maintain an automated and scalable vulnerability management program using Tenable and related tools. Create and enforce vulnerability management policies, scan configurations, and best practices, aligned to frameworks such as NIST or ISO 27001. Integrate vulnerability scanning and remediation into CI/CD pipelines and development workflows to ensure security at speed; this business is in a transformative stage! Automate data … with platforms like Jira, ServiceNow, or Slack. Ability to scope penetration tests and manage findings through to remediation. Strong understanding of security frameworks andstandards such as ISO 27001, NIST, and CIS. Excellent communication, presentation, and influencing skills, with the ability to explain complex technical issues to non-technical stakeholders. We invite individuals from underrepresented groups to apply for any More ❯
implementation of data loss protection DLP, data retention, and rights management initiatives Drive compliance with DORA, Operational Resilience, and Data Governance requirements Develop and maintain security governance frameworks (ISO27001, NIST) Manage stakeholder relationships across all organizational levels Oversee risk assessments and control implementation Lead security and data privacy policy development Monitor and report on control effectiveness Key Skills: Proven experience … in information security governance and compliance Strong knowledge of UK/EU data privacy regulations Experience with ISO27001, NIST, and GDPR frameworks Project management expertise Excellent stakeholder management skills Technical proficiency in security controls and data governance This is a unique opportunity to shape security and governance strategies while working with cutting-edge technologies and frameworks. Sound like you? Please More ❯
Responsibilities Define and implement cloud security assurance frameworks for AWS and Azure. Review cloud platform roadmaps and designs to ensure secure implementation. Align cloud environments with governance standards like NIST 2.0. Identify and manage cloud-related risks using security risk frameworks. Develop and apply secure cloud architecture patterns. Support and review Infrastructure as Code (IaC) using Terraform or CloudFormation. Automate … security into cloud projects from the start. What You'll Need Strong experience with AWS and Azure cloud security. Good understanding of cloud architecture and design principles. Familiarity with NIST 2.0 or other security governance frameworks. Experience in risk management and assessing cloud security risks. Practical knowledge of Terraform, AWS CloudFormation, or similar IaC tools. Experience with security automation andMore ❯
london (city of london), south east england, united kingdom
Barclay Simpson
Responsibilities Define and implement cloud security assurance frameworks for AWS and Azure. Review cloud platform roadmaps and designs to ensure secure implementation. Align cloud environments with governance standards like NIST 2.0. Identify and manage cloud-related risks using security risk frameworks. Develop and apply secure cloud architecture patterns. Support and review Infrastructure as Code (IaC) using Terraform or CloudFormation. Automate … security into cloud projects from the start. What You'll Need Strong experience with AWS and Azure cloud security. Good understanding of cloud architecture and design principles. Familiarity with NIST 2.0 or other security governance frameworks. Experience in risk management and assessing cloud security risks. Practical knowledge of Terraform, AWS CloudFormation, or similar IaC tools. Experience with security automation andMore ❯
Responsibilities Define and implement cloud security assurance frameworks for AWS and Azure. Review cloud platform roadmaps and designs to ensure secure implementation. Align cloud environments with governance standards like NIST 2.0. Identify and manage cloud-related risks using security risk frameworks. Develop and apply secure cloud architecture patterns. Support and review Infrastructure as Code (IaC) using Terraform or CloudFormation. Automate … security into cloud projects from the start. What You'll Need Strong experience with AWS and Azure cloud security. Good understanding of cloud architecture and design principles. Familiarity with NIST 2.0 or other security governance frameworks. Experience in risk management and assessing cloud security risks. Practical knowledge of Terraform, AWS CloudFormation, or similar IaC tools. Experience with security automation andMore ❯
Responsibilities Define and implement cloud security assurance frameworks for AWS and Azure. Review cloud platform roadmaps and designs to ensure secure implementation. Align cloud environments with governance standards like NIST 2.0. Identify and manage cloud-related risks using security risk frameworks. Develop and apply secure cloud architecture patterns. Support and review Infrastructure as Code (IaC) using Terraform or CloudFormation. Automate … security into cloud projects from the start. What You'll Need Strong experience with AWS and Azure cloud security. Good understanding of cloud architecture and design principles. Familiarity with NIST 2.0 or other security governance frameworks. Experience in risk management and assessing cloud security risks. Practical knowledge of Terraform, AWS CloudFormation, or similar IaC tools. Experience with security automation andMore ❯
Information Security Consultant - DORA/NIST FocusRemoteA boutique consultancy by nature, the GRC is looking at growing once again. With work spanning across a variety of sectors ever project will be different their organisation's cyber resiliency more effectively.The focus (not limited too): gap assessments and/or assisting in the certification of clients to known security standards such as More ❯
City of London, London, United Kingdom Hybrid / WFH Options
Robert Half
for customer-facing assurance activities, including audits, RFIs, and RFPs, while staying aligned with cutting-edge global AI regulations such as the EU AI Act, OECD AI Principles, andNIST AI RMF. This role offers the unique opportunity to collaborate with product, customer, andtechnology teams to strengthen our compliance posture and enhance adoption. Required Qualifications & Experience Proven experience delivering … AI systems. Incident handling and continuous improvement. Experience working with auditors, certification bodies, and customer assurance teams. Understanding of global AI regulation frameworks, such as the EU AI Act, NIST AI RMF , and OECD AI Principles . Skills & Competencies Exceptional ability to produce and organize compliance documentation, policies, and audit evidence. Strong written and verbal communication, able to simplify complex More ❯
London, South East, England, United Kingdom Hybrid / WFH Options
Robert Half
for customer-facing assurance activities, including audits, RFIs, and RFPs, while staying aligned with cutting-edge global AI regulations such as the EU AI Act, OECD AI Principles, andNIST AI RMF. This role offers the unique opportunity to collaborate with product, customer, andtechnology teams to strengthen our compliance posture and enhance adoption. Required Qualifications & Experience Proven experience delivering … AI systems. Incident handling and continuous improvement. Experience working with auditors, certification bodies, and customer assurance teams. Understanding of global AI regulation frameworks, such as the EU AI Act, NIST AI RMF , and OECD AI Principles . Skills & Competencies Exceptional ability to produce and organize compliance documentation, policies, and audit evidence. Strong written and verbal communication, able to simplify complex More ❯
configure, and manage Google Cloud services (Compute Engine, Storage, IAM, VPC, Kubernetes, Databases) for isolated and highly secure environments. Implement and enforce robust security, governance, and compliance controls (e.g., NIST, FedRAMP, ITAR, HIPAA, GDPR, or similar frameworks). Troubleshoot and optimize workloads in mission-critical, resource-constrained, or disconnected environments. Deliver hands-on technical workshops, knowledge transfer sessions, and ongoing … Professional Cloud Engineer or Cloud Architect) preferred. Preferred Qualifications Experience working in classified environments or with security clearances. Familiarity with compliance frameworks (e.g., FedRAMP High, DoD IL5/IL6, NIST 800-53, ITAR). Knowledge of secure enclave operations, hardened systems, and cross-domain solutions. Background in system hardening, encryption technologies, and identity/access control in secure environments. What More ❯
Cyber Security Programme Manager to lead a major 24–36 month, enterprise wide security uplift. This is a high-impact role driving defence in depth controls, boosting security maturity (NIST CSF & CIS), and embedding long-term resilience across the organisation. You will take charge of planning, execution, and delivery - from managing external partners and RFPs to overseeing multiple workstreams spanning … budgets, risks, and reporting. Champion change management to embed lasting security practices. Experience: 7–10+ years leading large-scale IT and cyber security transformations. Expertise in defence in depth, NIST CSF, and CIS Controls. Strong cross-functional leadership across tech, risk, and compliance. Proven track record with enterprise security (cloud, IAM, threat detection). Skilled in programme governance, vendor management More ❯