AD), Windows Server environments, and authentication solutions. Plan for scalability, redundancy, and high availability to support future growth. IT Security & Compliance: Ensure compliance with security and regulatory standards, including PCIDSS, Cyber Essentials+, DORA, and ISO 27001. Implement and enforce security best practices across infrastructure automation and cloud environments. Maintain accurate compliance documentation, including PCIDSS scope records and security policies. Secure high-value and high-risk data, such as cardholder (PCI) and personally identifiable information (PII). Cloud & Automation (these tools and skills will be taught): Implement and manage Infrastructure as Code (IaC) for cloud and on-premises environments. Learn how to automate configuration management, infrastructure provisioning, and application deployment. Configure and maintain … essential. Desirable (but not required) experience: Some interest in learning and using automation tools such as Azure DevOps, Terraform, Node-Red, Packer. Proven ability to secure high-value data (PCI cardholder data, PII) and implement security best practices. Scripting and automation skills (PowerShell, Python, Bash, or similar). Ability to design, implement, and maintain CI/CD pipelines for More ❯
Guildford, Surrey, England, United Kingdom Hybrid / WFH Options
Sanderson
security controls catalogue, policies, and procedures aligned with NIST CSF Collaborate with business units to integrate security measures into operations Support compliance activities for frameworks such as Cyber Essentials, PCIDSS, and the Group Information Security Framework Facilitate reviews and updates to ensure controls remain effective against evolving threats Essential skills: Minimum 2 year's experience in information … controls catalogue in a financial services environment (highly desirable) Proven experience in delivering security projects within a federated organisation Desirable skills: Knowledge of NIST CSF, ISO 27001, Cyber Essentials, PCIDSS, DORA Understanding of risk methodologies and data analysis for reporting Strong documentation skills (control matrices, process flows, SOPs) Excellent communication skills for both technical and non-technical More ❯
Snelshall West, Milton Keynes, Buckinghamshire, England, United Kingdom
DS Smith
is well defined. Engage risk review and assurance activities across existing suppliers. Provide IT and business advice on aspects of security standards and regulations such as ISO27001, NIST CSF, PCIDSS, NISD and NIS2. Engage with I&T system owners to provide training in relation to information security, cyber resilience, phishing, and facilitation of cyber scenario desktop simulations … consequences across both IT and manufacturing environments in manufacturing or similar industries. Experience working with information security standards and frameworks such as and regulations such as ISO27001, NIST CSF, PCIDSS, NISD and NIS2. Proven analytical, problem-solving, planning, project delivery and supplier work packages management skills. Demonstrable experience of engaging across all levels of a company in More ❯
Reading, Berkshire, South East, United Kingdom Hybrid / WFH Options
Queen Square Recruitment Limited
Application SecurityData Protection & Encryption Kubernetes, Containers, and DevSecOps/MLOps practices SIEM, logging, and monitoring Zero Trust architectures Skilled in applying frameworks such as NIST CSF, ISO 27001, PCIDSS, CSA CCM, NIST AI RMF . Hands-on with tools for vulnerability management, secrets management, CSPM, and CWPP . Relevant certifications strongly preferred (CISSP, CCSP, TOGAF, AWS More ❯
London, South East, England, United Kingdom Hybrid / WFH Options
Sanderson
artefacts including standards and blueprints. What You'll Bring Prior and proven experience gained as a Security Architect or in a technical cyber role. Expertise in: Security legislation (GDPR, PCIDSS, ICO) Frameworks (ISO 27001, NIST CSF, CIS Controls v8) HMG/NCSC policies and guidance Cloud security (AWS, Azure) Microservice architectures PKI, Cryptography, Privileged Access Management Certifications More ❯
finish. Bonus points if you bring: Experience with AppSec and DevSecOps. Hands-on knowledge of Azure, AWS, and/or Google Cloud. Familiarity with standards like ISO2700X, ISO31000, NIST800, PCI-DSS. Certifications such as CISSP, CCSP, CRISC, CISM, or SABSA. Why QBE? At My Best? At QBE, we want our people to feel rewarded and inspired to perform at More ❯
Basingstoke, Hampshire, England, United Kingdom Hybrid / WFH Options
Oliver James
and integrations with modern platforms (Azure, Data Lake, Fabric). Manage BAU operations: patching, security updates, backups and incident resolution. Partner with teams and providers to ensure governance, GDPR, PCI-DSS compliance and operational excellence. Support new change deployments and contribute to the cloud and automation journey. What we're looking for Deep expertise in Microsoft SQL Server More ❯
hands-on experience in Archer (experience with other GRC tools is also valuable). Solid understanding of risk assessment methodologies, security frameworks (NIST, ISO 270001), and compliance requirements (GDPR, PCIDSS, SOX). Strong written communication skills, able to produce clear technical reports and risk documentation. Excellent stakeholder management, able to collaborate across technical and non-technical teams. More ❯
Cyber Assurance, or IT Audit. Hands-on knowledge across areas such as governance, IAM, threat management, vulnerability management, and incident response. Good understanding of security frameworks (e.g. ISO27001, NIST, PCI-DSS, SOX). Experience engaging with senior stakeholders within complex environments. Relevant certifications (CISSP, CISM, CISA, CRISC) desirable. This is an exciting opportunity to join a high-performing More ❯
Milton Keynes, Buckinghamshire, England, United Kingdom
VIQU IT Recruitment
hands-on experience in Archer (experience with other GRC tools is also valuable). Solid understanding of risk assessment methodologies, security frameworks (NIST, ISO 270001), and compliance requirements (GDPR, PCIDSS, SOX). Strong written communication skills, able to produce clear technical reports and risk documentation. Excellent stakeholder management, able to collaborate across technical and non-technical teams. More ❯
/TypeScript, as well as our backend services in C# (.NET), and Golang. Operate and maintain systems in Google Cloud Platform (GCP) and Amazon Web Services (AWS) environments. Ensure PCI compliance standards are upheld throughout the system. Work with the support team to triage, investigate, and resolve technical support tickets related to the payment platform and other customer facing … . Familiarity with CI/CD and infrastructures automation tools (Jenkins/Github Actions/Docker/Terraform). Familiarity with RESTful APIs and event-driven architectures. Knowledge of PCIDSS Compliance. Strong troubleshooting and debugging skills; experience working in production environments. Ability to break down complex problems and communicate them clearly to technical and non-technical audiences. More ❯
South East London, London, United Kingdom Hybrid / WFH Options
TEN10 SOLUTIONS LIMITED
Understanding of IAM, WAF, and KMS. Experience implementing best practices for securing data, ensuring compliance with industry standards and regulations. Bonus points for experience with a compliance framework (ISO27001, PCI-DSS). Infrastructure-as-Code: Mastery of Terraform, CloudFormation, CDK or equivalent tools. Scripting & Automation: Skills in a scripting language like Python, Ansible, Bash, Groovy, Powershell, or similar. More ❯
multiple concurrent projects, meeting deadlines in a fast-paced portfolio environment. Essential Skills & Experience Strong understanding of cybersecurity and IT control frameworks (SOX, FFIEC, ISO27001, NIST, Cloud Security Alliance, PCI-DSS). Proven experience as an IT auditor, security auditor, or GRC analyst in a complex environment. Hands-on knowledge of IT security systems (OS, databases, firewalls, SIEM More ❯
Oxford, Oxfordshire, United Kingdom Hybrid / WFH Options
Nomios
assurance services, we offer an incredible opportunity to be part of an experienced team, build your skills, and grow professionally. Dionach by Nomios holds impressive certifications, including CREST, CHECK, PCI QSA, and ISO 27001. With our focus on enhancing customers' security and fostering team development, you'll be joining a company that prioritizes both your growth and the safety More ❯
high availability, resilience, and scalability. Develop and regularly test Disaster Recovery Plans (DRP) and business continuity frameworks. Cybersecurity and Compliance Implement and maintain standards such as ISO27001, SOC2, GDPR, PCI DSS. Ensure compliance with regulatory requirements (FCA, CySEC, FINMA, ADGM, etc.). Conduct ongoing risk monitoring and IT audits. Vendor and Outsourcing Management Manage Managed Service Providers and external More ❯
an Agile/Scrum development environment Understanding of cloud-native development and familiarity with AWS Exposure to messaging systems or message queues Knowledge of payment systems and awareness of PCI compliance requirements is a plus Why join us Career coaching, mentoring and access to upskilling throughout your entire FDM career Assignments with global companies and opportunities to work abroad More ❯
Hemel Hempstead, Hertfordshire, South East, United Kingdom
Sopra Steria
What youll bring: P roficient in using SIEM technologies such as Splunk, Sentinel, and QRadar. Thorough grasp of securitystandard methodologies and protocols, for instance ISO 27001/27002, PCI DSS. Familiarity with security frameworks such as NIST, ISO, and CIS. Experience with programming languages such as Python, PowerShell, and regex. If you are interested in this role but More ❯
Teradata, FIBO, or BIAN · Knowledge of data product management, data management, metadata management, data lineage management, and data definitions · Proficiency when designing with concepts and regulations such as GDPR, PCI-DSS, PII · A basic understanding of knowledge and/or property graphs, taxonomies and ontologies (OWL, SHACL) Carbon60, Lorien & SRG - The Impellam Group STEM Portfolio are acting as More ❯
and self-service kiosks, to enhance the overall guest experience. Plan and deploy CCTV systems and access control solutions, while ensuring full compliance with datasecurity standards such as PCIDSS and GDPR. Deliver training and ongoing technical support to staff, ensuring confident use of newly implemented systems and tools. Optimize system performance and scalability, with a strong More ❯
Skills A good understanding of Data Collection and Analysis Data Management Skills Hands-on experience with Hyper-V virtualization platform - Including clustering/clustered storage A good understanding of PCI-DSS Practice is a plus Proficient in communication both written and verbal especially in English. Strong server/system/SQL and Software troubleshooting abilities. Self-driven and More ❯