Birmingham, England, United Kingdom Hybrid / WFH Options
Experis UK
travel to client sites. You’ll be part of a team delivering security consultancy in a client-facing role, with a particular focus on: PCIDSS consultancy and assessments Security reviews against standards or guidelines such as the NCSC 10 Steps to Cyber Security and NIST CSF ISO … Creating or supporting third-party risk management and audit programmes Essential skills and experience: Be a current QSA who has completed multiple on-site PCIDSS assessments, and be able to demonstrate a mature understanding of complex PCIDSS environments, and an ability to consult as … structured and methodical manner, with support to manage your own time with a focus on quality work Your primary role will be to deliver PCIDSS consultancy and assessment activities to our clients as part of an established and experienced team of consultants. It’s not all PCIMore ❯
Loughton, Essex, South East, United Kingdom Hybrid / WFH Options
Profile 29
role. This role will focus on creating a business strategy, gap analysis and implementation, for securing their Azure-based infrastructure, integrating security automation, ensuring PCIDSS compliance, vulnerability and penetration testing and incident response. This role will focus on developing and maintaining secure, scalable Azure DevOps pipelines and … WAF) and Intrusion Prevention Systems (IPS). Vulnerability & Penetration Testing: Review Penetration Testing, vulnerability assessments, and security scanning to proactively identify and remediate risks. PCIDSS Compliance: Conduct security audits, risk assessments, and ensure regulatory compliance. DNS Security: Implement and monitor DNS security solutions to prevent cyber threats. … be found at: profile-29 .com/privacy) Profile 29 recruitment keywords: DevSecOps DevOps Azure cloud security Microsoft Defender Microsoft Sentinel WAF IPS DNS pcidsspcidsspci-dss soar loughton Debden essex London freelance contract More ❯
Employment Type: Contract, Work From Home
Rate: From £500 to £700 per day (direct contract with the client)
Cyber Security Consultant - AWS - PCIDSS - Manchester Cyber Security Consultant with a PCIDSS & AWS cloud background required to join our global client's new UK cybersecurity team. This role is predominantly end-client facing, advising on security best practices, vulnerability management and securitystandard compliance … e.g. NIST, ISO, PCIDSS etc), and leading audits and examinations. You will be reporting to the UK Head of Security and consulting global clients across the American and EMEA regions. Skills & Experience Required: 2+ years of experience working in Cyber Security within an AWS cloud environment Any … experience with CrowdStrike would be a bonus Good experience with PCIDSS Vulnerability management & Compliance Lead on Audits Strong Securitystandard knowledge and experience, consulting on a range of security policies and standards such as GDPR, ISO, PCI, NIST Confidence when speaking with stakeholders and clients, as More ❯
Cloud Security Consultant - AWS - PCIDSS - Manchester A cloud security consultant with a PCIDSS & AWS cloud background is required to join our global client's new UK cybersecurity team. This role is predominantly end-client facing, advising on security best practices, vulnerability management and security … standard compliance (e.g. NIST, ISO, PCIDSS etc), and leading audits and examinations. You will be reporting to the UK Head of Security and consulting global clients across the American and EMEA regions. Skills & Experience Required: 2+ years of experience working in Cyber Security within an AWS cloud … environment Any experience with CrowdStrike would be a bonus Good experience with PCIDSS Vulnerability management & Compliance Lead on Audits Strong Securitystandard knowledge and experience, consulting on a range of security policies and standards such as GDPR, ISO, PCI, NIST Confidence when speaking with stakeholders and More ❯
Cloud Security Consultant - AWS - PCIDSS - Manchester A cloud security consultant with a PCIDSS & AWS cloud background is required to join our global client's new UK cybersecurity team. This role is predominantly end-client facing, advising on security best practices, vulnerability management and security … standard compliance (e.g. NIST, ISO, PCIDSS etc), and leading audits and examinations. You will be reporting to the UK Head of Security and consulting global clients across the American and EMEA regions. Skills & Experience Required: 2+ years of experience working in Cyber Security within an AWS cloud … environment Any experience with CrowdStrike would be a bonus Good experience with PCIDSS Vulnerability management & Compliance Lead on Audits Strong Securitystandard knowledge and experience, consulting on a range of security policies and standards such as GDPR, ISO, PCI, NIST Confidence when speaking with stakeholders and More ❯
authentication solutions. Plan for scalability, redundancy, and high availability to support future growth. IT Security & Compliance: Ensure compliance with security and regulatory standards, including PCIDSS, Cyber Essentials+, DORA, and ISO 27001. Implement and enforce security best practices across infrastructure automation and cloud environments. Maintain accurate compliance documentation … including PCIDSS scope records and security policies. Secure high-value and high-risk data, such as cardholder (PCI) and personally identifiable information (PII). Cloud & DevOps Integration (these tools and skills will be taught): Implement and manage Infrastructure as Code (IaC) for cloud and on-premises … Cyber Essentials, NIST, ISO 27001). In-depth understanding of network security and compliance in regulated environments. Proven ability to secure high-value data (PCI cardholder data, PII) and implement security best practices. Strong networking knowledge (LAN, WAN, DNS, DHCP, VPN, TCP/IP). Proficiency in firewall and More ❯
authentication solutions. Plan for scalability, redundancy, and high availability to support future growth. IT Security & Compliance: Ensure compliance with security and regulatory standards, including PCIDSS, Cyber Essentials+, DORA, and ISO 27001. Implement and enforce security best practices across infrastructure automation and cloud environments. Maintain accurate compliance documentation … including PCIDSS scope records and security policies. Secure high-value and high-risk data, such as cardholder (PCI) and personally identifiable information (PII). Cloud & DevOps Integration (these tools and skills will be taught): Implement and manage Infrastructure as Code (IaC) for cloud and on-premises … Cyber Essentials, NIST, ISO 27001). In-depth understanding of network security and compliance in regulated environments. Proven ability to secure high-value data (PCI cardholder data, PII) and implement security best practices. Strong networking knowledge (LAN, WAN, DNS, DHCP, VPN, TCP/IP). Proficiency in firewall and More ❯
Ely, Cambridgeshire, East Anglia, United Kingdom Hybrid / WFH Options
IT Governance Limited, a GRC Solutions Company
Engagements: Work with clients of all merchant levels and service providers across various industries. Career Growth: Enhance your expertise with exposure to frameworks like PCIDSS, ISO27001, SWIFT CSF, and CIS18. Collaborative Culture: Join a team that values innovation, client success, and your professional development. Key Responsibilities: Conducting … comprehensive security assessments, including PCIDSS, ISO27001/27002, SWIFT Security, and Cloud compliance. Preparing executive and technical reports detailing findings, security gaps, and actionable recommendations. Leading PCIDSS Gap Assessments, Risk Assessments, and Reports on Compliance (ROCs) across various industries. Creating roadmaps for compliance, with … or exceeded. Supporting business development efforts by providing technical expertise during client discussions. Were looking for an experienced and proactive QSA Consultant with: Essential: PCI QSA certification, supported by one or more of the following: CISSP, CISA, CISM, or ISO27001 Lead Auditor + Lead Implementer certifications. Experience: Minimum More ❯
Guildford, Surrey, United Kingdom Hybrid / WFH Options
Sycurio
The Information Security Director develops, shapes, and maintains Sycurio's information security capability, driving the attainment and maintenance of the ISO27001, PCI-DSS, and SOC2 compliance. They are the subject matter expert on all things regarding security and compliance, owning the information risk management processes. They are the … parties and providing assurance of policies, procedures, and systems. Develop, maintain, and expand the information security management system ('ISMS') to optimise compliance for ISO27001, PCI-DSS, and SOC2. Identify gaps in the information security capability, both technical and operational, and propose remediation and mitigation plans and solutions. Responsible … CISSP, CISM, CISA, or equivalent. Experience: 10+ years of information security experience. Financial/Fintech services/payments desirable. Deep knowledge of security frameworks (PCI, ISO 27001, NIST) and regulations (GDPR, CCPA). Experience with PCIDSS compliance and implementation. Proven success in managing external auditors to More ❯
to ensure critical Information is protected, in alignment to Cyber Security best practice and data protection regulation. This role requires a particular knowledge around PCIDSS, and ideally my client is looking for an individual who has worked to help an organisation achieve PCIDSS compliance … presenting findings to Senior Stakeholders Hold recognised Cyber Security qualification (CISA, CISMP, CISM or equivalent). Knowledge of industry related frameworks such as ISO27001, PCIDSS This role is based in Northampton and is a hybrid position with on average 2 days a week on-site. The salary More ❯
ANEXT Bank. Role Overview: As a GRC Lead , you will ensure alignment with European regulations (e.g., GDPR, DORA, PSD2 SCA, CSSF) and global standards (PCIDSS, SWIFT CSP). This role requires technical knowledge, strategic thinking, and expertise in managing third-party risk , outsourcing compliance , and identity governance … complementary regulations like DORA (Digital Operational Resilience Act) , ensuring alignment in areas such as incident reporting and data protection. Translate requirements from PSD2 SCA , PCIDSS , and SWIFT CSP into technical security controls. Maintain IT security governance frameworks (ISO 27001, NIST CSF, CIS Controls). Manage and maintain … we are looking for: Experience: 4+ years in GRC roles ; financial services or banking experience is a strong plus . Understanding of GDPR , DORA , PCIDSS, and outsourcing/third-party risk requirements. Hands-on experience with ISO 27001 implementation and third-party risk tools . Proficiency in More ❯
provide insights into threats facing the bank. Awareness of common Cyber Incidents and Security breaches (OWASP). Knowledge or experience in SOC2, ISO 27001, PCIDSS and GDPR. Previous experience working within an organisations Cyber Incident Response function. Hands on experience with Information Security tools. About you: Team … to prioritize tasks. Strong analytical and problem-solving skills. Proficiency in Microsoft Office. Interested? Please Apply! SOC ISO ISAO CISSP NIST CSF ISO27000 ISO27001 PCIDSS GDPR Cybersecurity Cyber Security Information Security Infosec Cybersec Risk Infrastructure ISMS More ❯
as Azure DevOps, Terraform, VMware, and cloud platforms like AWS & Azure , you'll drive automation, enhance security, and ensure compliance with industry standards like PCIDSS, ISO 27001, and Cyber Essentials+ . Key Responsibilities ?? Develop and manage infrastructure automation solutions for provisioning, monitoring, and management. ?? Maintain and optimize … Dell networking). ?? Implement and manage CI/CD pipelines, authentication solutions (SSO, SAML), and security best practices . ?? Ensure compliance with regulatory frameworks ( PCIDSS, GDPR, DORA ) and enforce security policies. ?? Lead monitoring and performance optimization using tools like Zabbix, SolarWinds, and SentryOne . What You'll More ❯
as Azure DevOps, Terraform, VMware, and cloud platforms like AWS & Azure , you'll drive automation, enhance security, and ensure compliance with industry standards like PCIDSS, ISO 27001, and Cyber Essentials+ . Key Responsibilities ?? Develop and manage infrastructure automation solutions for provisioning, monitoring, and management. ?? Maintain and optimize … Dell networking). ?? Implement and manage CI/CD pipelines, authentication solutions (SSO, SAML), and security best practices . ?? Ensure compliance with regulatory frameworks ( PCIDSS, GDPR, DORA ) and enforce security policies. ?? Lead monitoring and performance optimization using tools like Zabbix, SolarWinds, and SentryOne . What You'll More ❯
across functions to support operational resilience and maintain alignment with global security and regulatory frameworks including: - ISO/IEC 27001:2022 - NIST Cybersecurity Framework - PCI-DSS 4.0.1 - UK GDPR, NIS2 Directive, CAP1753, and related sector obligations . This makes it a great development role for those looking to … relevant stakeholders Colloborate with procurement and key suppliers to ensure their ongoing security posture meets Virgin Atlantic requirements Conduct internal reviews against ISO, NIST, PCI, UK GDPR, and emerging requirements Support internal/external audits, evidence readiness, and corrective action tracking Maintain the policy and control framework, identifying non … ISO 27001 Lead Implementer/Auditor certification Sound knowledge of information security governance practices, working knowledge of ISO/IEC 27001:2022, NIST CSF, PCI-DSS, UK GDPR, and NIS2 and other aviation related legislation.Awareness of Business Continuity, IT Service Continuity and IT Disaster Recovery (ISO25999, COBIT, PAS More ❯
across functions to support operational resilience and maintain alignment with global security and regulatory frameworks including: ISO/IEC 27001:2022 NIST Cybersecurity Framework PCI-DSS 4.0.1 UK GDPR, NIS2 Directive, CAP1753, and related sector obligations This makes it a great development role for those looking to step … relevant stakeholders. Collaborates with procurement and key suppliers to ensure their ongoing security posture meets Virgin Atlantic requirements. Conducts internal reviews against ISO, NIST, PCI, UK GDPR, and emerging requirements. Supports internal/external audits, evidence readiness, and corrective action tracking. Maintains the policy and control framework, identifying non … ISO 27001 Lead Implementer/Auditor certification. Sound knowledge of information security governance practices, working knowledge of ISO/IEC 27001:2022, NIST CSF, PCI-DSS, UK GDPR, and NIS2, and other aviation-related legislation. Awareness of Business Continuity, IT Service Continuity, and IT Disaster Recovery (ISO25999, COBIT More ❯
ensure high availability and performance. Secure IT Systems by implementing security policies, monitoring for threats, and ensuring compliance with relevant regulations (e.g. GDPR, SOX, PCIDSS) and industry standards. Support physical network infrastructure by configuring and maintaining servers, appliances, L2/L3 switches, VLANs, and network security. Optimise … for all areas of responsibility to enable efficient controls and ways of working. Ensure IT compliance and governance is adhered to for GDPR, SOX, PCIDSS and other regulatory framework the company adheres to, ensuring that commitments and deadlines are met or exceeded. Take ownership of any escalated More ❯
ensure high availability and performance. Secure IT Systems by implementing security policies, monitoring for threats, and ensuring compliance with relevant regulations (e.g. GDPR, SOX, PCIDSS) and industry standards. Support physical network infrastructure by configuring and maintaining servers, appliances, L2/L3 switches, VLANs, and network security. Optimise … for all areas of responsibility to enable efficient controls and ways of working. Ensure IT compliance and governance is adhered to for GDPR, SOX, PCIDSS and other regulatory framework the company adheres to, ensuring that commitments and deadlines are met or exceeded. Take ownership of any escalated More ❯
with security controls, threat modelling, and vulnerability management. Experience of third-party risk management. Knowledge of regulatory requirements and compliance frameworks (e.g., GDPR, ITGC, PCI-DSS, etc ) related to IT, cybersecurity and risk management. Awareness of various operating systems including but not limited to Windows, Linux, Unix. Awareness More ❯
london, south east england, United Kingdom Hybrid / WFH Options
Intec Select
standards, and procedures Work with IT and development teams to implement secure system designs and configurations Support compliance initiatives (e.g., ISO 27001, NIST, GDPR, PCI-DSS) by assisting with audits and documentation Conduct security awareness training and phishing simulations for employees Keep up-to-date with the latest More ❯
/STRIDE frameworks. Recommend the best controls & mitigations to potential vulnerabilities Ensure the design comply with relevant regulations and standards, including GDPR, SOX, and PCI-DSS. Implement advanced encryption and access control mechanisms to safeguard data integrity and confidentiality. Implement Cloud Security controls through Firewalls and leverage Defender for … have proven experience as a Security Architect working in a large, complex organization. Ideally, this experience would be within a financially regulated enterprise (e.g., PCI compliance). Proven experience working previously for financial organizations. Previous relevant experience in developing bespoke Threat Models leveraging frameworks like MITRE ATTACK & STRIDE. Proficiency … or similar highly regulated industry. Have a relevant professional qualification (or be working towards certification), such as CISM/CISSP. Knowledge/experience of PCI-DSS, including PCI-P qualification. Knowledge/experience of Data privacy and GDPR. Experience with regulatory compliance frameworks specific to financial organizations. More ❯
swindon, wiltshire, south west england, United Kingdom
Tata Consultancy Services
/STRIDE frameworks. Recommend the best controls & mitigations to potential vulnerabilities Ensure the design comply with relevant regulations and standards, including GDPR, SOX, and PCI-DSS. Implement advanced encryption and access control mechanisms to safeguard data integrity and confidentiality. Implement Cloud Security controls through Firewalls and leverage Defender for … have proven experience as a Security Architect working in a large, complex organization. Ideally, this experience would be within a financially regulated enterprise (e.g., PCI compliance). Proven experience working previously for financial organizations. Previous relevant experience in developing bespoke Threat Models leveraging frameworks like MITRE ATTACK & STRIDE. Proficiency … or similar highly regulated industry. Have a relevant professional qualification (or be working towards certification), such as CISM/CISSP. Knowledge/experience of PCI-DSS, including PCI-P qualification. Knowledge/experience of Data privacy and GDPR. Experience with regulatory compliance frameworks specific to financial organizations. More ❯
Standards Expertise: Extensive experience in writing, reviewing, and implementing information security policies, procedures, and standards. Familiarity with legal and regulatory frameworks (e.g., GDPR, HIPAA, PCI-DSS) and their impact on security practices. Communication & Collaboration: Excellent verbal and written communication skills, with the ability to translate complex technical issues More ❯
CDI. Advanced understanding of IT infrastructure, including servers, storage, and virtualization. Familiarity with cloud security (Azure, AWS, etc.). Knowledge of compliance frameworks like PCIDSS, HIPAA, SOC 2. Proficiency with Windows, Linux, macOS, and network protocols. Understanding threat intelligence platforms and attack mitigation techniques. Strong problem-solving More ❯
Cardiff, Wales, United Kingdom Hybrid / WFH Options
Creditsafe
CISM), Certified Information Systems Auditor (CISA) or other similar credentials. • Proven experience in managing security operations teams in a similar industry. • Familiarity with SOC2, PCI-DSS, ISO22301 and ISO27001 standards. Desirable Qualifications: • Bachelor’s or masters degree in CyberSecurity, Computer Science, Information Technology, or a related field • Cloud More ❯