organization is proactive in addressing More ❯
certifications. Collaborate with software development teams to integrate IAG solutions with existing IT infrastructure and applications. Compliance & Risk Management: Ensure that IAG solutions comply with relevant regulations, such as GDPR, HIPAA, and SOX. Conduct risk assessments related to identity and access management and recommend mitigation strategies. Implement and maintain audit trails and reporting mechanisms to track access and identity-related More ❯
organised analyses to appropriate audiences, demonstrating in-depth subject knowledge and confidence in conclusions. Ensure data science projects and models comply with all governance and regulatory requirements (e.g. GDPR, EU AI Act) and are supported by clear, comprehensive documentation. About you: Significant data science experience preferably within financial services, ideally in general insurance. Experience applying machine More ❯