Watford, Hertfordshire, South East, United Kingdom Hybrid / WFH Options
Hays
diverse audiences. Hands-on experience operating in or collaborating with a Security Operations Centre (SOC). Well-versed in applying recognised risk management methodologies such as ISO 27005 andNIST Risk Management Framework. Strong written and verbal communication abilities, with a focus on clear reporting and stakeholder engagement. Possession of industry-recognised certifications such as CISSP, CISM, CRISC, or CEH More ❯
Employment Type: Part Time, Work From Home
Salary: £28.49 - £36.98 per hour + £36.98 p/h via Umbrella (Inside IR35)
threat monitoring, detection, and response using cloud-native security solutions such as Microsoft Defender, Sentinel, and SIEM platforms. • Ensure compliance with cloud security frameworks and regulatory requirements (ISO 27001, NIST, GDPR, SOC2, FCA). • Conduct regular security risk assessments, penetration tests, and vulnerability management across cloud services. • Oversee endpoint security, cloud network and API security for robust protection across all … Strong experience managing Microsoft 365 (Exchange, SharePoint, Teams), Azure cloud infrastructure, and security tools such as Microsoft Defender and Sentinel. • Security & Compliance: Deep knowledge of security frameworks (ISO 27001, NIST, CIS), compliance requirements (GDPR, SOC2), and risk management best practices. • Identity & Access Management (IAM): Expertise in Azure AD, MFA, Conditional Access, Single Sign-On (SSO), and Privileged Access Management (PAM More ❯
EU AI Act). Experience with third-party and outsourcing risk, AI and digital transformation risks. Experience of developing and operating Technology Risk Management Frameworks such as ITIL, COBIT, NIST, ISO. Demonstrable extensive relevant experience oftechnologyand change/operational risk in either a 1LoD or 2LoD capacity (2LoD preferable). Experience in scenario analysis and resilience impact assessments More ❯
Southampton, Hampshire, United Kingdom Hybrid / WFH Options
Aztec
EU AI Act). Experience with third-party and outsourcing risk, AI and digital transformation risks. Experience of developing and operating Technology Risk Management Frameworks such as ITIL, COBIT, NIST, ISO. Demonstrable extensive relevant experience oftechnologyand change/operational risk in either a 1LoD or 2LoD capacity (2LoD preferable). Experience in scenario analysis and resilience impact assessments More ❯
achieve operational excellence. Role Overview As a Security Architect, you will be responsible for enhancing the security posture of DXC's client services by ensuring full compliance with the NIST 800-53 framework. You will evaluate existing security controls, map them to NISTstandards, and develop new controls and documentation to improve compliance and overall security. Key Responsibilities Architect and … oversee the implementation of security solutions in compliance with NIST 800-53. Work closely with the customer's architecture team to develop and implement security strategies. Identify security risks, define security requirements, and recommend remediation strategies. Develop and enforce security policy standards to ensure compliance with customer security requirements. Provide technical leadership on security projects and mentor junior team … fit solutions. Support incident investigations and security control enhancements. Ensure security architectures align with industry frameworks such as TOGAF and SABSA. Gap Analysis Report: Assessing current security posture against NIST 800-53. Security Control Mapping: Documenting alignment of existing controls with compliance frameworks. Implementation Plans: Designing and deploying new security controls. Updated Security Documentation: Policies, procedures, and system security More ❯
this role you must have demonstrable hands-on expertise with monitoring and securing enterprise class technology estates. You will have proven experience with Cyber Security best practice including the NIST Cloud Security guidelines. You will support ISO 27001 compliance and have strong documentation skills. Experience in the Telco sector and knowledge of the UK Telecom Security Act would be advantageous More ❯
line support across a range of business-critical systems. Policy & Framework Development: Create and refine cyber security risk management policies and frameworks in line with recognised standards such as NIST, ISO 27001, and others. Documentation & Training: Maintain up-to-date security documentation and deliver regular cyber security awareness training across departments. Communicate relevant security updates and best practices throughout the More ❯
line support across a range of business-critical systems. Policy & Framework Development: Create and refine cyber security risk management policies and frameworks in line with recognised standards such as NIST, ISO 27001, and others. Documentation & Training: Maintain up-to-date security documentation and deliver regular cyber security awareness training across departments. Communicate relevant security updates and best practices throughout the More ❯
Cardiff, Eglwys-Brewis, South Glamorgan, United Kingdom
Vibe Recruit
line support across a range of business-critical systems. Policy & Framework Development: Create and refine cyber security risk management policies and frameworks in line with recognised standards such as NIST, ISO 27001, and others. Documentation & Training: Maintain up-to-date security documentation and deliver regular cyber security awareness training across departments. Communicate relevant security updates and best practices throughout the More ❯
Cloud security testing (AWS, Azure, or Google Cloud) Certifications such as ISTQB, CISSP, CISM, or CyberArk Defender are a plus Knowledge of security compliance standards (e.g., ISO 27001, GDPR, NIST, PCI-DSS ) Synechron Synechron Technologies draws on over 17 years of financial services IT consulting experience to provide expert systems integration expertise and technical development work in highly complex areas More ❯
of working in large, complex technology programmes involving multiple concurrent projects with significant experience of delivering through offshore/nearshore strategic vendors. Knowledge of security frameworks & standards (ISO 27001, NIST, CIS, GDPR, SOC 2) Be experienced in 'hands on' technology software delivery from initiation to implementation. Have knowledge of programme and project management methodology and managing full lifecycle of programmes More ❯
City of London, London, United Kingdom Hybrid / WFH Options
BRITISH ARAB COMMERCIAL BANK PUBLIC LIMITED COMPANY
Knowledge Educated to a degree level (or equivalent) ideally in computer science or a related field Familiarity with internationally recognised IT Security standardsand frameworks such as Cyber Essentials, NIST, or ISO27001/2 Understanding of how IT Security tooling such as Firewalls, AV, Proxies and IDS/IPS operate Familiar with the Microsoft stack including desktops, servers and cloud More ❯
risk, as well as using GRC tools and guidance developed for Risk mitigation. Practical knowledge of information security standardsand risk assessment frameworks such as ISO 27001, SOC 2, NIST 800-32 Strong knowledge of cyber controls, policies, and procedures. Experience of delivering metrics for senior level audiences. Demonstrate analytical and problem-solving skills. Ability to communicate risks associated with More ❯
St. Albans, Hertfordshire, United Kingdom Hybrid / WFH Options
Deloitte LLP
risk, as well as using GRC tools and guidance developed for Risk mitigation. Practical knowledge of information security standardsand risk assessment frameworks such as ISO 27001, SOC 2, NIST 800-32 Strong knowledge of cyber controls, policies, and procedures. Experience of delivering metrics for senior level audiences. Demonstrate analytical and problem-solving skills. Ability to communicate risks associated with More ❯
Reading, Berkshire, United Kingdom Hybrid / WFH Options
Deloitte LLP
risk, as well as using GRC tools and guidance developed for Risk mitigation. Practical knowledge of information security standardsand risk assessment frameworks such as ISO 27001, SOC 2, NIST 800-32 Strong knowledge of cyber controls, policies, and procedures. Experience of delivering metrics for senior level audiences. Demonstrate analytical and problem-solving skills. Ability to communicate risks associated with More ❯
Guildford, Surrey, United Kingdom Hybrid / WFH Options
Deloitte LLP
risk, as well as using GRC tools and guidance developed for Risk mitigation. Practical knowledge of information security standardsand risk assessment frameworks such as ISO 27001, SOC 2, NIST 800-32 Strong knowledge of cyber controls, policies, and procedures. Experience of delivering metrics for senior level audiences. Demonstrate analytical and problem-solving skills. Ability to communicate risks associated with More ❯
strategies to mitigate risks ️ Collaborating with engineering teams to integrate security solutions into existing infrastructures ️ Conducting security assessments and audits to ensure compliance with industry standards (e.g., ISO 27001, NIST, GDPR) ️ Leading the development of security policies, procedures, and best practices for enterprise systems What We're Looking For: ️ Proven experience as a Security Architect or in a similar senior More ❯
Qualifications : Proven experience in a similar Information Security Management or Cyber Risk role. Strong understanding of information security principles, risk management frameworks, and industry best practices (e.g. ISO 27001, NIST, CIS). Demonstrated experience in drafting and implementing security policies and procedures. Strong communication skills with the ability to engage both technical and non-technical audiences. Proficiency in conducting security More ❯
Qualifications : Proven experience in a similar Information Security Management or Cyber Risk role. Strong understanding of information security principles, risk management frameworks, and industry best practices (e.g. ISO 27001, NIST, CIS). Demonstrated experience in drafting and implementing security policies and procedures. Strong communication skills with the ability to engage both technical and non-technical audiences. Proficiency in conducting security More ❯
Qualifications : Proven experience in a similar Information Security Management or Cyber Risk role. Strong understanding of information security principles, risk management frameworks, and industry best practices (e.g. ISO 27001, NIST, CIS). Demonstrated experience in drafting and implementing security policies and procedures. Strong communication skills with the ability to engage both technical and non-technical audiences. Proficiency in conducting security More ❯
security testing (AWS, Azure, or Google Cloud). • Certifications such as ISTQB, CISSP, CISM, or CyberArk Defender are a plus. • Knowledge of security compliance standards (e.g., ISO 27001, GDPR, NIST, PCI-DSS). More ❯
risk/vulnerability assessments and incident management. Experience first and second line support Strong analytical thinking and attention to detail. Familiarity with compliance frameworks like ISO 27001/27002, NIST Cybersecurity Framework – 2.0 ideally version 2, PCI DSS v4.0 Exceptional communication and stakeholder engagement skills. Financial services/FCA experience Desirable: Experience with Microsoft Azure Security tools (Defender for Endpoint More ❯
London, England, United Kingdom Hybrid / WFH Options
McCabe & Barton
risk/vulnerability assessments and incident management. Experience first and second line support Strong analytical thinking and attention to detail. Familiarity with compliance frameworks like ISO 27001/27002, NIST Cybersecurity Framework – 2.0 ideally version 2, PCI DSS v4.0 Exceptional communication and stakeholder engagement skills. Financial services/FCA experience Desirable: Experience with Microsoft Azure Security tools (Defender for Endpoint More ❯