Security Posture Jobs in the UK

26 to 50 of 146 Security Posture Jobs in the UK

SC Cleared - Azure Security Engineer

Derby, Derbyshire, East Midlands, United Kingdom
Hybrid / WFH Options
ECS
SC Cleared Azure Security Engineer (Inside IR35) Our technology client is looking for a highly skilled and motivated Azure Security Engineer to join their team on a 6-month, hybrid contract. This is an exciting opportunity to work with a leading organisation from our Derby office and remotely. You will be instrumental in designing, implementing, and managing robust … security solutions across their Azure platform. Key Responsibilities Design, implement, and maintain security controls and policies within the Azure environment. Monitor and respond to security incidents and threats using Azure Sentinel and other security tools. Conduct security audits and vulnerability assessments to identify and mitigate risks. Collaborate with development and operations teams to embed security best practices throughout the software development lifecycle. Manage and configure Azure security services, including Azure Active Directory, Azure Policy, and Azure Security Center. Produce detailed documentation and reports on security posture and incident response. Candidate Requirements Active SC (Security Check) clearance is essential. Must be a UK National. Active Microsoft Azure Security certification More ❯
Employment Type: Contract, Work From Home
Rate: £450 - £500 per day
Posted:

SC Cleared - Azure Security Engineer

Bristol, Avon, South West, United Kingdom
Hybrid / WFH Options
ECS
SC Cleared Azure Security Engineer (Inside IR35) Our technology client is looking for a highly skilled and motivated Azure Security Engineer to join their team on a 6-month, hybrid contract. This is an exciting opportunity to work with a leading organisation from our Derby office and remotely. You will be instrumental in designing, implementing, and managing robust … security solutions across their Azure platform. Key Responsibilities Design, implement, and maintain security controls and policies within the Azure environment. Monitor and respond to security incidents and threats using Azure Sentinel and other security tools. Conduct security audits and vulnerability assessments to identify and mitigate risks. Collaborate with development and operations teams to embed security best practices throughout the software development lifecycle. Manage and configure Azure security services, including Azure Active Directory, Azure Policy, and Azure Security Center. Produce detailed documentation and reports on security posture and incident response. Candidate Requirements Active SC (Security Check) clearance is essential. Must be a UK National. Active Microsoft Azure Security certification More ❯
Employment Type: Contract, Work From Home
Rate: £450 - £500 per day
Posted:

Cyber Security Consultant - Risk Consultant MOD / SC

Bristol, Avon, England, United Kingdom
Hybrid / WFH Options
Sanderson
Cyber Security Consultant - Risk Consultant (MOD/Defence - SC) Location: Remote/Southwest on-site presence Contract Type: Permanent & Full-time Salary: Competitive + Benefits About the Role As a Cyber Security Consultant, you will play a pivotal role in delivering Secure by Design risk and security assurance services within MOD and Public Sector environments. You'll … collaborate with multi-disciplinary teams to define and implement security risk assessments and best practice solutions, ensuring alignment with business risk appetites and transformation goals. You'll be part of a knowledge-sharing culture, working alongside expert peers in Secure Architecture and Risk Planning. Key Responsibilities Deliver Secure by Design risk and security assurance functions within MOD/… Public Sector. Lead and advise on risk management frameworks, ISMS, and Enterprise Security Risk Management. Facilitate security and risk workshops with Authority departments. Produce clear reporting on vulnerabilities, risks, controls, and treatment activities. Provide pragmatic remediation and risk management guidance. Support secure design across technology platforms including cloud infrastructures. Experience Required The successful candidate will possess proven experience More ❯
Employment Type: Full-Time
Salary: Competitive salary
Posted:

Cyber and Information Security Lead

Bath, Somerset, United Kingdom
YT Technologies
Cyber and Information Security Lead Bath 75,000 - 85,000 Our client is looking for an ambitious Cyber and Information Security Lead to join their growing SaaS Business. They are seeking a conscientious, personable, and knowledgeable leader, ideally with commercial experience in the public sector. You may already be operating at the CISO level in a small company … or have ambitions to reach the next level in your career. Key Responsibilities: Strategy and Compliance: Design and implement a comprehensive security strategy and roadmap, ensuring our security posture meets the requirements of the NHS Data Security and Protection Toolkit (DSPT), Cyber Essentials Plus, ISO 27001:2022, and other relevant frameworks. Risk Management: Lead the information … security risk management program, including the identification, assessment, mitigation, and monitoring of risks across all systems and operations. Policy and Governance: Support and oversee the creation and enforcement of security policies, standards, and procedures. Incident Response: Develop, implement, and manage the security incident response plan. Leadership: Provide strong leadership and mentorship to the governance, risk, and compliance More ❯
Employment Type: Permanent
Salary: GBP 75,000 - 85,000 Annual
Posted:

Cyber and Information Security Lead

BA1, Bath, Bath and North East Somerset, Somerset, United Kingdom
YT Technologies
Cyber and Information Security Lead Bath £75,000 - £85,000 Our client is looking for an ambitious Cyber and Information Security Lead to join their growing SaaS Business. They are seeking a conscientious, personable, and knowledgeable leader, ideally with commercial experience in the public sector. You may already be operating at the CISO level in a small company … or have ambitions to reach the next level in your career. Key Responsibilities: Strategy and Compliance: Design and implement a comprehensive security strategy and roadmap, ensuring our security posture meets the requirements of the NHS Data Security and Protection Toolkit (DSPT), Cyber Essentials Plus, ISO 27001:2022, and other relevant frameworks. Risk Management: Lead the information … security risk management program, including the identification, assessment, mitigation, and monitoring of risks across all systems and operations. Policy and Governance: Support and oversee the creation and enforcement of security policies, standards, and procedures. Incident Response: Develop, implement, and manage the security incident response plan. Leadership: Provide strong leadership and mentorship to the governance, risk, and compliance More ❯
Employment Type: Permanent
Salary: £75000 - £85000/annum
Posted:

Cyber Security Engineer

Milton Keynes, Buckinghamshire, United Kingdom
Hybrid / WFH Options
Tria
Cyber Security Engineer (DevSecOps) Automation/Cloud/Salesforce Rate: Circa £600/day (Outside IR35) Length: 12 months Location: Milton Keynes/Initially Hybrid (Flexibility) We're working with a well-known insurance company currently undergoing a company-wide transformation programme. As the organisation moves from on-premise to a cloud-based environment, the need for an improved … security posture is mission critical. As the Cyber Security Engineer, you'll be focused primarily on hands-on engineering work, with some strategic responsibilities. You'll be joining a small but growing security team, reporting into the InfoSec Manager and Head of Technology. Your role will cover areas such as: Setting up a DevSecOps practice - embedding … security within DevOps and automation processes. Embedding security into the organisation's new cloud-based SaaS platform (Salesforce). Improving the use of Elastic (monitoring & security tool). Have worked in a PRA or Insurance regulated background Data security Establishing security policies. risk assessments and mitigation planning - documentation and write ups for board presentations write More ❯
Employment Type: Contract
Rate: £575 - £625/day Outside IR35
Posted:

Cyber Security Engineer

Bletchley, Buckinghamshire, United Kingdom
Hybrid / WFH Options
Tria
Cyber Security Engineer (DevSecOps) Automation/Cloud/Salesforce Rate: Circa 600/day (Outside IR35) Length: 12 months Location: Milton Keynes/Initially Hybrid (Flexibility) We're working with a well-known insurance company currently undergoing a company-wide transformation programme. As the organisation moves from on-premise to a cloud-based environment, the need for an improved … security posture is mission critical. As the Cyber Security Engineer, you'll be focused primarily on hands-on engineering work, with some strategic responsibilities. You'll be joining a small but growing security team, reporting into the InfoSec Manager and Head of Technology. Your role will cover areas such as: Setting up a DevSecOps practice - embedding … security within DevOps and automation processes. Embedding security into the organisation's new cloud-based SaaS platform (Salesforce). Improving the use of Elastic (monitoring & security tool). Have worked in a PRA or Insurance regulated background Data security Establishing security policies. risk assessments and mitigation planning - documentation and write ups for board presentations write More ❯
Employment Type: Contract
Rate: GBP 575 - 625 Daily
Posted:

GRC Consultant (MOD / SC)

Bristol, Avon, South West, United Kingdom
Hybrid / WFH Options
Sanderson Government and Defence
Governance, Risk & Compliance (MOD/Defence - SC) Location: Remote/Southwest on-site presence Contract Type: Permanent & Full-time Salary: Competitive + Benefits About the Role As a Cyber Security Consultant, you will play a pivotal role in delivering Secure by Design risk and security assurance services within MOD and Public Sector environments. You'll collaborate with multi … disciplinary teams to define and implement security risk assessments and best practice solutions, ensuring alignment with business risk appetites and transformation goals. You'll be part of a knowledge-sharing culture, working alongside expert peers in Secure Architecture and Risk Planning. Key Responsibilities Deliver Secure by Design risk and security assurance functions within MOD/Public Sector. Lead … and advise on risk management frameworks, ISMS, and Enterprise Security Risk Management. Facilitate security and risk workshops with Authority departments. Produce clear reporting on vulnerabilities, risks, controls, and treatment activities. Provide pragmatic remediation and risk management guidance. Support secure design across technology platforms including cloud infrastructures. Experience Required The successful candidate will possess proven experience in cybersecurity, security More ❯
Employment Type: Permanent
Posted:

Senior Cyber Security Analyst

Leeds / Exeter, United Kingdom
NHS England
Job summary The Senior Security Analyst (Ops) sits within the Protective Monitoring function of the Cyber Security Operations Centre (CSOC). The CSOC is made up of Protective Monitoring, Incident Management, Threat Operations, Engineering and Consultancy. The role is a Tier 3 analyst in the XDR Protective Monitoring Sub team. Cyber Operations purpose is to support safe care … be cyber resilient, supporting Transformation Directorate's purpose of delivering the best care and outcomes for the NHS. The Cyber Operations sub-directorate consists of 4 operational areas: Cyber Security Operations Unit (CSOU) Cyber Delivery Unit (CDU). Cyber Improvement Programme. Chief Information Security Office Function (CISO) The post of Senior Security Analyst has been awarded a … additional monthly RRP payment equal to 20% per annum. Please be aware that RRP is non contractual and subject to review. Main duties of the job As a Senior Security Analyst Ops you will: Provide Tier 3 security analytics and incident response for service-specific security monitoring. Deputise for Security Lead (Analyst) in their absence. Act More ❯
Employment Type: Fixed-Term
Salary: £66828.00 - £75218.00 a year
Posted:

Head of Cyber Security

Southall, United Kingdom
West London NHS Trust
Job summary We are looking for a Head of Cyber Security to deliver an industry leading security posture at West London NHS Trust. This is a critical role with responsibility for all aspects of Information Security. The role will ensure West London meets all public sector (particularly healthcare) compliance and standards while delivering exceptional operational performance across … the business. You will work with internal teams to help maintain a safe working environment for trust staff and patients. Protecting West London from security threats and cyber risk is of paramount importance for a public sector organisation delivering critical health services, this role is pivotal to upholding security standards. You will be responsible for staying up to … date with and delivering the Data Security and Protection Toolkit (DSPT) and other central requirements as they manifest. Reporting to the Director of Digital Services, the Head of Cyber Security is a key member of the digital senior management team. The Head of Cyber Security is responsible for the development, direction, management and delivery of information security More ❯
Employment Type: Permanent
Salary: £82906.00 - £94632.00 a year
Posted:

Regional Information Security Officer

Manchester, North West, United Kingdom
Hybrid / WFH Options
Tunstall Healthcare (UK) Ltd
We are currently recruiting for a Regional Information Security Officer , reporting to the Global Chief Information Security Officer (CISO), to oversee the information security function across the countries and Tunstall entities in their scope. This is an incredibly exciting time to join Tunstall as we embark on an exciting period of transformation. You will be joining a … recently created and growing global Information Security team within Tunstall and will be in a leadership position playing a key part in the success of this transformation. This role would be based at either our Manchester office or our Whitley site (DN14 0HR) working on a hybrid basis. We are flexible on number of days in the office. What … will you be doing in this role? As our Regional Security Officer , you will be responsible for implementing, running and overseeing the information security function across the countries and Tunstall entities in your scope, ensuring consistent and strong information security management in support of our business goals and in line with the global Information Security strategy More ❯
Employment Type: Permanent, Work From Home
Posted:

Security & Identity Consultant

London, United Kingdom
Hybrid / WFH Options
Henderson Scott
Position Available: Security & Identity Consultant Location: London (Hybrid, 2 days a week in office) Salary: £75,000 - £85,000 (DoE) + Bonus Experience needed: We are seeking a senior-level IAM and security professional with experience designing and implementing IAM frameworks, managing access governance, and improving security posture in large-scale environments. You'll combine hands … on technical skills with strategic leadership, working closely with senior security stakeholders. Experience with IAM tools (Saviynt preferred), authentication protocols, cloud security, and frameworks like RBAC and least privilege is highly desirable. About the role: We're seeking a senior-level Identity & Access Management (IAM) and Security specialist to take ownership of a global security roadmap … and design IAM frameworks that protect operations across multiple countries. This is not a generic IT security position, you'll act as the strategic bridge between senior security leadership and global technology teams, turning high-level security objectives into practical, scalable solutions. Key Responsibilities: Own and deliver the Global Technology Operations security roadmap Design & implement IAM More ❯
Employment Type: Permanent
Salary: £85,000
Posted:

Information Security Manager

Hampshire, England, United Kingdom
Plumstead Consulting
INFORMATION SECURITY MANAGER Our client is one of the largest owner-operator of rapid electric vehicle charging stations across the UK and Europe. They are award winners and are currently short listed for " The Best Place to Work" . They are growing and expanding at pace, are you up for the ride. They are seeking a highly skilled and … experienced Information Security Manager to join our team. You will work closely with the clients international IT team to lead the organisation’s cybersecurity and information risk agenda, including oversight of ISO 27001 and broader security governance across the business. Key Responsibilities : Maintain the Information Security Management System (ISMS) in compliance with ISO 27001:2022 standards. Establish … maintain and enforce security policies, procedures, and controls to mitigate information security risks and vulnerabilities. Conduct regular risk assessments and vulnerability assessments to identify potential threats and weaknesses in our information security infrastructure. Collaborate with internal stakeholders to ensure that information security requirements are integrated into business processes and systems. Lead internal audits and coordinate external More ❯
Posted:

Information Security Manager

southampton, south east england, united kingdom
Plumstead Consulting
INFORMATION SECURITY MANAGER Our client is one of the largest owner-operator of rapid electric vehicle charging stations across the UK and Europe. They are award winners and are currently short listed for " The Best Place to Work" . They are growing and expanding at pace, are you up for the ride. They are seeking a highly skilled and … experienced Information Security Manager to join our team. You will work closely with the clients international IT team to lead the organisation’s cybersecurity and information risk agenda, including oversight of ISO 27001 and broader security governance across the business. Key Responsibilities : Maintain the Information Security Management System (ISMS) in compliance with ISO 27001:2022 standards. Establish … maintain and enforce security policies, procedures, and controls to mitigate information security risks and vulnerabilities. Conduct regular risk assessments and vulnerability assessments to identify potential threats and weaknesses in our information security infrastructure. Collaborate with internal stakeholders to ensure that information security requirements are integrated into business processes and systems. Lead internal audits and coordinate external More ❯
Posted:

Network Security Engineer - Fully Remote

London, South East, England, United Kingdom
Hybrid / WFH Options
Revybe IT Recruitment Ltd
Network Security Engineer – Contract Location: Fully Remote Rate: Up to £450 per day (Inside IR35) Duration: 6 Months About the Role We are seeking an experienced Network Security Engineer to join on a 6-month contract . This is a fully remote role, offering an opportunity to work on high-impact security projects and infrastructure initiatives. You … ll be responsible for strengthening the security posture, managing critical systems, and mitigating risks across cloud and network environments. Key Responsibilities Manage, configure, and troubleshoot Palo Alto firewalls to ensure optimal security. Implement and maintain Azure security controls , including identity, networking, and monitoring solutions. Configure and manage Web Application Firewalls (WAFs) to protect against application-layer attacks. … Conduct security audits , review findings, and produce comprehensive reports. Proactively mitigate vulnerabilities identified in security reports and assessments. Collaborate with cross-functional teams to ensure security best practices are followed. Stay up to date with emerging threats, vulnerabilities, and industry trends. Skills & Experience Required Proven experience as a Network Security Engineer or similar role. Strong hands More ❯
Employment Type: Contractor
Rate: £400 - £450 per day
Posted:

Cyber Security Consultant

Sheffield, South Yorkshire, Yorkshire, United Kingdom
Hybrid / WFH Options
Context
Cyber Security Consultant Location: Remote Salary: 60k + excellent benefits Type: Permanent An excellent opportunity to join a renowned Microsoft Managed Security Service Provider (MSSP) as a Cyber Security Consultant with a strong emphasis on Governance, Risk & Compliance (GRC). The role involves working with enterprise clients to navigate complex regulatory requirements, enhance their security posture, and align with industry standards using the Microsoft security ecosystem. Responsibilities: Delivering GRC consultancy across varied client environments Conducting risk assessments, compliance audits, and control gap analyses Advising on security frameworks including ISO 27001, NIST, and GDPR Supporting implementation and optimisation of Microsoft Security solutions such as Defender, Sentinel, and Purview Translating compliance requirements into actionable … security controls Building and maintaining strong client relationships through strategic guidance and clear communication Experience required: Proven experience in cyber security consultancy with a GRC focus Strong understanding of security frameworks and regulatory obligations Familiarity with the Microsoft Security stack (Defender, Sentinel, Entra, etc.) Excellent communication and stakeholder engagement skills CISSP certification (or working towards) considered More ❯
Employment Type: Permanent, Work From Home
Salary: £60,000
Posted:

IT Security and Resilience Specialist

London Area, United Kingdom
Slaughter and May
ROLE OVERVIEW//We are recruiting for an experienced IT Security and Resilience Specialist to join the IT Infrastructure Engineering Team. Which is part of the Technology Department, and the wider Business Services function based at the firm’s head office in London. This is a hybrid role that is both hands-on and process-focused, ensuring that … our disaster recovery (DR), failover, and operational resilience capabilities are effective, tested, annually reviewed and continually improved. The Security & Resilience Specialist will plan and execute DR and resilience testing, drive remediation activities through to closure, and ensure that evidence and documentation meet client, regulatory, and audit standards. This is not a purely administrative role; the successful candidate will work … directly with infrastructure and security teams to fix issues as well as document them. KEY RESPONSIBILITIES//The key responsibilities of this role are set out below and there may be others which are not listed. You may be required on occasion to work outside our normal working hours of 9:30am to 5:30pm. Cyber Security More ❯
Posted:

IT Security and Resilience Specialist

City of London, London, United Kingdom
Slaughter and May
ROLE OVERVIEW//We are recruiting for an experienced IT Security and Resilience Specialist to join the IT Infrastructure Engineering Team. Which is part of the Technology Department, and the wider Business Services function based at the firm’s head office in London. This is a hybrid role that is both hands-on and process-focused, ensuring that … our disaster recovery (DR), failover, and operational resilience capabilities are effective, tested, annually reviewed and continually improved. The Security & Resilience Specialist will plan and execute DR and resilience testing, drive remediation activities through to closure, and ensure that evidence and documentation meet client, regulatory, and audit standards. This is not a purely administrative role; the successful candidate will work … directly with infrastructure and security teams to fix issues as well as document them. KEY RESPONSIBILITIES//The key responsibilities of this role are set out below and there may be others which are not listed. You may be required on occasion to work outside our normal working hours of 9:30am to 5:30pm. Cyber Security More ❯
Posted:

IT Security and Resilience Specialist

slough, south east england, united kingdom
Slaughter and May
ROLE OVERVIEW//We are recruiting for an experienced IT Security and Resilience Specialist to join the IT Infrastructure Engineering Team. Which is part of the Technology Department, and the wider Business Services function based at the firm’s head office in London. This is a hybrid role that is both hands-on and process-focused, ensuring that … our disaster recovery (DR), failover, and operational resilience capabilities are effective, tested, annually reviewed and continually improved. The Security & Resilience Specialist will plan and execute DR and resilience testing, drive remediation activities through to closure, and ensure that evidence and documentation meet client, regulatory, and audit standards. This is not a purely administrative role; the successful candidate will work … directly with infrastructure and security teams to fix issues as well as document them. KEY RESPONSIBILITIES//The key responsibilities of this role are set out below and there may be others which are not listed. You may be required on occasion to work outside our normal working hours of 9:30am to 5:30pm. Cyber Security More ❯
Posted:

IT Security and Resilience Specialist

london, south east england, united kingdom
Slaughter and May
ROLE OVERVIEW//We are recruiting for an experienced IT Security and Resilience Specialist to join the IT Infrastructure Engineering Team. Which is part of the Technology Department, and the wider Business Services function based at the firm’s head office in London. This is a hybrid role that is both hands-on and process-focused, ensuring that … our disaster recovery (DR), failover, and operational resilience capabilities are effective, tested, annually reviewed and continually improved. The Security & Resilience Specialist will plan and execute DR and resilience testing, drive remediation activities through to closure, and ensure that evidence and documentation meet client, regulatory, and audit standards. This is not a purely administrative role; the successful candidate will work … directly with infrastructure and security teams to fix issues as well as document them. KEY RESPONSIBILITIES//The key responsibilities of this role are set out below and there may be others which are not listed. You may be required on occasion to work outside our normal working hours of 9:30am to 5:30pm. Cyber Security More ❯
Posted:

IT Security and Resilience Specialist

london (city of london), south east england, united kingdom
Slaughter and May
ROLE OVERVIEW//We are recruiting for an experienced IT Security and Resilience Specialist to join the IT Infrastructure Engineering Team. Which is part of the Technology Department, and the wider Business Services function based at the firm’s head office in London. This is a hybrid role that is both hands-on and process-focused, ensuring that … our disaster recovery (DR), failover, and operational resilience capabilities are effective, tested, annually reviewed and continually improved. The Security & Resilience Specialist will plan and execute DR and resilience testing, drive remediation activities through to closure, and ensure that evidence and documentation meet client, regulatory, and audit standards. This is not a purely administrative role; the successful candidate will work … directly with infrastructure and security teams to fix issues as well as document them. KEY RESPONSIBILITIES//The key responsibilities of this role are set out below and there may be others which are not listed. You may be required on occasion to work outside our normal working hours of 9:30am to 5:30pm. Cyber Security More ❯
Posted:

Network and Security Support Engineer

Reading, Oxfordshire, United Kingdom
Pontoon
an inclusive environment that helps them thrive. Are you ready to make a significant impact in the Utilities sector? Our client is seeking a talented and dedicated Networks and Security Support Engineer to join their dynamic team. This is your chance to enhance the security posture of a vital infrastructure while working in a fast-paced environment. … If you have a passion for network security and a proactive approach to problem-solving, we want to hear from you! Role: Networks and Security Support Engineer Duration: 6 Months Location: Reading Rate: 325 per day (umbrella) What You'll Do: As a Networks and Security Support Engineer, you will play a crucial role in monitoring, managing … and responding to security incidents. Your responsibilities will include: Controlling communications at external and internal system boundaries using firewalls, Intrusion Protection Systems (IPS), and Security Information and Event Management (SIEM) tools. Updating and maintaining network access control (NAC) and antivirus solutions. Monitoring and reviewing logs to detect unauthorized access attempts and ensure compliance with security policies. Maintaining More ❯
Employment Type: Contract
Rate: GBP 325 Daily
Posted:

Network and Security Support Engineer

Reading, Berkshire, United Kingdom
Pontoon
an inclusive environment that helps them thrive. Are you ready to make a significant impact in the Utilities sector? Our client is seeking a talented and dedicated Networks and Security Support Engineer to join their dynamic team. This is your chance to enhance the security posture of a vital infrastructure while working in a fast-paced environment. … If you have a passion for network security and a proactive approach to problem-solving, we want to hear from you! Role: Networks and Security Support Engineer Duration: 6 Months Location: Reading Rate: £325 per day (umbrella) What You'll Do: As a Networks and Security Support Engineer, you will play a crucial role in monitoring, managing … and responding to security incidents. Your responsibilities will include: Controlling communications at external and internal system boundaries using firewalls, Intrusion Protection Systems (IPS), and Security Information and Event Management (SIEM) tools. Updating and maintaining network access control (NAC) and antivirus solutions. Monitoring and reviewing logs to detect unauthorized access attempts and ensure compliance with security policies. Maintaining More ❯
Employment Type: Contract
Rate: £325/day
Posted:

IT Security Manager

Manchester, North West, United Kingdom
Hybrid / WFH Options
Found Talent Limited
Are you a hands-on security professional with experience managing IT security operations and driving improvements across infrastructure and processes? This Manchester based organisation is looking for a Security Manager to take ownership of information security, risk management and ongoing security enhancement activities. Youll work closely with Senior Leadership, leading key initiatives to protect systems … data and users while helping shape the organisations security posture. What youll be doing: Managing day-to-day information security operations, including incident response and risk assessments Leading the development and implementation of security policies, standards, and controls Driving continuous improvement initiatives to strengthen cyber resilience Developing and supporting security roadmaps aligned with business needs Acting … as the security escalation point within the IT function Collaborating with internal teams and external suppliers to maintain compliance and security best practices Supporting audit and compliance activities related to Cyber Essentials, ISO27001 or similar What youll need: Proven experience managing IT security or information security functions Strong technical knowledge of Microsoft environments and security More ❯
Employment Type: Permanent, Work From Home
Posted:

Information Technology Governance Manager

London Area, United Kingdom
Prism Digital
Information Security GRC Manager | ISO27001, SOC2, Azure Security | Global Trading Platform £70–80k base + 10% bonus Hybrid in London Training budget for certifications + conference attendance Strong emphasis on professional autonomy and ethical leadership A newly created opportunity to lead and shape the GRC function of a global financial group at a pivotal time, supporting the secure … role with real scope: oversight of policy, third-party risk, architectural reviews, and cloud compliance. You'll work closely with the Head of InfoSec to maintain audit readiness, improve security posture, and influence business-wide awareness and accountability. What you’ll bring: 5+ years in InfoSec, IT Security or Ops within a regulated environment Certification required: CISSP … CISM, CRISC, or equivalent Strong knowledge of ISO27001:2022, SOC2 Type II, NIST CSF, PCI DSS, GDPR, DORA Confident with security risk assessments, audit responses, and policy governance Hands-on cloud security experience: ideally with Azure and the Shared Responsibility Model Comfort with complexity: able to analyze architecture, track metrics, and translate acronyms into actionable plans Mentorship ability More ❯
Posted:
Security Posture
10th Percentile
£40,870
25th Percentile
£48,165
Median
£70,000
75th Percentile
£87,500
90th Percentile
£97,500