Oakdale, Wales, United Kingdom Hybrid / WFH Options
General Dynamics UK Limited
Previous experience of implementation and compliance with any of the following Security Architectural Frameworks: System Administration and Networking and Security (SANS) Institute Framework; National Institute of Standards Technology Framework SP800-53; National Institute of Standards Technology Cyber Security Framework NATO Communications Information Agency (NCIA) Standards; ISO 27001 (2013); BS ISO/IEC 27001:2013; Infosec Standard More ❯
London, England, United Kingdom Hybrid / WFH Options
TieTalent
transformations in retail banking systems such as savings and mortgages Strong understanding of Cloud Security and Controls and the application of internationally recognised standards such as NISTSP-800-53, CSA CCM, ISO27001 is essential Hands-on experience with core banking platforms, payment systems, and customer-facing applications Strong knowledge of Azure functionality and working within Agile methodology More ❯
London, England, United Kingdom Hybrid / WFH Options
Lloyds Bank plc
team to translate regulatory requirements (e.g. SOC2, ISO 27001, HIPPA, GDPR, PCI DSS) into technical controls in the cloud. Adherence and experience of compliance frameworks (e.g. CIS Benchmarks, NIST800-53). Building or maintaining automated continuous compliance monitoring solutions (e.g. CSPM, CNAAP). Assessing cloud environments for drift and misconfiguration and remediation workflows implementation via More ❯
Halifax, England, United Kingdom Hybrid / WFH Options
Lloyds Banking Group
team to translate regulatory requirements (e.g. SOC2, ISO 27001, HIPPA, GDPR, PCI DSS) into technical controls in the cloud. Adherence and experience of compliance frameworks (e.g. CIS Benchmarks, NIST800-53). Building or maintaining automated continuous compliance monitoring solutions (e.g. CSPM, CNAAP). Assessing cloud environments for drift and misconfiguration and remediation workflows implementation via More ❯
security audit controls Experience working with Global GRC tools and processes Extensive knowledge of at least 2 or more of the following compliance frameworks Cyber Essentials plus, C5, NIST800-53, PCI, SOC, ISO 27x Excellent written, verbal communication and presentation skills Big 4 Experience or Management Consulting Experience preferred Willingness to wear different hats and More ❯
Edinburgh, Scotland, United Kingdom Hybrid / WFH Options
Lloyds Banking Group
team to translate regulatory requirements (e.g. SOC2, ISO 27001, HIPPA, GDPR, PCI DSS) into technical controls in the cloud. Adherence and experience of compliance frameworks (e.g. CIS Benchmarks, NIST800-53). Building or maintaining automated continuous compliance monitoring solutions (e.g. CSPM, CNAAP). Assessing cloud environments for drift and misconfiguration and remediation workflows implementation via More ❯
London, England, United Kingdom Hybrid / WFH Options
Flo Health Inc
Nice to have: Experience of supporting audits such as ISO27001. Experience of working with security risk management frameworks such as ISO31000. Knowledge of security control frameworks such as CIS, NIST800-53 and ISO27001. How we work We’re a mission-led, product-driven team. We move fast, stay focused and take ownership – from brief to build to impact. Debate is More ❯
Stevenage, England, United Kingdom Hybrid / WFH Options
Capgemini Engineering
networks) Understanding of industrial communication protocols and network architectures Experience with data analytics and machine learning in IIoT contexts Knowledge of security standards (e.g., IEC 62443, NISTSP800-82) Relevant certifications in IIoT, cloud, or industrial networking are a bonus Don’t meet every single requirement? We encourage you to apply anyway. We are committed More ❯
Stevenage, England, United Kingdom Hybrid / WFH Options
Capgemini
networks) Understanding of industrial communication protocols and network architectures Experience with data analytics and machine learning in IIoT contexts Knowledge of security standards (e.g., IEC 62443, NISTSP800-82) Relevant certifications in IIoT, cloud, or industrial networking are a bonus Don't meet every single requirements? Studies have shown women and people of colour are More ❯
London, England, United Kingdom Hybrid / WFH Options
Bridewell
Cyber Security & resilience, sometimes from a starting point of minimal security maturity. Supporting clients to implement frameworks, standards, and guidance, including ISA/IEC62443, NCSC CAF, NISTSP800-82, HSE OG86. Helping clients to understand their attack vectors that could be exploitable by threats. Designing secure OT network architectures and perimeter defences. Designing OT remote … Strong understanding and knowledge of performing cyber risk assessments. Demonstrable knowledge of cyber security frameworks, including but not limited to ISA/IEC 62443, NCSC CAF, NISTSP800-82, HSE OG86, and ISA TR84. Ability to understand and interpret process control and single-line diagrams. Experience of designing and implementing enterprise security. Awareness and understanding More ❯
London, England, United Kingdom Hybrid / WFH Options
CPS Group (UK) Limited
for UK businesses Senior Operational Technology (OT) Consultant Role: Senior Operational Technology (OT) Consultant Specialism(s): OT, Operational Technology, Industry Control Systems, ICS, SCADA, DCS, ISA/IEC62443, NIST, Cyber Security, Audit & Assessment, SoW, Cisco CyberVision, Claroty, SOAR, ISA-95 Type: Contract, Daily Rate Location: UK (Remote Working) Start: ASAP/Urgent Initial Contract Duration: 4 Months (likely … of OT systems, categorising risks and recommending appropriate mitigation measures based on assessment findings. Benchmarking cybersecurity posture of OT environments against industry standards (e.g. ISA/IEC 62443, NIST) Identifying gaps in achieving the desired Security Level (SL) Advising on applicable controls tailored to the client's specific systems and operational context. Preparing comprehensive audit and assessment reports. … security practices within engineering and security consulting domains. Proven familiarity with leading industry standards and frameworks, such as IEC 62443, NIST Cybersecurity Framework (CSF), NISTSP800-82, ONG-C2M2, and NERC-CIP. Technical Experience with: Cisco CyberVision or Claroty Security Orchestration, Automation, and Response (SOAR) platforms OT asset inventory and change detection tools More ❯
Stan 05-138, Def Stan 05-139) An understanding of MOD ISN 23/09 Secure by Design Knowledge of security frameworks, such as ISO/IEC 27001, NIST800-30, NIST800-53 or OWASP Working with risk management frameworks and methodologies (e.g., ISO 27001/2, ISO27005/31000, NIST800-30, NIST800-53) If this all sounds like something you will be interested in then simply apply and we can discuss the opportunity further More ❯
Stan 05-138, Def Stan 05-139) An understanding of MOD ISN 23/09 Secure by Design Knowledge of security frameworks, such as ISO/IEC 27001, NIST800-30, NIST800-53 or OWASP Working with risk management frameworks and methodologies (e.g., ISO 27001/2, ISO27005/31000, NIST800-30, NIST800-53) If this all sounds like something you will be interested in then simply apply and we can discuss the opportunity further! Product Security Architect Permanent role Based in Bristol Offering circa 80,000 Disclaimer: This vacancy is being advertised by either Advanced Resource Managers Limited, Advanced Resource More ❯
is a plus. ANGLICOTECH, LLC is an established, rapidly growing, veteran-owned small business providing Global Logistics and Supply Chain management, systems and analysis, Cybersecurity and NISTSP800-171 compliance solutioning as well as Enterprise Information Technology Implementation and Services. Anglicotech, LLC is an Equal Opportunity Employer with a strong commitment to supporting and retaining More ❯
London, England, United Kingdom Hybrid / WFH Options
Veeva Consumer Products
field, or equivalent work experience Coding skills in at least one primary language, such as Java or Python and React Understanding of OWASP Top 10, SANS Top 20, NIST800-53, CIS, CSC, or other security standards Utilize Static Application Security Testing tools (i.e. Checkmarx) to identify and remediate code vulnerabilities 1+ years as a security More ❯
EBA Guidelines). Has a comprehensive understanding of what it takes to comply with cyber security industry standards and frameworks in practise (e.g. ISO 27001, NIST CSF, SP800-53, NCSC CAF, Cyber Essentials). Has a thorough understanding of cyber security threat and risk with the ability to think like an attacker and design controls More ❯
EBA Guidelines). Has a comprehensive understanding of what it takes to comply with cyber security industry standards and frameworks in practise (e.g. ISO 27001, NIST CSF, SP800-53, NCSC CAF, Cyber Essentials). Has a thorough understanding of cyber security threat and risk with the ability to think like an attacker and design controls More ❯
London, England, United Kingdom Hybrid / WFH Options
OSB Group
transformations in retail banking systems such as savings and mortgages Strong understanding of Cloud Security and Controls and the application of internationally recognised standards such as NISTSP-800-53, CSA CCM, ISO27001 is essential Hands-on experience with core banking platforms, payment systems, and customer-facing applications Strong knowledge of Azure functionality and working within Agile methodology … transformations in retail banking systems such as savings and mortgages Strong understanding of Cloud Security and Controls and the application of internationally recognised standards such as NISTSP-800-53, CSA CCM, ISO27001 is essential Hands-on experience with core banking platforms, payment systems, and customer-facing applications Strong knowledge of Azure functionality and working within Agile methodology More ❯
builder-oriented security culture that prioritizes rapid, intelligent solutions and empowers team members to make swift, impactful decisions. Ensure compliance and alignment with PCI-DSS, GDPR, ISO 27001, NIST800/CSF, and other frameworks. Manage security risk, threat detection, business continuity, and third-party/vendor security. Maintain audit readiness and lead engagements with regulators … Leadership experience in InfoSec within fintech, SaaS, or regulated tech environments. Deep knowledge of cloud (AWS), DevSecOps, and secure SDLC practices. Strong understanding of compliance frameworks (PCI, GDPR, NIST, ISO, OWASP). Proven ability to manage audits, incidents, cross-functional teams, and regulators. Excellent interpersonal, leadership, and cross-functional collaboration skills. Demonstrated ability to operate effectively in a More ❯
/operations/consulting of Security and Compliance frameworks 4+ years of experience building security controls across cloud environments or experience with security protocols and standards such as NIST, IPCI-DSS, ISO27001, ISO27701, ISO42001, NIST800-53 Experience in internal enterprise or external customer-facing environment as a security technical lead Experience in Security More ❯
KMS). Proficiency with Infrastructure as Code (Terraform, CloudFormation, etc.). Experience with container security (Docker, Kubernetes, etc.). Familiarity with security frameworks and standards (e.g., CIS benchmarks, NIST800-53, SOC 2). Relevant certifications are a plus (e.g., AWS Security Specialty, CCSP, CISSP). What we offer Play a key role in shaping the More ❯
KMS). Proficiency with Infrastructure as Code (Terraform, CloudFormation, etc.). Experience with container security (Docker, Kubernetes, etc.). Familiarity with security frameworks and standards (e.g., CIS benchmarks, NIST800-53, SOC 2). Relevant certifications are a plus (e.g., AWS Security Specialty, CCSP, CISSP). What we offer Play a key role in shaping the More ❯
London, England, United Kingdom Hybrid / WFH Options
Experis
within regulated CNI sectors (e.g. utilities, energy, transport) Strong understanding of OT environments and their unique security challenges, including legacy systems and frameworks like CAF, IEC 62443, or NIST800-82 Familiarity with sector-specific compliance and regulatory reporting requirements. Proven leadership and stakeholder engagement skills Ability to link cyber strategy to broader organisational objectives and More ❯
Disaster Recovery practices to ensure all teams are aware and supportive Utilizing your experience migrating businesses and teams into using industry security best practices and frameworks. ISO 27001, NIST800-53, and AWS Well-Architected Framework Identifying opportunities for improvement and standardization of technology, risk register, and security dashboards. Working with Business and Tech stakeholders to More ❯