Loughton, Essex, South East, United Kingdom Hybrid / WFH Options
Profile 29
role. This role will focus on creating a business strategy, gap analysis and implementation, for securing their Azure-based infrastructure, integrating security automation, ensuring PCIDSS compliance, vulnerability and penetration testing and incident response. This role will focus on developing and maintaining secure, scalable Azure DevOps pipelines and … WAF) and Intrusion Prevention Systems (IPS). Vulnerability & Penetration Testing: Review Penetration Testing, vulnerability assessments, and security scanning to proactively identify and remediate risks. PCIDSS Compliance: Conduct security audits, risk assessments, and ensure regulatory compliance. DNS Security: Implement and monitor DNS security solutions to prevent cyber threats. … be found at: profile-29 .com/privacy) Profile 29 recruitment keywords: DevSecOps DevOps Azure cloud security Microsoft Defender Microsoft Sentinel WAF IPS DNS pcidsspcidsspci-dss soar loughton Debden essex London freelance contract More ❯
Employment Type: Contract, Work From Home
Rate: From £500 to £700 per day (direct contract with the client)
Loughton, Essex, South East, United Kingdom Hybrid / WFH Options
Profile 29
role. This role will focus on creating a business strategy, gap analysis and implementation, for securing their Azure-based infrastructure, integrating security automation, ensuring PCIDSS compliance, vulnerability and penetration testing and incident response. This role will focus on developing and maintaining secure, scalable Azure DevOps pipelines and … WAF) and Intrusion Prevention Systems (IPS). Vulnerability & Penetration Testing: Review Penetration Testing, vulnerability assessments, and security scanning to proactively identify and remediate risks. PCIDSS Compliance: Conduct security audits, risk assessments, and ensure regulatory compliance. DNS Security: Implement and monitor DNS security solutions to prevent cyber threats. … be found at: profile-29 .com/privacy) Profile 29 recruitment keywords: DevSecOps DevOps Azure cloud security Microsoft Defender Microsoft Sentinel WAF IPS DNS pcidsspcidsspci-dss soar loughton Debden essex London freelance contract More ❯
Ely, Cambridgeshire, East Anglia, United Kingdom Hybrid / WFH Options
IT Governance Limited, a GRC Solutions Company
Engagements: Work with clients of all merchant levels and service providers across various industries. Career Growth: Enhance your expertise with exposure to frameworks like PCIDSS, ISO27001, SWIFT CSF, and CIS18. Collaborative Culture: Join a team that values innovation, client success, and your professional development. Key Responsibilities: Conducting … comprehensive security assessments, including PCIDSS, ISO27001/27002, SWIFT Security, and Cloud compliance. Preparing executive and technical reports detailing findings, security gaps, and actionable recommendations. Leading PCIDSS Gap Assessments, Risk Assessments, and Reports on Compliance (ROCs) across various industries. Creating roadmaps for compliance, with … or exceeded. Supporting business development efforts by providing technical expertise during client discussions. Were looking for an experienced and proactive QSA Consultant with: Essential: PCI QSA certification, supported by one or more of the following: CISSP, CISA, CISM, or ISO27001 Lead Auditor + Lead Implementer certifications. Experience: Minimum More ❯
Guildford, Surrey, United Kingdom Hybrid / WFH Options
Sycurio
The Information Security Director develops, shapes, and maintains Sycurio's information security capability, driving the attainment and maintenance of the ISO27001, PCI-DSS, and SOC2 compliance. They are the subject matter expert on all things regarding security and compliance, owning the information risk management processes. They are the … parties and providing assurance of policies, procedures, and systems. Develop, maintain, and expand the information security management system ('ISMS') to optimise compliance for ISO27001, PCI-DSS, and SOC2. Identify gaps in the information security capability, both technical and operational, and propose remediation and mitigation plans and solutions. Responsible … CISSP, CISM, CISA, or equivalent. Experience: 10+ years of information security experience. Financial/Fintech services/payments desirable. Deep knowledge of security frameworks (PCI, ISO 27001, NIST) and regulations (GDPR, CCPA). Experience with PCIDSS compliance and implementation. Proven success in managing external auditors to More ❯
security standards and monitor compliance. Manage security reviews during vendor onboarding and contract renewals. Governance, Risk, and Compliance Ensure compliance with relevant regulations (e.g., PCIDSS, GDPR, SOC 2, ISO 27001) and internal policies. Maintain up-to-date knowledge of emerging threats, regulatory changes, and best practices. Establish … response. Relevant certifications such as CISSP, CISM are highly desirable. Strong knowledge of security frameworks (e.g., NIST, CIS, ISO 27001) and compliance standards (e.g., PCI-DSS, PSD2, GDPR). Hands-on experience with security technologies (e.g., SIEM, endpoint protection, cloud security tools). Exceptional leadership and communication skills More ❯
key cloud applications and infrastructure. Assist in migrating and securing legacy applications into a newly structured cloud tenancy. Ensure alignment with compliance frameworks like PCI-DSS, ISO 27001, and DORA (training provided if needed). Contribute to automation and toolchain improvements using Terraform, Ansible, and multi-cloud security … Someone who is honest, grounded, and focused on delivering practical, effective solutions. You’ll Stand Out If You Have: Exposure to or interest in PCI-DSS or other financial compliance standards. Experience with Wiz or similar cloud security platforms. Familiarity with scripting (PowerShell, Python) and a security-first More ❯
e.g. GDPR), and IT operations. Driving readiness for security certifications such as future ISO 27001 compliance, as well as maintaining existing frameworks (SOC 2, PCIDSS, GDPR etc.) Acting as the key decision-maker for infrastructure security tooling and cloud security practices, ideally with deep AWS experience. What … payments or eCommerce. Comfortable navigating ambiguity and change, managing stakeholders inc. c-suite. Hands-on experience with modern security standards and frameworks (SOC 2, PCIDSS, GDPR), with foresight into ISO 27001 readiness. A background in IT security management, with the ability to own workforce, device, and vendor More ❯
insight into the security solutions adapted to their needs Check compliance with applicable regulations, standards, policies and guidance on cybersecurity and information risk management (PCIDSS, NIST, ISO 27000, Privacy, etc) Support the development of appropriate and proportionate documentation to inform risk management decisions, ensuring these are expressed … in terms meaningful to the business Check compliance with applicable regulations, standards, policies and guidance on cybersecurity and information risk management (PCIDSS, NIST, ISO 27000, Privacy, etc) Support the development of appropriate and proportionate documentation to inform risk management decisions, ensuring these are expressed in terms meaningful More ❯
bradford, yorkshire and the humber, United Kingdom Hybrid / WFH Options
Morrisons
driving security policies and guide rails Experience working within a structured governance framework IT Security Qualification such as CISA/CISSP or BCS and PCI/ISA qualification Industry and Regulatory Experience The security architect is expected to have documented experience with the following: Regulations, Standards and Frameworks Payment … CardIndustryDataSecurityStandard (PCI-DSS) General Data Protection Regulation (GDPR) and Privacy Practices ISO 27001/2 Knowledge of OWASP 10 NIST Cybersecurity Framework (CSF) CIS and Benchmarking By joining Morrisons, you not only become an essential asset to our success but also open doors to More ❯
Bradford, south west england, United Kingdom Hybrid / WFH Options
Morrisons
driving security policies and guide rails Experience working within a structured governance framework IT Security Qualification such as CISA/CISSP or BCS and PCI/ISA qualification Industry and Regulatory Experience The security architect is expected to have documented experience with the following: Regulations, Standards and Frameworks Payment … CardIndustryDataSecurityStandard (PCI-DSS) General Data Protection Regulation (GDPR) and Privacy Practices ISO 27001/2 Knowledge of OWASP 10 NIST Cybersecurity Framework (CSF) CIS and Benchmarking By joining Morrisons, you not only become an essential asset to our success but also open doors to More ❯
Cheltenham, Gloucestershire, United Kingdom Hybrid / WFH Options
Accenture
standards, guidelines, and regulatory compliance requirements related to information security and cloud computing such as GDPR, ISO 27001, Cloud Security Alliance, NIST 800-53, PCIDSS, ISA/IEC 62443, NERC CIP, HIPAA, etc. Knowledge of public cloud environments Azure, AWS or Google Cloud. Closing Date for Applications More ❯
CISM), Certified Information Systems Auditor (CISA) or other similar credentials. • Proven experience in managing security operations teams in a similar industry. • Familiarity with SOC2, PCI-DSS, ISO22301 and ISO27001 standards. Desirable Qualifications: • Bachelor’s or masters degree in CyberSecurity, Computer Science, Information Technology, or a related field • Cloud More ❯
security engineering and operations. In-depth knowledge of networking protocols, operating systems, and cloud technologies. Strong understanding of security principles, practices, and frameworks (e.g., PCI, NIST, ISO 27001). Experience with security tools such as SIEM, IDS/IPS, endpoint protection, and penetration testing tools. Experience with public cloud More ❯
coventry, midlands, United Kingdom Hybrid / WFH Options
Lorien
as a security architect in a SAFe or agile product environment. Deep knowledge of security risk identification , mitigation , and regulatory compliance (DPA 2018, GDPR, PCIDSS). Understanding of threat models, TTPs, and attack surfaces relevant to UK financial services. Hands-on experience in designing and delivering secure More ❯
Bexhill-On-Sea, East Sussex, South East, United Kingdom Hybrid / WFH Options
Hastings Direct
Bicep, ARM templates, Terraform). Hands-on experience with SIEM tools, ideally Azure Sentinel. Understanding of regulatory and compliance frameworks (e.g., CIS Benchmarks, HIPAA, PCI-DSS). Excellent problem-solving skills, communication, and the ability to explain technical concepts to non-technical stakeholders. Desirable: Relevant certifications such as More ❯
Cambridge, Cambridgeshire, United Kingdom Hybrid / WFH Options
Deloitte LLP
Event Management (SIEM) data, which includes: Provide Deloitte firms with cybersecurity data. Assist Deloitte Global and Deloitte firms with data extraction for ISO and PCI audit requirements. Support eDiscovery teams by providing data relating to insider threats and legal matters. Build and maintain PowerBI dashboards. Support the cyber risk More ❯
Manchester, Lancashire, United Kingdom Hybrid / WFH Options
Deloitte LLP
Event Management (SIEM) data, which includes: Provide Deloitte firms with cybersecurity data. Assist Deloitte Global and Deloitte firms with data extraction for ISO and PCI audit requirements. Support eDiscovery teams by providing data relating to insider threats and legal matters. Build and maintain PowerBI dashboards. Support the cyber risk More ❯
Bristol, Gloucestershire, United Kingdom Hybrid / WFH Options
Deloitte LLP
Event Management (SIEM) data, which includes: Provide Deloitte firms with cybersecurity data. Assist Deloitte Global and Deloitte firms with data extraction for ISO and PCI audit requirements. Support eDiscovery teams by providing data relating to insider threats and legal matters. Build and maintain PowerBI dashboards. Support the cyber risk More ❯
Leeds, Yorkshire, United Kingdom Hybrid / WFH Options
Deloitte LLP
Event Management (SIEM) data, which includes: Provide Deloitte firms with cybersecurity data. Assist Deloitte Global and Deloitte firms with data extraction for ISO and PCI audit requirements. Support eDiscovery teams by providing data relating to insider threats and legal matters. Build and maintain PowerBI dashboards. Support the cyber risk More ❯
Guildford, Surrey, United Kingdom Hybrid / WFH Options
Deloitte LLP
Event Management (SIEM) data, which includes: Provide Deloitte firms with cybersecurity data. Assist Deloitte Global and Deloitte firms with data extraction for ISO and PCI audit requirements. Support eDiscovery teams by providing data relating to insider threats and legal matters. Build and maintain PowerBI dashboards. Support the cyber risk More ❯
london, south east england, United Kingdom Hybrid / WFH Options
FirstBank UK Limited
Cyber Security or Cyber Security Professional Qualifications/Certifications Desirable: General understanding of IT Security principles, standards and regulations (e.g. ISO 27001, NIST, CIS, PCIDSS and GDPR) CISM/CISSP Patch Management Applications, EDR/XDR systems. Antivirus, NAC - Forescout Vulnerability Scanning Tool e. Tenable One, Qualisys More ❯
london, south east england, United Kingdom Hybrid / WFH Options
The Curve Group
Cyber Security or Cyber Security Professional Qualifications/Certifications Desirable: General understanding of IT Security principles, standards and regulations (e.g. ISO 27001, NIST, CIS, PCIDSS and GDPR) CISM/CISSP Patch Management Applications, EDR/XDR systems. Antivirus, NAC - Forescout Vulnerability Scanning Tool e. Tenable One, Qualisys More ❯
of access control in data protection. Understanding of protection controls applied to data throughout its lifecycle. Experience implementing datasecurity standards such as ISO27001, PCIDSS, NIST CSF. Ability to manage cyber security risks and communicate effectively with stakeholders. Desirable Skills: Experience leading a Cyber Security Assurance function. More ❯
Strong understanding and knowledge of Information Security risk management tools and techniques Demonstrable knowledge of cyber security frameworks, including but not limited to: ISO27001, PCI-DSS, CIS Benchmarks, Cloud Platform Well Architected Frameworks. Demonstrable experience of designing and implementing enterprise security technology controls and platforms, following industry best More ❯