other cloud platforms (AWS, GCP). Experience with security tools like OWASP ZAP, Burp Suite, etc. Familiarity with Jira, Confluence, or similar tools. Knowledge of compliance frameworks (e.g., GDPR, HIPAA, ISO 27001, ISO 13485). Background in start-up or scale-up environments is a plus. Key Attributes: Strong collaboration skills. Eagerness to learn and upskill in new technologies. Proactive More ❯
etc.) - Deep knowledge of Kubernetes, Docker, Kafka, and Java backend systems. - Experience with CI/CD, Terraform/CloudFormation, and automated deployments. - Familiarity with industry standards such as GDPR, HIPAA, and ISO 27001 is a plus. - Eligible for or already holds UK Security Clearance. Why Apply? - Leadership role with technical ownership of high-impact cloud projects. - Remote-first working model More ❯
London, South East, England, United Kingdom Hybrid / WFH Options
Circle Recruitment
Cortex Data Lake, and Cortex XSOAR . Solid understanding of cloud security , network/system security fundamentals, and scripting for automation. Desirable: Familiarity with compliance and security standards (GDPR, HIPAA, NIST). Familiarity with Infrastructure as Code Role/responsibilities: Join the Monitoring and Integration Platform (MIP) team within Technology Services. Be responsible for all infrastructure, end user computing, onsite More ❯
Google Cloud services (Compute Engine, Storage, IAM, VPC, Kubernetes, Databases) for isolated and highly secure environments. Implement and enforce robust security, governance, and compliance controls (e.g., NIST, FedRAMP, ITAR, HIPAA, GDPR, or similar frameworks). Troubleshoot and optimize workloads in mission-critical, resource-constrained, or disconnected environments. Deliver hands-on technical workshops, knowledge transfer sessions, and ongoing support for secure More ❯
XDR, Cortex Data Lake, and Cortex XSOAR.Solid understanding of cloud security, network/system security fundamentals, and scripting for automation. Desirable Qualifications Familiarity with compliance and security standards (GDPR, HIPAA, NIST).Familiarity with Infrastructure as Code More ❯
with business goals and technical feasibility. Governance & Risk Management Establish best practices for prompt engineering, model safety, bias mitigation, and responsible AI. Ensure compliance with data privacy regulations (GDPR, HIPAA, etc.) and internal governance policies. Define monitoring and observability strategies for GenAI systems in production. Stakeholder Engagement Translate business requirements into technical specifications and solution blueprints. Present architectural decisions andMore ❯
with business goals and technical feasibility. Governance & Risk Management Establish best practices for prompt engineering, model safety, bias mitigation, and responsible AI. Ensure compliance with data privacy regulations (GDPR, HIPAA, etc.) and internal governance policies. Define monitoring and observability strategies for GenAI systems in production. Stakeholder Engagement Translate business requirements into technical specifications and solution blueprints. Present architectural decisions andMore ❯
london (city of london), south east england, united kingdom
Capgemini
with business goals and technical feasibility. Governance & Risk Management Establish best practices for prompt engineering, model safety, bias mitigation, and responsible AI. Ensure compliance with data privacy regulations (GDPR, HIPAA, etc.) and internal governance policies. Define monitoring and observability strategies for GenAI systems in production. Stakeholder Engagement Translate business requirements into technical specifications and solution blueprints. Present architectural decisions andMore ❯
and ongoing compliance for SaaS applications. Maintaining up-to-date documentation and evidence is essential for both internal and external audits. This includes compliance with GDPR, SOX, CPRA, CCPA, HIPAA, PCI DSS, and other relevant regulatory requirements. More ❯
and ongoing compliance for SaaS applications. Maintaining up-to-date documentation and evidence is essential for both internal and external audits. This includes compliance with GDPR, SOX, CPRA, CCPA, HIPAA, PCI DSS, and other relevant regulatory requirements. More ❯
london (city of london), south east england, united kingdom
LanceSoft UK
and ongoing compliance for SaaS applications. Maintaining up-to-date documentation and evidence is essential for both internal and external audits. This includes compliance with GDPR, SOX, CPRA, CCPA, HIPAA, PCI DSS, and other relevant regulatory requirements. More ❯
of Operational Risk practices in multinational setups providing B2B services. You have strong experience setting up Architectural roadmaps/Blueprints holistically. Exposure to regulatory compliance such as DORA, SOX, HIPAA, CSRD etc.Knowledge of architectural frameworks (e.g. TOGAF) and data/systems integration exposure. Strong communicator and good stakeholder management ability. What you'll get in return Flexible working options available. More ❯
clinical trial systems). *Cross-Functional Collaboration:* Partner with business, legal, compliance, and regulatory teams to ensure seamless IT integration. Liaise with security and data privacy teams to address HIPAA, GDPR, and other compliance issues. Support change management and communication strategies. *Experience:* 5-10+ years of experience in Consulting and M&A in the life sciences industry. Experience in More ❯
analytics; 5 to 7+ years in leadership Hands-on expertise with modern data stack and ML platforms Experience in working with healthcare datasets (EHR, claims, wearables) Familiarity with international HIPAA, GDPR, andhealth data standards Strong stakeholder management in high-growth settings Degree in Data Science, Computer Science, or related discipline More ❯
Collaborate with software development teams to integrate IAG solutions with existing IT infrastructure and applications. Compliance & Risk Management: Ensure that IAG solutions comply with relevant regulations, such as GDPR, HIPAA, and SOX. Conduct risk assessments related to identity and access management and recommend mitigation strategies. Implement and maintain audit trails and reporting mechanisms to track access and identity-related activities. More ❯
london, south east england, united kingdom Hybrid / WFH Options
Vanta
vision to restore trust in internet businesses by enabling companies to improve and prove their security. From our early days automating security monitoring for compliance standards like SOC 2, HIPAAand ISO 27001 to creating the world's leading Trust Management Platform, our vision remains unchanged. Now more than ever, making security continuous—not just a point-in-time check More ❯
of concepts, technical solutions, and prototypes. Strong grasp of Operational Risk practices. Proven ability to design holistic architectural roadmaps and blueprints. Exposure to regulatory frameworks such as DORA, SOX, HIPAA, and CSRD. Knowledge of architectural frameworks (e.g., TOGAF) and systems/data integration. Effective communicator with strong stakeholder management skills. Product-centric architect embedded within the engineering lifecycle. Hands-on More ❯
as NIST 800-53 r5, NIST CSF2.0, CIS, ISO27K • Designing solutions related to advisory & consulting engagements around regulatory risk & compliances such as DORA, NIS2, GDPR, SOX ITGC, PCI-DSS, HIPAA, Data Privacy, NHS, FFIEC etc. • Develop knowledge base, re-usable components for GRC advisory services. • Responsible for development and enhancements of GRC services, team and delivery capabilities. • Manage local partners … technology risk assessments. ISO 27K, NIST, AI Governance, CIS etc. • Good compliance understanding of industry domains such as BFSI – (SOX, FFIEC, PCI-DSS, BASEL, MAS etc.), Healthcare & Life-sciences – (HIPAA, Hi-Trust, FDA CFR, GxP Compliance), Telecom, Retail, Data Privacy (GDPR, CCPA) Energy & Utilities (NERC, FERC) Information Security (ISO 27000, NIST, CIS) TPRM • Business Resiliency & Cyber Recovery, ZTA • GRC Project More ❯
london (city of london), south east england, united kingdom
HCLTech
as NIST 800-53 r5, NIST CSF2.0, CIS, ISO27K • Designing solutions related to advisory & consulting engagements around regulatory risk & compliances such as DORA, NIS2, GDPR, SOX ITGC, PCI-DSS, HIPAA, Data Privacy, NHS, FFIEC etc. • Develop knowledge base, re-usable components for GRC advisory services. • Responsible for development and enhancements of GRC services, team and delivery capabilities. • Manage local partners … technology risk assessments. ISO 27K, NIST, AI Governance, CIS etc. • Good compliance understanding of industry domains such as BFSI – (SOX, FFIEC, PCI-DSS, BASEL, MAS etc.), Healthcare & Life-sciences – (HIPAA, Hi-Trust, FDA CFR, GxP Compliance), Telecom, Retail, Data Privacy (GDPR, CCPA) Energy & Utilities (NERC, FERC) Information Security (ISO 27000, NIST, CIS) TPRM • Business Resiliency & Cyber Recovery, ZTA • GRC Project More ❯
as NIST 800-53 r5, NIST CSF2.0, CIS, ISO27K • Designing solutions related to advisory & consulting engagements around regulatory risk & compliances such as DORA, NIS2, GDPR, SOX ITGC, PCI-DSS, HIPAA, Data Privacy, NHS, FFIEC etc. • Develop knowledge base, re-usable components for GRC advisory services. • Responsible for development and enhancements of GRC services, team and delivery capabilities. • Manage local partners … technology risk assessments. ISO 27K, NIST, AI Governance, CIS etc. • Good compliance understanding of industry domains such as BFSI – (SOX, FFIEC, PCI-DSS, BASEL, MAS etc.), Healthcare & Life-sciences – (HIPAA, Hi-Trust, FDA CFR, GxP Compliance), Telecom, Retail, Data Privacy (GDPR, CCPA) Energy & Utilities (NERC, FERC) Information Security (ISO 27000, NIST, CIS) TPRM • Business Resiliency & Cyber Recovery, ZTA • GRC Project More ❯
PAM Consultant - London Please Note: Due to the nature of client work you will be undertaking, you will need to be willing to go through a Security Clearance process as part of this role, which requires 5+ years UK address More ❯