Loughton, Essex, South East, United Kingdom Hybrid / WFH Options
Profile 29
a Work from Office (WFO) role. This role will focus on creating a business strategy, gap analysis and implementation, for securing their Azure-based infrastructure, integrating security automation, ensuring PCIDSS compliance, vulnerability and penetration testing and incident response. This role will focus on developing and maintaining secure, scalable Azure DevOps pipelines and Infrastructure as Code (IaC) using … Security: Manage Web Application Firewalls (WAF) and Intrusion Prevention Systems (IPS). Vulnerability & Penetration Testing: Review Penetration Testing, vulnerability assessments, and security scanning to proactively identify and remediate risks. PCIDSS Compliance: Conduct security audits, risk assessments, and ensure regulatory compliance. DNS Security: Implement and monitor DNS security solutions to prevent cyber threats. Incident Response: Formulating and documenting … Profile 29s privacy policy can be found at: profile-29 .com/privacy) Profile 29 recruitment keywords: DevSecOps DevOps Azure cloud security Microsoft Defender Microsoft Sentinel WAF IPS DNS pcidsspcidsspci-dss soar loughton Debden essex London More ❯
PO15, Whiteley, Hampshire, United Kingdom Hybrid / WFH Options
Stratospherec Ltd
CIS, PCIDSS, Cyber Essentials, NIST, ISO 27001). In-depth understanding of network security and compliance in regulated environments. Proven ability to secure high-value data (PCI cardholder data, PII) and implement security best practices. Strong networking knowledge (LAN, WAN, DNS, DHCP, VPN, TCP/IP). Proficiency in firewall and load balancer technologies for secure … solutions (Veeam or similar). Experience with monitoring tools (SolarWinds SentryOne, Zabbix, etc.). Excellent problem-solving, communication, and documentation skills. Some familiarity with financial services regulations and compliance (PCIDSS, GDPR, DORA) would be useful but not essential. Desirable/bonus (but not essential) skills and experience: Some interest in learning and using automation tools such as More ❯
Bexhill-On-Sea, East Sussex, South East, United Kingdom Hybrid / WFH Options
Hastings Direct
with Infrastructure-as-Code (e.g., Bicep, ARM templates, Terraform). Hands-on experience with SIEM tools, ideally Azure Sentinel. Understanding of regulatory and compliance frameworks (e.g., CIS Benchmarks, HIPAA, PCI-DSS). Excellent problem-solving skills, communication, and the ability to explain technical concepts to non-technical stakeholders. Desirable: Relevant certifications such as AZ-500, SC-100, or More ❯
london, south east england, united kingdom Hybrid / WFH Options
Hastings Direct
with Infrastructure-as-Code (e.g., Bicep, ARM templates, Terraform). Hands-on experience with SIEM tools, ideally Azure Sentinel. Understanding of regulatory and compliance frameworks (e.g., CIS Benchmarks, HIPAA, PCI-DSS). Excellent problem-solving skills, communication, and the ability to explain technical concepts to non-technical stakeholders. Desirable: Relevant certifications such as AZ-500, SC-100, or More ❯
Farnborough, Hampshire, South East, United Kingdom
Gama Group Limited
Knowledge of security and data privacy controls within Microsoft Azure Cloud stack with hands on experience configuring and monitoring within Azure Knowledge of UK Government security standards Knowledge of PCI-DSS and achieving suitable standards within software In addition to a Competitive Salary, we will offer you: Competitive Group Pension Scheme Comprehensive Life Assurance * Comprehensive Income Protection * Comprehensive More ❯
nice to have. SKILLS: Working knowledge of cloud security architecture, specifically within Azure (or other Cloud platforms). Familiarity with security frameworks and compliance standards such as NIST, GDPR, PCI-DSS, DESC ISR. Strong problem-solving skills, with the ability to think creatively to solve complex security challenges. BENEFITS: Competitive Salary: Base salary commensurate with experience, plus performance More ❯
london, south east england, united kingdom Hybrid / WFH Options
MUFG
network systems, including IT security Ability to handle ambiguity and make decisions and recommendations with limited data Understanding of various Cyber/IT Security frameworks e.g. NIST; ISO-27001; PCI-DSS; EBA-ICT and FFIEC Solid analytical/problem-solving skills with capability to identify solutions to unusual and complex problems Please note MUFG operate a hybrid working More ❯
london, south east england, united kingdom Hybrid / WFH Options
MUFG Americas
network systems, including IT security. Ability to handle ambiguity and make decisions and recommendations with limited data. Understanding of various Cyber/IT Security frameworks e.g. NIST; ISO-27001; PCI-DSS; EBA-ICT and FFIEC. Solid analytical/problem-solving skills with capability to identify solutions to unusual and complex problems. Please note MUFG operate a hybrid working More ❯
team, account team & Client stakeholders. Review the outcomes of the transition projects to capture learnings & disseminate across organization Technical Skills – Basic Knowledge on security models such as ITIL, ISO27002, PCIDSS and Cobit 5 Experience on Security tools & Technologies Integration of testing mechanisms with industry best practices such as OWASP & NIST Good Understanding of IT security policy, procedure More ❯
fraud Onboard key customer-facing and payment systems into the security monitoring platform Perform threat hunting and detection engineering to identify and address emerging risks Support security audits, compliance (PCI-DSS), and post-incident reviews Mentor junior team members and contribute to a culture of continuous improvement Participate in the on-call rotation to ensure fast, effective incident More ❯
Brighton, Sussex, United Kingdom Hybrid / WFH Options
Bupa
Extensive experience in cybersecurity, ideally in regulated environments Hands-on experience with tools such as Tenable, Qualys, Wiz, and AttackIQ Knowledge of cybersecurity standards and regulations (e.g., NIST CSF, PCIDSS, GDPR, ISO 27001, DPA 2018) Strong communication skills for technical and non-technical audiences Decisive and discreet under pressure, with strong judgment Self-motivated, organised, and able More ❯
experience working with few industry leading products in network, data protection, cloud and application security Strong knowledge and experience implementing security standards frameworks (NIST - CSF, ISO 27001, CSA CCM, PCI-DSS, GDPR) Solid knowledge and experience in enterprise architecture frameworks such as; TOGAF Extensive commercial experience within cyber-security Experience in documenting reference architectures, standards and position papers More ❯
finish. Bonus points if you bring: Experience with AppSec and DevSecOps. Hands-on knowledge of Azure, AWS, and/or Google Cloud. Familiarity with standards like ISO2700X, ISO31000, NIST800, PCI-DSS. Certifications such as CISSP, CCSP, CRISC, CISM, or SABSA. Why QBE? At My Best? At QBE, we want our people to feel rewarded and inspired to perform at More ❯
Staines-upon-Thames, Middlesex, England, United Kingdom
Bupa UK
Certified in CISA or relevant certifications with one of the following: CISM, CISSP, equivalent experience. Strong knowledge of relevant laws, regulations, and industry standards e.g. UK GDPR, ISO 27001, PCIDSS, NIST. Great attention to detail and accuracy. Ability to work independently, manage time and workload effectively in a fast-paced environment. Experience in systems, preferably O365 and More ❯
Snelshall West, Milton Keynes, Buckinghamshire, England, United Kingdom
DS Smith
is well defined. Engage risk review and assurance activities across existing suppliers. Provide IT and business advice on aspects of security standards and regulations such as ISO27001, NIST CSF, PCIDSS, NISD and NIS2. Engage with I&T system owners to provide training in relation to information security, cyber resilience, phishing, and facilitation of cyber scenario desktop simulations … consequences across both IT and manufacturing environments in manufacturing or similar industries. Experience working with information security standards and frameworks such as and regulations such as ISO27001, NIST CSF, PCIDSS, NISD and NIS2. Proven analytical, problem-solving, planning, project delivery and supplier work packages management skills. Demonstrable experience of engaging across all levels of a company in More ❯
ISMS) capable of demonstrating compliance against internal security requirements and external commitments including certification and regulatory requirements. Provide subject matter expertise in the application of established standards including NIST, PCI-DSS, GDPR, COBIT, ISO 27001 and Cyber Essential compliance to any new or existing programme of work. Prepare and support internal and/or external compliance audit activities. … we continue to deliver for our customers. LI-KS1 Possess one of the Risk or security certifications (CISSP, CRISC, CISM). Have good knowledge and practical experience of NIST, PCI-DSS, GDPR, COBIT, ISO 27001, or Cyber Essentials. Previous experience in a similar role, with the ability to work in a dynamic and changing environment. Excellent team player More ❯
and business continuity. Foster a proactive, builder-oriented security culture that prioritizes rapid, intelligent solutions and empowers team members to make swift, impactful decisions. Ensure compliance and alignment with PCI-DSS, GDPR, ISO 27001, NIST 800/CSF, and other frameworks. Manage security risk, threat detection, business continuity, and third-party/vendor security. Maintain audit readiness and … you will need Leadership experience in InfoSec within fintech, SaaS, or regulated tech environments. Deep knowledge of cloud (AWS), DevSecOps, and secure SDLC practices. Strong understanding of compliance frameworks (PCI, GDPR, NIST, ISO, OWASP). Proven ability to manage audits, incidents, cross-functional teams, and regulators. Excellent interpersonal, leadership, and cross-functional collaboration skills. Demonstrated ability to operate effectively More ❯
london, south east england, united kingdom Hybrid / WFH Options
Harvey Nash Group
from internal, shared, and external resources and you would act as a trusted advisor to executives across the region. You will drive compliance across standards including ISO 27001, SOC2, PCI, SOX, GDPR, and others while managing a high-performing InfoSec team (both direct and matrixed). You will need to be a seasoned InfoSec leader with a proven track … record of influencing executive stakeholders and delivering secure, compliant outcomes in a complex, regulated financial services environments. You will have a strong knowledge of ISO, NIST, PCI-DSS, SOX, COBIT, GDPR, and related frameworks, expertise in IT risk, audit, and regulatory compliance and professional certifications (CISSP, CISM, or CISA) or willingness to obtain. Experience working under FCA/ More ❯
the fintech product team by advising on secure payment platforms, mobile wallets, and AML/KYC infrastructure. · Ensure fintech architecture aligns with group-wide security, data, and compliance policies (PCI-DSS, PSD2). · Guide tech integrations between telecom billing and digital financial services (e.g., airtime lending, mobile banking). Minor Ownership – Travel · Provide oversight of travel vertical platforms More ❯
Jam Management Consultancy Limited T/A JAM RECRUITMENT
Job Description, Quality Compliance Executive, ISO 9001, 14001, 22301, 27001, PCI-DSS Are you passionate about quality systems, compliance, and risk management? Our client, a market leader in their sector, is seeking a dynamic Quality Compliance Executive to support the continuous improvement of operational processes and ensure full regulatory and certification compliance across the business. Key Responsibilities, Quality … of ongoing improvement and accountability across all teams. ISO & Certification Management Act as the operational lead for maintaining ISO and other key certifications (e.g. ISO 9001, 14001, 22301, 27001, PCI-DSS). Liaise with external certification bodies, coordinate annual audit calendars, and prepare internal teams accordingly. Maintain and manage Group-wide Risk Registers, escalating compliance risks as needed. More ❯
London, South East, England, United Kingdom Hybrid / WFH Options
Henderson Scott
measures Key experience we're looking for: Deep experience working in Security Operations, including working with MDR providers and SOC environments Strong knowledge of relevant frameworks and standards including: PCI-DSS GDPR NIST CSF CIS Critical Security Controls Cyber Essentials Plus Hands-on experience across Cloud Security, Identity and Access Management, Zero Trust, Security Service Edge (SSE), and More ❯
CIRT), Computer Emergency Response Team (CERT), Computer Security Incident Response Centre (CSIRC) or a Security Operations Centre (SOC). Experience in industry standards and frameworks, such as ISO 27001, PCIDSS and NIST CSF. Relevant experience of working in an operational security capacity. Experience in security device management and SIEM. Proven experience of Incident Management and Response. In More ❯
deliver consistently. Ideal, But Not Required 5+ years of managing multiple engineering teams with high performance. FinTech SaaS experience. Track record of delivering results in a highly regulated environment (PCI-DSS and/or HIPAA compliant). Our Offer Work with colleagues that lift you up, challenge you, celebrate you and help you grow. We come from many More ❯