skillsto interpret data and provideinsights into threatsfacing the bank. Awareness of common Cyber Incidents and Security breaches(OWASP). Desirable Knowledge or experience in SOC2, ISO 27K, PCI DSS and GDPR. Previous experience working withinan organisations Cyber Incident Responsefunction. Hands on experience with Information Securitytools. Please contact me if you More ❯
skillsto interpret data and provideinsights into threatsfacing the bank. Awareness of common Cyber Incidents and Security breaches(OWASP). Desirable Knowledge or experience in SOC2, ISO 27K, PCI DSS and GDPR. Previous experience working withinan organisations Cyber Incident Responsefunction. Hands on experience with Information Securitytools. Please contact me if you More ❯
to-date and effective. ️ Is This You? CISSP, CISA, or CISM certification is strongly recommended, but not required. ISO 27001/27701/42001, SOC-2, PCI DSS, and GDPR knowledge, experience, and qualifications are highly desirable. At least 5 years of relevant industry experience in information security, with More ❯
preferably with a focus on acquisition integration. Strong knowledge of regulatory compliance requirements, risk management frameworks, including ISO 27001, NIST. Experience with SOC1/2, GDPR, and privacy frameworks. Proficiency in information security tools, techniques, and controls. Experience with metrics and KPIs to measure and track information security risk. More ❯
protection, DLP, SIEM). Hands-on expertise with troubleshooting hardware, software, and SaaS issues. Security Knowledge: Familiarity with security frameworks and standards such as SOC2, ISO 27001, GDPR, or NIST. Experience with incident response and risk management. Knowledge of Zero Trust architectures and security-first IT practices. More ❯
certifications and a broad spectrum of cybersecurity services that meet the needs of companies required to certify or attest to CMMC, PCI DSS, HITRUST, SOC2 Type II, ISO 27001, PCI PIN, PCI P2PE, PCI TSP, PA DSS, CSA STAR, CMMC, NIS-2, GDPR, SWIFT, FedRAMP and numerous More ❯
Qualifications and experience/Relevant Information Security certification such as CISSP, CISA, CISM, GSEC is advantageous/Familiar with regulatory and compliance standards; ISO27001, SOC2, PCI DSS/2+ years experience working as an information security professional within a medium to large sized global organisation/Solid understanding of security More ❯
with enterprise organizations. Deep understanding of the cybersecurity landscape, vulnerability management, and security testing methodologies. Experience with enterprise security programs, compliance frameworks (ISO 27001, SOC2, GDPR, etc.), and risk management. Strong business acumen and ability to translate technical concepts into business value for C-level executives. Excellent … commission. 26 days of annual leave and Bank Holidays Top-notch Private Healthcare and Health Cash Plan Hybrid working model Initial home office budget ️ 2-month work abroad policy Great training and yearly learning budget Employer pension scheme ️ Enhanced maternity pay Social activities and team outings Referral bonus Employee More ❯
compliance with DORA's outsourcing requirements , including due diligence, contract oversight, and continuity planning. Audit & Assurance: Participate in internal/external audits (ISO 27001, SOC2) and regulatory examinations, focusing on third-party and outsourcing compliance. Remediate gaps in processes or documentation. Risk Management: Maintain the enterprise risk More ❯
london, south east england, United Kingdom Hybrid / WFH Options
Natcap
/security projects in fast-paced environments Experience with cloud platforms (AWS, GCP) and tools like Jira Knowledge of ISO 27001 and/or SOC2 certification processes Excellent communication skills, including reporting to senior stakeholders A collaborative, problem-solving mindset Nice to Have: Direct experience supporting ISO More ❯
the development and implementation of GRC strategies for AWS cloud environments. Ensure compliance with industry standards and regulatory requirements (e.g., GDPR, HIPAA, PCI-DSS, SOC2). Develop and maintain policies, procedures, andcontrols to manage risks and ensure compliance. Conduct regular risk assessments and audits of AWS cloud infrastructure. Implement More ❯
the development and implementation of GRC strategies for AWS cloud environments. Ensure compliance with industry standards and regulatory requirements (e.g., GDPR, HIPAA, PCI-DSS, SOC2). Develop and maintain policies, procedures, andcontrols to manage risks and ensure compliance. Conduct regular risk assessments and audits of AWS cloud infrastructure. Implement More ❯
the development and implementation of GRC strategies for AWS cloud environments. Ensure compliance with industry standards and regulatory requirements (e.g., GDPR, HIPAA, PCI-DSS, SOC2). Develop and maintain policies, procedures, andcontrols to manage risks and ensure compliance. Conduct regular risk assessments and audits of AWS cloud infrastructure. Implement More ❯
restore trust in internet businesses by enabling companies to improve and prove their security.From our early days automating security monitoring for compliance standards like SOC2, HIPAA and ISO 27001 to creating the world's leading Trust Management Platform, our vision remains unchanged. Now more than ever, making More ❯
restore trust in internet businesses by enabling companies to improve and prove their security.From our early days automating security monitoring for compliance standards like SOC2, HIPAA and ISO 27001 to creating the world's leading Trust Management Platform, our vision remains unchanged. Now more than ever, making More ❯
information security policies, standards, and guidance in collaboration with stakeholders. Ensure compliance with industry standards such as NIST CSF, PCI-DSS, ISO 27001, andSOC 2. Coordinate responses to internal and external audits and liaise with key stakeholders. Develop and deliver security policy awareness and training programs. Assess policy More ❯
solutions. • Stakeholder Management: Exceptional executive presence, with experience advising public-sector and Fortune-level clients. • Governance & Compliance: Deep understanding of GDPR/UK GDPR, SOC2, ISO27001, and ethical-AI frameworks. Preferred Qualifications • Certifications: Azure Solutions Architect Expert, CISSP, or equivalent. • Experience with AI policy bodies, standards organizations, or government advisory More ❯
solutions. • Stakeholder Management: Exceptional executive presence, with experience advising public-sector and Fortune-level clients. • Governance & Compliance: Deep understanding of GDPR/UK GDPR, SOC2, ISO27001, and ethical-AI frameworks. Preferred Qualifications • Certifications: Azure Solutions Architect Expert, CISSP, or equivalent. • Experience with AI policy bodies, standards organizations, or government advisory More ❯
our overall security posture. What You’ll Do: Monitor threats and respond to incidents Run vulnerability scans and support remediation Help with compliance (ISO27001, SOC2, FCA) Collaborate with DevOps to embed security in our pipeline Raise security awareness across the company What You Bring: Experience in a … AWS/Azure), firewalls Knowledge of security frameworks and regulations (FCA, GDPR) Certs like Security+, CEH, or CISSP are a plus Perks: Hybrid work (2–3 days in-office) Learning budget + paid certs Bonus, pension, private health, and more 🚀 Ready to protect the future of fintech? Apply now More ❯
our overall security posture. What You’ll Do: Monitor threats and respond to incidents Run vulnerability scans and support remediation Help with compliance (ISO27001, SOC2, FCA) Collaborate with DevOps to embed security in our pipeline Raise security awareness across the company What You Bring: Experience in a … AWS/Azure), firewalls Knowledge of security frameworks and regulations (FCA, GDPR) Certs like Security+, CEH, or CISSP are a plus Perks: Hybrid work (2–3 days in-office) Learning budget + paid certs Bonus, pension, private health, and more 🚀 Ready to protect the future of fintech? Apply now More ❯
london, south east england, United Kingdom Hybrid / WFH Options
Explore Group
our overall security posture. What You’ll Do: Monitor threats and respond to incidents Run vulnerability scans and support remediation Help with compliance (ISO27001, SOC2, FCA) Collaborate with DevOps to embed security in our pipeline Raise security awareness across the company What You Bring: Experience in a … AWS/Azure), firewalls Knowledge of security frameworks and regulations (FCA, GDPR) Certs like Security+, CEH, or CISSP are a plus Perks: Hybrid work (2–3 days in-office) Learning budget + paid certs Bonus, pension, private health, and more 🚀 Ready to protect the future of fintech? Apply now More ❯
and Improve Compliance Programmes: manage internal control evaluations and testing to ensure adherence. Ensure compliance with industry standards such as DORA, ISO 27001, andSOC 2. Coordinate responses to internal and external audits, and facilitate independent security assessments, including third-party penetration tests. Develop and Implement Security Policies: create … answering complex compliance questionnaires, ideally from Banks or highly regulated organisations Experience in developing and implementing information security policies, standards and procedures Completed a SOC2 or ISO27001 certification process for at least two different organisations Experience implementing and managing a GRC automation tool Have familiarity with security More ❯
understanding of cloud and application security, as well as infrastructure and network security, particularly within AWS environments. Hands-on experience with ISO 27001 or SOC2 implementations and ongoing maintenance. Knowledge of payment security standards such as PCI DSS. Start-up or FinTech experience. This is an exceptional More ❯
success in developing and closing enterprise deals within data and analytics consulting. Technical Expertise: Strong knowledge of data governance, security, and compliance (GDPR,HIPAA, SOC2). Expertise in AWS, Azure, GCP, Snowflake, Databricks, and big data processing frameworks. Proficiency in SQL, Python, Scala, Java, Spark, and data More ❯
Lead and manage internal IT systems, infrastructure, and information security practices. Oversee compliance with recognised standards such as GDPR , ISO27001:2022 , Cyber Essentials , andSOC2 Type II . Coordinate audit readiness, compile evidence, liaise with auditors, and address any gaps or risks. Collaborate with engineering teams to embed secure coding More ❯