secure configurations including CUI/CDI. Advanced understanding of IT infrastructure, including servers, storage, and virtualization. Familiarity with cloud security (Azure, AWS, etc.). Knowledge of compliance frameworks like PCIDSS, HIPAA, SOC 2. Proficiency with Windows, Linux, macOS, and network protocols. Understanding threat intelligence platforms and attack mitigation techniques. Strong problem-solving skills. Certifications: CISSP, CEH, Security+ More ❯
Birmingham, England, United Kingdom Hybrid / WFH Options
Ampa Holdings LLP
emerging threats. What you will need: Previously led teams of Information Security professionals. Depth of knowledge of Information Security standards, tools and processes. Good understanding of GDPR, COBIT, ISO27001, PCIDSS, Cyber Essentials (including Plus) and risk management frameworks. Familiarity with industry leading security products and solutions. Practical, real-life and hands-on experience of security technologies. Knowledge More ❯
and security best practice (ISO27001, NIST CSF, Cyber Essentials, OWASP). You’ll have demonstrable knowledge and adherence to data protection legislation and regulatory requirements (e.g. GDPR, FCA SYSC, PCIDSS), as well as extensive experience and understanding of security analysis tools, defensive technologies and other security technologies (e.g. SIEM, VAS, IDS/IPS, Firewalls, IAM, NAC, patch More ❯
Leicester, England, United Kingdom Hybrid / WFH Options
McCabe & Barton
role in ensuring the systems, suppliers, and people comply with security standards and regulations. From assessing technical controls and supplier risks to supporting incident response and contributing to the PCI-DSS and ISO 27002:2022 compliance, this is a role where you’ll make a visible impact. Candidate Qualifications and Skills Experience in Financial Services: Proven background working … In-depth knowledge of cybersecurity principles, risk management methodologies, and best practices to protect sensitive data and systems. Regulatory Framework Proficiency: Demonstrated experience with compliance frameworks, including ISO 27002, PCI-DSS, and GDPR, ensuring adherence to industry standards. Threat and Cloud Security Knowledge : Strong awareness of current threat landscapes and familiarity with cloud security principles (experience with Azure More ❯
Birmingham, England, United Kingdom Hybrid / WFH Options
Kerv Digital for Digital Transformation
databases, graph databases, web APIs, etc Microsoft Fabric exposure Data Governance tools (e.g. Microsoft Purview) Master Data Management tools (e.g. CluedIn) Appreciation of information security standards such as ISO27001, PCI-DSS, Cyber Essentials Azure Infrastructure and Networking Azure DevOps, Git, ARM/Bicep, and building CI/CD pipelines Desirable experience: Integration to D365 and working knowledge of More ❯
Broad technical knowledge of cyber security controls demonstrated by attainment of appropriate qualifications e.g. CISSP, ISO27001 Lead Implementor or relevant SANS GIAC or equivalent Knowledge of the NIST framework, PCIDSS, GDPR and NIS as well as NCSC cyber guidance. Experience working in an agile delivery environment would be highly advantageous. Specific cyber knowledge and demonstrable experience in More ❯
Birmingham, England, United Kingdom Hybrid / WFH Options
Ampa Group
to senior management and the board. What you will need: Leadership experience managing Information Security teams. Deep knowledge of security standards, tools, and processes. Understanding of GDPR, COBIT, ISO27001, PCIDSS, Cyber Essentials, and risk frameworks. Hands-on experience with security technologies and products. Knowledge of Business Continuity Management and crisis response. Membership or qualification in IISP or More ❯
key risks and control weaknesses, providing practical and strategic recommendations for remediation. Evaluate compliance with internal policies, industry best practices, and regulatory requirements (e.g., FCA, PRA, GDPR, ISO 27001, PCI-DSS). Collaborate with business and IT stakeholders to understand operational processes and system architecture. Prepare detailed audit reports and present findings to senior management. Support external auditors More ❯
your existing skills while developing new ones, contributing to the strategic security objectives of the Company and ensuring adherence to critical accreditations, including ISO 27001, GDPR, Cyber Essentials, and PCI DSS. The successful candidate will demonstrate: Strong analytical skills with a meticulous approach to identifying and resolving security issues. Excellent verbal and written communication abilities, with a knack for … expertise in information security. Happy to travel occasionally to other sites as required. Desirable Experience: Demonstrable expertise in external audit, compliance, and security processes (ISO27001, GDPR, Cyber Essentials and PCIDSS). Microsoft accreditation or other recognised certifications (e.g. Microsoft Learning, CISA, CISM, CRISC, CCSP) would be very beneficial. Benefits: £25,000 - £35,000 salary depending on experience. More ❯
Birmingham, England, United Kingdom Hybrid / WFH Options
Kerv Digital for Digital Transformation
for customer-readiness SQL Azure, Synapse Analytics (dataflows, Jupyter notebooks, on-demand SQL), Databricks, ADF Power BI, DAX, data flows SSIS Appreciation of information security standards such as ISO27001, PCI-DSS or Cyber Essentials BPSS clearance will be required on start Desirable experience: At least 3 years of public sector experience Azure data certifications (DP-203, DP More ❯
Birmingham, England, United Kingdom Hybrid / WFH Options
Turnitin
Responsibilities: Maintain compliance tracking capabilities to help ensure adherence with Turnitin’s security program and industry standards such as NIST CSF, NIST 800-53, SOC 2, TX-RAMP and PCI DSS. Conduct risk and compliance assessments, audits, and risk evaluations to identify potential risk and compliance gaps. Lead preparation and audit activities required to maintain our SOC 2 Type … Compliance. Professional certification such as CCSK, AWS Cloud Practitioner, or other related industry certification. Familiarity with cybersecurity frameworks and regulatory standards such as NIST, SOC 2, TX-RAMP, and PCI DSS. Familiarity of risk management and security best practices. Experience with assessing security controls, risk mitigation strategies, and audit procedures. Understanding of concepts related to AWS Cloud Infrastructure and More ❯
Solihull, England, United Kingdom Hybrid / WFH Options
GIOS Technology
Hybrid) Role Description: Job Summary: As a QSA or ISA, you will be responsible for conducting formal assessments of organizations' compliance with the PaymentCardIndustryDataSecurityStandard (PCIDSS). You will evaluate security controls, identify gaps, and provide guidance to help organizations achieve and maintain compliance. This role requires deep technical knowledge, strong communication skills … and a commitment to upholding the integrity of the PCIDSS program. Key Responsibilities: • Conduct PCIDSS assessments for merchants and service providers. • Review and validate security controls, policies, and procedures. • Perform on-site inspections, interviews, and technical testing. • Document findings and prepare detailed Reports on Compliance (RoC) and Attestations of Compliance (AoC). • Provide remediation … or compliance. For ISA: • Employed by a PCI SSC-registered ISA Sponsor Company. • Completed ISA training and certification through PCI SSC. • Strong understanding of internal security controls and PCIDSS requirements. Preferred Skills: • In-depth knowledge of network security, encryption, firewalls, and access control. • Familiarity with cloud security and modern IT architectures. • Strong analytical and problem More ❯
Hybrid Role Description: Job Summary: As a QSA or ISA, you will be responsible for conducting formal assessments of organizations' compliance with the PaymentCardIndustryDataSecurityStandard (PCIDSS). You will evaluate security controls, identify gaps, and provide guidance to help organizations achieve and maintain compliance. This role requires deep technical knowledge, strong communication skills … and a commitment to upholding the integrity of the PCIDSS program. Key Responsibilities: Conduct PCIDSS assessments for merchants and service providers. Review and validate security controls, policies, and procedures. Perform on-site inspections, interviews, and technical testing. Document findings and prepare detailed Reports on Compliance (RoC) and Attestations of Compliance (AoC). Provide remediation … or compliance. For ISA: Employed by a PCI SSC-registered ISA Sponsor Company. Completed ISA training and certification through PCI SSC. Strong understanding of internal security controls and PCIDSS requirements. Preferred Skills: In-depth knowledge of network security, encryption, firewalls, and access control. Familiarity with cloud security and modern IT architectures. Strong analytical and problem More ❯
Umbrella Company for this role. Key Requirements: - As a QSA you will be responsible for conducting formal assessments of organizations' compliance with the PaymentCardIndustryDataSecurityStandard (PCIDSS). - You will evaluate security controls, identify gaps, and provide guidance to help organizations achieve and maintain compliance. - This role requires deep technical knowledge, strong communication skills … and a commitment to upholding the integrity of the PCIDSS program. Key Responsibilities: - Conduct PCIDSS assessments for merchants and service providers. - Review and validate security controls, policies, and procedures. - Perform onsite inspections, interviews, and technical testing. - Document findings and prepare detailed Reports on Compliance (RoC) and Attestations of Compliance (AoC). - Provide remediation guidance … GIAC). - Minimum of 5 years of experience in IT security, audit, or compliance. - Completed ISA training and certification through PCI SSC. - Strong understanding of internal security controls and PCIDSS requirements. Certifications (Preferred): - CISSP, CISA, CISM, CRISC, CEH, OSCP, or similar. - PCIDSS QSA/ISA certification (mandatory for role). All of our More ❯
Coventry, England, United Kingdom Hybrid / WFH Options
Sainsbury's Supermarkets Ltd
General Controls desirable Be highly organised and able to coordinate expected outputs from different stakeholders Familiar with key techniques and industry frameworks/regulations such as NIST-CSF, ISO27001, PCI-DSS, GDPR, and IT General Controls Pro-active with upcoming industry changes and ability to implement where necessary Be able to proactively identify and own any issues, and … the ITGC, GRC, Data Governance and Infosec teams who have a wide array of skills and knowledge Extensive support and training materials available relating to NIST, IT General Controls, PCI-DSS and GDPR Other resources as required We are committed to being a truly inclusive retailer, so you’ll be welcomed whoever you are and wherever you work. … General Controls desirable Be highly organised and able to coordinate expected outputs from different stakeholders Familiar with key techniques and industry frameworks/regulations such as NIST-CSF, ISO27001, PCI-DSS, GDPR, and IT General Controls Pro-active with upcoming industry changes and ability to implement where necessary Be able to proactively identify and own any issues, and More ❯
support to business units on security best practice and control implementation Hands-on experience with security tooling (EDR, vulnerability scanning, access control) Familiarity with Security frameworks such as NIST, PCI-DSS, and GDPR Experience working with Microsoft environments (O365, Azure) Clear communicator, able to engage with both IT and non-technical teams Full UK driving licence required due More ❯
security best practice and control implementation What We’re Looking For Hands-on experience with security tooling (EDR, vulnerability scanning, access control) Familiarity with Security frameworks such as NIST, PCI-DSS, and GDPR Experience working with Microsoft environments (O365, Azure) Clear communicator, able to engage with both IT and non-technical teams Full UK driving licence required due More ❯
Redditch, England, United Kingdom Hybrid / WFH Options
Airlife Ecuador
and server operations. Maintain and administer our cyber security policies, proactively safeguarding networks and systems through risk mitigation and patching. Lead cyber security initiatives ensuring ISO, Cyber Essentials and PCI accreditations are maintained and upheld. Ensure network and system security through patching and proactive industry awareness. Troubleshoot and resolve platform issues for internal and external customers. Lead disaster recovery More ❯
Stafford, England, United Kingdom Hybrid / WFH Options
JR United Kingdom
Hands-on technical experience securing operating systems and using security tools. Experience conducting security investigations. Knowledge of standard information security practices. Awareness of developments in security technologies. Understanding of PCIDSS current standards. Excellent communication and documentation skills, with high attention to detail. Strong organizational skills and ability to meet deadlines. Pragmatic approach to governance and risk management. More ❯
Stoke-on-Trent, England, United Kingdom Hybrid / WFH Options
JR United Kingdom
on technical experience securing operating systems and security tools. Experience conducting security investigations. Knowledge of standard information security practices. Understanding of current security technologies and their applications. Awareness of PCIDSS current standards. Excellent communication, documentation skills, and high attention to detail. Strong organizational skills and ability to meet deadlines. Pragmatic approach to governance and risk management. Flexible More ❯
Northampton, England, United Kingdom Hybrid / WFH Options
Ventula Consulting
controls, and business continuity plans to ensure critical information is protected in line with cybersecurity best practices and data protection regulations. The ideal candidate will have specific knowledge of PCIDSS, and experience helping organizations achieve PCIDSS compliance, ideally working with third-party experts. The role requires the ability to interpret technical designs, apply information … to build relationships and negotiate effectively. Experience presenting findings to senior stakeholders. Recognized cybersecurity qualifications such as CISA, CISMP, CISM, or equivalent. Knowledge of industry frameworks like ISO27001 and PCI DSS. This role is based in Northampton and follows a hybrid working model, averaging 2 days on-site per week. The salary range is £50,000 to More ❯
Stafford, England, United Kingdom Hybrid / WFH Options
JR United Kingdom
problem solving skills. Ability to manage multiple audits simultaneously. Ability to evaluate the effectiveness of policies and procedures. Knowledge of relevant security frameworks such as ISO9001, NIST, ISO27001 and PCI DSS. Strong written communication and documentation skills, with the ability to produce clear, concise and detailed reports. Ability to clearly convey information to diverse stakeholders. Confident in presenting ideas More ❯
Stoke-on-Trent, England, United Kingdom Hybrid / WFH Options
bet365
experience securing operating systems and using security tools. Experience conducting security investigations. Knowledge of standard information security practices. Awareness of developments in security technologies and their applications. Understanding of PCIDSS at the current version. Excellent communication, documentation skills, and high attention to detail. Strong organizational skills and ability to meet deadlines. Pragmatic approach to governance and risk More ❯
field, or equivalent certifications or experience Extensive experience in technology and operations, preferably within the financial services or banking industry. Good understanding of security protocols and compliance standards (e.g., PCI-DSS, CIS, NIST). Experience in a Data Centre Operations or other similar critical operations role. Strong and demonstrable process management and development experience in a live operational More ❯
field, or equivalent certifications or experience Extensive experience in technology and operations, preferably within the financial services or banking industry. Good understanding of security protocols and compliance standards (e.g., PCI-DSS, CIS, NIST). Experience in a Data Centre Operations or other similar critical operations role. Strong and demonstrable process management and development experience in a live operational More ❯