Chesterfield, Derbyshire, England, United Kingdom Hybrid / WFH Options
LANGLAND CONSULTANTS LTD
Lead Information Security Analyst/Engineer to £55k + Benefits ISO27001, COBIT, SECURITY, ITIL, CISM, CISSP, PCI-DSS Lead Information Security Engineer/Analyst: Do you have a background working in an IT Security function Do you have a broad technical skill set and are able to identify and remediate threats or vulnerabilities, implement information security strategies to … help safeguard their digital assets and mitigate against potential risks. You will be actively responsible for ensuring the successful achievement of external certifications such as ISO27001, MOU, PSN and PCI-DSS etc alongside managing security incident response plans. In addition, the Lead information Security Analyst/Engineer will provide advice and guidance on government standards and industry best … meet security standards Monitoring events/alerts from multiple technologies to detect potential malicious activity Ensure effective compliance with relevant laws, regulations, and industry standards such as GDPR, ISO27001, PCI- DSS etc by conducting audits, maintaining documentation etc Support the Head of Digital, Data and Technology to develop, monitor and report on budget that is in line with More ❯
received• Clear and consistent communication skills across a variety of channels, fostering productive and strong working relationships Critical competencies - technical fit • Good understanding of at least one audit framework; PCIDSS, ISO 27001, Cyber Essentials, NIST, SOC 2, NIS2, Microsoft 365 Certification, etc.• Ability to deliver, without supervision/support, at least one Cyber Practice GRC service• Aptitude … Cyber Securityindustry• Take own initiative to expand information security knowledge• Ability to write concise, accurate and timely reports Desirable competencies • Exposure to multiple industry audit/compliance frameworks; PCIDSS, ISO 27001, Cyber Essentials, NIST, SOC 2, NIS2, etc.• Exposure to Amazon AWS, Microsoft Azure or Google GCPs cloud platforms• Data Privacy Experience, e.g. GDPR, DPA2018 More ❯
role in ensuring the systems, suppliers, and people comply with security standards and regulations. From assessing technical controls and supplier risks to supporting incident response and contributing to the PCI-DSS and ISO 27002:2022 compliance, this is a role where you’ll make a visible impact. Candidate Qualifications and Skills Experience in Financial Services: Proven background working … In-depth knowledge of cybersecurity principles, risk management methodologies, and best practices to protect sensitive data and systems. Regulatory Framework Proficiency: Demonstrated experience with compliance frameworks, including ISO 27002, PCI-DSS, and GDPR, ensuring adherence to industry standards. Threat and Cloud Security Knowledge: Strong awareness of current threat landscapes and familiarity with cloud security principles (experience with Azure More ❯
CompTIA Security+, CEH, GCIH, GCIA CISSP etc) Experience with Microsoft O365 Security solutions and network security operations. Knowledge of Security best practices and regulatory compliance frameworks (e.g., NIST, ISO27001, PCI-DSS etc) Knowledge of the following security products are ideal: ? SEIM (Rapid7 IDR, MS Sentinel, SPLUNK) ? SOAR (Rapid7 ICON, MS Sentinel) ? Endpoint Detection and Response (Microsoft Defender) ? Email More ❯
fraud Onboard key customer-facing and payment systems into the security monitoring platform Perform threat hunting and detection engineering to identify and address emerging risks Support security audits, compliance (PCI-DSS), and post-incident reviews Mentor junior team members and contribute to a culture of continuous improvement Participate in the on-call rotation to ensure fast, effective incident More ❯
Salford, Greater Manchester, North West, United Kingdom Hybrid / WFH Options
AJ BELL BUSINESS SOLUTIONS LIMITED
risk management tools and techniques Experience of security governance and compliance, ideally gained in financial services organisations Demonstrable understanding of Information Security control standards and frameworks e.g. ISO27001, NIST, PCIDSS Awareness and understanding of the Information Security threat landscape Deep understanding of Information Security solutions and controls Experience of Cloud security solutions and standards is highly advantageous More ❯
Manchester, England, United Kingdom Hybrid / WFH Options
AJ Bell
risk management tools and techniques Experience of security governance and compliance, ideally gained in financial services organisations Demonstrable understanding of Information Security control standards and frameworks e.g. ISO27001, NIST, PCIDSS Awareness and understanding of the Information Security threat landscape Deep understanding of Information Security solutions and controls Experience of Cloud security solutions and standards is highly advantageous More ❯
Bradford, England, United Kingdom Hybrid / WFH Options
Techwaka
years of experience in a cyber security analyst role or equivalent Relevant certifications (e.g., CompTIA Security+, CEH, or CISSP) are highly desirable Experience working in a regulated environment (GDPR, PCI-DSS, etc.) is a plus Ability to work independently and manage multiple tasks effectively in a fast-paced environment Benefits Competitive salary with opportunities for performance-based bonuses More ❯
Broad technical knowledge of cyber security controls demonstrated by attainment of appropriate qualifications e.g. CISSP, ISO27001 Lead Implementor or relevant SANS GIAC or equivalent Knowledge of the NIST framework, PCIDSS, GDPR and NIS as well as NCSC cyber guidance. Experience working in an agile delivery environment would be highly advantageous. Specific cyber knowledge and demonstrable experience in More ❯
Loughton, Essex, England, United Kingdom Hybrid / WFH Options
Profile 29
a Work from Office (WFO) role. This role will focus on creating a business strategy, gap analysis and implementation, for securing their Azure-based infrastructure, integrating security automation, ensuring PCIDSS compliance, vulnerability and penetration testing and incident response. This role will focus on developing and maintaining secure, scalable Azure DevOps pipelines and Infrastructure as Code (IaC) using … Security: Manage Web Application Firewalls (WAF) and Intrusion Prevention Systems (IPS). Vulnerability & Penetration Testing: Review Penetration Testing, vulnerability assessments, and security scanning to proactively identify and remediate risks. PCIDSS Compliance: Conduct security audits, risk assessments, and ensure regulatory compliance. DNS Security: Implement and monitor DNS security solutions to prevent cyber threats. Incident Response: Formulating and documenting … to work in the UK unrestricted for at least the next 5 years. Profile 29 recruitment keywords: DevSecOps DevOps Azure cloud security Microsoft Defender Microsoft Sentinel WAF IPS DNS pcidsspcidsspci-dss soar loughton Debden essex London More ❯
Loughton, England, United Kingdom Hybrid / WFH Options
Talkspirit
themselves on customer service and responsible lending. Role Summary This is an initial 6-month contract for an experienced DevSecOps Engineer focused on securing Azure infrastructure, integrating security automation, PCIDSS compliance, vulnerability testing, and incident response. The role involves developing and maintaining secure Azure DevOps pipelines and Infrastructure as Code (IaC) using Terraform, mentoring an internal engineer … and Sentinel for security monitoring. Oversee SOAR solutions including SOC Prime. Manage Web Application Firewalls (WAF) and Intrusion Prevention Systems (IPS). Conduct vulnerability assessments and penetration testing. Ensure PCIDSS compliance through audits and risk assessments. Implement DNS security solutions. Develop incident response processes with third-party support. Develop SIEM solutions, logging, and threat intelligence strategies. Define … Strong expertise in Azure security, Microsoft Defender, and Sentinel. Experience with SOAR technologies, penetration testing, and vulnerability assessments. Proficiency with Terraform and IaC security automation. Knowledge of DevOps pipelines, PCIDSS, SIEM, and security frameworks. Scripting skills (Python, Bash, PowerShell). Excellent interpersonal skills and ability to work onsite daily. Preferred Qualifications Certifications such as Azure Security Engineer More ❯
Edinburgh, Scotland, United Kingdom Hybrid / WFH Options
Lloyds Banking Group
and security baselines across multi-project/multi-subscription environments. Collaborate with compliance, risk and audit teams to team to translate regulatory requirements (e.g. SOC2, ISO 27001, HIPPA, GDPR, PCIDSS) into technical controls in the cloud. Adherence and experience of compliance frameworks (e.g. CIS Benchmarks, NIST 800-53). Building or maintaining automated continuous compliance monitoring solutions More ❯
Halifax, England, United Kingdom Hybrid / WFH Options
Lloyds Banking Group
and security baselines across multi-project/multi-subscription environments. Collaborate with compliance, risk and audit teams to team to translate regulatory requirements (e.g. SOC2, ISO 27001, HIPPA, GDPR, PCIDSS) into technical controls in the cloud. Adherence and experience of compliance frameworks (e.g. CIS Benchmarks, NIST 800-53). Building or maintaining automated continuous compliance monitoring solutions More ❯
Lambda, Elastic Search, Kibana and Kinesis. AWS certification. Knowledge of AWS Workforce Management tools including Quality Monitoring scorin Experience with working in a regulated financial services environment including ISO27001, PCI-DSS and Sarbanes Oxley. Experience with Microsoft technologies including Microsoft Teams direct routing, Microsoft 365 and Azure Entra ID. Experience with Avaya Aura solutions/Verint WFM Applications More ❯
Lambda, Elastic Search, Kibana and Kinesis. AWS certification. Knowledge of AWS Workforce Management tools including Quality Monitoring scorin Experience with working in a regulated financial services environment including ISO27001, PCI-DSS and Sarbanes Oxley. Experience with Microsoft technologies including Microsoft Teams direct routing, Microsoft 365 and Azure Entra ID. Experience with Avaya Aura solutions/Verint WFM Applications More ❯
Maidenhead, Royal Borough of Windsor and Maidenhead, Berkshire, United Kingdom
Kensington Mortgages
Lambda, Elastic Search, Kibana and Kinesis. AWS certification. Knowledge of AWS Workforce Management tools including Quality Monitoring scorin Experience with working in a regulated financial services environment including ISO27001, PCI-DSS and Sarbanes Oxley. Experience with Microsoft technologies including Microsoft Teams direct routing, Microsoft 365 and Azure Entra ID. Experience with Avaya Aura solutions/Verint WFM Applications More ❯
will have: Proven senior leadership experience in information security within large, complex organizations. Deep knowledge of information security standards and frameworks (e.g., CIS, NIST, ISO-27001). Experience managing PCI-DSS compliance across multiple payment channels. Strong understanding of GDPR and experience leading a privacy team. Experience leading and developing teams of specialists. Exceptional communication skills to influence More ❯
and implementation of frameworks such as NIST 800-53 r5, NIST CSF2.0, CIS, ISO27K • Executing advisory & consulting engagements around regulatory risk & compliances such as DORA, NIS2, GDPR, SOX ITGC, PCI-DSS, HIPAA, Data Privacy, NHS, FFIEC etc. • Program and project manage GRC delivery engagements • Participate in strategic risk management and regulatory compliances transition and transformation engagements. • Develop knowledge … technical capabilities around information security, business continuity and technology risk assessments. ISO 27K, NIST, AI Governance, CIS etc. • Good compliance understanding of industry domains such as BFSI – (SOX, FFIEC, PCI-DSS, BASEL, MAS etc.), Healthcare & Life-sciences – (HIPAA, Hi-Trust, FDA CFR, GxP Compliance), Telecom, Retail, Data Privacy (GDPR, CCPA) Energy & Utilities (NERC, FERC) Information Security (ISO More ❯
Guildford, Surrey, United Kingdom Hybrid / WFH Options
Allianz Popular SL
existing governance framework. Assisting cross-functional teams and business units in integrating security measures into business operations. Supporting compliance activities with the Group Information Security Framework, Cyber Essentials, and PCIDSS attestation. Facilitating regular reviews and updates of control and risk management processes to remain effective and responsive to emerging threats and changes in the organizational landscape. Essential … of security transformation and delivery of security projects, particularly within a federated organisation. Desirable Skills Knowledge of Information Security and compliance frameworks, including NIST CSF, ISO 27001, Cyber Essentials, PCIDSS, and DORA, and the ability to design controls that align with these standards. Good awareness of risk methodologies and ability to analyse data for report generation. Skills More ❯
Cambridge, England, United Kingdom Hybrid / WFH Options
Danaher
is responsible for overseeing the strategic direction and implementation of IT Cyber security frameworks, managing IT risks, and ensuring compliance with relevant regulations, including but not limited to SOx, PCIDSS, MLPS. This role involves collaborating with various stakeholders to enhance the organisation compliance posture, mitigate risks, and ensure adherence to internal and external regulatory frameworks while driving … other industry standards Establish and monitor IT policies, procedures, and controls to ensure alignment with corporate governance and regulatory requirements Lead Abcam’s IT compliance efforts related to SOx, PCIDSS, MLPS, NIST, and other relevant internal and external requirements; Ensure IT controls are designed, implemented, and maintained effectively to meet regulatory and audit requirements Coordinate with internal … the job include: Bachelor's or Master’s degree in IT, Security Risk Management, Business or equivalent professional experience Strong knowledge with IT/Cyber regulatory requirements, including SOX, PCIDSS, MLPS, ISO 27001, NIST, GDPR Proven track record of leading IT compliance audits, managing regulatory engagements and working with external and internal regulatory bodies Strong understanding of More ❯
risks and mitigations. Maintain knowledge of security threats, vulnerabilities, and compliance standards. Lead efforts in security monitoring and incident response. Support security risk management and compliance with standards like PCI, GDPR, ISO. Perform other duties as assigned. Qualifications 10+ years of experience in information security, including vulnerability assessment, incident response, and audits. 5+ years working with business leadership and … in a complex environment. Knowledge of security technologies and concepts such as firewalls, intrusion detection, encryption, cloud security, and risk assessment. 3+ years in security compliance and audit support (PCIDSS, GDPR, etc.). Bachelor’s degree in IT or Security, with relevant certifications like CISSP, CRISC, or CISA. Additional notes Ideal candidates are self-starters with multi More ❯
Ensure internal security standards and requirements are met and work with the team to identify gaps and design the required action plan. Maintain compliance with the external regulations (e.g., PCIDSS, PSD2, Swift, GDPR) including working with external auditors to ensure controls are met and all security recommendations are implemented within the required time. Evaluate and provide security … proxy servers and AV etc. Prior DevOps or hands-on administrative experience is highly desirable. CCSP or AWS Certified Security Specialist, or other related cloud security certifications. Knowledge of PCIDSS, GDPR, and SWIFT CISSP and GIAC qualifications Competitive salary and bonus. 23 days holiday (increasing with service 1 day per annum, capped at 28 days) plus birthday … Ensure internal security standards and requirements are met and work with the team to identify gaps and design the required action plan. Maintain compliance with the external regulations (e.g., PCIDSS, PSD2, Swift, GDPR) including working with external auditors to ensure controls are met and all security recommendations are implemented within the required time. Evaluate and provide securityMore ❯
that may include but not limited to; Business Leaders, IT/Security Leaders, Legal etc. Collaborate with businesses to ensure compliance with industry standards and regulations, such as ISO27001, PCI-DSS, GDPR etc. Qualifications: Degree or Diploma in Computer Science, Information Security, or a related field. At least 5 years of experience in a security engineering role. Strong … knowledge of security technologies and concepts, such as Identity Management, SIEM, Encryption, Vulnerability Management, Secure Coding Standards etc. Familiarity with compliance standards and regulations, such as ISO27001, PCI-DSS, and GDPR. Experience with security assessments, penetration testing, and incident response. Excellent communication and collaboration skills, with the ability to work effectively with stakeholders at all levels of the More ❯
Swindon, England, United Kingdom Hybrid / WFH Options
Nationwide
Information Security Officer or Security Assurance roles, will be an advantage Relevant professional qualifications/equivalent - examples include, but are not limited to: CISSP, CISM, CISA, CRISC, ISO 27001, PCIDSS, COBIT, NIST An ability to develop strong working relationships at all levels with excellent communication/influencing skills, written and verbal Ability to act decisively, objectively and More ❯
M5, Salford, Greater Manchester, United Kingdom Hybrid / WFH Options
AJ Bell Business Solutions Limited
risk management tools and techniques Experience of security governance and compliance, ideally gained in financial services organisations Demonstrable understanding of Information Security control standards and frameworks e.g. ISO27001, NIST, PCIDSS Awareness and understanding of the Information Security threat landscape Deep understanding of Information Security solutions and controls Experience of Cloud security solutions and standards is highly advantageous More ❯