1 to 25 of 60 Remote/Hybrid PCI DSS Jobs in London

Security and Compliance Manager

Location
Greater London, England, United Kingdom
security expert to lead the development and maintenance of our compliance framework. You’ll be the driving force behind our adherence to ISO27001 , PCI-DSS , and GDPR , ensuring Neve Jewels remains a trusted leader in luxury retail. You’ll work hand-in-hand with our tech and business … Security Architecture & Governance: Design, implement, maintain compliance and manage the Neve Jewels IT security framework, ensuring technical alignment with ISO27001 , Cyber Essentials Plus , and PCI-DSS 4.0 . Infrastructure Protection: Oversee the security of all corporate and boutique networks, including firewalls, VPNs, end-point protection, and cloud environments ...

Head of Security (CISO)

Location
Greater London, England, United Kingdom
security governance, operations, compliance, and risk management across a complex technology estate spanning payments, healthcare, and B2B SaaS. With ongoing M&A activity, active PCI‐DSS obligations, and a rapidly evolving platform landscape, you'll play a critical role in protecting our customers, supporting business growth, and embedding … Oversee security operations, including threat detection, incident response, and remediation Act as the executive lead during security incidents and manage external stakeholder communications Own PCI‐DSS compliance across ClearAccept and ClearDebit payment platforms Lead the Group's Governance, Risk and Compliance (GRC) function, including ISO 27001, Cyber Essentials ...

Staff / Senior Staff Security Engineer, Vinted Pay

Location
Greater London, England, United Kingdom
multi‐region AWS infrastructure, payment pipelines and payment pages, wallets holding members' money, the cardholder and personal data behind them, and a regulatory perimeter - PCI DSS, DORA, Bank of Lithuania and FCA rules - that rises every year. Working at staff/senior staff level as an individual contributor … roadmap that shapes how Vinted Pay defends its infrastructure and payment assets, rather than reacting to the next audit. Turn regulation into engineering: map PCI DSS, DORA, and Bank of Lithuania and FCA requirements into practical, automated security controls and engineering guardrails - compliance as a by‐product ...

Senior Cloud Security Engineer (GCP) - Engine by Starling

Location
City Of London, England, United Kingdom
authorisation mechanisms are in place Engineer and automate technical controls within GCP to ensure and demonstrate continuous compliance with stringent standards such as PCI DSS and 3DS Drive security infrastructure deployments across our growing environments Perform regular security assessments, audits, threat modelling and architecture design reviews to identify … market for different banks' regulators Hands‐on experience taking a company through security and compliance frameworks like NIST, SOC 2, ISO 27001 and PCI DSS Experience automating security controls and compliance checks against standards and frameworks including SOC 2, ISO 27001 and PCI DSS/ ...

Staff Cloud Security Engineer (GCP) - Engine by Starling

Location
Greater London, England, United Kingdom
authorisation mechanisms are in place Engineer and automate technical controls within GCP to ensure and demonstrate continuous compliance with stringent standards such as PCI DSS and 3DS Drive security infrastructure deployments across our growing environments Perform regular security assessments, audits, threat modelling and architecture design reviews to identify … market for different banks' regulators Hands-on experience taking a company through security and compliance frameworks like NIST, SOC 2, ISO 27001 and PCI DSS Experience automating security controls and compliance checks against standards and frameworks including SOC 2, ISO 27001 and PCI DSS/ ...

Data Protection and Compliance Officer

Location
Greater London, England, United Kingdom
obligations are met. The role is accountable for maintaining certification, compliance activities and reporting relating to multiple ISO standards, Cyber Essentials, Cyber Essentials Plus, PCI-DSS, NHS-DSP, NHS Evergreen Assessment, Ecovadis, UNGC, CDP, SECR, ESOS , UK GDPR, Data Protection Act 2018, PECR, privacy governance requirements, and customer … controls. Provide subject matter expertise on regulatory and certification requirements. Information Security & Cyber Compliance Coordinate annual Cyber Essentials and Cyber Essentials Plus assessments. Support PCI-DSS compliance activities and certification requirements. Coordinate annual NHS-DSP submission and external audit. Maintain security policies, standards, and awareness programmes. Assist with ...

Identity & Infrastructure Engineer (Security-Aware)

Location
Greater London, England, United Kingdom
investigate identity‐related alerts. Support access reviews, privileged access reviews and entitlement governance. Assist with audit evidence and remediation activities relating to SOX, PCI DSS, GDPR and other applicable requirements. Support incident response by providing identity information, access logs and technical assistance with containment activities. Contribute to reducing … Identity or Microsoft Sentinel. Azure Monitor and Log Analytics. Microsoft Graph API or Azure automation. Passwordless authentication, FIDO2 and passkeys. Application SSO integration. SOX, PCI DSS, GDPR or ISO 27001 environments. General Microsoft Azure administration. Qualifications and Certifications A degree in Computer Science, Cyber Security, Infrastructure Engineering ...

Security Engineer – Cloud & On-Prem (Hybrid Security)

Location
Greater London, England, United Kingdom
secure-by-default principles to day-to-day security engineering. Implement and maintain agreed security controls and technical standards. Support security requirements relating to PCI DSS, SOX, GDPR, ISO 27001 and other applicable frameworks. Assist with audit evidence gathering, control validation and remediation activities. Maintain security documentation, procedures … security services such as GuardDuty, Security Hub, IAM or CloudTrail. Experience working with an external SOC, MSSP or security service provider. Exposure to PCI DSS, SOX, GDPR, ISO 27001, CIS or NIST environments. Qualifications & Certifications A degree in Cyber Security, Computer Science, Information Technology or a related discipline ...

Head of Information Security

Location
Greater London, England, United Kingdom
Foundations, establishing centralized monitoring and alerting (via Wiz/Security Hub). Data Privacy & Compliance End-to-End Privacy: Own the GDPR and PCI-DSS compliance programmes, embedding "Privacy by Design" and data minimization directly into our delivery processes. Legal Partnership: Collaborate with Legal to manage DPAs, transfer … information security, including leadership-level responsibility Proven experience building and scaling security and privacy programmes within growing organisations Strong hands-on knowledge of GDPR, PCI-DSS, incident response, and resilience planning Experience working within cloud-first environments, ideally AWS Strong understanding of security within e-commerce, fintech ...

Cyber Risk & Security Manager

Location
Greater London, England, United Kingdom
technical levels, supporting board-level decision‐making while driving operational security improvements aligned to recognised standards such as NIST CSF, ISO 27001, DORA, PCI‐DSS, and MITRE ATT&CK. Reporting To: Director/Head of Cyber Security Location: London (Hybrid) Employment Type: Full‐Time Salary … OWASP Top 10). Oversee DLP and DDA monitoring strategies. Compliance & Regulatory Alignment Support ISMS implementation aligned with ISO 27001. Ensure alignment with GDPR, PCI‐DSS, DORA, NIST CSF, COBIT, SANS, and related frameworks. Develop security policies, SOPs, and governance documentation. Conduct IT resilience and cloud security audits. ...

Head of Security

Location
Greater London, England, United Kingdom
where some products are today outside the standard tooling. Governance, risk and compliance and vendor management Own ISO 27001, SOC 1, SOC 2 and PCI DSS compliance, the audit calendar, the compliance automation platform and the relationship with our auditors. Work with legal and the Data Protection Officer … facing those customers on security matters. Working knowledge of ISO 27001 and SOC 2, and experience of being accountable for audits and certifications. PCI DSS experience is an advantage. Practical understanding of cloud security on AWS and Azure, Kubernetes-based platforms, infrastructure as code and modern CI/ ...

Applied AI Security Architect

Location
Greater London, England, United Kingdom
teams, and DPOs to understand their security requirements and design solutions that meet European regulatory standards (GDPR, EU AI Act, DORA, NIS2, SOC 2, PCI-DSS, and national regulator expectations). Lead technical deep-dives on network architecture, EU data residency, data retention and Zero Data Retention … applies to foundation models. Experience navigating compliance frameworks relevant to European financial services and insurance (DORA, NIS2, SOC 2, PCI-DSS, and national regulators' guidance on AI/ML such as FCA/PRA, BaFin, ACPR, FINMA). A track record of leading complex, high‐stakes engagements with ...

Senior Security Analyst

Location
Greater London, England, United Kingdom
more effective, scalable and industry-leading third party security capability as Monzo grows! Delivering security assurance activities: lead and contribute to control testing, PCI DSS assessments, regulatory reviews, and internal and external audits. Evaluate evidence, identify gaps and work with teams across Monzo to see findings and remediation … your knowledge and skills. It would be great if... You’ve worked in financial services, fintech, or another highly regulated environment. You’ve supported PCI DSS, ISO 27001, SOC 2 or NIST-aligned assurance, regulatory reviews, or internal and external audits. Not ticking every box? That’s totally ...

Payment Performance Analyst

Location
Greater London, England, United Kingdom
platform change, including requirements, user acceptance testing, data validation, reconciliation testing and implementation readiness Support compliance with internal procedures, regulatory requirements, card scheme rules, PCI DSS and Bacs requirements Act as a trusted payments specialist, offering practical guidance and supporting critical incidents, regulatory change and business priorities Essential … tokenisation and digital wallets. Experience configuring or assessing fraud and transaction monitoring rules. Knowledge of payment APIs, integrations and platform change delivery. Familiarity with PCI DSS, card scheme standards and BACS requirements. Experience with Power BI or another data visualisation tool SQL, Python or similar skills used ...

CISO & Security Strategy Executive — PCI-DSS & GRC

Location
Greater London, England, United Kingdom
executive role entails governance, operations, compliance, and risk management within a complex technology environment. The ideal candidate will have significant CISO experience, especially with PCI-DSS compliance, and possess strong leadership skills. Competitive salary, benefits, and a hybrid working model are offered. #J-18808-Ljbffr ...

AI-Native Software Engineer

Location
Greater London, England, United Kingdom
working solutions. These are broad, senior engineering roles, not single-language specialist posts. This is a regulated payments environment governed by frameworks including DORA, PCI DSS, SOC 2, EMI regulations and GDPR. These frameworks shape our SDLC itself, from change control and approvals to testing evidence and audit … propose efficiency improvements that keep compliance intact. Familiarity with, or the ability to rapidly get to grips with, frameworks such as DORA, PCI DSS, SOC 2, EMI regulations and GDPR. You understand that the SDLC is constrained by these frameworks and can still deliver efficiently within it, using ...

Senior Technical Security Risk Consultant

Hiring Organisation
Sanderson Government and Defence
Location
London, United Kingdom
Employment Type
Permanent, Work From Home
Salary
£80,000
security clearance to be considered. Technical Knowledge Security frameworks including ISO 27001, NIST CSF, CIS and NCSC guidance Regulatory landscape including GDPR and PCI DSS Familiarity with HMG and NCSC standards Modern technology environments: Cloud platforms such as Azure, AWS and Google Cloud Microsoft 365 Infrastructure and network ...

Senior Cloud Security Architect

Location
Greater London, England, United Kingdom
Administrator) MS-102 (Microsoft 365 Administrator Expert) AZ-104 (Azure Administrator) AZ-305 (Azure Solutions Architect) CISSP Knowledge of security standards like CIS, NIST, PCI DSS, GDPR and Cyber Essentials Understanding compliance and regulatory requirements related to data security Experience delivering Microsoft focused pre-sales discovery engagements with ...

Senior Cybersecurity Consultant

Location
Greater London, England, United Kingdom
information security with consulting experience Deep expertise in penetration testing, vulnerability management, and threat modeling Knowledge of compliance frameworks: SOC 2, ISO 27001, GDPR, PCI-DSS Experience with cloud security (AWS Security Hub, Azure Defender, or GCP Security Command Center) CISSP, OSCP, or equivalent certification Nice to Have ...

Information Security & SOC Consultant

Location
Greater London, England, United Kingdom
stakeholders. Key Skills: Knowledge and experience with technology, security and DP related compliance, legal & regulatory frameworks and standards, including Cyber Essentials, ISO27001, PCI DSS, OWASP, GDPR etc. Knowledge and experience of the Microsoft stack. Purview experience is beneficial. Ability to demonstrate expert knowledge and understanding of information security ...

Security Architect (SC cleared)

Hiring Organisation
Sanderson Government and Defence
Location
London, United Kingdom
Employment Type
Permanent, Work From Home
experience gained as a Security Architect or in a technical cyber role working across public sector/government agencies. Expertise in: Security legislation (GDPR, PCI DSS, ICO) Frameworks (ISO 27001, NIST CSF, CIS Controls v8) HMG/NCSC policies and guidance Cloud security (AWS, Azure) Microservice architectures ...

Senior Security Architect

Location
Greater London, England, United Kingdom
Strong understanding and knowledge of Information Security risk management tools and techniques Demonstrable knowledge of cyber security frameworks, including but not limited to: ISO27001, PCI-DSS, CIS Benchmarks, {Cloud Platform} Well Architected Frameworks. Demonstrable experience of designing and implementing enterprise security technology controls and platforms, following industry best ...

Cyber Assurance Consultant (DV Cleared)

Location
London, United Kingdom
JSP490 Working with system secure design MOD/GDS Secure by Design Principles Supplier Chain Assurance and Risks. Security related legislation (e.g. GDPR, PCI DSS, ICO requirements). Security Control Frameworks such as ISO 27001, NIST CSF and CIS Controls v8. HMG, NPSA and NCSC security policies, standards ...

Cyber Security Controls Tester (Assurance)

Location
City Of London, England, United Kingdom
control testing methodologies. Experience working with technical design documentation, including HLDs, LLDs, and controls catalogues. Knowledge of relevant legislation and regulatory requirements, including: GDPR PCI DSS ICO requirements Familiarity with HMG and NCSC security policies, standards, and guidance. Excellent analytical, investigative, and problem-solving skills. Strong stakeholder engagement ...

Security Consultant

Hiring Organisation
Anson Mccade
Location
Central London, London, United Kingdom
Employment Type
Permanent, Work From Home
solutions. Advise clients on security risk, regulatory compliance and risk mitigation strategies. Apply recognised security frameworks and standards, including ISO 27001, NIST, GDPR and PCI-DSS. Identify vulnerabilities and weaknesses within system and solution architectures. Assess security risks and communicate findings clearly to both technical and non-technical stakeholders. ...