1 to 25 of 289 Remote/Hybrid ISO/IEC 27001 Jobs in London

Information Security Analyst ( ISO 27001 and ISO 27018 )

Location
Greater London, England, United Kingdom
recruit an ISO 27001 and ISO 27018 Information Security Analyst to strengthen our Information Security and Audit / Compliance functions. Alfa Systems sits at the heart of some of the world's largest asset finance companies, across 26 countries which means information security … compliance with ISO 27001 and ISO 27018 on point. You'll get involved in SSAE 18 / ISAE 3402 SOC 1 Type 2 and SSAE 18 SOC 2 Type 2 assurance audits, spot opportunities to improve our security controls and processes, and contribute ...

Information Security Analyst ( ISO 27001 and ISO 27018 )

Location
Greater London, England, United Kingdom
recruit an ISO 27001 and ISO 27018 Information Security Analyst to strengthen our Information Security and Audit / Compliance functions. Alfa Systems sits at the heart of some of the world’s largest asset finance companies, across 26 countries which means information security … compliance with ISO 27001 and ISO 27018 on point. You’ll get involved in SSAE 18 / ISAE 3402 SOC 1 Type 2 and SSAE 18 SOC 2 Type 2 assurance audits, spot opportunities to improve our security controls and processes, and contribute ...

Information Security Analyst ( ISO 27001 and ISO 27018 )

Hiring Organisation
Alfa Financial Software
Location
London, UK
Employment Type
Full-time
recruit an ISO 27001 and ISO 27018 Information Security Analyst to strengthen our Information Security and Audit / Compliance functions. Alfa Systems sits at the heart of some of the world's largest asset finance companies, across 26 countries which means information security … compliance with ISO 27001 and ISO 27018 on point. You'll get involved in SSAE 18 / ISAE 3402 SOC 1 Type 2 and SSAE 18 SOC 2 Type 2 assurance audits, spot opportunities to improve our security controls and processes, and contribute ...

Senior GRC Content Engineer

Location
Greater London, England, United Kingdom
role is for you. Technical Skills & Experience To be considered for this opportunity, you must have at least 5+ years of hands‐on GRC / information security experience in roles such as: GRC Analyst / GRC Manager, Information Security Officer / Manager, ISMS Owner, Compliance Manager … / Security Internal Auditor, or Security & Compliance Consultant Mandatory GRC skills — you must be able to demonstrate: Practical, implementation‐level experience with ISO / IEC 27001 (2022 control set): scoping, risk assessment and treatment, Statement of Applicability, running or facing internal ...

IT GRC SOX Specialist - Regulatory Frameworks

Hiring Organisation
Aveva Group
Location
London, UK
Employment Type
Full-time
testing and feedback clearly documented (ITGCs + relevant application controls)IT teams trained and confident in operating controls, producing consistent evidence, and supporting walkthroughs / testing. Helping to drive a clear, workable SOX operating model for IT (RACI, control calendar, evidence standards, testing approach).Riskonnect configured / ready … analysis of IT controls against SOX expectations, providing guidance as necessary. Test ITGCs and supporting procedures across Access Management, Change Management, IT Operations, SDLC / Release governance. Create / refresh control documentation (narratives, flowcharts, RCMs, control procedures, evidence checklists).Upskilling and knowledge transferFacilitate structured IT SOX handover ...

Senior Security Consultant

Location
City Of London, England, United Kingdom
testing plans. Implement and maintain information security controls aligned with applicable laws, regulations, standards and best practices, including ISO 27001 / 27002, GDPR, Cyber Assessment Framework (CAF) and NIST CSF. Develop and maintain information security policies, standards and procedures, ensuring organisational compliance. Define, coordinate … banking, energy, telecommunications and media, industrial protection, and critical infrastructure protection. Knowledge of SOC operations, digital forensics and fraud management. Experience with GRC / IRM platforms and the automation of security and compliance processes. Additional security certifications such as CGEIT, C CISO, QSA, CDPP, or Security Director certification issued ...

Internal Control IT Senior Manager

Hiring Organisation
Aveva Group
Location
London, UK
Employment Type
Full-time
starterHigh professional ethics and commitment to improving risk cultureExperience of managing deficiencies and remediation activitiesComfortable giving an opinion and forming conclusionsDesired skillsExperience of IFRS / US GAAP accounting standardsQualification by relevant governing body with 5 years post qualification experience (e.g., ACA, ACCA, CIMA, CPA or equivalent)Previous experience with … policy managementPrevious experience of working with OracleExperience of driving automation / AI in a controls functionStrong data enquiry / analytics / scripting skillsExperience of managing a co-source agreementUnderstanding of other regulatory frameworks e.g. NIST, ISO 27001, EU CRAUK Benefits include: Flexible benefits ...

Cyber Security Consultant

Hiring Organisation
Circle Group
Location
London, United Kingdom
Employment Type
Permanent, Work From Home
Salary
£70,000
including vulnerability management, identity and access management, cloud security, security operations and supplier assurance. Support Secure SDLC and broader security transformation initiatives. Provide vCISO / outsourced security management support where required. Design and facilitate client workshops, discovery sessions and stakeholder interviews. Translate technical security issues into clear business risks … consultancy experience. A good understanding of information security governance, risk and technical controls. Practical experience with ISO 27001 and / or other recognised security frameworks. Experience conducting security assessments, gap analyses or risk assessments. The ability to understand a client's business and provide pragmatic ...

ISMS & BCMS Internal Audit Lead

Hiring Organisation
Synapri
Location
London, United Kingdom
Employment Type
Contract
Contract Rate
£500 - £600/day
accomplished audit professional who can take ownership of developing and delivering a risk-based, multi-year internal audit programme, aligned to ISO / IEC 27001:2022 and ISO 22301:2019. The Role You will be responsible for developing the audit strategy … annual ISMS & BCMS audit model, including methodology, templates, governance, findings tracking and knowledge transfer to support future audit cycles. Key Requirements ISO / IEC 27001:2022 Lead Auditor certification ISO 22301:2019 Lead Auditor certification Demonstrable experience conducting internal audits against ...

Head of Computerized Systems Quality Assurance & Validation

Location
Greater London, England, United Kingdom
Computerized Systems Quality Assurance & Validation on a permanent full‐time capacity. Purpose of the Role: This role supports the compliant and timely design / development, testing, verification, validation, configuration, and life cycle management of computerized systems (including software) developed, purchased and / or utilised by IXICO. This role … compliance with current GCP, FDA 21 CFR Part 11, EU Annex 11, GAMP, FDA QSR Part 820 (QMSR), EU MDR (Regulation 2017 / 745), IEC 62304, GDPR, ISO 13485, ISO 27001 and ISO 42001 / EN 18286 regulatory ...

Assistant Manager Information Security

Location
Greater London, England, United Kingdom
business impact analyses, business continuity and IT disaster recovery plans and their testing (including the AWS cloud environment), helping ensure recovery objectives (RTO / RPO) are documented, achievable and evidenced, with lessons learned fed into improvements. Data Protection Governance Support the Data Protection Officer in operating the bank … security awareness and data protection training to foster a strong risk awareness culture across the bank. Requirements EDUCATION & TRAINING Bachelor's degree in Information / Cyber Security, Computer Science or a related discipline; equivalent professional experience may be considered. Relevant professional certifications are strongly preferred, for example CISM, CISSP ...

Remote ISMS & BCMS Audit Lead (ISO 27001/22301)

Location
Greater London, England, United Kingdom
remote contract with occasional travel to London. You will develop and execute a risk-based internal audit programme aligned to ISO / IEC 27001:2022 and ISO 22301:2019. You will plan and deliver audits, assess control effectiveness, interview stakeholders ...

Design Quality Engineer

Location
Greater London, England, United Kingdom
Notified Body audits, with a focus on Design and Development aspects. Champion compliance in software development by translating complex and opaque IEC / ISO standards into clear, actionable processes that engineering teams can follow. What we will look for SaMD Experience : Prior experience working … doing the defining work of your career. We take care of you. We offer comprehensive private medical and dental cover through Bupa 24 / 7 mental health coaching and wellbeing support through Sonder a £100 / month Healthy Heidi's wellness stipend a £500 home office budget ...

Engineering Manager, Security

Location
Greater London, England, United Kingdom
security & architecture: Define and enforce the security architecture across our Azure-native, Kubernetes-based platform. Govern security controls across the full stack: Kafka, .NET / C#, Vue.js, Kong API Gateway, Auth0, and Salesforce. Lead threat modelling, penetration testing, and vulnerability management programmes. Own identity and access management strategy, including … crypto-agile migration to NIST-standardised PQC algorithms. Compliance & regulatory: Ensure security controls meet FCA SYSC obligations, SYSC 15A operational risk requirements and ISO27001 standard. Work closely with the Head of Compliance on regulatory horizon scanning, security-related policy obligations, and audit responses. Partner with the DPO on data governance ...

Senior Cloud Security Engineer (GCP) - Engine by Starling

Location
Greater London, England, United Kingdom
distance of one of our offices so that we're able to interact and collaborate in person. About Engineering at Engine by Starling — https: / / enginebystarling.com / careers / engineering / As a Security Engineer at Engine, you'll be working on helping … Manager (EKM) and Secret Manager — including cryptographic key ceremonies Experience with Workload Identity and Workload Identity Federation for keyless authentication of workloads and CI / CD Experience configuring and utilising cloud-native security logging, monitoring and detection services Strong programming skills — in security we write our own scripts ...

Information Security Manager

Location
Greater London, England, United Kingdom
weekly, Thursday's are our team anchor day. Own and improve the ISMS and Risk Management Framework, including governance meetings, annual audits and policy / process documentation Lead reviews of security policies and procedures, adapting them to business needs and generating new policies where required Deliver and promote relevant … Build scalable, proactive security processes, making use of tools and AI where appropriate Experience 5+ years' experience in Information Security, Governance, Risk Management and / or Compliance roles in a technology / financial services setting Demonstrable experience managing an ISMS in an ISO 27001 ...

Cyber Data Engineer

Hiring Organisation
Robert Walters
Location
London, United Kingdom
Employment Type
Contract, Work From Home
Contract Rate
£600 - £700 per day + Outside IR35
structured data, data lineage, APIs, security telemetry and integrations sufficiently to challenge data completeness and fitness for purpose. Experience defining acceptance criteria, supporting testing / UAT and documenting requirements, issues and decisions Cyber Security Risk, Security Assurance, Controls Testing, GRC, Vulnerability Management Assess control design, Endpoint security, Cloud, Identity … Secure Development, Third-Party risk, Incident Management Desirable: CISSP, CISM, CRISC, CISA, ISO 27001 Lead Auditor / Implementer or equivalent experience. Knowledge of NIST CSF, ISO / IEC 27001, COBIT, CIS Controls or enterprise risk frameworks. Experience with ...

Cyber Security Risk & Assurance SME

Hiring Organisation
Robert Walters
Location
London, South East England, United Kingdom
Employment Type
Full-Time
Salary
£600.00 - £700.00 per day
structured data, data lineage, APIs, security telemetry and integrations sufficiently to challenge data completeness and fitness for purpose. Experience defining acceptance criteria, supporting testing / UAT and documenting requirements, issues and decisions Cyber Security Risk, Security Assurance, Controls Testing, GRC, Vulnerability Management Assess control design, Endpoint security, Cloud, Identity … Secure Development, Third-Party risk, Incident Management Desirable: CISSP, CISM, CRISC, CISA, ISO 27001 Lead Auditor / Implementer or equivalent experience. Knowledge of NIST CSF, ISO / IEC 27001, COBIT, CIS Controls or enterprise risk frameworks. Experience with ...

Director of Security & Compliance

Hiring Organisation
Oscar Associates (UK) Limited
Location
London, United Kingdom
Employment Type
Permanent
maturity. This is a newly created senior leadership position, reporting directly to the CTO. With Cyber Essentials Plus already achieved and a 24 / 7 outsourced SOC in place, the organisation is now focused on achieving ISO 27001 certification, strengthening its governance and compliance framework … organisation-wide security awareness programme Define identity, access and authentication standards, including RBAC, MFA and SSO Own the IT governance framework and regulatory / standards compliance posture Lead the programme to achieve ISO 27001 certification, including defining and managing scope Own the central digital ...

Service Reliability Engineer - London

Hiring Organisation
Fitch Group
Location
Greater London, United Kingdom
Employment Type
Full Time
where you can grow, innovate, and make a difference. Want to learn more about a career in technology and data at Fitch? Visit: https: / / careers.fitch.group / content / Technology-and-Data / About the Team Fitch Group SRE provides Service Reliability Engineering expertise … Operations to design and advance service builds, DevOps tooling, and drive operational excellence. Partner with Core Engineering to architect and govern GitHub Actions CI / CD with quality gates, canary / blue‐green strategies, and AI‐assisted redeploy checks Own observability in Datadog—define SLIs / SLOs ...

Cyber Security Controls Tester (Assurance)

Location
City Of London, England, United Kingdom
Evaluate the effectiveness of technical, procedural, and physical security controls against documented security requirements and standards. Assess security controls against recognised frameworks including ISO 27001 , NIST CSF , NIST 800-53 , and CIS Controls . Review security documentation, including High-Level Designs (HLDs), Low-Level Designs (LLDs … Required Skills & Experience Proven experience testing and assessing the effectiveness of security controls within complex enterprise environments. Strong knowledge of security frameworks including: ISO 27001 NIST Cyber Security Framework (CSF) NIST 800-53 CIS Controls Experience reviewing and testing: Network security controls Firewall configurations and rule ...

ISO 27001/27018 InfoSec Analyst: ISMS & Audits (Hybrid)

Location
Greater London, England, United Kingdom
Alfa is seeking an Information Security Analyst to strengthen our ISMS and ensure ISO 27001 / 27018 compliance across the business. You’ll participate in SSAE 18 / ISAE 3402 audits, document controls, and support internal and external audits while coordinating with engineers, auditors ...

Hybrid ISO 27001/27018 InfoSec Analyst Audit and Compliance

Location
Greater London, England, United Kingdom
Alfa Financial Software Limited is seeking an Information Security Analyst to strengthen our ISMS and lead ISO 27001 / 27018 audits. You will work with Jira and Confluence, support SSAE 18 / SOC audits, and help translate complex security requirements for engineers, auditors ...

Sr. Network Engineer - Data Center and Cloud (Hybrid, London)

Location
Greater London, England, United Kingdom
multi‐cloud, hybrid data center networks at scale while driving network performance &resiliency Deploy and manage cloud constructs such as subnet allocations, routing‐tables / associations, VPCs, VPC‐peering / PrivateLink, Hub‐spoke topologies, gateways, direct connects Develop and maintain IaC (ansible, Terraform) and automation tooling throughout … / CD pipeline (Python, Go) to provision networks at scale, while improving the efficiency and velocity of network deployments Troubleshoot complex production issues and contribute to incident root‐cause analysis Participate in on‐call rotations Implement network solutions meeting regional compliance and data sovereignty requirements (ISO 27001 ...

Information Security Governance, Risk, and Compliance (GRC) Specialist

Hiring Organisation
Janus Henderson
Location
London, UK
Employment Type
Full-time
security. Certification such as Certified Information Systems Security Professional (CISSP) strongly preferred. Deep understanding of cybersecurity principles, frameworks (such as NIST, ISO / IEC 27001), and compliance standards. Experience with financial service regulations and regulations such as FCA, SEC, MAS, DORA. Proficient knowledge … network security principles and controls such as Firewalls, IPS / IPD, TCP / IP, DHCP, and DNS Extensive experience in securing Operating Systems such as Windows, UNIX / Linux and Mac systems. This includes security access rights, implementing configuration best practicesKnowledge of cloud service models (IaaS, PaaS ...