analysis, and threat modelling. Security Operations (SOC) : Overseeing monitoring, incident response, vulnerability management, and operational resilience. Governance, Risk & Compliance (GRC) : Leading our efforts to achieve and maintain compliance with PCI, GDPR, SOC2, and ISO27001. Vendor Security : Spearheading due diligence and monitoring of third parties, integrated with our Vendor Governance Forum. Policies & Assurance : Defining and enforcing security standards, collaborating with … Operations : You have deep experience overseeing a Security Operations function, managing monitoring, incident response, and vulnerability management. Driving GRC : You're an expert in managing compliance frameworks such as PCI, GDPR, SOC2, and ISO 27001, and you're skilled at preparing for audits. Vendor Security : You have led vendor security analysis, including due diligence and ongoing monitoring. Collaboration & Execution More ❯
from those teams (compute, networking, search, storage) Experience in a collaborative, agile development environment. Preferred Qualifications Experience and understanding of multi-AD/AZ and regional data centers FedRAMP, PCIDSS, or similar compliance and auditing experience Experience and detailed technical knowledge in PaaS engineering. Expertise in applying threat modeling or other risk identification techniques to develop securityMore ❯
from those teams (compute, networking, search, storage) · Experience in a collaborative, agile development environment. Preferred Qualifications · Experience and understanding of multi-AD/AZ and regional data centers · FedRAMP, PCIDSS, or similar compliance and auditing experience · Experience and detailed technical knowledge in PaaS engineering. · Expertise in applying threat modeling or other risk identification techniques to develop securityMore ❯
security GRC automation tooling (Vanta) and work across the business to maintain security compliance posture. Successfully lead internal and external security audits - ISO 27001/SOC2 Type II/PCI DSS. Champion a company wide culture of security awareness and operational resilience by playing a key role in defining, maintaining, and managing security incident response and threat intelligence procedures. … effectively to find the missing details. ISO 27001 et al - You have built and maintained an ISO 27001 certified ISMS before and led other important security audit assessments (SOC2, PCI, etc.). You may have also gained ISO 27001 Lead Auditor or alike certifications (a plus). Collaborator Extraordinaire - Strong communications skills with the ability to explain technical and More ❯
london, south east england, united kingdom Hybrid / WFH Options
PCI Pal
WELCOME TO PCI PAL PCI Pal is a leading provider of SaaS solutions that empower companies to take payments securely, adhere to strict industry governance, and remove their business from the significant risks posed by non-compliance and data loss. We are integrated and resold by some of the worlds' leading business communications vendors, as well as major … payment service providers. We are currently looking for a Project Manager to join our UK team. THE OPPORTUNITY: Delivering PCI Pal services for both direct and channel sales customers, you will be responsible for coordinating internal and external resources using a blend of project management and technical skills – with the ultimate goal of getting our newly acquired customers live … with their PCI Pal product(s). Bearing wider responsibilities than typically associated with Project Management, you will have the opportunity to work closely with various internal teams and provide pre and post go-live support, including delivering product demonstrations and training for customers on how to make best use of PCI Pals products. YOU WILL BE RESPONSIBLE More ❯
assessors to deliver high-quality services to clients. Additionally, you will be responsible for staying updated on cybersecurity trends and regulations to enhance the effectiveness of the assessment process. PCI experience is highly advantageous. Key Responsibilities: Delivery Day-to-day delivery of Cyber Essentials and Cyber Essentials PLUS certifications Providing feedback and guidance to the customer throughout the certification … Self-Assessments and Cyber Essentials Plus Audits Career Benefits Competitive salary Contributory pension scheme 25 days holiday excluding bank holidays +1 for Birthday Ongoing training and budgets for Leadership, PCI and CREST certifications (CRT/CCT Web or CCT Inf). Private medical Insurance Be part of a growing business with great career opportunities More ❯