Kendal, Cumbria, North West, United Kingdom Hybrid / WFH Options
Des Scanlan IT Recruitment Ltd
IT Infrastructure & Security Specialist - £40k plus benefits Hybrid working - Kendal Are you an IT Engineer who understands how to plan, develop and install great IT Infrastructure? Can you work in a structured way both on your own and as part of a larger team? Do you like getting involved with all areas of technical infrastructure as well as desktop … be an opportunity to join a forward thinking and creative company who are undertaking a modernisation of their systems. What will you be doing? Reporting to the IT Infrastructure & Security Manager, you will be part of a team of four who identify, plan, and deliver all aspects of IT Infrastructure and Security across a group of companies. You … business needs. This role is a hands-on position designing and provisioning new systems/platforms within a controlled project environment. Ensure that the IT strategy for infrastructure and security requirements is adhered to and continuously improved, supporting the business in its day-to-day operations and growth aspirations. The successful planning, implementation and operation of informationsecurityMore ❯
London, England, United Kingdom Hybrid / WFH Options
Sky Ireland Limited
innovate. We turn big ideas into the products, content and services millions of people love. And we do it all right here at Sky. As a Senior Cyber Network Security manager, you will be responsible for designing, implementing and managing the processes, policies and solutions that protect Sky's network data, devices and traffic. You will work to solve … complex technical problems, making technical design decisions, and ensuring adherence to best practices You will drive continuous improvement in practices and ways of working to improve efficiency, security and stakeholder outcomes You will support development and drive the execution of delivery roadmaps and projects in the networks security domain. What you'll do - Develops and implement Network security … organisational data assets. Where required, supports incident response activities including investigation; containment; eradication; recovery; reporting; follow up actions; root cause analysis etc. Works with third party vendors providing network security services Supports risk assessment initiatives by identifying risks associated with new technologies or processes prior to implementation within the Organisation's environment. Supports compliance with applicable laws and regulations More ❯
London, England, United Kingdom Hybrid / WFH Options
SCS Railways
job is brought to you by Jobs/Redefined, the UK's leading over-50s age inclusive jobs board. Job Introduction We are seeking a curious, collaborative and dedicated security and business continuity manager, to focus on the protection of project critical assets and maintain Business Continuity (BC), Resilience and Incident Management (IM) strategies and plans. Reporting to the … head of security, the security and business continuity manager will be responsible for implementing a security strategy for all line of route off-site assets, engaging with Transport for London, Network Rail and other stakeholders. Working to the principles of ISO22301, engage with the wider project team to carry out risk assessments, business impact analyses and documentation … for example. Anyone who applies for a role can ask about flexibility at interview. In return, we will explore what is possible for the role. Role Responsibility Develop a security plan, operation requirements & security assurance regime to ensure effective protection of assets & personnel along the line of route. Attend meetings, read literature, and participate in training or other More ❯
London, South East, England, United Kingdom Hybrid / WFH Options
Sanderson
Cyber Security Project Manager, SC Clearable We are seeking an experienced Cyber Security Project Manager to lead the delivery of high-impact security initiatives within a fast-paced enterprise environment. This is an exciting opportunity to play a key role in strengthening our client's security posture during a critical transformation phase. Rate - £650.00 per day … months with the liklihood of extension Key Responsibilities: Lead end-to-end delivery of cyber security projects, ensuring alignment with business goals and compliance requirements Work across InfoSec, IT, risk, and compliance teams to deliver initiatives such as vulnerability management, identity and access management (IAM), SIEM upgrades, and cloud security improvements Manage third-party vendors and internal stakeholders … execution Develop and maintain project documentation, risk logs, and reports for senior stakeholders Ensure projects adhere to regulatory and governance frameworks Skills and Experience Proven track record delivering cyber security or informationsecurity projects in large, complex organisations Strong understanding of cyber risk, threat management, and technical security controls Excellent stakeholder management and communication skills Experience More ❯
combines advanced design, planning, implementation, and troubleshooting of network systems with leadership responsibilities. The role aligns technical capabilities with business goals, facilitating cross-functional collaboration and ensuring compliance with security and performance standards. Working at Baker McKenzie: Baker McKenzie is the world's leading law firm with offices all over the world. Our Belfast Centre is home to over … infrastructure, ensuring compliance with service-level agreements (SLAs) Monitor network performance, perform periodic assessments, and implement enhancements to meet or exceed operational targets Collaborate with internal stakeholders to enforce informationsecurity policies and remediate non-compliance Define and participate in disaster recovery (DR) and business continuity planning (BCP) practices Monitor internal and external compliance with the Firm's … informationsecurity policies and procedures. Identify non-compliant practices and assist with remediation Vendor & Project Management: Establish and maintain relationships with network-related vendors, ensuring timely support and cost-effective solutions Manage network-related projects, including planning, implementation, and documentation Provide status updates and detailed reports to the IT leadership Documentation & Training: Maintain and enhance the Firm's More ❯
Roles & Responsibilities: You analyze complex enterprise informationsecurity programs and infrastructure in both the public and private sectors. You assist with assessments of clients' IT and security processes, risks, controls, and compliance against leading practices, industry standards, and/or client frameworks. You assess capability and maturity, identify gaps in design and execution, and communicate issues and … people models, to address key and evolving risks. You serve as the interface between client executives and hands-on technology practitioners, driving meaningful strategic change in the areas of information protection, data security and privacy, security operations, and business continuity. You articulate the business risks of technical vulnerabilities and communicate findings to client personnel. You assist clients … develop a remediation and improvement plan. Skills & Qualifications: You have a master's degree. You have a minimum of three years of experience in the field of cybersecurity and information risk management. You have working knowledge of leading frameworks such as ISO 27001, NIST Cybersecurity Framework (CSF), NIST 800-53, CIS, and the Cybersecurity Maturity Model. You have experience More ❯
Job Description As a Senior Engineer - Threat Modelling, you will be part of a cross-functional team delivering digital business transformation solutions to our clients. This role focuses on Security Architecture and Threat Modelling, including governance, evaluation of public cloud services, and conducting security reviews for Public Cloud Providers. Collaboration with Engineering, InformationSecurity, Program Management … and Development teams is essential. You will conduct technical architecture reviews to identify security opportunities, threats, and mitigation strategies. Your Impact Conduct threat modeling exercises using established methodologies. Identify potential threats and specify mitigation controls. Manage the lifecycle of threats and controls, ensuring updates. Deliver threat models within deadlines. Provide feedback to improve threat modeling processes. Present findings to … leadership and stakeholders. Qualifications Your Skills & Experience We seek candidates with experience in: Proficiency in GCP (essential) Security architecture principles, frameworks, and best practices Threat modeling methodologies like MITRE ATT&CK, STRIDE, PASTA Cybersecurity experience of 5+ years Security practices including authentication, authorization, logging, encryption, infrastructure security, network segmentation Knowledge of cloud security frameworks Rest API More ❯
Job Title : IT Security Specialist Contract Type: Permanent, Part Time, Full Time, Job Share option available Salary Range: £37,600 - £56,400 Location: Eastleigh - hybrid Closing Date for applications: Thursday 3rd July IT Security Specialist: We have an exciting opportunity for an IT Security Specialist to join our InformationSecurity team at Ageas, reporting directly … to the Counter Threat Unit Manager. As an IT Security Specialist, you will support the day-to-day operations of the Counter Threat Unit, applying your strong background in infrastructure engineering, cloud-based architectures, and solution delivery. You will contribute to maintaining our secure systems across hybrid environments, leveraging your expertise in both on-premises and cloud platforms such … as Azure, AWS, and GCP. Main Responsibilities as IT Security Specialist: Assist in gathering and analysing threat intelligence; monitor systems and networks to identify anomalies and support situational awareness. Follow established processes to help ensure compliance with legal, regulatory, and internal security requirements. Contribute to the investigation and resolution of security incidents, working in line with organisational More ❯
Belfast, Northern Ireland, United Kingdom Hybrid / WFH Options
Baker McKenzie Belfast Centre
combines advanced design, planning, implementation, and troubleshooting of network systems with leadership responsibilities. The role aligns technical capabilities with business goals, facilitating cross-functional collaboration and ensuring compliance with security and performance standards. Baker McKenzie is the world’s leading law firm with offices all over the world. Our Belfast Centre is home to over 400 colleagues in both … infrastructure, ensuring compliance with service-level agreements (SLAs) Monitor network performance, perform periodic assessments, and implement enhancements to meet or exceed operational targets Collaborate with internal stakeholders to enforce informationsecurity policies and remediate non-compliance Define and participate in disaster recovery (DR) and business continuity planning (BCP) practices Monitor internal and external compliance with the Firm’s … informationsecurity policies and procedures. Identify non-compliant practices and assist with remediation Establish and maintain relationships with network-related vendors, ensuring timely support and cost-effective solutions Manage network-related projects, including planning, implementation, and documentation Provide status updates and detailed reports to the IT leadership Documentation & Training: Maintain and enhance the Firm’s network informationMore ❯
Reading, England, United Kingdom Hybrid / WFH Options
SITA
something big? Are you ready to love your job? The adventure begins right here, with you, at SITA. PURPOSE As a Lead Penetration Tester , part of the SITA Enterprise InformationSecurity Office, you will assess SITA infrastructure and products to identify informationsecurity weaknesses and provide remediation strategies. You will also contribute to the automation of … security testing as part of the product development lifecycle. Key Responsibilities Conduct authorized assessment of infrastructure and applications to proactively identify security weaknesses. Verify weaknesses by leveraging attacker techniques to evaluate the difficulty and effectiveness of potential attack from various threat actors. Provide comprehensive and actionable recommendations to counter the threat posed by identified security weaknesses, given … the applicable threat landscape. Bring an offensive mindset to the design of internal solutions and provide input to the selection of countermeasures and security controls through technical risk assessment. Report findings to technical audiences (e.g.: product development teams, IT, operations), and to business management and leadership, indicating the impact to the business of verified weaknesses found. Research and develop More ❯
primary purpose of this role is to support Grant Thornton International Ltd.’s internal cybersecurity assessment programme, which monitors our global network of Member Firms for compliance against our informationsecurity framework. The ideal candidate will have experience evaluating IT Infrastructure Security technologies, IT general computer controls, industry frameworks (e.g. NIST) and will bring strong information technology audit or security consulting experience to the programme. Location United Kingdom/Europe Main responsibilities The Senior Associate will support with the implementation of the cybersecurity compliance programme, including: Collaboration with IT assurance engagement teams across the GT network Review of data and evidence obtained in the field, including reviews for completeness, consistency and clarity. Evaluate cybersecurity … assessment cycles. This role will also include broader support to the team such as: Respond to firm enquiries and mailbox management. Provide advice and guidance on a variety of security topics. Develop guides, templates and other material to support the implementation of security standards. Research security best practices and provide appropriate reporting. Person specification Education/qualifications More ❯
London, England, United Kingdom Hybrid / WFH Options
TripAdvisor LLC
result of compliance reviews, internal audits, third party audits or otherwise escalated. Supporting the Compliance Team and other key stakeholders on initiatives as assigned. Supporting the Privacy, Cybersecurity and InformationSecurity teams with projects to include compliance readiness for new laws, regulations (e.g. GDPR and CCPA), frameworks (e.g. COSO and NIST cybersecurity frameworks) and standards (e.g, DORA, PCI … Supporting regulatory, internal or external audits or certifications. Provide knowledge and operational input on our Third-Party Risk Management framework, including: Performing third-party vendor risk assessments, evaluating privacy, informationsecurity, and AI compliance risks, among others, during onboarding and renewal processes. Reviewing, updating and maintaining third party risk questionnaires and registers collaborating with various departments, including Legal … InformationSecurity, IT and Procurement. Support the Privacy team on a number of Data Privacy enhancing initiatives, including: conducting and document end-to-end Privacy Impact Assessments (PIAs) for new and existing products and processes, supporting compliance with GDPR, CCPA, and other privacy regulations. Maintain and update the Record of Processing Activities (ROPA) in collaboration with cross-functional More ❯
London, England, United Kingdom Hybrid / WFH Options
Publicisgroupe
Modelling you will be a part of a smart cross-functional team delivering digital business transformation solutions to our clients. This position entails an individual contributor role focused on Security Architecture and Threat Modelling, encompassing governance, evaluation of public cloud services, and conducting security reviews for Public Cloud Providers. Collaboration and partnership with Engineering, InformationSecurity, Program Management, and Development teams are essential. The candidate will conduct technical architecture reviews to pinpoint security opportunities, identify exploitable threats, and propose mitigation strategies. Your Impact Conduct thorough threat modeling exercises utilizing established methodologies and frameworks. Maintain a rigorous standard of excellence in identifying potential threats and specifying effective mitigation controls. Manage the lifecycle of identified threats … relevant technical stakeholders. Qualifications Your Skills & Experience We are seeking an individual with experience in a range of technologies and processes including: Proficiency in GCP - essential Strong knowledge of security architecture principles, frameworks, and best practices Experience working with threat modeling methodologies such as MITRE ATT&CK, STRIDE, PASTA etc. Overall experience in Cybersecurity: 5+ years Security practices More ❯
Belfast, Northern Ireland, United Kingdom Hybrid / WFH Options
Version 1
years’ practical experience, gained within the last 7 years in Business Analysis, with a track record in large scale change and/or technology programmes/projects Experience of informationsecurity, cyber security and privacy protection, centred on the ISO27001:2022 informationsecurity standard and the detailed controls set out in ISO27002:2022 ISO27001 … requirements clearly to technical resources and relevant points of technical designs and constraints to business resources Experience in Agile and Waterfall/traditional methodologies Pragmatic and results orientated Additional Information At Version 1, we believe in providing our employees with a comprehensive benefits package that prioritises their wellbeing, professional growth, and financial stability. Share in our success with our More ❯
MyData-TRUST - Data Protection & Privacy for Life Sciences
legal compliance, build patient trust, and propel innovation. Founded in 2017, MyData-TRUST is composed of a global multi-disciplinary team of data privacy, legal, life sciences IT, and informationsecurity experts. MyData-TRUST offers a full range of privacy and data protection services, including Data Protection Officer as a Service, customized consulting and privacy management solutions. Medior … we looking for ? Responsibilities Acts as legal support in the context of his/her client portofolio. Respond to operational team and client's requests for legal advice, provides information on legal and regulatory obligations in terms of data protection and recommends pragmatic & feasible solutions. Proactively keeping abreast of regulatory, case law and doctrinal developments in the field for … informed about the latest development, enhancing legal methodologies, tools and best practices. Support marketing and thought leadership efforts by contributing to industry publications, webinars and external engagements. Organizes internal information sessions on legal developments in the field of data protection in order to keep operational knowledge up-to-date. Qualifications 4 years of practical experience in GDPR & Data Protection More ❯
Leeds, England, United Kingdom Hybrid / WFH Options
Bupa
components of customers audits, including planning, scoping, preparation, documentation, delivery and follow-up; in direct partnership with customers and internal Commercial teams. Liaise with subject matter experts to ensure information is gathered in a timely manner to ensure customer requests are correctly responded to and protect Bupa. Reviewing and negotiating customer contractual IT agreements and clauses to ensure that … responsibilities in either a Big 8 external practice, Internal Audit, or supplier/customer assurance function for a financially regulated/FinTech entity. Certified in relevant audit, risk and security certifications preferably with one of the following: IIA, CISA, CISM, or CISSP. Strong informationsecurity/assurance, audit, compliance and risk knowledge, experience of IT risk and … components of customers audits, including planning, scoping, preparation, documentation, delivery and follow-up; in direct partnership with customers and internal Commercial teams. Liaise with subject matter experts to ensure information is gathered in a timely manner to ensure customer requests are correctly responded to and protect Bupa. Reviewing and negotiating customer contractual IT agreements and clauses to ensure that More ❯
London, England, United Kingdom Hybrid / WFH Options
Control Risks
post incident cyber crisis management independently or in conjunction with Control Risks response department. Conduct initial assessment of case providing immediate verbal/written advice, recorded in an initial information gathering form. Provide clients with on-going advice covering: Liaison with key stakeholders, communicators/intermediaries Options, contingency plans and recommendations for managing the technical and non-technical elements … and approaches and tailoring the approach in changing market conditions Identifying potential new areas of growth and opportunity Essential Proven experience in responding to cyber attacks Proven experience in informationsecurity related advisory Demonstrable experience of operating within a commercial environment Track record of developing consultative relationships with clients Fluent in English (written and spoken) Excellent presentation skills … Excellent analytical skills Preferred Proven experience leading crisis response cases Technical degree or demonstrated knowledge of common networks, software and hardware used in business environments Relevant qualifications e.g., InformationSecurity Degree, Masters, CISSP, CISM, CRISC, CEH,SAN Demonstrable management skills Fluency in a second language, namely German or Arabic is preferred Control Risks offers a competitively positioned compensation More ❯
London, England, United Kingdom Hybrid / WFH Options
Control Risks
post incident cyber crisis management independently or in conjunction with Control Risks response department. Conduct initial assessment of case providing immediate verbal/written advice, recorded in an initial information gathering form. Provide clients with on-going advice covering: Liaison with key stakeholders, communicators/intermediaries Options, contingency plans and recommendations for managing the technical and non-technical elements … approaches and tailoring the approach in changing market conditions Identifying potential new areas of growth and opportunity Requirements Essential Proven experience in responding to cyber attacks Proven experience in informationsecurity related advisory Demonstrable experience of operating within a commercial environment Track record of developing consultative relationships with clients Fluent in English (written and spoken) Excellent presentation skills … Excellent analytical skills Preferred Proven experience leading crisis response cases Technical degree or demonstrated knowledge of common networks, software and hardware used in business environments Relevant qualifications e.g., InformationSecurity Degree, Masters, CISSP, CISM, CRISC, CEH,SAN Demonstrable management skills Fluency in a second language, namely German or Arabic is preferred Benefits Control Risks offers a competitively positioned More ❯
London, England, United Kingdom Hybrid / WFH Options
The DPO Centre Ltd
attention to detail The ability to work under pressure and juggle multiple active priorities Excellent written, verbal and non-verbal communication skills Advantageous Skills Knowledge of IT and cyber security and ISO certifications Written and spoken EU language skills Specific knowledge of the health, tech or finance sectors e.g. Clinical trials, Caldicott Guardian, FOI, DSPT Toolkit etc Knowledge of … weeks ago London, England, United Kingdom 1 week ago London, England, United Kingdom 2 weeks ago London, England, United Kingdom 5 days ago Communication Officer (Public Relations and Information) London, England, United Kingdom 2 weeks ago Institutional Client Onboarding Associate London, England, United Kingdom 1 day ago City Of London, England, United Kingdom 1 week ago Personal Data Management … and InformationSecurity Officer London, England, United Kingdom 4 days ago London, England, United Kingdom 2 weeks ago London, England, United Kingdom 3 days ago Security & InformationSecurity Architect London, England, United Kingdom 2 days ago London, England, United Kingdom 1 week ago London, England, United Kingdom 1 day ago Assistant Underwriter - Accident & Health London More ❯
models, subscription-based services, SLAs, and regulatory compliance. Advise on data protection, privacy, and cybersecurity obligations in commercial agreements, ensuring compliance with GDPR and other regulations. Draft and negotiate informationsecurity addenda, Data Processing Addendums (DPAs), and related agreements. Apply a working knowledge of revenue recognition principles to structure transactions in alignment with ASC 606 and collaborate with … revenue outcomes. Previous SaaS, Cloud or related infrastructure experience, with a track record of negotiating complex agreements in enterprise IT or cloud computing environments preferred. Expertise in privacy and informationsecurity laws and regulations, with experience drafting and negotiating DPAs and security addenda, as well as familiarity with product and security addenda preferred. Previous experience with More ❯
models, subscription-based services, SLAs, and regulatory compliance. Advise on data protection, privacy, and cybersecurity obligations in commercial agreements, ensuring compliance with GDPR and other regulations. Draft and negotiate informationsecurity addenda, Data Processing Addendums (DPAs), and related agreements. Apply a working knowledge of revenue recognition principles to structure transactions in alignment with ASC 606 and collaborate with … revenue outcomes. Previous SaaS, Cloud or related infrastructure experience, with a track record of negotiating complex agreements in enterprise IT or cloud computing environments preferred. Expertise in privacy and informationsecurity laws and regulations, with experience drafting and negotiating DPAs and security addenda, as well as familiarity with product and security addenda preferred. Previous experience with More ❯
Hammersmith, England, United Kingdom Hybrid / WFH Options
Nutanix
models, subscription-based services, SLAs, and regulatory compliance. Advise on data protection, privacy, and cybersecurity obligations in commercial agreements, ensuring compliance with GDPR and other regulations. Draft and negotiate informationsecurity addenda, Data Processing Addendums (DPAs), and related agreements. Apply a working knowledge of revenue recognition principles to structure transactions in alignment with ASC 606 and collaborate with … revenue outcomes. Previous SaaS, Cloud or related infrastructure experience, with a track record of negotiating complex agreements in enterprise IT or cloud computing environments preferred. Expertise in privacy and informationsecurity laws and regulations, with experience drafting and negotiating DPAs and security addenda, as well as familiarity with product and security addenda preferred. Previous experience with More ❯
Staines-upon-Thames, Middlesex, England, United Kingdom Hybrid / WFH Options
Bupa UK
components of customers audits, including planning, scoping, preparation, documentation, delivery and follow-up; in direct partnership with customers and internal Commercial teams. Liaise with subject matter experts to ensure information is gathered in a timely manner to ensure customer requests are correctly responded to and protect Bupa. Reviewing and negotiating customer contractual IT agreements and clauses to ensure that … responsibilities in either a Big 8 external practice, Internal Audit, or supplier/customer assurance function for a financially regulated/FinTech entity. Certified in relevant audit, risk and security certifications preferably with one of the following: IIA, CISA, CISM, or CISSP. Strong informationsecurity/assurance, audit, compliance and risk knowledge, experience of IT risk and More ❯
Farringdon, England, United Kingdom Hybrid / WFH Options
ALTEN LTD - UK
Who we are: ALTEN, an engineering and technology consultancy, We are a leading Engineering and IT consultancy operating across 30 countries, making waves in all sectors: Aeronautics, Space, Defence, Security and Naval, Automotive, Rail and Mobility, Energy and environment, Life Sciences and Health, Industrial Equipment and electronics, Telecoms, Banking, Finance & Insurance, Retail, Services & Medias, Public Services & Government. With a … UK entities, working closely with the Group Legal Corporate Department. Manage delegations of authority, signatures, and contracts for key personnel, ensuring governance standards are upheld. Support the Quality and InformationSecurity teams with review of governing policies and procedures. Support Finance team with legal and compliance queries, including for audit purposes. Insurance & Compliance: Work with the Group Insurance … ALTEN’s insurance policies across the UK entities. Support the Group Compliance Department in the deployment of the anti-corruption program, data protection program, international trade sanctions, and national security programs. M&A Legal Support: Collaborate with the Group M&A team to provide legal support during mergers and acquisitions. Participate in legal due diligence for targets and manage More ❯
London, England, United Kingdom Hybrid / WFH Options
Bupa
components of customers audits, including planning, scoping, preparation, documentation, delivery and follow-up; in direct partnership with customers and internal Commercial teams. Liaise with subject matter experts to ensure information is gathered in a timely manner to ensure customer requests are correctly responded to and protect Bupa. Reviewing and negotiating customer contractual IT agreements and clauses to ensure that … responsibilities in either a Big 8 external practice, Internal Audit, or supplier/customer assurance function for a financially regulated/FinTech entity. Certified in relevant audit, risk and security certifications preferably with one of the following: IIA, CISA, CISM, or CISSP. Strong informationsecurity/assurance, audit, compliance and risk knowledge, experience of IT risk and More ❯