Milton Keynes, Buckinghamshire, South East, United Kingdom
Sanderson Recruitment
management framework, ensuring effective identification, assessment, and remediation of risks. Conduct detailed risk and control assessments across business units, projects, vendors, and IT systems, aligning with standards like ISO27001, NIST CSF, and CIS Controls. Manage and enhance Third-Party Risk Management, including cybersecurity assessments of external partners and suppliers. Collaborate with stakeholders to develop and … practices, while fostering strong relationships to embed a risk-aware culture across the organisation. Experience you will have: Expertise in cybersecurity risk frameworks and compliance, including CIS Controls, ISO27001, NIST CSF, GDPR, SOX, and PCI. Strong technical and analytical skills, with the ability to assess risks, identify gaps, and propose mitigation strategies across IT systems More ❯
on shared infrastructure and security initiatives. Manage IT budgets, procurement, and supplier performance to ensure cost-effective delivery. Governance & Compliance Ensure all IT systems and processes adhere to ISO27001, GDPR, and relevant policies. Support business continuity and risk management activities. Maintain readiness for audits and internal reviews. Leadership & Change Delivery Lead a small, multi-skilled … experience improving and maintaining ERP systems (Odoo experience advantageous). Strong understanding of IT operations, user support, and system administration. Excellent communication and stakeholder management skills. Familiarity with ISO27001, GDPR, and general IT governance best practices. A hands-on, solution-focused approach and the ability to balance day-to-day support with strategic improvement. Desirable More ❯
relationships. As a Security Consultant , you will work on a variety of Defence and Public Sector assignments, requiring current SC clearance. Projects will range from risk assessments and ISO27001 implementations to developing full ISMS frameworks and supporting clients through accreditation. You'll provide expert guidance across standards such as NIST, CAF, and Secure by Design. … solutions. We are looking for a Security Consultant with experience in security assurance, accreditation, secure by design, and risk management, alongside recognised qualifications such as CISSP, CISM, or ISO27001 Lead Implementer. Ideally you will be familiar with GRC practices in similar environments also. In return, you'll enjoy a competitive salary … remote working, training budget, private healthcare, bonus scheme, and a culture that values collaboration, growth, and well-being. Take the next step in your career as a GRC Specialist / Security Consultant - apply today. People Source Consulting Ltd is acting as an Employment Agency in relation to this vacancy. People Source specialise in technology recruitment across niche markets including More ❯
stakeholders. Liaise with regulators, auditors, and internal teams to support transparency and accountability. Mentor and develop junior compliance colleagues, fostering a culture of continuous improvement. Contribute to maintaining ISO27001 certification and other relevant standards (e.g. PCI DSS, Information Security). Lead business continuity planning and ensure ongoing operational resilience. Manage corporate insurance coverage and relationships … solving approach to risk mitigation. Confident communicator, able to simplify complex issues and influence at senior levels. Experience leading compliance monitoring, audits, investigations, and remediation initiatives. Familiarity with ISO27001 , PCI DSS , and other information security frameworks. Experience managing business continuity and insurance programmes. Leadership capability with a track record of mentoring others and representing compliance More ❯
stakeholders. Liaise with regulators, auditors, and internal teams to support transparency and accountability. Mentor and develop junior compliance colleagues, fostering a culture of continuous improvement. Contribute to maintaining ISO27001 certification and other relevant standards (e.g. PCI DSS, Information Security). Lead business continuity planning and ensure ongoing operational resilience. Manage corporate insurance coverage and relationships … solving approach to risk mitigation. Confident communicator, able to simplify complex issues and influence at senior levels. Experience leading compliance monitoring, audits, investigations, and remediation initiatives. Familiarity with ISO27001 , PCI DSS , and other information security frameworks. Experience managing business continuity and insurance programmes. Leadership capability with a track record of mentoring others and representing compliance More ❯
stakeholders. Liaise with regulators, auditors, and internal teams to support transparency and accountability. Mentor and develop junior compliance colleagues, fostering a culture of continuous improvement. Contribute to maintaining ISO27001 certification and other relevant standards (e.g. PCI DSS, Information Security). Lead business continuity planning and ensure ongoing operational resilience. Manage corporate insurance coverage and relationships … solving approach to risk mitigation. Confident communicator, able to simplify complex issues and influence at senior levels. Experience leading compliance monitoring, audits, investigations, and remediation initiatives. Familiarity with ISO27001 , PCI DSS , and other information security frameworks. Experience managing business continuity and insurance programmes. Leadership capability with a track record of mentoring others and representing compliance More ❯
responsible for: Conducting security assurance activities across projects, products, and systems. Supporting risk assessments, security reviews, and compliance checks in line with organisational and government standards (e.g., NCSC, ISO27001, JSP440). Producing clear, concise, and insightful security assurance reports for technical and non-technical stakeholders. Working closely with engineering, architecture, and risk management teams to … accreditation and audit processes. Required Skills and Experience: You’ll bring a strong blend of technical knowledge, analytical thinking, and communication skills. You have: Active Security Clearance (e.g., SC / DV). Proven experience in Security Assurance, Information Assurance, or Cyber Risk Management. Strong understanding of security frameworks (NIST, ISO27001, MoD JSPs, CAF, etc. More ❯
hires are looking to further expand their Cyber Security team. The ideal candidate will be responsible for tracking vulnerabilities, managing threats and coordinating responses to emerging threats, supporting ISO27001 implementation and ongoing ISMS activities, leading company-wide Information Security training, as well as designing and overseeing phishing simulations. Required Skills 2+ years' experience in an … on experience with vulnerability scanning Ability to explain threats, vulnerabilities, and risks in a business context Experience delivering security training and running phishing simulations Experience with Microsoft Defender and / or third-party SOC Cybersecurity certifications (e.g. CompTIA Security+, CSA CCSK, ISC2 SSCP) Familiarity with ISO27001 ISMS or Cyber Essentials+ Experience in risk assessment More ❯
IT Manager – Must come from a Remote, SaaS organisation Must be available to start immediately Perm or contract £60k - £80k / Inside IR35 day rate Remote in UK A rapidly growing, remote-first cybersecurity education platform is seeking an IT Manager to lead and scale its IT operations across a globally distributed team. This strategic role is ideal for … IAM). Maintain compliance with GDPR, ISO27001, and related standards. Conduct regular security audits and risk assessments. 3. Automation & Efficiency Automate critical workflows (onboarding / offboarding, access management). Deploy and maintain an ITSM tool (e.g., Jira, Notion) to manage support requests. Drive cost efficiency across cloud and SaaS operations. 4. Support & Service Management … Deliver responsive IT support across global time zones. Track and improve IT performance metrics. Ensure a frictionless employee onboarding / offboarding experience. 5. Software & Access Management Manage SSO integrations and maintain visibility over license usage. Conduct regular permission audits to minimize risk. 6. Business Continuity Develop and maintain disaster recovery and backup strategies. Guarantee 24 / 7 continuity More ❯
IT & Compliance Manager – Must come from a Remote, SaaS organisation Must be available to start immediately Perm or contract £60k - £80k / Inside IR35 day rate Remote in UK A rapidly growing, remote-first cybersecurity education platform is seeking an IT Manager to lead and scale its IT operations across a globally distributed team. This strategic role is ideal … IAM). Maintain compliance with GDPR, ISO27001, and related standards. Conduct regular security audits and risk assessments. 3. Automation & Efficiency Automate critical workflows (onboarding / offboarding, access management). Deploy and maintain an ITSM tool (e.g., Jira, Notion) to manage support requests. Drive cost efficiency across cloud and SaaS operations. 4. Support & Service Management … Deliver responsive IT support across global time zones. Track and improve IT performance metrics. Ensure a frictionless employee onboarding / offboarding experience. 5. Software & Access Management Manage SSO integrations and maintain visibility over license usage. Conduct regular permission audits to minimize risk. 6. Business Continuity Develop and maintain disaster recovery and backup strategies. Guarantee 24 / 7 continuity More ❯
Hemel Hempstead, Hertfordshire, England, United Kingdom
Sopra Steria
ll bring: Proficient in using SIEM technologies such as Splunk, Sentinel, and QRadar. Thorough grasp of security standard methodologies and protocols, for instance ISO27001/ 27002, PCI DSS. Familiarity with security frameworks such as NIST, ISO, and CIS. Experience with programming languages such as Python, PowerShell, and regex. If you are interested More ❯
responsible for: Conducting security assurance activities across projects, products, and systems. Supporting risk assessments, security reviews, and compliance checks in line with organisational and government standards (e.g., NCSC, ISO27001, JSP440). Producing clear, concise, and insightful security assurance reports for technical and non-technical stakeholders. Working closely with engineering, architecture, and risk management teams to … accreditation and audit processes. Required Skills and Experience: You’ll bring a strong blend of technical knowledge, analytical thinking, and communication skills. You have: Active Security Clearance (e.g., SC / DV). Proven experience in Security Assurance, Information Assurance, or Cyber Risk Management. Strong understanding of security frameworks (NIST, ISO27001, MoD JSPs, CAF, etc. More ❯
Edinburgh, Midlothian, United Kingdom Hybrid / WFH Options
Aberdeen Group
following: Strong understanding of IT, Security, and operational resilience in large organisations Proven experience with information security controls and standards (e.g. COBIT, NIST, ISO27001/ 2) Demonstrable knowledge of Enterprise Risk Management in a technical setting Experience delivering assurance activities, including control testing Excellent communication, influencing and negotiation skills Ability to manage multiple priorities More ❯
internal and customer-facing IT projects. Maintaining infrastructure through patching, upgrades, testing, and proactive monitoring. Implementing IT security policies and VPN solutions in line with compliance standards. Supporting ISO27001 compliance, risk management, and audit readiness. Assisting with disaster recovery planning and business continuity measures. Overseeing IT asset management, procurement, and vendor relationships. Producing and maintaining … VMware environments. Strong knowledge of Windows and Linux system administration. Familiarity with networking concepts (routing, switching, firewalls, VPNs). Exposure to automation tools such as PowerShell, Ansible, or CI / CD workflows. A solid understanding of IT security best practices and compliance standards. Experience supporting or maintaining ISO27001 or similar frameworks. Strong communication and More ❯
you’ll be doing: • Leading and supporting all aspects of security governance activities – from policy and exception management to risk and vendor assessments • Managing compliance and audit activities (ISO27001, NIST, PCI DSS, NYDFS, etc.) and working closely with tech, legal, and audit teams • Overseeing major projects to ensure security is baked in from inception to … who can balance strategy, delivery, and stakeholder engagement What you’ll bring: • Strong background in GRC (Governance, Risk, and Compliance) within cybersecurity • Practical experience with frameworks such as ISO27001, NIST, and PCI DSS • Proven ability to design, implement, and maintain security policies and procedures • Confident in managing audits, vendor assessments, and compliance remediation • Leadership skills More ❯
you’ll be doing: • Leading and supporting all aspects of security governance activities – from policy and exception management to risk and vendor assessments • Managing compliance and audit activities (ISO27001, NIST, PCI DSS, NYDFS, etc.) and working closely with tech, legal, and audit teams • Overseeing major projects to ensure security is baked in from inception to … who can balance strategy, delivery, and stakeholder engagement What you’ll bring: • Strong background in GRC (Governance, Risk, and Compliance) within cybersecurity • Practical experience with frameworks such as ISO27001, NIST, and PCI DSS • Proven ability to design, implement, and maintain security policies and procedures • Confident in managing audits, vendor assessments, and compliance remediation • Leadership skills More ❯
you’ll be doing: • Leading and supporting all aspects of security governance activities – from policy and exception management to risk and vendor assessments • Managing compliance and audit activities (ISO27001, NIST, PCI DSS, NYDFS, etc.) and working closely with tech, legal, and audit teams • Overseeing major projects to ensure security is baked in from inception to … who can balance strategy, delivery, and stakeholder engagement What you’ll bring: • Strong background in GRC (Governance, Risk, and Compliance) within cybersecurity • Practical experience with frameworks such as ISO27001, NIST, and PCI DSS • Proven ability to design, implement, and maintain security policies and procedures • Confident in managing audits, vendor assessments, and compliance remediation • Leadership skills More ❯
London, South East, England, United Kingdom Hybrid / WFH Options
Arc IT Recruitment
on mitigation plans. Contribute to periodic operational risk assessments and formal risk reporting processes. Compliance Support IT control compliance reviews and assessments against internal standards and frameworks (e.g., ISO27001, NIST). Assist control owners in performing control self-assessments and audit readiness activities. Help coordinate compliance attestations across internal teams and third-party providers. Participate … understanding of IT risk management principles, control frameworks and compliance processes. Experience conducting IT risk assessments, control testing and evidence gathering for audits. Knowledge of frameworks such as ISO27001, NIST or COBIT. Strong analytical skills and attention to detail with excellent documentation and reporting abilities. Confident communicator, able to engage effectively with technical and non More ❯
ensuring regulatory compliance across the business. The Role: Own and evolve the company-wide security strategy across infrastructure, application, and corporate environments Lead our global compliance programs (e.g., ISO27001, SOC 2) ensuring we meet regulatory and customer trust requirements. Build and maintain relationships with auditors, ensuring smooth audit processes Address AI-specific compliance requirements around … of infrastructure security, application security, and cloud security Experience performing security operations or investigations involving large scale Kubernetes environments Track record of successfully managing compliance certifications (SOC 2, ISO27001, etc.) Exceptional communication and collaboration skills An ability … to lead projects with little guidance Experience contributing to a high growth startup environment Experience securing cloud infrastructure (Azure) at scale Experience with or strong interest in securing ML / AI infrastructure is highly valued More ❯
your clients, and proposing risk mitigating controls. A current knowledge of the cyber threat landscape. Experience auditing against security frameworks such as the ISO27001/ Cyber Essential, identifying gaps and recommending controls. If you have certs such as, CISM, CISSP. Great verbal and written communication skills with the ability to communicate tech issues to More ❯
Proactively follow up on tickets and CSAT surveys. Drive corrective actions that protect and improve the user experience. Systems & Networks Build, patch and support Windows laptops, macOS devices, iOS / iPadOS mobiles and tablets via Intune / Autopilot / Kandji. Collaborate with the IT Manager on threat monitoring, investigations and ISO27001 compliance. … disruption. Document and communicate change windows and outcomes across the business. Provide on-site support to project locations across Central London. Set up and verify temporary site networks (4G / 5G links), edge devices (360 cameras, IoT sensors) and ensure security / performance standards are met. Documentation & Training Support the adoption of new tools and processes as part … ways of working, leveraging data, AI and automation to deliver better outcomes for BW and our clients. Technical expertise across Microsoft 365, Azure Active Directory, Intune, Autopilot, and Windows / macOS environments. Strong knowledge of networking (LAN / WAN, switching, firewalls, VPN) and troubleshooting connectivity issues. Familiarity with cloud storage and collaboration platforms such as Egnyte, SharePoint, and More ❯
internal teams on BPSS and TIFO processes. Monitor regulatory changes and update internal procedures accordingly. Prepare reports and dashboards for senior management on compliance status and risks. Support ISO27001-aligned practices and contribute to continuous improvement of compliance processes. Essential Skills & Experience Proven experience in … a compliance or onboarding role, ideally within recruitment or government contracting sectors. In-depth knowledge of BPSS requirements and practical application. Strong working knowledge of TIFO or similar compliance / onboarding platforms. Excellent attention to detail and organisational skills. Strong communication and stakeholder management abilities. Ability to work independently and manage multiple priorities. Familiarity with ISO27001More ❯
business outcomes on their timelines. Become a product expert on Vanta and how our platform can be used to improve security posture through our compliance offerings (SOC 2, ISO27001, GDPR, HIPAA, USDP and Custom Frameworks), Trust Reports, and Risk Management solution. Provide insightful technical answers and recommend the most efficient way for customers to achieve … trust in internet businesses by enabling companies to improve and prove their security. From our early days automating security monitoring for compliance standards like SOC 2, HIPAA and ISO27001 to creating the world's leading Trust Management Platform, our vision remains unchanged. Now more than ever, making security continuous-not just a point-in-time More ❯
within your book of business Become a product expert on Vanta and how our platform can be used to improve security posture through our compliance offerings (SOC 2, ISO27001, GDPR, HIPAA, USDP and Custom Frameworks), Trust Reports, and Risk Management solution. Guide implementation, configuration, and optimization of Vanta Trust Management Platform Provide professional advice on … trust in internet businesses by enabling companies to improve and prove their security. From our early days automating security monitoring for compliance standards like SOC 2, HIPAA and ISO27001 to creating the world's leading Trust Management Platform, our vision remains unchanged. Now more than ever, making security continuous-not just a point-in-time More ❯