London, England, United Kingdom Hybrid / WFH Options
Veeva Systems
field, or equivalent work experience Coding skills in at least one primary language, such as Java or Python and React Understanding of OWASP Top 10, SANS Top 20, NIST800-53, CIS, CSC, or other security standards Utilize Static Application Security Testing tools (i.e. Checkmarx) to identify and remediate code vulnerabilities 1+ years as a security More ❯
Chantilly, Virginia, United States Hybrid / WFH Options
Gridiron IT Solutions
performance, and storage utilization. Collaborate with cybersecurity analysts, engineers, and program stakeholders to drive continuous improvement of monitoring capabilities. Ensure Splunk implementation aligns with federal cybersecurity standards (e.g., NIST, RMF, FISMA). Document configurations, workflows, and standard operating procedures. Required Qualifications Active TS/SCI CI Polygraph required 7+ years of experience with Splunk engineering in a federal … Certified Admin or Architect; Splunk ES experience strongly preferred. Experience working in highly secure federal networks (IC, DoD, DHS, etc.). Understanding of frameworks like MITRE ATT&CK, NIST800-53, and RMF. Familiarity with cloud platforms (AWS, Azure) and hybrid data integration. Clearance Applicants selected will be subject to a security investigation and may need More ❯
Arlington, Virginia, United States Hybrid / WFH Options
Apex Systems
professional experience, including briefing clients or teams on technical and policy issues. • Experience in cybersecurity, information assurance, analytics, or executive dashboards. • Knowledge of security controls, cybersecurity frameworks (e.g., NIST800-53), and federal policies. • Familiarity with data visualization tools like Power BI or similar platforms. • Experience writing executive-level correspondence and decision-making materials. • Strong organizational More ❯
London, England, United Kingdom Hybrid / WFH Options
Control Risks
client projects: Designing and managing comprehensive security programs tailored to diverse environments, including hybrid IT/OT settings. Delivering projects aligned with industry frameworks and compliance requirements such as NIST800-53, ISO27001, NIST CSF, NIS 2, DORA. Applying expertise in emerging technologies like AI, IoT, cloud solutions, and advanced threat detection systems. Advising on their application, assessing suitability More ❯
client projects: Design and manage comprehensive security programmes tailored to diverse environments, including hybrid IT/OT settings. Deliver projects aligned with industry frameworks and compliance requirements, such as NIST800-53, ISO27001, NIST CSF, NIS 2, DORA. Leverage emerging technologies such as AI, IoT, cloud solutions, and advanced threat detection systems. Advise on their application, assess their suitability More ❯
London, England, United Kingdom Hybrid / WFH Options
Experis
within regulated CNI sectors (e.g. utilities, energy, transport) Strong understanding of OT environments and their unique security challenges, including legacy systems and frameworks like CAF, IEC 62443, or NIST800-82 Familiarity with sector-specific compliance and regulatory reporting requirements. Proven leadership and stakeholder engagement skills Ability to link cyber strategy to broader organisational objectives and More ❯
Oakdale, Wales, United Kingdom Hybrid / WFH Options
General Dynamics UK Limited
Previous experience of implementation and compliance with any of the following Security Architectural Frameworks: System Administration and Networking and Security (SANS) Institute Framework; National Institute of Standards Technology Framework SP800-53; National Institute of Standards Technology Cyber Security Framework NATO Communications Information Agency (NCIA) Standards; ISO 27001 (2013); BS ISO/IEC 27001:2013; Infosec Standard More ❯
Chantilly, Virginia, United States Hybrid / WFH Options
Gridiron IT Solutions
Experience with best practices for the cloud environments, Cloud Computing SRG, PIM, Identity and Access Management (IAM), Conditional Access Policies, Policy, and Regulatory Compliance such as IL6 and NIST800-53 Rev 5. Experience with Governance capabilities with Management Groups, Subscriptions and Resource Groups Performance Optimization: Monitor and optimize cloud infrastructure for cost-effectiveness, performance, and More ❯
London, England, United Kingdom Hybrid / WFH Options
TieTalent
transformations in retail banking systems such as savings and mortgages Strong understanding of Cloud Security and Controls and the application of internationally recognised standards such as NISTSP-800-53, CSA CCM, ISO27001 is essential Hands-on experience with core banking platforms, payment systems, and customer-facing applications Strong knowledge of Azure functionality and working within Agile methodology More ❯
Chantilly, Virginia, United States Hybrid / WFH Options
Gridiron IT Solutions
Security: Experience with best practices for the Azure cloud environments, Cloud Computing SRG, Identity and Access Management (IAM), Conditional Access Policies, and Regulatory Compliance such as IL6 and NIST800-53 Rev 5. Strong Experience with implementing governance capabilities within Management Groups, Subscriptions and Resource Groups Performance Optimization: Monitor and optimize cloud infrastructure for cost-effectiveness More ❯
London, England, United Kingdom Hybrid / WFH Options
Lloyds Bank plc
team to translate regulatory requirements (e.g. SOC2, ISO 27001, HIPPA, GDPR, PCI DSS) into technical controls in the cloud. Adherence and experience of compliance frameworks (e.g. CIS Benchmarks, NIST800-53). Building or maintaining automated continuous compliance monitoring solutions (e.g. CSPM, CNAAP). Assessing cloud environments for drift and misconfiguration and remediation workflows implementation via More ❯
Halifax, England, United Kingdom Hybrid / WFH Options
Lloyds Banking Group
team to translate regulatory requirements (e.g. SOC2, ISO 27001, HIPPA, GDPR, PCI DSS) into technical controls in the cloud. Adherence and experience of compliance frameworks (e.g. CIS Benchmarks, NIST800-53). Building or maintaining automated continuous compliance monitoring solutions (e.g. CSPM, CNAAP). Assessing cloud environments for drift and misconfiguration and remediation workflows implementation via More ❯
Edinburgh, Scotland, United Kingdom Hybrid / WFH Options
Lloyds Banking Group
team to translate regulatory requirements (e.g. SOC2, ISO 27001, HIPPA, GDPR, PCI DSS) into technical controls in the cloud. Adherence and experience of compliance frameworks (e.g. CIS Benchmarks, NIST800-53). Building or maintaining automated continuous compliance monitoring solutions (e.g. CSPM, CNAAP). Assessing cloud environments for drift and misconfiguration and remediation workflows implementation via More ❯
OSCP, etc.). Experience of supporting audits such as ISO27001. Experience of working with security risk management frameworks such as ISO31000. Knowledge of security control frameworks such as CIS, NIST800-53 and ISO27001. How we work We're a mission-led, product-driven team. We move fast, stay focused and take ownership - from brief to build to impact. Debate is More ❯
evaluation and compliance to DoD/Navy directives, policies, and instruction to include but not limited to Federal Information Security Management Act (FISMA), OMB A-130, NISTSP800Series, FIPS Publications, and Navy RMF governance. Assists in RMF A&A process negotiation and task management for accomplishing A&A activities. Prepares reports, correspondence, white papers … architectures, LAN/WAN protocols and technologies, 5G, and other relevant technologies in use with modern enterprises. Extensive experience and understanding of DoD cybersecurity and policies, instructions, and NIST publications as they relate to the Authorizing Official. Understanding of system and software SDLCs, and unique DoD domains such as Cross-domain solutions, PPSM. Excellent facility and use of More ❯
London, England, United Kingdom Hybrid / WFH Options
55 Redefined Ltd
OT cybersecurity. Certifications such as GICSP or 62443. Required Skills and Experience Basic understanding of OT control frameworks. Experience applying control frameworks in OT, such as NISTSP800-53/82, ISO/IEC 62443, CAF, ISO/IEC 27001, NIST Cybersecurity Framework. Understanding of differences between IT and OT environments. Experience identifying More ❯
technical concepts and assessment results verbally and in written reports in simple terms; Knowledge of IEC 62443, MITRE ATT&CK for ICS, NIST CSF, NISTSP800-82 and relevant regulations in EU and UK; Interest and ability to write exciting whitepapers and publications ; A supportive and a proactive personality , you know how to More ❯
familiarity of common OT control frameworks. In-depth knowledge and experience applying control framework(s) in an OT context, which may include some or all of: NISTSP800-53/82, ISO/IEC 62443, Cyber Assessment Framework (CAF), ISO/IEC 27001, NIST Cyber Security Framework. Understanding of the differences between IT More ❯
Annapolis Junction, Maryland, United States Hybrid / WFH Options
GTSC Talent Solutions
Desired Skills: Experience with one or more ServiceNow modules: CAM (Cloud Asset Management) RMF (Risk Management Framework) GRC (Governance, Risk & Compliance) SecOps (Security Operations) Familiarity with NISTSP800-53 standards Deep understanding of the Risk Management Framework (RMF) Previous experience in a DoD or highly regulated environment Education and Required Qualification Bachelor's degree in More ❯
Washington, Washington DC, United States Hybrid / WFH Options
Covenant HR
Experience with multiple OS environments: Windows, RedHat Linux, macOS, and ESXi Strong knowledge of cloud security in Azure and AWS (SaaS, IaaS, PaaS) Familiarity with government security frameworks (NIST, CMMC, RMF, NISPOM, JSIG), DISA STIGs, and incident response Responsibilities and Job Details: Lead and manage the organization's information systems security program across classified and unclassified environments Administer … and maintain compliance with CMMC and NIST800-171 Develop and enhance cybersecurity processes, tools, and operational procedures Oversee deployment and monitoring of security solutions across enterprise systems Collaborate with IT and business units to ensure security control integration in new solutions Support threat hunting and incident response activities Conduct third-party risk assessments and vendor … evaluations Maintain and manage RMF packages in compliance with NIST800-53, NISPOM, and ICD Perform audit log reviews and initiate incident response for anomalies Manage vulnerability scanning and remediation efforts using DISA STIGs Participate in change control board meetings and coordinate closely with the Facility Security Officer Provide after-hours support for critical cybersecurity incidents More ❯
City Of Bristol, England, United Kingdom Hybrid / WFH Options
Logiq
into MOD, relevant governance and security policy, processes, and practices (inc Joint Service Publications 604, 440). Knowledge of national and international security frameworks such as NISTSP800 Series. Experience managing agile teams, DevOps engineering teams and CI/CD. Practical experience managing requirements, verification, validation and acceptance. Certifications in relevant technologies, products, methodologies or More ❯
Bath, England, United Kingdom Hybrid / WFH Options
JR United Kingdom
into MOD, relevant governance and security policy, processes, and practices (inc Joint Service Publications 604, 440). Knowledge of national and international security frameworks such as NISTSP800 Series. Experience managing agile teams, DevOps engineering teams and CI/CD. Practical experience managing requirements, verification, validation and acceptance. Certifications in relevant technologies, products, methodologies or More ❯
London, England, United Kingdom Hybrid / WFH Options
OSB Group
transformations in retail banking systems such as savings and mortgages Strong understanding of Cloud Security and Controls and the application of internationally recognised standards such as NISTSP-800-53, CSA CCM, ISO27001 is essential Hands-on experience with core banking platforms, payment systems, and customer-facing applications Strong knowledge of Azure functionality and working within Agile methodology … transformations in retail banking systems such as savings and mortgages Strong understanding of Cloud Security and Controls and the application of internationally recognised standards such as NISTSP-800-53, CSA CCM, ISO27001 is essential Hands-on experience with core banking platforms, payment systems, and customer-facing applications Strong knowledge of Azure functionality and working within Agile methodology More ❯
London, England, United Kingdom Hybrid / WFH Options
Hays
in Pen Testing Good knowledge of Info Sec/IT Security Experience of conducting risk assessments within a Technology environment Knowledge of risk management frameworks (ISO 3100X/NIST800-30/37/39, ENISA/EBIOS/OCTAVE/FAIR etc) Excellent communication skills with ability to translate technical jargon to non-technical audiences More ❯
London, England, United Kingdom Hybrid / WFH Options
Hays
in Pen Testing Good knowledge of Info Sec/IT Security Experience of conducting risk assessments within a Technology environment Knowledge of risk management frameworks (ISO 3100X/NIST800-30/37/39, ENISA/EBIOS/OCTAVE/FAIR etc) Excellent communication skills with ability to translate technical jargon to non-technical audiences More ❯