. This role can also offer blended working after probationary period (6 months) - 3 days in the office and 2 remote. Close Date: 25 / 03 / 2025 We also provide the following additional benefits: Reservist Leave – Additional 18 days full pay and 22 unpaid. Personal Pension Plan … Information Security Management System Support: Operate and maintain the information security management system and artefacts, in compliance with ISO27001/ 27002 including the governance forum agenda and minutes. Policies and Standards: Establish GRC policies, standards and procedures to monitor UKPN information security controls, exceptions … standards. We are looking for a detailed knowledge and practical expertise in at least 3 of the following specialist areas: Specific Industry Standards. IS / IT Operational Controls and Governance. Business Continuity Planning and Disaster Recovery. Supply Chain and 3rd Party Risk Management. Problem Solving: The role must have More ❯
. This role can also offer blended working after probationary period (6 months) - 3 days in the office and 2 remote. Close Date: 25 / 03 / 2025 We also provide the following additional benefits: Reservist Leave - Additional 18 days full pay and 22 unpaid. Personal Pension Plan … Information Security Management System Support: Operate and maintain the information security management system and artefacts, in compliance with ISO27001/ 27002 including the governance forum agenda and minutes. Policies and Standards: Establish GRC policies, standards and procedures to monitor UKPN information security controls, exceptions … standards. We are looking for a detailed knowledge and practical expertise in at least 3 of the following specialist areas: Specific Industry Standards. IS / IT Operational Controls and Governance. Business Continuity Planning and Disaster Recovery. Supply Chain and 3rd Party Risk Management. Problem Solving: The role must have More ❯
Managing Consultant - IAM / PAM Managing Consultant - IAM / PAM Location: Global role - UK based - Manchester, London Or Cheltenham Role Purpose: NCC Group are investing in expanding our digital identity service line, to grow and expand capabilities, offerings and propositions. This new global practice will focus on three … Management (AM) and Customer Identity (CIAM). The opportunity is for an IAM technical consultant with hands-on technical experience, performing as an engineer / developer to support large-scale IAM deployments, supporting the implementation of identity lifecycle management, access governance and / or privileged access. The role … the service line leader. Summary: This is a fantastic new opportunity to join our Global IAM team. The ideal candidate will have previous IAM / PAM engineering and development experience and exposure gained from delivering complex IAM engagements, ideally across a broad client base. In addition to your technical More ❯
Enterprise Security Architect / saas / sabsa /iso/ iaas Permanent Location: London (Hybrid - 2 days onsite) Level: Director Department: IT Security A leading financial services organization is seeking an experienced Enterprise Security Architect to drive the strategic design, implementation, and continuous improvement … with a strong focus on enterprise architecture. Proven experience across Cloud, Network, Infrastructure, and Application security. Deep understanding of risk management and compliance (ISO27001, NIST SP 800-53, SANS CSC). Familiarity with SABSA, NIST CSF, and other industry-standard frameworks. Expertise in cloud security More ❯
practices for secure design and development. Engage with industry bodies and regulatory frameworks to ensure alignment with security standards such as ISO/IEC27001, NIST, and GDPR. Conduct technical reviews of third-party IAM solutions and vendor offerings, ensuring that external products … interpersonal skills and strong written and verbal communication skills in country's official language(s) (C2 proficiency) and English (C2 proficiency), project-related mobility / willingness to travel. Essential Skills and Experience: Deep expertise in IAM, with hands-on experience in designing and implementing IAM solutions, including cloud environments … Extensive experience in identity governance, access management, and advanced threat mitigation techniques. Expert-level understanding of IAM frameworks and regulations (e.g., ISO/IEC27001/ 27002, NIST, NIS2, GDPR, PCI-DSS). Proven experience managing IAM projects, balancing security objectives with More ❯
the Global Security Office Information Security Risk Register, its supporting processes, governance and reporting requirements. The successful candidate requires a strong understanding of ISO27001 security controls, exposure to the OnSpring GRC Tool and can effectively assess and communicate technical security requirements to teams across the … and other business leadership teams to drive a culture of risk awareness. Ensure that all security risks align with regulatory requirements such as ISO27001, NIST, GDPR, and other international security frameworks. Provide oversight and work closely with risk owners to manage the development and implementation … insights to executive leadership and board members. Relevant senior security certifications (e.g., CISSP, CISM, CRISC, CISA, ISO27001 Lead Implementer / Auditor) are highly desirable. More ❯
the Global Security Office Information Security Risk Register, its supporting processes, governance and reporting requirements. The successful candidate requires a strong understanding of ISO27001 security controls, exposure to the OnSpring GRC Tool and can effectively assess and communicate technical security requirements to teams across the … and other business leadership teams to drive a culture of risk awareness. Ensure that all security risks align with regulatory requirements such as ISO27001, NIST, GDPR, and other international security frameworks. Provide oversight and work closely with risk owners to manage the development and implementation … insights to executive leadership and board members. Relevant senior security certifications (e.g., CISSP, CISM, CRISC, CISA, ISO27001 Lead Implementer / Auditor) are highly desirable. #J-18808-Ljbffr More ❯
Birmingham, England, United Kingdom Hybrid / WFH Options
Experis UK
You can find out more about us at www.nettitude.com. If you want to review our research and tooling, then head on over to https: // labs.nettitude.com The role We are looking for a QSA to join our GRC team in the UK. This role is home-based … and NIST CSF ISO27001 gap analyses Helping our clients to implement Information Security Management Systems and achieve and maintain ISO27001 certification Conducting risk assessments Creating or supporting third-party risk management and audit programmes Essential skills and experience: Be a current QSA who has completed … Cyber Essentials Perform ISO27001 gap analyses Help our clients to implement Information Security Management Systems and achieve and maintain ISO27001 certification PCI DSS consultancy and gap analyses Assistance in implementing PCI DSS requirements such as policy writing Complete on-site assessments and reports on compliance More ❯
customer lifecycle to drive best practice product adoption and client success Provide full-service onboarding and management services when products or upgrades are purchased / required Communicate and influence effectively with clients and internal stakeholders Maintain accurate and up-to-date documentation to aid client communications Identify and leverage … create client success stories and testimonials Requirements Experience in a Technical product-focused Customer Success role or similar role Experience working in a Technology / SaaS environment Aptitude for building and maintaining thriving and sustainable relationships Exceptional communicator and listener (verbal, written and presentation) Ability to support clients with … of holiday + recognised public holidays Company socials Healthcare benefit Personal development opportunities We are a remote-first company that provides office space as / when needed We believe in a great work-life balance - we do the work and log the time but also understand needing time for More ❯
and recovery efforts, and conduct regular security risk assessments and audits. What you'll bring: Proven experience in a similar senior information security role / s, preferably with experience of working in organisations providing technology outsourcing services to large public and private sector organisations. Strong knowledge of information security … and risk management frameworks or standards, such as ISO/IEC27001, ISO/IEC 27005, NIST Cyber Security Framework, CIS, NCSC Cyber Assessment Framework, Ministry of Defence Joint Service Publications, Secure by Design and Privacy by Design … we'd love to hear from you! Although this role is advertised as full-time, we believe that flexibility at work can promote work / life balance, increase your motivation, reduce stress and improve performance and productivity. We support different ways of working and can offer a range of More ❯
and recovery efforts, and conduct regular security risk assessments and audits. What you’ll bring: Proven experience in a similar senior information security role / s, preferably with experience of working in organisations providing technology outsourcing services to large public and private sector organisations. Strong knowledge of information security … and risk management frameworks or standards, such as ISO/IEC27001, ISO/IEC 27005, NIST Cyber Security Framework, CIS, NCSC Cyber Assessment Framework, Ministry of Defence Joint Service Publications, Secure by Design and Privacy by Design … we’d love to hear from you! Although this role is advertised as full-time, we believe that flexibility at work can promote work / life balance, increase your motivation, reduce stress and improve performance and productivity. We support different ways of working and can offer a range of More ❯
London, England, United Kingdom Hybrid / WFH Options
Sopra Steria Group
and recovery efforts, and conduct regular security risk assessments and audits. What you’ll bring: Proven experience in a similar senior information security role / s, preferably with experience of working in organisations providing technology outsourcing services to large public and private sector organisations. Strong knowledge of information security … and risk management frameworks or standards, such as ISO/IEC27001, ISO/IEC 27005, NIST Cyber Security Framework, CIS, NCSC Cyber Assessment Framework, Ministry of Defence Joint Service Publications, Secure by Design and Privacy by Design … we’d love to hear from you! Although this role is advertised as full-time, we believe that flexibility at work can promote work / life balance, increase your motivation, reduce stress and improve performance and productivity. We support different ways of working and can offer a range of More ❯
and direct the establishment and implementation of policies and procedures. The CISO is also usually responsible for information-related compliance (e.g. ISO/IEC27001 and SOC 2 certification). What you'll be doing Develop, implement and monitor a strategic, comprehensive enterprise … a combination of risk management, information security and IT jobs. Knowledge of common regulatory and information security management frameworks, such as ISO/IEC27001, NIST, SOC 2 and GDPR. Excellent written and verbal communication skills and high level of personal integrity. Innovative More ❯
and direct the establishment and implementation of policies and procedures. The CISO is also usually responsible for information-related compliance (e.g. ISO/IEC27001 and SOC 2 certification). What you’ll be doing Develop, implement and monitor a strategic, comprehensive enterprise … a combination of risk management, information security and IT jobs. Knowledge of common regulatory and information security management frameworks, such as ISO/IEC27001, NIST, SOC 2 and GDPR. Excellent written and verbal communication skills and high level of personal integrity. Innovative More ❯
build secure applications. Who are you? 3+ years experience working in a security-focused role. 3+ years of experience working with public clouds (AWS / GCP / Azure). 3+ years of experience with complex software projects (Python / Ruby / Go / NodeJS / etc.) or infrastructure as code tools (CloudFormation / Terraform / Pulumi / etc.). Extensive knowledge of every layer of the stack (Hardware / OS / Network / Application / Database / Storage / etc.). Hold yourself and others More ❯
Following a recent acquisition, the group is undergoing significant transformation and strengthening programs. A key priority is enhancing cybersecurity across both ICT and ICS / OT domains. Collaborating with internal stakeholders and external advisors, the focus is on defining and executing a cybersecurity roadmap to establish a robust security … related to information security and privacy Ensure Compliance and Regulatory Adherence by meeting industry-specific regulations and cybersecurity standards (such as ISO/IEC27001, NIST CSF, NIST SP 800-53, NIST SP 800-171, CMMC) to safeguard sensitive data and ensure business … and Certificates: Degree in Computer Science with at least one IT-Security Certificate (e.g., CISSP, CISM, CISA, ISO27001 LA / LI). Academic studies with special focus on IT-Security or a Master in cybersecurity or additional IT-Security Certificate would represent a plus More ❯
Following a recent acquisition, the group is undergoing significant transformation and strengthening programs. A key priority is enhancing cybersecurity across both ICT and ICS / OT domains. Collaborating with internal stakeholders and external advisors, the focus is on defining and executing a cybersecurity roadmap to establish a robust security … related to information security and privacy Ensure Compliance and Regulatory Adherence by meeting industry-specific regulations and cybersecurity standards (such as ISO/IEC27001, NIST CSF, NIST SP 800-53, NIST SP 800-171, CMMC) to safeguard sensitive data and ensure business … and Certificates: Degree in Computer Science with at least one IT-Security Certificate (e.g., CISSP, CISM, CISA, ISO27001 LA / LI). Academic studies with special focus on IT-Security or a Master in cybersecurity or additional IT-Security Certificate would represent a plus More ❯
Patterns: We recognise that 9-5 doesn't work for everyone, so we have a range of working patterns available to suit your work / life balance.Our friendly team will work with you to find the best fixed pattern for us both. Competitive salary: £37,338 - £44,962 (Band … Generous annual leave entitlement: Standard 25 days + 8 bank holidays, increasing with service up to 33 days + 8 bank holidays. Pro Rata / Per Annum Employee benefits: As part of our team at DHU Healthcare, we believe in rewarding you, our colleague, for your hard work and … team, you can enjoy a host of benefits to enhance your wellbeing. Health Cash Plan : After six months with us, you'll enjoy 24 / 7 GP access for you and your family. You'll also receive a free Level 1 Health Cash Plan from the Personal Group, covering More ❯
experience developing and implementing security policies, standards, and procedures. Solid understanding of risk management frameworks, and industry-specific compliance requirements (e.g., ISO/IEC27001, GDPR, HITRUST). Excellent communication and interpersonal skills, with the ability to explain complex security concepts to diverse … effectively manage and prioritise multiple projects simultaneously, meeting deadlines and delivering results. Nice to have: Experience building and operating a Trusted Research Environment and / or Trusted ML Environments. Experience in the BioTech and Pharma industry. Experience streamlining Vendor Security Assessments (VSAs). Familiarity with the unique challenges of … AI-first environment. Experience protecting sensitive scientific and personal data. Relevant certifications (e.g., CISM, CISA, CISSP, ISO27001 Lead Implementer / Auditor). Experience with security automation tools and technologies. Contribution to open-source security projects or participation in security communities. Culture and values What More ❯
Cambridge, Cambridgeshire, United Kingdom Hybrid / WFH Options
Cambridge University Press
Job Title: Head of Security Governance, Risk & Compliance Salary: £70,400 - £94,100 Location: Cambridge / Hybrid Minimum 2 days a week in the office Contract: Permanent The Head of Security GRC is a senior leadership role within the Security SMT, tasked with driving the organisation's security governance … role. Active CRISC or ISO 27005 Risk Manager certification (or higher), with additional certifications such as ISO27001/ 42001 Lead Auditor or Implementor being advantageous. Demonstrated experience in strategic governance of security, managing security risks in line with ISO … regardless of demographic characteristics (age, disability, educational attainment, ethnicity, gender, marital status, neurodiversity, religion, sex, gender identity and sexual identity), cultural, or social class / background. We believe better outcomes come through diversity of thought, background and approach. We welcome applications from people from all backgrounds and communities, actively More ❯
a high-performing cyber team at a confidential firm investing in next-gen information security. As an Information Security Analyst , you'll ensure ISO27001 alignment while driving meaningful improvements to audit and risk frameworks. What You’ll Be Doing Develop and evolve ISO27001-aligned ISMS processes, policies, and documentation Extend ISO27001:2022 certification to international offices and jurisdictions Run internal audits, support external audits, and lead on remediation Manage supplier due diligence, risk reviews, and third-party assessments Investigate security incidents and support … Champion a strong security culture through awareness and training What You’ll Bring Experience in information security or compliance-based roles Knowledge of ISO27001, Cyber Essentials, NIST or similar frameworks Ability to communicate and collaborate across business functions Comfortable working in cloud and Microsoft More ❯
a high-performing cyber team at a confidential firm investing in next-gen information security. As an Information Security Analyst , you'll ensure ISO27001 alignment while driving meaningful improvements to audit and risk frameworks. What You’ll Be Doing Develop and evolve ISO27001-aligned ISMS processes, policies, and documentation Extend ISO27001:2022 certification to international offices and jurisdictions Run internal audits, support external audits, and lead on remediation Manage supplier due diligence, risk reviews, and third-party assessments Investigate security incidents and support … Champion a strong security culture through awareness and training What You’ll Bring Experience in information security or compliance-based roles Knowledge of ISO27001, Cyber Essentials, NIST or similar frameworks Ability to communicate and collaborate across business functions Comfortable working in cloud and Microsoft More ❯
GRC Specialist / InfoSec Lead London / WFH to £75k Do you have an indepth knowledge of GRC combined with SC Clearance? You could be progressing your career in a senior, hands-on IT Manager position at a scale-up technology company with a successful workforce management solution … used within the government, defence and other public sector clients. As a GRC Specialist / InfoSec Lead you'll collaborate with the Head of Infrastructure and take ownership of ISMS (Information Security Management Systems) to maintain and improve security risk posture and compliance maturity across the organisation. You'll … regulatory standards, internal policies and industry best practice e.g. ISO27001, ISO 9001, NIST, SOC 2, GDPR. Location / WFH: You can work from home most of the time, meeting up with colleagues in the London office once a week. About you: You More ❯
South West London, London, United Kingdom Hybrid / WFH Options
Client Server
GRC Specialist / InfoSec Lead London / WFH to £75k Do you have an indepth knowledge of GRC combined with SC Clearance? You could be progressing your career in a senior, hands-on IT Manager position at a scale-up technology company with a successful workforce management solution … used within the government, defence and other public sector clients. As a GRC Specialist / InfoSec Lead you'll collaborate with the Head of Infrastructure and take ownership of ISMS (Information Security Management Systems) to maintain and improve security risk posture and compliance maturity across the organisation. You'll … regulatory standards, internal policies and industry best practice e.g. ISO27001, ISO 9001, NIST, SOC 2, GDPR. Location / WFH: You can work from home most of the time, meeting up with colleagues in the London office once a week. About you: You More ❯
network telemetry technologies. Providing support to members of the wider Operations team as required. Support & maintain the company objectives of ISO 9001 / 18001 /27001 accreditation. Key Skills and Experience: 3 - 5 years of experience on a service provider network in Operations, Engineering … operational experience with carrier-class routers, console servers & switches, (experience with Juniper and Cisco required). Excellent knowledge of L2 & L3 routing protocols, (IPv4+IPv6 / BGP / ISIS / VPLS / IP VPN / MPLS / QinQ / ELINE) and good understanding of … culture. Our employees are driven and committed, with many options to connect and engage in our inclusive environment. Zayo Europe is an Equal Opportunity / Affirmative Action Employer. All qualified applicants will receive consideration for employment without regard to age, race, colour, religion, sex, sexual orientation, gender identity, national More ❯