Bristol, Avon, South West, United Kingdom Hybrid / WFH Options
Frontier Resourcing Ltd
My growing defence client is seeking a Security Architect with NIST framework experience. You'll join a leading organisation that develops cutting edge products and technology. Key Accountabilities : Identify security requirements and ensure the integration of security controls during the product development lifecycle. Develop and implement risk management strategies using … . An understanding of MOD ISN 23/09 Secure by Design. Knowledge of security frameworks, such as ISO/IEC 27001, NIST 800-30, NIST 800-53 or OWASP. Experience of working with risk management frameworks and methodologies (e.g., ISO 27001/2, ISO27005/31000, NIST … NIST 800-53) Why Join? You'll gain exposure to cutting-edge defence technologyand intelligence insights, alongside good salary & benefits . The client offers flexible working options, with some hybrid/remote working. Apply now to be immediately considered for this fantastic opportunity. More ❯
ensure control design adequacy and effectiveness. The role supports RCSA processes and leads evidence-based evaluations. Key Responsibilities: Evaluate and test security controls against NIST 800-53 requirements Execute scheduled control testing, document results, and analyse weaknesses Review and capture control evidence for audit and compliance purposes Collaborate with control More ❯
ensure control design adequacy and effectiveness. The role supports RCSA processes and leads evidence-based evaluations. Key Responsibilities: Evaluate and test security controls against NIST 800-53 requirements Execute scheduled control testing, document results, and analyse weaknesses Review and capture control evidence for audit and compliance purposes Collaborate with control More ❯
Stroud, south east england, United Kingdom Hybrid / WFH Options
Ecotricity
within the last 5 years. Have obtained or be working towards a Cyber Security Certification. Understanding of Compliance Frameworks and Cyber Security Certifications (ie. NIST or Cyber Security Essentials). Knowledge of vulnerability databases (ie. NIST/CVSS). Experience operating within the ITIL Framework. Experience using Vulnerability & Compliance scanning More ❯
stroud, south west england, United Kingdom Hybrid / WFH Options
Ecotricity
within the last 5 years. Have obtained or be working towards a Cyber Security Certification. Understanding of Compliance Frameworks and Cyber Security Certifications (ie. NIST or Cyber Security Essentials). Knowledge of vulnerability databases (ie. NIST/CVSS). Experience operating within the ITIL Framework. Experience using Vulnerability & Compliance scanning More ❯
and technical teams to ensure security controls are implemented and effective Assist in preparing for and responding to regulatory audits and compliance reviews (e.g., NIST CSF, ISO 27001, DORA, GDPR. ITGC) Maintain and update the information security risk register with appropriate scenarios and control frameworks Conduct regular control testing, evaluation … communications Job Requirements Previous progressive experience in information security risk management, risk management, or compliance Strong understanding of information security frameworks (e.g., ISO 27001, NIST) Experience with GRC tools/platforms Excellent organisational, communication, and documentation skills Ability to work independently and cross-functionally in a fast-paced environment Industry More ❯
and threat management, identify risks and work with stakeholders to ensure swift and effective remediation. Ensure ongoing compliance with industry standards such as ISO27001, NIST, Cyber Essentials Plus, and CIS. Assist with developing and enforcing cloud security policies, aligning with industry best practices and regulatory requirements. Security Awareness Deliver engaging … experience designing and troubleshooting secure cloud infrastructure solutions (PaaS and IaaS). Compliance & Standards Familiarity with industry standards such as ISO27001, Cyber Essentials Plus, NIST, and CIS . You know how to ensure compliance and integrate these standards into processes. An appreciation for maintaining Cyber assurance aligned with ISO27001 certification. More ❯
WiseTech Global is a leading force in empowering and revolutionizing the world's supply chains. Our innovative technologies play a pivotal role in safeguarding the data and ensuring the security of thousands of users globally, including the world's largest More ❯
Overview: We’re seeking a proactive and detail-oriented Information Security Analyst to join a London based Banks growing security function. Reporting to the Cyber Security Manager , you will support the daily operational security activities across the business. This role More ❯
Overview: We’re seeking a proactive and detail-oriented Information Security Analyst to join a London based Banks growing security function. Reporting to the Cyber Security Manager , you will support the daily operational security activities across the business. This role More ❯
testing products, troubleshooting, implementing security measures, conducting vulnerability assessments and penetration testing, and participating in cyber assessments while learning about standards such as the NIST Cybersecurity Framework (CSF) 2.0, NIST 800-82, IEC62443 and ISO 27001. You will report to the DACH/Benelux ICT/Cybersecurity Operation and work More ❯
City Of Bristol, England, United Kingdom Hybrid / WFH Options
Matchtech
re Looking For Technical Experience & Knowledge Experience with risk management frameworks and methodologies such as ISO/IEC 27001/2, ISO27005/31000, NIST 800-30, NIST 800-53. Strong understanding of security standardsand frameworks including OWASP, Secure by Design principles, and MOD-specific guidelines (e.g., JSP …/139). Familiarity with HMG security principles and assurance frameworks is advantageous. Comfortable using threat modelling tools and implementing mitigation strategies. Experience with NIST standards. (this is an absolute must) Key Competencies Strong communicator with the ability to present complex information clearly and confidently. Proactive problem solver who approaches More ❯
Stan 05-139) An understanding of MOD ISN 23/09 Secure by Design Knowledge of security frameworks, such as ISO/IEC 27001, NIST 800-30, NIST 800-53 or OWASP Working with risk management frameworks and methodologies (e.g., ISO 27001/2, ISO27005/31000, NIST … NIST 800-53) If this all sounds like something you will be interested in then simply apply and we can discuss the opportunity further More ❯
Stan 05-139) An understanding of MOD ISN 23/09 Secure by Design Knowledge of security frameworks, such as ISO/IEC 27001, NIST 800-30, NIST 800-53 or OWASP Working with risk management frameworks and methodologies (e.g., ISO 27001/2, ISO27005/31000, NIST … NIST 800-53) If this all sounds like something you will be interested in then simply apply and we can discuss the opportunity further! Product Security Architect Permanent role Based in Bristol Offering circa 80,000 Disclaimer: This vacancy is being advertised by either Advanced Resource Managers Limited, Advanced Resource More ❯
Central London, London, United Kingdom Hybrid / WFH Options
Police Digital Services
etc.), supporting cloud architecture design, implementation, operations, and automation in Azure AWS and GCP. Strong knowledge and ability to demonstrate the use of the NIST Cyber Security Framework, mapping and translating NIST Cyber Security Controls to other frameworks such as ISO27001 and CIS Top 20 controls, including understanding of the More ❯
Crawley, Sussex, United Kingdom Hybrid / WFH Options
Thales Group
security components architectures (e.g. SIEM, IAM, gateways, detection and deception capabilities ) Evaluate architectures against Business Line policy and major cyber security standards & regulation frameworks (NIST, ISO, JSP, etc.) Produce justification for architectural choices Ensure technical coordination across a multi-discipline team Present, recommend and demonstrate solutions to customer representatives, peers … and give support to the rest of the team Familiar with Risk Analysis, Network Security, Cryptography, Identity & Access Management (software/hardware development, the NIST Cybersecurity Framework, cloud technologies) Able to monitor and measure risk as well as compliance You have the ability to work with customers and technical teams More ❯
and data protection. Translate requirements from PSD2 SCA , PCI DSS , and SWIFT CSP into technical security controls. Maintain IT security governance frameworks (ISO 27001, NIST CSF, CIS Controls). Manage and maintain Security Policies and procedures. Third-Party Risk & Outsourcing Management: Design and implement third-party risk management programs to … IAM (Identity and Access Management) solutions and conducting user access reviews . Familiarity with cloud Technologyand IT infrastructure. Framework Expertise: Strong knowledge ofNIST frameworks (CSF, 800-53) and CIS Controls . Certifications: CRISC, CISSP, CISM, or CISA preferred (equivalent experience considered). More ❯
Bash) Experience with a modern programming language (e.g. Go, TypeScript) Good knowledge of Security tooling, frameworks and approaches (e.g. SIEM, SOAR, IPS/IDS, NIST, Vulnerability Management) Capable of implementing SecOps/DevSecOps practices from scratch, implementing, maintaining, and scaling them out across teams and the company Familiarity with Security … compliance frameworks (e.g. NIST, ISO 27001, PCI DSS, GDPR) You are collaborative, keen to learn and quick to adapt Additional information: This role may require travel from time to time for team get-togethers or specific partner engagements but should be minimal for the individual. We lead the industry with More ❯
other business leadership teams to drive a culture of risk awareness. Ensure that all security risks align with regulatory requirements such as ISO 27001, NIST, GDPR, and other international security frameworks. Provide oversight and work closely with risk owners to manage the development and implementation of treatment plans to address … exposure to GRC tools (e.g., OnSpring, Archer, ServiceNow, or similar). Background knowledge of risk assessment methodologies and security frameworks such as ISO 27001, NIST, and CIS. Experience managing and directing enterprise-wide Information Security risk triage, risk recording, treatment planning, and reporting. Ability to translate complex security risks into More ❯
Tradition is the interdealer broking arm of Compagnie Financière Tradition and one of the world's largest interdealer brokers in over-the-counter financial and commodity related products. CFT is represented in over 28 countries, employing over 2,500 people. More ❯
Tradition is the interdealer broking arm of Compagnie Financière Tradition and one of the world's largest interdealer brokers in over-the-counter financial and commodity related products. CFT is represented in over 28 countries, employing over 2,500 people. More ❯
the Role - Lead cybersecurity consultancy engagements, including risk assessments, compliance audits, and security architecture reviews. Provide expert guidance on frameworks such as ISO 27001, NIST, NIS2, DORA, Cyber Essentials, GDPR compliance and EU AI Act. Develop and implement tailored cybersecurity strategies. Conduct cybersecurity gap analyses, remediation planning, and security programme … offerings. Responsibilities -Proven experience in cybersecurity consulting, risk management, or compliance roles. -Strong knowledge of security frameworks, regulations, and best practices (e.g., ISO 27001, NIST, NIS2, DORA, CIS, Cyber Essentials, GDPR, EU AI Act). -Experience in conducting risk assessments, security audits, and implementing security controls. -Excellent communication, and project More ❯
deadlines. Creative with strong commitment to quality and excellence. Desirable Criteria: Assessment experience to EN (Apply online only), EN 18031-x series ofstandards, NIST 8259, NIST CSF, etc Additional cybersecurity credentials such as OWASP, OSCP, CISSP etc Knowledge of security architecture design and applying regulatory guidance on cybersecurity assessment More ❯
of cybersecurity and AI governance frameworks. This role is pivotal in ensuring our customers receive accurate, clear, and timely answers to their questions regarding NIST (CSF, 800-53, etc.), SOC2 (Type 1 & 2), ISO 27001, and the emerging ISO 42001 standard. The ideal candidate possesses deep subject matter expertise in … ll do Compliance Subject Matter Expert: Serve as the go-to expert for customer inquiries related to the interpretation, requirements, and best practices ofNIST, SOC2, ISO 27001, and ISO 42001 frameworks Query Resolution: Directly address and resolve customer questions regarding these compliance standards, ensuring accuracy and clarity in all … cybersecurity consulting, internal audit, compliance management, or technical support role with a strong focus on specific frameworks Deep, demonstrable understanding and practical knowledge ofNIST frameworks (e.g., Cybersecurity Framework, NIST SP 800-53). Must be able to explain core concepts and requirements accurately Deep, demonstrable understanding and practical knowledge More ❯
of engagement in real-time. Operational strategy, written process, control policies, and guidelines. Deriving standard Alpha states from standard control frameworks in conformity to NIST SP 800-171 andNIST SP 800-160 . Creating an ecosystem of practices and preparing incremental improvements. Creating information security requirements, classifying information sensitivity More ❯