26 to 50 of 636 ISO/IEC 27001 Jobs in London

Design Quality Engineer

Location
Greater London, England, United Kingdom
Notified Body audits, with a focus on Design and Development aspects. Champion compliance in software development by translating complex and opaque IEC / ISO standards into clear, actionable processes that engineering teams can follow. What we will look for SaMD Experience : Prior experience working … doing the defining work of your career. We take care of you. We offer comprehensive private medical and dental cover through Bupa 24 / 7 mental health coaching and wellbeing support through Sonder a £100 / month Healthy Heidi's wellness stipend a £500 home office budget ...

Intenal Auditor

Hiring Organisation
Addition
Location
London, South East England, United Kingdom
Employment Type
Full-Time
Salary
Salary negotiable
Internal Auditor – ISMS & BCMS Location: Remote with occasional UK travel to visit clients in London Contract: 4 months Type: Contract / Consultancy We are supporting a leading organisation with the appointment of an experienced Internal Auditor to provide independent assurance across its Information Security Management System (ISMS) and Business … remediation tracking. Develop supporting templates and documentation and provide knowledge transfer. Work independently while maintaining objectivity and professional challenge. Essential Requirements ISO / IEC 27001:2022 Lead Auditor certification. ISO 22301:2019 Lead Auditor certification. Demonstrable experience conducting internal audits against ...

Engineering Manager, Security

Location
Greater London, England, United Kingdom
security & architecture: Define and enforce the security architecture across our Azure-native, Kubernetes-based platform. Govern security controls across the full stack: Kafka, .NET / C#, Vue.js, Kong API Gateway, Auth0, and Salesforce. Lead threat modelling, penetration testing, and vulnerability management programmes. Own identity and access management strategy, including … crypto-agile migration to NIST-standardised PQC algorithms. Compliance & regulatory: Ensure security controls meet FCA SYSC obligations, SYSC 15A operational risk requirements and ISO27001 standard. Work closely with the Head of Compliance on regulatory horizon scanning, security-related policy obligations, and audit responses. Partner with the DPO on data governance ...

Senior Cloud Security Engineer (GCP) - Engine by Starling

Location
City Of London, England, United Kingdom
distance of one of our offices so that we're able to interact and collaborate in person. About Engineering at Engine by Starling - https: / / enginebystarling.com / careers / engineering / As a Security Engineer at Engine, you'll be working on helping … Manager (EKM) and Secret Manager - including cryptographic key ceremonies Experience with Workload Identity and Workload Identity Federation for keyless authentication of workloads and CI / CD Experience configuring and utilising cloud-native security logging, monitoring and detection services Strong programming skills - in security we write our own scripts ...

Staff Cloud Security Engineer (GCP) - Engine by Starling

Location
Greater London, England, United Kingdom
distance of one of our offices so that we're able to interact and collaborate in person. About Engineering at Engine by Starling — https: / / enginebystarling.com / careers / engineering / As a Security Engineer at Engine, you'll be working on helping … Manager (EKM) and Secret Manager — including cryptographic key ceremonies Experience with Workload Identity and Workload Identity Federation for keyless authentication of workloads and CI / CD Experience configuring and utilising cloud-native security logging, monitoring and detection services Strong programming skills — in security we write our own scripts ...

IT Policy and Controls Manager London, United Kingdom Cyber Policy & Controls Posted 5 hours ago

Location
Greater London, England, United Kingdom
## IT Policy and Controls ManagerLondon, United KingdomApply NowFind out how well you match with this jobRequisition ID286264Date posted08 / 03 / 2026## **Join Us**At Vodafone, we’re not just shaping the future of connectivity for our customers – we’re shaping the future for everyone who joins … delivering capabilities, which meet or surpass the requirements defined in the control framework.* Expected to have a strong knowledge of security risks, controls, processes / technologies / tools to mitigate these risks and Information Security Management Systems.Key accountabilities and decision ownership:* Maintain and develop a control framework which ...

VP of Security & Infrastructure

Location
Greater London, England, United Kingdom
drive down lead times and change failure rates. Secure SDLC: embed technical security requirements across the development lifecycle, optimising automated security controls within CI / CD pipelines, and ensuring well informed platform and product security architecture decisions drive strong protection, resilience and scalability. Corporate IT & Access Controls: Manage … Production Infrastructure functions at consumer scale (tens of millions of active users). Product Integration: Demonstrated experience partnering with Product, Design, and Mobile / Backend Engineering teams to ship user-facing features to roadmap. Audit Track Record: Successful execution and ongoing maintenance of ISO 27001 ...

Information Security Manager

Location
Greater London, England, United Kingdom
weekly, Thursday's are our team anchor day. Own and improve the ISMS and Risk Management Framework, including governance meetings, annual audits and policy / process documentation Lead reviews of security policies and procedures, adapting them to business needs and generating new policies where required Deliver and promote relevant … Build scalable, proactive security processes, making use of tools and AI where appropriate Experience 5+ years' experience in Information Security, Governance, Risk Management and / or Compliance roles in a technology / financial services setting Demonstrable experience managing an ISMS in an ISO 27001 ...

Information Security Officer (ISO27001) (Mandarin Speakers)

Hiring Organisation
Robert Walters
Location
London, South East England, United Kingdom
Employment Type
Full-Time
Salary
£60,000 - £70,000 per annum
Beijing Support security awareness and training initiatives What you'll bring: Strong practical knowledge of ISO 27001 Information Security / GRC experience Experience managing policies, audits, risks and remediation Strong stakeholder management and communication skills Fluent English and Mandarin - essential Comfortable working independently and collaborating … across UK / Asia time zones Willingness to travel to Hong Kong / Beijing 2-4 times per year Robert Walters Operations Limited is an employment business and employment agency and welcomes applications from all candidates ...

Cyber Data Engineer

Hiring Organisation
Robert Walters
Location
London, United Kingdom
Employment Type
Contract, Work From Home
Contract Rate
£600 - £700 per day + Outside IR35
structured data, data lineage, APIs, security telemetry and integrations sufficiently to challenge data completeness and fitness for purpose. Experience defining acceptance criteria, supporting testing / UAT and documenting requirements, issues and decisions Cyber Security Risk, Security Assurance, Controls Testing, GRC, Vulnerability Management Assess control design, Endpoint security, Cloud, Identity … Secure Development, Third-Party risk, Incident Management Desirable: CISSP, CISM, CRISC, CISA, ISO 27001 Lead Auditor / Implementer or equivalent experience. Knowledge of NIST CSF, ISO / IEC 27001, COBIT, CIS Controls or enterprise risk frameworks. Experience with ...

Cyber Security Risk & Assurance SME

Hiring Organisation
Robert Walters
Location
London, South East England, United Kingdom
Employment Type
Full-Time
Salary
£600.00 - £700.00 per day
structured data, data lineage, APIs, security telemetry and integrations sufficiently to challenge data completeness and fitness for purpose. Experience defining acceptance criteria, supporting testing / UAT and documenting requirements, issues and decisions Cyber Security Risk, Security Assurance, Controls Testing, GRC, Vulnerability Management Assess control design, Endpoint security, Cloud, Identity … Secure Development, Third-Party risk, Incident Management Desirable: CISSP, CISM, CRISC, CISA, ISO 27001 Lead Auditor / Implementer or equivalent experience. Knowledge of NIST CSF, ISO / IEC 27001, COBIT, CIS Controls or enterprise risk frameworks. Experience with ...

Director of Security & Compliance

Hiring Organisation
Oscar Associates (UK) Limited
Location
London, United Kingdom
Employment Type
Permanent
maturity. This is a newly created senior leadership position, reporting directly to the CTO. With Cyber Essentials Plus already achieved and a 24 / 7 outsourced SOC in place, the organisation is now focused on achieving ISO 27001 certification, strengthening its governance and compliance framework … organisation-wide security awareness programme Define identity, access and authentication standards, including RBAC, MFA and SSO Own the IT governance framework and regulatory / standards compliance posture Lead the programme to achieve ISO 27001 certification, including defining and managing scope Own the central digital ...

IT Operations & Cyber Lead

Location
Greater London, England, United Kingdom
identity and access management, corporate networking, and cyber security operations . You will partner closely with: Engineering team , who manage product infrastructure (AWS, CI / CD, robotics environments); ITSM Lead , who manages service process, management and support The IT Director , to align on overall strategy, operational reliability, governance … environment – covering endpoints, networks, identity, and security – ensuring reliability, scalability, and compliance. Lead end-user computing and identity management , including device lifecycle, MDM, SSO / MFA, and access provisioning in partnership with ITSM. Implement, operate and continually improve cyber defences across endpoints and SaaS platforms: vulnerability management, EDR / ...

Service Reliability Engineer - London

Hiring Organisation
Fitch Group
Location
Greater London, United Kingdom
Employment Type
Full Time
where you can grow, innovate, and make a difference. Want to learn more about a career in technology and data at Fitch? Visit: https: / / careers.fitch.group / content / Technology-and-Data / About the Team Fitch Group SRE provides Service Reliability Engineering expertise … Operations to design and advance service builds, DevOps tooling, and drive operational excellence. Partner with Core Engineering to architect and govern GitHub Actions CI / CD with quality gates, canary / blue‐green strategies, and AI‐assisted redeploy checks Own observability in Datadog—define SLIs / SLOs ...

Principal Product Cybersecurity Assurance

Location
Greater London, England, United Kingdom
across Humanoid's HMND 01 platform family — the Alpha Wheeled industrial robot and the Alpha Bipedal home robot — both powered by our KinetIQ VLM / VLA-based AI framework. Working alongside product, firmware, autonomy, and hardware teams as part of the Systems Engineering and Architecture Team, you will define … resilient. Contribute to the continual improvement of security engineering capability across the organisation. Ensure compliance with cybersecurity obligations under the EU Machinery Regulation 2023 / 1230 where cyber controls intersect with safety-critical functions and compliance to IEC 62443 (for industrial / OT product security ...

Lead Engineer

Location
Greater London, England, United Kingdom
standards, delivering sophisticated migrations, and ensure privileged access is secure, auditable, and resilient.## ## Key Responsibilities* Design and implement PAM capabilities (vaulting, session management / recording, credential rotation, least privilege, EPM / PRA) across on-prem and cloud workloads.* Lead complex integrations with AD / EntraID, IdPs … SIEM / SOAR, CSPM, ITSM, DevOps tooling (CI / CD), and secrets management.* Be responsible for the operational model: backup / recovery, DR, platform upgrades, policy hardening, performance tuning, and continuous improvement.* Drive onboarding at scale ensuring standardized onboarding patterns and controls.* Establish guardrails and RBAC / ...

Third Party Security Due Diligence Lead

Location
Greater London, England, United Kingdom
vendors, technology suppliers, and outsourced service providers. Strong understanding of security frameworks and standards including ISO 27001, NIST, SOC 1 / 2, CIS Controls, and cloud security best practices. Experience evaluating security controls across identity management, network security, encryption, vulnerability management, incident response, resilience, data … clearly to technical and non‐technical audiences, including senior executives. Desirable Experience supporting regulatory requirements such as DORA, NIS2, EBA Guidelines on Outsourcing, FCA / PRA regulations, or equivalent frameworks. Experience in financial services, payments, or highly regulated environments. Familiarity with supply chain security, concentration risk, AI supplier assessments ...

Cyber Security Controls Tester (Assurance)

Location
City Of London, England, United Kingdom
Evaluate the effectiveness of technical, procedural, and physical security controls against documented security requirements and standards. Assess security controls against recognised frameworks including ISO 27001 , NIST CSF , NIST 800-53 , and CIS Controls . Review security documentation, including High-Level Designs (HLDs), Low-Level Designs (LLDs … Required Skills & Experience Proven experience testing and assessing the effectiveness of security controls within complex enterprise environments. Strong knowledge of security frameworks including: ISO 27001 NIST Cyber Security Framework (CSF) NIST 800-53 CIS Controls Experience reviewing and testing: Network security controls Firewall configurations and rule ...

Interim Cybersecurity Auditor

Hiring Organisation
Grant Thornton
Location
London, South East England, United Kingdom
Employment Type
Full-Time
Salary
Salary negotiable
cybersecurity audits for client organisations in line with UK regulations. Assess compliance with: UK GDPR & Data Protection Act 2018 NIS Regulations ISO / IEC 27001 Cyber Essentials / Plus Telecommunications (Security) Act 2021 Identify risks and provide actionable recommendations. Produce clear audit … auditing, ideally in a consultancy or client-facing role. Strong knowledge of UK legal frameworks and compliance standards. Relevant certifications (e.g. CISA, CISSP, ISO 27001 Lead Auditor). Excellent communication and stakeholder engagement skills. Ability to work independently and manage multiple client engagements. Why Consultants choose ...

CLOUD SECURITY ARCHITECT

Location
Greater London, England, United Kingdom
expertise with the strategic ability to translate complex threats into clear, actionable guidance. Responsibilities Design and own cloud security architecture across AWS, Azure, and / or GCP environments, including the development of reference architectures and reusable solution patterns Define and author enterprise‐level security policies, controls frameworks, and governance … 27001, Cyber Essentials Plus, PCI DSS, and other relevant regulatory frameworks Support DevSecOps adoption and integrate security tooling and controls into CI / CD pipelines across client delivery teams Engage senior stakeholders and executive teams with clear security risk reporting, remediation guidance, and strategic security roadmaps Lead ...

Information Security Analyst

Location
Greater London, England, United Kingdom
information security, cyber security, security operations or related disciplines. Experience investigating security incidents and managing security alerts. Good understanding of Microsoft 365, Azure / Entra ID and cloud security principles. Experience working with vulnerability management programmes. Knowledge of security frameworks and standards including: ISO / IEC … Plus NIST Cyber Security Framework CIS Controls Familiarity with risk assessment methodologies and security governance practices. Experience with security tooling such as SIEM, EDR / XDR, vulnerability scanners and email security platforms. Experience within a law firm, professional services organisation, financial services firm or other highly regulated environment. Experience ...

Head of Information Security

Location
Greater London, England, United Kingdom
Type II, ISO 27001, Cyber Essentials Plus, and NIST 800-53 Embed DevSecOps and secure SDLC practices into CI / CD pipelines Oversee penetration testing, red teaming, and threat modeling across core infrastructure Serve as the technical security authority in customer procurement reviews, vendor risk … Type II, ISO 27001, Cyber Essentials Plus, and NIST 800-53 Experience embedding DevSecOps and secure SDLC practices into CI / CD pipelines Experience overseeing penetration testing, red teaming, and threat modeling Experience with customer procurement reviews, vendor risk assessments (DDQs), and defense customer evaluations ...

Cyber Security Engineer

Location
Greater London, England, United Kingdom
intelligence gathering and analysis Maintain and improve the Information Security Management System (ISMS) Conduct security risk assessments and maintain risk registers Assist with ISO 27001, Cyber Essentials, and client assurance audits Review and update security policies, standards, and procedures Support secure adoption and governance … improvements to security controls and risk reduction Requirements Strong experience in a cyber security, information security, or security operations role Good understanding of ISO 27001 Good understanding of NIST Cyber Security Framework Good understanding of Cyber Essentials Plus Good understanding of risk management methodologies Experience investigating ...

ISO 27001/27018 InfoSec Analyst: ISMS & Audits (Hybrid)

Location
Greater London, England, United Kingdom
Alfa is seeking an Information Security Analyst to strengthen our ISMS and ensure ISO 27001 / 27018 compliance across the business. You’ll participate in SSAE 18 / ISAE 3402 audits, document controls, and support internal and external audits while coordinating with engineers, auditors ...

Hybrid ISO 27001/27018 InfoSec Analyst Audit and Compliance

Location
Greater London, England, United Kingdom
Alfa Financial Software Limited is seeking an Information Security Analyst to strengthen our ISMS and lead ISO 27001 / 27018 audits. You will work with Jira and Confluence, support SSAE 18 / SOC audits, and help translate complex security requirements for engineers, auditors ...