and resolve performance, connectivity, and security incidents. Driving continuously monitoring and fine-tune Zscaler configurations and policies for optimal performance. Take responsibility for Compliance and Governance. (ie HIPAA, GDPR, NIST) Contributing to detailed project documentation, including design, configuration, testing records, status & management reports. Providing guidance, mentoring and training to junior engineers. To be successful in the Zscaler Engineering role you … Cybersecurity Consultant, Security Specialist, ZIA & ZPA Certified Administrator, ZIA & ZPA Certified Professional, ZIA and ZPA delivery specialist, ZIA and ZPA support specialist, ZDTA, ZDTE, ZDXA, ZCDS, ZCSS, HIPAA, GDPR, NIST, Secure Access Services Edge, SASE, Web Application Firewall, WAF, Cloud, Kubernetes, We are Disability Confident and neurodiverse aware. If you have a disability, please tell us if there are any More ❯
and resolve performance, connectivity, and security incidents. Driving continuously monitoring and fine-tune Zscaler configurations and policies for optimal performance. Take responsibility for Compliance and Governance. (ie HIPAA, GDPR, NIST) Contributing to detailed project documentation, including design, configuration, testing records, status & management reports. Providing guidance, mentoring and training to junior engineers. To be successful in the Zscaler Engineering role you … Cybersecurity Consultant, Security Specialist, ZIA & ZPA Certified Administrator, ZIA & ZPA Certified Professional, ZIA and ZPA delivery specialist, ZIA and ZPA support specialist, ZDTA, ZDTE, ZDXA, ZCDS, ZCSS, HIPAA, GDPR, NIST, Secure Access Services Edge, SASE, Web Application Firewall, WAF, Cloud, Kubernetes, We are Disability Confident and neurodiverse aware. If you have a disability, please tell us if there are any More ❯
system (ISMS) capable of demonstrating compliance against internal security requirements and external commitments including certification and regulatory requirements. Provide subject matter expertise in the application of established standards including NIST, PCI-DSS, GDPR, COBIT, ISO 27001 and Cyber Essential compliance to any new or existing programme of work. Prepare and support internal and/or external compliance audit activities. Manage … certifications. Maintain up-to-date knowledge of legal & regulatory requirements impacting Technologyand Operations and its Partners. Apply comprehensive knowledge of legal, regulatory obligations, and industry best practices (e.g., NIST, COBIT, ISO27001, PAS 555) to ensure compliance with technology standards. Schedule and review risk and compliance audits; direct issues to appropriate resources for investigation and resolution. Our people make us … as we continue to deliver for our customers. LI-KS1 Possess one of the Risk or security certifications (CISSP, CRISC, CISM). Have good knowledge and practical experience ofNIST, PCI-DSS, GDPR, COBIT, ISO 27001, or Cyber Essentials. Previous experience in a similar role, with the ability to work in a dynamic and changing environment. Excellent team player who More ❯
program, proactively monitor Marqeta's environment for cyber threats, and serve as incident commander during security events of all severity levels. You will establish response methodologies aligned with the NIST Incident Response Lifecycle, maintain the cybersecurity incident response plan, and drive continuous improvement of our security operations. This position requires extensive expertise in incident response, digital forensics, threat hunting, and … timely analysis, triage, and appropriate response actions Serve as the incident commander during security events of all severity levels, directing investigation strategies and coordinating cross-functional response efforts Deliver NIST Incident Response Lifecycle aligned services to prepare for, detect, contain, eradicate, recover, and learn from cybersecurity incidents Work with the CISO to maintain the Cybersecurity Incident Response Plan (CIRP), ensuring … forensics, and threat hunting Demonstrated experience serving as an incident commander, managing response workflows and making decisions under pressure for security events of varying severity Advanced knowledge of the NIST Incident Response Lifecycle and experience developing effective incident response documentation and procedures Expert-level proficiency with security monitoring and forensic tools, including EDR, SIEM, and SOAR systems Experience conducting post More ❯
Cloud Security Engineer Kent Hybrid Competitive Salary VIQU have partnered with a leading automotive organisation seeking a Cloud Security Engineer to join their growing security function. This role has been created to help bridge the gap between the cloud team More ❯
Cloud Security Engineer Kent – Hybrid Competitive Salary VIQU have partnered with a leading automotive organisation seeking a Cloud Security Engineer to join their growing security function. This role has been created to help bridge the gap between the cloud team More ❯
and threat modelings ; Strong ability to communicate technical concepts and assessment results verbally and in written reports in simple terms; Knowledge of IEC 62443, MITRE ATT&CK for ICS, NIST CSF, NIST SP 800-82 and relevant regulations in EU and UK; Interest and ability to write exciting whitepapers and publications ; A supportive and a proactive personality , you know how More ❯
SecurityReports to: Director of Cyber Strategy & TransformationRole Purpose: The Unilever Cyber Security team has undergone a Strategy refresh including implementation of a product-based operating model aligned to the NIST Framework and resetting our NIST aligned maturity targets. This strategy is underpinned by rigorous service management, strong governance, and strategic reporting.As the Strategic Reporting and Service Management Senior Manager, you … and service governance in place.Key ResponsibilitiesStrategy and Transformation:1. Strategic ReportingOwn and maintain Unilever Cyber's Level 1 (L1) milestone framework, ensuring progress aligns with our strategic roadmap andNIST maturity targets.• Develop and manage an enterprise-level reporting framework that quantifies cyber maturity, strategic progress, and key transformation KPIs.• Lead the design and continuous improvement of our reporting practices … distill complexity for executive audiences• Demonstrated ability to drive operational excellence and embed new ways of workingDesirable:• Experience working in or alongside a Cyber Security function• Knowledge of the NIST Cybersecurity Framework (CSF) or similar frameworks (e.g. ISO 27001, CIS)• Familiarity with product-based or agile operating models• Experience delivering organisational change or value-based transformation About Us We are More ❯
Bracknell, Berkshire, England, United Kingdom Hybrid / WFH Options
Reed
and solution design. Deep understanding of HMG and MOD assurance models, including Security by Design (SbD). Strong background in risk assessment methodologies: HMG IA Standard 1&2, ISO27005, NIST 800-30. Familiarity with security control frameworks: ISO 27001 series, NIST 800-53, CIS. Ability to collaborate with technical architects to define and implement security controls across physical, procedural More ❯
Basingstoke, Hampshire, England, United Kingdom Hybrid / WFH Options
Reed
and solution design. Deep understanding of HMG and MOD assurance models, including Security by Design (SbD). Strong background in risk assessment methodologies: HMG IA Standard 1&2, ISO27005, NIST 800-30. Familiarity with security control frameworks: ISO 27001 series, NIST 800-53, CIS. Ability to collaborate with technical architects to define and implement security controls across physical, procedural More ❯
Bristol, Gloucestershire, United Kingdom Hybrid / WFH Options
QinetiQ Limited
include: Creating business risk models and associated material, in support of operational cyber security and business planning across a range of different domains or sectors using established frameworks (e.g. NIST, UK Government) Undertake cyber security audit processes in support of operational and business planning activity across a range of different domains or sectors against recognised standards (e.g. ISO27001, UK Government … of organisational maturity and risk exposure to cyber security, in support of operational and business planning activity across a range of different domains or sectors using established frameworks (e.g. NIST, MITRE ATT&CK, UK Government) Identify mitigations for cyber risk in a given business or operational scenario and threat environment Support development of cyber security risk cases in a given … of the Cyber Security Risk Consultant: Digitally literate (including fluency in Microsoft Office tools) Minimum of 2-3 years of experience in security vulnerability, risk, audit & compliance Understand relevant NIST frameworks and ISO27001 standardsand how to apply in practice Knowledge of MITRE ATT&CK Essential qualifications for the Cyber Security Risk Consultant: We value difference and we don't More ❯
artefacts such as Security Cases. Build strong relationships with team members and clients. Deliver technical Cyber Security consultancy across Defence and Civil domains. Implement 'Secure by Design' methodology andNIST Risk Management Framework. Maintain awareness of Cyber Security policies andstandards such as HMG policies, CESG IA Portfolio, and MoD JSPs. Assist in gaining certifications like ISO27000, NIST Cyber Security More ❯
City of London, London, United Kingdom Hybrid / WFH Options
Albany Beck
clear, meaningful reports for senior business and non-technical audiences. Create Board-level inputs and executive reporting packs with top-level narratives and insight-driven commentary. Ensure alignment with NIST frameworks and internal Cyber Risk Management principles. Identify, connect, and manage data sources, owners, systems, and submission cycles to ensure timely and accurate reporting. Conduct “check and challenge” analysis to … regularly with IT, Security, and Business stakeholders to align risk reporting with organizational objectives. What We’re Looking For: RSA Archer expertise or other GRC tooling Proven experience with NIST or other regulatory-aligned frameworks. Deep understanding of Cyber Risk Management principles. Exceptionally organized, with strong attention to detail and ability to manage multiple priorities. Strong written and verbal communication More ❯
london (city of london), south east england, united kingdom Hybrid / WFH Options
Albany Beck
clear, meaningful reports for senior business and non-technical audiences. Create Board-level inputs and executive reporting packs with top-level narratives and insight-driven commentary. Ensure alignment with NIST frameworks and internal Cyber Risk Management principles. Identify, connect, and manage data sources, owners, systems, and submission cycles to ensure timely and accurate reporting. Conduct “check and challenge” analysis to … regularly with IT, Security, and Business stakeholders to align risk reporting with organizational objectives. What We’re Looking For: RSA Archer expertise or other GRC tooling Proven experience with NIST or other regulatory-aligned frameworks. Deep understanding of Cyber Risk Management principles. Exceptionally organized, with strong attention to detail and ability to manage multiple priorities. Strong written and verbal communication More ❯
clear, meaningful reports for senior business and non-technical audiences. Create Board-level inputs and executive reporting packs with top-level narratives and insight-driven commentary. Ensure alignment with NIST frameworks and internal Cyber Risk Management principles. Identify, connect, and manage data sources, owners, systems, and submission cycles to ensure timely and accurate reporting. Conduct “check and challenge” analysis to … regularly with IT, Security, and Business stakeholders to align risk reporting with organizational objectives. What We’re Looking For: RSA Archer expertise or other GRC tooling Proven experience with NIST or other regulatory-aligned frameworks. Deep understanding of Cyber Risk Management principles. Exceptionally organized, with strong attention to detail and ability to manage multiple priorities. Strong written and verbal communication More ❯
london, south east england, united kingdom Hybrid / WFH Options
Albany Beck
clear, meaningful reports for senior business and non-technical audiences. Create Board-level inputs and executive reporting packs with top-level narratives and insight-driven commentary. Ensure alignment with NIST frameworks and internal Cyber Risk Management principles. Identify, connect, and manage data sources, owners, systems, and submission cycles to ensure timely and accurate reporting. Conduct “check and challenge” analysis to … regularly with IT, Security, and Business stakeholders to align risk reporting with organizational objectives. What We’re Looking For: RSA Archer expertise or other GRC tooling Proven experience with NIST or other regulatory-aligned frameworks. Deep understanding of Cyber Risk Management principles. Exceptionally organized, with strong attention to detail and ability to manage multiple priorities. Strong written and verbal communication More ❯
slough, south east england, united kingdom Hybrid / WFH Options
Albany Beck
clear, meaningful reports for senior business and non-technical audiences. Create Board-level inputs and executive reporting packs with top-level narratives and insight-driven commentary. Ensure alignment with NIST frameworks and internal Cyber Risk Management principles. Identify, connect, and manage data sources, owners, systems, and submission cycles to ensure timely and accurate reporting. Conduct “check and challenge” analysis to … regularly with IT, Security, and Business stakeholders to align risk reporting with organizational objectives. What We’re Looking For: RSA Archer expertise or other GRC tooling Proven experience with NIST or other regulatory-aligned frameworks. Deep understanding of Cyber Risk Management principles. Exceptionally organized, with strong attention to detail and ability to manage multiple priorities. Strong written and verbal communication More ❯
Role: NIST Implementation Lead Location : Guildford Salary : £60,000 - £65,000 + Benefits Flexible working : 1-2 days a week in the office My client is on a journey to elevate their cybersecurity maturity by aligning with the NIST Cybersecurity Framework. This is a great opportunity for somebody that has great experience implementing NISTand looking to take their career … to the next level. Key responsibilities/Experience Hands-on experience implementing NIST CSF (not just reviewing or auditing) Strong knowledge of frameworks like ISO 27001, COBIT, etc. The ability to connect and translate across frameworks Proven stakeholder engagement and influencing skills Experience in a complex, multi-stakeholder environment A proactive, practical mindset - ready to 'do the doing,' not just More ❯
new, minimum-viable capabilities and hand them into service. Both posts sit under the Cyber Security Response Manager and are driven by the NCSC Cyber Assessment Framework (CAF) andNIST SP 800-61 r3 guidance for incident response. The culture is "good-enough-today, better-tomorrow": short, bullet-point artefacts, daily measurable progress, and rapid decision-making. ________________________________________ Background & Purpose Digital … service and assure resilience. ________________________________________ Shared Responsibilities - Operate to recognised frameworks - align policies, processes and runbooks to the NCSC CAF objectives for CNI resilience and the incident-handling lifecycle in NIST SP 800-61 r3, keeping documentation concise and auditable. - Embed pragmatic process - create bullet-point playbooks, runbooks and knowledge-base pages that teams can follow under pressure. - Build out a … SOC builds or rapid rebuilds from zero to operational within six-to-twelve months, ideally in regulated or high-availability sectors. - Framework fluent - comfortable applying NCSC CAF principles andNIST SP 800-61 r3 incident-handling guidance pragmatically, avoiding bureaucracy. - Hands-on leadership - coaches senior analysts, removes blockers in real time, and can work directly in SIEM, SOAR, EDR andMore ❯
City of London, London, United Kingdom Hybrid / WFH Options
Albany Beck
influence the operational and strategic approach to cyber risk across a complex and regulated environment. Key Responsibilities: Lead and support the implementation of security risk management processes aligned with NISTand other regulatory frameworks. Act as a subject matter expert on RSA Archer – configuring, managing, and optimising the platform for enterprise risk use cases. Develop and deliver high-quality risk … We’re Looking For: Mandatory: Strong hands-on experience with RSA Archer – this is essential for the role. Ideally 8+ years experience in similar roles In-depth understanding ofNIST frameworks and security risk methodologies. A Cyber Risk Management mindset, with a practical and business-oriented approach to risk. Excellent attention to detail and a methodical, highly organised working style. More ❯
london (city of london), south east england, united kingdom Hybrid / WFH Options
Albany Beck
influence the operational and strategic approach to cyber risk across a complex and regulated environment. Key Responsibilities: Lead and support the implementation of security risk management processes aligned with NISTand other regulatory frameworks. Act as a subject matter expert on RSA Archer – configuring, managing, and optimising the platform for enterprise risk use cases. Develop and deliver high-quality risk … We’re Looking For: Mandatory: Strong hands-on experience with RSA Archer – this is essential for the role. Ideally 8+ years experience in similar roles In-depth understanding ofNIST frameworks and security risk methodologies. A Cyber Risk Management mindset, with a practical and business-oriented approach to risk. Excellent attention to detail and a methodical, highly organised working style. More ❯
influence the operational and strategic approach to cyber risk across a complex and regulated environment. Key Responsibilities: Lead and support the implementation of security risk management processes aligned with NISTand other regulatory frameworks. Act as a subject matter expert on RSA Archer – configuring, managing, and optimising the platform for enterprise risk use cases. Develop and deliver high-quality risk … We’re Looking For: Mandatory: Strong hands-on experience with RSA Archer – this is essential for the role. Ideally 8+ years experience in similar roles In-depth understanding ofNIST frameworks and security risk methodologies. A Cyber Risk Management mindset, with a practical and business-oriented approach to risk. Excellent attention to detail and a methodical, highly organised working style. More ❯
london, south east england, united kingdom Hybrid / WFH Options
Albany Beck
influence the operational and strategic approach to cyber risk across a complex and regulated environment. Key Responsibilities: Lead and support the implementation of security risk management processes aligned with NISTand other regulatory frameworks. Act as a subject matter expert on RSA Archer – configuring, managing, and optimising the platform for enterprise risk use cases. Develop and deliver high-quality risk … We’re Looking For: Mandatory: Strong hands-on experience with RSA Archer – this is essential for the role. Ideally 8+ years experience in similar roles In-depth understanding ofNIST frameworks and security risk methodologies. A Cyber Risk Management mindset, with a practical and business-oriented approach to risk. Excellent attention to detail and a methodical, highly organised working style. More ❯
slough, south east england, united kingdom Hybrid / WFH Options
Albany Beck
influence the operational and strategic approach to cyber risk across a complex and regulated environment. Key Responsibilities: Lead and support the implementation of security risk management processes aligned with NISTand other regulatory frameworks. Act as a subject matter expert on RSA Archer – configuring, managing, and optimising the platform for enterprise risk use cases. Develop and deliver high-quality risk … We’re Looking For: Mandatory: Strong hands-on experience with RSA Archer – this is essential for the role. Ideally 8+ years experience in similar roles In-depth understanding ofNIST frameworks and security risk methodologies. A Cyber Risk Management mindset, with a practical and business-oriented approach to risk. Excellent attention to detail and a methodical, highly organised working style. More ❯
model checking where applicable. Maintain and enhance existing cryptographic software, ensuring robustness, security, and performance across supported platforms. Support compliance with relevant security standards (e.g., FIPS, ISO/IEC, NIST PQC). Participate in threat modeling and risk assessments related to cryptographic software. Required Skills And Qualifications Master's or PhD degree in computer science, mathematics, or a related field … in C and Assembly, with a focus on resource-constrained, bare-metal environments. Experience with Rust is nice to have. Familiarity with classical and post-quantum cryptographic algorithms, including NIST PQC candidates, and a solid understanding ofNISTand FIPS publications and compliance requirements. Excellent problem-solving and debugging skills. Preferred Skills And Qualifications Experience with secure coding practices andMore ❯