consultancy enables quantifiable compliance with key information security legislation, regulations, and industry standards, including PCI DSS, the UK Data Protection Act 2018 (DPA 2018), GDPR, and ISO/IEC 27001. If you would like to learn more about this opportunity, feel free to reach out and apply today! Responsibilities: Conduct web, mobile, API, infrastructure, cloud … wireless penetration testing. Create detailed technical reports and deliver test findings directly to clients. Provide remediation advice and post-assessment consultancy. Contribute to internal testing methodologies and Red Team / social engineering activities. Mentor junior team members and support collaborative delivery of projects. Occasionally support the creation of marketing materials such as research papers and articles. Skills / Must have: Strong knowledge of OWASP methodologies and offensive testing across black / grey / white-box approaches. Proficiency in tools like Burp Suite, Kali, Nmap, Nessus, Qualys, Metasploit. Familiarity with cloud platform security testing (AWS, Azure, GCP). Understanding of mobile security (Android & iOS), networking protocols, and the OSI model. Excellent verbal and written communication skills More ❯
Manchester, Lancashire, United Kingdom Hybrid / WFH Options
Gordons
within ServiceNow. Learning how to conduct Information Security risk assessments within the Surecloud GRC tool. Assist in managing the requirements for the firm to comply with ISO/IEC27001 Policies and Standards and Cyber Essentials Plus. Assisting with conducting information security audits internally and externally. Assist in remediation activities to resolve audit … logical reasoning and problem-solving abilities 2:1 degree in an IT or Science, Technology, Engineering or Mathematics (STEM) subject desired Knowledge of GDPR and Data Protection Knowledge of ISO27001 and other best practice security management frameworks Experience in third party security auditing Knowledge of cloud security controls Knowledge of the legal sector WHAT CAN YOU EXPECT WithAddleshawGoddard, youcanexpect asupportiveteam … year, with a review to increase in your second year (subject to performance). The team will also be supportive of the following courses for the graduate to complete: ISO27001:2022 Lead Auditor Course, CISSP (Certified Information System Security Professional), CompTIA Security+ and Soft skills courses. Corebenefitsinclude Life Assurance, Income Protection, Pension and Bonus schemes,withadditionalHealth & Wellbeingbenefitsand services, plus manyvoluntaryLifestylebenefits More ❯
KRI metrics across IS teams, prepare regulatory submissions, and track compliance. ISMS Support: Maintain the Information Security Management System (ISMS) in line with ISO27001/ 27002. Manage governance forums, minutes, and documentation. Policies & Standards: Develop GRC policies, standards, and procedures. Track exceptions, monitor risk, and report on performance and compliance. Controls Framework: Strengthen the … to identifying threats and making smart, independent decisions. A working knowledge of ISO27001 and aligning businesses to compliance frameworks. Confidence presenting to senior internal / external stakeholders. Excellent communication skills and a collaborative mindset. Culture fit really matters here. What’s In It For You? Freedom to shape the role. Real autonomy to define … the GRC roadmap alongside the manager. Ongoing investment in you. The team is already completing certs like CISM, CRISC, OT & Cloud, ISO Lead Implementer, and more. Award-winning employer. Recognised for diversity, digital transformation, and consistently ranked among the UK’s top employers. Real cyber focus. Not just ticking compliance boxes. Cyber is a business priority. If you More ❯
Working knowledge of Active Directory, AAD, Windows Server, SQL Server, Oracle, Linux, Cloud Backup Solutions and Cloud Computing Principals. Familiarity with and experience working to the ISO/IEC27001 standards Experience of working to tight SLA / OLA's and deadlines Experience of change management process Ability to apply existing knowledge More ❯
delivery managers to embed security controls from day one Review and guide third-party risk assessments and product security compliance Support DPIAs and ensure alignment with Cyber Essentials, ISO27001, and NIST frameworks Lead threat modelling, risk assessments, and support documentation of potential vulnerabilities Influence strategic investment decisions based on risk and business impact What You … Need: Proven experience advising on security across the full project lifecycle Deep knowledge of Secure by Design principles and data protection best practices Strong familiarity with Cyber Essentials, ISO27001, NIST, and other regulatory frameworks Hands-on experience supporting DPIAs and third-party risk reviews Ability to clearly communicate cyber risks to both technical and non … technical stakeholders Previous experience working in Agile or change-heavy delivery environments Relevant certifications such as CISSP, CISM, SABSA, or ISO27001 Lead Auditor Our client is looking to fill this position as a matter of urgency, so if you're interested please apply to this job and contact More ❯
Washington, Washington DC, United States Hybrid / WFH Options
MAGNUS Management Group
Company Description MAGNUS Management Group LLC is a Woman Owned Small Business consulting firm located in Washington DC. We are ISO 9001, ISO27001, ISO 20000, ISO 56002 & CMMI L3 SVC + SSD certified, and we provide expert consulting services in areas such as Information Technology, Management Consulting, Cyber Security … technical solutions to support customer requirements and technical requirements based upon analysis of user, policy, technology, regulatory, and resource demands; recommends cloud-specific solutions for customer requirements; directs and / or supports design of solutions for enterprise cloud environments; has specific knowledge and experience developing or engineering cloud service provider solutions; and possesses expert knowledge in one or more … such as Docker and Kubernetes Bachelor's degree in Computer Science or related field Strong communication and problem-solving skills Experience with DevOps methodology Certifications in AWS, Azure, and / or Google Cloud Platform are a plus MAGNUS Management Group offers a competitive, comprehensive benefits package, which includes: 3 Weeks Paid Time Off 10 Federal Holidays Medical, Dental, and More ❯
Working knowledge of Active Directory, AAD, Windows Server, SQL Server, Oracle, Linux, Cloud Backup Solutions and Cloud Computing Principals. Familiarity with and experience working to the ISO/IEC27001 standards Experience of working to tight SLA / OLA's and deadlines Experience of change management process Ability to apply existing knowledge More ❯
Liverpool, Merseyside, England, United Kingdom Hybrid / WFH Options
Robert Walters
s digital assets by working collaboratively with colleagues across multiple departments. Your day-to-day responsibilities will include supporting policy development in line with leading frameworks such as ISO27001 or NIST, overseeing vulnerability management activities alongside IT professionals, conducting architectural reviews for new projects, and helping drive continuous improvement in technical controls. You will also … will bring proven experience on protecting sensitive data within regulated environments. Your background should include hands-on involvement with risk assessments, policy development aligned with industry standards like ISO27001 or NIST, vulnerability management activities spanning identification through remediation, and direct participation in incident response processes. Demonstrable experience applying risk assessment methodologies to identify vulnerabilities and … recommend effective mitigations is highly valued. Recognised information security frameworks such as ISO27001 or NIST ensures you can contribute meaningfully to policy development. A solid understanding of core security technologies-including firewalls, intrusion detection systems, endpoint protection platforms-and their practical application is important. Experience supporting vulnerability management processes from identification through remediation demonstrates your More ❯
Birmingham, West Midlands, England, United Kingdom Hybrid / WFH Options
Robert Walters
s digital assets by working collaboratively with colleagues across multiple departments. Your day-to-day responsibilities will include supporting policy development in line with leading frameworks such as ISO27001 or NIST, overseeing vulnerability management activities alongside IT professionals, conducting architectural reviews for new projects, and helping drive continuous improvement in technical controls. You will also … will bring proven experience on protecting sensitive data within regulated environments. Your background should include hands-on involvement with risk assessments, policy development aligned with industry standards like ISO27001 or NIST, vulnerability management activities spanning identification through remediation, and direct participation in incident response processes. Demonstrable experience applying risk assessment methodologies to identify vulnerabilities and … recommend effective mitigations is highly valued. Recognised information security frameworks such as ISO27001 or NIST ensures you can contribute meaningfully to policy development. A solid understanding of core security technologies-including firewalls, intrusion detection systems, endpoint protection platforms-and their practical application is important. Experience supporting vulnerability management processes from identification through remediation demonstrates your More ❯
Aufgaben Profil Wir bieten Information Security Officer (m / f / d) Founded in 1853, our client, the Prinzhorn Group , is still a family owned and managed group with 10,000 employees in 16 countries, and an European market leader in the corrugated packaging, paper and recycling industries. With an annual turnover of 2,9 billion Euro, the … Prinzhorn Group ranks among the top 5 in Europe in its segment. The family owned Prinzhorn Group has its headquarters in Vienna / Austria and is structured in three divisions: Dunapack Packaging (corrugated packaging solutions), Hamburger Containerboard (production of high-quality corrugated case material products) and Hamburger Recycling (collection and trading of secondary raw material). With a modern … to strengthen the Information Security Team in Vienna we are looking for you. YOU WILL. Main tasks Further development of the ISMS and ensuring compliance in accordance with ISO27001 and NIS-2 requirements Participation in the development and continuous improvement of security policies, standards, and processes at the group level Conducting risk assessments, audits, and More ❯
of high-quality NHS services. Established 28 years ago as an out of hours GP service, we have now grown significantly and deliver a full range of services, 24 / 7, to support 111, Primary Care Networks, Integrated Care Systems, Acute and Community NHS Trusts. We are incredibly excited to now be embarking on the next stage of our … in a tidy and safe way and free from hazards - Actively reporting of health and safety hazards and infection hazards immediately when recognised Keeping own work areas and general / patient areas generally clean, assisting in the maintenance of general standards of cleanliness consistent with the scope of the job holders role Undertaking periodic infection control training (minimum annually … of patients, carers and colleagues. Behaving in a manner which is welcoming to and of the individual, is non-judgmental and respects their circumstances, feelings priorities and rights. Personal / Professional development: The post-holder will participate in any training programme implemented by the practice as part of this employment, such training to include: Participation in an annual individual More ❯
secure cloud infrastructure using Oracle Cloud Infrastructure (OCI). Develop and manage Infrastructure as Code (IaC) with tools like Terraform to enable secure, repeatable deployments. Implement and manage CI / CD pipelines, focusing on automated security testing, deployment, and monitoring. Ensure all aspects of the data platform OCI infrastructure, data ingest pipelines, tool deployments, access controls, and monitoring are … Hands-on experience with cloud infrastructure, ideally Oracle Cloud (OCI), including provisioning, configuration, and service management. Proficient with Terraform or similar IaC tools. Skilled in implementing and maintaining CI / CD pipelines (e.g., GitHub Actions), especially with automated security testing. Strong knowledge of containerisation (e.g., Docker) and orchestration (e.g., Kubernetes). Deep understanding of cloud security principles: IAM, network … security, encryption. Experience with monitoring / alerting tools (e.g., Prometheus, Grafana, ELK stack). Proficient in Git or other version control systems. Desirable Knowledge, Skills and Experience: Certifications in OCI or other cloud platforms (AWS, GCP). Experience with security tools like OWASP ZAP, Burp Suite, etc. Familiarity with Jira, Confluence, or similar tools. Knowledge of compliance frameworks (e.g. More ❯
Newcastle Upon Tyne, Tyne and Wear, North East, United Kingdom Hybrid / WFH Options
Reed Technology
assessed, and remediated within appetite. Oversee Secure by Design initiatives, aligning business and technical changes with security requirements and government standards. Drive compliance with frameworks including DSPT , CAF , ISO27001 , and GDPR . Lead the security culture, education, and awareness programme across the organisation. Collaborate with external bodies to mature cyber security practices across the health … a focus on governance, risk, and compliance. Proven ability to lead teams and manage complex programmes in regulated environments. Strong understanding of cyber security frameworks and regulations (DSPT, ISO27001, CAF, GDPR, DORA). Experience authoring governance documentation (policies, standards, reports). Familiarity with Microsoft-based technologies , including IdAM, networks, applications, and cloud environments. Excellent communication … technical and non-technical audiences. Demonstrated ability to translate security frameworks across sectors and align them with organisational goals. Desirable Qualifications Certifications such as CISSP , CISM , CRISC , or ISO27001 Lead Implementer . Experience with tools like OneTrust , Varonis , or similar GRC platforms. Why Work Us? Generous annual leave : 27 days starting leave (rising to 32.5 More ❯
Employment Type: Permanent, Part Time, Work From Home
regulatory developments and changes in laws, regulations, and industry standards. Assess the organisation's compliance with applicable regulations, standards, and internal policies. Resilience Planning: Support the Senior Resilience BCP / DR Advisor in developing and maintaining IT resilience and business continuity plans to ensure the organisation's ability to respond to and recover from IT disruptions. Incident Response and … Data Protection Act) and industry-specific regulations Experience implementing compliance and control frameworks Proficiency in IT governance and quality standards Knowledge of security management frameworks like ISO/IEC27001, ITIL, COBIT, NIST standards Strong stakeholder management skills High integrity and professionalism in handling confidential matters Familiarity with risk management tools like OneTrust More ❯
ll Be Working On: ️ Managing and enforcing information security policies, procedures, and standards to safeguard organizational data ️ Conducting risk assessments and ensuring compliance with relevant security frameworks (e.g., ISO27001, NIST, GDPR) ️ Performing audits and security assessments to identify vulnerabilities and recommending appropriate mitigations ️ Collaborating with other teams to implement and maintain secure information management systems … re Looking For: ️ Proven experience as an Information Assurance Specialist or in a similar role focused on data protection and compliance ️ Strong understanding of information assurance frameworks (e.g., ISO27001, NIST SP 800-53, COBIT) ️ Experience with security assessments, audits, and vulnerability management ️ Knowledge of regulatory standards such as GDPR, HIPAA, and PCI-DSS ️ Certifications such … as CISSP, CISM, or ISO27001 Lead Implementer are highly desirable More ❯
Leeds, West Yorkshire, England, United Kingdom Hybrid / WFH Options
Reed
you will act as an outsourced Chief Information Security Officer, delivering tailored security advice, overseeing cyber risk management, and supporting clients through regulatory and audit readiness processes (e.g., ISO27001, SOC 2). You will also play a key role in shaping and expanding our security advisory services. Key Responsibilities Serve as a trusted security advisor … to FCA-regulated financial services clients. Provide strategic guidance aligned with FCA , PRA , SYSC , and GDPR requirements. Lead and support risk assessments , security posture reviews , and audit preparations (ISO27001, SOC 2). Communicate effectively with board-level stakeholders and senior leadership. Collaborate with the sales team to evolve existing services and design new offerings. Support … term fractional retainer model for vCISO services. Required Experience & Skills Proven experience advising FCA-regulated firms . Deep knowledge of SYSC , GDPR , and at least one audit framework ( ISO27001 or SOC 2 ). Strong client-facing and communication skills, with the ability to engage C-level and board stakeholders . Demonstrated ability to deliver pragmatic More ❯
Birmingham, West Midlands (County), United Kingdom
Sherborne Talent Solutions
management, and people leadership. Key responsibilities of the role: Lead and manage support teams, driving a culture of accountability, collaboration, and innovation. Oversee ITIL-based service delivery, ensuring SLA / KPI targets are consistently met. Manage Jira Service Desk operations, incident resolution, and root cause analysis. Build insightful Power BI dashboards to track and report on service performance. Act … as the primary point of contact for service-related issues, managing client relationships and expectations. Ensure compliance with ISO27001 standards and develop risk mitigation strategies. Drive continuous improvement initiatives to optimise processes and enhance customer satisfaction. Experience required: 5+ years’ experience in service delivery management in SaaS, cloud, or enterprise software environments. Strong expertise in … s on offer: A leadership role with real impact on client satisfaction and operational success. A collaborative and supportive culture where initiative and innovation are valued. Hybrid, (weekly office / home split), working model with regular opportunities to travel and engage with clients. If you are a strategic thinker with a hands-on approach to service delivery and team More ❯
James Andrew Recruitment Solutions (JAR Solutions)
driven operations and cost efficiency Technology Governance & Operating Model Standardise and simplify technology governance, policies and processes to reflect a modern IT function Embed frameworks including ISO/IEC27001 for information security management and ITIL for service management Transform IT from a back-office support service to an integrated business enabler Change More ❯
Desborough, Northamptonshire, United Kingdom Hybrid / WFH Options
Logistex
of all internal systems - IT, facilities, software, and data - ensuring they are efficient, future-ready, and aligned to our growth. You will also oversee key internal projects, from ISO27001 implementation to office upgrades and smarter, more secure site connectivity. Why join us? Competitive salary & Bonus structure Car Allowance Family healthcare cover Be part of an … annual leave What will you be doing? Lead internal infrastructure and business improvement projects Ensure secure, scalable IT and data systems Manage senior IT and improvement leaders Oversee ISO27001, connectivity upgrades, and office improvements Report on progress and performance to senior leadership Manage a high-performing team across IT, security, and improvement What do we … experience, within a leadership role Strong knowledge of infrastructure, cybersecurity, and software delivery Proven project and people leadership Excellent communication across technical and non-technical teams Experience with ISO27001 is a strong advantage Ready to lead change and drive business-wide impact? Apply now and help shape the future of infrastructure and innovation at Logistex More ❯
Kettering, North Northamptonshire, Northamptonshire, United Kingdom Hybrid / WFH Options
Logistex
of all internal systems - IT, facilities, software, and data - ensuring they are efficient, future-ready, and aligned to our growth. You will also oversee key internal projects, from ISO27001 implementation to office upgrades and smarter, more secure site connectivity. Why join us? Competitive salary & Bonus structure Car Allowance Family healthcare cover Be part of an … annual leave What will you be doing? Lead internal infrastructure and business improvement projects Ensure secure, scalable IT and data systems Manage senior IT and improvement leaders Oversee ISO27001, connectivity upgrades, and office improvements Report on progress and performance to senior leadership Manage a high-performing team across IT, security, and improvement What do we … experience, within a leadership role Strong knowledge of infrastructure, cybersecurity, and software delivery Proven project and people leadership Excellent communication across technical and non-technical teams Experience with ISO27001 is a strong advantage Ready to lead change and drive business-wide impact? Apply now and help shape the future of infrastructure and innovation at Logistex More ❯
wants to work more in an advisory and compliance role within OT security. The OT Security Engineer is responsible for overseeing activities to establish a secure OT environment. He / she collaborates with cybersecurity teams, system owners, and operational personnel to implement secure system architectures, mitigate cyber threats and vulnerabilities, and conduct routine reviews of OT systems related to … security standards and regulations. Additionally, he / she maintains security documentation and procedures to support the setup of relevant security controls. He / she should be familiar with modern security technologies such as firewalls, log management (SIEM), IDS, endpoint protection, access control systems, and other related security technologies within the OT environment. Ideally, he / she is … cybersecurity technologies and controls Recommend security products, services, and procedures to improve OT system architecture designs Provide inputs to OT security product roadmaps Support and develop OT security architecture / Support OT security system integration: Collaborate with architects to shape security controls, systems, remote access, and architecture for the organization's OT infrastructure according to specified requirements Implement IT More ❯
consultancy and managing risk assessments, including third-party and cybersecurity risks. Delivering key IS projects and driving supplier and project security assurance activities. Ensuring regulatory compliance and supporting internal / external reviews. Enhancing the Bank's Third Party Risk Management (TPRM) framework. Key Responsibilities Conduct Information Security and Cybersecurity assessments and technical risk evaluations. Act as the Bank's … SureCloud platform and baseline control set maintenance. Lead security triaging and approvals of new projects and suppliers. Liaise with IT and MSSP teams to identify and remediate security risks / incidents. Draft reports, risk register updates, and maintain documentation aligned with best practice (ISO27001, NIST CSF). Track and advise on industry security trends … s or Master's degree (preferably in IT, Security, or Risk). At least one recognised IS qualification (CISM, CISA, CISSM, ISO27001 Lead Auditor / Implementer, CIPP / E). Proven experience in delivering project and supplier assurance activities in the IS domain. Strong written and verbal communication skills, especially the ability to More ❯
securities - as well as traditional financial instruments too. Our vision is to develop a truly digital capital markets ecosystem that bridges traditional and crypto markets, leveraging tokenisation and blockchain / DLT / Web3.0 technologies. The Role Archax has reached a growth point in its development and an opportunity has arisen for an experienced Systems & Support Engineer to join … must have experience in a firm that has delivered product to external customers. Knowledge and Experience Required: 2-3 years + experience as a hands-on Technical Support Engineer / Application Support Analyst Hands on experience administering Linux and Windows estates Excellent problem-solving and communication skills Networking knowledge Hands-on experience administering Office365 platform and applications Understanding and … experience with the administration of SQL databases Experience with task automation, leveraging Python, Bash and / or PowerShell Experience with monitoring tools - PRTG, Grafana, OpenSearch, Prometheus. Beneficial Experience: Hands-on experience with Amazon Web Services Hands-on experience with Kubernetes / containerised environments Experience with No-Code tools such as Retool or Appsmith Experience with SOC2 /More ❯
Bath, Somerset, United Kingdom Hybrid / WFH Options
Bmt Defence Services LTD
team and engage in a diverse range of client projects within the defence, national security, environmental, and research sectors. This includes the provision of strategic risk management advice and / or technical consultancy within the context of cybersecurity. You will join a team of highly skilled professionals dedicated to safeguarding technologies and systems, many of which are critical to … and information assurance policies, standards, and guidance with experience in consultancy or supplier roles. Securing OT (Operational Technologies) with knowledge and understanding of challenges, particularly within military platforms and / or Critical National Infrastructure (CNI) Federation of Security Operations Centre (SOC)operations across two or more organisational environments such as enterprise, edge / deployed environments or cloud . … Demonstrable knowledge of cyber detection (e.g., threat identification / intelligence, real-time monitoring, anomaly detection) and cyber response (e.g. incident response, eradication and remediation, recovery, post-incident analysis). DevSecOps. Zero Trust Architecture (ZTA) expertise for enterprise, cloud and air-gapped environments along with knowledge of operational use of Zero Trust within any of the following: , IdAM systems, application More ❯
Basingstoke, Hampshire, United Kingdom Hybrid / WFH Options
Axians Networks Limited
direct impact on customer growth & to also promote Axians services. In addition, the role will have the responsibility for being the Team Leader to Consultants within the Professional Services / Delivery domain. To be successful, the role requires the use of personal presence, influencing and technical skills to represent Axians to ensure impact and delivery against the Axians business … To engage with key stakeholders, a local presence in the Basingstoke office or with customers is required two days a week. KEY RESPONSIBILITIES: Team Leader within the Professional Services / Delivery domain. Support the Axians account teams on strategic accounts. Create strategies, roadmaps & designs. Provide network & security architecture, configuration and implementation. Provide technical presentations, product demonstrations, and proof of … RFI's and RFP's. Provide delivery documentation; HLD, LLD & Migration Strategy. Support Axians partner compliance by completion of training & certification. Encourage a consultancy led approach and grow innovation / automation in the tech community. Value Demonstration: Consistently embody and demonstrate Axians' UK core values - Trust, Solidarity, Responsibility, Entrepreneurial Mindset and Autonomy -in all interactions and behaviours, both internally More ❯