Merseyside, England, United Kingdom Hybrid / WFH Options
Maxwell Bond
Friday, 9:00 AM – 5:30 PM A growing UK-based organisation in the insurance and financial services sector is looking for a GRC Analyst to join their expanding InformationSecurity & Risk team. This opportunity offers a hybrid working model and the chance to play a key role in shaping governance, risk, and compliance across the business during … a period of transformation. The role provides visibility across senior stakeholders and business units while ensuring alignment with regulatory and industry standards. 🔐 Key Responsibilities Support and lead security risk assessments , ensuring risks are documented, tracked, and remediated. Develop, review, and maintain informationsecurity and governance policies, standards, and procedures . Manage and improve third-party/vendor … risk management processes and assurance activities. Monitor compliance with regulatory requirements (e.g. FCA, GDPR ) and security frameworks (e.g. ISO 27001, NIST, CIS ). Provide oversight on the risk register and support risk committees with reporting and metrics. Support internal and external audits , collating evidence and ensuring timely remediation of findings. Deliver security awareness initiatives and foster a strong More ❯
Reading, Berkshire, United Kingdom Hybrid / WFH Options
Thames Water Utilities Limited
Job title Control Testing Lead - Cyber Security Ref 42015 Division Digital Location Hybrid - Clearwater Court - RG1 8DB Contract type Permanent Full/Part-time Full-time Hours 36 Salary A salary up to £78,000 per annum, depending on experience Job grade B Closing date 03/09/2025 As a Control Testing Lead , you will play a … key role within the InformationSecurity team, supporting the Control Test and Assurance Manager in the delivery of the Control Test and Assurance Programme. This role requires solid experience in control testing within InformationSecurity, with a focus on evaluating control effectiveness and ensuring compliance with internal policies and standards. This role will report directly to … Manager, with whom you will work to deliver the goals of the company to have a stable and fit-for-purpose control testing environment that supports the organisation's security and compliance objectives. What you'll be doing as a Control Testing Lead - Cyber Security Support the implementation of the Control Testing Framework. Execute control testing in line More ❯
Greater Bristol Area, United Kingdom Hybrid / WFH Options
Logiq
excellent benefits package. Logiq is a fast-growing Technology Company, providing cutting-edge solutions to high-risk clients across Private and Public Sector. Due to rapid growth in our Security Capability , we are looking for experienced Security Consultants to join our team. What is Cyber Risk Management? Cyber risk management ensures that organisations can anticipate, withstand, and recover … from cyber incidents, aligning security efforts with business objectives, regulatory requirements, and industry best practices. It involves applying risk-based decision-making to ensure security measures are proportionate to the threats faced, balancing protection, operational effectiveness, and compliance with the organisations need and context. As leading players in MOD’s cyber security transformation to Secure by Design … SbD), we are looking for team members and leaders who share our vision that cyber risk management is driven by business requirements and a holistic view of security that can guide clients to secure solutions that support their business objectives. Why Join Us? Work on impactful projects that drive efficiency and innovation across diverse sectors. Access professional development pathways More ❯
newport, wales, united kingdom Hybrid / WFH Options
Logiq
excellent benefits package. Logiq is a fast-growing Technology Company, providing cutting-edge solutions to high-risk clients across Private and Public Sector. Due to rapid growth in our Security Capability , we are looking for experienced Security Consultants to join our team. What is Cyber Risk Management? Cyber risk management ensures that organisations can anticipate, withstand, and recover … from cyber incidents, aligning security efforts with business objectives, regulatory requirements, and industry best practices. It involves applying risk-based decision-making to ensure security measures are proportionate to the threats faced, balancing protection, operational effectiveness, and compliance with the organisations need and context. As leading players in MOD’s cyber security transformation to Secure by Design … SbD), we are looking for team members and leaders who share our vision that cyber risk management is driven by business requirements and a holistic view of security that can guide clients to secure solutions that support their business objectives. Why Join Us? Work on impactful projects that drive efficiency and innovation across diverse sectors. Access professional development pathways More ❯
bath, south west england, united kingdom Hybrid / WFH Options
Logiq
excellent benefits package. Logiq is a fast-growing Technology Company, providing cutting-edge solutions to high-risk clients across Private and Public Sector. Due to rapid growth in our Security Capability , we are looking for experienced Security Consultants to join our team. What is Cyber Risk Management? Cyber risk management ensures that organisations can anticipate, withstand, and recover … from cyber incidents, aligning security efforts with business objectives, regulatory requirements, and industry best practices. It involves applying risk-based decision-making to ensure security measures are proportionate to the threats faced, balancing protection, operational effectiveness, and compliance with the organisations need and context. As leading players in MOD’s cyber security transformation to Secure by Design … SbD), we are looking for team members and leaders who share our vision that cyber risk management is driven by business requirements and a holistic view of security that can guide clients to secure solutions that support their business objectives. Why Join Us? Work on impactful projects that drive efficiency and innovation across diverse sectors. Access professional development pathways More ❯
bradley stoke, south west england, united kingdom Hybrid / WFH Options
Logiq
excellent benefits package. Logiq is a fast-growing Technology Company, providing cutting-edge solutions to high-risk clients across Private and Public Sector. Due to rapid growth in our Security Capability , we are looking for experienced Security Consultants to join our team. What is Cyber Risk Management? Cyber risk management ensures that organisations can anticipate, withstand, and recover … from cyber incidents, aligning security efforts with business objectives, regulatory requirements, and industry best practices. It involves applying risk-based decision-making to ensure security measures are proportionate to the threats faced, balancing protection, operational effectiveness, and compliance with the organisations need and context. As leading players in MOD’s cyber security transformation to Secure by Design … SbD), we are looking for team members and leaders who share our vision that cyber risk management is driven by business requirements and a holistic view of security that can guide clients to secure solutions that support their business objectives. Why Join Us? Work on impactful projects that drive efficiency and innovation across diverse sectors. Access professional development pathways More ❯
the BGIUK Market Unit under the guidance of a Head of IT Risk and Control with the primary purpose to support the identification, articulation, assessment and ongoing management of InformationSecurity and Technology Management Risks and Controls for each Business Unit (UKI, BG, Care, Clinics, Dental, Cromwell and Enterprise Platforms). Regularly reporting Risk, risk appetite position and … all Technology Risks; IT Strategy and Architecture, Service Management/Stability, Capacity/Capability Management, Disaster Recovery and Crisis Management. This role will also integrate the output from the InformationSecurity Risk and Transformation Risk teams into the overall risk reporting for each Business Unit. You'll help us make health happen through: Interpreting and communicating to the … Business Unit changes to Risk Polices, Business/IT Strategy, legislation that impact the existing Risk and Control Framework. Identifying and assessing Technology Management and InformationSecurity issues so that control environments are properly defined and residual risk regularly assessed. Developing and managing the execution of the controls assurance plan. Overseeing the team conducting the control testing for More ❯
have some of what we are looking for, even if you're not 100% sure, we would love to hear from you. Role overview You will be supporting the InformationSecurity manager in assuring Hastings' compliance with its regulatory and legal obligations, by working with the business to help to identify and manage our technology, information and … cyber security risks. You'll also be supporting our Operational Resilience activities, undertaking due diligence on our third-party technology suppliers, and assisting with incidents and investigations. The role covers organisational security, people security, physical (site) security and technical security controls. Skills Knowledge & Experience Cyber Security Knowledge - You'll have a sound understanding of … cyber and informationsecurity, including frameworks like NIST and ISO IEC 27002:202. It will be great if you also know about PCI-DSS V4.0 as well. Clear Communication -You'll be able to discuss these with technical and non-technical stakeholders in a way which is accessible and understood. Threat landscape - You'll understand the current threat More ❯
Newcastle Upon Tyne, United Kingdom Hybrid / WFH Options
NHS Business Services Authority
Job summary The Information Governance Lead will support the handling of Freedom of Information (FOI) and Data Protection (DP) information requests across the NHSBSA. The post-holder will be responsible for supporting the implementation of all relevant policies and procedures and for recommending changes to ensure the maintenance of compliance with data protection and information rights … scheme o Access to a wide range of benefits and high street discounts! Main duties of the job To use their specialist knowledge to provide advice and training around information governance, including FOI, DP, information rights and confidentiality. To make recommendations for the provision of clear and accessible guidance to all staff groups, to ensure the organisation meets … both its legal obligations. To take a solution focused approach to Information Governance encouraging a culture of identifying opportunities and designing systems and services in a way that complies with Data Protection, Freedom of Information legislation and in line with our wider NHSBSA governance policies ensuring that the implementation of the service is achieved in a practical and More ❯
Security Architect Must have the right to work in the UK. Role Purpose As a Security Architect, you will serve as a key technical expert within the Global Cyber and InformationSecurity (GCIS) organisation. This role operates as part of a globally distributed team, with counterparts in the US and APAC regions. Your primary responsibility is … to define and develop security architecture frameworks, design patterns, reference models, standards, best practices, and technical specifications. You will collaborate closely with InformationSecurity peers, IT & Infrastructure teams, and business stakeholders across the enterprise to provide strategic and technical security guidance aligned with organisational goals. Key Responsibilities Develop and maintain enterprise-wide security architectural standards … design patterns, and technical documentation. Continuously assess and recommend improvements to the global security architecture to enhance protection, manage risks, and optimise cost-effectiveness. Provide architectural oversight and consultation to project teams to ensure compliance with security standards and best practices. Design solutions that align security requirements with business objectives. Proactively identify architectural risks and recommend mitigation More ❯
Basingstoke, Hampshire, South East, United Kingdom Hybrid / WFH Options
Exertis
Company description: Exertis UK Job description: Job Title: InformationSecurity Officer Company: Exertis UK Salary: Up to £50,000 DOE plus 10% Bonus OTE Location: Basingstoke RG24 8EH or Burnley BB12 7BF (hybrid working, Monday to Friday, 9 am5:30 pm) Contract Type: Permanent Description: Are you looking to take your IT career to the next level in … a fast-paced, supportive, and rewarding environment? Join our team at Exertis UK as an InformationSecurity Officer, where youll be responsible for the hand on implementation, enforcement and continuous improvement of our security policies, procedures and controls. As part of the team, youll: Oversee the implementation and enforcement of security policies, standards and tools including … endpoint protection, SIEM, SOC and vulnerability management systems. Conduct risk assessments and threat modelling, maintaining the IT risk register and supporting the deployment of security controls, aligned with regulatory and business requirements. Lead incident response efforts including containment, investigation, recovery and post incident reviews while maintaining robust response plans and playbooks. Drive compliance with standards such as ISO More ❯
London, South East, England, United Kingdom Hybrid / WFH Options
Michael Page Technology
Model Transformation Standardise and simplify technology governance, policies, and processes to reflect a modern, strategic IT function. Embed frameworks such as: ISO/IEC 27001: The international standard for informationsecurity management systems (ISMS), ensuring data confidentiality, integrity, and availability. ITIL (Information Technology Infrastructure Library): A framework for standardising IT service management practices and aligning them with … developing strong working relationships with key external partners Experience in implementing IT strategies Experienced in running and managing IT infrastructure, application, and network services Ensuring organisation-wide compliance with informationsecurity and governance policies ITIL/ISO 20000/ISO 9001 experience Experience in similar organisation structures (many sites and geographically spread) Experience of upper mid/large … enterprise IT service provision Experienced in running and managing outsourced IT services Skills and Abilities: IT Service Management IT Project Management Proven ability in the development and implementation of informationsecurity and information governance policies, procedures, and mechanisms Proven ability to implement effective disaster recovery and business continuity plans High degree of analytical and problem-solving skills More ❯
Model Transformation Standardise and simplify technology governance, policies, and processes to reflect a modern, strategic IT function. Embed frameworks such as: ISO/IEC 27001: The international standard for informationsecurity management systems (ISMS), ensuring data confidentiality, integrity, and availability. ITIL (Information Technology Infrastructure Library): A framework for standardising IT service management practices and aligning them with … developing strong working relationships with key external partners Experience in implementing IT strategies Experienced in running and managing IT infrastructure, application, and network services Ensuring organisation-wide compliance with informationsecurity and governance policies ITIL/ISO 20000/ISO 9001 experience Experience in similar organisation structures (many sites and geographically spread) Experience of upper mid/large … enterprise IT service provision Experienced in running and managing outsourced IT services Skills and Abilities: IT Service Management IT Project Management Proven ability in the development and implementation of informationsecurity and information governance policies, procedures, and mechanisms Proven ability to implement effective disaster recovery and business continuity plans High degree of analytical and problem-solving skills More ❯
London, South East, England, United Kingdom Hybrid / WFH Options
Devonshire Hayes Recruitment Specialists Limited
Are you an experienced Cyber Security Specialist? If so I have an exciting opportunity for you with a London based Financial Services firm. The role is permanent with a salary of up to £58,300 and the role is hybrid with 2x days a week on site at their London office. Strong understanding of information and cyber security principles and practices. Experience with security assessment and risk management methodologies. Proficiency in cloud security, particularly with Azure security tools and services. Knowledge of security standards and frameworks (e.g., ISO 27001, NIST, CIS). Familiarity with security technologies such as firewalls, web proxies/remote access solutions. Experience with ZTNA, CTI, threat modelling is … beneficial. Bachelor’s degree in informationsecurity, Computer Science, or a related field, or relevant industry experience. Relevant security certifications (e.g., CISSP, CISM, CEH) are highly desirable. Proven experience in an informationsecurity role, preferably in a cloud-based environment. More ❯
and maintain Microsoft 365 services (Exchange Online, SharePoint, Teams, Intune, OneDrive). Manage Azure resources including virtual machines, storage accounts, networking, and identity services. Monitor system performance, availability, and security across M365 and Azure environments. Implement and maintain conditional access policies, MFA, and compliance configurations. Provide Tier 2/3 support for escalated issues related to M365 and Azure. … tasks using PowerShell and other scripting tools. Assist in onboarding/offboarding processes and user provisioning. Maintain documentation for system configurations, procedures, and troubleshooting guides. Collaborate with IT and security teams to ensure best practices in cloud governance. Participate in disaster recovery planning and testing. Work closely with the IT Operations team to ensure friendly and effective on-site … and remote support for HALO staff across the UK and 30+ overseas programmes. Monitor and investigate Microsoft security alerts and assist with response to informationsecurity incidents. Assist in the implementation of informationsecurity technical controls to uphold internal policies and data protection laws. Design and deliver targeted training and knowledge-sharing sessions for staff More ❯
strategy, defines key strategic offerings that WSP wants to grow and invest in, and 'Operational Technology Cybersecurity' is one of them. This marks a significant acknowledgement of our cyber security success story so far and the commitment to our teams and clients to continue to deliver cyber security services applied and in context. WSP has a vacant position … for a Cyber Security Consultant to join our industry-leading Cyber Security Capability team, which is delivering specialist cyber security services to a wide spectrum of industries. As a key member of the team, you will be able to access a range of benefits, from targeted professional development, the opportunity to contribute to the direction of our … business and to help us improve the way we do things. You will contribute to the capability of our team providing cyber security and strategy advice, technical assurance, solution guidance, specification, design, and testing assurance to our domestic and international clients. You will provide technical consultancy services in close alignment with client needs and will be leading WSP's More ❯
London, South East, England, United Kingdom Hybrid / WFH Options
Circle Recruitment
Role: Android Security EngineerSalary/Rate: £500-600 per day Location: hybrid London, mainly remoteContract Duration: until December 2025 A unique opportunity has arisen for a skilled professional with a strong background in mobile application security to join a specialist team tackling complex technical challenges. The successful candidate will be responsible for conducting in-depth analysis of Android … applications, providing clear and actionable insights into potential security and privacy risks. You would be operating at the top tier, handling the most complex and technically demanding cases that require advanced expertise and critical thinking. The role is based mainly remotely, however candidates must be willing to work in central London as required. This will run until the end … if there is a better way for us to communicate, please do let us know. Developer, Engineer, Programmer, Java, Android, Mobile OS, Malware, Virus, Penetration Test, Threat, OSCP, Cyber, Infosec, Security, InformationSecurity, Pentest #vacancy #jobadvert #recruit #hiring #jobsearch #careers #talent #recruitment #job Circle Recruitment is acting as an Employment Agency in relation to this vacancy. Earn More ❯
Role: Android Security Engineer Salary/Rate: £500-600 per day Location: hybrid London, mainly remote Contract Duration: until December 2025 A unique opportunity has arisen for a skilled professional with a strong background in mobile application security to join a specialist team tackling complex technical challenges. The successful candidate will be responsible for conducting in-depth analysis … of Android applications, providing clear and actionable insights into potential security and privacy risks. You would be operating at the top tier, handling the most complex and technically demanding cases that require advanced expertise and critical thinking. The role is based mainly remotely, however candidates must be willing to work in central London as required. This will run until … if there is a better way for us to communicate, please do let us know. Developer, Engineer, Programmer, Java, Android, Mobile OS, Malware, Virus, Penetration Test, Threat, OSCP, Cyber, Infosec, Security, InformationSecurity, Pentest #vacancy #jobadvert #recruit #hiring #jobsearch #careers #talent #recruitment #job Circle Recruitment is acting as an Employment Agency in relation to this vacancy. Earn More ❯
Cardiff, South Glamorgan, Wales, United Kingdom Hybrid / WFH Options
Hays Specialist Recruitment Limited
JOB DETAILS - £500-£650 PER DAY- INSIDE IR35- REMOTE ROLE- 6-MONTH CONTRACT- IMMEDIATE START SKILLS Strong understanding of web applications, infrastructure, OS and Cloud. Extensive experience with InformationSecurity Standards e.g. ISO27001, Cyber Essentials, CIS20, FFIEC and NIST Standards. Knowledge of InformationSecurity Management Systems (ISMS), including alternative frameworks. RESPONSIBILITIES Operating and enhancing the InformationSecurity technical assurance program. Testing and verifying the effectiveness of security controls and mitigating threats. Document outcomes of testing and assurance activity and discuss findings with key stakeholders. Undertake threat intelligence and data leakage. Reviewing, writing and updating the organisation's policies, standards and procedures. What you need to do now If you're interested in this More ❯
Senior Information Systems Security Specialist Summer-Browning Associates is currently assisting our client in the Public Sector, who is seeking a Senior Information Systems Security Specialist for a 6-month assignment. Location: Hybrid working- London Essential Skills: The ideal candidates will hold an Active SC clearance and have a proven InformationSecurity background, with … the following skills/experience: Experience of security assurance and the measurement of controls. Experience of IT Security documentation (policies, standards, processes, procedures and patterns). Experience of IT Health Check and Vulnerability Assessments Experience of risk and threat modelling. Qualifications: accreditation/assurances CISM/XCCP/ISO 27001 To apply, please submit your most recent CV More ❯
customers, employees, and investors. Through responsible entrepreneurial actions and commitment to society and the environment, we make a positive contribution to the world. As part of the Group Chief InformationSecurity Office, the department "Cyber Security Strategy & Portfolio Management" is responsible for the (further) development and implementation of global cyber security strategies, with the aim of … protecting the DHL Group from cyber threats. It works closely with internal departments, divisional business and IT functions, as well as service providers within overarching initiatives and programs. Cyber Security Portfolio Manager Microsoft/M365 (m/f/d) Bonn Full-time Permanent Your responsibilities Further develop and implement the global cyber security roadmap for M365, ensuring … alignment with the corporate IT strategy Develop and implement cyber security policies for the roll-out of M365 tools and services, while gathering and assessing security requirements from business units and stakeholders Create M365 Cyber Security approaches that comply with relevant privacy regulations, coordinating with Corporate Data Protection to ensure effective implementation Act as the primary point More ❯
InformationSecurity Analyst - Audit & Compliance We're working with a global leader in Public Safety Technology & Services to find a certified Security Auditor. This is a fantastic opportunity to join a company that's setting the highest standards in cybersecurity and security compliance. You'll play a key role in ensuring compliance with leading security frameworks, preparing for and conducting audits, and contributing to security operations. You'll be joining a collaborative, ambitious team where there are genuine long-term career prospects and endless opportunities to develop. The Role Lead and conduct internal audits across ISO 27001, GDPR, DORA, Cyber Essentials & more. Prepare teams for external audits and manage the audit process end … to-end. Monitor changes in compliance frameworks and maintain alignment. Support the Cyber Security Operations Centre (CSOC) in incident monitoring and response. Develop and maintain policies, procedures, and security documentation. Collaborate with IT & Security teams to identify and remediate vulnerabilities. What We're Looking For Strong knowledge of audit & compliance frameworks (ISO 27001, Cyber Essentials, GDPR, DORA More ❯
Position Overview We are seeking a Senior Azure Security Engineer to join our UK-based team. This role will be responsible for implementing and maintaining robust security solutions across our Azure cloud infrastructure. You'll play a key role in ensuring compliance, hardening environments, and leveraging Microsoft's security tools to protect our systems and data. Key … Responsibilities Security Architecture & Implementation Implement and maintain secure Azure architectures in line with best practices Develop and support cloud security policies and technical standards Conduct security assessments, risk analysis, and contribute to security roadmaps Collaborate with teams to integrate security into CI/CD and cloud-native applications Microsoft Security Stack Configure and manage … Microsoft Defender for Cloud, Defender for Endpoint, and Sentinel Deploy Microsoft Purview for compliance and information protection Manage Microsoft 365 Defender (Office 365, Identity, Endpoint) Support Conditional Access, Entra ID, and Identity Governance setups Implement Data Loss Prevention (DLP) and sensitivity labels Work with Azure Key Vault and manage encryption and certificate strategies Collaborate with our SOC and managed More ❯
Warrington, Cheshire, United Kingdom Hybrid / WFH Options
Babcock Mission Critical Services España SA
Press Tab to Move to Skip to Content Link Select how often (in days) to receive an alert: Cyber Security Lead Location: Bristol, GB, BS16 1EJ Onsite or Hybrid: Job Title: Cyber Security Lead Location: Warrington, Bristol or Leicester Compensation: Competitive + Benefits Role Type: Full time/Permanent Role ID: SF66104 At Babcock we're working to … create a safe and secure world, together, and if you join us, you can play your part as a Cyber Security Lead at our various sites. The role As a Cyber Security Lead, you'll have a role that's out of the ordinary. We are looking for a Cyber Security expert with proven working experience within … the highest standards of cybersecurity across all stages of development. Day-to-day, you'll have the following responsibilities: Oversee and provide expert support on all aspects of cyber security across the defence programme. Ensuring leadership on security protocols, practices, and compliance requirements. Serve as the primary cybersecurity point of contact for the government/MOD client and More ❯
Tunbridge Wells, Kent, Royal Tunbridge Wells, United Kingdom Hybrid / WFH Options
FPSG
Security Engineer Permanent Hybrid - 2 or 3 days p/w on-site Tunbridge Wells area (Hands on recent career experience of Salesforce Industries/Vlocity is essential) FPSG have a fantastic opportunity to join a large-scale digital transformation programme aimed at uniting multiple internal business units under a new, secure, cloud-native digital platform. Ideal for a … hands-on Security Engineer who enjoys embedding security into the development lifecycle and working with modern tooling and cloud environments. .Net Azure exposure desired, Salesforce Industries/Vlocity experience is essential. The successful Security Engineer's responsibilities will include: Analysing new feature code to identify and mitigate security risks Collaborating with development teams to implement secure … coding practices and remediation strategies Driving improvements in security maturity frameworks such as DSOMM, including hands-on delivery (code, configuration, documentation, tooling) Designing, building, operate, monitoring secure solutions across complex platforms Ensuring internal and industry security standards (e.g. OWASP CI/CD, SAMM) are adhered to across systems Managing and improving cloud security posture (Azure Defender, Prisma More ❯