Nottingham, Nottinghamshire, United Kingdom Hybrid / WFH Options
The Nottingham
Vulnerability Assessments: Conduct regular vulnerability assessments and collaborate with IT teams to ensure timely remediation. Regulatory Compliance: Support compliance with regulatory requirements (FCA, PRA, GDPR) and internal security standards. Risk Assessments: Perform cyber risk assessments for third-party vendors and internal systems. Awareness Initiatives: Contribute to awareness initiatives and provide More ❯
regulations that apply to financial institutions or its outsourcing partners. In-depth knowledge of relevant regulatory requirements and industry standards (ISO 27001, SOC 2, GDPR, DORA, etc.). Experience with cloud security (AWS, Google etc.), application security, and DevSecOps practices is a significant plus. Proven experience in developing and implementing More ❯
programmes, projects of both a GRC and technical nature alongside frameworks such as ISO27001 / 2:2005 / 13, DORA, NIS 2, PCI-DSS, GDPR-DPO, NIST CSF SP800-53, PSD-2, FCA / PRA, and MS Azure. Ownership of Strategic, Operational, and Tactical IT Security and Risk Management, technical More ❯
This You? CISSP, CISA, or CISM certification is strongly recommended, but not required. ISO 27001 / 27701 / 42001, SOC-2, PCI DSS, and GDPR knowledge, experience, and qualifications are highly desirable. At least 5 years of relevant industry experience in information security, with a focus on security architecture and More ❯
threat detection. Cloud Security Assessments & Compliance Conduct cloud security assessments, penetration testing, and risk analysis . Ensure compliance with ISO 27001, NIST, CIS Benchmarks, GDPR , and other security standards. Collaborate with DevOps teams to integrate security into CI / CD pipelines. Security Automation & Infrastructure as Code (IaC) Automate security policies More ❯
platforms, ensuring high availability, security, and cost-efficiency. Data Governance & Compliance: Ensure data integrity, security, and compliance with industry regulations (e.g., GDPR, PCI-DSS). Collaboration with Stakeholders: Work closely with product, analytics, and engineering teams to deliver data-driven insights and support business growth. ETL More ❯
Azure, AWS, Google Cloud) and big data technologies (e.g., Spark, Kafka, Hadoop). Strong knowledge of data governance frameworks, regulatory compliance (e.g., GDPR, CCPA), and data security best practices. Proven experience in enterprise-level architecture design and implementation. Hands-on knowledge of database systems (SQL / NoSQL More ❯
Accreditation Council for Graduate Medical Education
data warehouse. Experience with Azure Purview or data lineage similar tools. Experience with information security, data compliance policy and privacy standards (GDPR, Schrems II, ISO 27001) Experience with agile processes, methods and tools Good to have Certified Data Management Professional will be a plus. Knowledge of More ❯
Edinburgh, Midlothian, Scotland, United Kingdom Hybrid / WFH Options
Motability Operations
hands-on Cyber Security focused role, primarily in the data security domain. A strong & demonstratable knowledge of security frameworks, standards and regulations (NIST, GDPR for example). Familiarity with cloud security principles and experience working with cloud platforms such as AWS and Snowflake. A clear and demonstratable understanding of More ❯
Employment Type: Permanent, Part Time, Work From Home
Bristol, Avon, South West, United Kingdom Hybrid / WFH Options
Motability Operations
hands-on Cyber Security focused role, primarily in the data security domain. A strong & demonstratable knowledge of security frameworks, standards and regulations (NIST, GDPR for example). Familiarity with cloud security principles and experience working with cloud platforms such as AWS and Snowflake. A clear and demonstratable understanding of More ❯
Employment Type: Permanent, Part Time, Work From Home
by these technologies and take appropriate actions. Cyber Security Frameworks : Working knowledge of Cyber Essentials, ISO27001:2022, CSA Cloud Controls Matrix, NCSC CAF and GDPR, is important to ensure that data is being managed. Programming and scripting: Proficient programming and scripting skills to automate security tasks, develop custom security More ❯
Certified Security - Specialty. Multi-Cloud Experience: Familiarity with Azure and GCP. Serverless Architectures: Experience with AWS Lambda and serverless design. Compliance Standards: Expertise in GDPR, HIPAA, SOC2, ISO 27001. Advanced Security Practices: Knowledge of zero-trust architecture and security incident response. Why Apply? Influence: Leadership role with the power to More ❯
Reading, Oxfordshire, United Kingdom Hybrid / WFH Options
TieTalent
Certified Security - Specialty. Multi-Cloud Experience: Familiarity with Azure and GCP. Serverless Architectures: Experience with AWS Lambda and serverless design. Compliance Standards: Expertise in GDPR, HIPAA, SOC2, ISO 27001. Advanced Security Practices: Knowledge of zero-trust architecture and security incident response. Why Apply? Influence: Leadership role with the power to More ❯
root cause analysis and recommend mitigation strategies. Collaborate on incident handling, reporting, and documentation. Enforce security policies in line with industry standards and regulations (GDPR, ISO, Cyber Essentials+, NIST 800-171). Assist with audits and compliance reporting. Manage and configure network devices with a focus on security. Design and More ❯
monitoring tools (SolarWinds SentryOne, Zabbix etc.). Excellent problem-solving, communication, and documentation skills. Some familiarity with financial services regulations and compliance (PCI DSS, GDPR, DORA) would be useful. Desirable / bonus skills and experience: Some interest in learning and using automation tools such as Azure DevOps, Terraform, Node-Red More ❯
monitoring tools (SolarWinds SentryOne, Zabbix etc.). Excellent problem-solving, communication, and documentation skills. Some familiarity with financial services regulations and compliance (PCI DSS, GDPR, DORA) would be useful. Desirable / bonus skills and experience: Some interest in learning and using automation tools such as Azure DevOps, Terraform, Node-Red More ❯
monitoring tools (SolarWinds SentryOne, Zabbix etc.). Excellent problem-solving, communication, and documentation skills. Some familiarity with financial services regulations and compliance (PCI DSS, GDPR, DORA) would be useful. Desirable / bonus skills and experience: Some interest in learning and using automation tools such as Azure DevOps, Terraform, Node-Red More ❯
adherence to the architecture and best practices. Security and Compliance: Ensure that all solutions comply with internal security standards and relevant regulatory requirements (e.g., GDPR, HIPAA), including data privacy, security, and disaster recovery considerations. Documentation: Develop and maintain detailed documentation of solution designs, architecture principles, and integration approaches for More ❯
Security Professional Qualifications / Certifications Desirable: General understanding of IT Security principles, standards and regulations (e.g. ISO 27001, NIST, CIS, PCI DSS and GDPR) CISM / CISSP Patch Management Applications, EDR / XDR systems. Antivirus, NAC - Forescout Vulnerability Scanning Tool e. Tenable One, Qualisys Knowledge of vulnerability scoring systems More ❯
london, south east england, united kingdom Hybrid / WFH Options
The Curve Group
Security Professional Qualifications / Certifications Desirable: General understanding of IT Security principles, standards and regulations (e.g. ISO 27001, NIST, CIS, PCI DSS and GDPR) CISM / CISSP Patch Management Applications, EDR / XDR systems. Antivirus, NAC - Forescout Vulnerability Scanning Tool e. Tenable One, Qualisys Knowledge of vulnerability scoring systems More ❯
london, south east england, united kingdom Hybrid / WFH Options
The Curve Group
Security Professional Qualifications / Certifications Desirable: General understanding of IT Security principles, standards and regulations (e.g. ISO 27001, NIST, CIS, PCI DSS and GDPR) CISM / CISSP Patch Management Applications, EDR / XDR systems. Antivirus, NAC - Forescout Vulnerability Scanning Tool e. Tenable One, Qualisys Knowledge of vulnerability scoring systems More ❯
development teams to integrate security into CI / CD pipelines. Experience in applying and conforming to relevant regulations and standards such as Cyber Essentials, GDPR, ISO 27001, NIST Cybersecurity Framework. Strong analytical and problem-solving skills, with a determined and proactive approach. Knowledge of emerging security trends and threats relevant More ❯
OpenVAS) and penetration testing tools (e.g., Metasploit, Burp Suite, Kali Linux). Familiarity with common security frameworks and compliance requirements (e.g., NIST, ISO 27001, GDPR, PCI-DSS) Relevant certifications (e.g., CEH, OSCP, CISSP, CISM, GIAC) are strongly preferred. More ❯
and intrusion detection systems. Experience with security tools such as SIEM, IDS / IPS, and vulnerability scanners. Familiarity with regulatory standards and frameworks (e.g., GDPR, HIPAA, ISO 27001). In-depth understanding of routers, switches, firewalls, and switching / routing protocols - such as VLAN, VTP, STP, RSTP, MST, OSPF, EIGRP More ❯
and Information Systems Directive (NIS), National Cyber Security Centre (NCSC) Cyber Assessment Framework (CAF), ISA / IEC 62443, ISO / IEC 27001 / 27002, GDPR, Cloud Security Alliance (CSA) Star framework, SOC2 Type 2 audits, Information Technology Infrastructure Library (ITIL), Control Objectives for Information and Related Technologies (CoBIT), etc. . More ❯