and blueprints. What You'll Bring Prior and proven experience gained as a Security Architect or in a Technical Cyber Consultant/Engineer role. Expertise in: Security legislation (GDPR, PCIDSS, ICO) Frameworks (ISO 27001, NIST CSF, CIS Controls v8) HMG/NCSC policies and guidance Cloud security (AWS, Azure) Microservice architectures PKI, Cryptography, Privileged Access Management Certifications More ❯
London, South East, England, United Kingdom Hybrid / WFH Options
Sanderson
and blueprints. What You'll Bring Prior and proven experience gained as a Security Architect or in a Technical Cyber Consultant/Engineer role. Expertise in: Security legislation (GDPR, PCIDSS, ICO) Frameworks (ISO 27001, NIST CSF, CIS Controls v8) HMG/NCSC policies and guidance Cloud security (AWS, Azure) Microservice architectures PKI, Cryptography, Privileged Access Management Certifications More ❯
Edinburgh, Scotland, United Kingdom Hybrid / WFH Options
Kosli
scripting languages (Python, Go, YAML, JSON etc.) A background in financial services or similar regulated industries. Familiarity with compliance frameworks, and security requirements (e.g., ISO 27001, SOC 2, SOX, PCIDSS, FedRAMP, FFIEC, NYDFS, and SEC compliance requirements) A track record in consulting , solutions architecture , or technical coaching . Interest in technical sales and supporting go-to-market More ❯
broughton, central scotland, united kingdom Hybrid / WFH Options
Kosli
scripting languages (Python, Go, YAML, JSON etc.) A background in financial services or similar regulated industries. Familiarity with compliance frameworks, and security requirements (e.g., ISO 27001, SOC 2, SOX, PCIDSS, FedRAMP, FFIEC, NYDFS, and SEC compliance requirements) A track record in consulting , solutions architecture , or technical coaching . Interest in technical sales and supporting go-to-market More ❯
livingston, central scotland, united kingdom Hybrid / WFH Options
Kosli
scripting languages (Python, Go, YAML, JSON etc.) A background in financial services or similar regulated industries. Familiarity with compliance frameworks, and security requirements (e.g., ISO 27001, SOC 2, SOX, PCIDSS, FedRAMP, FFIEC, NYDFS, and SEC compliance requirements) A track record in consulting , solutions architecture , or technical coaching . Interest in technical sales and supporting go-to-market More ❯
dunfermline, north east scotland, united kingdom Hybrid / WFH Options
Kosli
scripting languages (Python, Go, YAML, JSON etc.) A background in financial services or similar regulated industries. Familiarity with compliance frameworks, and security requirements (e.g., ISO 27001, SOC 2, SOX, PCIDSS, FedRAMP, FFIEC, NYDFS, and SEC compliance requirements) A track record in consulting , solutions architecture , or technical coaching . Interest in technical sales and supporting go-to-market More ❯
to cloud solutions. Strong analytical skills for complex technical issues. Proven ability in designing cyber security systems and governance. Familiar with tools and frameworks (e.g. NCSC, NIST, MITRE, GDPR, PCIDSS). Deep understanding of security controls (e.g. firewalls, SIEM, SOC, DLP). Proficient in leading and coordinating incident response. Effective at managing multiple priorities under pressure. Excellent More ❯
Bristol, Avon, England, United Kingdom Hybrid / WFH Options
Sanderson
Lead roles JSP440, JSP604/453 & JSP490 Working with system secure design MOD/GDS Secure by Design Principles Supplier Chain Assurance and Risks. Security related legislation (e.g. GDPR, PCIDSS, ICO requirements). Security Control Frameworks such as ISO 27001, NIST CSF and CIS Controls v8. HMG, NPSA and NCSC security policies, standards and guidance. Have experience More ❯
Meriden, Coventry, West Midlands, England, United Kingdom
Recruit4Talent
your existing skills while developing new ones, contributing to the strategic security objectives of the Company and ensuring adherence to critical accreditations, including ISO 27001, GDPR, Cyber Essentials, and PCI DSS. The successful candidate will demonstrate: Strong analytical skills with a meticulous approach to identifying and resolving security issues Excellent verbal and written communication abilities, with a knack for … expertise in information security Happy to travel occasionally to other sites as required. Desirable Experience: Demonstrable expertise in external audit, compliance, and security processes (ISO27001, GDPR, Cyber Essentials and PCIDSS) Microsoft accreditation or other recognised certifications (e.g. Microsoft Learning, CISA, CISM, CRISC, CCSP) would be very beneficial. Benefits: £25,000 - £35,000 salary depending on experience More ❯
No 1 The Boulevard, Shire Park, Welwyn Garden City, Hertfordshire, England Hybrid / WFH Options
PAYPOINT NETWORK LIMITED
managing identity and access controls, including MFA and privileged access Participate in security awareness training initiatives and phishing simulations Support compliance efforts with industry standards such as ISO 27001, PCI-DSS, and GDPR Document security processes, incidents, and remediation steps Collaborate with IT and development teams to ensure secure system configurations and deployments Training Why choose our Cyber More ❯
Bradford, West Yorkshire, Yorkshire, United Kingdom Hybrid / WFH Options
Yorkshire Water
information on the things you will be asked about can be found here Proven experience and ability in a Cyber Security role. Understanding of the CAF, NIST, ISO-27001, PCI-DSS, NIS, CIS and other information security frameworks & standards. Ability to interface smoothly with all stakeholders within the business, interpret requirements, explain simply & deliver appropriate solutions. Risk assessment More ❯
e.g., Okta, Azure AD, CyberArk), and frameworks (preferred). Proficiency in leading threat modelling sessions and using relevant tools (preferred). Familiarity with compliance frameworks like GDPR, CCPA, HIPAA, PCI-DSS, NIST and ISO 27001. Strong scripting and automation skills (e.g. Python, PowerShell, Bash). More ❯
finish. Bonus points if you bring: Experience with AppSec and DevSecOps. Hands-on knowledge of Azure, AWS, and/or Google Cloud. Familiarity with standards like ISO2700X, ISO31000, NIST800, PCI-DSS. Certifications such as CISSP, CCSP, CRISC, CISM, or SABSA. Why QBE? At My Best? At QBE, we want our people to feel rewarded and inspired to perform at More ❯
and Product teams to align on secure architecture and SDLC practices. Participate in incident response, forensic analysis, and post-incident remediation. Support compliance initiatives (SOC 2, ISO 27001, HIPAA, PCIDSS, GDPR) through technical guidance and documentation. Define and track KPIs to measure and improve security maturity across the organization. Required Qualifications 5+ years in application security, software … scale security practices. Hands-on experience with DevSecOps tools (GitHub Actions, Jenkins, GitLab CI, Terraform, etc.). Compliance & Governance Working knowledge of privacy and security regulations (GDPR, CCPA, HIPAA, PCI, SOC 2, ISO 27001). Experience supporting audits, risk assessments, and policy development. Preferred Qualifications Professional certifications (e.g., OSCP, CSSLP, CISSP, Security+). Contributions to open-source security projects More ❯
implement robust security measures, including AES-256 encryption for sensitive data, TLS for secure communication, and OAuth/JWT for authentication and authorisation. Ensure the platform is compliant with PCI-DSS, GDPR, and other relevant data protection regulations. Integrate multiple payment gateways (Capital Pay, Stripe, Paypal, Barclaycard, Adyen, Worldpay) using provided SDKs/APIs. Implement advanced fraud detection … or MySQL) and potentially NoSQL databases. • Has hands-on experience with RESTful API design and microservices architecture. • Demonstrates a strong understanding of security best practices and compliance standards like PCIDSS and GDPR. • Has experience integrating with third-party APIs, particularly payment gateways. • Has experience in NFC/RFID technology and Payment Networks integrations. • Is adept at problem-solving, has excellent More ❯
implement robust security measures, including AES-256 encryption for sensitive data, TLS for secure communication, and OAuth/JWT for authentication and authorisation. Ensure the platform is compliant with PCI-DSS, GDPR, and other relevant data protection regulations. Integrate multiple payment gateways (Capital Pay, Stripe, Paypal, Barclaycard, Adyen, Worldpay) using provided SDKs/APIs. Implement advanced fraud detection … or MySQL) and potentially NoSQL databases. • Has hands-on experience with RESTful API design and microservices architecture. • Demonstrates a strong understanding of security best practices and compliance standards like PCIDSS and GDPR. • Has experience integrating with third-party APIs, particularly payment gateways. • Has experience in NFC/RFID technology and Payment Networks integrations. • Is adept at problem-solving, has excellent More ❯
Reading, Berkshire, South East, United Kingdom Hybrid / WFH Options
Queen Square Recruitment Limited
and CI/CD pipelines. Advanced knowledge of TCP/IP, system administration, OSI model, and defense-in-depth. Familiarity with control frameworks and regulations (ISO 27001, NIST CSF, PCIDSS, CIS, CSA CCM, etc.). Demonstrated leadership and people management skills (mentoring, coaching, performance management). Strong interpersonal and executive communication skills, including C-level reporting. Experience More ❯
London, South East, England, United Kingdom Hybrid / WFH Options
Sanderson
experience to define and implement security architectures and solutions. Requirements: 5+ year's working in a Security Architect/technical role Recent MOD experience Security related legislation (e.g. GDPR, PCIDSS, ICO requirements) Security Control Frameworks such as ISO 27001, NIST CSF and CIS Controls v8 HMG and NCSC security policies, standards and guidance Cloud security including Amazon More ❯
You'll have a sound understanding of cyber and information security, including frameworks like NIST and ISO IEC 27002:202. It will be great if you also know about PCI-DSS V4.0 as well. Clear Communication -You'll be able to discuss these with technical and non-technical stakeholders in a way which is accessible and understood. Threat More ❯
Azure, AWS, Infrastructure as Code (Terraform, ARM), and DevOps methodologies. Familiarity with security architecture frameworks, including practical application of SABSA principles, alongside other regulatory and compliance standards (e.g. GDPR, PCIDSS, ISO). Strong awareness of risk management and embedded security throughout the solution lifecycle. Comfortable managing distributed teams and engaging effectively with senior technical and business stakeholders. More ❯
Chippenham, Wiltshire, England, United Kingdom Hybrid / WFH Options
CPS Group
development teams to ensure technical feasibility and timely delivery.Leading system testing, validation, and user acceptance testing (UAT).Providing post-implementation support, training, and workshops.Ensuring compliance with standards such as PCI, ISO27001, and GCRTS.Supporting continuous improvement initiatives and contributing to project planning.What we're looking for:Proven experience in systems analysis, ideally within a regulated environment.Strong experience managing multiple projects More ❯
Chippenham, Wiltshire, United Kingdom Hybrid / WFH Options
CPS Group (UK) Limited
ensure technical feasibility and timely delivery. Leading system testing, validation, and user acceptance testing (UAT). Providing post-implementation support, training, and workshops. Ensuring compliance with standards such as PCI, ISO27001, and GCRTS. Supporting continuous improvement initiatives and contributing to project planning. What we're looking for: Proven experience in systems analysis, ideally within a regulated environment. Strong experience More ❯
Croydon, London, United Kingdom Hybrid / WFH Options
Gold Group
to ensure security is embedded in all new and existing applications, systems, and network infrastructure * Risk Management & Compliance: Ensure compliance with industry regulations and data protection laws (e.g. GDPR, PCI-DSS) * Continuous Improvement: Stay informed of the latest cybersecurity threats, trends, and technologies, recommending and implementing improvements to enhance security defences * Change Management: Establish and lead a Change More ❯
South Croydon, Surrey, England, United Kingdom Hybrid / WFH Options
Gold Group Ltd
to ensure security is embedded in all new and existing applications, systems, and network infrastructure* Risk Management & Compliance: Ensure compliance with industry regulations and data protection laws (e.g. GDPR, PCI-DSS)* Continuous Improvement: Stay informed of the latest cybersecurity threats, trends, and technologies, recommending and implementing improvements to enhance security defences* Change Management: Establish and lead a Change More ❯
capabilities and infrastructure. - Implementation experience with enterprise security solutions such as SSO, Federation, WAF, IPS, Anti-DDOS, and SIEM and understanding architectural implications of meeting industry standards such as PCIDSS, ISO 27001, GDPR, and NIST frameworks and relevant regulatory frameworks such as Thailand's Personal Data Protection Act B.E. 2562 (2019), BOT Notifications SorNorSor 21/ More ❯