Slough, England, United Kingdom Hybrid / WFH Options
JR United Kingdom
to GRC, risk management, threat mitigation, and compliance frameworks. Key Responsibilities Design and implement a scalable GRC framework tailored to the business, addressing risk management, compliance standards (ISO 27001, NIST, SOC 2, etc.), and internal governance controls. Security Strategy: Develop and execute a long-term cybersecurity strategy aligned with business goals, balancing innovation and risk. Security Operations: Oversee day-to … years in a senior leadership or CISO role . Demonstrable experience building and scaling a GRC function in a complex environment. Deep knowledge of information security standards (ISO 27001, NIST, CIS), risk frameworks (COSO, FAIR), and regulatory obligations (GDPR, PCI-DSS, SOX). Proven track record of managing enterprise-level security programs, including incident response and business continuity. Excellent stakeholder More ❯
Manchester, England, United Kingdom Hybrid / WFH Options
Jobs via eFinancialCareers
Security risk management tools and techniques Experience of security governance and compliance, ideally gained in financial services organisations Demonstrable understanding of Information Security control standardsand frameworks e.g. ISO27001, NIST, PCI DSS Awareness and understanding of the Information Security threat landscape Deep understanding of Information Security solutions and controls Experience of Cloud security solutions andstandards is highly advantageous Competence … Knowledge, And Skills Competence Experience working within recognised Information Security frameworks and best practices such as ISO27001, NIST etc. 5 years' experience in an Information Security role gained in a financial services or e-commerce environment is preferred Knowledge & Skills Excellent communicator, able to translate complex topics to all areas of the business Significant experience in the area of Information More ❯
City of London, England, United Kingdom Hybrid / WFH Options
JR United Kingdom
to GRC, risk management, threat mitigation, and compliance frameworks. Key Responsibilities Design and implement a scalable GRC framework tailored to the business, addressing risk management, compliance standards (ISO 27001, NIST, SOC 2, etc.), and internal governance controls. Security Strategy: Develop and execute a long-term cybersecurity strategy aligned with business goals, balancing innovation and risk. Security Operations: Oversee day-to … years in a senior leadership or CISO role . Demonstrable experience building and scaling a GRC function in a complex environment. Deep knowledge of information security standards (ISO 27001, NIST, CIS), risk frameworks (COSO, FAIR), and regulatory obligations (GDPR, PCI-DSS, SOX). Proven track record of managing enterprise-level security programs, including incident response and business continuity. Excellent stakeholder More ❯
Bristol, England, United Kingdom Hybrid / WFH Options
Capgemini UK
GIAC), CCP (ISSM), ISO27001, GIS A working knowledge of ISO standards (e.g. ISO 27001) Working knowledge of other security frameworks/standards/regulations, such as PCI-DSS, CyberEssentials, NIST, NIS, GDPR Your security clearance To be successfully appointed to this role, it is a requirement to obtain Security Check (SC) clearance. To obtain SC clearance, the successful applicant must More ❯
Florissant, Missouri, United States Hybrid / WFH Options
Centene
their integration with UEBA solutions. Experience with machine learning models for threat detection and behavioral analytics. Hands-on experience with cloud security analytics (AWS, Azure, GCP). Familiarity with NIST, MITRE ATT&CK, and other security frameworks. Soft Skills: Intermediate - Seeks to acquire knowledge in area of specialty Intermediate - Ability to identify basic problems and procedural irregularities, collect data, establish More ❯
Columbia, Missouri, United States Hybrid / WFH Options
Centene
their integration with UEBA solutions. Experience with machine learning models for threat detection and behavioral analytics. Hands-on experience with cloud security analytics (AWS, Azure, GCP). Familiarity with NIST, MITRE ATT&CK, and other security frameworks. Soft Skills: Intermediate - Seeks to acquire knowledge in area of specialty Intermediate - Ability to identify basic problems and procedural irregularities, collect data, establish More ❯
St. Louis, Missouri, United States Hybrid / WFH Options
Centene
their integration with UEBA solutions. Experience with machine learning models for threat detection and behavioral analytics. Hands-on experience with cloud security analytics (AWS, Azure, GCP). Familiarity with NIST, MITRE ATT&CK, and other security frameworks. Soft Skills: Intermediate - Seeks to acquire knowledge in area of specialty Intermediate - Ability to identify basic problems and procedural irregularities, collect data, establish More ❯
Kansas City, Missouri, United States Hybrid / WFH Options
Centene
their integration with UEBA solutions. Experience with machine learning models for threat detection and behavioral analytics. Hands-on experience with cloud security analytics (AWS, Azure, GCP). Familiarity with NIST, MITRE ATT&CK, and other security frameworks. Soft Skills: Intermediate - Seeks to acquire knowledge in area of specialty Intermediate - Ability to identify basic problems and procedural irregularities, collect data, establish More ❯
Jefferson City, Missouri, United States Hybrid / WFH Options
Centene
their integration with UEBA solutions. Experience with machine learning models for threat detection and behavioral analytics. Hands-on experience with cloud security analytics (AWS, Azure, GCP). Familiarity with NIST, MITRE ATT&CK, and other security frameworks. Soft Skills: Intermediate - Seeks to acquire knowledge in area of specialty Intermediate - Ability to identify basic problems and procedural irregularities, collect data, establish More ❯
London, England, United Kingdom Hybrid / WFH Options
Simpson Thacher & Bartlett LLP
platforms (e.g., AWS, Azure). Experience with platform management, including database systems, application servers, and cloud services. Knowledge of IT security best practices and compliance frameworks (e.g., ISO 27001, NIST). Familiarity with automation and scripting tools (e.g., PowerShell, Python) is a plus. Knowledge of continuous improvement methodologies (e.g., Lean, Six Sigma) is highly desirable. Required Education Bachelor's degree More ❯
London, England, United Kingdom Hybrid / WFH Options
Sumsub
Security certifications such as CKS, CKA, OSCP, AWS Security, or equivalent Experience in high-load systems and environments with stringent security requirements Understanding of cybersecurity frameworks (e.g., ISO 27001, NIST, GDPR, PCI-DSS, SOC 2, CIS Controls) What We Offer: Fully remote and flexible working schedule, with access to a coworking space (in some locations) Working with a product that More ❯
Bedford, England, United Kingdom Hybrid / WFH Options
ZipRecruiter
management (IAM) concepts and technologies, including EntraID. Experience with government systems and audits such as OneLogin or GovAssure is highly desirable. Experience with security frameworks andstandards, such as NIST, ISO 27001, CyberEssentials Plus, and CIS. Strong understanding of networking protocols, operating systems, and security technologies like firewalls, intrusion detection/prevention systems, and SIEM. Excellent analytical, problem-solving, andMore ❯
City of London, London, United Kingdom Hybrid / WFH Options
The Curve Group
Bachelor’s degree, preferably in Computer Science, Cyber Security or Cyber Security Professional Qualifications/Certifications Desirable: General understanding of IT Security principles, standardsand regulations (e.g. ISO 27001, NIST, CIS, PCI DSS and GDPR) CISM/CISSP Patch Management Applications, EDR/XDR systems. Antivirus, NAC - Forescout Vulnerability Scanning Tool e. Tenable One, Qualisys Knowledge of vulnerability scoring systems More ❯
Bachelor’s degree, preferably in Computer Science, Cyber Security or Cyber Security Professional Qualifications/Certifications Desirable: General understanding of IT Security principles, standardsand regulations (e.g. ISO 27001, NIST, CIS, PCI DSS and GDPR) CISM/CISSP Patch Management Applications, EDR/XDR systems. Antivirus, NAC - Forescout Vulnerability Scanning Tool e. Tenable One, Qualisys Knowledge of vulnerability scoring systems More ❯
City of London, London, United Kingdom Hybrid / WFH Options
The Curve Group
Bachelor’s degree, preferably in Computer Science, Cyber Security or Cyber Security Professional Qualifications/Certifications Desirable: General understanding of IT Security principles, standardsand regulations (e.g. ISO 27001, NIST, CIS, PCI DSS and GDPR) CISM/CISSP Patch Management Applications, EDR/XDR systems. Antivirus, NAC - Forescout Vulnerability Scanning Tool e. Tenable One, Qualisys Knowledge of vulnerability scoring systems More ❯
Bachelor’s degree, preferably in Computer Science, Cyber Security or Cyber Security Professional Qualifications/Certifications Desirable: General understanding of IT Security principles, standardsand regulations (e.g. ISO 27001, NIST, CIS, PCI DSS and GDPR) CISM/CISSP Patch Management Applications, EDR/XDR systems. Antivirus, NAC - Forescout Vulnerability Scanning Tool e. Tenable One, Qualisys Knowledge of vulnerability scoring systems More ❯
Bachelor’s degree, preferably in Computer Science, Cyber Security or Cyber Security Professional Qualifications/Certifications Desirable: General understanding of IT Security principles, standardsand regulations (e.g. ISO 27001, NIST, CIS, PCI DSS and GDPR) CISM/CISSP Patch Management Applications, EDR/XDR systems. Antivirus, NAC - Forescout Vulnerability Scanning Tool e. Tenable One, Qualisys Knowledge of vulnerability scoring systems More ❯
City of London, London, United Kingdom Hybrid / WFH Options
The Curve Group
Bachelor’s degree, preferably in Computer Science, Cyber Security or Cyber Security Professional Qualifications/Certifications Desirable: General understanding of IT Security principles, standardsand regulations (e.g. ISO 27001, NIST, CIS, PCI DSS and GDPR) CISM/CISSP Patch Management Applications, EDR/XDR systems. Antivirus, NAC - Forescout Vulnerability Scanning Tool e. Tenable One, Qualisys Knowledge of vulnerability scoring systems More ❯
Bachelor’s degree, preferably in Computer Science, Cyber Security or Cyber Security Professional Qualifications/Certifications Desirable: General understanding of IT Security principles, standardsand regulations (e.g. ISO 27001, NIST, CIS, PCI DSS and GDPR) CISM/CISSP Patch Management Applications, EDR/XDR systems. Antivirus, NAC - Forescout Vulnerability Scanning Tool e. Tenable One, Qualisys Knowledge of vulnerability scoring systems More ❯
London, South East, England, United Kingdom Hybrid / WFH Options
Xpertise Recruitment Ltd
into CI/CD pipelines and DevOps operations Manage and interpret insights from cloud-native security tools (e.g., GuardDuty, Azure Defender) Ensure compliance with frameworks such as ISO 27001, NIST, GDPR, HIPAA Contribute to architectural design reviews, cloud migration planning, and documentation Support executive reporting by producing clear metrics for cyber risk posture Continuously track and respond to emerging threats More ❯
City of London, London, United Kingdom Hybrid / WFH Options
The Curve Group
Bachelor’s degree, preferably in Computer Science, Cyber Security or Cyber Security Professional Qualifications/Certifications Desirable: General understanding of IT Security principles, standardsand regulations (e.g. ISO 27001, NIST, CIS, PCI DSS and GDPR) CISM/CISSP Patch Management Applications, EDR/XDR systems. Antivirus, NAC - Forescout Vulnerability Scanning Tool e. Tenable One, Qualisys Knowledge of vulnerability scoring systems More ❯
London, England, United Kingdom Hybrid / WFH Options
watchTowr
conducting vulnerability assessments using industry-standard tools and methodologies, and managing remediation processes. Compliance and Security Controls : Familiarity with implementing security controls aligned with frameworks such as ISO 27001, NIST, or CIS, and adapting them to meet organisational needs. Automation and Scripting : Possess skills in automating security tasks using scripting languages such as Python or PowerShell to enhance efficiency. Security More ❯