london, south east england, united kingdom Hybrid/Remote Options
PCI Pal
WELCOME TO PCI PAL PCI Pal is a leading provider of SaaS solutions that empower companies to take payments securely, adhere to strict industry governance, and remove their business from the significant risks posed by non-compliance and data loss. We are integrated and resold by some of the world's leading business communications vendors, as well as … major payment service providers. We are currently looking for a GRC & Audit Lead to join our UK team. THE OPPORTUNITY: PCI Pal's Information Security team requires a dynamic and proactive individual to lead all Governance, Risk and Compliance (GRC), audit requirements for our team and the company. We are an agile and innovative team and are responsible for … that GRC and audit requirements are suitably managed, maintained and matured. YOU WILL BE RESPONSIBLE FOR: Managing, maintaining, and maturing the already established audit lifecycles for the following frameworks: PCIDSS v4.0, ISO 27001:2022, ISO 9001:2015, ISO 14001:2015, Cyber Essentials, Cyber Essentials Plus, SOC2 Type 1 – 3 & HIPAA Working in close collaboration with other team More ❯
City of London, London, United Kingdom Hybrid/Remote Options
McCabe & Barton
80k base + £5k car allowance and other benefits. What You'll Do Assess compliance with internal security policies and industry standards (eg, ISO/IEC 27001/2, PCI-DSS). Conduct supplier risk assessments and third-party due diligence. Support vulnerability assessments, incident investigations, and operational resilience activities. Monitor the effectiveness of security controls to ensure … analysis. A knowledge of the data protection act (UK GDPR) and how it applies to information and cyber security A knowledge of cardpayment system security as defined in PCI-DSS V4.0 Qualifications A security certification such as CISM, CISMP, CISSP or equivalent would be desirable. A relevant IT or security-based degree or equivalent practical experience. More ❯
80k base + £5k car allowance and other benefits. What You'll Do Assess compliance with internal security policies and industry standards (eg, ISO/IEC 27001/2, PCI-DSS). Conduct supplier risk assessments and third-party due diligence. Support vulnerability assessments, incident investigations, and operational resilience activities. Monitor the effectiveness of security controls to ensure … analysis. A knowledge of the data protection act (UK GDPR) and how it applies to information and cyber security A knowledge of cardpayment system security as defined in PCI-DSS V4.0 Qualifications A security certification such as CISM, CISMP, CISSP or equivalent would be desirable. A relevant IT or security-based degree or equivalent practical experience. More ❯
London, South East, England, United Kingdom Hybrid/Remote Options
Robert Half
practice is a part of our overall Technology Consulting Division. The Cyber Security practice includes coverage of focused domains such as Technical Security Assessments, Assessment against cyber security frameworks, PCIDSS assessments, Cloud Security Reviews, Cyber Security Audits, Cyber Security Strategy and Advisory work. Cyber Security is a high-growth area for Protiviti globally. You will be part … other clients. Do Your Talents Include the Following? In-depth knowledge and understanding of industry cyber security frameworks such as ISO 27001, NIST CSF, NIS 2 and/or PCI DSS. Hands-on experience in implementing or assessing against these frameworks is a must-have requirement. Demonstrated ability to lead, manage and develop teams and deliver cybersecurity engagements to … experience, preferably in consulting and/or professional services. Demonstrable track record of continual growth across various roles. Relevant industry certifications such as CISSP, CISM, CISA, ISO 27001 LA, PCIDSS QSA are strongly preferred Offices - The Shard, London - Hybrid/Remote Working £100k-126k, Annual performance bonus & benefits Robert Half Ltd acts as an employment business for More ❯
their main base of operations here, in the UK, as an experienced GRC IT Security Analyst ? Do you have experience in the GRC IT Security space with audits, ISO27001, PCIDSS, SOC2, NIST & current compliance regulations? (Some, or all is fine!) If so & you are looking to expand your IT Security career, meet new team members, embrace new … you’ll already know what the role will entail, but see below for things we’ll need to see in order to be considered: - Knowledge and experience of ISO27001, PCIDSS, SOC2, NIST and CIS benchmarking - Knowledge and experience achieving and maintaining compliance with relevant legislation, such as DPA, GDPR - Knowledge of cloud environments (AWS, Azure) & Windows, &/ More ❯
Central London, London, England, United Kingdom Hybrid/Remote Options
hireful
their main base of operations here, in the UK, as an experienced GRC IT Security Analyst Do you have experience in the GRC IT Security space with audits, ISO27001, PCIDSS, SOC2, NIST & current compliance regulations? (Some, or all is fine!) If so & you are looking to expand your IT Security career, meet new team members, embrace new … you’ll already know what the role will entail, but see below for things we’ll need to see in order to be considered: - Knowledge and experience of ISO27001, PCIDSS, SOC2, NIST and CIS benchmarking - Knowledge and experience achieving and maintaining compliance with relevant legislation, such as DPA, GDPR - Knowledge of cloud environments (AWS, Azure) & Windows, &/ More ❯
with their main base of operations here, in the UK, as an experienced GRC Security Analyst ? Do you have experience in the GRC Security space with audits, auditors, ISO27001, PCIDSS, SOC2, NIST & current compliance regulations? (Some, or all is fine!) If so & you are looking to expand your IT Security career, meet new team members, embrace new … you’ll already know what the role will entail, but see below for things we’ll need to see in order to be considered: - Knowledge and experience of ISO27001, PCIDSS, SOC2, NIST and CIS benchmarking - Knowledge and experience achieving and maintaining compliance with relevant legislation, such as DPA, GDPR - Knowledge of cloud environments (AWS, Azure) & Windows, &/ More ❯
Central London, London, England, United Kingdom Hybrid/Remote Options
hireful
with their main base of operations here, in the UK, as an experienced GRC Security Analyst Do you have experience in the GRC Security space with audits, auditors, ISO27001, PCIDSS, SOC2, NIST & current compliance regulations? (Some, or all is fine!) If so & you are looking to expand your IT Security career, meet new team members, embrace new … you’ll already know what the role will entail, but see below for things we’ll need to see in order to be considered: - Knowledge and experience of ISO27001, PCIDSS, SOC2, NIST and CIS benchmarking - Knowledge and experience achieving and maintaining compliance with relevant legislation, such as DPA, GDPR - Knowledge of cloud environments (AWS, Azure) & Windows, &/ More ❯
City Of London, England, United Kingdom Hybrid/Remote Options
Hamilton Barnes 🌳
suppliers to ensure timely delivery Produce and maintain documentation including roadmaps, risk logs, and reports Ensure all work aligns with frameworks such as Cyber Essential+, ISO 27001, GDPR, and PCIDSS Report progress and risks to senior stakeholders Champion a culture of continuous improvement and security awareness Skills/Must Haves: 5+ years’ experience managing IT or security … stakeholder management and communication skills Experience delivering projects in Agile or hybrid environments Familiarity with Jira, Confluence, or MS Project Understanding of compliance frameworks such as ISO 27001, GDPR, PCIDSS Nice to have: experience with hospitality systems (POS, PMS, or guest management) Contract Details: Duration: 6 months Determination: Inside IR35 Location: London (Hybrid/Remote More ❯
City of London, London, United Kingdom Hybrid/Remote Options
TDA TELECOM LIMITED
Design comprehensive security architectures across network, endpoint, identity, cloud, and data protection domains. Ensure alignment with industry frameworks such as NIST, ISO, and CIS, and compliance with regulatory standards (PCI-DSS, HIPAA, etc.). Produce proposals, Bills of Materials (BOMs), high-level designs, and Statements of Work (SOWs). Vendor & Partner Engagement Work with leading vendors (Palo Alto More ❯
City of London, London, United Kingdom Hybrid/Remote Options
Acumin
IAM, encryption, API security, and application security. Experience performing threat modelling, security risk assessments, and control design validation. In-depth knowledge of industry standards and frameworks (ISO27001, NIST CSF, PCIDSS, CIS Controls). Minimum of 5 years’ experience in information security roles, ideally within financial services or large-scale digital environments. Professional certifications such as CISSP, SABSA More ❯
IAM, encryption, API security, and application security. Experience performing threat modelling, security risk assessments, and control design validation. In-depth knowledge of industry standards and frameworks (ISO27001, NIST CSF, PCIDSS, CIS Controls). Minimum of 5 years’ experience in information security roles, ideally within financial services or large-scale digital environments. Professional certifications such as CISSP, SABSA More ❯
City, London, United Kingdom Hybrid/Remote Options
The Bridge IT Recruitment
Professional certifications such as GSEC, CISSP, OSCP, CISA, CompTIA Sec+, or equivalent. Knowledge of ITIL processes and cyber governance frameworks. Experience with scripting, automation, and digital forensics. Awareness of PCIDSS, SDLC, and network analysis principles. This is a great opportunity to join a leading organisation, this role is mostly remote with occasional travel to London, please note More ❯
London, Fleet Street, United Kingdom Hybrid/Remote Options
The Bridge IT Recruitment
Professional certifications such as GSEC, CISSP, OSCP, CISA, CompTIA Sec+, or equivalent. Knowledge of ITIL processes and cyber governance frameworks. Experience with scripting, automation, and digital forensics. Awareness of PCIDSS, SDLC, and network analysis principles. This is a great opportunity to join a leading organisation, this role is mostly remote with occasional travel to London, please note More ❯
compliance: Build security-by-design into solution proposals; incorporate best practices for data protection, vulnerability management, IAM, SOC/IR readiness, and regulatory requirements relevant to SMBs (e.g., HIPAA, PCI-DSS, GDPR nuances as applicable). Customer engagement and discovery: Conduct customer workshops, requirements gathering, current-state assessments, risk analyses, ROI/tco analysis, and roadmaps that translate More ❯
City of London, London, United Kingdom Hybrid/Remote Options
TECEZE
compliance: Build security-by-design into solution proposals; incorporate best practices for data protection, vulnerability management, IAM, SOC/IR readiness, and regulatory requirements relevant to SMBs (e.g., HIPAA, PCI-DSS, GDPR nuances as applicable). Customer engagement and discovery: Conduct customer workshops, requirements gathering, current-state assessments, risk analyses, ROI/tco analysis, and roadmaps that translate More ❯
City of London, London, United Kingdom Hybrid/Remote Options
ECS
Security Architect, you will be responsible for: Design secure AWS landing zones using IAM, KMS, GuardDuty, and WAF. Conduct risk assessments and ensure compliance with ISO 27001, GDPR, and PCI-DSS. Embed and validate security controls throughout migrations. Architect IAM policies and implement Zero Trust principles. Automate security in CI/CD pipelines with AWS Config and IaC tools. More ❯
ll have ● Minimum of 5 years experience in leading and implementing security measures: protocols, datasecurity, cyber and information security ● Qualifications: Certification/experience in ISO 27001, GDPR, NIST, PCIDSS, SOX ● Knowledge of GRC platforms; strong analytical and communication skills ● Governance qualifications valued ● Knowledge of regulations with a deep understanding of GDPR and other data protection laws More ❯
City of London, London, United Kingdom Hybrid/Remote Options
Travelfusion
ll have ● Minimum of 5 years experience in leading and implementing security measures: protocols, datasecurity, cyber and information security ● Qualifications: Certification/experience in ISO 27001, GDPR, NIST, PCIDSS, SOX ● Knowledge of GRC platforms; strong analytical and communication skills ● Governance qualifications valued ● Knowledge of regulations with a deep understanding of GDPR and other data protection laws More ❯
What You Bring Deep hands-on expertise across EDR, SIEM, NAC, MFA, PAM, and cloud security environments. Proven experience with security frameworks such as ISO 27001, NIST, CIS, and PCI-DSS. Certifications like CISSP, CPSA, or Palo Alto Certified Security Operations Professional. A collaborative mindset, a passion for innovation, and the confidence to take the lead in a high More ❯
City of London, London, United Kingdom Hybrid/Remote Options
DVF Recruitment
What You Bring Deep hands-on expertise across EDR, SIEM, NAC, MFA, PAM, and cloud security environments. Proven experience with security frameworks such as ISO 27001, NIST, CIS, and PCI-DSS. Certifications like CISSP, CPSA, or Palo Alto Certified Security Operations Professional. A collaborative mindset, a passion for innovation, and the confidence to take the lead in a high More ❯