Newcastle Upon Tyne, Tyne and Wear, England, United Kingdom Hybrid/Remote Options
Atom Bank
for cloud-related security breaches, ensuring minimal downtime and data loss. Develop automated workflows for vulnerability management, incident detection, and response. Align security measures with financial regulations such as PCIDSS, ISO 27001, SOC 2, and GDPR. Support Atom’s AI team with AI and Automation specific infrastructure security needs. Partner with DevOps and engineering teams to integrate … experience with container security tools for Kubernetes and Docker environments. Advanced scripting and automation skills (Python, PowerShell, Bash, etc.) Demonstrated ability to navigate and implement compliance frameworks such as PCIDSS, GDPR, SOC 2, and ISO 27001. Familiarity with financial industry-specific security and privacy standards. Relevant Security certifications (e.g. CISSP, SSCP, CCSM, CISM, etc.) Relevant public-cloud More ❯
their main base of operations here, in the UK, as an experienced GRC Information Security Analyst ? Do you have experience in the GRC Security space with audits, auditors, ISO27001, PCIDSS, SOC2, NIST & current compliance regulations? If so & you are looking to expand your information Security career, meet new team members, embrace new challenges & join a world-class … ll already know what the role will entail, but see below for things we’ll need to see in order to be considered: - Knowledge and experience of ISO 27001, PCIDSS, SOC2, NIST and CIS benchmarking is essential. - Knowledge and experience achieving and maintaining compliance with relevant legislation, such as DPA, GDPR - Knowledge of cloud environments (AWS, Azure More ❯
Central London, London, England, United Kingdom Hybrid/Remote Options
hireful
their main base of operations here, in the UK, as an experienced GRC Information Security Analyst Do you have experience in the GRC Security space with audits, auditors, ISO27001, PCIDSS, SOC2, NIST & current compliance regulations? If so & you are looking to expand your information Security career, meet new team members, embrace new challenges & join a world-class … ll already know what the role will entail, but see below for things we’ll need to see in order to be considered: - Knowledge and experience of ISO 27001, PCIDSS, SOC2, NIST and CIS benchmarking is essential. - Knowledge and experience achieving and maintaining compliance with relevant legislation, such as DPA, GDPR - Knowledge of cloud environments (AWS, Azure More ❯
london, south east england, united kingdom Hybrid/Remote Options
Starling
measuring cost-effectiveness Respond promptly in-hours to technical incidents Embrace automation and be reluctant for manual implementation Implement security best practices ensuring platform compliance with ISO27001, SOC2 and PCI-DSS Share knowledge with colleagues by writing technical documentation and leading training sessions Requirements Ideally you will be an inquisitive Infrastructure Engineer, with an aptitude for finding clean … communication and problem-solving skills Desirably you will have: Understanding of database monitoring, analysis, disaster recovery and performance tuning Knowledge of security and compliance frameworks like ISO270001, SOC2 and PCI-DSS Understanding of networking and routing concepts (TCP/IP, VLANs, VPNs, BGP, etc) and preferably experience designing and establishing connectivity between AWS and on-premise locations The More ❯
Glasgow, Lanarkshire, Scotland, United Kingdom Hybrid/Remote Options
Verelogic IT Recruitment
such as Lambda, EventBridge, Kinesis, Glue, Athena, and CloudWatch. Security & Compliance Implement IAM policies, KMS encryption, VPC networking, and PrivateLink to secure data and connectivity. Ensure adherence to GDPR, PCI-DSS, ISO 27001, and industry-specific standards. Develop data retention policies, privacy impact frameworks, and procedures for emergency call handling. DevOps & Automation Establish CI/CD pipelines for … Connect solutions at enterprise scale with complex integrations. Proficient with AWS services: IAM, VPC, Lambda, API Gateway, EventBridge, Kinesis, CloudWatch, DynamoDB. Strong understanding of security and compliance frameworks (GDPR, PCI-DSS, ISO 27001). Hands-on experience with Infrastructure as Code (CloudFormation, Terraform, CDK) and serverless development (Node.js/Python). Preferred Qualifications AWS Solutions Architect - Professional or More ❯
Manchester, Lancashire, England, United Kingdom Hybrid/Remote Options
Searchability
experience conducting vulnerability scanning and interpreting results* Experience supporting security investigations* Good knowledge of industry-standardsecurity practices and tooling* Awareness of emerging security technologies and trends* Understanding of PCIDSS (current version)* Excellent communication, documentation, and organisational skills* Pragmatic approach to governance, risk, and stakeholder engagement TO BE CONSIDERED: Please either apply through this advert or email … process and submit (subject to required skills) your application to our client in conjunction with this vacancy only. KEY SKILLS Cyber Security, Vulnerability Management, Penetration Testing, Risk Assessment, Compliance, PCIDSS, Security Tooling, Governance, SIEM, Endpoint Security, Security Investigations More ❯
Stoke-on-Trent, Staffordshire, England, United Kingdom Hybrid/Remote Options
Searchability
experience conducting vulnerability scanning and interpreting results* Experience supporting security investigations* Good knowledge of industry-standardsecurity practices and tooling* Awareness of emerging security technologies and trends* Understanding of PCIDSS (current version)* Excellent communication, documentation, and organisational skills* Pragmatic approach to governance, risk, and stakeholder engagement TO BE CONSIDERED: Please either apply through this advert or email … process and submit (subject to required skills) your application to our client in conjunction with this vacancy only. KEY SKILLS Cyber Security, Vulnerability Management, Penetration Testing, Risk Assessment, Compliance, PCIDSS, Security Tooling, Governance, SIEM, Endpoint Security, Security Investigations More ❯
Banbury, Oxfordshire, United Kingdom Hybrid/Remote Options
Chiltern Railways
to demonstrate equivalent knowledge. Desirable Familiarity with the Microsoft security suite: Defender, InTune, Purview, EntraID, and Azure. Further certifications such as CISSP, CISM, or CRISC are advantageous Familiarity with PCI-DSS standards. Experience influencing cyber security investments and initiatives by providing expert advice to stakeholders and management. Educated to degree level or equivalent. More ❯
Hook Norton, Oxfordshire, United Kingdom Hybrid/Remote Options
Chiltern Railways
to demonstrate equivalent knowledge. Desirable Familiarity with the Microsoft security suite: Defender, InTune, Purview, EntraID, and Azure. Further certifications such as CISSP, CISM, or CRISC are advantageous Familiarity with PCI-DSS standards. Experience influencing cyber security investments and initiatives by providing expert advice to stakeholders and management. Educated to degree level or equivalent. More ❯
CISM, or similar. Experience with security tools such as Alert Logic, Qualys, M365 Security, and AWS Security Products. Understanding security compliance standards relevant to the SaaS industry, such as PCI, GDPR, ISO 27001, SOC2, NIST. An understanding of network protocols & practices, firewalls, intrusion detection/prevention systems and WAFs. We value teamwork, collaboration & technical excellence – the company are heavily More ❯
Employment Type: Permanent
Salary: £70000 - £80000/annum Up to £80K Basic + 10% Bonus + Exten
Central London, London, England, United Kingdom Hybrid/Remote Options
hireful
CISM, or similar. Experience with security tools such as Alert Logic, Qualys, M365 Security, and AWS Security Products. Understanding security compliance standards relevant to the SaaS industry, such as PCI, GDPR, ISO 27001, SOC2, NIST. An understanding of network protocols & practices, firewalls, intrusion detection/prevention systems and WAFs. We value teamwork, collaboration & technical excellence – the company are heavily More ❯
City, London, United Kingdom Hybrid/Remote Options
The Bridge IT Recruitment
Professional certifications such as GSEC, CISSP, OSCP, CISA, CompTIA Sec+, or equivalent. Knowledge of ITIL processes and cyber governance frameworks. Experience with scripting, automation, and digital forensics. Awareness of PCIDSS, SDLC, and network analysis principles. This is a great opportunity to join a leading organisation, this role is mostly remote with occasional travel to London, please note More ❯
London, Fleet Street, United Kingdom Hybrid/Remote Options
The Bridge IT Recruitment
Professional certifications such as GSEC, CISSP, OSCP, CISA, CompTIA Sec+, or equivalent. Knowledge of ITIL processes and cyber governance frameworks. Experience with scripting, automation, and digital forensics. Awareness of PCIDSS, SDLC, and network analysis principles. This is a great opportunity to join a leading organisation, this role is mostly remote with occasional travel to London, please note More ❯
Cambridgeshire, East Anglia, United Kingdom Hybrid/Remote Options
Sanderson Government and Defence
Lead roles JSP440, JSP604/453 & JSP490 Working with system secure design MOD/GDS Secure by Design Principles Supplier Chain Assurance and Risks. Security related legislation (e.g. GDPR, PCIDSS, ICO requirements). Security Control Frameworks such as ISO 27001, NIST CSF and CIS Controls v8. HMG, NPSA and NCSC security policies, standards and guidance. Have experience More ❯
london, south east england, united kingdom Hybrid/Remote Options
Bridewell
such as TOGAF or SABSA Strong understanding and knowledge of Information Security risk management tools and techniques Demonstrable knowledge of cyber security frameworks, including but not limited to: ISO27001, PCI-DSS, CIS Benchmarks, {Cloud Platform} Well Architected Frameworks. Demonstrable experience of designing and implementing enterprise security technology controls and platforms, following industry best practices. Experience of security governance More ❯
Hampshire, South East, United Kingdom Hybrid/Remote Options
Sanderson Government and Defence
Lead roles JSP440, JSP604/453 & JSP490 Working with system secure design MOD/GDS Secure by Design Principles Supplier Chain Assurance and Risks. Security related legislation (e.g. GDPR, PCIDSS, ICO requirements). Security Control Frameworks such as ISO 27001, NIST CSF and CIS Controls v8. HMG, NPSA and NCSC security policies, standards and guidance. Have experience More ❯
Milton Keynes, Buckinghamshire, England, United Kingdom Hybrid/Remote Options
REDTECH RECRUIT
CI/CD, observability and security Establish metrics driven engineering practices and lead initiatives to reduce lead time, improve deployment frequency and optimise reliability Ensure compliance with ISO27001, GDPR, PCIDSS and sector specific requirements Key focus areas for the first 18 to 24 months: Deliver the engineering enablement plan across SaaS and AI objectives Oversee the technical More ❯
Bletchley, Buckinghamshire, United Kingdom Hybrid/Remote Options
RedTech Recruitment Ltd
CI/CD, observability and security Establish metrics driven engineering practices and lead initiatives to reduce lead time, improve deployment frequency and optimise reliability Ensure compliance with ISO27001, GDPR, PCIDSS and sector specific requirements Key focus areas for the first 18 to 24 months: Deliver the engineering enablement plan across SaaS and AI objectives Oversee the technical More ❯
Nottingham, Nottinghamshire, East Midlands, United Kingdom Hybrid/Remote Options
Experian Ltd
surface discovery. Guide team members' daily project and operational activities Contribute to security and technology strategic planning to mature our programmes Work with Risk & Compliance teams on SOC 2, PCIDSS, HIPAA, and other audits. Research and recommend policy and procedures as they relate to Attack Surface Management Qualifications Expert experience supporting Attack Surface Management in vulnerability, remediation … developing security reports, trends, and metrics analysis. Experience with the application of some of the following frameworks - SANS, NIST 800-61, CVSS, CIS, OSSTM, ISO 27001, MITRE ATT&CK, PCI, HIPAA, GDPR or similar. Experience with cloud security practices Experience with business and technical requirements analysis, business process modeling/mapping, methodology development, and data mapping Additional Information Benefits More ❯
Warwick, Warwickshire, West Midlands, United Kingdom Hybrid/Remote Options
Sanderson Government and Defence
NIST CSF. Collaborate with SOC teams to refine incident response workflows. Governance & Compliance Align SIEM architecture with Secure by Design and Zero Trust principles. Support compliance with ISO 27001, PCIDSS, etc Document architecture, SyOps, and security standards for audit readiness. Reasonable Adjustments: Respect and equality are core values to us. We are proud of the diverse and More ❯
Sheffield, South Yorkshire, Yorkshire, United Kingdom Hybrid/Remote Options
Experis
in large-scale enterprise environments. * Knowledge of OpenShift, Kubernetes, and container security best practices. * Expertise in identity and key management, encryption standards, and PKI. * Familiarity with regulatory frameworks (e.g., PCIDSS, GDPR, ISO 27001). * Certifications such as CISSP, CISM, or equivalent preferred. All profiles will be reviewed against the required skills and experience. Due to the high More ❯
South East London, London, United Kingdom Hybrid/Remote Options
TEN10 SOLUTIONS LIMITED
Understanding of IAM, WAF, and KMS. Experience implementing best practices for securing data, ensuring compliance with industry standards and regulations. Bonus points for experience with a compliance framework (ISO27001, PCI-DSS). Infrastructure-as-Code: Mastery of Terraform, CloudFormation, CDK or equivalent tools. Scripting & Automation: Skills in a scripting language like Python, Ansible, Bash, Groovy, Powershell, or similar. More ❯
london, south east england, united kingdom Hybrid/Remote Options
Ten10
Understanding of IAM, WAF, and KMS. Experience implementing best practices for securing data, ensuring compliance with industry standards and regulations. Bonus points for experience with a compliance framework (ISO27001, PCI-DSS). Infrastructure-as-Code: Mastery of Terraform, CloudFormation, CDK or equivalent tools. Scripting & Automation: Skills in a scripting language like Python, Ansible, Bash, Groovy, Powershell, or similar. More ❯
Sunderland, Tyne and Wear, UK Hybrid/Remote Options
Tombola
integration). Experience embedding security into the SDLC and agile practices. Familiarity with cloud security (Cloudflare and AWS preferred). Understanding of standards and frameworks (OWASP Top 10, ISO27001, PCI-DSS, NIST). Certifications like CISSP, OSCP, CEH, AWS are a bonus. What's in it for you? Quarterly bonus, hybrid working, private healthcare, 25+ days holiday, free More ❯
with hybrid or multi-cloud environments with a focus on security. Familiarity with distributed systems and microservices architecture with secure configurations. Knowledge of compliance frameworks and security standards (e.g., PCIDSS, GDPR, ISO 27001). Key Performance Indicators (KPIs): Uptime and reliability of secure infrastructure and applications. Efficiency and success rate of automated workflows with security controls. Database More ❯