remote). Manage end-user computer estate (laptops, mobile devices – Windows & macOS) using tools like Manage Engine/Intune. Process joiners, movers, and leavers including equipment provisioning and access management Push to Automate processes where applicable. Support and manage various software tools (Jira, ServiceNow, Microsoft Office, Teams, Salesforce, Miro, Moorepay HR, and finance systems). Administer and troubleshoot office … equipment including video conferencing tools, networking equipment, and printers. Conduct quarterly software access reviews and scheduled informationsecurity checks (e.g., antivirus, updates, access control). Maintain and manage the IT Asset Register and ITOPs third-party supplier register Liaise with third party suppliers for procurement of IT equipment. Assist with audits (internal/external) and GDPR data access … approval authority. Support ISO27001 ISMS compliance including documentation, checks, and reporting. Contribute to the development of Service Desk standards, processes, and KPIs. Provide flexible support to CMS, infrastructure, and informationsecurity teams within capability and bandwidth. Collaborate with third-party vendors for efficient resolution of issues. Create and maintain up-to-date procedural and process documentation. Support mkodo More ❯
City of London, Greater London, UK Hybrid / WFH Options
mkodo
remote). Manage end-user computer estate (laptops, mobile devices – Windows & macOS) using tools like Manage Engine/Intune. Process joiners, movers, and leavers including equipment provisioning and access management Push to Automate processes where applicable. Support and manage various software tools (Jira, ServiceNow, Microsoft Office, Teams, Salesforce, Miro, Moorepay HR, and finance systems). Administer and troubleshoot office … equipment including video conferencing tools, networking equipment, and printers. Conduct quarterly software access reviews and scheduled informationsecurity checks (e.g., antivirus, updates, access control). Maintain and manage the IT Asset Register and ITOPs third-party supplier register Liaise with third party suppliers for procurement of IT equipment. Assist with audits (internal/external) and GDPR data access … approval authority. Support ISO27001 ISMS compliance including documentation, checks, and reporting. Contribute to the development of Service Desk standards, processes, and KPIs. Provide flexible support to CMS, infrastructure, and informationsecurity teams within capability and bandwidth. Collaborate with third-party vendors for efficient resolution of issues. Create and maintain up-to-date procedural and process documentation. Support mkodo More ❯
Cheltenham, Gloucestershire, United Kingdom Hybrid / WFH Options
Spirax-Sarco Engineering
working) Benefits: 27 days holiday plus Wellbeing day,Private Medical Insurance, Bonus scheme, Sharescheme, Enhanced pension plan,Life assurance, Discount scheme. Role Overview: Join a dynamic, international team of InformationSecurity and IT professionals at Spirax Group plc as a Group IT Assurance Manager . Reporting to the Group IT GRC Manager and leading a small team, you … the Group. Acting as a key ambassador for IT assurance and controls, sharing best practices and ensuring delivery of actions. Supporting the maintenance and development of the Group's InformationSecurityManagement System (ISMS). Leading compliance assessments and maintaining a central repository of security and compliance documentation. Coaching team members and colleagues on IT General … Controls and assurance practices. Your previous experience is likely to include . Proven experience leading IT assurance programmes. Substantial experience in security assessments and compliance oversight. Familiarity with ISMS and frameworks such as ISO 27001, NIST CSF, CIS Controls, or SCF. Understanding of cloud security, third-party risk, and regulatory standards (e.g., GDPR, UK DPA2018). Experience using More ❯
consistency, uphold best practices, and drive compliance efforts that align with industry standards and regulatory expectations. How Youll Spend Your Time Assistingwith the compliance program and integrated quality/informationsecuritymanagement system to maintain alignment with industry standards Facilitatingand conducting risk assessments in order to ensure risks are effectively identified and managed according to the company … compliance frameworks and industry standards such as ISO, SOC, HIPAA, and GDPR Ability to commuteto our UK office up to [insert number] days a week Sincere interestin privacy, risk management, and maintaining ethical operations across a global organization A knack for working collaborativelywithin cross-functional and international teams What you will gain: This is an excellent opportunity for you … Competencies You Will Need: Must have excellent oral and written communication skills and expertise in: UK & EU privacy legislation completing risk assessments in general, privacy assessments in particular risk management managing and completing subject access requests project management It would be desirable if you have: A deep understanding of the regulatory environment in the US, CAN, DE, SWE More ❯
Chesterfield, Derbyshire, United Kingdom Hybrid / WFH Options
Hays Technology
IT Security & Compliance Lead Chesterfield £50,000 to £55,000+ Excellent Benefits Your new company Hays Technology are recruiting for an InformationSecurity & Compliance Lead to join a large public sector organisation based in the Chesterfield area. You will be reporting to the Head of Digital, Data & Technology. This is a new role to establish and make … your own. Your new role In your new role, you will be responsible for ensuring the security and protection of the organisation's information systems, networks, and data, whilst playing a critical role in developing and implementing informationsecurity strategies, policies, and procedures to safeguard the organisation's digital assets and mitigating potential risks. You will … oversee informationsecurity, compliance, and risk management practices based on industry-accepted informationsecurity and risk management frameworks, whilst establishing and maintaining an incident response plan, including incident detection, response, investigation, and resolution, to minimise the impact of security incidents. What you'll need to succeed Demonstrable experience of implementing and maintaining informationMore ❯
Employment Type: Permanent
Salary: £50000 - £55000/annum £50,000 to £55,000+Benefits
Manchester, North West, United Kingdom Hybrid / WFH Options
Tunstall Healthcare (UK) Ltd
We are currently recruiting for a Regional InformationSecurity Officer , reporting to the Global Chief InformationSecurity Officer (CISO), to oversee the informationsecurity function across the countries and Tunstall entities in their scope. This is an incredibly exciting time to join Tunstall as we embark on an exciting period of transformation. You will … be joining a recently created and growing global InformationSecurity team within Tunstall and will be in a leadership position playing a key part in the success of this transformation. This role would be based at either our Manchester office or our Whitley site (DN14 0HR) working on a hybrid basis. We are flexible on number of days … in the office. What will you be doing in this role? As our Regional Security Officer , you will be responsible for implementing, running and overseeing the informationsecurity function across the countries and Tunstall entities in your scope, ensuring consistent and strong informationsecuritymanagement in support of our business goals and in line More ❯
everybody for who they are and what they bring to the table, supporting one another as we continue to deliver for our customers. LI-KS1 The role of Cyber Security Consultant sits within the Cyber Security team in Three UK, which is responsible for providing subject matter expertise and guidance to business units across Three's Network and … policy and standards. In this role you will have a broad and challenging remit, you will therefore need to be flexible and agile in your approach, switching between different security disciplines within the team as necessary. You will be engaging in the delivery of multiple business initiatives by introducing baseline and enhanced security requirements and supporting their implementation … through guidance and advice. You will also be recommending security solutions and then providing design input and technical approvals, assurances, and governance of deliveries that the project carries out with our colleagues and partners. Within the Security team itself you will be expected to collaborate with the wider team and security colleagues providing technical support and guidance More ❯
Upto £75,000 per annum plus car, company bonus and Private medical cover Join Serco's UK & Europe division as a Security Architect and be at the forefront of shaping our IT security landscape with the Armed Forces Recruitment Service (AFRS) team. In this pivotal role, you'll translate business needs into actionable security solutions, identifying and … current IT capabilities. You'll define innovative strategies to bridge these gaps, ensuring seamless alignment between project delivery, overall strategy, and architecture. Take the lead in driving critical IT security workstreams and make a lasting impact on the resilience and effectiveness of our systems. As our Security Architect, you'll take the lead in shaping Serco's security strategy. You'll drive key decisions on technology selection, guide seamless implementations, and oversee ongoing security services. By maintaining a detailed and robust security architecture across all systems, you'll ensure a solid foundation for future design and innovation in our security technology landscape. Main responsibilities of the role: Support execution of IT security workstreams More ❯
Job title: Cyber Security Assurance Specialist Location: Preston or Frimley - We offer a range of hybrid and flexible working arrangements - please speak to your recruiter about the options for this particular role. Salary: Circa £47,500 depending on skills and experience What you'll be doing: To support the delivery of an intelligence led and risk-based through life … assurance programme across Sectors, UK Business Groups and Service Providers to underpin HMG Secure by Design requirements Responsible for ensuring the security and resilience of applications, systems and services throughout their lifecycle Participate in the delivery of wider automation within the through life assurance team To assist with the evolution of the through life assurance team as we adopt … life cycle Aid the delivery of risk assessment activities for applications, systems and services being used across Shared Services & Head Office Your skills and experiences: Essential: CISMP - Certificate in InformationSecurityManagement Principles To work autonomously and manage workload & priorities based on demand from multiple different projects and initiatives Desirable: Has knowledge or worked with the NIST More ❯
is part of the Product Team and supports the company at a corporate level and regionally in both the UK and the US. With the support of the Senior Management Team and Board of Directors, the RA QA department ensures that the company complies with regulatory requirements in all applicable global regions and supports the company to meet the … objectives in all areas of the business. About the Role This is a senior individual contributor QA role in the company, responsible for owning, operating, and evolving our Quality Management System (QMS) and InformationSecurityManagement System (ISMS). You will work cross-functionally across all departments, lead audit readiness, drive continuous improvement, and serve as … the company’s InformationSecurity Officer and Management Representative. This role is ideal for someone who thrives in a high-impact, autonomous environment and wants to shape and influence quality strategy at a company-wide level. It offers significant growth potential for a professional looking to expand their strategic and leadership footprint. Main Duties and Responsibilities: Strategic More ❯
is part of the Product Team and supports the company at a corporate level and regionally in both the UK and the US. With the support of the Senior Management Team and Board of Directors, the RA QA department ensures that the company complies with regulatory requirements in all applicable global regions and supports the company to meet the … objectives in all areas of the business. About the Role This is a senior individual contributor QA role in the company, responsible for owning, operating, and evolving our Quality Management System (QMS) and InformationSecurityManagement System (ISMS). You will work cross-functionally across all departments, lead audit readiness, drive continuous improvement, and serve as … the company’s InformationSecurity Officer and Management Representative. This role is ideal for someone who thrives in a high-impact, autonomous environment and wants to shape and influence quality strategy at a company-wide level. It offers significant growth potential for a professional looking to expand their strategic and leadership footprint. Main Duties and Responsibilities: Strategic More ❯
UCL research activities. Research Data Stewards (also known as research data managers, data consultants, data wranglers, or bioinformaticians) offer technical support and consultancy to UCL researchers, assisting with data management, policy compliance, and promoting Open Science and FAIR data principles. They will be embedded within research projects but also contribute to new research proposals and collaborate on designing research … skills are essential to clearly explain technical concepts to non-technical staff. At the Senior grade, candidates should have a strong background working with sensitive data, understanding data governance, informationsecurity, and risk management, and be familiar with issues related to handling and disseminating sensitive data. We are especially interested in applicants with experience in areas such … as ISO27001 certification, InformationSecurityManagement Systems (ISMS), Trusted Research Environments (TRE), Secure Data Environments (SDE), Data Safe Havens (DSH), the Five Safes model, healthcare data processing, NHS Data Security and Protection Toolkit, anonymising personal data, data protection, and ethics. More ❯
in Splunk SaaS Full end to end experience of delivery lifecycle experience for improvements to Splunk SaaS Experience of defining improvements within Cyber departments, particularly, SIEM improvements within Cyber Security Operations Centre (CSOC) functions that result in an increase in SIEM Maturity Levels. Splunk SaaS experience and expertise as a lead architect and/or engineer A credible technology … leader who can drive through technology and process change. Good communications, reporting and presentational skills. Desirable qualifications: Certified Information Systems Security Professional (CISSP) Ethical Hacking and Intrusion Prevention Implementing Microsoft Azure Infrastructure Solutions Developing Windows Azure and Web Services InformationSecurityManagement Systems (ISMS) Identity Access and Management (IDAM) Public Key Infrastructure (PKI) Please More ❯
time in energy. Help us make a real impact on shaping a better, more sustainable future. We are very excited to be building a small and efficient Cyber and InformationSecurity team at Octopus Energy Group. We are looking for ambitious, knowledgeable, and experienced InfoSec Analysts to join our team, to grow with the rest of the company … and ensure we continue to do so in a secure and safe way. You will be a key partner in defining what Security is at Octopus Energy Group. We will be shaping this team to provide a world class support service to our employees, building our way out of problems and undertaking transformational organisational change. You'll be primarily … to business challenges and opportunities to continually improve our services. Specifically, we're looking for InfoSec Analysts with at least 2 years of relevant experience to help us improve security across the Octopus Energy Group. If you're passionate about InformationSecurity and driving a positive security culture, we encourage you to apply! What you'll More ❯
Nuclear Command Control, and Communications (NC3)/Space Security System Analyst HazeGrayCyber, LLC is focused on delivering Cyber Security and Zero Trust Solutions to the US National Defense community and our allies and partners. We are looking for a full-time Nuclear Command, Control, and Communications (NC3)/Space Security System Analyst that has experience with NC3 … Tuesday, Wednesday and teleworking Thursday, Friday. Responsibilities Performs risk and vulnerability assessments, remediation/mitigation techniques, and documents and provides technical reports and whitepapers on vulnerabilities associated with complex information systems and modern technologies in use within the Navy in the SPACE and Nuclear C2 domain. Provides risk analyses to inform authorization decisions at all levels. Ability to perform … duties and responsibilities. Coordinates with customers and program offices on the evaluation and compliance to DoD/Navy directives, policies, and instruction to include but not limited to Federal InformationSecurityManagement Act (FISMA), OMB A-130, NIST SP 800 Series, FIPS Publications, and Navy RMF governance. Assists in RMF A&A process negotiation and task managementMore ❯
Reading, Berkshire, South East, United Kingdom Hybrid / WFH Options
Bowerford Associates
We are searching for a Senior Software Security Architect/Senior Application Security Architect for a marketing leading and award-winning technology and data driven business. The position is offered on a remote basis. The role is hands-on and very software engineering focused - you will be responsible for establishing a secure SDLC and 'Secure by Design' approach …/practice to be used by all of the Architecture and Software development teams. The role will involve: Developing, implementing, and maintaining application security architecture across the organisation. Ensuring our systems are designed with objectives like speed, scalability, robustness, zero-trust, automation and supportability at the core. Collaborating with the Architecture and Engineering Team to ensure security is … an integral part of all development and deployment processes. Providing expert software security advice (design, coding, testing) to the Software Engineering Community, to InfoSec, DevOps and other teams. Defining and delivering secure software development of information to the software engineering teams. Escalating issues appropriately, to various teams and levels of authority inside the organisation. Interfacing with customers to More ❯
IT Infrastructure and Security Engineer Role: Full-time - Permanent Location: Newcastle-Upon-Tyne Salary: Up to £55,000pa + benefits The Role: Intaso's key client are looking for a dedicated and proactive IT Infrastructure and Security Engineer to ensure secure and compliant IT systems across their organisation. This role is integral to the IT team, providing technical … improve, and implement IT processes and systems for increased efficiency and effectiveness. The position involves collaboration with server and network teams across the organization. Key responsibilities include conducting periodic security testing, maintaining infrastructure security standards, and applying critical systems and software updates with the latest security patches. You will also contribute to projects aimed at ensuring compliance … with informationsecurity controls, educating staff on security standards and best practices, and assisting IT team members in addressing security requirements. This is a site-based role, reporting to the Senior IT Operations Director. The Person: Significant experience in IT security engineering with hands-on expertise across various solutions, including Cisco, Fortinet, Microsoft technologies, Linux More ❯
the user experience and how your team can make it even better. The way you roll You'll sit on the Digital Leadership team, and ensure everything DevOps and security is in check with the boring compliance bits (we'll supply the coffee). You also house some pretty impressive techy knowledge in that noggin of yours and you … guidance on solutions to both clients and the team Managing activities and providing technical guidance on CI/CD solutions Maintaining environment stability for business continuity Assisting with incident management and capture Engaging and supporting development and test teams with DevOps workload Procuring new software/tools to increase efficiency within the business, including security approval and low … level design documentation Getting involved with security configurations Sitting within the Technical Leadership team for digital and utilising your technical and leadership skills to allow the TLT to be continually moving forward Supporting the InformationSecurity Manager to ensure that policies are developed and implemented to support the ISO27001 InformationSecurityManagement System What More ❯
Manage and collaborate with integrations squad - working with Tech Lead, Fullstack Engineer and QA Engineer. Cross functional working - working with other business unit Product Managers, Engineers and the Senior Management Team. Prioritisation and building roadmap for future integrations - push back on requests, guiding teams and strategising about what's best for the business. Managing demanding workload - requests will come … knowledge (platform/backend) is advantageous Skin Analytics manufactures medical devices and complies with ISO standards 13485 and 27001. As part of your employment, you will be assigned Quality Management System (QMS) and InformationSecurityManagement System (ISMS). We require that our employees agree to complete their assigned training and diligently follow all company quality … management and informationsecurity processes. The National Institute for Health and Care Excellence has recommended DERM for use within the NHS until May 2028, while further evidence is gathered. Competitive salary Share options package - all our employees have ownership in the company Private healthcare 25 days annual leave (5 day company shutdown in August + bank holidays More ❯
effort estimation Escalating project risks when needed and supporting mitigation planning Promoting a culture of continuous improvement across processes and documentation standards Ensuring all activity is aligned with our InformationSecurityManagement Systems (ISMS) Who you are: You’re someone who brings clarity to complexity. You know how to make sense of technical detail and communicate it … the best-value approach Proven experience in authoring detailed solution documentation used by development and QA teams A solid understanding of customer databases and CRM journey logic Exceptional time management skills and the ability to juggle multiple priorities You’ll stand out if you’ve worked with: SQL (Stored Procedures, SSMS), SSIS Cloud technologies like Snowflake and AWS Glue More ❯
effort estimation Escalating project risks when needed and supporting mitigation planning Promoting a culture of continuous improvement across processes and documentation standards Ensuring all activity is aligned with our InformationSecurityManagement Systems (ISMS) Who you are: You’re someone who brings clarity to complexity. You know how to make sense of technical detail and communicate it … the best-value approach Proven experience in authoring detailed solution documentation used by development and QA teams A solid understanding of customer databases and CRM journey logic Exceptional time management skills and the ability to juggle multiple priorities You’ll stand out if you’ve worked with: SQL (Stored Procedures, SSMS), SSIS Cloud technologies like Snowflake and AWS Glue More ❯
Altura, an ambitious SaaS startup! At Altura, we make it easier for organisations to win complex deals (tenders and RFPs). With our AI-powered platform, we simplify bid management by turning it into a smooth and strategic process. We connect workflows, automate tasks, and make knowledge accessible so teams can work more efficiently and effectively. But we're … not stopping there. We're developing the first AI-driven Agentic Virtual Bid Management Assistant, designed to automate the entire bid lifecycle. Altura is growing fast and we have big plans for the future. If you value innovation, enjoy working collaboratively, and want to make a real impact - we'd love to have you on the team. TL;DR … effectively with cross-functional teams. Results-driven, with a focus on exceeding customer expectations. Basic knowledge of ISO 27001 is essential, along with a willingness to comply with our informationsecuritymanagement guidelines regarding risk, cyber resilience, and operational excellence. You should apply if: You thrive in high-impact roles. If you enjoy building scalable processes and More ❯
InformationSecurity Auditor Department: Audit Employment Type: Permanent Location: Field Based, UK Reporting To: Regional Operations Manager Description Please note, that a full driving licence is required as this is a field-based role. Join our growing Lead Auditor teams across the UK! At ISOQAR, we draw on our experience, knowledge, and ambition to empower organisations to achieve … solutions, the Alcumus Group helps organisations increase resilience and manage risk, protecting its customers, workforce, stakeholders, and the environment. Due to our continued growth, we are seeking professionals within informationsecurity to join our growing Lead Auditor teams who support a breadth of clients across the UK . With onsite practical experience and deep knowledge of industry processes … Divisional inductions, you will embark on a 12-week training programme, including classroom and onsite learning with a Senior Lead Auditor to achieve your Lead Auditor qualifications within Quality Management Systems (9001) and InformationSecurityManagement Systems (27001). What that means day to day The life of a Lead Auditor is both fun and varied More ❯
Job Summary: Seeking a highly skilled ISO Compliance Specialist to lead the ISO 27001 InformationSecurityManagement System of a growing design and manufacturing company, as well as to manage other ISO standards, including ISO 9001, 45001, and 14001. You will be the central, key member of the team responsible for developing, managing, and maintaining policies and … ISO standards. An extensive knowledge of ISO standards and a proven track record of successful ISO certification is highly desirable for this position. Key Responsibilities: Lead the maintenance and management of ISO standards. Develop, manage, and maintain policies and documentation to ensure compliance with ISO standards. Coordinate with various departments to ensure seamless integration of ISO requirements. Conduct internal … audits to assess compliance and identify areas for improvement. Provide training and support to staff on ISO standards and procedures. Ensure third-party suppliers and supply management chains meet our compliance requirements Respond to customer security questionnaires and audits and assist with InformationSecurity tender submissions. Experience Required: 3+ years of experience in ISO 27001 managementMore ❯
Staffordshire, England, United Kingdom Hybrid / WFH Options
Harvey Nash
technology, business process, and people. Benefits Include: Hybrid working 15% Annual Bonus Healthcare You will shape and drive project delivery from a business change perspective, combining hands-on project management with strong business analysis and change leadership capabilities. A key aspect of this role will be the establishment/development of a (PMO) to support project delivery across the … speak with any Project Managers with experience being the change champion between stakeholders, technical teams, and end users ensuring change is delivered with people in mind. Responsibilities Include: Project Management Business Analysis Change Management Stakeholder Management Risk and Issue Management Team Leadership and Collaboration Project Management Office (PMO) Establishment and Development InformationSecurityManagement Requirements Hands on experience of business analysis, process mapping and requirements gathering Strong understanding of people focussed change, with a tool kit that includes comms, training, impact assessment, behavioural adaptation and benefits realisation Confident facilitator, capable of working across technical and non technical audiences Adept in project management methodologies (e.g., PRINCE2, Agile). Solid knowledge of More ❯