business growth. Key Responsibilities Own and manage governance, risk, and compliance initiatives for our SaaS platforms. Monitor, review, and improve internal policies, procedures, and controls in line with ISO27001, SOC 2, GDPR, and other regulatory frameworks. Conduct risk assessments and recommend mitigation strategies for SaaS operations and customer data protection. Collaborate with product … Business, Compliance, or related field. 2+ years of experience in GRC, risk management, or compliance (preferably within SaaS or technology companies). Strong knowledge of SaaS compliance frameworks (ISO27001, SOC 2, GDPR, NIS2, or similar). Ability to interpret regulations and translate them into practical, business-friendly processes. Excellent written and verbal communication … skills (German or English; both preferred). Strong organizational skills with the ability to manage multiple priorities. Nice-to-Have Professional certifications (CISM, CRISC, ISO27001LeadImplementer, or similar). Experience working with SaaS platforms (AWS, Azure, Salesforce, HubSpot, etc.). Familiarity with vendor risk management and More ❯
london (city of london), south east england, united kingdom
Lex Dinamica
business growth. Key Responsibilities Own and manage governance, risk, and compliance initiatives for our SaaS platforms. Monitor, review, and improve internal policies, procedures, and controls in line with ISO27001, SOC 2, GDPR, and other regulatory frameworks. Conduct risk assessments and recommend mitigation strategies for SaaS operations and customer data protection. Collaborate with product … Business, Compliance, or related field. 2+ years of experience in GRC, risk management, or compliance (preferably within SaaS or technology companies). Strong knowledge of SaaS compliance frameworks (ISO27001, SOC 2, GDPR, NIS2, or similar). Ability to interpret regulations and translate them into practical, business-friendly processes. Excellent written and verbal communication … skills (German or English; both preferred). Strong organizational skills with the ability to manage multiple priorities. Nice-to-Have Professional certifications (CISM, CRISC, ISO27001LeadImplementer, or similar). Experience working with SaaS platforms (AWS, Azure, Salesforce, HubSpot, etc.). Familiarity with vendor risk management and More ❯
business growth. Key Responsibilities Own and manage governance, risk, and compliance initiatives for our SaaS platforms. Monitor, review, and improve internal policies, procedures, and controls in line with ISO27001, SOC 2, GDPR, and other regulatory frameworks. Conduct risk assessments and recommend mitigation strategies for SaaS operations and customer data protection. Collaborate with product … Business, Compliance, or related field. 2+ years of experience in GRC, risk management, or compliance (preferably within SaaS or technology companies). Strong knowledge of SaaS compliance frameworks (ISO27001, SOC 2, GDPR, NIS2, or similar). Ability to interpret regulations and translate them into practical, business-friendly processes. Excellent written and verbal communication … skills (German or English; both preferred). Strong organizational skills with the ability to manage multiple priorities. Nice-to-Have Professional certifications (CISM, CRISC, ISO27001LeadImplementer, or similar). Experience working with SaaS platforms (AWS, Azure, Salesforce, HubSpot, etc.). Familiarity with vendor risk management and More ❯
London, South East, England, United Kingdom Hybrid / WFH Options
Tenth Revolution Group
days onsite) Contract Length: 6 months IR35 Status: Outside IR35 Start Date: ASAP Day Rate: Competitive We are recruiting for a Cyber & Information Security Programme Manager to lead the delivery of security programmes for a major construction industry client. This role covers both on-premise information security and Microsoft Azure cloud security , with a strong emphasis on … support the organisation's security objectives. You'll oversee the implementation of security controls across both cloud and on-prem environments, ensuring alignment with compliance frameworks such as ISO27001 and GDPR. Key Responsibilities: Lead and manage cyber and information security programmes across cloud and on-prem environments Evaluate and select … vendor selection and consultancy engagement Proven track record of delivering security programmes end to end Excellent stakeholder management and communication skills Relevant certifications (e.g. SC-100, CISSP, CISM, ISO27001LeadImplementerMore ❯
London, South East, England, United Kingdom Hybrid / WFH Options
Tenth Revolution Group
potential extension up to 36 months) IR35 Status: Outside IR35 Start Date: ASAP Day Rate: Competitive We are seeking an experienced and strategic Cyber Security Programme Manager to lead a major enterprise-wide cyber security uplift programme for a leading organisation in the construction industry. This transformation initiative spans 24-36 months and aims to significantly enhance … the organisation's security posture across both cloud (Microsoft Azure) and on-premise environments , aligned to the NIST Cybersecurity Framework (CSF) and CIS Controls . Key Responsibilities Lead the end-to-end delivery of a multi-stream cyber security uplift programme Manage the RFP process and selection of third-party vendors and consultancies Oversee the external delivery … cyber security and technical delivery Deep understanding of Microsoft Azure security architecture and tooling Experience managing third-party vendors and consultancies Familiarity with NIST CSF, CIS Controls, and ISO27001 Excellent stakeholder engagement and communication skills Relevant certifications (e.g. SC-100, CISSP, CISM, ISO27001LeadMore ❯
Guildford, Surrey, England, United Kingdom Hybrid / WFH Options
Sanderson
in developing security controls catalogue in a financial services environment (highly desirable) Proven experience in delivering security projects within a federated organisation Desirable skills: Knowledge of NIST CSF, ISO27001, Cyber Essentials, PCI DSS, DORA Understanding of risk methodologies and data analysis for reporting Strong documentation skills (control matrices, process flows, SOPs) Excellent communication … skills for both technical and non-technical stakeholders Relevant certifications such as CISSP, CCSP, CRISC, CISM, or ISO27001LeadImplementer If this role sounds of interest and you would like to learn more do not hesitate to contact me on Reasonable Adjustments: Respect and equality are core More ❯
and IT governance standards. Ability to integrate AI solutions into business processes. Education: Degree in Computer Science, Information Systems, or related field. Additional certifications (ITIL, CISSP, PMP, ISO27001 LeadImplementer) are a plus. Languages: English — fluent (mandatory). Russian — a plus. Key Performance Indicators (KPIs) Reduction of IT incidents and downtime to the target More ❯