Lead enterprise-wide vulnerability assessments, remediation programmes, and Breach and Attack Simulation (BAS) exercises for proactive threat mitigation. 🌳 Compliance & Third-Party Security: Ensure adherence to PCI DSS, ISO 27001, SOC2 , and perform rigorous third-party security risk assessments. 🌳 Secure Software Development (SDLC): Embed secure coding practices into development lifecycles, enabling DevSecOps and automation-first security strategies. 🌳 Cross More ❯
Edinburgh, Midlothian, United Kingdom Hybrid / WFH Options
Kosli Enterprise
Anchore) Programming and scripting languages (Python, Go, YAML, JSON etc.) A background in financial services or similar regulated industries. Familiarity with compliance frameworks, and security requirements (e.g., ISO 27001, SOC2, SOX, PCI DSS, FedRAMP, FFIEC, NYDFS, and SEC compliance requirements) A track record in consulting, solutions architecture, or technical coaching. Interest in technical sales and supporting go More ❯
Central London, London, United Kingdom Hybrid / WFH Options
Infoplus Technologies UK Ltd
PaaS), and SaaS platforms. Evaluate emerging technologies and recommend adoption strategies. Governance & Compliance Establish governance frameworks for environment management, including data residency, access control, and compliance (e.g., GDPR, ISO, SOC2). Collaborate with InfoSec teams to ensure secure configuration and operation of all environments. Operational Oversight Develop and oversee lifecycle management of infrastructure assets across all environments. Ensure high availability More ❯
Edinburgh, Midlothian, United Kingdom Hybrid / WFH Options
Snc-Lavalin
Data Architect/Security page is loaded Data Architect/Securitylocations: GB.United Kingdom: CHE.Baden 5400.Nordhaus 3time type: Full timeposted on: Posted 2 Days Agojob requisition id: R-141464 Job Description Job Title: Data Architect/Security Location: UK or Switzerland Join Us Lead enterprise-wide data architecture strategy and governance: • Define and manage data architecture across SAP S/… e.g., data mesh, AI/ML) to enhance architecture.Champion data security, privacy, and compliance:• Implement data classification, encryption, and access control standards.• Ensure compliance with GDPR, ISO 27001, NIST, SOC2, and sector-specific frameworks.• Develop secure data integration architectures and monitor sensitive data flows.• Lead security assessments and contribute to incident response planning.• Promote a security-by More ❯
atlanta, georgia, united states Hybrid / WFH Options
MTech Systems
strategy. Education and Experience Bachelor’s degree in Computer Science, Information Technology, or related field. 5+ years of experience in cloud infrastructure engineering or systems administration, with at least 2 years in a customer-facing or consulting role. Proficient in Microsoft Azure, including Azure AD, networking, storage, and compute services. Strong scripting skills in PowerShell, Bash, or Python. Excellent … Administrator Associate. Experience with hybrid cloud environments and legacy system integration. Familiarity with customer onboarding, technical account management, or solution architecture. Knowledge of security frameworks and compliance standards (e.g., SOC2, ISO 27001). EEO Statement Integrated into our shared values is MTech’s commitment to diversity and equal employment opportunity. All qualified applicants will receive consideration for More ❯
Sacramento, California, United States Hybrid / WFH Options
KK Tech LLC
Secrets management (AWS Secrets Manager, HashiCorp Vault), and Compliance frameworks Health Insurance Portability and Accountability Act (HIPAA), General Data Protection Regulation (GDPR), andSystemand Organisation Controls2 (SOC2) . Desirable Technical Qualifications It is desirable for the proposed project person to have the following listed experience, knowledge, skills, and abilities as evidenced by Attachment II, Proposed Project Person … ML) cloud services (e.g., SageMaker) and multi-cloud architecture. The proposed project person will be required to adhere to the Client's hybrid working model, currently working on-site 2-3 days per week at Client Headquarters, West Sacramento, CA, and it may increase based on Client business needs. More ❯
with Azure Private Link, VNET integration, and network security. Hands-on experience with Azure Policy, RBAC, and resource governance. Knowledge of Azure Security practices, tools, and compliance standards (e.g., SOC2, ISO, etc.). Familiarity with Azure Cost Management, tagging strategies, and budget controls. Extensive experience managing Databricks as a platform, including Unity Catalog, identity federation, cluster policies More ❯
South West London, London, United Kingdom Hybrid / WFH Options
Anson Mccade
Develop cloud infrastructure architecture, standards, and best practices. Optimize cloud costs and performance for complex workloads including GPU-based instances. Implement cloud security measures aligned with compliance frameworks (CIS, SOC2, HIPAA). Collaborate with data scientists and development teams to deploy production-ready solutions. Provide technical guidance and evaluate new cloud services. Necessary skills of the AWS More ❯
s Information Security function and maintain/improve its security posture Take the lead in responding to customer security questionnaires or audit follow ups Oversee our regular ISO27001 andSOC2 Type II audits Research and choose technical tools to proactively detect and respond to weaknesses, threats and potential compromises Lead the development, implementation, and continuous improvement of More ❯
Senior DevSecOps Engineer – Global Health Data Platform Location: Oxford or London (hybrid: 3 office/2 WFH) Join a world-class research and technology organisation using data and AI to tackle global challenges from health and food security to climate and clean energy. They’re now hiring a Senior DevSecOps Engineer to help build and secure this cloud-first … Develop CI/CD pipelines (e.g., GitHub Actions) with built-in security testing. Support data scientists and engineers in deploying secure, automated workflows. Implement monitoring and compliance (ISO 27001, SOC2, GDPR). Mentor engineers on DevSecOps best practices. What you’ll bring Strong cloud experience (ideally OCI ), and a background in pharma or other regulated environments. Hands More ❯
Oxford, Oxfordshire, United Kingdom Hybrid / WFH Options
La Fosse Associates
Senior DevSecOps Engineer - Global Health Data Platform Location: Oxford or London (hybrid: 3 office/2 WFH) Join a world-class research and technology organisation using data and AI to tackle global challenges - from health and food security to climate and clean energy. They're now hiring a Senior DevSecOps Engineer to help build and secure this cloud-first … Develop CI/CD pipelines (e.g., GitHub Actions) with built-in security testing. Support data scientists and engineers in deploying secure, automated workflows. Implement monitoring and compliance (ISO 27001, SOC2, GDPR). Mentor engineers on DevSecOps best practices. What you'll bring Strong cloud experience (ideally OCI ). Industry experience in the pharma space Hands-on with More ❯
City of London, London, United Kingdom Hybrid / WFH Options
Crimson
GDPR, HIPAA, and OWASP, as well as leading risk assessments and managing the risk register. Key skills and responsibilities, Comprehensive knowledge of ISO 27001, NIST CSF, GDPR, HIPAA, SOC2, and OWASP frameworks. Senior Security Analyst/Senior Security Engineer background Proven experience collaborating with software development teams and implementing technical controls. Skilled in articulating technical risks in More ❯
London, South East, England, United Kingdom Hybrid / WFH Options
Crimson
GDPR, HIPAA, and OWASP, as well as leading risk assessments and managing the risk register. Key skills and responsibilities, Comprehensive knowledge of ISO 27001, NIST CSF, GDPR, HIPAA, SOC2, and OWASP frameworks. Senior Security Analyst/Senior Security Engineer background Proven experience collaborating with software development teams and implementing technical controls. Skilled in articulating technical risks in More ❯
e.g. EC2, S3, RDS, Lambda, VPC, IAM, CloudFormation/Terraform). Experience with DevOps tools (e.g. Git, Jenkins, Docker, Kubernetes). Familiarity with security and compliance frameworks (e.g. CIS, SOC2, HIPAA). Cloud certification at Associate or Professional level (e.g. AWS Solutions Architect, DevOps Engineer). For Associate Manager Level: Minimum 4 years of relevant experience. Strong More ❯
Woking, Surrey, England, United Kingdom Hybrid / WFH Options
Nomad Foods
across multiple entities and territories, including risk appetite and impact/likelihood calibration. Has familiarity with regulations and standards such as ISO27001, NIST CSF, NIS2, COBIT, ITIL, GDPR, andSOC2, including developing and maintaining frameworks, policies and guidance, and implementation and monitoring strategies. Some of the key skillset required for this position are: Graduate level in Cyber Security, Computer Science More ❯
/IPS, packet analysis) Secure software development & code review Incident response, digital forensics, malware analysis Identity & access management (IAM, Zero Trust, SSO/MFA) Security frameworks & compliance (NIST, CIS, SOC2) Interviews: October/November 2025 Start Date: January 2026 How to Apply: Apply to Gary Hargreaves at X4 Technology to learn more about the role or connect with me on More ❯
/IPS, packet analysis) Secure software development & code review Incident response, digital forensics, malware analysis Identity & access management (IAM, Zero Trust, SSO/MFA) Security frameworks & compliance (NIST, CIS, SOC2) Interviews: October/November 2025 Start Date: January 2026 How to Apply: Apply to Gary Hargreaves at X4 Technology to learn more about the role or connect with me on More ❯
Leeds, Yorkshire, United Kingdom Hybrid / WFH Options
Stott and May
Strategy Define and implement the company's security strategy across AI, blockchain, and cloud environments. Establish policies, standards, and governance frameworks aligned with industry best practices (ISO 27001, NIST, SOC2). Lead incident response, risk assessment, and threat modelling programmes. Build and mentor a world-class security team. AI Data Security Protect proprietary AI models, training data, and pipelines from … trust networks. Harden DevSecOps pipelines to ensure secure software delivery. Collaborate with engineering teams to integrate security by design into products. Compliance & Risk Management Ensure regulatory compliance with GDPR, SOC2, ISO, PCI-DSS, and crypto-specific frameworks. Lead risk assessments for third-party vendors and service providers. Work with legal and compliance teams on KYC/AML security for crypto More ❯
Poughkeepsie, New York, United States Hybrid / WFH Options
Marshall and Sterling Inc
overnight and occasional daytime hours. Preferred: Certifications such as CompTIA A+, Network+, or Microsoft 365 Fundamentals . Experience with Vertafore (AMS360, ImageRight) or Salesforce. Familiarity with compliance frameworks (NYDFS, SOC2, HIPAA). Total Rewards Package: Compensation: $65,000 - $75,000, based on experience, education, and work location. Benefits: Comprehensive package including Medical, Dental, Vision, 401(k) with More ❯
embed quality and compliance controls into their operations Clear, concise written communication and executive risk reporting Strong stakeholder management across technical and non technical teams Experience with ISO 27001, SOC2, or similar certifications, and familiarity with ISO 9001/22301/14001 as contributing inputs Exposure to model risk governance or validation practices Experience with evidence automation More ❯
such as EC2, S3, RDS, Lambda, VPC, IAM, and CloudFormation or Terraform Strong experience with DevOps tools (Git, Jenkins, Docker, Kubernetes) Knowledge of cloud security and compliance frameworks (CIS, SOC2, etc.) Proven track record of leading cloud migration or transformation projects Experience working in hybrid or multi-cloud environments is beneficial If you’re an AWS expert More ❯
City of London, London, United Kingdom Hybrid / WFH Options
Anson McCade
such as EC2, S3, RDS, Lambda, VPC, IAM, and CloudFormation or Terraform Strong experience with DevOps tools (Git, Jenkins, Docker, Kubernetes) Knowledge of cloud security and compliance frameworks (CIS, SOC2, etc.) Proven track record of leading cloud migration or transformation projects Experience working in hybrid or multi-cloud environments is beneficial If you’re an AWS expert More ❯
london, south east england, united kingdom Hybrid / WFH Options
Anson McCade
such as EC2, S3, RDS, Lambda, VPC, IAM, and CloudFormation or Terraform Strong experience with DevOps tools (Git, Jenkins, Docker, Kubernetes) Knowledge of cloud security and compliance frameworks (CIS, SOC2, etc.) Proven track record of leading cloud migration or transformation projects Experience working in hybrid or multi-cloud environments is beneficial If you’re an AWS expert More ❯