Bletchley, Buckinghamshire, United Kingdom Hybrid / WFH Options
In Technology Group
vulnerability scanners, firewalls, antivirus, and endpoint protection platforms. Familiarity with cloud security (AWS, Azure, or GCP) and hybrid environments. Good understanding of regulatory frameworks and standards (ISO 27001, NIST, PCIDSS). Professional certifications such as CISSP, CISM, CEH, or CompTIA Security+ are highly desirable. Excellent analytical, problem-solving, and communication skills. Desirable: Experience in the finance or More ❯
Milton Keynes, Buckinghamshire, South East, United Kingdom Hybrid / WFH Options
In Technology Group Limited
vulnerability scanners, firewalls, antivirus, and endpoint protection platforms. Familiarity with cloud security (AWS, Azure, or GCP) and hybrid environments. Good understanding of regulatory frameworks and standards (ISO 27001, NIST, PCIDSS). Professional certifications such as CISSP, CISM, CEH, or CompTIA Security+ are highly desirable. Excellent analytical, problem-solving, and communication skills. Desirable: Experience in the finance or More ❯
Guildford, Surrey, United Kingdom Hybrid / WFH Options
Sycurio
The Information Security Director develops, shapes, and maintains Sycurio's information security capability, driving the attainment and maintenance of the ISO27001, PCI-DSS, and SOC2 compliance. They are the subject matter expert on all things regarding security and compliance, owning the information risk management processes. They are the thought leader on all matters within the security and compliance … information security strategy to relevant parties and providing assurance of policies, procedures, and systems. Develop, maintain, and expand the information security management system ('ISMS') to optimise compliance for ISO27001, PCI-DSS, and SOC2. Identify gaps in the information security capability, both technical and operational, and propose remediation and mitigation plans and solutions. Responsible for the Company's information … . Industry certifications such as CISSP, CISM, CISA, or equivalent. Experience: 10+ years of information security experience. Financial/Fintech services/payments desirable. Deep knowledge of security frameworks (PCI, ISO 27001, NIST) and regulations (GDPR, CCPA). Experience with PCIDSS compliance and implementation. Proven success in managing external auditors to achieve positive outcomes. Expert in More ❯
South East London, England, United Kingdom Hybrid / WFH Options
SR2 | Socially Responsible Recruitment | Certified B Corporation™
Risk Management: Identify and manage risks to information assets and IT systems. Lead enterprise risk assessments and mitigation planning. Compliance & Regulatory: Ensure adherence to global data protection regulations (GDPR, PCI-DSS, etc.), working closely with legal and data protection teams. Leadership & Stakeholder Engagement: Act as the subject matter expert on cybersecurity at the board and executive level. Communicate … experience building and scaling a GRC function in a complex environment. Deep knowledge of information security standards (ISO 27001, NIST, CIS), risk frameworks (COSO, FAIR), and regulatory obligations (GDPR, PCI-DSS, SOX). Proven track record of managing enterprise-level security programs, including incident response and business continuity. Excellent stakeholder management skills, with experience reporting at board level. More ❯
Southampton, England, United Kingdom Hybrid / WFH Options
Nice Group
a focus on hands-on security engineering and operations. In-depth knowledge of networking protocols, operating systems, and cloud technologies. Strong understanding of security principles, practices, and frameworks (e.g., PCI, NIST, ISO 27001). Experience with security tools such as SIEM, IDS/IPS, endpoint protection, and penetration testing tools. Experience with public cloud security, specifically AWS, Azure, and More ❯
Loughton, Essex, South East, United Kingdom Hybrid / WFH Options
Profile 29
a Work from Office (WFO) role. This role will focus on creating a business strategy, gap analysis and implementation, for securing their Azure-based infrastructure, integrating security automation, ensuring PCIDSS compliance, vulnerability and penetration testing and incident response. This role will focus on developing and maintaining secure, scalable Azure DevOps pipelines and Infrastructure as Code (IaC) using … Security: Manage Web Application Firewalls (WAF) and Intrusion Prevention Systems (IPS). Vulnerability & Penetration Testing: Review Penetration Testing, vulnerability assessments, and security scanning to proactively identify and remediate risks. PCIDSS Compliance: Conduct security audits, risk assessments, and ensure regulatory compliance. DNS Security: Implement and monitor DNS security solutions to prevent cyber threats. Incident Response: Formulating and documenting … Profile 29s privacy policy can be found at: profile-29 .com/privacy) Profile 29 recruitment keywords: DevSecOps DevOps Azure cloud security Microsoft Defender Microsoft Sentinel WAF IPS DNS pcidsspcidsspci-dss soar loughton Debden essex London More ❯
PO15, Whiteley, Hampshire, United Kingdom Hybrid / WFH Options
Stratospherec Ltd
CIS, PCIDSS, Cyber Essentials, NIST, ISO 27001). In-depth understanding of network security and compliance in regulated environments. Proven ability to secure high-value data (PCI cardholder data, PII) and implement security best practices. Strong networking knowledge (LAN, WAN, DNS, DHCP, VPN, TCP/IP). Proficiency in firewall and load balancer technologies for secure … solutions (Veeam or similar). Experience with monitoring tools (SolarWinds SentryOne, Zabbix, etc.). Excellent problem-solving, communication, and documentation skills. Some familiarity with financial services regulations and compliance (PCIDSS, GDPR, DORA) would be useful but not essential. Desirable/bonus (but not essential) skills and experience: Some interest in learning and using automation tools such as More ❯
Watford, Hertfordshire, South East, United Kingdom Hybrid / WFH Options
Hays
development of a long-term security roadmap that supports the organisation's strategic goals. Ensure ongoing compliance with frameworks and certifications such as Cyber Essentials Plus, ISO 27001, and PCI DSS. What you'll need to succeed Willingness to work 7-hour days, 3 days a week Demonstrated expertise in conducting technical security risk assessments and developing threat models. More ❯
Employment Type: Part Time, Work From Home
Salary: £28.49 - £36.98 per hour + £36.98 p/h via Umbrella (Inside IR35)
South East London, England, United Kingdom Hybrid / WFH Options
The Curve Group
degree, preferably in Computer Science, Cyber Security or Cyber Security Professional Qualifications/Certifications Desirable: General understanding of IT Security principles, standards and regulations (e.g. ISO 27001, NIST, CIS, PCIDSS and GDPR) CISM/CISSP Patch Management Applications, EDR/XDR systems. Antivirus, NAC - Forescout Vulnerability Scanning Tool e. Tenable One, Qualisys Knowledge of vulnerability scoring systems More ❯
Reading, England, United Kingdom Hybrid / WFH Options
SITA
to research and maintain currency with the latest approaches to penetration testing, including learning new tools and technologies Good understanding of security compliance frameworks (e.g. ISO/IEC 27001, PCIDSS, etc.) Good understanding of common business applications (e.g. content management systems, application servers, databases, etc.) and how to leverage them in an assessment Good understanding of web More ❯
Rochester, England, United Kingdom Hybrid / WFH Options
Locke and McCloud
making a meaningful impact, we want to hear from you. Key Responsibilities: Develop and implement security solutions for Microsoft Azure and M365 environments. Ensure compliance with regulatory requirements, including PCI and FCA standards. Conduct risk assessments using established frameworks and methodologies. Configure and manage security-related controls, systems, and applications. Lead and manage compliance and security programs across technical More ❯
Tunbridge Wells, England, United Kingdom Hybrid / WFH Options
Locke and McCloud
making a meaningful impact, we want to hear from you. Key Responsibilities: Develop and implement security solutions for Microsoft Azure and M365 environments. Ensure compliance with regulatory requirements, including PCI and FCA standards. Conduct risk assessments using established frameworks and methodologies. Configure and manage security-related controls, systems, and applications. Lead and manage compliance and security programs across technical More ❯
Crawley, England, United Kingdom Hybrid / WFH Options
McCabe & Barton
role in ensuring the systems, suppliers, and people comply with security standards and regulations. From assessing technical controls and supplier risks to supporting incident response and contributing to the PCI-DSS and ISO 27002:2022 compliance, this is a role where you’ll make a visible impact. Candidate Qualifications and Skills Experience in Financial Services : Proven background working … In-depth knowledge of cybersecurity principles, risk management methodologies, and best practices to protect sensitive data and systems. Regulatory Framework Proficiency : Demonstrated experience with compliance frameworks, including ISO 27002, PCI-DSS, and GDPR, ensuring adherence to industry standards. Threat and Cloud Security Knowledge : Strong awareness of current threat landscapes and familiarity with cloud security principles (experience with Azure More ❯
Woking, England, United Kingdom Hybrid / WFH Options
VitalHub UK
on results. Desirable Proficiency in a wide range of public cloud technologies (ex. AWS EC2, EKS, EBS, RDS, S3, etc.) Experience working with industrystandard regulations and compliance frameworks (PCI-DSS, ISO, NIST, SANS, SOX, SOC II, HIPAA) Microsoft qualifications in relation to administration or networks (MCSE, MCSA, MCITP) Experience with working with Watchguard Firewall products. As an More ❯
Newbury, Berkshire, United Kingdom Hybrid / WFH Options
Vodafone Group Plc
ISO/IEC 27001, SOC 2, SOX, ITIL, COBIT, and NIST. Knowledge of legal, regulatory and privacy requirements, such as Personally Identifiable Information (PII) Protection and PaymentCardIndustry (PCI)/DataSecurityStandard An ability to think strategically and drive change A deep understanding of Tech Security risks and mitigating solutions A diverse security background with knowledge in More ❯
Maidstone, England, United Kingdom Hybrid / WFH Options
Payter B.V
internal IT systems Foster DevSecOps culture and embed security principles across all solutions and IT services Design secure cloud architecture and internal IT infrastructure adhering to paymentindustry standards (PCI-DSS, PCI-PIN, PCI-P2PE) Security Implementation & Operations Provide security requirements and oversight for software, cloud infrastructure, and internal IT projects Harden cloud environments and internal … security risk register for cloud and internal IT with appropriate escalation protocols Develop, document and enforce security policies and procedures compliant with industry regulations for all systems Guide annual PCI audits with external QSAs ensuring coverage of all applicable systems Monitor evolving regulations and maintain compliance roadmap for payment and IT environments Incident Response & Business Continuity Lead full-cycle … Risk Management ● Experience implementing security controls for multiple compliance frameworks simultaneously ● Knowledge of payment technologies and standards ● Experience with security risk quantification methodologies ● Understanding of data privacy regulations beyond PCI (e.g., GDPR, CCPA) Incident Response & Forensics ● Experience with digital forensics and incident response frameworks ● Knowledge of threat hunting techniques and tools ● Experience with security automation and orchestration platforms ● Understanding More ❯
South East London, England, United Kingdom Hybrid / WFH Options
83data
stakeholders, translating complex data needs into actionable plans. Mentor and lead data engineers, fostering continuous learning and technical excellence. Ensure compliance with datasecurity , privacy, and regulatory standards (e.g., PCI-DSS , GDPR ). Essential: 7+ years in Data Engineering, with 2+ years in a Principal or Lead role. Proven experience designing and delivering enterprise data strategies . Exceptional More ❯
Chelmsford, Essex, South East, United Kingdom Hybrid / WFH Options
Keystream Group Limited
and assets. You will be responsible for designing and implementing the evolution of security standards, policies, and procedures to ensure ECC meets regulatory, legislative, and operational requirements (e.g., PSN, PCI-DSS, ICO, disaster recovery). Maintain external networks and collaborate across Greater Essex and with national partners to share intelligence and best practices. Drive innovation and lead continuous … A track record of developing and implementing enterprise-wide cyber and information security strategies aligned with business goals. Extensive knowledge of relevant legal, regulatory, and technical frameworks, including PSN, PCI-DSS, GDPR, and disaster recovery. Experience in similarly complex environments, with an understanding of public sector culture and challenges. A passion for innovation, collaboration, and continuous improvement in More ❯
Brighton, England, United Kingdom Hybrid / WFH Options
JR United Kingdom
in an agile, fast-paced SaaS environment , collaborating across technical functions Strong attention to detail, analytical thinking, and a proactive attitude toward risk mitigation Bonus Points For: Exposure to PCIDSS or other security standards relevant to regulated industries Experience with DevSecOps practices and automation tooling Why Join: Be part of a fast-moving company building impactful products More ❯
Milton Keynes, England, United Kingdom Hybrid / WFH Options
Circle Group
both a strategic and tactical level Build trust with clients, challenge assumptions diplomatically, and influence senior stakeholders Provide guidance across security frameworks and standards such as ISO27001, NIST CSF, PCI-DSS, Cyber Essentials, SOC 2 Drive security maturity and risk management initiatives tailored to each client's needs Understand buyer behaviour and how organisations really work - beyond checklists … for an auditor!) A background in Cyber, Cloud or Networking is useful - even if not current/up to date. Certifications such as CISSP, CISM, ISO 27001 Lead Implementer, PCI etc. are great - but your professionalism and confidence matter most You: A natural communicator and relationship builder - confident, but never arrogant Able to simplify complexity and bring clarity to More ❯
Brighton, England, United Kingdom Hybrid / WFH Options
Tillo Inc
solving abilities and attention to detail It’s not essential, but we’d love to hear about it if you have experience with/certifications in Paymentsecurity standards (PCIDSS) Cyber Security tools CISSP, CEH, or equivalent Benefits We offer all our employees trust and empower our team to work with flexibility and autonomy. We’re a More ❯
Southampton, Hampshire, United Kingdom Hybrid / WFH Options
Kingfisher plc
impact and value of GRC initiatives. Proven experience embedding & delivering IT & Security GRC frameworks in a large, matrixed organisation. Strong knowledge of security standards and frameworks (e.g. ISO27001, NIST, PCIDSS, Cloud Security). Excellent understanding of the principles, theories, practices and techniques for activities associated with planning and implementing information security management frameworks and general IT controls More ❯
Reading, England, United Kingdom Hybrid / WFH Options
Circle Group
at both strategic and tactical levels. Build relationships with clients, challenge assumptions diplomatically, and influence senior stakeholders. Provide guidance across security frameworks and standards such as ISO27001, NIST CSF, PCI-DSS, Cyber Essentials, SOC 2 where appropriate. Plan and drive multi-year programmes to remediate, achieve objectives, and enable business growth. Understand buyer behaviour and organisational dynamics beyond … or CISO roles. A background in Cyber, Cloud, or Networking is advantageous, even if not current/up to date. Certifications such as CISSP, CISM, ISO 27001 Lead Implementer, PCI, etc., are valuable, but professionalism and impact matter most. You Are a natural communicator, listener, and relationship builder — confident but respectful. Can simplify complex topics and bring clarity to More ❯
Slough, England, United Kingdom Hybrid / WFH Options
JR United Kingdom
track record in safeguarding networks, managing risk, and ensuring compliance with industrysecurity standards. Key Responsibilities Oversee cybersecurity across systems, networks, and remote working platforms. Lead compliance efforts for PCI-DSS, Public Services Network (PSN), and data protection standards. Administer security tools such as antivirus, firewalls, email/web filtering, and vulnerability scanning. Maintain the disaster recovery strategy More ❯
Reading, England, United Kingdom Hybrid / WFH Options
JR United Kingdom
track record in safeguarding networks, managing risk, and ensuring compliance with industrysecurity standards. Key Responsibilities Oversee cybersecurity across systems, networks, and remote working platforms. Lead compliance efforts for PCI-DSS, Public Services Network (PSN), and data protection standards. Administer security tools such as antivirus, firewalls, email/web filtering, and vulnerability scanning. Maintain the disaster recovery strategy More ❯