risks. To develop and embed best-practice security processes and knowledge into technical teams aligned to Zero Trust principles and in line with industry standards and frameworks (e.g. NIST, PCIDSS). To identify opportunities for automation and optimization and drive maximum value from existing technologies and services to strengthen Clarks' overall security posture. DIMENSIONS Financial : No direct … and architecture teams to plan and deliver remediation activities Supporting the development of relevant security roadmaps and activity plans aligned to Zero Trust principles and common industry frameworks (NIST, PCIDSS etc) Assisting in the review and development of operational processes and procedures required to maintain cyber security for I T services, including managing endpoint compliance, system hardening … of privacy and data protection laws and regulations and how they apply to technology environments (e.g. GDPR, PIPL etc) Knowledge of other regulatory or compliance frameworks such as ISO, PCIDSS, NIST etc Likely to hold at least one common security certification (CEH, CCSP, CISSP, OSCP) alongside other relevant IT certifications (ITIL, AMP, Prince2 etc) preferred Additional technologies More ❯
to maintain and oversee compliance with: ISO 9001, 14001 and 27001 Cyber Essentials Plus certification MOD-level SAQs FSQS (Financial Services Qualification System) GDPR and UK Data Protection Law PCI-DSS compliance New requirements as applicable Manage our internal and external audits, certifications and compliance renewals Ensure continuous monitoring and improvement of compliance frameworks Review client and supplier … management Foster a culture of compliance and continuous improvement across the business Skills and experience Experience managing compliance frameworks include ISO 9001, 14001, 27001, Cyber Essentials Plus, GDPR, and PCI-DSS compliance Strong understanding of information security, cyber security frameworks and risk management Experience with internal and external audits, certification renewals and policy development Proven knowledge of dataMore ❯
models aligning with MITRE ATTACK/STRIDE frameworks. Recommend the best controls & mitigations to potential vulnerabilities Ensure the design comply with relevant regulations and standards, including GDPR, SOX, and PCI-DSS. Implement advanced encryption and access control mechanisms to safeguard data integrity and confidentiality. Implement Cloud Security controls through Firewalls and leverage Defender for Cloud capabilities in the Security …/knowledge/experience: Should have proven experience as a Security Architect working in a large, complex organization. Ideally, this experience would be within a financially regulated enterprise (e.g., PCI compliance). Proven experience working previously for financial organizations. Previous relevant experience in developing bespoke Threat Models leveraging frameworks like MITRE ATTACK & STRIDE. Proficiency in assessing the Identity & Access … working in UK Financial Services or similar highly regulated industry. Have a relevant professional qualification (or be working towards certification), such as CISM/CISSP. Knowledge/experience of PCI-DSS, including PCI-P qualification. Knowledge/experience of Data privacy and GDPR. Experience with regulatory compliance frameworks specific to financial organizations. Excellent interpersonal and communication skills. More ❯
BS32, Bradley Stoke, South Gloucestershire, Almondsbury, Gloucestershire, United Kingdom Hybrid / WFH Options
Emponics
on your own initiative as a self-starter Desirable Skills • Understanding of how to build resilient multi-site architectures • Experience and knowledge of cloud security and relevant ISO and PCI compliance requirements • Knowledge of Azure and other cloud providers • Experience of Windows and Linux operating systems • Experience of using Terraform to build, change and version infrastructure. • Experience of container More ❯
Employment Type: Permanent
Salary: £65000 - £75000/annum health, pension, life , hybrid home
Security Good understanding of core security principles and tools Exposure to network security, vulnerability management, or risk assessments (preferred) Familiarity with security frameworks such as ISO 27001, NIST, or PCIDSS (preferred) Professional certifications like Security+, CEH, or CISSP are desirable Analytical mindset, attention to detail, and a proactive approach to learning What You'll Get Dedicated Mentorship More ❯
Employment Type: Permanent
Salary: £45000 - £55000/annum Excellent Training and Benefits
Bristol, Gloucestershire, United Kingdom Hybrid / WFH Options
Experis - ManpowerGroup
Security Good understanding of core security principles and tools Exposure to network security, vulnerability management, or risk assessments (preferred) Familiarity with security frameworks such as ISO 27001, NIST, or PCIDSS (preferred) Professional certifications like Security+, CEH, or CISSP are desirable Analytical mindset, attention to detail, and a proactive approach to learning What You'll Get Dedicated Mentorship More ❯
Exeter, Devon, South West, United Kingdom Hybrid / WFH Options
Bowerford Associates
Server and desktop operating systems configuration & troubleshooting and SCCM/MECM skills would be advantageous. Knowledge of information security standards such as ISO 17799/27002/27001/PCIDSS/SIEM/FERPA/HIPAA etc. Knowledge of and experience in virtual network technologies, specifically ESXi and VMware configuration and administration is preferred. Knowledge of and More ❯
Server and desktop operating systems configuration & troubleshooting and SCCM/MECM skills would be advantageous. Knowledge of information security standards such as ISO 17799/27002/27001/PCIDSS/SIEM/FERPA/HIPAA etc. Knowledge of and experience in virtual network technologies, specifically ESXi and VMware configuration and administration is preferred. Knowledge of and More ❯
Bristol, Avon, South West, United Kingdom Hybrid / WFH Options
Emponics
on your own initiative as a self-starter Desirable Skills Understanding of how to build resilient multi-site architectures Experience and knowledge of cloud security and relevant ISO and PCI compliance requirements Knowledge of Azure and other cloud providers Experience of Windows and Linux operating systems Experience of using Terraform to build, change and version infrastructure. Experience of container More ❯
in data management principles, batch data processing, scheduling, testing, and quality assurance techniques. Strong knowledge of data-related legislation, including data protection, HMRC Gift Aid regulations, Direct Debit, and PCI compliance, ideally within a not-for-profit context. Proven track record of leading a data processing team and managing intricate job processes involving multiple sources and clients. Strong leadership More ❯
testing. Ideally, a knowledge of Cloud services such as Azure or AWS. Capability to script or code in Bash, Python etc. Appreciation for Cyber Security standards such as ISO27001, PCI-DSS or CIS. This is a role with a growing, exciting organisation who can offer you a strong degree of progression and the ability to undertake testing work More ❯
testing • Ideally, a knowledge of Cloud services such as Azure or AWS • Capability to script or code in Bash, Python etc • Appreciation for Cyber Security standards such as ISO27001, PCI-DSS or CIS This is a role with a growing, exciting organisation who can offer you a strong degree of progression and the ability to undertake testing work More ❯