security specialists (preferred). Understanding of data security, governance, and controls (essential). Experience with cloud security solutions and modern threat modeling (preferred). Knowledge of security frameworks like NIST CSF, Mitre ATT&CK (essential). What You'll Get in Return: We offer a competitive salary and benefits, including: Company Pension Scheme Private Medical Insurance Group Income Protection Group More ❯
Wolverhampton, West Midlands, United Kingdom Hybrid / WFH Options
Tilt Recruitment Limited
/AKS), and infrastructure protection. Hands-on knowledge of DevSecOps, IaC (Terraform), CI/CD pipelines, and tools like Veracode, Trivy, and Checkov. Familiarity with standards such as CIS, NIST, GDPR, ISO and frameworks like MITRE ATT&CK. Strong programming/scripting skills (Python, Go, Groovy) with a clean, secure coding ethos. Ideal Candidate Profile: Expert in Azure cloud security More ❯
Chatham, Kent, United Kingdom Hybrid / WFH Options
Tilt Recruitment
/AKS), and infrastructure protection. Hands-on knowledge of DevSecOps, IaC (Terraform), CI/CD pipelines, and tools like Veracode, Trivy, and Checkov. Familiarity with standards such as CIS, NIST, GDPR, ISO and frameworks like MITRE ATT&CK. Strong programming/scripting skills (Python, Go, Groovy) with a clean, secure coding ethos. Ideal Candidate Profile: Expert in Azure cloud security More ❯
Milton Keynes, Buckinghamshire, United Kingdom Hybrid / WFH Options
Allica Bank
teams, mentoring engineers, and working cross-functionally with other technical teams. Experience with cloud security across multiple platforms (Azure, Google Cloud). Expertise in security frameworks such as CIS, NIST, ISO27001. Solid understanding of network protocols (TCP/IP, DNS, HTTP/S, VPN) and how to secure them. Excellent presentation skills - both to technical and non-technical audiences. Proficiency More ❯
experience in a Cyber/Information Security Role. Hold a current and relevant Security Certifications (e.g., CISSP, CISM). Extensive knowledge of security best practices, frameworks, andstandards (e.g., NIST, ISO 27001). Proven experience as a Security Architect, with a strong focus on AI security. Deep understanding of AI/ML concepts, including model development, data pipelines, and deployment. More ❯
Experience with network security and networking technologies. Knowledge of database and operating system security. Knowledge of the latest security principles, techniques, and protocols. Knowledge of security frameworks and certifications - NIST, ISO27001, Cyber Essentials etc. Understanding of basic coding e.g. Powershell. Strong problem solving and critical thinking skills. Education and Qualifications: Bachelor's degree in computer science or a related field. More ❯
IAM) platforms, including Entra ID (Azure AD), ensuring secure access and role governance across systems Design and implement security controls for hybrid cloud environments (Azure and AWS), aligning with NISTand CIS best practices Proactively monitor systems and respond to security alerts, investigating issues across endpoint, identity, and infrastructure layers Support internal audits and compliance checks, maintaining security documentation and … PowerShell or Python for infrastructure or policy workflows Experience deploying or integrating SIEM and EDR tools, as well as conducting incident response (Preferred) Familiarity with security frameworks such as NIST 800-53, CIS Benchmarks, or ISO 27001 (Preferred) Industry certifications such as AZ-500, SC-300, or AWS Security Specialty ... More ❯
automation and security tool development. Experience with Infrastructure as Code (IaC) tools, particularly Terraform. Solid understanding of security monitoring, logging, and alerting concepts. Familiarity with common security frameworks (e.g., NIST, MITRE ATT&CK, OWASP Top 10). More ❯
IAM) platforms, including Entra ID (Azure AD), ensuring secure access and role governance across systems Design and implement security controls for hybrid cloud environments (Azure and AWS), aligning with NISTand CIS best practices Proactively monitor systems and respond to security alerts, investigating issues across endpoint, identity, and infrastructure layers Support internal audits and compliance checks, maintaining security documentation and … PowerShell or Python for infrastructure or policy workflows Experience deploying or integrating SIEM and EDR tools, as well as conducting incident response (Preferred) Familiarity with security frameworks such as NIST 800-53, CIS Benchmarks, or ISO 27001 (Preferred) Industry certifications such as AZ-500, SC-300, or AWS Security Specialty ... More ❯
automation and security tool development. Experience with Infrastructure as Code (IaC) tools, particularly Terraform. Solid understanding of security monitoring, logging, and alerting concepts. Familiarity with common security frameworks (e.g., NIST, MITRE ATT&CK, OWASP Top 10). More ❯
IAM) platforms, including Entra ID (Azure AD), ensuring secure access and role governance across systems Design and implement security controls for hybrid cloud environments (Azure and AWS), aligning with NISTand CIS best practices Proactively monitor systems and respond to security alerts, investigating issues across endpoint, identity, and infrastructure layers Support internal audits and compliance checks, maintaining security documentation and … PowerShell or Python for infrastructure or policy workflows Experience deploying or integrating SIEM and EDR tools, as well as conducting incident response (Preferred) Familiarity with security frameworks such as NIST 800-53, CIS Benchmarks, or ISO 27001 (Preferred) Industry certifications such as AZ-500, SC-300, or AWS Security Specialty .. More ❯
Hertfordshire, England, United Kingdom Hybrid / WFH Options
Planet Pharma
Requirements: ISO 27001 Lead Implementer or Auditor certification (essential). Demonstrated experience in an Information Security or IT Governance role. Strong knowledge of frameworks like ISO 27001/27002, NIST, GDPR, and related standards. Proven ability to manage audits, compliance reporting, and security training programs. Excellent stakeholder management, communication, and analytical skills. This is an exciting opportunity for someone who More ❯
Bury St Edmunds, England, United Kingdom Hybrid / WFH Options
Hamilton Barnes 🌳
willing to undergo DBS and Counter Terrorist Check. It would be great if you had: Certifications such as CISSP, or other relevant qualifications. Experience with additional frameworks (e.g., SOC2, NIST, NCSC CAF). More than 2 years’ experience delivering IT or cybersecurity solutions. Benefits: 30 days annual leave + 8 bank holidays Additional day off for your birthday 3% employer More ❯
regular training to promote cybersecurity awareness across the company. What You Bring Experience leading high-performing global security teams. Strong understanding of security frameworks and regulations (eg, ISO 27001, NIST, GDPR, DORA). Background in network, cloud (Azure), endpoint, and application security. Experience building and running company-wide security programs. Proven ability to handle real and simulated cybersecurity incidents. Familiarity More ❯
will undergo formal approval by the Change Approval Board (C.A.B). The role will also involve micromanaging cybersecurity engineers, penetration testing engineers, and other security personnel, ensuring compliance with NIST cybersecurity framework and DoD requirements. PHYSICAL DEMANDS: This position requires the ability to communicate and exchange information, utilizing necessary equipment to perform the job. ENVIRONMENT: This position will operate in More ❯
for data extraction and transformation. Prior experience with Data warehousing and Data modelling (Star Schema or Snowflake Schema). Skilled in security frameworks such as GDPR, HIPAA, ISO 27001, NIST, SOX, and PII, with expertise in IAM, KMS, and RBAC implementation. Cloud automation and orchestration tools like Terraform and Airflow. Strong analytical skills to assess data quality, identify inconsistencies, andMore ❯
for data extraction and transformation. Prior experience with Data warehousing and Data modelling (Star Schema or Snowflake Schema). Skilled in security frameworks such as GDPR, HIPAA, ISO 27001, NIST, SOX, and PII, with expertise in IAM, KMS, and RBAC implementation. Cloud automation and orchestration tools like Terraform and Airflow. Strong analytical skills to assess data quality, identify inconsistencies, andMore ❯
Yeovil, Somerset, United Kingdom Hybrid / WFH Options
Leonardo UK Ltd
Knowledge and Demonstrable Experience: Of MOD accreditation and secure by design processes (ISN2023/09), and associated policies and practices across the lifecycle. In the application ofstandards including NIST Special Publications (e.g. SP 800-30, 37 & 53), and/or RTCA-DO-326A/B, 355A & 356A. In the application of Defence security standards, such as Defstan More ❯
Bath, Somerset, United Kingdom Hybrid / WFH Options
Bmt Defence Services LTD
role. In addition, the following technical knowledge or experience will be helpful for some of our projects: Expertise in consultancy. Knowledge of secure by design. Cybersecurity industry standards (e.g. NIST, ISO 27001, ISA/IEC 62443, etc). An understanding of cloud-native infrastructure (e.g. microservices, containerisation, Kubernetes, serverless computing). An understanding and/or experience with SIEM, SOAR More ❯
demonstrable expertise with monitoring and securing enterprise class technology estates. You will have proven experience with Cyber Security best practice including remediations for the MITRE ATT&CK Framework andNIST Cloud Security guidelines. You will support ISO 27001 compliance and have strong documentation skills. Experience in the Telco sector and knowledge of the UK Telecoms Security Act would be advantageous More ❯
response to cyber security incidents, ensuring timely resolution and root cause analysis. Oversee the development and implementation of information security compliance and assurance programmes. Ensure alignment with ISO 27001, NIST, and other relevant security frameworks. Collaborate with the SOC to monitor, detect, and respond to cyber threats. Manage governance, risk, and compliance (GRC) activities, including risk assessments and mitigation strategies. … technologies, and regulatory changes. Support internal and external audits and regulatory inspections. Essential Skills & Experience: Proven experience in cyber security operations and incident management. Strong knowledge of ISO 27001, NIST, and related frameworks. Experience with GRC processes and tools. Familiarity with SOC operations and threat detection technologies. Excellent understanding of the cyber threat landscape and mitigation strategies. Demonstrated ability to More ❯
areas such as incident reporting and data protection. Translate requirements from PSD2 SCA , PCI DSS , and SWIFT CSP into technical security controls. Maintain IT security governance frameworks (ISO 27001, NIST CSF, CIS Controls). Manage and maintain Security Policies and procedures. Third-Party Risk & Outsourcing Management: Design and implement third-party risk management programs to assess vendors, cloud providers, and … risk tools . Proficiency in IAM (Identity and Access Management) solutions and conducting user access reviews . Familiarity with cloud technologyand IT infrastructure. Framework Expertise: Strong knowledge ofNIST frameworks (CSF, 800-53) and CIS Controls . Certifications: CRISC, CISSP, CISM, or CISA preferred (equivalent experience considered). More ❯
and industry-specific regulations Experience implementing compliance and control frameworks Proficiency in IT governance and quality standards Knowledge of security management frameworks like ISO/IEC 27001, ITIL, COBIT, NISTstandards Strong stakeholder management skills High integrity and professionalism in handling confidential matters Familiarity with risk management tools like OneTrust or similar is preferred Benefits: At Sword, we value our More ❯