Knowledge on security models such as ITIL, ISO27002, PCI DSS and Cobit 5 Experience on Security tools & Technologies Integration of testing mechanisms with industry best practices such as OWASP & NIST Good Understanding of IT security policy, procedure, design, and implementation. Behavioral Skills – Ability to handle multiple strategic & critical projects/deliveries simultaneously Effective interpersonal, Coaching, team building and communication skills. More ❯
Bracknell, Berkshire, United Kingdom Hybrid / WFH Options
John Lewis Partnership
Kanban) Strong collaboration skills working with development, operations, and infrastructure teams within a security context In-depth working knowledge of security best practices and frameworks (e.g. Mitre ATT&CK, NIST). Even Better If You Have (Desirable Skills): Experience with SIEM tooling and detection development (Google SecOps/Chronicle proficiency is of specific benefit) Background in delivering and/or More ❯
enhancement of risk data models and reporting frameworks. Ensure alignment of analytics and reporting outputs with enterprise risk management and control frameworks. Strong knowledge of risk management frameworks (e.g., NIST, ISO 27001, COBIT) and control environments. Deep understanding of IT general controls, cyber security principles, andtechnology risk domains. Proven experience in risk analytics, data visualization, and reporting (e.g., using More ❯
Rochester, Kent, South East, United Kingdom Hybrid / WFH Options
Technical Placements
that comprehensively describe the product design and functionality. Certification Experience in designing products for a regulatory controlled market and ensuring compliance with those standards including ISO9001 and ISO27001/NIST or other relevant security frameworks. This is an excellent opportunity to become part of the key engineering team within a developing business with its culture shaped by core values ofMore ❯
Ability to lead technical conversations, influence customer decisions, and deliver trusted advisory services Existing SC clearance or eligibility to apply Desirable Skills & Certifications Familiarity with industry security frameworks (e.g., NIST, ISO 27001, CIS Controls) Cloud security experience across major hyperscalers More ❯
systems. Collaborate with IT and business stakeholders to embed security into solution designs. Monitor compliance with internal policies, external regulations and industry good practice. (e.g., GDPR, ISO27001, CIS, ISF, NIST). Provide expert guidance on security best practices, threat modelling, and mitigation strategies. Support incident response and post-incident reviews from an architectural perspective. Skills and experience you need as More ❯
Basingstoke, Hampshire, United Kingdom Hybrid / WFH Options
Career Concept
AWS, AZURE and DevSecOps, DevOps process Specifically with AWS cloud architecture knowledge of EC2, Dockers, RDS, Aurora would all be beneficial Familiar with governance frameworks such as ISO 27001, NIST, Cyber Essentials Stakeholder management skills and ideally management of 3rd party suppliers More ❯
Employment Type: Permanent
Salary: £65000 - £70000/annum + pension + flexible working
London, South East, England, United Kingdom Hybrid / WFH Options
Harvey Nash
privacy policies and regulations General knowledge of security technology Nice to have: Experience with PowerBI Programming skills and experience (python, java, SQL) Technical network skills Knowledge of OWASP, SANS, NIST, ISO 27001, ISF or other security-related practices Previous Banking/Financial Industry experience CISSP, CISA, CRISC, CSSLP, SABSA certifications Skills & Competencies: Vulnerability management Risk reporting Programming Data management Please More ❯
years in an operational environment Knowledge of best practices of IT security hardware and software, security suites, identity and access management, and encryption. Understanding of security frameworks such as NIST, CIS Controls, or ISO 27001. Formal industry recognised Cyber Security qualification such as ISC2 CISSP, ISC2 CISM or Certified Ethical Hacker (CEH) (desired). Security and Network technology experience. About More ❯
from day-to-day operations to major transformation projects. Main responsibilities: Leading security assurance, assessments, and advisory for IT and business projects (both Cloud and On-Prem), aligned to NIST 800-53 standards. Partnering with security architecture and other teams to define and embed security patterns and controls. Developing non-functional security requirements and guiding their integration into solution designs. More ❯
London, South East, England, United Kingdom Hybrid / WFH Options
Goodman Masson
For: Experience in IT security or within a SOC/NOC environment Strong knowledge of Microsoft Defender, EDR, and network architecture Understanding of security frameworks (e.g., MITRE ATT&CK, NIST, ISO 27001) Excellent communication and teamwork skills Relevant certifications (e.g., Sec+, OSCP, CISA) are a plus More ❯
win plans. Maintain and update security policies, procedures, and incident response plans. Deliver security awareness training and advise clients on best practices. Support audits and compliance initiatives (ISO 27001, NIST, GDPR, etc.). Work cross-functionally with internal and external teams, including partner engagements. Research emerging threats and recommend security framework enhancements. Mentor and support junior security team members. What … and KQL. Proven skills in threat detection, incident response, and forensic analysis. Knowledge of SOAR tools (especially Palo Alto XSOAR or similar). Familiarity with compliance standards: ISO 27001, NIST, CIS, GDPR, HIPAA. Bonus: scripting/automation skills (Python, PowerShell, Bash). Deep understanding of Microsoft security technologies. Certifications such as CISSP, CEH, OSCP, CISM, or Security+ are highly desirable. More ❯
Woking, Surrey, England, United Kingdom Hybrid / WFH Options
Michael Page Technology
Collaborate with the cybersecurity function to secure infrastructure against threats targeting critical national infrastructure, including OT (Operational Technology) environments. * Ensure compliance with maritime, data protection, and operational standards including NIST, and local port authority requirements. * Lead business continuity and disaster recovery planning with specific emphasis on safeguarding terminal and cargo operations. Budgeting & Resource Management * Manage operational and capital budgets for More ❯
and know how to influence/negotiate technical outcomes with 3rd parties, including conflict resolution due to changing priorities. Experience of using common information security management frameworks, such as NIST, PCI, GDPR, ISO Series, OWASP the IT Infrastructure Library (ITIL), the ISF Standardsof Good Practice (SoGP) and ISACA's Control Objectives for Information and related Technology (COBIT) frameworks. Actively More ❯
Havant, Hampshire, South East, United Kingdom Hybrid / WFH Options
Reed Technology
into business processes and IT operations. Required Skills & Qualifications: * 3-5 years of experience in cyber security roles, with hands-on involvement in ensuring compliance to security frameworks (ISO27001, NIST, eCAF). * Proven experience in implementing security systems and/or monitoring tools. * Strong knowledge of SIEM, Vulnerability Management, Threat Intelligence, and IAM systems. * Experience contributing to enterprise-level security More ❯
and guidelines What you'll need to succeed A minimum of 2, ideally 3+ years of experience in similar cyber security roles, with experience in implementing security frameworks (e.g. NIST, CAF, ISO) Prior hands-on experience with SIEM, Vulnerability Management, Threat Intelligence, and IAM systems Experience contributing to enterprise-level security initiatives Third-party vendor relationship experience What you'll More ❯
Employment Type: Permanent
Salary: £52000 - £55000/annum Up to £55k plus bonus and good pensi
work and live in UK and, preferably, a record of 5 years' UK residency), SKILLS andamp; EXPERIENCE DESIRED: Able to perform Risk management using industry approved methodologies (such as NIST 800-53). Identification of suitable risk management activities (technical, physical, or procedural) to treat/mitigate the identified risks; Support development in a secure by design methodology; Be able More ❯
Reading, Berkshire, South East, United Kingdom Hybrid / WFH Options
Queen Square Recruitment Limited
access control, authentication, and encryption standards across platforms. Work with data scientists and engineers to embed security into model development. Stay current on evolving AI regulations (EU AI Act, NIST AI RMF, GDPR, etc.). Support adversarial testing, model bias assessments, and trustworthiness evaluations. Contribute to training and awareness initiatives on AI/ML security best practices. Act as a More ❯
proposing new technologies Training employees and preparing security reports Requirements: Degree in Computer Science or a related field Extensive experience in cybersecurity, including knowledge of frameworks andstandards (ISO27001, NIST), security tools and technologies (firewalls, IDS/IPS), regulatory requirements (GDPR, HIPAA), and cloud/internet security Good communication and interpersonal skills are essential, especially for working with non-technical More ❯
London, South East, England, United Kingdom Hybrid / WFH Options
Harnham - Data & Analytics Recruitment
business goals Required Skills & Experience Proven experience in senior security consultancy or architecture roles Strong understanding of cloud security (AWS), SOC design, and threat detection Familiarity with security frameworks (NIST CSF, ISO 27001) and red teaming approaches Excellent communication skills with ability to influence technical and executive stakeholders Preferred Background Experience in software or SaaS environments Previous consulting/advisory More ❯
articulating risks in business terms and advising on mitigation. Excellent stakeholder communication skills, up to C-level. Strong analytical and reporting abilities. Familiarity with risk management frameworks (ISO 3100X, NIST 800 series, ENISA, EBIOS, OCTAVE, FAIR). Preferred: Background in information security and security frameworks (eg, MITRE ATT&CK, ISO 2700X). Experience working in multinational environments. Knowledge of AI More ❯
with security automation; scripting in Python is a strong advantage. Solid understanding of incident response processes, threat intelligence, and security monitoring. Familiarity with frameworks such as MITRE ATT&CK, NIST, and OWASP. Exposure to secure coding practices and DevSecOps environments is a strong plus (not mandatory) Experience working in large enterprise environments and supporting complex infrastructure. Must have the legal More ❯
Hemel Hempstead, Hertfordshire, South East, United Kingdom Hybrid / WFH Options
Sopra Steria Limited
Security Architecture function coupled with experience of leading large client engagements. Proficient with Security Architecture principles, such as SABSA, and published frameworks or guidelines from organisations such as from NISTand NCSC. The ability to design and document effective security controls aligned to business objectives using a risk based approach. Excellent analytical and problem-solving skills. It would be great More ❯