plans (BCP). You will work closely with colleagues in IT to enhance the technology & control frameworks regarding information security compliance & cyber threat security. Risk & Compliance You will lead the development, implementation, and continuous improvement of our Information Security Management System (ISMS) in line with ISO27001 and other regulatory standards. … Incident & Breach Management, Risk & Control Management, Vendor & System Assurance. What you'll need to succeed You will ideally have the following experience and qualifications:Professional certifications such as ISO27001LeadImplementer/ Auditor as well as hands-on experience with auditing and maintaining accreditation for ISO27001:2022 You will have a strong background in enterprise risk management, information governance, compliance, and risk assessment. Excellent communication skills - both written and verbal are required - with the ability to influence and educate. Knowledge of Cyber Essentials & SOC2 or other relevant standards would also be beneficial. What you'll get in return Salary More ❯
Salford, England, United Kingdom Hybrid / WFH Options
Intaso
the organisation’s GRC framework. Conduct and document risk assessments, identifying control gaps and recommending appropriate mitigations. Maintain and update internal policies and procedures to ensure compliance with ISO27001, GDPR, and other regulatory requirements. Assist with internal and external audits, including evidence gathering and control testing. Prepare and deliver compliance and risk reports … with stakeholders across all levels of the organisation. Essential Skills and Experience: Previous experience in a GRC, Risk, or Compliance Analyst position. Good knowledge of frameworks such as ISO27001, NIST, or COBIT. Understanding of data protection and privacy regulations (e.g., GDPR). Excellent written, verbal, and interpersonal communication skills. Strong analytical and organisational … abilities. Relevant professional certifications (e.g., ISO27001LeadImplementer/ Auditor, CISM, CRISC, CISSP) are desirable but not essential. More ❯
Salford, Lancashire, United Kingdom Hybrid / WFH Options
of the organisations GRC framework. Conduct and document risk assessments, identifying control gaps and recommending appropriate mitigations. Maintain and update internal policies and procedures to ensure compliance with ISO27001, GDPR, and other regulatory requirements. Assist with internal and external audits, including evidence gathering and control testing. Prepare and deliver compliance and risk reports … with stakeholders across all levels of the organisation. Essential Skills and Experience: Previous experience in a GRC, Risk, or Compliance Analyst position. Good knowledge of frameworks such as ISO27001, NIST, or COBIT. Understanding of data protection and privacy regulations (e.g., GDPR). Excellent written, verbal, and interpersonal communication skills. Strong analytical and organisational … abilities. Relevant professional certifications (e.g., ISO27001LeadImplementer/ Auditor, CISM, CRISC, CISSP) are desirable but not essential. More ❯
manchester, north west england, united kingdom Hybrid / WFH Options
Intaso
the organisation’s GRC framework. Conduct and document risk assessments, identifying control gaps and recommending appropriate mitigations. Maintain and update internal policies and procedures to ensure compliance with ISO27001, GDPR, and other regulatory requirements. Assist with internal and external audits, including evidence gathering and control testing. Prepare and deliver compliance and risk reports … with stakeholders across all levels of the organisation. Essential Skills and Experience: Previous experience in a GRC, Risk, or Compliance Analyst position. Good knowledge of frameworks such as ISO27001, NIST, or COBIT. Understanding of data protection and privacy regulations (e.g., GDPR). Excellent written, verbal, and interpersonal communication skills. Strong analytical and organisational … abilities. Relevant professional certifications (e.g., ISO27001LeadImplementer/ Auditor, CISM, CRISC, CISSP) are desirable but not essential. More ❯
Hereford, Herefordshire, United Kingdom Hybrid / WFH Options
for an experienced Information Security Analyst to join our client who will play a key role in driving compliance, governance, and continual improvement across key security frameworks including ISO27001, PCI DSS, and Cyber Essentials Plus. Lead on the operation and continual improvement of the Information Security Management System (ISMS) Coordinate … internal and external audit readiness for ISO27001, PCI DSS, and Cyber Essentials Plus Draft and update information security policies, procedures, and technical standards Work with procurement and commercial teams to support supplier assurance and risk assessment Contribute to tender responses and bid processes, ensuring security and compliance requirements are met Promote good security … audits, including evidence collation and audit readiness Excellent attention to detail and ability to produce high-quality documentation Experience in supplier risk management and / or tender processes ISO27001Lead Auditor /Implementer, PCIP, CISM, CompTIA Security+, or CISMP certification Hybrid working (3 to 4 days in More ❯
and AWS environments. The successful candidate will maintain and improve the businesses Information Security Management System (ISMS), manage security performance of suppliers and internal resource, ensure compliance with ISO27001, Cyber Essentials Plus, and GDPR, and lead the secure integration of newly acquired businesses into the business’s technology and governance … standards for resilience, security, and operational excellence. To be considered for this Information Security Manager role you must be a Certified Information Security Manager (CISM) or equivalent (CISSP, ISO27001LeadImplementer). You must also have experience in IT infrastructure and security operations across AWS, Azure, and More ❯
Bristol, Gloucestershire, United Kingdom Hybrid / WFH Options
Experis
relationships. As a Security Consultant , you will work on a variety of Defence and Public Sector assignments, requiring current SC clearance. Projects will range from risk assessments and ISO27001 implementations to developing full ISMS frameworks and supporting clients through accreditation. You'll provide expert guidance across standards such as NIST, CAF, and Secure … solutions. We are looking for a Security Consultant with experience in security assurance, accreditation, secure by design, and risk management, alongside recognised qualifications such as CISSP, CISM, or ISO27001Lead Implementer. Ideally you will be familiar with GRC practices in similar environments also. In return, you'll enjoy a competitive More ❯
relationships. As a Security Consultant , you will work on a variety of Defence and Public Sector assignments, requiring current SC clearance. Projects will range from risk assessments and ISO27001 implementations to developing full ISMS frameworks and supporting clients through accreditation. You'll provide expert guidance across standards such as NIST, CAF, and Secure … solutions. We are looking for a Security Consultant with experience in security assurance, accreditation, secure by design, and risk management, alongside recognised qualifications such as CISSP, CISM, or ISO27001Lead Implementer. Ideally you will be familiar with GRC practices in similar environments also. In return, you'll enjoy a competitive More ❯
in regulated or high-availability environments (e.g., aviation, manufacturing, critical infrastructure) is advantageous but not essential. Desirable certifications: CISSP, CISM, or CISA. SABSA, TOGAF, or other architecture certifications. ISO27001Lead Auditor / Implementer. Azure cloud certifications. Why join our client: You’ll be part of a forward-thinking consultancy where More ❯
City of London, London, United Kingdom Hybrid / WFH Options
55 Exec Search
in regulated or high-availability environments (e.g., aviation, manufacturing, critical infrastructure) is advantageous but not essential. Desirable certifications: CISSP, CISM, or CISA. SABSA, TOGAF, or other architecture certifications. ISO27001Lead Auditor / Implementer. Azure cloud certifications. Why join our client: You’ll be part of a forward-thinking consultancy where More ❯
in regulated or high-availability environments (e.g., aviation, manufacturing, critical infrastructure) is advantageous but not essential. Desirable certifications: CISSP, CISM, or CISA. SABSA, TOGAF, or other architecture certifications. ISO27001Lead Auditor / Implementer. Azure cloud certifications. Why join our client: You’ll be part of a forward-thinking consultancy where More ❯
in regulated or high-availability environments (e.g., aviation, manufacturing, critical infrastructure) is advantageous but not essential. Desirable certifications: CISSP, CISM, or CISA. SABSA, TOGAF, or other architecture certifications. ISO27001Lead Auditor / Implementer. Azure cloud certifications. Why join our client: You'll be part of a forward-thinking consultancy where More ❯