Birmingham, England, United Kingdom Hybrid / WFH Options
Crimson
IT Security Engineer – Risk /ISO27001 – Birmingham Hybrid working 1-2 days per week onsite – Salary up to £50k IT Security Engineer required for a leading client based in Birmingham. My client is seeking a IT Security Engineer to come on board to oversees … of security principles, methodologies, and frameworks such as ISO27001 and Cyber Essentials. Extensive knowledge of risk and threat analysis / mitigation according to industry standards. Proven experience in developing IT security processes and procedures. Accountable for continuously enhancing the client’s IT Risk and … leadership for all IT security initiatives, collaborating closely with both internal and external stakeholders. Oversees the technical information security landscape, ensuring compliance with ISO27001 standards and maintaining robust frameworks, methodologies, and practices to ensure secure and dependable IT services. Effectively monitors and manages IT risk more »
Incident Response: Lead the response to security incidents, ensuring we meet KPIs and take corrective action. Compliance: Ensure our security practices align with ISO27001, NIST CSF, and other regulatory requirements. Team Leadership: Manage, mentor, and support the security team. Set goals and drive the team … overall security strategy. What We’re Looking For: Essential: Degree or equivalent experience in Cyber Risk Management and Information Security. Strong knowledge of ISO27001 and NIST Cybersecurity Framework . Experience in Data Loss Prevention and … Microsoft Purview . Proven risk analysis and decision-making skills. Desirable: CISSP, CRISC, or CISM certifications . Knowledge of GDPR , PCI-DSS , and cloud / hybrid enterprise networks . Experience managing audits, third parties, and working with GRC tools. more »
Cardiff, Wales, United Kingdom Hybrid / WFH Options
Trident Search
senior management. Policy and Framework Development: Develop and enhance cybersecurity risk management policies and frameworks that align with industry best practices, including NIST, ISO27001, and other relevant standards. Essential Skills and Experience: Proven experience in cybersecurity risk management , with a strong technical understanding of cyber … tolerance levels. Solid experience in third-party risk management and supplier onboarding processes. A strong understanding of cybersecurity frameworks and standards (e.g., NIST, ISO27001). Knowledge and experience in conducting cyber risk assessments and implementing effective mitigation strategies. Ability to work with cross-functional teams more »
Birmingham, England, United Kingdom Hybrid / WFH Options
Xpertise Recruitment
IT Security & Risk Engineer - Birmingham (Hybrid) - £49k Risk | Roadmap | ISO27001 | Incident Response | Cyber Essentials | Vulnerabilities Salary: £49k Location: Birmingham (Hybrid) Are you an IT security professional, looking for a new challenge in your career? Do you have demonstrable experience of working in alignment with ISO:27001 … oversee security policies and controls frameworks. Key Responsibilities Work within the Risk and Security team driving continuous improvement Ensure the environment aligns with ISO:27001 requirements Monitor and manage risks, conducting risk assessments and threat modelling Implement a proactive defence strategy, maintaining awareness of vulnerabilities Assist … products, capabilities and solutions Detailed understanding of security methodologies and frameworks Capable of effectively communicating at all levels of an organisation Desired experience with: ISO27001 Cyber Essentials Risk Analysis Threat Mitigation Developing security processes Security operations Cyber resilience Leading a security team If you would like to be considered for more »
Birmingham, England, United Kingdom Hybrid / WFH Options
Xpertise Recruitment
IT Security & Risk Manager - Birmingham (Hybrid) - £60k Risk | Roadmap | ISO27001 | Incident Response | Cyber Essentials | Vulnerabilities Salary: £60k Location: Birmingham (Hybrid) Are you an experienced IT security manager, looking for a new challenge in your career? Do you have demonstrable experience of aligning security environments with ISO:27001 … to oversee security policies and controls frameworks. Key Responsibilities Manage the Risk and Security team driving continuous improvement Ensure the environment aligns with ISO:27001 requirements Monitor and manage risks, conducting risk assessments and threat modelling Implement a proactive defence strategy, maintaining awareness of vulnerabilities Create … products, capabilities and solutions Detailed understanding of security methodologies and frameworks Capable of effectively communicating at all levels of an organisation Desired experience with: ISO27001 Cyber Essentials Risk Analysis Threat Mitigation Developing security processes Security operations Cyber resilience Leading a security team If you would like to be considered for more »
Technical Security Consultant - A JOB IN THE NORTH OF ENGLAND! Salary - £65k - £75k Within 1.5 hours of Leeds - Hybrid Role = Home / office and site as required. The recruitment market has seen a shift away from the larger practices towards the more boutique-size consultancies - such as my client. … to the client in a language they’ll understand. Some of the Skills Required by the Technical Security Consultant Technical skills: Network Security architecture / engineering. Cloud Security architecture / engineering. Infrastructure engineering / security. Vulnerability management. Endpoint security. IAM. Knowledge of security frameworks such as the … ISO27001 and NIST etc – However, remember that the technical side is the priority here. A current knowledge of the cyber threat landscape. Soft skills - A curious mind, a problem solver with great communication skills, both verbal and written with the ability to communicate tech issues more »
West Yorkshire, England, United Kingdom Hybrid / WFH Options
Cammax Limited
individual will be based in the Castleford office, with the occasional option to work from home. Role responsibilities: Perform server administration tasks (ex: user / group, security permissions, group policies, print services); research event-log warnings and errors. Monitoring system environment for performance and any potential issues or capacity … limitations. Manage SharePoint sites and role-based permissions. Implementation of security solutions directed by Group level IS directives. Monitor core systems / server environment health using management tools, and respond to hardware issues as they arise. help build, test, and maintain new servers when needed. Manage network servers and … and monitoring. Experience of firewalls and VPN solutions is desirable. Problem analysis. Knowledge of Windows OS , Virtualization technologies and cloud hosting. Knowledge of ISO27001 security contract implementation Professional certifications Knowledge of security solutions such as Zscalar, Cloudflare, Crowdstrike and Rapid7 is desirable In return we more »
Maintain records for Sox processes and assist auditors where necessary. Conduct and plan annual external Sox and ISO audits. Ensure compliance with ISO27001 standards and company quality policies. Telephony and Network Infrastructure: Analyze telephony bills and manage the telephony estate. Coordinate the implementation of new hardware /more »
Champion automation. Participate in hands-on coding opportunities. Perform ad hoc tasks as required by the business. Ensure compliance with the requirements of ISO 9001 and ISO 27001. Key Skills, Experience, and Qualifications: Extensive experience with web and mobile technologies, with a focus on … application development. Proven experience in a technical lead role, including mentoring other developers. Hands-on experience with PHP frameworks, including Symfony. Experience implementing CI / CD pipelines. Experience with cloud platforms, including AWS. Familiarity with design-led and mobile-led approaches. Appreciation of good UI / UX design. more »
Data Loss Prevention and Infrastructure Security Understanding of the relevance and application of Compliance and Governance standards, including PRA S2 / 21 and ISO27001:2022 Proven experience dealing with IT contracts with complex provisions and clauses, with a good understanding of how to discuss and negotiate contract financial terms more »
in Cyber Security, Computer Science, or related field Proven experience in IT Governance, Risk and Compliance Strong knowledge of security standards and regulations (NIST, ISO27001, etc.) Excellent problem-solving skills Ability to communicate complex security issues to non-technical staff Holder of or eligible to be SC Cleared Job Offer more »
Qualifications, e.g. CCP, CISSP, CISM (or able to achieve) Proven experience of assessing and managing risk in line with industry good practice (NIST, ISO27001) Significant experience with using security baselines, mitigations and controls Engineering background and or strong familiarity with a life cycle phased approach … as SPF, JSP 440 and JSP604 and production of Risk Management Accreditation Document Set (RMADS) Knowledge of the challenges affecting security of Operational Technologies / Industrial Control Systems and approaches to secure them Project Management exposure Benefits: You'll receive benefits including a competitive pension scheme, enhanced annual leave more »
Qualifications, e.g. CCP, CISSP, CISM (or able to achieve) Proven experience of assessing and managing risk in line with industry good practice (NIST, ISO27001) Significant experience with using security baselines, mitigations and controls Engineering background and or strong familiarity with a life cycle phased approach … as SPF, JSP 440 and JSP604 and production of Risk Management Accreditation Document Set (RMADS) Knowledge of the challenges affecting security of Operational Technologies / Industrial Control Systems and approaches to secure them Project Management exposure Benefits: You'll receive benefits including a competitive pension scheme, enhanced annual leave more »
knowledge of software development methodologies and best practices, including secure coding techniques. Familiarity with industry standards and frameworks such as OWASP, NIST, and ISO 27001. Ability to read and review code in at least one programming languages (e.g., Java, C++, Python, C#, Golang, JavaScript) and web technologies. Experience more »
Stoke-On-Trent, England, United Kingdom Hybrid / WFH Options
bet365
varied and includes tasks such as BAU audits, policy and procedure creation and review, preparing for external audits and implementing controls in relation to ISO27001 standards. You will be responsible for ensuring that changes within the information security sector are adapted and adhered to. This role is eligible for inclusion … in the Company’s hybrid working from home policy. Preferred skills and experience ISO27001 Auditor qualification. Strong analytical and problem solving skills. Ability to manage multiple audits simultaneously. Ability to evaluate the effectiveness of policies and procedures. Knowledge of relevant security frameworks such as NIST, ISO27001 and PCI DSS. Strong … clearly convey information to diverse stakeholders. Confident in presenting ideas and solutions. Excellent organisational, administrative and time management skills. Main Responsibilities Preparing for the ISO27001 audits and the annual compliance audits for the UK Gambling Commission, along with any other audits that have an information security component. Assisting other teams more »
Glasgow City, Scotland, United Kingdom Hybrid / WFH Options
Change Digital – Digital & Tech Recruitment
facilitate such internal and external audit exercises plus ensure timely remediation for any identified non-conformance as is necessary to keep compliance with the ISO27001 certification. Assess and recommend information security, governance, risk management, and compliance services and working practices that reflect emerging client expectations and best meet, develop and … during periods of higher demand, or where additional resources are required. Facilitate continual improvement by investigating and utilising latest technologies such as Artificial Intelligence / Machine Learning and other process methodologies to help transform the delivery of the services with a focus on greater efficiency and accuracy. Identify emerging … but not essential. Operational knowledge of one or more international information security standards, risk management and control frameworks / practices e.g. ISF SOGP, ISO27001/ 2, ISO31000, IRAM2, NIST 800-53 and cybersecurity framework. COBIT, CPS-234 etc. Strong organisational skills and the ability to handle multiple conflicting more »
Leeds, England, United Kingdom Hybrid / WFH Options
AppCheck Ltd
learn and provide detailed guidance in the use of AppCheck’s own product. Skills: Sound understanding of internet operation, the Internet protocol suite (TCP / IP) and HTTP protocol Sound understanding of network / infrastructure and firewall, proxy and WAF behaviours Conceptual understanding of single-page applications, asynchronous … e.g., Python or JavaScript) It would be desirable although not essential to have experience in Scripting and Linux command line (curl, nmap, etc), Unix / Linux OS commands / file systems and shell scripting, REST API’s While any InfoSec domain experience is advantageous, we do not require … comprehensive knowledge of security vulnerabilities, nor the AppCheck product. However, we are looking for a good base of web application and infrastructure / network knowledge, gained within a technical / application support role. You’ll learn specialized knowledge, through on-the-job training, proactive research of internal and more »
Cybersecurity & Compliance: Maintain the highest standards of security for data, systems, and networks. Ensure compliance with regulations and standards, such as GDPR and ISO 27001. Manage disaster recovery and business continuity planning. Continuously evaluate and mitigate IT risks. Team Leadership: Lead and mentor the IT team, offering guidance … transformation projects. Technical Skills: Expertise in IT strategy development and execution. Deep knowledge of cybersecurity standards, network security, and regulatory compliance (e.g., GDPR, ISO27001). Familiarity with cloud technologies, data management, and IT infrastructure architecture. Proficiency in IT budgeting, resource allocation, and vendor management. Leadership more »
Northampton, England, United Kingdom Hybrid / WFH Options
Jumar
they meet industry security standards and best practices. You will be responsible for designing and deploying hybrid infrastructure solutions both on-premises and Private / Public cloud. Skills and experience required: Proven experience as an Infrastructure Engineer Hands-on experience in designing, implementing, and managing both on-premises and … cloud solutions. In-depth knowledge of Azure / M365 services (IaaS, PaaS, SaaS), including Virtual Machines, Azure App Services, Azure Networking, Storage Accounts, Security Center, Azure AD and M365 environments. In-depth knowledge of on-premises infrastructure including Windows Server environments, VMware virtualisation, Hyper-V virtualisation, Backup & Disaster Recovery … on experience with security frameworks like NIST, ISO27001, or CIS Controls Solid understanding of networking concepts such as TCP / IP, VPN, VNET, ExpressRoute, and firewall configurations both local and cloud based. Vendor certifications such as Microsoft, VMware, HPe and Cisco. Previous experience of more »
looking for a dedicated expert to drive innovation and efficiency. The role requires SC clearance. This could be a perfect role for a Senior / Lead DevOps Engineer looking to build a team around them and really grow into the position or an experienced manager looking for that opportunity … real DevSecOps culture flourishes. Key Responsibilities: Azure Infrastructure Management : Design, implement, and manage scalable Azure infrastructure using Azure Bicep.. DevOps & Security Compliance : Develop CI / CD pipelines and ensure adherence to security standards such as ISO27001, SOC 2, and GDPR. Advanced Security Practices : Implement more »
Altrincham, England, United Kingdom Hybrid / WFH Options
Heywood Pension Technologies
threat simulations Assess emerging and potential security threats and acting proactively to mitigate relevant threats End to end vulnerability management Manage security toolset. Experience / qualifications Industry certifications such as CISSP, CISM, CISA, or equivalent Expert in information security Excellent knowledge of security frameworks, standards, and regulations, including ISO27001, SOC 2, HIPAA, GDPR, etc Strong understanding of cloud security principles and best practices, particularly in AWS / Azure Experience in managing security incidents and leading incident response Good communication and interpersonal skills, with the ability to effectively communicate security-related questions to technical … and much more! We are committed to a hybrid working model, combining the best of remote and office-based working. Discover more at https: // www.heywood.co.uk / careers Legal stuff https: // www.heywood.co.uk / privacy-notices#jobapplicantprivacynotice EDI statement As an equal opportunities more »
of relevant experience in ICT Security or a Technical ICT environment. Solid understanding of national and international standards such as Cyber Essentials, ITIL, ISO 20000, and ISO27001, as well as NCSC (National Cyber Security Centre) principles. Capable of analysing and assessing security threats … monitoring tools, SIEM) to inform decisions and provide actionable recommendations. Knowledge Strong understanding of key national and international standards, including Cyber Essentials, ITIL, ISO 20000, ISO27001, and NCSC principles. Commitment to promoting equality and diversity. Familiarity with Health and Safety legislation and best … to access the latest best practices for enhancing cybersecurity to ensure continued effectiveness of defences. Knowledge of common security architectures and methodologies. Qualifications Essential / Desirable Degree / NVQ level 6 education (or equivalent) Certified Ethical Hacker Systems Security Certified Practitioner (SSCP) Certified Information Systems Security Professional (CISSP more »
in software packaging, deployment, and device configuration. Experience with Microsoft 365, Microsoft Teams, and Active Directory administration. Solid understanding of networking fundamentals, including TCP / IP, DHCP, DNS, and firewalls. Passion for automation and scripting, with a good working knowledge of PowerShell. Experience with ticketing systems, such as Zendesk. … conscientious, and eager to learn and grow. Strong problem-solving abilities with creative thinking and attention to detail. Exposure to working within an ISO27001-compliant environment. A commitment to delivering outstanding service to users and stakeholders. Ability to work both independently and as part of … vulnerability management, patch management, and security tools such as XDR, EDR, Microsoft Defender, CrowdStrike, and DLP solutions. Practical experience contributing to and maintaining ISO27001 compliance. Knowledge of Microsoft SQL administration. Familiarity with agile or DevOps methodologies. Experience with Infrastructure as Code (IaC) tools and principles more »
Glasgow, Scotland, United Kingdom Hybrid / WFH Options
Venesky Brown
Glasgow, is currently looking to recruit a Cyber Security Analyst for a contract until end of March 2025 on a rate of £450-£500 / day (inside IR35). This role is remote working with occasional on-site presence in Glasgow. Responsibilities: - Stakeholder Communication: Communicate effectively with stakeholders, providing … hands-on experience in technical security operations. - Technical Expertise: Significant hands-on experience in: - Security operations, threat intelligence and detection, security assurance. - Distributed systems / cloud computing security, Cloud Access Security Broker. - Data Security: Data loss prevention, data and application security, user and data privacy. - Technical Skills: Protocols and … equivalent to SCQF level 9 or a degree related to Cyber Security and / or industry-recognized qualification such as CISSP, CISM, or ISO27001 Lead Auditor. - Excellent written and verbal communication skills. - Subject matter expert in Cyber Security. - Ability to understand complex scenarios and produce timely, effective solutions. - Strong more »
Skills: ▪A demonstrated history of planning, development and implementation of Azure security related technologies ▪An excellent understanding of security technologies: SIEM, firewalls, intrusion detection / prevention systems, anti-virus software, authentication systems, log management, content filtering, etc. ▪Hands-on experience of security and / or infrastructure ▪Cyber Essentials … ISO27001, 27002 ▪Networking; Security operations; Vulnerability Management; Security Auditing Location: Role is based in the Leeds office and is fully Office based. Salary £50,000 - £60,000 How to Apply: Please reply asap along with your CV to be considered for this position. You can more »