ISO/IEC 27001 Jobs in the UK

376 to 400 of 1,294 ISO/IEC 27001 Jobs in the UK

Data / Information Manager

Manchester, Lancashire, England, United Kingdom
Robert Half
Data / Information Manager - Manchester (Hybrid) Robert Half has been retained by a leading infrastructure consulting business to recruit a Data Manager. This is an exciting opportunity for to work for an organisation that is supporting with the design and construction of a high profile, £3bn infrastructure project in Manchester. About the Role The Data Manager will be responsible … working with sensitive data have valid DBS certifications. Maintain an up-to-date log of certifications and renewal dates. Qualifications and Experience Circa 5 years of experience in data / information management. Proficiency in managing Common Data Environments (CDEs) and implementing robust data security protocols. Degree in Information Management, IT, Engineering, or a related field. Relevant certification, such as … dependent upon your experience, qualifications and training. If you wish to apply, please read our Privacy Notice describing how we may process, disclose and store your personal data: gb / en / privacy-notice. More ❯
Employment Type: Full-Time
Salary: Salary negotiable
Posted:

South West Secure Data Environment Technical Lead

Bristol, United Kingdom
NHS Bristol, North Somerset and South Gloucestershire Integrated Care Board
infrastructure, data pipelines, security, governance and scalability. You will ensure the environment remains robust, trusted and aligned with the highest standards of data protection and interoperability, including SATRE and ISO27001, giving partners and the public confidence their data is safe. This hands-on role suits a leader who thrives on managing complexity and problem solving. Collaboration is key, working with … of the SWSDE platform, ensuring security, stability, and scalability at all times. Manage and monitor system security , including threat detection, risk management, and incident response, ensuring compliance with SATRE, ISO27001, DSPT, and NHS cybersecurity frameworks. Develop and maintain secure data pipelines from contributing NHS and partner organisations, ensuring interoperability, data quality, and adherence to governance standards. Provide technical leadership to … as Prince 2 and Managing Successful Projects Experience of identifying and interpreting National policy. Experience of researching best practice (globally, private and public sector), interpreting its relevance and processes / practices which could be implemented successfully to achieve system reform (advising on policy implementation) Disclosure and Barring Service Check This post is subject to the Rehabilitation of Offenders Act More ❯
Employment Type: Fixed-Term
Salary: £55690.00 - £62682.00 a year
Posted:

Senior SOC Analyst (Level 3)

Crawley, England, United Kingdom
Hybrid / WFH Options
InfoSec People Ltd
Level 3 SOC Analyst Location: Crawley (Hybrid) Salary: Up to £75,000 (DOE) + Bonus Type: Permanent / Full-Time The Opportunity My client, a leading organisation operating within the Critical National Infrastructure (CNI) energy sector, is looking to appoint an experienced Senior / Level 3 SOC Analyst. This is a senior escalation role within a dedicated Security … 27001). Skills & Experience Required Extensive background in SOC operations, incident response, and threat hunting. Expertise with the Microsoft security stack, including: Microsoft Sentinel (SIEM / SOAR) Microsoft Defender for Endpoint, Identity, Cloud Apps, and Office 365 Microsoft Entra ID (Azure AD) Microsoft Purview (compliance and data protection) Strong knowledge of attacker tactics and techniques … MITRE ATT&CK). Experience in digital forensics and malware analysis. Understanding of CNI or energy / utility environments. Proficiency in scripting / automation (KQL, PowerShell, Python). Excellent communication and stakeholder engagement skills. Desirable Certifications Microsoft Certified: Cybersecurity Architect Expert / Security Operations Analyst Associate GIAC (GCIA, GCIH, GCFA, GNFA) CISSP / CISM (advantageous) Experience More ❯
Posted:

Senior SOC Analyst (Level 3)

chichester, south east england, united kingdom
Hybrid / WFH Options
InfoSec People Ltd
Level 3 SOC Analyst Location: Crawley (Hybrid) Salary: Up to £75,000 (DOE) + Bonus Type: Permanent / Full-Time The Opportunity My client, a leading organisation operating within the Critical National Infrastructure (CNI) energy sector, is looking to appoint an experienced Senior / Level 3 SOC Analyst. This is a senior escalation role within a dedicated Security … 27001). Skills & Experience Required Extensive background in SOC operations, incident response, and threat hunting. Expertise with the Microsoft security stack, including: Microsoft Sentinel (SIEM / SOAR) Microsoft Defender for Endpoint, Identity, Cloud Apps, and Office 365 Microsoft Entra ID (Azure AD) Microsoft Purview (compliance and data protection) Strong knowledge of attacker tactics and techniques … MITRE ATT&CK). Experience in digital forensics and malware analysis. Understanding of CNI or energy / utility environments. Proficiency in scripting / automation (KQL, PowerShell, Python). Excellent communication and stakeholder engagement skills. Desirable Certifications Microsoft Certified: Cybersecurity Architect Expert / Security Operations Analyst Associate GIAC (GCIA, GCIH, GCFA, GNFA) CISSP / CISM (advantageous) Experience More ❯
Posted:

Solutions Architect – Amazon Connect SME

United Kingdom
Bangura Solutions
Proven Senior Solutions Architect / Technical Solutions Architect required to lead the design and delivery of enterprise-grade, AWS contact centre solutions. This role is pivotal in driving digital transformation, ensuring regulatory compliance, and delivering secure, resilient, and scalable architectures for omnichannel customer engagement. The successful candidate will have a proven track record as a principal-level Architect of … technology decisions with global compliance standards. The role will involve end-to-end migration from legacy platforms (Avaya, Cisco, Genesys) to Amazon Connect. You will design and implement IVR / contact flows, Lex conversational bots, Contact Lens analytics, and agent assist capabilities and be responsible for integrating API-driven architectures using AWS services. Key Skills Extensive contact centre technologies … EventBridge, Kinesis, CloudWatch, DynamoDB Strong knowledge of security and compliance frameworks (GDPR, PCI-DSS, ISO 27001, NHS DSP Toolkit) Hands-on experience with IaC (CloudFormation / Terraform / CDK) and serverless development (Node.js / Python) Minorities, women, LGBTQ+ candidates, and individuals with disabilities are encouraged to apply. Interviews will take place next week More ❯
Posted:

GRC Security Consultant

United Kingdom
Tangent International
Management, Compliance, Business Continuity / DR, Cloud Security gained in a previous delivery capacity. Experience in delivering assignments using well known security frameworks, standards and methodologies such as ISO27001, NIST CSF, CIS Top 18 and COBIT. Industry certifications such as CISSP / CISA / CRISC / CISM / CISMP. Fluency in English Even better if More ❯
Posted:

Information Security Officer

northampton, midlands, united kingdom
Digital Waffle
and mentoring client teams. Carry out security reviews across cloud, hybrid, and on-premises environments, identifying vulnerabilities and improvement areas. Provide guidance on compliance and frameworks such as ISO 27001, Cyber Assessment Framework (CAF), and Cyber Essentials. Contribute to incident readiness and response as part of the Cyber Security Incident Response Team … CSIRT). Actively contribute to the internal growth and knowledge-sharing within the wider team, suggesting improvements and supporting colleagues. Ensure compliance with internal security and governance standards. PCI / DSS About You: Strong knowledge of security frameworks, governance, risk management, and compliance. Excellent communication and stakeholder engagement skills, with the ability to influence … at board level. Hands-on experience with cloud and hybrid architectures, audits, and security assessments. Incident response and crisis management experience is a plus. Holding CISSP / CISM ISO27001 Lead implementer If you’re looking for a role where you can combine strategic influence with hands-on expertise, and you thrive on building trusted client relationships, this could be More ❯
Posted:

Information Security Officer

Milton Keynes, England, United Kingdom
Digital Waffle
and mentoring client teams. Carry out security reviews across cloud, hybrid, and on-premises environments, identifying vulnerabilities and improvement areas. Provide guidance on compliance and frameworks such as ISO 27001, Cyber Assessment Framework (CAF), and Cyber Essentials. Contribute to incident readiness and response as part of the Cyber Security Incident Response Team … CSIRT). Actively contribute to the internal growth and knowledge-sharing within the wider team, suggesting improvements and supporting colleagues. Ensure compliance with internal security and governance standards. PCI / DSS About You: Strong knowledge of security frameworks, governance, risk management, and compliance. Excellent communication and stakeholder engagement skills, with the ability to influence … at board level. Hands-on experience with cloud and hybrid architectures, audits, and security assessments. Incident response and crisis management experience is a plus. Holding CISSP / CISM ISO27001 Lead implementer If you’re looking for a role where you can combine strategic influence with hands-on expertise, and you thrive on building trusted client relationships, this could be More ❯
Posted:

Information Security Officer

high wycombe, south east england, united kingdom
Digital Waffle
and mentoring client teams. Carry out security reviews across cloud, hybrid, and on-premises environments, identifying vulnerabilities and improvement areas. Provide guidance on compliance and frameworks such as ISO 27001, Cyber Assessment Framework (CAF), and Cyber Essentials. Contribute to incident readiness and response as part of the Cyber Security Incident Response Team … CSIRT). Actively contribute to the internal growth and knowledge-sharing within the wider team, suggesting improvements and supporting colleagues. Ensure compliance with internal security and governance standards. PCI / DSS About You: Strong knowledge of security frameworks, governance, risk management, and compliance. Excellent communication and stakeholder engagement skills, with the ability to influence … at board level. Hands-on experience with cloud and hybrid architectures, audits, and security assessments. Incident response and crisis management experience is a plus. Holding CISSP / CISM ISO27001 Lead implementer If you’re looking for a role where you can combine strategic influence with hands-on expertise, and you thrive on building trusted client relationships, this could be More ❯
Posted:

Data Architect/Security

Edinburgh, Midlothian, United Kingdom
Hybrid / WFH Options
Snc-Lavalin
Data Architect / Security page is loaded Data Architect / Securitylocations: GB.United Kingdom: CHE.Baden 5400.Nordhaus 3time type: Full timeposted on: Posted 2 Days Agojob requisition id: R-141464 Job Description Job Title: Data Architect / Security Location: UK or Switzerland Join Us Lead enterprise-wide data architecture strategy and governance: • Define and manage data architecture across SAP … S / 4HANA, Workday, and cloud environments.• Develop conceptual, logical, and physical data models aligned with business and regulatory requirements.• Establish data governance frameworks, metadata standards, and MDM processes.• Embed governance checkpoints within PMO methodologies and quality gates.• Lead data lifecycle management initiatives ensuring accuracy and traceability.Architect secure and scalable data integration solutions:• Design end-to-end data flows … between legacy systems, S / 4HANA, and cloud platforms (Azure, AWS, GCP).• Oversee data migration strategies ensuring quality, validation, and audit readiness.• Collaborate with SAP BTP and integration teams to optimise secure interfaces.• Support analytics enablement across SAC, Power BI, and advanced analytics platforms.• Evaluate emerging technologies (e.g., data mesh, AI / ML) to enhance architecture.Champion data More ❯
Employment Type: Permanent
Salary: GBP Annual
Posted:

Security Lead

Oxfordshire, South East, United Kingdom
Sanderson Recruitment
internal security strategy within our Managed Services environment. This is a strategic and hands-on leadership position - you'll oversee security governance, ensure compliance with leading frameworks (Cyber Essentials, ISO27001, NIST), and maintain a strong internal security posture across our systems and services. You'll lead Quarterly Security Reviews (QSRs), manage client risk registers, and act as a trusted advisor … risk registers. Translate technical risks into meaningful business impacts and recommendations. Manage internal and client risk registers and exception processes. Oversee security compliance across frameworks such as Cyber Essentials+, ISO27001, and NIST . Ensure secure deployment and monitoring of core MSP systems (RMM, XDR, PSA, backup, etc.). Collaborate with service and project teams to embed security into delivery and … presenting to senior stakeholders and enjoy leading teams and shaping best practice. Essential Skills & Experience 5+ years in IT security or MSP environments . Strong understanding of Cyber Essentials, ISO27001, or NIST frameworks. Experience managing patching, vulnerability, and risk governance . Skilled communicator with the ability to explain risks to non-technical audiences. Proven experience leading client-facing security reviews More ❯
Employment Type: Permanent
Salary: £65,000
Posted:

Cyber security consultant

Reading, Oxfordshire, United Kingdom
Ascendion
Management, Compliance, Business Continuity / DR, Cloud Security gained in a previous delivery capacity. Experience in delivering assignments using well known security frameworks, standards and methodologies such as ISO27001, NIST CSF, CIS Top 18 and COBIT. Industry certifications such as CISSP / CISA / CRISC / CISM / CISMP. More ❯
Employment Type: Contract
Rate: GBP Annual
Posted:

Cyber security consultant

Reading, Berkshire, United Kingdom
Ascendion
Management, Compliance, Business Continuity / DR, Cloud Security gained in a previous delivery capacity. Experience in delivering assignments using well known security frameworks, standards and methodologies such as ISO27001, NIST CSF, CIS Top 18 and COBIT. Industry certifications such as CISSP / CISA / CRISC / CISM / CISMP. More ❯
Employment Type: Contract
Posted:

Security Consultant

United Kingdom
Ascendion
Management, Compliance, Business Continuity / DR, Cloud Security gained in a previous delivery capacity. Experience in delivering assignments using well known security frameworks, standards and methodologies such as ISO27001, NIST CSF, CIS Top 18 and COBIT . Industry certifications such as CISSP / CISA / CRISC / CISM / CISMP. Fluency in English Even better More ❯
Posted:

Penetration Tester

London Area, United Kingdom
Hybrid / WFH Options
Advanced Resource Managers
intelligence informs risk assessments. Hands-on experience with security reviews of AWS, Azure, and GCP environments, incorporating cloud-specific threats. Experience with ISO 27001 auditing / implementation, understanding the role of threat intelligence in compliance. Other advanced cybersecurity certifications such as CISM, CISSP, ECSA, CREST CCT. More ❯
Posted:

Penetration Tester

City of London, London, United Kingdom
Hybrid / WFH Options
Advanced Resource Managers
intelligence informs risk assessments. Hands-on experience with security reviews of AWS, Azure, and GCP environments, incorporating cloud-specific threats. Experience with ISO 27001 auditing / implementation, understanding the role of threat intelligence in compliance. Other advanced cybersecurity certifications such as CISM, CISSP, ECSA, CREST CCT. More ❯
Posted:

Penetration Tester

london, south east england, united kingdom
Hybrid / WFH Options
Advanced Resource Managers
intelligence informs risk assessments. Hands-on experience with security reviews of AWS, Azure, and GCP environments, incorporating cloud-specific threats. Experience with ISO 27001 auditing / implementation, understanding the role of threat intelligence in compliance. Other advanced cybersecurity certifications such as CISM, CISSP, ECSA, CREST CCT. More ❯
Posted:

Penetration Tester

slough, south east england, united kingdom
Hybrid / WFH Options
Advanced Resource Managers
intelligence informs risk assessments. Hands-on experience with security reviews of AWS, Azure, and GCP environments, incorporating cloud-specific threats. Experience with ISO 27001 auditing / implementation, understanding the role of threat intelligence in compliance. Other advanced cybersecurity certifications such as CISM, CISSP, ECSA, CREST CCT. More ❯
Posted:

Penetration Tester

london (city of london), south east england, united kingdom
Hybrid / WFH Options
Advanced Resource Managers
intelligence informs risk assessments. Hands-on experience with security reviews of AWS, Azure, and GCP environments, incorporating cloud-specific threats. Experience with ISO 27001 auditing / implementation, understanding the role of threat intelligence in compliance. Other advanced cybersecurity certifications such as CISM, CISSP, ECSA, CREST CCT. More ❯
Posted:

Head of Information Security

London Area, United Kingdom
MCG Talent
DDQs). Analyze trends in client inquiries and provide actionable feedback to internal teams to enhance documentation and control readiness. Perform security due diligence and ongoing monitoring of Web3 / blockchain vendors, including assessing control maturity, reviewing SOC reports, and identifying residual risks. Facilitate external audit activities, coordinating walkthroughs, evidence collection, and response tracking. Identify and analyze gaps in … of experience in security assurance, audit, compliance, or cloud security engineering. Proven expertise in testing and validating security controls across Identity and Access Management (IAM), key management, and network / cloud environments. Strong understanding of IAM principles and their application in secure systems. In-depth knowledge of cryptographic key management, Hardware Security Modules (HSMs), and Key Management Systems (KMS … 27001, or PCI DSS. Hands-on experience with major cloud platforms (AWS, GCP, Azure) and infrastructure-as-code practices. Proficiency in preparing client assurance materials, including RFP / RFI / DDQ responses and evidence documentation. More ❯
Posted:

Head of Information Security

City of London, London, United Kingdom
MCG Talent
DDQs). Analyze trends in client inquiries and provide actionable feedback to internal teams to enhance documentation and control readiness. Perform security due diligence and ongoing monitoring of Web3 / blockchain vendors, including assessing control maturity, reviewing SOC reports, and identifying residual risks. Facilitate external audit activities, coordinating walkthroughs, evidence collection, and response tracking. Identify and analyze gaps in … of experience in security assurance, audit, compliance, or cloud security engineering. Proven expertise in testing and validating security controls across Identity and Access Management (IAM), key management, and network / cloud environments. Strong understanding of IAM principles and their application in secure systems. In-depth knowledge of cryptographic key management, Hardware Security Modules (HSMs), and Key Management Systems (KMS … 27001, or PCI DSS. Hands-on experience with major cloud platforms (AWS, GCP, Azure) and infrastructure-as-code practices. Proficiency in preparing client assurance materials, including RFP / RFI / DDQ responses and evidence documentation. More ❯
Posted:

Head of Information Security

slough, south east england, united kingdom
MCG Talent
DDQs). Analyze trends in client inquiries and provide actionable feedback to internal teams to enhance documentation and control readiness. Perform security due diligence and ongoing monitoring of Web3 / blockchain vendors, including assessing control maturity, reviewing SOC reports, and identifying residual risks. Facilitate external audit activities, coordinating walkthroughs, evidence collection, and response tracking. Identify and analyze gaps in … of experience in security assurance, audit, compliance, or cloud security engineering. Proven expertise in testing and validating security controls across Identity and Access Management (IAM), key management, and network / cloud environments. Strong understanding of IAM principles and their application in secure systems. In-depth knowledge of cryptographic key management, Hardware Security Modules (HSMs), and Key Management Systems (KMS … 27001, or PCI DSS. Hands-on experience with major cloud platforms (AWS, GCP, Azure) and infrastructure-as-code practices. Proficiency in preparing client assurance materials, including RFP / RFI / DDQ responses and evidence documentation. More ❯
Posted:

Head of Information Security

london, south east england, united kingdom
MCG Talent
DDQs). Analyze trends in client inquiries and provide actionable feedback to internal teams to enhance documentation and control readiness. Perform security due diligence and ongoing monitoring of Web3 / blockchain vendors, including assessing control maturity, reviewing SOC reports, and identifying residual risks. Facilitate external audit activities, coordinating walkthroughs, evidence collection, and response tracking. Identify and analyze gaps in … of experience in security assurance, audit, compliance, or cloud security engineering. Proven expertise in testing and validating security controls across Identity and Access Management (IAM), key management, and network / cloud environments. Strong understanding of IAM principles and their application in secure systems. In-depth knowledge of cryptographic key management, Hardware Security Modules (HSMs), and Key Management Systems (KMS … 27001, or PCI DSS. Hands-on experience with major cloud platforms (AWS, GCP, Azure) and infrastructure-as-code practices. Proficiency in preparing client assurance materials, including RFP / RFI / DDQ responses and evidence documentation. More ❯
Posted:

Head of Information Security

london (city of london), south east england, united kingdom
MCG Talent
DDQs). Analyze trends in client inquiries and provide actionable feedback to internal teams to enhance documentation and control readiness. Perform security due diligence and ongoing monitoring of Web3 / blockchain vendors, including assessing control maturity, reviewing SOC reports, and identifying residual risks. Facilitate external audit activities, coordinating walkthroughs, evidence collection, and response tracking. Identify and analyze gaps in … of experience in security assurance, audit, compliance, or cloud security engineering. Proven expertise in testing and validating security controls across Identity and Access Management (IAM), key management, and network / cloud environments. Strong understanding of IAM principles and their application in secure systems. In-depth knowledge of cryptographic key management, Hardware Security Modules (HSMs), and Key Management Systems (KMS … 27001, or PCI DSS. Hands-on experience with major cloud platforms (AWS, GCP, Azure) and infrastructure-as-code practices. Proficiency in preparing client assurance materials, including RFP / RFI / DDQ responses and evidence documentation. More ❯
Posted:

Solutions Expert - Infrastracture (UAE-based)

City of London, London, United Kingdom
MCG Talent
compliance. Provide technical oversight for solution deployment, testing, and lifecycle management. Governance & Compliance Ensure all IT solutions comply with internal governance frameworks, cybersecurity protocols, and international standards (e.g., ISO 55000, ISO 27001, RAMS). Maintain accurate solution documentation, architecture diagrams, and operational procedures. Innovation & Continuous Improvement Identify emerging technologies and best practices that enhance … ISO 55000) preferred. Experience: Minimum 8–12 years of experience in IT solutions or digital transformation within asset-intensive or transportation industries . Proven experience with EAM / CMMS platforms (e.g., IBM Maximo, Infor EAM, SAP PM, or similar). Strong background in asset maintenance, infrastructure monitoring, and system integration . Prior experience in heavy rail, utilities More ❯
Posted:
ISO/IEC 27001
10th Percentile
£36,750
25th Percentile
£47,500
Median
£65,000
75th Percentile
£85,000
90th Percentile
£95,000