Owners and external audit partners and suppliers. Duties And Accountabilities Controls Testing & Monitoring Conduct regular testing of IT controls to assess design and operational effectiveness Perform walkthroughs with control / process owners and document findings Apply both test of Design and Operating Effectiveness methodologies Use sampling techniques (random and judgemental) to evaluate control performance Monitoring compliance with industry cyber … Knowledge And Experience The successful candidate will have a demonstrable experience in the following: IT audit, compliance or governance Risk management and risk assessment methodologies Control frameworks (e.g., ISO27001, COBIT). Standards and frameworks, e.g. ITIL, ITSM, NIST Project management and stakeholder management With the following skills: Broad technical awareness: Microsoft Azure, Service Desk, SQL More ❯
our dynamic team in person. Responsibilities Design, implement, and lead Remepy's security practice and enterprise cybersecurity program Own security compliance with HIPAA, 21 CFR Part 11, FDA pre / postmarket cybersecurity guidance, and related frameworks Collaborate with Product, Engineering, and Compliance to embed security-by-design across our software lifecycle Lead enterprise risk assessments, incident response, disaster recovery … and business continuity planning Oversee security architecture across cloud infrastructure, mobile apps, and data pipelines Represent security matters to the executive team, Board of Directors, and external auditors / regulators Drive internal security awareness and training across the organization Support FDA submissions and security documentation for regulated products Qualifications Experience 7+ years of experience in information security, including 3+ … ability to scale and lead a high-performing cybersecurity team Executive presence and comfort engaging with regulatory bodies and strategic partners Nice to Have Certifications: CISSP, CISM, HCISPP, CIPP / US, or similar Experience in fast-paced startup environments or venture-backed digital health companies Familiarity with software as a medical device (SaMD) or digital therapeutics Leadership Abilities Ability More ❯
analysts , collaborating with senior stakeholders to drive a data-driven culture . Key Responsibilities: Design and implement a modern cloud data platform (Azure) to support scalable analytics. Build ETL / ELT pipelines to process structured and unstructured data, enabling real-time insights. Develop and maintain Power BI dashboards, forecasting models, and business intelligence tools . Establish data governance frameworks … ensuring compliance with GDPR, ISO27001 , and security best practices. Partner with Finance, Marketing, IT, and Operations to integrate data solutions into business strategy. Drive AI and machine learning initiatives , building predictive models to improve operational efficiency. Mentor and lead a high-performing team, fostering a culture of continuous improvement and innovation. Key Skills & Experience: Expertise … in cloud platforms (Azure) and data engineering best practices . Advanced proficiency in Power BI , including DAX, Power Query, and data modeling. Strong programming skills in Python, SQL, and / or Scala for data processing and automation. Experience with ETL / ELT, data warehousing, and event-driven architectures . Knowledge of AI / ML applications in data More ❯
collaborate with stakeholders across the firm, including General Counsel, Information Security, and Emerging Tech Risk teams, helping to shape best practices and ensure compliance with regulations such as UK / EU GDPR, DORA, HIPAA, and EU AI Act. The role offers a dynamic mix of hands-on risk management, internal auditing, and strategic input into global processes. It’s … a keen interest in evolving tech risks. Key highlights: Support global data risk initiatives and cyber incident response Conduct DPIAs and manage Records of Processing Activities Collaborate on ISO27001 audits and phishing exercises Engage with AI and emerging tech compliance Liaise with Risk Operations and General Counsel on … data sourcing and best practice Ideal Profile: 2–5 years’ experience in data protection, risk, or compliance Strong working knowledge of UK / EU GDPR, DORA, HIPAA, and ISO27001 Experience in professional services (law firm experience is a plus) Confident stakeholder engagement and communication skills *Visa sponsorship is not available for this position More ❯
collaborate with stakeholders across the firm, including General Counsel, Information Security, and Emerging Tech Risk teams, helping to shape best practices and ensure compliance with regulations such as UK / EU GDPR, DORA, HIPAA, and EU AI Act. The role offers a dynamic mix of hands-on risk management, internal auditing, and strategic input into global processes. It’s … a keen interest in evolving tech risks. Key highlights: Support global data risk initiatives and cyber incident response Conduct DPIAs and manage Records of Processing Activities Collaborate on ISO27001 audits and phishing exercises Engage with AI and emerging tech compliance Liaise with Risk Operations and General Counsel on … data sourcing and best practice Ideal Profile: 2–5 years’ experience in data protection, risk, or compliance Strong working knowledge of UK / EU GDPR, DORA, HIPAA, and ISO27001 Experience in professional services (law firm experience is a plus) Confident stakeholder engagement and communication skills *Visa sponsorship is not available for this position More ❯
collaborate with stakeholders across the firm, including General Counsel, Information Security, and Emerging Tech Risk teams, helping to shape best practices and ensure compliance with regulations such as UK / EU GDPR, DORA, HIPAA, and EU AI Act. The role offers a dynamic mix of hands-on risk management, internal auditing, and strategic input into global processes. It’s … a keen interest in evolving tech risks. Key highlights: Support global data risk initiatives and cyber incident response Conduct DPIAs and manage Records of Processing Activities Collaborate on ISO27001 audits and phishing exercises Engage with AI and emerging tech compliance Liaise with Risk Operations and General Counsel on … data sourcing and best practice Ideal Profile: 2–5 years’ experience in data protection, risk, or compliance Strong working knowledge of UK / EU GDPR, DORA, HIPAA, and ISO27001 Experience in professional services (law firm experience is a plus) Confident stakeholder engagement and communication skills *Visa sponsorship is not available for this position More ❯
london (city of london), south east england, united kingdom
Taylor Root
collaborate with stakeholders across the firm, including General Counsel, Information Security, and Emerging Tech Risk teams, helping to shape best practices and ensure compliance with regulations such as UK / EU GDPR, DORA, HIPAA, and EU AI Act. The role offers a dynamic mix of hands-on risk management, internal auditing, and strategic input into global processes. It’s … a keen interest in evolving tech risks. Key highlights: Support global data risk initiatives and cyber incident response Conduct DPIAs and manage Records of Processing Activities Collaborate on ISO27001 audits and phishing exercises Engage with AI and emerging tech compliance Liaise with Risk Operations and General Counsel on … data sourcing and best practice Ideal Profile: 2–5 years’ experience in data protection, risk, or compliance Strong working knowledge of UK / EU GDPR, DORA, HIPAA, and ISO27001 Experience in professional services (law firm experience is a plus) Confident stakeholder engagement and communication skills *Visa sponsorship is not available for this position More ❯
architecture standards, aligned with NIST, OWASP, ISO27001, and enterprise policies Lead DevSecOps integration, embedding automated security testing (SAST, DAST, SCA, container security) into CI / CD pipelines Oversee large-scale secure development programs, ensuring SLA / KPI compliance and high-quality service delivery Support pre-sales & business development, articulating security value propositions, contributing … 10+ years in secure software development and testing, including 5+ years in leadership Proven success managing complex, high-impact security projects Strong technical expertise in secure coding, cloud (AWS / Azure), DevSecOps, and security tooling Excellent communication, client engagement, and crisis management skills Relevant certifications (CISSP, CISM, CSSLP, CEH) Right to work in the UK & eligible for SC Clearance More ❯
define the data vision and enable meaningful business transformation. Key Responsibilities Lead the design and implementation of a modern cloud data platform (Azure, AWS, or GCP). Develop ETL / ELT pipelines to manage structured and unstructured data at scale. Enable self-service BI and deliver insights through Power BI dashboards and advanced analytics. Integrate AI and automation into … in complex organisations. Expertise in cloud data platforms and data processing services. Strong skills in Python, SQL, and Power BI (DAX, Power Query, data modelling). Knowledge of ETL / ELT pipelines, data warehousing, and data mesh architectures. Familiarity with AI / ML applications, metadata management, and data lineage tracking. Excellent communication and stakeholder management skills. Degree in … to 10% employer pension contribution Private medical insurance via Bupa Generous family, fertility, and wellbeing policies Hybrid and flexible working arrangements Paid volunteering day each year Access to 24 / 7 wellbeing and mental health support To find out more click apply or email jon@burnssheehan.co.uk More ❯
define the data vision and enable meaningful business transformation. Key Responsibilities Lead the design and implementation of a modern cloud data platform (Azure, AWS, or GCP). Develop ETL / ELT pipelines to manage structured and unstructured data at scale. Enable self-service BI and deliver insights through Power BI dashboards and advanced analytics. Integrate AI and automation into … in complex organisations. Expertise in cloud data platforms and data processing services. Strong skills in Python, SQL, and Power BI (DAX, Power Query, data modelling). Knowledge of ETL / ELT pipelines, data warehousing, and data mesh architectures. Familiarity with AI / ML applications, metadata management, and data lineage tracking. Excellent communication and stakeholder management skills. Degree in … to 10% employer pension contribution Private medical insurance via Bupa Generous family, fertility, and wellbeing policies Hybrid and flexible working arrangements Paid volunteering day each year Access to 24 / 7 wellbeing and mental health support To find out more click apply or email jon@burnssheehan.co.uk More ❯
define the data vision and enable meaningful business transformation. Key Responsibilities Lead the design and implementation of a modern cloud data platform (Azure, AWS, or GCP). Develop ETL / ELT pipelines to manage structured and unstructured data at scale. Enable self-service BI and deliver insights through Power BI dashboards and advanced analytics. Integrate AI and automation into … in complex organisations. Expertise in cloud data platforms and data processing services. Strong skills in Python, SQL, and Power BI (DAX, Power Query, data modelling). Knowledge of ETL / ELT pipelines, data warehousing, and data mesh architectures. Familiarity with AI / ML applications, metadata management, and data lineage tracking. Excellent communication and stakeholder management skills. Degree in … to 10% employer pension contribution Private medical insurance via Bupa Generous family, fertility, and wellbeing policies Hybrid and flexible working arrangements Paid volunteering day each year Access to 24 / 7 wellbeing and mental health support To find out more click apply or email jon@burnssheehan.co.uk More ❯
london (city of london), south east england, united kingdom
Burns Sheehan
define the data vision and enable meaningful business transformation. Key Responsibilities Lead the design and implementation of a modern cloud data platform (Azure, AWS, or GCP). Develop ETL / ELT pipelines to manage structured and unstructured data at scale. Enable self-service BI and deliver insights through Power BI dashboards and advanced analytics. Integrate AI and automation into … in complex organisations. Expertise in cloud data platforms and data processing services. Strong skills in Python, SQL, and Power BI (DAX, Power Query, data modelling). Knowledge of ETL / ELT pipelines, data warehousing, and data mesh architectures. Familiarity with AI / ML applications, metadata management, and data lineage tracking. Excellent communication and stakeholder management skills. Degree in … to 10% employer pension contribution Private medical insurance via Bupa Generous family, fertility, and wellbeing policies Hybrid and flexible working arrangements Paid volunteering day each year Access to 24 / 7 wellbeing and mental health support To find out more click apply or email jon@burnssheehan.co.uk More ❯
Information Security Consultant - DORA / NIST FocusRemoteA boutique consultancy by nature, the GRC is looking at growing once again. With work spanning across a variety of sectors ever project will be different their organisation's cyber resiliency more effectively.The focus (not limited too): gap assessments and / or assisting in the certification of clients to known security standards … such as ISO27001, NIS2 and DORA; developing organisation-level policy and process documentation; providing on-demand security expertise to businesses to manage information security gaps; and custom security projects that will help clients successfully implement and continuously improve their approach to GRC. Bonus* Certifications (CISSP, SSCP, CCSP, or CAP, CompTIA certifications (Security+, Network+, A+ or … Swiss law. Both Modis International Ltd and Modis Europe Ltd are Equal Opportunities Employers. By applying for this role your details will be submitted to Modis International Ltd and / or Modis Europe Ltd. Our Candidate Privacy Information Statement which explains how we will use your information is available on the Modis website. More ❯
Job Title: Cyber Security Lead Location: Remote / London office (occasional travel) Salary: £50,000 Type: Full-time, Permanent Overview: We are seeking a hands-on Cyber Security Lead to drive cybersecurity across a family of independent specialist schools. You will take ownership of protecting staff, students, and data, coordinating with multiple MSPs, managing cyber risk, monitoring threats, and … in IT or cybersecurity roles. Strong understanding of Microsoft 365 and Google Workspace security controls. Experience managing or working with MSPs. Familiarity with Cyber Essentials, NCSC guidance, or ISO27001 principles. Relevant certifications such as CompTIA Security+, CISMP, or equivalent experience. Excellent communication skills, able to explain complex concepts to non-technical audiences. Self-motivated, organised … Benefits: Competitive salary with pension, life assurance, sick pay, and enhanced family benefits Support for professional development 25 days annual leave (increasing with promotion) plus Christmas gifted days Flexible / hybrid working arrangements Reasonable Adjustments: Respect and equality are core values to us. We are proud of the diverse and inclusive community we have built, and we welcome applications More ❯
London, South East, England, United Kingdom Hybrid / WFH Options
Sanderson
Job Title: Cyber Security Lead Location: Remote / London office (occasional travel) Salary: £50,000 Type: Full-time, Permanent Overview: We are seeking a hands-on Cyber Security Lead to drive cybersecurity across a family of independent specialist schools. You will take ownership of protecting staff, students, and data, coordinating with multiple MSPs, managing cyber risk, monitoring threats, and … in IT or cybersecurity roles. Strong understanding of Microsoft 365 and Google Workspace security controls. Experience managing or working with MSPs. Familiarity with Cyber Essentials, NCSC guidance, or ISO27001 principles. Relevant certifications such as CompTIA Security+, CISMP, or equivalent experience. Excellent communication skills, able to explain complex concepts to non-technical audiences. Self-motivated, organised … Benefits: Competitive salary with pension, life assurance, sick pay, and enhanced family benefits Support for professional development 25 days annual leave (increasing with promotion) plus Christmas gifted days Flexible / hybrid working arrangements Reasonable Adjustments: Respect and equality are core values to us. We are proud of the diverse and inclusive community we have built, and we welcome applications More ❯
This key role will be central to protecting business systems, data, and operations across a growing organisation. Key responsibilities:* Design and implement security policies and procedures aligned with ISO27001, NIST, and other recognised frameworks. * Manage the information security risk register and lead internal and external audits. * Oversee incident response, including investigation, containment, and recovery. * Conduct More ❯
controls. What You’ll Bring Experience in cyber security, IT risk management, or audit. Solid understanding of cybersecurity principles and vendor risk management. Familiarity with frameworks such as ISO27001 or NIST CSF is advantageous. Strong analytical and communication skills. Ability to build effective relationships across technical and non-technical teams. Experience in complex, multi-stakeholder More ❯
IT security and operational risk assessments. High attention to detail, ensuring accuracy in documentation, assessments, and compliance activities. Strong understanding of information security risk management principles, frameworks (e.g., ISO27001, NIST), and compliance practices. Exposure and understanding of IT infrastructure, business applications, and their associated risks and controls. Experience collaborating with internal and external audit teams More ❯
agreed project scope and priorities Experience with security tools and technologies such as SIEM (Splunk), vulnerability management (Tenable), and PAM Strong understanding of security frameworks and standards (e.g., ISO27001, NIST), as well as asset management and risk assessment solutions It would be a real bonus if you have: Master's degree in Computer Science, Information More ❯
up to Standardise information security policies, frameworks, and controls across all entities, while allowing flexibility for business specific regulations. Oversee Cyber security regulatory compliance initiatives ns (e.g. NIST, ISO27001, SOC2 compliance). Lead the design and operation of shared security services between IAG Loyalty and IAG airlines (e.g., threat detection, incident response, intel management, data More ❯
London, South East, England, United Kingdom Hybrid / WFH Options
Searchability
What would be desirable? Experience with storage platforms such as Dell PowerVault or Synology.* Familiarity with endpoint protection platforms (Defender, Sophos).* Exposure to compliance frameworks (Cyber Essentials+, ISO27001 … .* Previous experience mentoring or leading a technical team. Certifications (highly desirable): Microsoft Certified (AZ-104, MS-102, or similar)* VMware VCP, Fortinet NSE, or CompTIA Network+ / Security+ The Package Hybrid working with regular work-from-home days* 22 days' annual leave + Bank Holidays (increasing with tenure)* Team awards, social events, and a collaborative culture* Continuous professional More ❯
City of London, London, United Kingdom Hybrid / WFH Options
Anson McCade
in Cybersecurity. Relevant security certifications (CISSP, CISM etc.). Deep experience of security frameworks (i.e. NIST, ISO27001, TOGAF, SABSA) Strong technical exposure to AI / ML concepts, algorithms, models, regulations and controls. Involvement in pre-sales & commercials in a consulting capacity. Senior Security Consultant key details: Up to £115k salary 15% Performance bonus. £4k More ❯
in Cybersecurity. Relevant security certifications (CISSP, CISM etc.). Deep experience of security frameworks (i.e. NIST, ISO27001, TOGAF, SABSA) Strong technical exposure to AI / ML concepts, algorithms, models, regulations and controls. Involvement in pre-sales & commercials in a consulting capacity. Senior Security Consultant key details: Up to £115k salary 15% Performance bonus. £4k More ❯
london, south east england, united kingdom Hybrid / WFH Options
Anson McCade
in Cybersecurity. Relevant security certifications (CISSP, CISM etc.). Deep experience of security frameworks (i.e. NIST, ISO27001, TOGAF, SABSA) Strong technical exposure to AI / ML concepts, algorithms, models, regulations and controls. Involvement in pre-sales & commercials in a consulting capacity. Senior Security Consultant key details: Up to £115k salary 15% Performance bonus. £4k More ❯
london (city of london), south east england, united kingdom Hybrid / WFH Options
Anson McCade
in Cybersecurity. Relevant security certifications (CISSP, CISM etc.). Deep experience of security frameworks (i.e. NIST, ISO27001, TOGAF, SABSA) Strong technical exposure to AI / ML concepts, algorithms, models, regulations and controls. Involvement in pre-sales & commercials in a consulting capacity. Senior Security Consultant key details: Up to £115k salary 15% Performance bonus. £4k More ❯