london, south east england, united kingdom Hybrid / WFH Options
VML
annual external audits required to support certification. Ensure data security and compliance with relevant legal, regulatory, contractual and policy requirements. Ensure process and requirements are met to support GDPR compliance and protection of personal data. Maintain and improve level of compliance with ISO 27001:2022 and Cyber Essentials Plus requirements. Work in partnership with development staff to embed More ❯
london, south east england, united kingdom Hybrid / WFH Options
Sonata One
Collaborate with IT and business units to ensure secure systems development and operations. Compliance & Risk Management Ensure compliance with regulatory and legal security requirements (e.g., ISO 27001, NIST, HIPAA, GDPR, SOX, etc.). Ensure compliance with applicable dataprotection laws (e.g., GDPR, CCPA, GLBA). Guide DataProtection Impact Assessments (DPIAs) for high-risk financial data … with data analytics platforms and financial data governance tooling. Strong working knowledge of financial compliance frameworks (e.g., GLBA, SOX, FFIEC CAT, NYDFS). Familiarity with privacy regulations (GDPR, CCPA) and best practices in data governance. Certifications such as CISSP, CISM, CISA, CRISC, or Certified DataProtection Officer (CDPO) are highly desirable. We offer a collaborative More ❯
london, south east england, united kingdom Hybrid / WFH Options
NTT DATA
consumption. Data Management and Governance: Strong knowledge of data management principles and best practices, including data governance frameworks. Experience with data security and compliance regulations (GDPR, CCPA, HIPAA, etc.) Leadership and Communication: Exceptional leadership skills to manage and guide a team of architects and technical experts. Excellent communication and interpersonal skills, with a proven ability to More ❯
london, south east england, united kingdom Hybrid / WFH Options
Applicable Limited
consumption. Data Management and Governance: Strong knowledge of data management principles and best practices, including data governance frameworks. Experience with data security and compliance regulations (GDPR, CCPA, HIPAA, etc.) Leadership and Communication: Exceptional leadership skills to manage and guide a team of architects and technical experts. Excellent communication and interpersonal skills, with a proven ability to More ❯
Loughton, Essex, South East, United Kingdom Hybrid / WFH Options
Profile 29
employment status. If you are utilising a work visa this must allow you to work in the UK unrestricted for at least the next 5 years. In accordance with GDPR by applying you give Profile 29 consent to use your data for recruitment purposes only (details of Profile 29s privacy policy can be found at: profile-29 .com /More ❯
london, south east england, united kingdom Hybrid / WFH Options
CLS Group
layers, particularly in risk management and security strategy development Lead efforts to assess and mature security practices across the enterprise Stay abreast of industry trends, frameworks, and regulations (e.g., GDPR, ISO 27001 / 2, SANS Top 20 Critical Security Controls, NIST CSF, SP 800-53, PFMI, CPMI ISOCO and FFIEC handbook, SABSA) to ensure the organization is proactive in addressing More ❯
london, south east england, united kingdom Hybrid / WFH Options
Endava
NFRs) into technical designs. Lead on data architecture direction—covering modelling, database strategy, data flows, and integration patterns. Guide data governance, retention, and compliance practices (e.g., GDPR, ISO standards). Technical Design & Development Oversight Define storage, publishing, and metadata strategies to support analytics and operational goals. Shape database schemas, data warehouse strategies, and ensure dataMore ❯
london, south east england, united kingdom Hybrid / WFH Options
Aztec
or Fintech environment. Educated to degree level in a relevant subject and / or hold a technology professional qualification. Deep technical knowledge of technology related regulation (e.g., DORA, GDPR, EU AI Act). Experience with third-party and outsourcing risk, AI and digital transformation risks. Experience of developing and operating Technology Risk Management Frameworks such as ITIL, COBIT More ❯
Bexhill-On-Sea, East Sussex, South East, United Kingdom Hybrid / WFH Options
Hastings Direct
security capabilities, threats, vulnerabilities, and industry trends will be essential. You will also support audit, compliance, and regulatory requirements, ensuring adherence to standards such as ISO 27001, NIST, and GDPR, and safeguarding the integrity and confidentiality of our systems and data. Skills we would love you to have Proven experience as a Security Architect or similar role with a focus More ❯
london, south east england, united kingdom Hybrid / WFH Options
Hastings Direct
security capabilities, threats, vulnerabilities, and industry trends will be essential. You will also support audit, compliance, and regulatory requirements, ensuring adherence to standards such as ISO 27001, NIST, and GDPR, and safeguarding the integrity and confidentiality of our systems and data. Skills we would love you to have Proven experience as a Security Architect or similar role with a focus More ❯
Manchester, Lancashire, United Kingdom Hybrid / WFH Options
Gordons
a range of technology platforms Strong logical reasoning and problem-solving abilities 2:1 degree in an IT or Science, Technology, Engineering or Mathematics (STEM) subject desired Knowledge of GDPR and DataProtection Knowledge of ISO27001 and other best practice security management frameworks Experience in third party security auditing Knowledge of cloud security controls Knowledge of the legal More ❯
Manchester, Lancashire, United Kingdom Hybrid / WFH Options
Tussell Limited
a range of technology platforms Strong logical reasoning and problem-solving abilities 2:1 degree in an IT or Science, Technology, Engineering or Mathematics (STEM) subject desired Knowledge of GDPR and DataProtection Knowledge of ISO27001 and other best practice security management frameworks Experience in third party security auditing Knowledge of cloud security controls Knowledge of the legal More ❯
implement secure and scalable digital solutions Strong communication and stakeholder management skills Experience in leading and mentoring technical teams Knowledge of data privacy and protection regulations (e.g. GDPR) Understanding of enterprise architecture frameworks (e.g. TOGAF) Familiarity with agile and DevOps practices in a public sector context Proficiency in event-driven architecture and its application in digital solutions Proven More ❯
Manchester, Lancashire, United Kingdom Hybrid / WFH Options
Deloitte LLP
implement secure and scalable digital solutions Strong communication and stakeholder management skills Experience in leading and mentoring technical teams Knowledge of data privacy and protection regulations (e.g. GDPR) Understanding of enterprise architecture frameworks (e.g. TOGAF) Familiarity with agile and DevOps practices in a public sector context Proficiency in event-driven architecture and its application in digital solutions Proven More ❯
Newcastle Upon Tyne, Tyne And Wear, United Kingdom Hybrid / WFH Options
Deloitte LLP
implement secure and scalable digital solutions Strong communication and stakeholder management skills Experience in leading and mentoring technical teams Knowledge of data privacy and protection regulations (e.g. GDPR) Understanding of enterprise architecture frameworks (e.g. TOGAF) Familiarity with agile and DevOps practices in a public sector context Proficiency in event-driven architecture and its application in digital solutions Proven More ❯
Southampton, Hampshire, United Kingdom Hybrid / WFH Options
NICE
all about? The Information Security Analyst is primarily responsible for ensuring compliance with information security frameworks such as Cyber Essentials, Cyber Essentials Plus, ISO 27001, ISO 27701, ISO 42001, GDPR, and DORA. This role focuses on internal audits, regulatory compliance, and readiness for external audits while also contributing to Cybersecurity Operations Center (CSOC) activities, including incident monitoring and response. How … in scoping appropriate evidence and preparing for external audits. Gap Assessments: Facilitate and / or conduct internal gap assessments and audit readiness evaluations for frameworks such as ISO 27001, GDPR, and DORA. Framework Tracking: Monitor updates to Cyber Essentials, ISO, and regulatory frameworks and ensure internal alignment. Control Documentation: Develop and maintain control narratives, walkthroughs, and documentation of compliance processes. … vulnerabilities in coordination with IT and Security Operations teams. Have you got what it takes? Strong expertise in audit and compliance frameworks, including ISO 27001, ISO 27701, ISO 42001, GDPR, DORA, Cyber Essentials, and Cyber Essentials Plus. Familiarity with CSOC tools such as Rapid7 InsightIDR or other SIEM solutions. Hands-on experience in internal and external audits, compliance assessments, and More ❯
Northampton, Northamptonshire, England, United Kingdom Hybrid / WFH Options
PLANET RECRUITMENT SERVICES LTD
Perform threat hunting and behavioural analysis using threat intelligence and analytics tools. Maintain and tune security tools, detection rules, and automation scripts. Support compliance initiatives (e.g., ISO 27001, NIST, GDPR). Document incidents, procedures, and technical findings clearly and accurately. Ensure timely management and resolution of tickets, both internal / partner and third-party suppliers. Remain up to date with More ❯
London, South East, England, United Kingdom Hybrid / WFH Options
Xpertise Recruitment Ltd
CI / CD pipelines and DevOps operations Manage and interpret insights from cloud-native security tools (e.g., GuardDuty, Azure Defender) Ensure compliance with frameworks such as ISO 27001, NIST, GDPR, HIPAA Contribute to architectural design reviews, cloud migration planning, and documentation Support executive reporting by producing clear metrics for cyber risk posture Continuously track and respond to emerging threats and More ❯
Basingstoke, Hampshire, United Kingdom Hybrid / WFH Options
InstaVolt
external vendors, MSPs, and technology partners to ensure cost-effective and reliable service delivery. Collaborate with InfoSec and Legal teams to ensure compliance with relevant regulations (e.g., ISO 27001, GDPR). Lead incident response and disaster recovery planning / testing for internal platforms and operational IT. Requirements Needed: Bachelor's degree in information technology, Computer Science, or related experience. 10+ More ❯
Cleveland, England, United Kingdom Hybrid / WFH Options
Reed
proactive and detail-focused Compliance Analyst to support our information assurance and dataprotection efforts. This is a great opportunity for someone with a solid foundation in GDPR and data governance who’s ready to take ownership of compliance processes and contribute to wider information security initiatives. You’ll work closely with teams across IT, HR, and … practices meet legal and regulatory standards, while helping to embed a culture of privacy and security across the organisation. What You’ll Be Doing Monitor and support compliance with GDPR and other dataprotection regulations. Conduct and document DataProtection Impact Assessments (DPIAs) for new systems and processes. Maintain and update the Register of Processing Activities … subject access requests (DSARs) and regulatory queries. What We’re Looking For Experience in a compliance, dataprotection, or information governance role. Good working knowledge of GDPR and UK dataprotection laws. Familiarity with DPIAs , ROPA, and data classification frameworks. Understanding of basic information security principles. Strong communication and documentation skills. A collaborative approach More ❯
Middlesbrough, North Yorkshire, North East, United Kingdom Hybrid / WFH Options
Reed Technology
proactive and detail-focused Compliance Analyst to support our information assurance and dataprotection efforts. This is a great opportunity for someone with a solid foundation in GDPR and data governance who's ready to take ownership of compliance processes and contribute to wider information security initiatives. You'll work closely with teams across IT, HR, and … practices meet legal and regulatory standards, while helping to embed a culture of privacy and security across the organisation. What You'll Be Doing Monitor and support compliance with GDPR and other dataprotection regulations. Conduct and document DataProtection Impact Assessments (DPIAs) for new systems and processes. Maintain and update the Register of Processing Activities … subject access requests (DSARs) and regulatory queries. What We're Looking For Experience in a compliance, dataprotection, or information governance role. Good working knowledge of GDPR and UK dataprotection laws. Familiarity with DPIAs , ROPA, and data classification frameworks. Understanding of basic information security principles. Strong communication and documentation skills. A collaborative approach More ❯
london, south east england, united kingdom Hybrid / WFH Options
Scope AT Limited
implementation of designed solutions, ensuring adherence to the architecture and best practices. Security and Compliance : Ensure that all solutions comply with internal security standards and relevant regulatory requirements (eg, GDPR, HIPAA), including data privacy, security, and disaster recovery considerations. Senior Solution Architect - Perm - Engineering background, APIs, Devops, AWS, SQL, TOGAF Solution Design and Architecture : Develop and document high-level … implementation of designed solutions, ensuring adherence to the architecture and best practices. Security and Compliance : Ensure that all solutions comply with internal security standards and relevant regulatory requirements (eg, GDPR, HIPAA), including data privacy, security, and disaster recovery considerations. Qualifications Experience : Proven experience designing complex enterprise-level solutions across multiple platforms and technologies. Demonstrated expertise in architecting cloud-based More ❯
OS . Knowledge of network perimeter security, including firewalls, WAF, anti-virus, and O365 compliance & security centre . Familiarity with NIST (CSF Framework 2.0), ISO 27001, PCI-DSS, and GDPR . Experience operating and managing SIEM solutions , vulnerability management tools, and secure configuration tooling. Ability to use PowerShell and Python scripting for security automation. Experience working in or with agile More ❯
Reading, Berkshire, South East, United Kingdom Hybrid / WFH Options
LA International Computer Consultants Ltd
are taken to block further attacks. 5. Compliance and Risk Management: o Ensure all incident response activities align with industry standards, regulations, and best practices (e.g., NIST, ISO 27001, GDPR, HIPAA). o Work with legal and compliance teams to manage incidents within the scope of data privacy laws and regulations. Key Skills & Experience: o Proficient in incident response More ❯
london, south east england, united kingdom Hybrid / WFH Options
CLS-Group
layers, particularly in risk management and security strategy development Lead efforts to assess and mature security practices across the enterprise Stay abreast of industry trends, frameworks, and regulations (e.g., GDPR, ISO 27001 / 2, SANS Top 20 Critical Security Controls, NIST CSF, SP 800-53, PFMI, CPMI ISOCO and FFIEC handbook, SABSA) to ensure the organization is proactive in addressing More ❯