architecture and engineering within Defence or Critical National Infrastructure. Knowledge of risk management methodologies and security assurance. Desirable Skills Experience with IEC/ISA 62443 standards. Familiarity with NIST800-82, ISO 27001, and Defence Security standards (e.g., JSPs). Previous MOD/Defence and or Nuclear experience. Due to the nature and urgency of the More ❯
architecture and engineering within Defence or Critical National Infrastructure. Knowledge of risk management methodologies and security assurance. Desirable Skills Experience with IEC/ISA 62443 standards. Familiarity with NIST800-82, ISO 27001, and Defence Security standards (e.g., JSPs). Previous MOD/Defence and or Nuclear experience. Due to the nature and urgency of the More ❯
Disaster Recovery practices to ensure all teams are aware and supportive Utilizing your experience migrating businesses and teams into using industry security best practices and frameworks. ISO 27001, NIST800-53, and AWS Well-Architected Framework Utilizing real-time dashboards to facilitate tracking and reporting to the Technology Leadership Team and the wider organization. Become fully More ❯
to solve business problems, working in partnership with our clients to help in achieving their goals. About the role: Develop and maintain GRC frameworks aligned with ISO 27001, NIST, GDPR, and NIS2 standards Conduct risk assessments across business units, vendors, and projects Monitor regulatory changes and ensure compliance with legal and contractual obligations Support business continuity and disaster … GDPR, Data Protection Act) and industry-specific regulations Knowledge of common information security management frameworks, such as ISO/IEC 27001, ITIL, COBIT as well as those from NIST, including 800-53 and Cybersecurity Framework Knowledge of OneTrust risk management toolset or similar preferred Proven ability to communicate with technical teams to elicit information and requirements More ❯
to solve business problems, working in partnership with our clients to help in achieving their goals. About the role: Develop and maintain GRC frameworks aligned with ISO 27001, NIST, GDPR, and NIS2 standards Conduct risk assessments across business units, vendors, and projects Monitor regulatory changes and ensure compliance with legal and contractual obligations Support business continuity and disaster … GDPR, Data Protection Act) and industry-specific regulations Knowledge of common information security management frameworks, such as ISO/IEC 27001, ITIL, COBIT as well as those from NIST, including 800-53 and Cybersecurity Framework Knowledge of OneTrust risk management toolset or similar preferred Proven ability to communicate with technical teams to elicit information and requirements More ❯
to solve business problems, working in partnership with our clients to help in achieving their goals. About the role: Develop and maintain GRC frameworks aligned with ISO 27001, NIST, GDPR, and NIS2 standards Conduct risk assessments across business units, vendors, and projects Monitor regulatory changes and ensure compliance with legal and contractual obligations Support business continuity and disaster … GDPR, Data Protection Act) and industry-specific regulations Knowledge of common information security management frameworks, such as ISO/IEC 27001, ITIL, COBIT as well as those from NIST, including 800-53 and Cybersecurity Framework Knowledge of OneTrust risk management toolset or similar preferred Proven ability to communicate with technical teams to elicit information and requirements More ❯
Essential: Ability to be on-site in Belfast three days per week. Authorisation to work in Ireland. Familiarity with cybersecurity frameworks and best practices (e.g., OWASP Top 10, NIST800-53). Strong communication and stakeholder management skills. Development experience, ideally with authentication, authorization, SDKs, and APIs. Basic networking knowledge and a sound understanding of common More ❯
access, disclosure, or loss. Required Qualifications: Tertiary Degree or equivalent combination of education and work experience. Preferred Qualifications: Experience with security and risk-based standards such as ISO27001, ISO31000, NIST800, and PCI-DSS. Previous information security experience in a similar role. Regional experience required, global experience preferred. Experience working with outsourced service partners.At QBE, we want our people to feel More ❯
Assurance Risk Assessment and Risk Treatment Plans Establish security requirements for cloud-based solutions by evaluating business strategies and requirements, implementing security standards such as ISO 27000 series, NIST, CSF, and CSA Identify and deliver appropriate controls based on industry standards (e.g. CCM) to drive cloud and customer security solutions framework based on business risk and cloud native … IAM Cloud security concepts, technologies and best practices for delivering security across IaaS, PaaS, SaaS and Serverless architectures Implementing Information Security and Privacy Standards and Frameworks (e.g. ISO 27k, NIST800-53, CIS, GDPR) Leading security working groups and external security testing (ITHC, Penetration Testing, etc) of cloud solutions at high HMG classification levels (OFFICIAL required, SECRET desirable) or equivalent in More ❯
management in support of Secure by Design (SbD) implementation, and oversee the delivery of Navy Command's SbD implementation plan. Description Update the SbD implementation plan by using NIST800-37 Tasks 1-7. Identify the activities required to deliver each task, including the implementation approach, resources and timescales. Complete the highest priority tasks within More ❯
Portsmouth, yorkshire and the humber, united kingdom
Carbon60
management in support of Secure by Design (SbD) implementation, and oversee the delivery of Navy Command's SbD implementation plan. Description Update the SbD implementation plan by using NIST800-37 Tasks 1-7. Identify the activities required to deliver each task, including the implementation approach, resources and timescales. Complete the highest priority tasks within More ❯
e.g. SCADA Solid experience in critical infrastructure e.g. Power, Utilities, Transportation etc. Previous security consultancy experience ideal Familiarity with ICS security standards such as ISA/IEC 62443, NIST800-82, NERC-CIP Are you a candidate looking for a new role More ❯
London, South East, England, United Kingdom Hybrid / WFH Options
QBE Management Services (UK) Limited
access, disclosure, or loss.? Required Qualifications: Tertiary Degree or equivalent combination of education and work experience. Preferred Qualifications: Experience with security and risk-based standards such as ISO27001, ISO31000, NIST800, and PCI-DSS. Previous information security experience in a similar role. Regional experience required, global experience preferred. Experience working with outsourced service partners. Why QBE? At My Best? At QBE … for you and all the family.?? Family friendly policies – we offer 26 weeks leave at full pay regardless of gender identity, sexual orientation or how you become a parent.? <spMore ❯