Hereford, Herefordshire, United Kingdom Hybrid / WFH Options
an experienced Information Security Analyst to join our client who will play a key role in driving compliance, governance, and continual improvement across key security frameworks including ISO 27001, PCIDSS, and Cyber Essentials Plus. Lead on the operation and continual improvement of the Information Security Management System (ISMS) Coordinate internal and external audit readiness for ISO … PCIDSS, and Cyber Essentials Plus Draft and update information security policies, procedures, and technical standards Work with procurement and commercial teams to support supplier assurance and risk assessment Contribute to tender responses and bid processes, ensuring security and compliance requirements are met Promote good security practices and raise awareness across departments Stay up to date with changes More ❯
Key responsibilities include: Liaising directly with the current Enterprise Architect to understand and document: The council's ICT Strategy and technical architecture. Existing security architecture, including compliance with PSN, PCI-DSS, LGA Cyber Security, and penetration testing protocols. Key platforms and technologies in use, including Microsoft Azure, M365, Active Directory, Intune, endpoint management, and any bespoke systems. Governance … Architect in a complex public sector or local government environment. Strong knowledge of ICT strategy development, enterprise and technical architecture frameworks. Expertise in security architecture and compliance, including PSN, PCI-DSS, LGA Cyber Security, and penetration testing requirements. Hands-on experience with Microsoft technologies including Azure, M365, Active Directory, Intune, and endpoint management. Ability to document existing architecture More ❯
such as Lambda, EventBridge, Kinesis, Glue, Athena, and CloudWatch. Security & Compliance Implement IAM policies, KMS encryption, VPC networking, and PrivateLink to secure data and connectivity. Ensure adherence to GDPR, PCI-DSS, ISO 27001, and industry-specific standards. Develop data retention policies, privacy impact frameworks, and procedures for emergency call handling. DevOps & Automation Establish CI/CD pipelines for … Connect solutions at enterprise scale with complex integrations. Proficient with AWS services: IAM, VPC, Lambda, API Gateway, EventBridge, Kinesis, CloudWatch, DynamoDB. Strong understanding of security and compliance frameworks (GDPR, PCI-DSS, ISO 27001). Hands-on experience with Infrastructure as Code (CloudFormation, Terraform, CDK) and serverless development (Node.js/Python). Preferred Qualifications AWS Solutions Architect - Professional or More ❯
such as Lambda, EventBridge, Kinesis, Glue, Athena, and CloudWatch. Security & Compliance Implement IAM policies, KMS encryption, VPC networking, and PrivateLink to secure data and connectivity. Ensure adherence to GDPR, PCI-DSS, ISO 27001, and industry-specific standards. Develop data retention policies, privacy impact frameworks, and procedures for emergency call handling. DevOps & Automation Establish CI/CD pipelines for … Connect solutions at enterprise scale with complex integrations. Proficient with AWS services: IAM, VPC, Lambda, API Gateway, EventBridge, Kinesis, CloudWatch, DynamoDB. Strong understanding of security and compliance frameworks (GDPR, PCI-DSS, ISO 27001). Hands-on experience with Infrastructure as Code (CloudFormation, Terraform, CDK) and serverless development (Node.js/Python). Preferred Qualifications AWS Solutions Architect - Professional or More ❯
Glasgow, Lanarkshire, Scotland, United Kingdom Hybrid / WFH Options
Verelogic IT Recruitment
such as Lambda, EventBridge, Kinesis, Glue, Athena, and CloudWatch. Security & Compliance Implement IAM policies, KMS encryption, VPC networking, and PrivateLink to secure data and connectivity. Ensure adherence to GDPR, PCI-DSS, ISO 27001, and industry-specific standards. Develop data retention policies, privacy impact frameworks, and procedures for emergency call handling. DevOps & Automation Establish CI/CD pipelines for … Connect solutions at enterprise scale with complex integrations. Proficient with AWS services: IAM, VPC, Lambda, API Gateway, EventBridge, Kinesis, CloudWatch, DynamoDB. Strong understanding of security and compliance frameworks (GDPR, PCI-DSS, ISO 27001). Hands-on experience with Infrastructure as Code (CloudFormation, Terraform, CDK) and serverless development (Node.js/Python). Preferred Qualifications AWS Solutions Architect - Professional or More ❯
such as Lambda, EventBridge, Kinesis, Glue, Athena, and CloudWatch. Security & Compliance Implement IAM policies, KMS encryption, VPC networking, and PrivateLink to secure data and connectivity. Ensure adherence to GDPR, PCI-DSS, ISO 27001, and industry-specific standards. Develop data retention policies, privacy impact frameworks, and procedures for emergency call handling. DevOps & Automation Establish CI/CD pipelines for … Connect solutions at enterprise scale with complex integrations. Proficient with AWS services: IAM, VPC, Lambda, API Gateway, EventBridge, Kinesis, CloudWatch, DynamoDB. Strong understanding of security and compliance frameworks (GDPR, PCI-DSS, ISO 27001). Hands-on experience with Infrastructure as Code (CloudFormation, Terraform, CDK) and serverless development (Node.js/Python). Preferred Qualifications AWS Solutions Architect - Professional or More ❯
such as Lambda, EventBridge, Kinesis, Glue, Athena, and CloudWatch. Security & Compliance Implement IAM policies, KMS encryption, VPC networking, and PrivateLink to secure data and connectivity. Ensure adherence to GDPR, PCI-DSS, ISO 27001, and industry-specific standards. Develop data retention policies, privacy impact frameworks, and procedures for emergency call handling. DevOps & Automation Establish CI/CD pipelines for … Connect solutions at enterprise scale with complex integrations. Proficient with AWS services: IAM, VPC, Lambda, API Gateway, EventBridge, Kinesis, CloudWatch, DynamoDB. Strong understanding of security and compliance frameworks (GDPR, PCI-DSS, ISO 27001). Hands-on experience with Infrastructure as Code (CloudFormation, Terraform, CDK) and serverless development (Node.js/Python). Preferred Qualifications AWS Solutions Architect - Professional or More ❯
resolve customer issues and requests Demonstrated experience as a security advisor or consultant Knowledge of the following frameworks: ISO 27001/2, NIST Cyber Security Framework, CIS Critical Security, PCIDSS, Cloud Controls Matrix and MITRE Att&ck a plus. *Benefits Of Working At CrowdStrike:* Remote-friendly and flexible work culture Market leader in compensation and equity awards … resolve customer issues and requests Demonstrated experience as a security advisor or consultant Knowledge of the following frameworks: ISO 27001/2, NIST Cyber Security Framework, CIS Critical Security, PCIDSS, Cloud Controls Matrix and MITRE Att&ck a plus. More ❯
preston, lancashire, north west england, united kingdom
MERJE
teams to support transparency and accountability. Mentor and develop junior compliance colleagues, fostering a culture of continuous improvement. Contribute to maintaining ISO 27001 certification and other relevant standards (e.g. PCIDSS, Information Security). Lead business continuity planning and ensure ongoing operational resilience. Manage corporate insurance coverage and relationships with insurers. Skills, Experience & Qualifications Proven experience in regulatory … approach to risk mitigation. Confident communicator, able to simplify complex issues and influence at senior levels. Experience leading compliance monitoring, audits, investigations, and remediation initiatives. Familiarity with ISO 27001 , PCIDSS , and other information security frameworks. Experience managing business continuity and insurance programmes. Leadership capability with a track record of mentoring others and representing compliance at Board or More ❯
frameworks such as NIST 800-53 r5, NIST CSF2.0, CIS, ISO27K • Designing solutions related to advisory & consulting engagements around regulatory risk & compliances such as DORA, NIS2, GDPR, SOX ITGC, PCI-DSS, HIPAA, Data Privacy, NHS, FFIEC etc. • Develop knowledge base, re-usable components for GRC advisory services. • Responsible for development and enhancements of GRC services, team and delivery … Technical Knowledge around information security, business continuity and technology risk assessments. ISO 27K, NIST, AI Governance, CIS etc. • Good compliance understanding of industry domains such as BFSI – (SOX, FFIEC, PCI-DSS, BASEL, MAS etc.), Healthcare & Life-sciences – (HIPAA, Hi-Trust, FDA CFR, GxP Compliance), Telecom, Retail, Data Privacy (GDPR, CCPA) Energy & Utilities (NERC, FERC) Information Security (ISO More ❯
frameworks such as NIST 800-53 r5, NIST CSF2.0, CIS, ISO27K • Designing solutions related to advisory & consulting engagements around regulatory risk & compliances such as DORA, NIS2, GDPR, SOX ITGC, PCI-DSS, HIPAA, Data Privacy, NHS, FFIEC etc. • Develop knowledge base, re-usable components for GRC advisory services. • Responsible for development and enhancements of GRC services, team and delivery … Technical Knowledge around information security, business continuity and technology risk assessments. ISO 27K, NIST, AI Governance, CIS etc. • Good compliance understanding of industry domains such as BFSI – (SOX, FFIEC, PCI-DSS, BASEL, MAS etc.), Healthcare & Life-sciences – (HIPAA, Hi-Trust, FDA CFR, GxP Compliance), Telecom, Retail, Data Privacy (GDPR, CCPA) Energy & Utilities (NERC, FERC) Information Security (ISO More ❯
London, South East, England, United Kingdom Hybrid / WFH Options
Robert Half
practice is a part of our overall Technology Consulting Division. The Cyber Security practice includes coverage of focused domains such as Technical Security Assessments, Assessment against cyber security frameworks, PCIDSS assessments, Cloud Security Reviews, Cyber Security Audits, Cyber Security Strategy and Advisory work. Cyber Security is a high-growth area for Protiviti globally. You will be part … other clients. Do Your Talents Include the Following? In-depth knowledge and understanding of industry cyber security frameworks such as ISO 27001, NIST CSF, NIS 2 and/or PCI DSS. Hands-on experience in implementing or assessing against these frameworks is a must-have requirement. Demonstrated ability to lead, manage and develop teams and deliver cybersecurity engagements to … experience, preferably in consulting and/or professional services. Demonstrable track record of continual growth across various roles. Relevant industry certifications such as CISSP, CISM, CISA, ISO 27001 LA, PCIDSS QSA are strongly preferred Offices - The Shard, London - Hybrid/Remote Working £100k-126k, Annual performance bonus & benefits Robert Half Ltd acts as an employment business for More ❯
teams to support transparency and accountability. Mentor and develop junior compliance colleagues, fostering a culture of continuous improvement. Contribute to maintaining ISO 27001 certification and other relevant standards (e.g. PCIDSS, Information Security). Lead business continuity planning and ensure ongoing operational resilience. Manage corporate insurance coverage and relationships with insurers. All team members are required to complete … approach to risk mitigation. Confident communicator, able to simplify complex issues and influence at senior levels. Experience leading compliance monitoring, audits, investigations, and remediation initiatives. Familiarity with ISO 27001 , PCIDSS , and other information security frameworks. Experience managing business continuity and insurance programmes. Leadership capability with a track record of mentoring others and representing compliance at Board or More ❯
teams to support transparency and accountability. Mentor and develop junior compliance colleagues, fostering a culture of continuous improvement. Contribute to maintaining ISO 27001 certification and other relevant standards (e.g. PCIDSS, Information Security). Lead business continuity planning and ensure ongoing operational resilience. Manage corporate insurance coverage and relationships with insurers. All team members are required to complete … approach to risk mitigation. Confident communicator, able to simplify complex issues and influence at senior levels. Experience leading compliance monitoring, audits, investigations, and remediation initiatives. Familiarity with ISO 27001 , PCIDSS , and other information security frameworks. Experience managing business continuity and insurance programmes. Leadership capability with a track record of mentoring others and representing compliance at Board or More ❯
role will suit someone with hands-on expertise across Microsoft 365, firewalls, VoIP platforms, and ISO-aligned service delivery. Key Responsibilities Administer, configure, and secure Microsoft 365 services Lead PCIDSS SAQ-D v4 submissions and maintain compliance documentation Manage VoIP platforms (8x8, Avaya, Connex) and support campaign operations Administer firewalls, VPNs, switches, and routers Oversee Windows … upgrades and hardware lifecycle management Manage organisational data and deliver compliance and client-facing reports What We're Looking For Proven Microsoft 365 administration experience Knowledge of PCIDSS SAQ-D v4 compliance requirements Hands-on VoIP platform support Network/firewall and OS upgrade expertise Advanced Excel and database management skills ISO experience and familiarity with audit More ❯
be doing: • Leading and supporting all aspects of security governance activities – from policy and exception management to risk and vendor assessments • Managing compliance and audit activities (ISO 27001, NIST, PCIDSS, NYDFS, etc.) and working closely with tech, legal, and audit teams • Overseeing major projects to ensure security is baked in from inception to implementation • Coaching and developing … strategy, delivery, and stakeholder engagement What you’ll bring: • Strong background in GRC (Governance, Risk, and Compliance) within cybersecurity • Practical experience with frameworks such as ISO 27001, NIST, and PCIDSS • Proven ability to design, implement, and maintain security policies and procedures • Confident in managing audits, vendor assessments, and compliance remediation • Leadership skills that balance mentorship, accountability, and More ❯
be doing: • Leading and supporting all aspects of security governance activities – from policy and exception management to risk and vendor assessments • Managing compliance and audit activities (ISO 27001, NIST, PCIDSS, NYDFS, etc.) and working closely with tech, legal, and audit teams • Overseeing major projects to ensure security is baked in from inception to implementation • Coaching and developing … strategy, delivery, and stakeholder engagement What you’ll bring: • Strong background in GRC (Governance, Risk, and Compliance) within cybersecurity • Practical experience with frameworks such as ISO 27001, NIST, and PCIDSS • Proven ability to design, implement, and maintain security policies and procedures • Confident in managing audits, vendor assessments, and compliance remediation • Leadership skills that balance mentorship, accountability, and More ❯
be doing: • Leading and supporting all aspects of security governance activities – from policy and exception management to risk and vendor assessments • Managing compliance and audit activities (ISO 27001, NIST, PCIDSS, NYDFS, etc.) and working closely with tech, legal, and audit teams • Overseeing major projects to ensure security is baked in from inception to implementation • Coaching and developing … strategy, delivery, and stakeholder engagement What you’ll bring: • Strong background in GRC (Governance, Risk, and Compliance) within cybersecurity • Practical experience with frameworks such as ISO 27001, NIST, and PCIDSS • Proven ability to design, implement, and maintain security policies and procedures • Confident in managing audits, vendor assessments, and compliance remediation • Leadership skills that balance mentorship, accountability, and More ❯
Specialist Location: Manchester - 5 days per week Job Type: Full-Time, Permanent Salary: £45,000 to £55,000 Key Responsibilities: Lead and support compliance programs with a focus on PCIDSS, SOC 1, and SOC 2 requirements Conduct governance, risk, and control assessments across IT and business processes Partner with internal stakeholders and external auditors to ensure audit … documentation, including policies, standards, and procedures Support third-party vendor risk assessments and contribute to enterprise-wide GRC initiatives What My Client is Looking For: Proven experience working with PCIDSS and SOC 1/SOC 2 frameworks in regulated environments Strong background in IT risk, audit coordination, and control testing Excellent stakeholder management skills, with the ability More ❯
Specialist Location: Manchester - 5 days per week Job Type: Full-Time, Permanent Salary: £45,000 to £55,000 Key Responsibilities: Lead and support compliance programs with a focus on PCIDSS, SOC 1, and SOC 2 requirements Conduct governance, risk, and control assessments across IT and business processes Partner with internal stakeholders and external auditors to ensure audit … documentation, including policies, standards, and procedures Support third-party vendor risk assessments and contribute to enterprise-wide GRC initiatives What My Client is Looking For: Proven experience working with PCIDSS and SOC 1/SOC 2 frameworks in regulated environments Strong background in IT risk, audit coordination, and control testing Excellent stakeholder management skills, with the ability More ❯
bolton, greater manchester, north west england, united kingdom
Arcus Search
Specialist Location: Manchester - 5 days per week Job Type: Full-Time, Permanent Salary: £45,000 to £55,000 Key Responsibilities: Lead and support compliance programs with a focus on PCIDSS, SOC 1, and SOC 2 requirements Conduct governance, risk, and control assessments across IT and business processes Partner with internal stakeholders and external auditors to ensure audit … documentation, including policies, standards, and procedures Support third-party vendor risk assessments and contribute to enterprise-wide GRC initiatives What My Client is Looking For: Proven experience working with PCIDSS and SOC 1/SOC 2 frameworks in regulated environments Strong background in IT risk, audit coordination, and control testing Excellent stakeholder management skills, with the ability More ❯
warrington, cheshire, north west england, united kingdom
Arcus Search
Specialist Location: Manchester - 5 days per week Job Type: Full-Time, Permanent Salary: £45,000 to £55,000 Key Responsibilities: Lead and support compliance programs with a focus on PCIDSS, SOC 1, and SOC 2 requirements Conduct governance, risk, and control assessments across IT and business processes Partner with internal stakeholders and external auditors to ensure audit … documentation, including policies, standards, and procedures Support third-party vendor risk assessments and contribute to enterprise-wide GRC initiatives What My Client is Looking For: Proven experience working with PCIDSS and SOC 1/SOC 2 frameworks in regulated environments Strong background in IT risk, audit coordination, and control testing Excellent stakeholder management skills, with the ability More ❯
City of London, London, United Kingdom Hybrid / WFH Options
YQN Pay
observability frameworks. Contribute directly to business growth through hands-on architecture while mentoring junior engineers as the team scales. Align technology designs with compliance, regulatory, and security requirements (e.g., PCIDSS). What You Bring 5+ years’ experience architecting, building, and/or integrating POS platforms or payment processing systems in fintech, SaaS, or related high-growth environments. … Hands-on experience working with SDKs, SaaS platforms, and third-party system vendors. Strong grasp of payments technology (account-to-account, card acquiring/issuing, tokenization, real-time processing, PCIDSS compliance). Ability to collaborate effectively in cross-functional teams (product, external developers, compliance). Willingness to drive change, iterate quickly, and grow with business needs, including More ❯
observability frameworks. Contribute directly to business growth through hands-on architecture while mentoring junior engineers as the team scales. Align technology designs with compliance, regulatory, and security requirements (e.g., PCIDSS). What You Bring 5+ years’ experience architecting, building, and/or integrating POS platforms or payment processing systems in fintech, SaaS, or related high-growth environments. … Hands-on experience working with SDKs, SaaS platforms, and third-party system vendors. Strong grasp of payments technology (account-to-account, card acquiring/issuing, tokenization, real-time processing, PCIDSS compliance). Ability to collaborate effectively in cross-functional teams (product, external developers, compliance). Willingness to drive change, iterate quickly, and grow with business needs, including More ❯
london, south east england, united kingdom Hybrid / WFH Options
YQN Pay
observability frameworks. Contribute directly to business growth through hands-on architecture while mentoring junior engineers as the team scales. Align technology designs with compliance, regulatory, and security requirements (e.g., PCIDSS). What You Bring 5+ years’ experience architecting, building, and/or integrating POS platforms or payment processing systems in fintech, SaaS, or related high-growth environments. … Hands-on experience working with SDKs, SaaS platforms, and third-party system vendors. Strong grasp of payments technology (account-to-account, card acquiring/issuing, tokenization, real-time processing, PCIDSS compliance). Ability to collaborate effectively in cross-functional teams (product, external developers, compliance). Willingness to drive change, iterate quickly, and grow with business needs, including More ❯