ForeScout platforms Lead initiatives in zero-trust architecture, VPNs, and micro-segmentation Conduct regular patching, firmware upgrades, and vulnerability remediation Align network operations with frameworks like ISO 27001, NIST, PCI-DSS, and CIS benchmarks Monitor, diagnose, and optimize network performance for both on-prem and cloud Resolve complex issues across LAN/WAN, firewalls, and cloud infrastructure with … etc.) Solid background in patch management, vulnerability scanning, and security compliance Proficient with F5 (LTM, GTM, ASM) and network automation (Python, Ansible, Terraform) Familiarity with security frameworks (ISO, NIST, PCI-DSS, CIS) Excellent troubleshooting skills and a proactive approach to network reliability Strong documentation and stakeholder communication skills Preferred Certifications & Skills CCNP, CCIE, PCNSE, CCSA/CCSE, F5 More ❯
Lambda, Elastic Search, Kibana and Kinesis. AWS certification. Knowledge of AWS Workforce Management tools including Quality Monitoring scorin Experience with working in a regulated financial services environment including ISO27001, PCI-DSS and Sarbanes Oxley. Experience with Microsoft technologies including Microsoft Teams direct routing, Microsoft 365 and Azure Entra ID. Experience with Avaya Aura solutions/Verint WFM Applications More ❯
Lambda, Elastic Search, Kibana and Kinesis. AWS certification. Knowledge of AWS Workforce Management tools including Quality Monitoring scorin Experience with working in a regulated financial services environment including ISO27001, PCI-DSS and Sarbanes Oxley. Experience with Microsoft technologies including Microsoft Teams direct routing, Microsoft 365 and Azure Entra ID. Experience with Avaya Aura solutions/Verint WFM Applications More ❯
Maidenhead, Royal Borough of Windsor and Maidenhead, Berkshire, United Kingdom
Kensington Mortgages
Lambda, Elastic Search, Kibana and Kinesis. AWS certification. Knowledge of AWS Workforce Management tools including Quality Monitoring scorin Experience with working in a regulated financial services environment including ISO27001, PCI-DSS and Sarbanes Oxley. Experience with Microsoft technologies including Microsoft Teams direct routing, Microsoft 365 and Azure Entra ID. Experience with Avaya Aura solutions/Verint WFM Applications More ❯
City of London, London, United Kingdom Hybrid / WFH Options
Carousel Consultancy Ltd
Custom RBAC roles in Azure Exposure to Azure Monitor, Log Analytics is advantageous Experience using vulnerability scanners (e.g. Defender for Endpoint, Qualys) is beneficial Basic understanding of GDPR, ISO27001, PCIDSS or other compliance is desirable Dynamic and personable nature with the desire for continuous learning and development Excellent problem-solving capabilities Confident communication and interpersonal skills Passion More ❯
Custom RBAC roles in Azure Exposure to Azure Monitor, Log Analytics is advantageous Experience using vulnerability scanners (e.g. Defender for Endpoint, Qualys) is beneficial Basic understanding of GDPR, ISO27001, PCIDSS or other compliance is desirable Dynamic and personable nature with the desire for continuous learning and development Excellent problem-solving capabilities Confident communication and interpersonal skills Passion More ❯
will have: Proven senior leadership experience in information security within large, complex organizations. Deep knowledge of information security standards and frameworks (e.g., CIS, NIST, ISO-27001). Experience managing PCI-DSS compliance across multiple payment channels. Strong understanding of GDPR and experience leading a privacy team. Experience leading and developing teams of specialists. Exceptional communication skills to influence More ❯
of security controls and identify weaknesses. Security Compliance: Ensure that applications comply with relevant security standards, regulations, and industry best practices, such as OWASP Top 10, OWASP ASVS, MAVS, PCIDSS, and GDPR. Security Architecture: Assist in designing and implementing secure application architectures, including authentication mechanisms, access controls, encryption, and secure communication protocols. Incident Response: Collaborate with incident … effectively collaborate with cross-functional teams and communicate technical concepts to non-technical stakeholders. Desirable Skills and Experience Knowledge of relevant regulatory requirements and compliance standards, such as GDPR, PCIDSS, and ISO 27001. What’s in it for you? The chance to make a real impact in a growing start-up on a mission to change the More ❯
and implementation of frameworks such as NIST 800-53 r5, NIST CSF2.0, CIS, ISO27K • Executing advisory & consulting engagements around regulatory risk & compliances such as DORA, NIS2, GDPR, SOX ITGC, PCI-DSS, HIPAA, Data Privacy, NHS, FFIEC etc. • Program and project manage GRC delivery engagements • Participate in strategic risk management and regulatory compliances transition and transformation engagements. • Develop knowledge … technical capabilities around information security, business continuity and technology risk assessments. ISO 27K, NIST, AI Governance, CIS etc. • Good compliance understanding of industry domains such as BFSI – (SOX, FFIEC, PCI-DSS, BASEL, MAS etc.), Healthcare & Life-sciences – (HIPAA, Hi-Trust, FDA CFR, GxP Compliance), Telecom, Retail, Data Privacy (GDPR, CCPA) Energy & Utilities (NERC, FERC) Information Security (ISO More ❯
businesses: Alipay+, Antom, WorldFirst and ANEXT Bank. Role Overview: As a GRC Lead, you will ensure alignment with European regulations (e.g., GDPR, DORA, PSD2 SCA, CSSF) and global standards (PCIDSS, SWIFT CSP). This role requires technical knowledge, strategic thinking, and expertise in managing third-party risk, outsourcing compliance, and identity governance to safeguard operational resilience. What … Support compliance with GDPR and complementary regulations like DORA (Digital Operational Resilience Act), ensuring alignment in areas such as incident reporting and data protection. Translate requirements from PSD2 SCA, PCIDSS, and SWIFT CSP into technical security controls. Maintain IT security governance frameworks (ISO 27001, NIST CSF, CIS Controls). Manage and maintain Security Policies and procedures Third … requirements. Security awareness management experience. What we are looking for: Experience: 5+ years in GRC roles; financial services or banking experience is a strong plus. Understanding of GDPR, DORA, PCIDSS, and outsourcing/third-party risk requirements. Hands-on experience with ISO 27001 implementation and third-party risk tools. Proficiency in IAM (Identity and Access Management) solutions More ❯
Guildford, Surrey, United Kingdom Hybrid / WFH Options
Allianz Popular SL
existing governance framework. Assisting cross-functional teams and business units in integrating security measures into business operations. Supporting compliance activities with the Group Information Security Framework, Cyber Essentials, and PCIDSS attestation. Facilitating regular reviews and updates of control and risk management processes to remain effective and responsive to emerging threats and changes in the organizational landscape. Essential … of security transformation and delivery of security projects, particularly within a federated organisation. Desirable Skills Knowledge of Information Security and compliance frameworks, including NIST CSF, ISO 27001, Cyber Essentials, PCIDSS, and DORA, and the ability to design controls that align with these standards. Good awareness of risk methodologies and ability to analyse data for report generation. Skills More ❯
risks and mitigations. Maintain knowledge of security threats, vulnerabilities, and compliance standards. Lead efforts in security monitoring and incident response. Support security risk management and compliance with standards like PCI, GDPR, ISO. Perform other duties as assigned. Qualifications 10+ years of experience in information security, including vulnerability assessment, incident response, and audits. 5+ years working with business leadership and … in a complex environment. Knowledge of security technologies and concepts such as firewalls, intrusion detection, encryption, cloud security, and risk assessment. 3+ years in security compliance and audit support (PCIDSS, GDPR, etc.). Bachelor’s degree in IT or Security, with relevant certifications like CISSP, CRISC, or CISA. Additional notes Ideal candidates are self-starters with multi More ❯
Ensure internal security standards and requirements are met and work with the team to identify gaps and design the required action plan. Maintain compliance with the external regulations (e.g., PCIDSS, PSD2, Swift, GDPR) including working with external auditors to ensure controls are met and all security recommendations are implemented within the required time. Evaluate and provide security … proxy servers and AV etc. Prior DevOps or hands-on administrative experience is highly desirable. CCSP or AWS Certified Security Specialist, or other related cloud security certifications. Knowledge of PCIDSS, GDPR, and SWIFT CISSP and GIAC qualifications Competitive salary and bonus. 23 days holiday (increasing with service 1 day per annum, capped at 28 days) plus birthday … Ensure internal security standards and requirements are met and work with the team to identify gaps and design the required action plan. Maintain compliance with the external regulations (e.g., PCIDSS, PSD2, Swift, GDPR) including working with external auditors to ensure controls are met and all security recommendations are implemented within the required time. Evaluate and provide securityMore ❯
that may include but not limited to; Business Leaders, IT/Security Leaders, Legal etc. Collaborate with businesses to ensure compliance with industry standards and regulations, such as ISO27001, PCI-DSS, GDPR etc. Qualifications: Degree or Diploma in Computer Science, Information Security, or a related field. At least 5 years of experience in a security engineering role. Strong … knowledge of security technologies and concepts, such as Identity Management, SIEM, Encryption, Vulnerability Management, Secure Coding Standards etc. Familiarity with compliance standards and regulations, such as ISO27001, PCI-DSS, and GDPR. Experience with security assessments, penetration testing, and incident response. Excellent communication and collaboration skills, with the ability to work effectively with stakeholders at all levels of the More ❯
Collaborate with penetration testing and vulnerability scanning teams to validate vulnerabilities and verify implemented remediations. Work with GRC and compliance teams to align network configurations with regulatory frameworks like PCI-DSS, ISO 27001 , etc. Preferred Skills and Experience: Extensive hands-on experience in securing hybrid infrastructure (on-prem + cloud). Strong understanding of network protocols, firewalls, IDS More ❯
Information Security Management System), ensuring it remains fit for purpose as we scale. Maintain and advance compliance across ISO 27001, SOC2, Cyber Essentials, GDPR, and any emerging frameworks (e.g. PCIDSS, AI governance), ensuring we are audit-ready. Identify, assess, and mitigate security risks across infrastructure, systems, and vendors - flagging and resolving vulnerabilities before they become problems. Own … Essential Experience as an InfoSec expert - ideally within a high-growth SaaS or B2B tech environment. Strong working knowledge of compliance frameworks (e.g. ISO 27001, SOC2Cyber Essentials) and ideally PCI DSS. Working knowledge of GDPR, with experience supporting or overseeing data protection practices. Hands-on experience with security tooling and SaaS security systems. Confident in managing compliance audits, access More ❯
required Strong analytical, organizational, and problem-solving skills are required Must be highly flexible and adaptable to change Experience in a highly regulated environment, specific experience with FFIEC, OSFI, PCI-DSS, SOX preferred Skills/Qualifications: Proven work experience. Information Security Certification Working with Us: As a Northern Trust partner, greater achievements await. You will be part of More ❯
London, England, United Kingdom Hybrid / WFH Options
Coalfire
account relationships and identifies upsell and cross sell opportunities and escalates to sales. Travel 25-50%. Ability to be successful when working remotely. What You'll Bring Current PCI-QSA certification preferred (will consider former QSA). One of the following Information Security certifications required: CISSP, CISM or ISO 27001 Lead Implementer. One of the following Audit certifications … ISMS Auditor or higher, or ISO 27001 Lead Auditor. Bachelor's degree (four-year college or university) or equivalent combination of education and work experience. Strong knowledge of the PCI-DSSsecurity standards. 5+ years of experience in an IT Security Audit and/or Compliance role. Experience preparing and presenting Tier 1 and Tier 2 Reports on More ❯
account relationships and identifies upsell and cross sell opportunities and escalates to sales. Travel 25-50%. Ability to be successful when working remotely. What You'll Bring Current PCI-QSA certification preferred (will consider former QSA) One of the following Information Security certifications required: CISSP, CISM or ISO 27001 Lead Implementer. One of the following Audit certifications required … ISMS Auditor or higher, or ISO 27001 Lead Auditor. Bachelor's degree (four-year college or university) or equivalent combination of education and work experience. Strong knowledge of the PCI-DSSsecurity standards. 5+ years of experience in an IT Security Audit and/or Compliance role. Experience preparing and presenting Tier 1 and Tier 2 Reports on More ❯
M5, Salford, Greater Manchester, United Kingdom Hybrid / WFH Options
AJ Bell Business Solutions Limited
risk management tools and techniques Experience of security governance and compliance, ideally gained in financial services organisations Demonstrable understanding of Information Security control standards and frameworks e.g. ISO27001, NIST, PCIDSS Awareness and understanding of the Information Security threat landscape Deep understanding of Information Security solutions and controls Experience of Cloud security solutions and standards is highly advantageous More ❯
Manchester, Lancashire, England, United Kingdom Hybrid / WFH Options
AJ Bell
risk management tools and techniques Experience of security governance and compliance, ideally gained in financial services organisations Demonstrable understanding of Information Security control standards and frameworks e.g. ISO27001, NIST, PCIDSS Awareness and understanding of the Information Security threat landscape Deep understanding of Information Security solutions and controls Experience of Cloud security solutions and standards is highly advantageous More ❯
Centers, we offer a complete end-to-end security services covering our clients’ security from every angle. Our services include Managed Security, Cyber Security Testing, Incident Response, Security Integration, PCI Compliance and Cyber Risk & Assurance services. What sets Integrity360 apart is our excellent team of people that drive the business forward. The company was founded with a focus on More ❯
Centers, we offer a complete end-to-end security services covering our clients’ security from every angle. Our services include Managed Security, Cyber Security Testing, Incident Response, Security Integration, PCI Compliance and Cyber Risk & Assurance services. What sets Integrity360 apart is our excellent team of people that drive the business forward. The company was founded with a focus on More ❯