East London, London, United Kingdom Hybrid / WFH Options
A&O Shearman
firms ability to keep our clients data secure is a bedrock for our reputation as a trustworthy professional services partner to many of the worlds large and prestigious organisations. Informationsecurity is not an afterthought; it is core to all that we do, to protect not only our data but that of our clients, and has the unwavering … support of the Board. Led by our new CISO, the in-house InformationSecurity team is a core part of our technology services structure with mature or evolving capability across all areas of digital security and cyber defence. We align our efforts to the NIST framework and other recognised certifications including ISO27001 and SOC2 and strive to … you will do The Identity and Access Senior Architect will be part of the Digital Trust team, and will be responsible for maintaining the identity and access management (IAM) security of the firms assets. This role is critical in translating the organisations IAM vision into a workable, mature and optimized function and service. This role requires extensive experience across More ❯
Trust and Banking (Japan's leading trust bank), Mitsubishi UFJ Securities Holdings (one of Japan's largest securities firms), and MUFG Americas Holdings. Please visit our website for more information - Technology is responsible for the operation, development and support of all technology across all areas of the local and international business. We ensure the IT strategy, architecture solutions, and … annual investment portfolio as well as procurement and software licence management. IT Risk and Control - which is responsible for implementing and managing all technology related controls over IT and information risk and business continuity, supports the provision of disaster recovery solutions, performs risk assessments, and manages business recovery plans and the business recovery facility. InformationSecurity is … also the responsibility of this function. Main Purpose of the Role: To ensure effective management and control of informationsecurity, IT and information risk for MUSI by ensuring all appropriate Security, IT and common-sense controls are in place, that these controls are being followed and that this is evidenced across the whole business and IT More ❯
Southampton, Hampshire, United Kingdom Hybrid / WFH Options
NICE
InformationSecurity Analyst - Audit, Compliance & Cybersecurity United Kingdom - Southampton At NICE, we don't limit our challenges. We challenge our limits. Always. We're ambitious. We're game changers. And we play to win. We set the highest standards and execute beyond them. And if you're like us, we can offer you the ultimate career opportunity that … And if you're like us, we can offer you the ultimate career opportunity that will light a fire within you. So, what's the role all about? The InformationSecurity Analyst is primarily responsible for ensuring compliance with informationsecurity frameworks such as Cyber Essentials, Cyber Essentials Plus, ISO 27001, ISO 27701, ISO 42001, GDPR … reports and present findings to management during status updates and closing meetings. External Audit Coordination: Collaborate with external audit teams to streamline processes and provide requested documentation and evidence. Security Monitoring: Use tools such as Rapid7 InsightIDR or other SIEM solutions to assist with security monitoring and incident detection. Incident Response Support: Participate in incident response efforts, documenting More ❯
We are seeking an experienced InformationSecurity Consultant with a distinguished background in cyber security, governance, and risk management. As an InformationSecurity Consultant , you will play a pivotal role in helping our clients navigate the complex landscape of cyber threats and risks. Your responsibilities will include implementing robust security controls, ensuring compliance with … industry standards and regulations, and assisting clients in enhancing their overall informationsecurity posture. In this role, you will: Develop and implement cyber security strategies and roadmaps tailored to our clients' specific needs. Be part of continuous development regarding ISMS and GRC contributing to Nixu way of working and offerings. Contribute to achieving ISO 27001/… certification, differentiating our clients from their competitors. Conduct thorough security and data privacy risk assessments. Conduct Vendor risk assessments and audits. Implement security controls and promote security awareness across diverse organizations. Create operational guidance for the compliant implementation of third-party services and evaluate associated risks. Location: Espoo, Finland Posting Deadline: 20/04/2025 Be More ❯
Job Summary: The Security Operations Lead is responsible for our security monitoring and incident response capabilities within the Square Enix Cyber Security team (covering Europe and North America). The primary goals of the role are the timely detection of security incidents, effective response and the continuous improvement of our preventative and detective controls. This role … will work alongside our team of security analysts and engineers to collectively protect our players, people and assets whilst enabling creativity and innovation across Square Enix. Day to day you will be performing in-depth analysis and investigation of security alerts, game/brand related security events as well as leading the response to incidents. You will … be responsible for maintaining and optimising our security operations tools and processes. Additionally you will be testing the effectiveness of our preventative and detective controls, probing weaknesses and implementing improvements alongside our risk and engineering teams. The role is aimed at candidates with a broad and senior Cyber Security skillset who are seeking to further develop their Cyber More ❯
the GRC function of a global financial group at a pivotal time, supporting the secure rollout of U.S. banking operations, driving ISO27001 and SOC2 maturity, and mentoring an evolving InfoSec team. This is a hands-on manager-level role with real scope: oversight of policy, third-party risk, architectural reviews, and cloud compliance. You'll work closely with the Head … of InfoSec to maintain audit readiness, improve security posture, and influence business-wide awareness and accountability. What you’ll bring: 5+ years in InfoSec, IT Security or Ops within a regulated environment Certification required: CISSP, CISM, CRISC, or equivalent Strong knowledge of ISO27001:2022, SOC2 Type II, NIST CSF, PCI DSS, GDPR, DORA Confident with security risk … Responsibility Model Comfort with complexity: able to analyze architecture, track metrics, and translate acronyms into actionable plans Mentorship ability: ready to step up, guide analysts, and model high-integrity InfoSec practice What you’ll be doing: GRC ownership: maintain ISO27001 and SOC2 certifications, policies, and the InformationSecurity Management System Third-party risk management: oversee supplier assessments, support More ❯
the GRC function of a global financial group at a pivotal time, supporting the secure rollout of U.S. banking operations, driving ISO27001 and SOC2 maturity, and mentoring an evolving InfoSec team. This is a hands-on manager-level role with real scope: oversight of policy, third-party risk, architectural reviews, and cloud compliance. You'll work closely with the Head … of InfoSec to maintain audit readiness, improve security posture, and influence business-wide awareness and accountability. What you’ll bring: 5+ years in InfoSec, IT Security or Ops within a regulated environment Certification required: CISSP, CISM, CRISC, or equivalent Strong knowledge of ISO27001:2022, SOC2 Type II, NIST CSF, PCI DSS, GDPR, DORA Confident with security risk … Responsibility Model Comfort with complexity: able to analyze architecture, track metrics, and translate acronyms into actionable plans Mentorship ability: ready to step up, guide analysts, and model high-integrity InfoSec practice What you’ll be doing: GRC ownership: maintain ISO27001 and SOC2 certifications, policies, and the InformationSecurity Management System Third-party risk management: oversee supplier assessments, support More ❯
Easter Howgate, Midlothian, United Kingdom Hybrid / WFH Options
Leonardo UK Ltd
Job Description: Job Description Leonardo UK is seeking a proven, experienced Principal Consultant to join the Cyber & Security Solutions Division team. This role is focused on supporting the delivery of security aspects to the company's core products and to external stakeholders. This requires co-ordination with engineering teams and delivery of all facets of cyber and informationsecurity related to the delivery across the engineering lifecycle - from requirements all the way through to in-service support and maintenance. This is an exciting opportunity to be part of significant programmes, during which you will ensure that products meet the highest standards, in accordance with customer's requirements and risk appetite. You will be supported in this … team and with our customers. Talk to us to find out more. Key Responsibility Areas Leading a team or operating independently to meet all aspects of the cyber and informationsecurity delivery across an engineering lifecycle. Interpreting customer requirements into actionable security management plans, statements of work, and activities to be delivered across the lifecycle. Become the More ❯
Manager - Principal Security Architect: Secure Design (IC) page is loaded Manager - Principal Security Architect: Secure Design (IC) Apply locations London, United Kingdom time type Full time posted on Posted Yesterday job requisition id R Security Architecture - Secure Design Team Role: Manager - Principal Security Architect: Secure Design (Individual Contributor) Grade: GG14 The Security Architecture Design team … is responsible for developing Security Architecture patterns, developing security controls needed for new technology, promoting the use of the architectural patterns into development projects, leading the Security Architecture Design Forum, Evaluating architectural security risks in existing systems, consulting with system development teams and architects on building security into their design. This key task of this … delivery of secure design artefacts and leading secure design interventions - by adding capacity and capability to the team. Reports to: Senior Manager - Secure Design Key Relationships Business Aligned Principal Security Architects CyberSecurity Engineering CyberSecurity Testing and Vulnerability Management Cloud Security Identity Management Security Architecture Design Forum (member) Project teams BISOs Key Responsibilities Develop Security Architecture Design More ❯
Frankfurt am Main, Hesse, Germany; London, England, United Kingdom This is a hybrid role and can be based in London or Frankfurt. The Role As a Senior IT Security Analyst at euNetworks, you will play a key role in protecting the organisation against informationsecurity threats by implementing and maintaining both technical and organisational safeguards. Working closely … with the InformationSecurity Steering Team and as part of the broader IT function, you will be instrumental indriving forward our security posture. What will you be doing? Administer and maintain the SecurityInformation and Event Management (SIEM) system and other IT security platforms. Review and evaluate security aspects of IT projects, identifying … risks and ensuring appropriate controls are implemented. Investigate and respond to security incidents and queries, coordinating with relevant teams. Continuously monitor IT infrastructure for vulnerabilities, anomalies, and other potential security issues. Plan and coordinate external penetration tests to identify and address security weaknesses. Compile and deliver regular reports (monthly and quarterly) on the organisation's securityMore ❯
Easter Howgate, Midlothian, United Kingdom Hybrid / WFH Options
Leonardo UK Ltd
Job Description: Job Description Leonardo UK is seeking a Senior Consultant to join the Cyber & Security Solutions Division team. This role is focused on supporting the delivery of security aspects to the company's core products and to external stakeholders. This requires engaging with engineering teams and delivery of all facets of cyber and informationsecurity … to us to find out more. Key Responsibility Areas Work as part of a larger team, delivering streams of work independently, to meet all aspects of the cyber and informationsecurity delivery across an engineering lifecycle. Interpreting customer requirements into actionable security management plans, statements of work, and activities to be delivered across the lifecycle. Oversight and … statements of work and artefacts to time, cost and quality constraints. Identification, management and escalation of technical and delivery risks and issues. Maintain customer relationships for the cyber and informationsecurity workstream, both internal and external. Mentoring of consultants within your team as required. Skills, Qualifications, Knowledge & Experience Required In addition to a passion for cyber and informationMore ❯
InformationSecurity Officer Hybrid – Home & London | Permanent | £68,000 | 35 hrs/week (flexible) A rare and brilliant opportunity to join this international development children’s charity, as their new InformationSecurity Officer . You'll be the expert, working closely with the Chief Information Officer and other senior leaders to embed security practices … team where the culture is collaborative and down-to-earth. You’ll have the autonomy to get stuck in, alongside the backing to develop professionally, whether that’s through security qualifications or broader leadership skills. What you will be doing As InformationSecurity Officer , you’ll lead the implementation of the organisation’s cyber security plans. … Act as subject matter expert on informationsecurity across the organisation Ensure compliance with standards like Cyber Essentials Plus and CIS . Oversee third-party security providers and outsourced ICT services. Manage incident response planning, investigations, and reporting. Deliver engaging training to build a strong security culture. Collaborate with Legal and Data Protection teams to ensure More ❯
InformationSecurity Officer Hybrid – Home & London | Permanent | £68,000 | 35 hrs/week (flexible) A rare and brilliant opportunity to join this international development children’s charity, as their new InformationSecurity Officer . You'll be the expert, working closely with the Chief Information Officer and other senior leaders to embed security practices … team where the culture is collaborative and down-to-earth. You’ll have the autonomy to get stuck in, alongside the backing to develop professionally, whether that’s through security qualifications or broader leadership skills. What you will be doing As InformationSecurity Officer , you’ll lead the implementation of the organisation’s cyber security plans. … Act as subject matter expert on informationsecurity across the organisation Ensure compliance with standards like Cyber Essentials Plus and CIS . Oversee third-party security providers and outsourced ICT services. Manage incident response planning, investigations, and reporting. Deliver engaging training to build a strong security culture. Collaborate with Legal and Data Protection teams to ensure More ❯
Senior InformationSecurity Manager page is loaded Senior InformationSecurity Manager Apply locations Great Britain - London time type Full time posted on Posted Yesterday job requisition id R5807 Job Description: Senior InformationSecurity Manager Position Overview: We are seeking aSenior Cyber Security Posture and Exposure Managerto lead and enhance our organization's security posture and manage cyber exposure risks. This role will oversee a small team of highly skilled Security Engineers and will be responsible for developing, implementing, and maintaining strategies to identify, assess, and mitigate security vulnerabilities across the enterprise. The ideal candidate will have a strong technical background, leadership experience, and a proactive approach to managing cyber risks … in a dynamic technology environment. What You'll Do: Leadership and Team Management: Lead, mentor, and manage a team of Security Engineers, fostering a culture of collaboration, innovation, and continuous improvement. Define team goals, assign responsibilities, and ensure the successful execution of security initiatives. Conduct regular performance reviews and provide professional development opportunities for team members. Ability to More ❯
Job Title: Cyber & InformationSecurity Lead Type: Full Time & Permanent Location: Hybrid/Bath, England About the Role: Seeking a senior cyber and informationsecurity professional to lead on safeguarding critical healthcare technology platforms. This role is ideal for someone with strong expertise in compliance, risk management, and security governance—particularly within public sector or … prioritise staff wellbeing (with flexible hybrid working offered) and are driven by a passion for creating impactful healthcare technology, with a strong commitment to quality and compliance. Key Responsibilities: Security Strategy : Define and maintain a robust security strategy aligned with business goals and growth. Compliance : Ensure adherence to key standards including DSPT, Cyber Essentials Plus, and ISO27001:2022. … Risk Management : Lead the identification and mitigation of informationsecurity risks across all operations. Security Architecture : Oversee secure system and software design throughout the development lifecycle. Incident Response : Manage the full lifecycle of security incidents, including reporting to relevant authorities. Awareness & Training : Drive a strong security culture through staff training and awareness initiatives. Regulatory Compliance More ❯
Technology Graduate Trainee, InformationSecurity London, GB Full-Time Technology Marex Overview Marex Group plc (NASDAQ: MRX) is a diversified global financial services platform providing essential liquidity, market access and infrastructure services to clients across energy, commodities and financial markets. The group provides comprehensive breadth and depth of coverage across four core services: clearing, agency and execution, market … traders, banks, hedge funds and asset managers. With more than 40 offices worldwide, the group has over 2,400 employees across Europe, Asia-Pacific and the Americas. For more information visit . Marex Graduate Programme Embark on a transformative journey with Marex's Full-Time Graduate Programme - an experience tailored to empower and support Analysts. Dive into the 'Backpack … bonds with those sharing your journey. Join Marex, where your passions align with purpose, and your strengths converge with our values. Department Description Marex Technology delivers efficiency, scalability and security for the business. The Marex Technology Department provides digital tools, software services and infrastructure globally to all business groups. Software development and support teams work in agile 'streams' aligned More ❯
Yeovil, Somerset, United Kingdom Hybrid / WFH Options
Leonardo UK Ltd
Job Description: The opportunity: Leonardo UK is seeking a proven and experienced Principal Consultant to join the Cyber & Security Solutions Division team. This role is focused on the delivery of one of the company's core products to an existing customer. This role will lead a team that will oversee, co-ordinate and deliver all facets of cyber and … informationsecurity related to the delivery across an engineering lifecycle - from requirements all the way through to in-service support and maintenance. This is an exciting opportunity at the very beginning of a significant programme, during which you will ensure that the product and associated deliverables are as secure as reasonably practicable, and in accordance with customer's … and working on site at one of our Leonardo offices and closely with our customers. Talk to us to find out more. What you'll do as a Principal Security Consultant: Leading a team to meet all aspects of the cyber and informationsecurity delivery across an engineering lifecycle. Interpreting customer requirements into actionable security management More ❯
s most loved retirement expert. About the role As the IT Senior Risk Manager you will support the Director of Enterprise Risk, the Chief Risk Officer, the Chief Digital Information Officer, and other Executives and senior management in developing and maintaining an appropriate and resilient technology and data risk management framework. You will also provide independent and proactive advice … advice to key stakeholders, including the Executive and senior management and across 1st and 2nd Line colleagues, on the steps that should be taken to maintain technology, data and informationsecurity risks managed at a level that is consistent with the Group's risk appetite and in line with legal and regulatory requirements. You will support the delivery … of the Group's Internal Model for Operational Risk through the development and maintenance of technology, data, and informationsecurity risk scenarios with risk owners and other key stakeholders. You will be responsible for establishing an environment of trust and open communication which will establish a cohesive spirit across 1st and 2nd Line colleagues. You will oversee the More ❯
Job summary NHS England's Chief InformationSecurity Office (CISO) Function's purpose is to enable safe care and build public trust by strengthening the cyber resilience of the NHS. The CISO supports the Transformation Directorate's purpose of delivering the best care and outcomes for patients, and enables faster, safer digital transformation of the NHS. As part … of the CISO Function the Senior Cyber Security Advisor sit in the Secure Consulting Team who provide specialist cyber security consultancy services to NHS England's Critical National Infrastructure and major national services, ensuring these services and digital programmes are Secure by Design. Senior Cyber Security Advisors ensure NHS England's systems operate from a cyber resilient … ll be given the support and autonomy to use your skills, knowledge, and experience, to make a real impact on improving people's lives. The role of Senior Cyber Security Advisors has been awarded a Recruitment and Retention Premia (RRP) in response to current labour market conditions. In recognition of this, the role attracts an additional monthly RRP payment More ❯
11150HS £35k - 40k per year + benefits InformationSecurity Assurance Specialist - HYBRID - 1 day a week in the office We are currently working with one of our biggest customers for are in the Financial Services sector. We are looking for someone who can join their growing team as anInformation Security Assurance Specialist. Reporting into the Assurance and … Architecture Manager, you will be responsible for supporting and operating the day-to-day activities relating to security, initiatives, controls and governance processes. This role is a combination of internal consultancy, change management and assurance activities to provide confidence to the business that we are meeting our security goals. You will act as the bridge between our technical … and operational functions and are therefore required to have excellent communication skills, including the ability to explain complex IT concepts to all levels. Skills and experience you need asInformation Security & Assurance Specialist: Strong understanding of all security principles and underlying technologies and how they apply to technological and business solutions Demonstrable ability to design security controls, procedures More ❯
who are one of a major driving forces behind Innovative Development of Enterprise-Led Internet Technology. Role Overview: As a Vulnerability Management/SOCAnalyst you will focus on Technical InformationSecurity within the Security Function , within a major part of the Organisation's Vulnerability Management Team . You will work closely within the Security Department covering … Tools Scheduling of Scanning across Business, ensuring Reporting Requirements are met whilst Minimising Operational Impacts to Endpoints Scheduling Internal & External Resources to Ensure Targets are Met Work across Full InformationSecurity Project Lifecycle Ensure Compliance with Security Policies & Procedures Act as an Escalation Point & Coordinate with other Teams when required Key Skills & Experience Required for SOC Analyst … role will include: Strong Understanding of Information/Cyber Security Principles & Technologies. Experience of Security Related Technical Investigations Hands-On Technical Experience of Conducting Vulnerability Scanning & Evaluating Results Commercial Awareness & (Ideally) Experience of PCI DSS (Current Version) Experience with Incident Response Procedures & Investigations Strong Verbal & Written Communication Skills High Attention to Detail Strong Team Player Searches: SOC More ❯
Bradford, West Yorkshire, Yorkshire, United Kingdom Hybrid / WFH Options
Yorkshire Water
Company description: Water Utility Company based in Yorkshire region of England. Job description: Information Governance Assistant Hello! Thanks for stopping by. Let us tell you about all the great reasons to join us here at Yorkshire Water: We offer a competitive salary, depending on experience £32,228 - £40,284 Annual incentive related bonus (£1000 maximum bonus opportunity for the … performance year) Attractive pension scheme (up to 12% company contribution) Development opportunities in line with the Information Governance Assistant progression plan 25 days annual leave plus bank holidays plus an extra wellness day! Life assurance cover of 4 times pensionable salary A great benefits package choose from health cash plan scheme, critical illness insurance, dental insurance, life assurance flex … many more! Location: Buttershaw/Hybrid Working (2 days office a week Bradford) Work type: Permanent. 37 hours per week, Monday Friday We have an exciting opportunity for a Information Governance Assistant to join the Data Protection team at Yorkshire Water and be a part of helping Yorkshire Water to provide the best service to our customers. Could this More ❯
Bristol, Avon, South West, United Kingdom Hybrid / WFH Options
Reed Technology
InformationSecurity Manager Location: Central Bristol Job Type: Full-time, Hybrid (2 days per week in-office) Salary: £60,000 - £70,000 + Benefits We are recruiting an InformationSecurity Manager to lead the operational and strategic security programme for a respected organisation headquartered in central Bristol. This hybrid role offers the opportunity to shape … the company's approach to information risk and resilience, while managing a skilled internal team and driving alignment with industry standards and best practice. Reporting to the Head of Security & Governance , the successful candidate will play a central role in delivering risk reduction across the business. You'll be responsible for maintaining ISO27001 compliance, overseeing risk assessment and … mitigation, and supporting incident management across multi-entity operations. Key Accountabilities: Lead and manage a team of three security professionals , supporting their development and day-to-day delivery. Ensure ongoing ISO27001 accreditation and alignment with broader assurance frameworks (e.g. NIST CSF, Cyber Essentials). Shape and implement the company's informationsecurity strategy , including policy, tooling, and More ❯
to make sure that we provide timely and valuable assurance and advisory services. Our core role is to provide assurance to the Board Audit Committee that the key Technology, InformationSecurity and Data Management risks across the Skipton Group are being effectively managed. We are also working on a number of other exciting initiatives, such as implementing the … analytics, visualisation, AI, agile auditing and continuous monitoring. What Will You Be Doing? You will be performing and/or leading a wide range of technical audits including: Cyber Security Risk Management IT Network/Infrastructure security Cloud Security Software development IT Disaster Recovery and Resilience IT risk management and governance reviews This role enables you to … further develop your technical skills in IT and InformationSecurity auditing, lead small teams, and coach and develop colleagues. As a Senior Specialist IT Auditor, you will be responsible for leading the delivery of audits as well as playing a vital role in supporting the delivery of other reviews. You will also engage with stakeholders across the Skipton More ❯
Information … Security Director Application Deadline: 12 August 2025 Department: IT Infrastructure and Operations Employment Type: Fixed Term Contract Location: London Compensation: £90,000 - £110,000/year Description Interim Infosec Director Location: London/Hybrid Working (Expectation that you will attend an office 2 days per week) Contract: 6 Month Secondment/Interim Hours: Full time 37.5 hours per week … to suit your lifestyle - from discounts on retail and dining, to health and wellbeing, travel, and technology and plenty more The Role Join us as our Interim Director of InformationSecurity and play a critical role in strengthening the Bank's cyber resilience. We're looking for a dynamic and experienced security leader to join our IT More ❯