London, England, United Kingdom Hybrid / WFH Options
OSB Group
transformations in retail banking systems such as savings and mortgages Strong understanding of Cloud Security and Controls and the application of internationally recognised standards such as NISTSP-800-53, CSA CCM, ISO27001 is essential Hands-on experience with core banking platforms, payment systems, and customer-facing applications Strong knowledge of Azure functionality and working within Agile methodology … transformations in retail banking systems such as savings and mortgages Strong understanding of Cloud Security and Controls and the application of internationally recognised standards such as NISTSP-800-53, CSA CCM, ISO27001 is essential Hands-on experience with core banking platforms, payment systems, and customer-facing applications Strong knowledge of Azure functionality and working within Agile methodology More ❯
builder-oriented security culture that prioritizes rapid, intelligent solutions and empowers team members to make swift, impactful decisions. Ensure compliance and alignment with PCI-DSS, GDPR, ISO 27001, NIST800/CSF, and other frameworks. Manage security risk, threat detection, business continuity, and third-party/vendor security. Maintain audit readiness and lead engagements with regulators … Leadership experience in InfoSec within fintech, SaaS, or regulated tech environments. Deep knowledge of cloud (AWS), DevSecOps, and secure SDLC practices. Strong understanding of compliance frameworks (PCI, GDPR, NIST, ISO, OWASP). Proven ability to manage audits, incidents, cross-functional teams, and regulators. Excellent interpersonal, leadership, and cross-functional collaboration skills. Demonstrated ability to operate effectively in a More ❯
/operations/consulting of Security and Compliance frameworks 4+ years of experience building security controls across cloud environments or experience with security protocols and standards such as NIST, IPCI-DSS, ISO27001, ISO27701, ISO42001, NIST800-53 Experience in internal enterprise or external customer-facing environment as a security technical lead Experience in Security More ❯
KMS). Proficiency with Infrastructure as Code (Terraform, CloudFormation, etc.). Experience with container security (Docker, Kubernetes, etc.). Familiarity with security frameworks and standards (e.g., CIS benchmarks, NIST800-53, SOC 2). Relevant certifications are a plus (e.g., AWS Security Specialty, CCSP, CISSP). What we offer Play a key role in shaping the More ❯
KMS). Proficiency with Infrastructure as Code (Terraform, CloudFormation, etc.). Experience with container security (Docker, Kubernetes, etc.). Familiarity with security frameworks and standards (e.g., CIS benchmarks, NIST800-53, SOC 2). Relevant certifications are a plus (e.g., AWS Security Specialty, CCSP, CISSP). What we offer Play a key role in shaping the More ❯
London, England, United Kingdom Hybrid / WFH Options
Experis
within regulated CNI sectors (e.g. utilities, energy, transport) Strong understanding of OT environments and their unique security challenges, including legacy systems and frameworks like CAF, IEC 62443, or NIST800-82 Familiarity with sector-specific compliance and regulatory reporting requirements. Proven leadership and stakeholder engagement skills Ability to link cyber strategy to broader organisational objectives and More ❯
Disaster Recovery practices to ensure all teams are aware and supportive Utilizing your experience migrating businesses and teams into using industry security best practices and frameworks. ISO 27001, NIST800-53, and AWS Well-Architected Framework Identifying opportunities for improvement and standardization of technology, risk register, and security dashboards. Working with Business and Tech stakeholders to More ❯
security audit controls Experience working with Global GRC tools and processes Extensive knowledge of at least 2 or more of the following compliance frameworks Cyber Essentials plus, C5, NIST800-53, PCI, SOC, ISO 27x Excellent written, verbal communication and presentation skills Big 4 Experience or Management Consulting Experience preferred Willingness to wear different hats and More ❯
Leeds, England, United Kingdom Hybrid / WFH Options
Lloyds Banking Group
teams to translate regulatory requirements (e.g. SOC2, ISO 27001, HIPAA, GDPR, PCI DSS) into technical controls in the cloud Adherence and experience of compliance frameworks (e.g. CIS Benchmarks, NIST800-53) Building or maintaining automated continuous compliance monitoring solutions (e.g. CSPM, CNAAP) Assessing cloud environments for drift and misconfiguration and remediation workflows implementation via automation Scoping More ❯
with server virtualisation (VMWare/Hyper-V) or VDI Strong understanding of networking concepts Proficiency with Microsoft Endpoint Configuration Manager MS Azure foundation level cloud certifications Experience with NIST-800-171 and Cyber Essentials Plus Defence or secure systems background an advantage Experience with system/infrastructure design Benefits: Competitive salary Opportunity to work on high-impact projects More ❯
OSCP, etc.). Experience of supporting audits such as ISO27001. Experience of working with security risk management frameworks such as ISO31000. Knowledge of security control frameworks such as CIS, NIST800-53 and ISO27001. How we work We're a mission-led, product-driven team. We move fast, stay focused and take ownership - from brief to build to impact. Debate is More ❯
evaluation and compliance to DoD/Navy directives, policies, and instruction to include but not limited to Federal Information Security Management Act (FISMA), OMB A-130, NISTSP800Series, FIPS Publications, and Navy RMF governance. Assists in RMF A&A process negotiation and task management for accomplishing A&A activities. Prepares reports, correspondence, white papers … architectures, LAN/WAN protocols and technologies, 5G, and other relevant technologies in use with modern enterprises. Extensive experience and understanding of DoD cybersecurity and policies, instructions, and NIST publications as they relate to the Authorizing Official. Understanding of system and software SDLCs, and unique DoD domains such as Cross-domain solutions, PPSM. Excellent facility and use of More ❯
Working On: ️ Managing and enforcing information security policies, procedures, and standards to safeguard organizational data ️ Conducting risk assessments and ensuring compliance with relevant security frameworks (e.g., ISO 27001, NIST, GDPR) ️ Performing audits and security assessments to identify vulnerabilities and recommending appropriate mitigations ️ Collaborating with other teams to implement and maintain secure information management systems ️ Providing expert guidance on … experience as an Information Assurance Specialist or in a similar role focused on data protection and compliance ️ Strong understanding of information assurance frameworks (e.g., ISO 27001, NISTSP800-53, COBIT) ️ Experience with security assessments, audits, and vulnerability management ️ Knowledge of regulatory standards such as GDPR, HIPAA, and PCI-DSS ️ Certifications such as CISSP, CISM, or More ❯
security incident response and investigation Essential skills will include: Proven experience in implementing and managing security frameworks such as ISO 27001, NIST CSF/NISTSP800-53, and GDPR Strong technical skills in designing, implementing, and maintaining security controls Excellent problem-solving skills with the ability to interpret complex security topics and translate More ❯
security incident response and investigation Essential skills will include: Proven experience in implementing and managing security frameworks such as ISO 27001, NIST CSF/NISTSP800-53, and GDPR Strong technical skills in designing, implementing, and maintaining security controls Excellent problem-solving skills with the ability to interpret complex security topics and translate More ❯
technical concepts and assessment results verbally and in written reports in simple terms; Knowledge of IEC 62443, MITRE ATT&CK for ICS, NIST CSF, NISTSP800-82 and relevant regulations in EU and UK; Interest and ability to write exciting whitepapers and publications ; A supportive and a proactive personality , you know how to More ❯
12C, BAM 12C. ANGLICOTECH, LLC is an established, rapidly growing, veteran-owned small business providing Global Logistics and Supply Chain management, systems and analysis, Cybersecurity and NISTSP800-171 compliance solutioning as well as Enterprise Information Technology Implementation and Services. Anglicotech, LLC is an Equal Opportunity Employer with a strong commitment to supporting and retaining More ❯
City Of Bristol, England, United Kingdom Hybrid / WFH Options
Logiq
into MOD, relevant governance and security policy, processes, and practices (inc Joint Service Publications 604, 440). Knowledge of national and international security frameworks such as NISTSP800 Series. Experience managing agile teams, DevOps engineering teams and CI/CD. Practical experience managing requirements, verification, validation and acceptance. Certifications in relevant technologies, products, methodologies or More ❯
Bath, England, United Kingdom Hybrid / WFH Options
JR United Kingdom
into MOD, relevant governance and security policy, processes, and practices (inc Joint Service Publications 604, 440). Knowledge of national and international security frameworks such as NISTSP800 Series. Experience managing agile teams, DevOps engineering teams and CI/CD. Practical experience managing requirements, verification, validation and acceptance. Certifications in relevant technologies, products, methodologies or More ❯
resolve infrastructure and deployment issues efficiently. Collaborate with developers to ensure smooth integration of code and infrastructure. Implement and maintain technical security controls aligned to frameworks such as NIST800-53, CIS Benchmarks, and JSP standards. Maintain technical documentation and contribute to the infrastructure knowledge base. Support backup and disaster recovery processes and ensure business continuity … orchestration using Docker and Kubernetes. Experience working with DevOps tools such as Jenkins, Azure DevOps, Artifactory, and Git. Understanding of secure system design and relevant security standards (e.g. NIST, NCSC, CIS, JSP). Familiarity with virtualization platforms (e.g., Nutanix, VMware). Working knowledge of monitoring and security tools (e.g., Wazuh, Nessus, PRTG, Microsoft Defender). Ability to quickly More ❯
London, England, United Kingdom Hybrid / WFH Options
Hays
in Pen Testing Good knowledge of Info Sec/IT Security Experience of conducting risk assessments within a Technology environment Knowledge of risk management frameworks (ISO 3100X/NIST800-30/37/39, ENISA/EBIOS/OCTAVE/FAIR etc) Excellent communication skills with ability to translate technical jargon to non-technical audiences More ❯
London, England, United Kingdom Hybrid / WFH Options
Hays
in Pen Testing Good knowledge of Info Sec/IT Security Experience of conducting risk assessments within a Technology environment Knowledge of risk management frameworks (ISO 3100X/NIST800-30/37/39, ENISA/EBIOS/OCTAVE/FAIR etc) Excellent communication skills with ability to translate technical jargon to non-technical audiences More ❯
London, England, United Kingdom Hybrid / WFH Options
JR United Kingdom
in Pen Testing Good knowledge of Info Sec/IT Security Experience of conducting risk assessments within a Technology environment Knowledge of risk management frameworks (ISO 3100X/NIST800-30/37/39, ENISA/EBIOS/OCTAVE/FAIR etc) Excellent communication skills with ability to translate technical jargon to non-technical audiences More ❯
London, England, United Kingdom Hybrid / WFH Options
Lloyds Banking Group
in cloud Implementing governance frameworks for cloud usage and security Collaborating with compliance, risk, and audit teams to meet regulatory requirements Ensuring compliance with frameworks like CIS Benchmarks, NIST800-53 Developing automated continuous compliance monitoring solutions Assessing cloud environments for drift and misconfiguration, automating remediation Deploying audit and policy enforcement in cloud environments About Working More ❯
team and foster a high-security-performance culture. Promote Incident Process, Business Continuity Planning (BCP), and Disaster Recovery practices. Leverage your experience with security frameworks like ISO 27001, NIST800-53, and AWS Well-Architected Framework. Identify opportunities to improve and standardize security practices, working with stakeholders to deliver value. Track and report on security initiatives More ❯