and Access Manager (CIAM) or Certified Identity Management Professional (CIMP), CISSP, or CISM is highly desirable. Experience with cybersecurity frameworks andstandards, such as NIST, ISO 27001, or similar. General understanding of operational risk and risk-related control frameworks and practices such (ISO 27001, NIST SP 800-53, NIST CSF More ❯
testing. Supporting the creation of a control library and reviewing controls to ensure alignment with internal policies and external frameworks such as CRI, ISO, NIST, ISAE. Performing internal control assessments/audits for SWIFT CSCF, LINK CSB, ISO27001, and ISO22301. Developing internal assurance documentation. Preparing submissions for risk governance committees. More ❯
west london, south east england, United Kingdom Hybrid / WFH Options
Harrington Starr
vulnerability assessment and a penetration test in the context of assessment scope, objectives, and deliverables. Working knowledge of information security frameworks such as ISO27001, NIST, and CIS. If this sounds like a good opportunity, apply today. Unfortunately no sponsorship is on offer at this stage for this role. More ❯
south west london, south east england, United Kingdom Hybrid / WFH Options
Harrington Starr
vulnerability assessment and a penetration test in the context of assessment scope, objectives, and deliverables. Working knowledge of information security frameworks such as ISO27001, NIST, and CIS. If this sounds like a good opportunity, apply today. Unfortunately no sponsorship is on offer at this stage for this role. More ❯
the business and technical partners to develop and apply privacy program plans and processes that comply with applicable laws, facilitate PbD concepts, and the NIST Privacy framework tooperations, enterprise programs and systems Develops and supports change management processes to ensure documentation remains up-to-date Assists with the processing ofMore ❯
london, south east england, United Kingdom Hybrid / WFH Options
Albany Beck
client is undergoing a major transformation of its Security Risk Management capability, focusing on enhanced technical execution, regulatory alignment, and operational maturity. Guided by NIST SP 800-53, GDPR, PRA (BoE), and FRB/OCC expectations, they are shifting from project-led practices towards a BAU security operations model. This More ❯
managed by CT. Facilitate operationalization and maintenance of the technology risk management framework using EY risk framework and industry standard models (e.g., COBIT5, ITIL, NIST) as references. Advocate for funding and skilled resources necessary for risk management initiatives. Work collaboratively with a team oftechnology risk professionals, both inside and … data privacy or a related field. Strong knowledge and hands-on experience with technology risk management frameworks andstandards (e.g., ISACA/COBIT, ITIL, NIST, ISO/IEC 27000, 31000 & 22301, ISQM). Strong stakeholder engagement and management capabilities. Comfortable interacting professionally with all levels of management and subject matter More ❯
years in leadership or management. Relevant certifications such as CISSP, CISM, CCSP, CISA, CRISC, or equivalent experience. Practical knowledge of industry security frameworks like NIST 800-53, NCSC CAF, NIST CSF, DORA, and NCSC guidelines. Good understanding of cybersecurity domains including network and cloud security, vulnerability management, third-party risk More ❯
City of London, Greater London, UK Hybrid / WFH Options
Korn Ferry
design patterns Familiar with fallback controls such as WAF's, API gateways Experience using SIEM/logging tools to track API threats Familiarity with NIST, OWASP SAMM, or internal security frameworks Experience producing risk dashboards/reports for API's Able to translate technical risks into business language, collaborating with More ❯
and plans, including strategic, tactical and project plans. You will also have experience with information security management frameworks, such as ISO2700, ITIL, COBIT or NIST, (knowledge of the ISF Standard of Good Practice would be an advantage) and have an understanding of Service Delivery frameworks such as ITIL. You will More ❯
City of London, London, Canary Wharf, United Kingdom
Fusion People Ltd
and plans, including strategic, tactical and project plans. You will also have experience with information security management frameworks, such as ISO2700, ITIL, COBIT or NIST, (knowledge of the ISF Standard of Good Practice would be an advantage) and have an understanding of Service Delivery frameworks such as ITIL. You will More ❯
Employment Type: Permanent
Salary: £90000 - £100000/annum hybrid, great benefits
for critical events. Ensure audit-readiness through the creation of compliance documentation, reporting on security posture and trends, and maintaining internal control frameworks (e.g., NIST CSF) Manage the transition to a new MSSP by delivering robust SOPs, process documentation, and comprehensive handovers to internal teams and external partners. More ❯
design patterns Familiar with fallback controls such as WAF's, API gateways Experience using SIEM/logging tools to track API threats Familiarity with NIST, OWASP SAMM, or internal security frameworks Experience producing risk dashboards/reports for API's Able to translate technical risks into business language, collaborating with More ❯
south west london, south east england, United Kingdom
Korn Ferry
design patterns Familiar with fallback controls such as WAF's, API gateways Experience using SIEM/logging tools to track API threats Familiarity with NIST, OWASP SAMM, or internal security frameworks Experience producing risk dashboards/reports for API's Able to translate technical risks into business language, collaborating with More ❯
and compliant technology environment. What you will be doing: Maintain security policy, standards, procedures and frameworks. Ensure alignment with security industry standards such as NIST CSF andNIST 800-53. Act as an advisor to colleagues across the organisation on best security practice. Conduct regular risk assessments and maintain … MSc Information Security, CICA, CRISC, CISM and/or Data analysis beneficial but not essential if experience validates skills. Knowledge of security frameworks (e.g., NIST CSF, ISO 27001, SOC1,2). Prince 2, MSP, APMQ advantageous. A desire to continue learning and developing security skills and qualifications Our commitment to More ❯
and compliant technology environment. What you will be doing: Maintain security policy, standards, procedures and frameworks. Ensure alignment with security industry standards such as NIST CSF andNIST 800-53. Act as an advisor to colleagues across the organisation on best security practice. Conduct regular risk assessments and maintain … MSc Information Security, CICA, CRISC, CISM and/or Data analysis beneficial but not essential if experience validates skills. Knowledge of security frameworks (e.g., NIST CSF, ISO 27001, SOC1,2). Prince 2, MSP, APMQ advantageous. A desire to continue learning and developing security skills and qualifications Our commitment to More ❯
london, south east england, United Kingdom Hybrid / WFH Options
CLS Group
and compliant technology environment. What you will be doing: Maintain security policy, standards, procedures and frameworks. Ensure alignment with security industry standards such as NIST CSF andNIST 800-53. Act as an advisor to colleagues across the organisation on best security practice. Conduct regular risk assessments and maintain … MSc Information Security, CICA, CRISC, CISM and/or Data analysis beneficial but not essential if experience validates skills. Knowledge of security frameworks (e.g., NIST CSF, ISO 27001, SOC1,2). Prince 2, MSP, APMQ advantageous. A desire to continue learning and developing security skills and qualifications Our commitment to More ❯
City of London, London, United Kingdom Hybrid / WFH Options
Korn Ferry
design patterns Familiar with fallback controls such as WAF's, API gateways Experience using SIEM/logging tools to track API threats Familiarity with NIST, OWASP SAMM, or internal security frameworks Experience producing risk dashboards/reports for API's Able to translate technical risks into business language, collaborating with More ❯
london (city of london), south east england, United Kingdom Hybrid / WFH Options
Korn Ferry
design patterns Familiar with fallback controls such as WAF's, API gateways Experience using SIEM/logging tools to track API threats Familiarity with NIST, OWASP SAMM, or internal security frameworks Experience producing risk dashboards/reports for API's Able to translate technical risks into business language, collaborating with More ❯
design patterns Familiar with fallback controls such as WAF's, API gateways Experience using SIEM/logging tools to track API threats Familiarity with NIST, OWASP SAMM, or internal security frameworks Experience producing risk dashboards/reports for API's Able to translate technical risks into business language, collaborating with More ❯
design patterns Familiar with fallback controls such as WAF's, API gateways Experience using SIEM/logging tools to track API threats Familiarity with NIST, OWASP SAMM, or internal security frameworks Experience producing risk dashboards/reports for API's Able to translate technical risks into business language, collaborating with More ❯
design patterns Familiar with fallback controls such as WAF's, API gateways Experience using SIEM/logging tools to track API threats Familiarity with NIST, OWASP SAMM, or internal security frameworks Experience producing risk dashboards/reports for API's Able to translate technical risks into business language, collaborating with More ❯
East London, London, United Kingdom Hybrid / WFH Options
Korn Ferry
design patterns Familiar with fallback controls such as WAF's, API gateways Experience using SIEM/logging tools to track API threats Familiarity with NIST, OWASP SAMM, or internal security frameworks Experience producing risk dashboards/reports for API's Able to translate technical risks into business language, collaborating with More ❯
design patterns Familiar with fallback controls such as WAF's, API gateways Experience using SIEM/logging tools to track API threats Familiarity with NIST, OWASP SAMM, or internal security frameworks Experience producing risk dashboards/reports for API's Able to translate technical risks into business language, collaborating with More ❯
design patterns Familiar with fallback controls such as WAF's, API gateways Experience using SIEM/logging tools to track API threats Familiarity with NIST, OWASP SAMM, or internal security frameworks Experience producing risk dashboards/reports for API's Able to translate technical risks into business language, collaborating with More ❯