s new UK cybersecurity team. This role is predominantly end-client facing, advising on security best practices, vulnerability management and security standard compliance (e.g. NIST, ISO, PCI DSS etc), and leading audits and examinations. You will be reporting to the UK Head of Security and consulting global clients across the … Compliance Lead on Audits Strong Security standard knowledge and experience, consulting on a range of security policies andstandards such as GDPR, ISO, PCI, NIST Confidence when speaking with stakeholders and clients, as well as the ability to provide training and mentoring around cybersecurity Ideally, some relevant cybersecurity certifications This More ❯
Reading, Berkshire, South East, United Kingdom Hybrid / WFH Options
Bowerford Associates
software applications demonstrably more secure and robust. Good understanding of common information security management standards, frameworks, and laws/regulations: e.g . ISO 27001 , NIST , GDPR . Experience of open-source security tools and how they could be used in an enterprise. Experience of securing Azure cloud workloads and environments. … Practice, Programming, Code, C++, C#, C, .NET Core, Java, JavaScript, Node.js, Angular, React, OWASP, Agile, Application Threat Modelling, Security Policy, Security Controls, ISO 27001, NIST, GDPR, Cloud, Azure. Please note that due to a high level of applications, we can only respond to applicants whose skills and qualifications are suitable More ❯
Job Title: Networks Consultant – Secure by Design Role Overview: We are seeking an experienced Telecoms Cyber Security Consultant to join the Secure by Design Networks team. This role is crucial in ensuring the security and integrity of company’s telecoms More ❯
Newbury, south west england, United Kingdom Hybrid / WFH Options
Hays
Job Title: Networks Consultant – Secure by Design Role Overview: We are seeking an experienced Telecoms Cyber Security Consultant to join the Secure by Design Networks team. This role is crucial in ensuring the security and integrity of company’s telecoms More ❯
newbury, south east england, United Kingdom Hybrid / WFH Options
Hays
Job Title: Networks Consultant – Secure by Design Role Overview: We are seeking an experienced Telecoms Cyber Security Consultant to join the Secure by Design Networks team. This role is crucial in ensuring the security and integrity of company’s telecoms More ❯
london, south east england, United Kingdom Hybrid / WFH Options
Eames Consulting
security , embedding security in processes and digital projects. Perform cybersecurity analysis , translating regulatory and business requirements into actionable tasks. Advise on frameworks such as NIST, ISO 27001, CIS Controls, CSA CCM. Support GRC activities , including risk assessments and compliance monitoring. Must-Have Experience & Skills: 5+ years in IT security consulting … or transformation roles. Proven delivery of complex, multi-site security projects globally. Deep knowledge of security frameworks (NIST, ISO 27001, CIS, CSA CCM). Strong understanding of GRC processes , vulnerability management, incident response, and SOC. Familiarity with DevSecOps , secure SDLC, disaster recovery, and BCP. Excellent stakeholder management and communication skills. More ❯
security awareness and help drive a risk-aware culture across the business Provide expert guidance to ensure alignment with security frameworks (e.g. ISO 27001, NIST) Support audit, regulatory compliance, and governance efforts Influence adoption of secure solutions across both strategic and operational initiatives What They Are Looking For Proven experience … stakeholder engagement skills Familiarity with cloud and hybrid security models Understanding of regulatory compliance (e.g., GDPR, PCI DSS) Knowledge of frameworks like ISO 27001, NIST, CIS, or COBIT If keen please apply More ❯
Cloud Security Engineer Kent Hybrid 12-month FTC - Competitive Salary VIQU have partnered with a leading automotive organisation seeking a Cloud Security Engineer to join their growing security function. This role has been created to help bridge the gap between More ❯
Cloud Security Engineer Kent – Hybrid 12-month FTC - Competitive Salary VIQU have partnered with a leading automotive organisation seeking a Cloud Security Engineer to join their growing security function. This role has been created to help bridge the gap between More ❯
Cloud Security Engineer Kent – Hybrid 12-month FTC - Competitive Salary VIQU have partnered with a leading automotive organisation seeking a Cloud Security Engineer to join their growing security function. This role has been created to help bridge the gap between More ❯
london, south east england, United Kingdom Hybrid / WFH Options
55 Exec Search
across a number of sectors strengthen their security posture. You’ll work with industry-leading frameworks like Cyber Essentials (CE), Cyber Essentials Plus (CE+), NIST 2, ISO 27001/223001, DORA , and more. This is the perfect opportunity if you’re looking for more autonomy, rapid career growth, and a … Senior Cyber Security Consultant: 2+ years of information security consulting Experience of Governance, Risk, and Compliance (GRC) frameworks such as ISO 27001, ISO 223001, NIST, DORA and other regulatory standards. Experience conducting Cyber Essentials and Cyber Essentials Plus assessments and guiding clients through the certification process, with a strong understanding More ❯
Manchester, Lancashire, United Kingdom Hybrid / WFH Options
TalkTalk Telecom Group PLC
Senior Security Risk Manager Senior Security Risk Manager Apply locations Salford Quays, Manchester time type Full time posted on Posted 6 Days Ago job requisition id R Please note that this is a FTC opportunity We are PXC, the UK More ❯
monitor the security of both OT and IT environments, including SCADA systems and Industrial Control System (ICS) Governance and compliance of all OT systems - NIST 800-82, IEC 62443, OG86, NERC-CIP, SOCI, NIST-CSF, NIS2 Taking a proactive role in threat hunting, incident response from a Collaborating with the …/awareness Key skills needed are: 3+ years in a cyber security role with a good level of exposure to OT security Knowledge ofNISTand IEC 62443 OT frameworks Knowledge of the Microsoft security stack and wider IT security experience highly desirable Knowledge of NERC CIP and/or More ❯
compliance, and policy. You will be responsible for developing and implementing internal control frameworks and defining policies in line with industry standards such as NISTand ISO 27001. Collaboration with various business units will be key to reducing risk and ensuring compliance with regulations. Key Responsibilities: Focus on risk management … and compliance, including policy andstandards development. Map internal controls to industry standards such as NISTand ISO 27001. Build and define security policies, ensuring alignment with organizational goals. Develop and manage compliance frameworks using Microsoft tools such as SharePoint, Power BI, Power Automate, and Risk Automate. Work closely with … various regions. Identify and deliver service/control improvements and contribute lessons learned to future projects. Desired Skills and Qualifications: Certifications: CISA, CISM, CRISC, NIST, ISO 27001. Experience with building compliance frameworks and policies using Microsoft tools. Please apply if interested More ❯
bristol, south west england, United Kingdom Hybrid / WFH Options
Matchtech
mitigation strategies. Conducting security code reviews and offering guidance to ensure a secure-by-design approach. Ensuring products meet key regulatory standards (ISO 27001, NIST 800 series, JSPs, Def Stans). Authoring vital security documentation, including RMADS and Security Assurance Documents. Performing penetration testing and coordinating remediation efforts. What You … Bring: A solid understanding of security frameworks such as ISO 27001/2, ISO 31000, NIST 800-30/37/53. Hands-on experience with Defence Standards (JSPs, HMG, Def Stan 05-138/139). Strong knowledge of security testing tools and techniques. Excellent communication skills — able to … explain complex risks and solutions clearly. A proactive, problem-solving mindset with a high level of personal integrity and professional ethics. Experience with NIST standards. (this is an absolute must) You'll Succeed Here If You: Thrive on solving complex problems with innovative, practical solutions. Communicate clearly, confidently, and with More ❯
bristol, south west england, united kingdom Hybrid / WFH Options
AtkinsRéalis
the CESG IA Portfolio and MoD JSPs such as JSP440, JSP604/JSP453 (plus other standard MoD IA methods). Certifications such as ISO27000, NIST Cyber Security Professional, CISMP etc. Flexibility over UK, and potentially overseas travel. Experience with IT Computer Systems and interconnecting systems and networks. Desirable- Certified Information … of recognised security professional body such as the Instituteof Information Security Professionals (IISP), IS2, BCS and Understanding of 'Secure by Design' methodology andNIST 800-37 Risk Management Framework. A keen interest in the latest technology with a focus on security technologies. Ambition to work in a challenging andMore ❯
Bristol, Gloucestershire, United Kingdom Hybrid / WFH Options
AtkinsRéalis
JSP604/JSP453 (plus other standard MoD IA methods). Experience with IT Computer Systems and interconnecting systems and networks. Certifications such as ISO27000, NIST Cyber Security Professional, CISMP etc. Flexibility over UK, and potentially overseas travel. Desirable: Certified Information Security Manager Principles (CISMP) or equivalent. Associate/Full Membership … of recognised security professional body such as the Instituteof Information Security Professionals (IISP), IS2, BCS. Understanding of 'Secure by Design' methodology andNIST 800-37 Risk Management Framework. A keen interest in the latest technology with a focus on security technologies. Ambition to work in a challenging and rewarding More ❯
This individual will provide architectural leadership across IT Infrastructure, Applications, and Cyber Security domains, with a strong emphasis on Secure by Design principles andNIST Risk Management Framework compliance. The role requires effective communication with senior client stakeholders and the ability to influence technical decisions through sound governance and evidence … strategies. · Cyber Security & Secure by Design o Embed Secure by Design principles throughout the product lifecycle. o Ensure architecture and solution designs comply with NIST controls, regulatory requirements, and internal cyber security policies. o Collaborate with Information Architecture, Security, Risk, and Compliance teams to assess architectural risk and apply appropriate … architecture (e.g. integration, APIs, data), and cyber security architecture (e.g. identity & access management, threat modelling, security controls). · Strong working knowledge and application ofNIST Risk Management Framework, Secure by Design, and architecture standards. · Proven experience leading architecture governance in large-scale transformation programmes. · Demonstrated ability to engage and influence More ❯
Bristol, Avon, South West, United Kingdom Hybrid / WFH Options
LA International Computer Consultants Ltd
This individual will provide architectural leadership across IT Infrastructure, Applications, and Cyber Security domains, with a strong emphasis on Secure by Design principles andNIST Risk Management Framework compliance. The role requires effective communication with senior client stakeholders and the ability to influence technical decisions through sound governance and evidence … strategies. Cyber Security & Secure by Design o Embed Secure by Design principles throughout the product lifecycle. o Ensure architecture and solution designs comply with NIST controls, regulatory requirements, and internal cyber security policies. o Collaborate with Information Architecture, Security, Risk, and Compliance teams to assess architectural risk and apply appropriate … architecture (e.g. integration, APIs, data), and cyber security architecture (e.g. identity & access management, threat modelling, security controls). Strong working knowledge and application ofNIST Risk Management Framework, Secure by Design, and architecture standards. Proven experience leading architecture governance in large-scale transformation programmes. Demonstrated ability to engage and influence More ❯
Newcastle Upon Tyne, Tyne And Wear, United Kingdom Hybrid / WFH Options
Barclay Simpson
Expanding Technology company seeks its first Security Architect to join a security team of 7. In this role, you will develop and maintain security blueprints and repeatable patterns, design processes, set up documentation, and design the overall security architecture for More ❯
City, Edinburgh, United Kingdom Hybrid / WFH Options
Barclay Simpson
Expanding Technology company seeks its first Security Architect to join a security team of 7. In this role, you will develop and maintain security blueprints and repeatable patterns, design processes, set up documentation, and design the overall security architecture for More ❯
vulnerabilities and prioritising risks. Lead end-to-end risk remediation, ensuring security enables business operations. Conduct risk assessments, monitor threats, and maintain control frameworks (NIST, ISO 27001, Cyber Essentials). Produce risk management reports and support board-level reporting. Collaborate with auditors, regulators, and vendors to evaluate IT controls. Manage … asset registers, and drive incident management. Requirements: Strong experience in Information Security, focusing on Governance, Risk, and Compliance (GRC). Expertise in risk frameworks (NIST, ISO 27001, Cyber Essentials) and IT policy development. Relevant certifications (CISA, CRISC, CISM) are highly preferred. For more information, please apply directly More ❯
Design Conduct threat modelling exercises to prioritise potential risks and develop mitigation strategies to reduce risks Ensure products meet regulatory standards such as ISO27001, NIST 800-30/37/53, Joint Standards Publications (JSP) such as JSP 440, 604 and Defence Standards (Def stans) Produce security documentation like RMADS … and remediation activities Your skillset may include: Understanding and application of risk management frameworks and methodologies (e.g., ISO 27001/2, ISO27005/31000, NIST 800-30, NIST 800-53) Working knowledge of Defence Standards (e.g., JSPs, HMG, Def Stan 05-138, Def Stan 05-139) Experience with security testing More ❯
Design Conduct threat modelling exercises to prioritise potential risks and develop mitigation strategies to reduce risks Ensure products meet regulatory standards such as ISO27001, NIST 800-30/37/53, Joint Standards Publications (JSP) such as JSP 440, 604 and Defence Standards (Def stans) Produce security documentation like RMADS … and remediation activities Your skillset may include: Understanding and application of risk management frameworks and methodologies (e.g., ISO 27001/2, ISO27005/31000, NIST 800-30, NIST 800-53) Working knowledge of Defence Standards (e.g., JSPs, HMG, Def Stan 05-138, Def Stan 05-139) Experience with security testing More ❯
shaping policies, and overseeing security operations across all systems and services. A key part of the role involves implementing and aligning practices with the NIST Cybersecurity Framework, ensuring a consistent, standards-based approach to managing cyber threats and resilience. You’ll lead on incident response planning, certification and compliance, and … in the organisation’s digital transformation plans. What we’re looking for: Proven experience leading cyber security strategy and operations. Strong understanding of the NIST Cybersecurity Framework and its practical application. Knowledge of compliance and certification standards such as PCI-DSS and Cyber Essentials Plus. Experience in risk management, threat More ❯