to ensure security best practices are embedded throughout project lifecycles. Develop and maintain security documentation, including architecture diagrams, policies, and procedures. Advise clients on compliance with standards such as NCSC Cloud Security Principles, ISO 27001, Cyber Essentials Plus, and GDPR. Support incident response planning and execution. Stay current with emerging threats, vulnerabilities, and regulatory changes. What You'll Bring Experience More ❯
Bristol, Avon, England, United Kingdom Hybrid / WFH Options
Sanderson
Assurance and Risks. Security related legislation (e.g. GDPR, PCI DSS, ICO requirements). Security Control Frameworks such as ISO 27001, NIST CSF and CIS Controls v8. HMG, NPSA and NCSCsecurity policies, standards and guidance. Have experience building and implementing secure by design principals within the software development lifecycle (SDLC). Threat Modelling - Kill Chain - Attack tree analysis. Working understanding More ❯
real-world security challenges Key Skills & Experience CyberSecurity: Experience in cyber strategy, risk management, security architecture, transformation programmes, and regulatory compliance Knowledge of relevant standards: NIST CSF, ISO27001, NCSC CAF, GDPR, NIS2, etc. Certifications such as CISSP, CISM, CISA, M.Inst.ISP, or MSc in CyberSecurity Hands-on experience in areas like GRC, cyber threat management, vulnerability management Strong communication More ❯
City of London, London, United Kingdom Hybrid / WFH Options
Anson McCade
real-world security challenges Key Skills & Experience CyberSecurity: Experience in cyber strategy, risk management, security architecture, transformation programmes, and regulatory compliance Knowledge of relevant standards: NIST CSF, ISO27001, NCSC CAF, GDPR, NIS2, etc. Certifications such as CISSP, CISM, CISA, M.Inst.ISP, or MSc in CyberSecurity Hands-on experience in areas like GRC, cyber threat management, vulnerability management Strong communication More ❯
london, south east england, united kingdom Hybrid / WFH Options
Anson McCade
real-world security challenges Key Skills & Experience CyberSecurity: Experience in cyber strategy, risk management, security architecture, transformation programmes, and regulatory compliance Knowledge of relevant standards: NIST CSF, ISO27001, NCSC CAF, GDPR, NIS2, etc. Certifications such as CISSP, CISM, CISA, M.Inst.ISP, or MSc in CyberSecurity Hands-on experience in areas like GRC, cyber threat management, vulnerability management Strong communication More ❯
slough, south east england, united kingdom Hybrid / WFH Options
Anson McCade
real-world security challenges Key Skills & Experience CyberSecurity: Experience in cyber strategy, risk management, security architecture, transformation programmes, and regulatory compliance Knowledge of relevant standards: NIST CSF, ISO27001, NCSC CAF, GDPR, NIS2, etc. Certifications such as CISSP, CISM, CISA, M.Inst.ISP, or MSc in CyberSecurity Hands-on experience in areas like GRC, cyber threat management, vulnerability management Strong communication More ❯
Sunbury-On-Thames, London, United Kingdom Hybrid / WFH Options
BP Energy
CISA. Formal engagement and active participation in industry cybersecurity groups (such as the Oil & Gas CyberSecurity Network) and/or deep relationships with government organisations, such as NCSC or CISA is desired, as well. At bp, we provide an excellent working environment and employee benefits such as an open and inclusive culture, a great work-life balance, tremendous More ❯
expertise in areas such as cyber strategy, risk management, cyber maturity assessments, security architecture, transformation programmes, and regulatory compliance. Familiarity with leading frameworks and standards including NIST CSF, ISO27001, NCSC CAF, GDPR, NIS2, and CRI2.0. Hands-on experience delivering security solutions and assessments in varied environments. Relevant certifications such as CISSP, CISM, CISA, M.Inst.ISP, or a postgraduate qualification (e.g. MSc More ❯
and analytical solutions Working knowledge of cloud orchestration and containerisation technologies, such as Docker and Kubernetes Working knowledge of DevOps, CI/CD and Infrastructure-as-Code Understanding of NCSC Cloud Security Principles and its practical implementations Aker Systems Attributes At Aker we work as a team, we are collaborative, hardworking, open, and delivery obsessed. There is no blame culture More ❯
assessments, maturity modelling, and security architecture projects. Ideal Candidate Profile Strong consulting experience in cyber strategy, transformation, or risk management. Understanding of cyber frameworks such as NIST CSF, ISO27001, NCSC CAF, GDPR, or NIS2. Holds or is working toward certifications such as CISSP, CISM, CISA, or equivalent. Comfortable managing project teams and delivering to time and budget. Excellent communication skills More ❯
City of London, London, United Kingdom Hybrid / WFH Options
Anson McCade
assessments, maturity modelling, and security architecture projects. Ideal Candidate Profile Strong consulting experience in cyber strategy, transformation, or risk management. Understanding of cyber frameworks such as NIST CSF, ISO27001, NCSC CAF, GDPR, or NIS2. Holds or is working toward certifications such as CISSP, CISM, CISA, or equivalent. Comfortable managing project teams and delivering to time and budget. Excellent communication skills More ❯
london, south east england, united kingdom Hybrid / WFH Options
Anson McCade
assessments, maturity modelling, and security architecture projects. Ideal Candidate Profile Strong consulting experience in cyber strategy, transformation, or risk management. Understanding of cyber frameworks such as NIST CSF, ISO27001, NCSC CAF, GDPR, or NIS2. Holds or is working toward certifications such as CISSP, CISM, CISA, or equivalent. Comfortable managing project teams and delivering to time and budget. Excellent communication skills More ❯
london (city of london), south east england, united kingdom Hybrid / WFH Options
Anson McCade
assessments, maturity modelling, and security architecture projects. Ideal Candidate Profile Strong consulting experience in cyber strategy, transformation, or risk management. Understanding of cyber frameworks such as NIST CSF, ISO27001, NCSC CAF, GDPR, or NIS2. Holds or is working toward certifications such as CISSP, CISM, CISA, or equivalent. Comfortable managing project teams and delivering to time and budget. Excellent communication skills More ❯
South West London, London, United Kingdom Hybrid / WFH Options
Anson Mccade
and client environments What You'll Bring Strong experience in cyber strategy, risk management, governance, architecture, and regulatory compliance Familiarity with frameworks and standards such as NIST CSF, ISO27001, NCSC CAF, GDPR, and NIS2 Industry-recognised certifications (e.g. CISSP, CISM, CISA, M.Inst.ISP, or equivalent) Practical experience in GRC, threat and vulnerability management, or operational resilience Proven delivery across complex programmes More ❯
optimal solutions. If your career has given you the opportunity to author and publish technical reports, advise clients, work with formal security frameworks including ISA/IEC 62443 and NCSC's CAF framework and define and design OT solutions from a security perspective then you would be a real asset to our team. Adding to the CyberSecurity capability's More ❯
City of London, London, United Kingdom Hybrid / WFH Options
Anson McCade
operational, and technical domains. You should have: Cyber Expertise: 4+ years experience in cyber strategy, risk, maturity assessments, and operating models. Knowledge of frameworks such as NIST CSF, ISO27001, NCSC CAF, CRI 2.0. Exposure to regulatory environments including NIS2 and GDPR. Relevant certifications (e.g., CISSP, CISM, CISA, MSc in CyberSecurity). Consulting Skills: Strong client-facing communication and stakeholder More ❯
operational, and technical domains. You should have: Cyber Expertise: 4+ years experience in cyber strategy, risk, maturity assessments, and operating models. Knowledge of frameworks such as NIST CSF, ISO27001, NCSC CAF, CRI 2.0. Exposure to regulatory environments including NIS2 and GDPR. Relevant certifications (e.g., CISSP, CISM, CISA, MSc in CyberSecurity). Consulting Skills: Strong client-facing communication and stakeholder More ❯
London, South East, England, United Kingdom Hybrid / WFH Options
Sanderson
technical role Recent MOD experience Security related legislation (e.g. GDPR, PCI DSS, ICO requirements) Security Control Frameworks such as ISO 27001, NIST CSF and CIS Controls v8 HMG and NCSCsecurity policies, standards and guidance Cloud security including Amazon Web Service offerings such as KMS, IAM and ECS Event-driven microservice architectures using native cloud technology Benefits: 25 days holiday More ❯
Key Responsibilities Support cyber transformation projects, governance assessments, and maturity roadmaps Assist with cyber strategy documentation and recommendations for leadership teams Work across frameworks such as ISO27001, NIST CSF, NCSC CAF, GDPR, and NIS2 Contribute to reports, client workshops, presentations, and stakeholder engagement Develop knowledge of security concepts, risk appetite alignment, and digital resilience What We're Looking For Degree More ❯
solving skills Ability to manage competing priorities and deliver under pressure A full UK driving license and access to a business-insured vehicle Desirable Skills Familiarity with Cyber Essentials, NCSC, NIST and ISO 27001 standards Experience with cloud platforms (e.g., Azure, AWS) Knowledge of cybersecurity frameworks and tools Strong communication and stakeholder engagement skills About us At CHCP, we're More ❯
a multifaceted programme team Due to the nature of the role you must be eligible for SC Clearance. Desirable Requirements: Experience in a CyberSecurity environment Understanding of the NCSCCyber Assurance Framework (CAF) Understanding of the NIST CyberSecurity Framework (CSF) and mapping to CAF About us: At Peregrine, we see beyond the immediate and look to the horizon. More ❯
Bath, England, United Kingdom Hybrid / WFH Options
Computer Network Defence Ltd (CND)
experience in information security, ideally in a CISO or equivalent role within software or health tech. Healthcare Standards : Strong knowledge of UK healthcare security frameworks like DSPT, DTAC, and NCSC CAF. ISO 27001 : Proven track record in implementing and maintaining ISO 27001:2022-certified ISMS. Secure by Design : Deep understanding of secure SDLC and embedding security into product and system More ❯