Bury, Greater Manchester, United Kingdom Hybrid / WFH Options
CONTROLCASE LIMITED
team. In this fully remote UK-based role, you will conduct IT security audits and assessments for clients across the United Kingdom and the European region, ensuring compliance with PCIDSS, ISO 27001/2, GDPR, NIS2, DORA, and other relevant frameworks. This position offers the opportunity to become a PCI QSA (training and certification sponsored by … or consulting experience. • Bachelor’s degree in information security or related field. • Deep knowledge of IT security controls, access management, logging, vulnerability assessment, and secure system configuration. • Experience with PCIDSS, ISO 27001/2, GDPR, NIS2, DORA, or similar compliance frameworks. • Strong understanding of cloud environments and network architectures. • Excellent English communication skills; fluency in German strongly More ❯
Central London / West End, London, United Kingdom Hybrid / WFH Options
CONTROLCASE LIMITED
team. In this fully remote UK-based role, you will conduct IT security audits and assessments for clients across the United Kingdom and the European region, ensuring compliance with PCIDSS, ISO 27001/2, GDPR, NIS2, DORA, and other relevant frameworks. This position offers the opportunity to become a PCI QSA (training and certification sponsored by … or consulting experience. • Bachelor’s degree in information security or related field. • Deep knowledge of IT security controls, access management, logging, vulnerability assessment, and secure system configuration. • Experience with PCIDSS, ISO 27001/2, GDPR, NIS2, DORA, or similar compliance frameworks. • Strong understanding of cloud environments and network architectures. • Excellent English communication skills; fluency in German strongly More ❯
Ashton-Under-Lyne, Greater Manchester, United Kingdom Hybrid / WFH Options
CONTROLCASE LIMITED
team. In this fully remote UK-based role, you will conduct IT security audits and assessments for clients across the United Kingdom and the European region, ensuring compliance with PCIDSS, ISO 27001/2, GDPR, NIS2, DORA, and other relevant frameworks. This position offers the opportunity to become a PCI QSA (training and certification sponsored by … or consulting experience. • Bachelor’s degree in information security or related field. • Deep knowledge of IT security controls, access management, logging, vulnerability assessment, and secure system configuration. • Experience with PCIDSS, ISO 27001/2, GDPR, NIS2, DORA, or similar compliance frameworks. • Strong understanding of cloud environments and network architectures. • Excellent English communication skills; fluency in German strongly More ❯
Altrincham, Cheshire, United Kingdom Hybrid / WFH Options
team. In this fully remote UK-based role, you will conduct IT security audits and assessments for clients across the United Kingdom and the European region, ensuring compliance with PCIDSS, ISO 27001/2, GDPR, NIS2, DORA, and other relevant frameworks. This position offers the opportunity to become a PCI QSA (training and certification sponsored by … or consulting experience. Bachelor s degree in information security or related field. Deep knowledge of IT security controls, access management, logging, vulnerability assessment, and secure system configuration. Experience with PCIDSS, ISO 27001/2, GDPR, NIS2, DORA, or similar compliance frameworks. Strong understanding of cloud environments and network architectures. Excellent English communication skills; fluency in German strongly More ❯
Poole, Dorset, England, United Kingdom Hybrid / WFH Options
Mexa Solutions LTD
make a real impact What you’ll be doing: Leading vulnerability assessments and coordinating regular penetration testing across systems and products Owning risk remediation actions, from security audits to PCI scans and compliance reporting Working across cloud (AWS), infrastructure, and software environments to ensure security best practices are embedded throughout Supporting the secure design of products and infrastructure, providing … tools Writing clear, actionable reports for both technical and executive audiences, including regular updates on the security landscape Aligning with frameworks such as ISO 27001, Cyber Essentials+, GDPR, and PCI-DSS Collaborating with compliance, IT, and engineering to deliver secure, scalable solutions What you’ll bring to the table: Proven experience in a security-focused role (ideally … grasp of access controls, identity management, and cloud security (especially AWS) Familiarity with secure software development practices and working alongside dev teams Understanding of key frameworks like ISO 27001, PCI-DSS, and GDPR Bonus points for scripting/automation experience (PowerShell, Python, etc.) or exposure to tools like Keeper, Keycloak, or IAM A proactive mindset and excellent communication More ❯
Manchester Area, United Kingdom Hybrid / WFH Options
Candour Solutions
for our customers. Consult and Advise: Conduct assessments and reviews for ISO27001 (Information Security Management) and ISO22301 (Business Continuity Management). Provide expert advice on compliance standards such as PCI-DSS, Cyber Essentials, and more. Policy Development: Create, review, and update information security policies to align with business and regulatory requirements. Technical Expertise: Translate information security requirements into … We’re looking for someone with: CISM, CISSP, or equivalent certifications. ISO27001 and ISO22301 Lead Auditor/Implementor certifications. Knowledge of Cyber Essentials/Cyber Essentials Plus. Familiarity with PCIDSS and ISO31000 (preferred). Experience: Proven track record in delivering governance, risk, and compliance services. Expertise in information security management and business continuity frameworks. Experience working with More ❯
Cheshire, England, United Kingdom Hybrid / WFH Options
Morgan Law
of disaster recovery and business continuity plans. Produce reports and metrics for senior IT and governance stakeholders Stay updated with the latest threats, trends, and compliance requirements (e.g., GDPR, PCIDSS, Cyber Essentials) Person Specification Essential: Demonstrable experience in a related role Excellent problem-solving, analytical, and communication skills An appetite for keeping up to date with the … UK Desirable: Industry certifications (e.g., CompTIA Security+, SSCP) Experience in the charity or non-profit sector Familiarity with Microsoft Azure cloud platforms and identity management Experience with compliance frameworks (PCIDSS, Cyber Essentials) Experience with auditing and compliance Experience of BCP/DR More ❯
rail client once again to support with the growth of their exceptional technology team for their Information Security Manager. The Role: Leading management of information security which includes ISO27001, PCI-DSS, and vulnerability management. Working alongside the DPO and Head of Technology to support on areas of data protection. Lead collaboration with key partners for train onboard systems … the information security incident response program Manage implementation and deployment of Information Security Management System (ISMS). Line management of the internal InfoSec specialists. Requirements Extensive experience working with PCI-DSS and ISO27001 Strong understanding on security tools such as IDS/IPS. Demonstrable experience of leading Information Security, Governance, Compliance teams. Ideally a form of cybersecurity qualification More ❯
City of London, London, United Kingdom Hybrid / WFH Options
Lawrence Harvey
rail client once again to support with the growth of their exceptional technology team for their Information Security Manager. The Role: Leading management of information security which includes ISO27001, PCI-DSS, and vulnerability management. Working alongside the DPO and Head of Technology to support on areas of data protection. Lead collaboration with key partners for train onboard systems … the information security incident response program Manage implementation and deployment of Information Security Management System (ISMS). Line management of the internal InfoSec specialists. Requirements Extensive experience working with PCI-DSS and ISO27001 Strong understanding on security tools such as IDS/IPS. Demonstrable experience of leading Information Security, Governance, Compliance teams. Ideally a form of cybersecurity qualification More ❯
london, south east england, united kingdom Hybrid / WFH Options
Lawrence Harvey
rail client once again to support with the growth of their exceptional technology team for their Information Security Manager. The Role: Leading management of information security which includes ISO27001, PCI-DSS, and vulnerability management. Working alongside the DPO and Head of Technology to support on areas of data protection. Lead collaboration with key partners for train onboard systems … the information security incident response program Manage implementation and deployment of Information Security Management System (ISMS). Line management of the internal InfoSec specialists. Requirements Extensive experience working with PCI-DSS and ISO27001 Strong understanding on security tools such as IDS/IPS. Demonstrable experience of leading Information Security, Governance, Compliance teams. Ideally a form of cybersecurity qualification More ❯
slough, south east england, united kingdom Hybrid / WFH Options
Lawrence Harvey
rail client once again to support with the growth of their exceptional technology team for their Information Security Manager. The Role: Leading management of information security which includes ISO27001, PCI-DSS, and vulnerability management. Working alongside the DPO and Head of Technology to support on areas of data protection. Lead collaboration with key partners for train onboard systems … the information security incident response program Manage implementation and deployment of Information Security Management System (ISMS). Line management of the internal InfoSec specialists. Requirements Extensive experience working with PCI-DSS and ISO27001 Strong understanding on security tools such as IDS/IPS. Demonstrable experience of leading Information Security, Governance, Compliance teams. Ideally a form of cybersecurity qualification More ❯
london (city of london), south east england, united kingdom Hybrid / WFH Options
Lawrence Harvey
rail client once again to support with the growth of their exceptional technology team for their Information Security Manager. The Role: Leading management of information security which includes ISO27001, PCI-DSS, and vulnerability management. Working alongside the DPO and Head of Technology to support on areas of data protection. Lead collaboration with key partners for train onboard systems … the information security incident response program Manage implementation and deployment of Information Security Management System (ISMS). Line management of the internal InfoSec specialists. Requirements Extensive experience working with PCI-DSS and ISO27001 Strong understanding on security tools such as IDS/IPS. Demonstrable experience of leading Information Security, Governance, Compliance teams. Ideally a form of cybersecurity qualification More ❯
Hereford, Herefordshire, United Kingdom Hybrid / WFH Options
an experienced Information Security Analyst to join our client who will play a key role in driving compliance, governance, and continual improvement across key security frameworks including ISO 27001, PCIDSS, and Cyber Essentials Plus. Lead on the operation and continual improvement of the Information Security Management System (ISMS) Coordinate internal and external audit readiness for ISO … PCIDSS, and Cyber Essentials Plus Draft and update information security policies, procedures, and technical standards Work with procurement and commercial teams to support supplier assurance and risk assessment Contribute to tender responses and bid processes, ensuring security and compliance requirements are met Promote good security practices and raise awareness across departments Stay up to date with changes More ❯
Glasgow, Lanarkshire, Scotland, United Kingdom Hybrid / WFH Options
Verelogic IT Recruitment
such as Lambda, EventBridge, Kinesis, Glue, Athena, and CloudWatch. Security & Compliance Implement IAM policies, KMS encryption, VPC networking, and PrivateLink to secure data and connectivity. Ensure adherence to GDPR, PCI-DSS, ISO 27001, and industry-specific standards. Develop data retention policies, privacy impact frameworks, and procedures for emergency call handling. DevOps & Automation Establish CI/CD pipelines for … Connect solutions at enterprise scale with complex integrations. Proficient with AWS services: IAM, VPC, Lambda, API Gateway, EventBridge, Kinesis, CloudWatch, DynamoDB. Strong understanding of security and compliance frameworks (GDPR, PCI-DSS, ISO 27001). Hands-on experience with Infrastructure as Code (CloudFormation, Terraform, CDK) and serverless development (Node.js/Python). Preferred Qualifications AWS Solutions Architect - Professional or More ❯
London, South East, England, United Kingdom Hybrid / WFH Options
Robert Half
practice is a part of our overall Technology Consulting Division. The Cyber Security practice includes coverage of focused domains such as Technical Security Assessments, Assessment against cyber security frameworks, PCIDSS assessments, Cloud Security Reviews, Cyber Security Audits, Cyber Security Strategy and Advisory work. Cyber Security is a high-growth area for Protiviti globally. You will be part … other clients. Do Your Talents Include the Following? In-depth knowledge and understanding of industry cyber security frameworks such as ISO 27001, NIST CSF, NIS 2 and/or PCI DSS. Hands-on experience in implementing or assessing against these frameworks is a must-have requirement. Demonstrated ability to lead, manage and develop teams and deliver cybersecurity engagements to … experience, preferably in consulting and/or professional services. Demonstrable track record of continual growth across various roles. Relevant industry certifications such as CISSP, CISM, CISA, ISO 27001 LA, PCIDSS QSA are strongly preferred Offices - The Shard, London - Hybrid/Remote Working £100k-126k, Annual performance bonus & benefits Robert Half Ltd acts as an employment business for More ❯
City of London, London, United Kingdom Hybrid / WFH Options
YQN Pay
observability frameworks. Contribute directly to business growth through hands-on architecture while mentoring junior engineers as the team scales. Align technology designs with compliance, regulatory, and security requirements (e.g., PCIDSS). What You Bring 5+ years’ experience architecting, building, and/or integrating POS platforms or payment processing systems in fintech, SaaS, or related high-growth environments. … Hands-on experience working with SDKs, SaaS platforms, and third-party system vendors. Strong grasp of payments technology (account-to-account, card acquiring/issuing, tokenization, real-time processing, PCIDSS compliance). Ability to collaborate effectively in cross-functional teams (product, external developers, compliance). Willingness to drive change, iterate quickly, and grow with business needs, including More ❯
observability frameworks. Contribute directly to business growth through hands-on architecture while mentoring junior engineers as the team scales. Align technology designs with compliance, regulatory, and security requirements (e.g., PCIDSS). What You Bring 5+ years’ experience architecting, building, and/or integrating POS platforms or payment processing systems in fintech, SaaS, or related high-growth environments. … Hands-on experience working with SDKs, SaaS platforms, and third-party system vendors. Strong grasp of payments technology (account-to-account, card acquiring/issuing, tokenization, real-time processing, PCIDSS compliance). Ability to collaborate effectively in cross-functional teams (product, external developers, compliance). Willingness to drive change, iterate quickly, and grow with business needs, including More ❯
london, south east england, united kingdom Hybrid / WFH Options
YQN Pay
observability frameworks. Contribute directly to business growth through hands-on architecture while mentoring junior engineers as the team scales. Align technology designs with compliance, regulatory, and security requirements (e.g., PCIDSS). What You Bring 5+ years’ experience architecting, building, and/or integrating POS platforms or payment processing systems in fintech, SaaS, or related high-growth environments. … Hands-on experience working with SDKs, SaaS platforms, and third-party system vendors. Strong grasp of payments technology (account-to-account, card acquiring/issuing, tokenization, real-time processing, PCIDSS compliance). Ability to collaborate effectively in cross-functional teams (product, external developers, compliance). Willingness to drive change, iterate quickly, and grow with business needs, including More ❯
london (city of london), south east england, united kingdom Hybrid / WFH Options
YQN Pay
observability frameworks. Contribute directly to business growth through hands-on architecture while mentoring junior engineers as the team scales. Align technology designs with compliance, regulatory, and security requirements (e.g., PCIDSS). What You Bring 5+ years’ experience architecting, building, and/or integrating POS platforms or payment processing systems in fintech, SaaS, or related high-growth environments. … Hands-on experience working with SDKs, SaaS platforms, and third-party system vendors. Strong grasp of payments technology (account-to-account, card acquiring/issuing, tokenization, real-time processing, PCIDSS compliance). Ability to collaborate effectively in cross-functional teams (product, external developers, compliance). Willingness to drive change, iterate quickly, and grow with business needs, including More ❯
slough, south east england, united kingdom Hybrid / WFH Options
YQN Pay
observability frameworks. Contribute directly to business growth through hands-on architecture while mentoring junior engineers as the team scales. Align technology designs with compliance, regulatory, and security requirements (e.g., PCIDSS). What You Bring 5+ years’ experience architecting, building, and/or integrating POS platforms or payment processing systems in fintech, SaaS, or related high-growth environments. … Hands-on experience working with SDKs, SaaS platforms, and third-party system vendors. Strong grasp of payments technology (account-to-account, card acquiring/issuing, tokenization, real-time processing, PCIDSS compliance). Ability to collaborate effectively in cross-functional teams (product, external developers, compliance). Willingness to drive change, iterate quickly, and grow with business needs, including More ❯
such as NIST CSF, NIST 800-53, OWASP, Centre for Internet Security (CIS), ISO 27001, COBIT etc Experience in maintaining compliance with regulations and standards such as NISD, GDPR, PCI-DSS etc in executing security architecture design reviews and advice, in addition to audit requirements and exacting reporting formats Experience in security vulnerability identification, application security remediation and … years' experience working in cyber security technical roles advising on security controls design, implementation and testing on across various sectors Experience with audits of compliance frameworks such as PCI, ISO, or HIPAA. Experience in 'Big 4' or similar consultancy experience in the Irish market Track record in supporting the delivery of a broad range of cyber security controls and More ❯
Leeds, Yorkshire, United Kingdom Hybrid / WFH Options
Stott and May
Harden DevSecOps pipelines to ensure secure software delivery. Collaborate with engineering teams to integrate security by design into products. Compliance & Risk Management Ensure regulatory compliance with GDPR, SOC2, ISO, PCI-DSS, and crypto-specific frameworks. Lead risk assessments for third-party vendors and service providers. Work with legal and compliance teams on KYC/AML security for crypto More ❯
Wokingham, Berkshire, England, United Kingdom Hybrid / WFH Options
KBC Technologies UK LTD
VPNs, and WAFs. Develop and manage firewall policies, network access controls, IAM solutions, MFA, RBAC, and privilege management . Ensure alignment of security measures with compliance standards (GDPR, HIPAA, PCIDSS). Conduct regular security audits and assessments to identify and remediate risks. Apply industry frameworks such as NIST Cybersecurity Framework, ISO 27001, CIS Controls . Oversee and More ❯