bradley stoke, south west england, united kingdom Hybrid / WFH Options
Alexander Mae (Bristol) Ltd
and forward thinking organising in Bristol. This role will be tolead their information security compliance efforts, specifically in line with ISO/IEC 27001 , ISO/IEC 42001 and CyberEssentials PLUS standards. In this role you will be responsible for maintaining, auditing, and continuously improving their Information Security Management System (ISMS), overseeing compliance initiatives, coordinating with internal … the building of a new Team to deliver CaaS and supporting services. Develop, implement, and maintain the Information Security Management System (ISMS) aligned with ISO/IEC 27001 and CyberEssentials PLUS standards. Lead internal audits, gap assessments, and risk assessments for ISO 27001 and CyberEssentials PLUS. Coordinate and manage external audits and certifications, including … Identify compliance gaps and lead remediation activities. Oversee incident management, business continuity, and data protection processes as part of ISMS requirements. Stay current on changes to ISO 27001 and CyberEssentials PLUS frameworks, regulatory expectations, and cybersecurity threats. Develop and deliver security and compliance awareness training across the organisation. Collaborate with IT, Legal, HR, and other departments to More ❯
London, South East, England, United Kingdom Hybrid / WFH Options
Precise Placements
Key Responsibilities: Maintain and evolve the firm’s Information Security Management System (ISMS) and associated documentation Support audits and ensure security practices align with industry standards (e.g., ISO 27001, CyberEssentials) Assist with Business Continuity Management (BCM) - including BIAs, BCPs, exercises, and training Manage and respond to security incidents, conducting root cause analysis and recommending improvements Deliver risk … assessments , Data Privacy Impact Assessments (DPIAs) , and third-party compliance checks Handle client cyber due diligence questionnaires and close remedial actions Work closely with Risk & Compliance, IT, and other business teams to embed security practices into operations Support the cyber team in aligning security measures with application and infrastructure development What We’re Looking For: Demonstrable experience in … information security and privacy risk management Working knowledge of ISO 27001 , CyberEssentials , and CIS Controls frameworks Ability to articulate security risks and controls clearly to technical and non-technical stakeholders Strong analytical and written communication skills Security certifications (e.g., CISSP, CISM, CIISec) are advantageous or a willingness to work towards them Highly organised, professional, and able to More ❯
Staffordshire, United Kingdom Hybrid / WFH Options
Gleeson Recruitment Group
background is helpful too. The environment is Microsoft-focused (Azure, M365, Defender), with Exabeam as the primary SIEM, and you'll play a key part in their journey toward CyberEssentials Plus certification. The Role Investigate, respond to, and resolve security incidents Shape and improve SIEM monitoring and response using Exabeam Guide on Azure security controls: Entra ID … Defender, NSGs, Key Vault, etc. Harden infrastructure across Microsoft 365 and Endpoint environments Collaborate with System Admins, SOC Analysts, and Network Engineers Support compliance with upcoming CyberEssentials certification Automate tasks with scripting (PowerShell, KQL, Python a plus) Help non-technical users understand and adopt secure practices What We're Looking For 5+ years in IT Security Engineering … and clear with non-IT users Proactive and self-starting mindset, someone who "gets on with it" Desirable Certifications: AZ-500, CISSP, CCSP, CISM Experience with compliance initiatives like CyberEssentials Any coding/scripting ability (PowerShell/KQL/Python) Working Pattern Fully remote with occasional head office visits Flexible approach to working patterns in a family More ❯
Staffordshire, Tamworth, West Midlands Hybrid / WFH Options
Gleeson Recruitment Group
background is helpful too. The environment is Microsoft-focused (Azure, M365, Defender), with Exabeam as the primary SIEM, and you'll play a key part in their journey toward CyberEssentials Plus certification. The Role Investigate, respond to, and resolve security incidents Shape and improve SIEM monitoring and response using Exabeam Guide on Azure security controls: Entra ID … Defender, NSGs, Key Vault, etc. Harden infrastructure across Microsoft 365 and Endpoint environments Collaborate with System Admins, SOC Analysts, and Network Engineers Support compliance with upcoming CyberEssentials certification Automate tasks with scripting (PowerShell, KQL, Python a plus) Help non-technical users understand and adopt secure practices What We're Looking For 5+ years in IT Security Engineering … and clear with non-IT users Proactive and self-starting mindset, someone who "gets on with it" Desirable Certifications: AZ-500, CISSP, CCSP, CISM Experience with compliance initiatives like CyberEssentials Any coding/scripting ability (PowerShell/KQL/Python) Working Pattern Fully remote with occasional head office visits Flexible approach to working patterns in a family More ❯
West Midlands, England, United Kingdom Hybrid / WFH Options
Gleeson Recruitment Group
background is helpful too. The environment is Microsoft-focused (Azure, M365, Defender), with Exabeam as the primary SIEM, and you'll play a key part in their journey toward CyberEssentials Plus certification. The Role Investigate, respond to, and resolve security incidents Shape and improve SIEM monitoring and response using Exabeam Guide on Azure security controls: Entra ID … Defender, NSGs, Key Vault, etc. Harden infrastructure across Microsoft 365 and Endpoint environments Collaborate with System Admins, SOC Analysts, and Network Engineers Support compliance with upcoming CyberEssentials certification Automate tasks with scripting (PowerShell, KQL, Python a plus) Help non-technical users understand and adopt secure practices What We're Looking For 5+ years in IT Security Engineering … and clear with non-IT users Proactive and self-starting mindset, someone who "gets on with it" Desirable Certifications: AZ-500, CISSP, CCSP, CISM Experience with compliance initiatives like CyberEssentials Any coding/scripting ability (PowerShell/KQL/Python) Working Pattern Fully remote with occasional head office visits Flexible approach to working patterns in a family More ❯
a hands-on role that will involve acting as a senior escalation point for complex technical issues, as well as playing a key part in delivering projects such as CyberEssentials Plus renewals, MDM rollouts, and infrastructure improvements. Key Responsibilities: Serve as an escalation point for complex technical issues from the 1st and 2nd line teams. Deliver advanced … plan and implement technical solutions for clients. Key Skills and Experience: Previous experience in a 3rd Line or senior technical support role within an MSP environment. Strong understanding of cyber security principles, frameworks, and technologies (e.g. CyberEssentials, MFA, antivirus/EDR platforms, firewalls). Hands-on experience with MDM platforms and deployments (e.g. Microsoft Intune, Mosyle More ❯
Protection Officer (DPO) Role Summary Our client is seeking an Information Security Compliance Manager and Data Protection Officer (DPO) to ensure compliance with applicable Information Security Standards (ISO27001/CyberEssentials Plus, NIS2) as well as the General Data Protection Regulation (GDPR) and other applicable data protection laws. This role reports to the Director of Governance, Risk & Compliance … Provide guidance on data privacy and information security in contracts, vendor agreements, and address third-party risk assessment requirements. Information Security Compliance Certifications: Manage certification compliance programs (ISO27001/CyberEssentials Plus); lead and coordinate annual certification efforts. Other Cybersecurity Laws and Regulations: Support compliance efforts regarding EU’s emerging data and cyber laws (NIS2, Data Act More ❯
London, England, United Kingdom Hybrid / WFH Options
Crown Agents Bank
response to security incidents, including investigation, containment, root cause analysis, and reporting. Work with internal teams to continuously improve incident response processes. Support compliance and alignment with ISO 27001, CyberEssentials, SWIFT, NIST and other relevant frameworks. Communicate effectively with various stakeholders including engineers, product managers, operations team, senior management, and auditors about the information security posture, risks … certifications (e.g. CEH, OSCP, AWS Security) are a plus. Experience Minimum of 8 years’ experience in information security roles, ideally in the financial sector. Experience working with ISO 27001, CyberEssentials, and preferably NIST CSF, SOC 2, or SWIFT frameworks. Strong understanding of security in the context of software development and application security (OWASP, SDLC, DevSecOps). Hands … fast-paced environment. Excellent communication skills, with the ability to engage both technical and non-technical stakeholders. Innovative mindset with a passion for staying current in the ever-evolving cyber landscape. Experience working in or with regulated financial institutions is desirable. Additional Information Hybrid working Contributory personal pension plan: - Minimum: Employee 2% and Employer 7%. Employer matches contributions More ❯
Meriden, Coventry, West Midlands, England, United Kingdom
Recruit4Talent
opportunity to leverage your existing skills while developing new ones, contributing to the strategic security objectives of the Company and ensuring adherence to critical accreditations, including ISO 27001, GDPR, CyberEssentials, and PCI DSS. The successful candidate will demonstrate: Strong analytical skills with a meticulous approach to identifying and resolving security issues Excellent verbal and written communication abilities … learning and developing expertise in information security Happy to travel occasionally to other sites as required. Desirable Experience: Demonstrable expertise in external audit, compliance, and security processes (ISO27001, GDPR, CyberEssentials and PCI DSS) Microsoft accreditation or other recognised certifications (e.g. Microsoft Learning, CISA, CISM, CRISC, CCSP) would be very beneficial. Benefits: £25,000 - £35,000 salary depending More ❯
opportunity to leverage your existing skills while developing new ones, contributing to the strategic security objectives of the Company and ensuring adherence to critical accreditations, including ISO 27001, GDPR, CyberEssentials, and PCI DSS. The successful candidate will demonstrate: Strong analytical skills with a meticulous approach to identifying and resolving security issues. Excellent verbal and written communication abilities … learning and developing expertise in information security. Happy to travel occasionally to other sites as required. Desirable Experience: Demonstrable expertise in external audit, compliance, and security processes (ISO27001, GDPR, CyberEssentials and PCI DSS). Microsoft accreditation or other recognised certifications (e.g. Microsoft Learning, CISA, CISM, CRISC, CCSP) would be very beneficial. Benefits: £25,000 - £35,000 salary More ❯
operations meet the highest standards. Key Responsibilities: Team Leadership and Management: Lead, mentor, and manage a diverse team of IT professionals including an Application Support Specialist, Technical Project Manager, Cyber Security and Compliance Analyst, and End-to-End QA Specialist. Allocate resources efficiently to ensure timely and successful project delivery. Conduct regular performance reviews and provide ongoing feedback to … technical projects. Work closely with the Technical Project Manager to ensure projects are completed on time, within scope, and budget. Facilitate communication and collaboration between project teams and stakeholders. Cyber Security and Compliance: Ensure the implementation and adherence to cyber security policies and procedures. Collaborate with the Cyber Security and Compliance resources to conduct regular security assessments … and audits. Manage compliance with relevant regulations and standards, such as GDPR and CyberEssentials Plus. Quality Assurance: Oversee the end-to-end quality assurance process for all digital products and services. Work with the End-to-End QA Specialist to develop comprehensive test plans and ensure thorough testing. Ensure quality assurance processes are followed to maintain high More ❯
strategic lens -you'll own our information security posture end-to-end, ensuring we maintain our ISO 27001 accreditation, while preparing for other relevant accreditations (such as SOC2 and CyberEssentials). You'll proactively manage risks and help create a secure environment where teams can move fast without compromising on trust or safety. You'll also guide … Information Security Leadership Own and evolve our ISMS (Information Security Management System), ensuring it remains fit for purpose as we scale. Maintain and advance compliance across ISO 27001, SOC2, CyberEssentials, GDPR, and any emerging frameworks (e.g. PCI DSS, AI governance), ensuring we are audit-ready. Identify, assess, and mitigate security risks across infrastructure, systems, and vendors - flagging … re looking for Essential Experience as an InfoSec expert - ideally within a high-growth SaaS or B2B tech environment. Strong working knowledge of compliance frameworks (e.g. ISO 27001, SOC2Cyber Essentials) and ideally PCI DSS. Working knowledge of GDPR, with experience supporting or overseeing data protection practices. Hands-on experience with security tooling and SaaS security systems. Confident in managing More ❯
respond to potential security alerts from tools like antivirus, EDR/XDR and firewalls. Help enforce cybersecurity policies and controls in line with standards such as ISO 27001 or CyberEssentials Plus. Support deployment and monitoring of EDR/XDR platforms (experience with ESET XDR is a plus). Assist with security awareness initiatives, phishing simulations and end … Duo MFA, Sage Payroll and Workday Accounts. Knowledge of Linux server administration and web hosting platforms such as cPanel. SQL database management and troubleshooting skills. Understanding of ISO 27001, CyberEssentials or other IT compliance frameworks. Experience or interest in AI prompt engineering. What will you gain? Be part of a forward-thinking team working on exciting projects More ❯
support related processes Identify and report security risks to management and the board Create and maintain security policies, processes, and procedures Develop technical controls to enhance security capabilities against cyber threats Monitor and implement systems for security reporting and incident detection Document user requirements and create technical training guides Manage risk registration processes Test disaster recovery plans and improve … security resilience Qualifications and Technical Requirements Hands-on experience in information security Knowledge of security standards such as CyberEssentials, ISO 27001/27002, Data Protection Act, and GDPR Understanding of IT infrastructure and security testing principles, including vulnerability scanning and risk reporting Experience in creating documentation Knowledge Areas Information Security and Threat Analysis Incident Management and Response More ❯
operations meet the highest standards. Key Responsibilities Team Leadership and Management: Lead, mentor, and manage a diverse team of IT professionals including an Application Support Specialist, Technical Project Manager, Cyber Security and Compliance Analyst, and End-to-End QA Specialist. Allocate resources efficiently to ensure timely and successful project delivery. Conduct regular performance reviews and provide ongoing feedback to … technical projects. Work closely with the Technical Project Manager to ensure projects are completed on time, within scope, and budget. Facilitate communication and collaboration between project teams and stakeholders. Cyber Security And Compliance Ensure the implementation and adherence to cyber security policies and procedures. Collaborate with the Cyber Security and Compliance resources to conduct regular security assessments … and audits. Manage compliance with relevant regulations and standards, such as GDPR and CyberEssentials Plus. Quality Assurance Oversee the end-to-end quality assurance process for all digital products and services. Work with the End-to-End QA Specialist to develop comprehensive test plans and ensure thorough testing. Ensure quality assurance processes are followed to maintain high More ❯
documentation, the practice network infrastructure, servers, systems and security efficiency through proactive maintenance, reviews, updates, vulnerability fixes and risk management meetings, to ensure compliance with governance frameworks such as CyberEssentials and ISO 27001 standards. Create and maintain detailed documentation of technical issues. Support the wider IT team with supplier management, supplier compliance, hardware specifications, maintenance of external … with financial systems, document management systems, monitoring tools and network troubleshooting techniques. Experience with document infrastructure configuration, policies and processes to ensure compliance with industry standards ISO 27001 and Cyber Essentials. Should you have any questions or wish to apply please do not hesitate to contact Clear IT Recruitment Limited. Please Note: Due to the number of applications we More ❯
projects. Support release and deployment activities, including upgrades, patching, and changes, reviewing impact, and developing test plans. Manage and maintain application licenses. Work with Information Asset Owners, Compliance, and Cyber Security to ensure data security measures align with policies, maintaining supportability for CyberEssentials certification. Represent application services in the Change Advisory Board. Qualifications and Experience 2+ More ❯
top-tier end-user support Deploy patches and updates across hardware, software, and network environments Support system architecture, integrations, and high availability infrastructures Maintain compliance with ISO 27001 and CyberEssentials Plus Conduct root cause analysis (RCA) and document major incidents/problems Skills & Experience: Essential: Proficiency with Windows 11, macOS, Linux, and Office 365 Experience with Microsoft More ❯
top-tier end-user support Deploy patches and updates across hardware, software, and network environments Support system architecture, integrations, and high availability infrastructures Maintain compliance with ISO 27001 and CyberEssentials Plus Conduct root cause analysis (RCA) and document major incidents/problems Skills & Experience: Essential: Proficiency with Windows 11, macOS, Linux, and Office 365 Experience with Microsoft More ❯
Marlow, England, United Kingdom Hybrid / WFH Options
Softcat Plc
The Softcat Way. Softcat is a £1billion+ technology solutions business and trusted partner to names like Apple, Microsoft and Adobe. Offering a growing portfolio of services including software licensing, cyber security and IT infrastructure, we give our technical teams the tools and support to make exciting things happen. This is where to achieve more for your career. Lead the … ISO 27001, ITIL, ISO2 2301, NIST), ensuring alignment with business objectives and regulatory requirements. Coordinating and representing IT risk in internal , external audits and certification processes (e.g., ISO 27001, CyberEssentials , ISO22301, etc. ), acting as the primary point of contact. We'd love you to have Minimum 5 years of experience in second-line risk management or internal More ❯
Hitchin, Hertfordshire, South East, United Kingdom Hybrid / WFH Options
Interaction - Letchworth
such as Hyper-V. · Technical knowledge of LAN/WAN, Routing, Switching, WatchGuard firewalls, VLANs and VPNs · Understanding of backup, recovery and business continuity concepts. · Understanding of security concepts, Cyberessentials framework, compliance and governance. · Ability to provide technical advice, in an easy-to-understand manner, to various-sized organisations. · Liaise with clients, internal staff, and 3rd parties More ❯
Ickleford, Hertfordshire, United Kingdom Hybrid / WFH Options
Interaction Recruitment
such as Hyper-V. Technical knowledge of LAN/WAN, Routing, Switching, WatchGuard firewalls, VLANs and VPNs Understanding of backup, recovery and business continuity concepts. Understanding of security concepts, Cyberessentials framework, compliance and governance. Ability to provide technical advice, in an easy-to-understand manner, to various-sized organisations. Liaise with clients, internal staff, and 3rd parties More ❯
Hitchin, Ickleford, Hertfordshire, United Kingdom Hybrid / WFH Options
Interaction Recruitment
such as Hyper-V. · Technical knowledge of LAN/WAN, Routing, Switching, WatchGuard firewalls, VLANs and VPNs · Understanding of backup, recovery and business continuity concepts. · Understanding of security concepts, Cyberessentials framework, compliance and governance. · Ability to provide technical advice, in an easy-to-understand manner, to various-sized organisations. · Liaise with clients, internal staff, and 3rd parties More ❯
Hitchin, Hertfordshire, South East, United Kingdom Hybrid / WFH Options
Interaction - Letchworth
such as Hyper-V. · Technical knowledge of LAN/WAN, Routing, Switching, WatchGuard firewalls, VLANs and VPNs · Understanding of backup, recovery and business continuity concepts. · Understanding of security concepts, Cyberessentials framework, compliance and governance. · Ability to provide technical advice, in an easy-to-understand manner, to various-sized organisations. · Liaise with clients, internal staff, and 3rd parties More ❯
London, England, United Kingdom Hybrid / WFH Options
Interaction Recruitment
such as Hyper-V. Technical knowledge of LAN/WAN, Routing, Switching, WatchGuard firewalls, VLANs and VPNs Understanding of backup, recovery and business continuity concepts. Understanding of security concepts, Cyberessentials framework, compliance and governance. Ability to provide technical advice, in an easy-to-understand manner, to various-sized organisations. Liaise with clients, internal staff, and 3rd parties More ❯