Ensure that all proposed and implemented solutions meet stringent security and compliance requirements, leveraging GCP’s native security controls and best practices. Stay abreast of relevant industry regulations (e.g., GDPR, HIPAA) and translate those requirements into actionable technical guidance. Participate in security assessments and recommend improvements to enhance the security posture of client environments on GCP. Client Relationship Management: Build More ❯
IS / IT security restructure programmes, projects of both a GRC and technical nature alongside frameworks such as ISO27001 / 2:2005 / 13, DORA, NIS 2, PCI-DSS, GDPR-DPO, NIST CSF SP800-53, PSD-2, FCA / PRA, and MS Azure. Ownership of Strategic, Operational, and Tactical IT Security and Risk Management, technical and legislative mandates ranging from More ❯
Social network you want to login / join with: MUST HAVE PREVIOUS BANKING EXPERIENCE TO BE CONSIDERED Job purpose The Information Security Officer works within the Information Security Office of the Bank to ensure all information and cyber risks are More ❯
to-date and effective. ️ Is This You? CISSP, CISA, or CISM certification is strongly recommended, but not required. ISO 27001 / 27701 / 42001, SOC-2, PCI DSS, and GDPR knowledge, experience, and qualifications are highly desirable. At least 5 years of relevant industry experience in information security, with a focus on security architecture and threat modeling. Proven experience in More ❯
IAM including Azure AD, MFA, Conditional Access, SSO, and PAM. Lead threat monitoring, detection, and response using cloud-native security solutions. Ensure compliance with frameworks like ISO 27001, NIST, GDPR, SOC2, FCA. Conduct regular security assessments, penetration tests, and vulnerability management. Oversee endpoint security, cloud network, and API security. Maintain DR and BCP plans with biannual testing. Technical Experience Microsoft … management (Azure, CheckPoint, Cloudflare), DNS, VPN, WiFi, LAN design. Software Defined Networking (Cisco, Meraki, Versa). Key Skills Microsoft 365 & Azure management. Security frameworks and compliance (ISO 27001, NIST, GDPR, SOC2). IAM expertise. Threat management and incident response. Network and infrastructure security. IT service management and automation. Operational and leadership skills, including vendor management, project leadership, and process improvement. More ❯
Hedge End, England, United Kingdom Hybrid / WFH Options
NICE
all about? The Information Security Analyst is primarily responsible for ensuring compliance with information security frameworks such as Cyber Essentials, Cyber Essentials Plus, ISO 27001, ISO 27701, ISO 42001, GDPR, and DORA. This role focuses on internal audits, regulatory compliance, and readiness for external audits while also contributing to Cybersecurity Operations Center (CSOC) activities, including incident monitoring and response. How … in scoping appropriate evidence and preparing for external audits. Gap Assessments: Facilitate and / or conduct internal gap assessments and audit readiness evaluations for frameworks such as ISO 27001, GDPR, and DORA. Framework Tracking: Monitor updates to Cyber Essentials, ISO, and regulatory frameworks and ensure internal alignment. Control Documentation: Develop and maintain control narratives, walkthroughs, and documentation of compliance processes. … vulnerabilities in coordination with IT and Security Operations teams. Have you got what it takes? Strong expertise in audit and compliance frameworks, including ISO 27001, ISO 27701, ISO 42001, GDPR, DORA, Cyber Essentials, and Cyber Essentials Plus. Familiarity with CSOC tools such as Rapid7 InsightIDR or other SIEM solutions. Hands-on experience in internal and external audits, compliance assessments, and More ❯
CI / CD pipelines, infrastructure as code (e.g., Terraform, CloudFormation), and automation tools. • Solid understanding of cloud security principles, IAM, encryption, network security, and compliance standards (e.g., ISO 27001, GDPR). • Excellent communication and client interaction skills; able to bridge the gap between business needs and technical solutions. • Strong analytical and problem-solving skills, with an ability to work independently More ❯
CI / CD pipelines, infrastructure as code (e.g., Terraform, CloudFormation), and automation tools. • Solid understanding of cloud security principles, IAM, encryption, network security, and compliance standards (e.g., ISO 27001, GDPR). • Excellent communication and client interaction skills; able to bridge the gap between business needs and technical solutions. • Strong analytical and problem-solving skills, with an ability to work independently More ❯
CI / CD pipelines, infrastructure as code (e.g., Terraform, CloudFormation), and automation tools. • Solid understanding of cloud security principles, IAM, encryption, network security, and compliance standards (e.g., ISO 27001, GDPR). • Excellent communication and client interaction skills; able to bridge the gap between business needs and technical solutions. • Strong analytical and problem-solving skills, with an ability to work independently More ❯
mitigation strategies Experience in cloud architecture and design, with a focus on security and compliance Familiarity with cloud compliance frameworks and standards such as ISO 27001, SOC 2, and GDPR Knowledge of Technology Risk and Control tools (CORE, Archer etc.) About Us J.P. Morgan is a global leader in financial services, providing strategic advice and products to the world's More ❯
Basingstoke, Hampshire, United Kingdom Hybrid / WFH Options
InstaVolt
external vendors, MSPs, and technology partners to ensure cost-effective and reliable service delivery. Collaborate with InfoSec and Legal teams to ensure compliance with relevant regulations (e.g., ISO 27001, GDPR). Lead incident response and disaster recovery planning / testing for internal platforms and operational IT. Requirements Needed: Bachelor's degree in information technology, Computer Science, or related experience. 10+ More ❯
Security : Cisco, Palo Alto, NAC DLP tools: Microsoft Purview, Tessian Strong scripting abilities (PowerShell, Python, Perl) Familiarity with vulnerability management , penetration testing, and security frameworks (NIST, ISO 27001, OWASP, GDPR) Proficient in managing compliance and infrastructure hardening against CIS benchmarks Qualifications: Degree in Computer Science, Information Security or related field Certifications such as CISSP, CEH, OSCP, SANS, or ISACA highly More ❯
to date with evolving cybersecurity trends, regulations, and best practices. Degree in a relevant field or professional certification (CISSP, CISM, etc.). Strong understanding of cybersecurity challenges, industry standards (GDPR, ISO 27001, NIST CSF, Cyber Essentials), and risk management. Expertise in networking, operating systems, cloud computing, application security, and endpoint security. Experience managing cybersecurity teams and handling security incidents in More ❯
potential impact to the business. Track corrective actions implemented by Audit Committee to address audit findings and ensure ongoing compliance. What will make you Successful: In-depth knowledge of GDPR (UK and EU) and FADP, and other global dataprotection laws and standards. Strong leadership and communication skills with the ability to influence stakeholders at all levels. More ❯
response & recovery: Lead incident response efforts on a duty basis Provide guidance on threat mitigation, containment, and recovery processes Legal and regulatory conformance: Ensure conformance with relevant regulations (CCPA, GDPR, etc.) Manage ITG group dataprotection process, including all relevant external audits, internal assessments, and planning Ensure the accurate review of system configurations takes place to ensure alignment More ❯
an experienced Data and Security Compliance Manager to lead and maintain our compliance with ISO 9001, IS0 14001, ISO 27001, Cyber Essentials Plus, MOD-level SAQs, FSQS and GDPR regulations. The role is crucial in ensuring our agency adheres to best practices and legislation in dataprotection, information security, quality management, environmental compliance and industry-specific security … the processes and infrastructure in place to maintain and oversee compliance with: ISO 9001, 14001 and 27001 Cyber Essentials Plus certification MOD-level SAQs FSQS (Financial Services Qualification System) GDPR and UK DataProtection Law PCI-DSS compliance New requirements as applicable Manage our internal and external audits, certifications and compliance renewals Ensure continuous monitoring and improvement of … security policies Work with the Head of IT to manage incident response planning and ensure security incidents are managed in line with best practices Dataprotection and GDPR compliance Working closely with our DPO to ensure adherence to GDPR, UK DataProtection Act and other relevant privacy regulations Create and maintain any Records of Processing Activities More ❯
an experienced Data and Security Compliance Manager to lead and maintain our compliance with ISO 9001, IS0 14001, ISO 27001, Cyber Essentials Plus, MOD-level SAQs, FSQS and GDPR regulations. The role is crucial in ensuring our agency adheres to best practices and legislation in dataprotection, information security, quality management, environmental compliance and industry-specific security … the processes and infrastructure in place to maintain and oversee compliance with: ISO 9001, 14001 and 27001 Cyber Essentials Plus certification MOD-level SAQs FSQS (Financial Services Qualification System) GDPR and UK DataProtection Law PCI-DSS compliance New requirements as applicable Manage our internal and external audits, certifications and compliance renewals Ensure continuous monitoring and improvement of … security policies Work with the Head of IT to manage incident response planning and ensure security incidents are managed in line with best practices Dataprotection and GDPR compliance Working closely with our DPO to ensure adherence to GDPR, UK DataProtection Act and other relevant privacy regulations Create and maintain any Records of Processing Activities More ❯
Cambridge University Hospital NHS Foundation Trust
in software development, data engineering, ETL and data science Knowledge of information technology and its impact on data Extensive knowledge of dataprotection and GDPR Understanding of Cybersecurity and common issues Extensive knowledge of using data science and AI techniques such as ML, simulation modelling, causal impact analysis, network analysis, NLP Desirable Knowledge of More ❯
London, England, United Kingdom Hybrid / WFH Options
Fruition IT
with UK and EUdataprotection laws and regulations. Establish and maintain a road-map for continuous improvement in data security measures. Ensure compliance with GDPR and other UK dataprotection laws. Collaborate with legal and compliance teams to interpret and implement privacy requirements. Conduct regular risk assessments to identify vulnerabilities and threats to … experience in a leadership role focused on information security. Experienced in delivering complex data security and privacy programs, including Big Data Security programs. In-depth knowledge of GDPR and other relevant dataprotection laws and regulations. Industry certifications such as CISSP, CISM, or CDPSE are highly desirable. Strong analytical and problem-solving skills. Excellent communication and More ❯
help us improve our service which includes the collection of some personal data as defined by the United Kingdom GeneralDataProtectionRegulation (UK GDPR). The MOD Privacy Policy Notice sets out how we will use your personal data and your rights. Selection process details This vacancy is using Success Profiles (opens in More ❯
Bournemouth, England, United Kingdom Hybrid / WFH Options
LV=
risks. •Support Data Migration activity and perform data governance and management audits and validation checks. •Ensure compliance with internal policies and external regulations (e.g., BCBS 239, GDPR, CCPA, Basel, etc.). •Collaborate with data owners, stewards and custodians, IT, and business units to ensure proper data classification, lineage, usage and ensure retention schedules are maintained … SQL and other database languages. •Ability to work with large datasets and conduct detailed analysis. •Experience of ETL processes. •Familiarity with data privacy and protection regulations (e.g. GDPR, CCPA). •Certification in DAMA DMBOK, CDMP, or equivalent is an advantage. Preferred: •Certification in DAMA DMBOK, CDMP, or equivalent is an advantage. •Purview, understanding of key features, capabilities, and More ❯
MLOps best practices, and automated model deployment. Architect cloud-based data lakes, warehouses, and AI-driven analytics platforms. Champion compliance to data governance, privacy, and security standards (GDPR, ISO 27001, NIST). Provide technical executive-level availability and aid to renewal in AI, ML, and scalable cloud data platforms. Define ETL / ELT strategies and optimise cloud More ❯
experience with entity resolution tools (Informatica, IBM MDM, Reltio, etc.). Proficiency in SQL and scripting for data profiling and transformation. Familiarity with data governance , privacy regulations (GDPR, CCPA), and data lineage. Excellent communication skills with the ability to engage both technical and non-technical stakeholders. Preferred: Experience in cloud-based data ecosystems (AWS, Azure, GCP More ❯
experience with entity resolution tools (Informatica, IBM MDM, Reltio, etc.). Proficiency in SQL and scripting for data profiling and transformation. Familiarity with data governance , privacy regulations (GDPR, CCPA), and data lineage. Excellent communication skills with the ability to engage both technical and non-technical stakeholders. Preferred: Experience in cloud-based data ecosystems (AWS, Azure, GCP More ❯
City of London, England, United Kingdom Hybrid / WFH Options
FairPlay Sports Media
comprehensive and accurate SCV, enabling a holistic understanding of our customers. Data Governance & Compliance: Ensure data quality, accuracy, and compliance with relevant data privacy regulations (e.g., GDPR) within the CDP and SCV. Implement and maintain data governance policies and procedures. Internal Product Integration: Define how data from the CDP / SCV can be integrated into … experience with Google Cloud Platform (GCP) and BigQuery. Experience with data visualization tools, particularly Power BI. Strong understanding of API integrations. Solid understanding of data privacy regulations (GDPR and other data capture regulations). Stakeholder Management: Proven ability to effectively manage and influence stakeholders across different departments and levels of seniority. Communication Skills: Excellent written and verbal More ❯